[code] OTS logfile created on: 11/06/2017 19:52:21 - Run 1 OTS by OldTimer - Version 3.1.47.2 Folder = C:\Users\Jean-Marie\Desktop 64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.11.15063.0) Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy 4,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 60,00% Memory free 9,00 Gb Paging File | 7,00 Gb Available in Paging File | 84,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86) Drive C: | 930,60 Gb Total Space | 623,23 Gb Free Space | 66,97% Space Free | Partition Type: NTFS Drive D: | 7,24 Gb Total Space | 0,07 Gb Free Space | 0,92% Space Free | Partition Type: FAT32 E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Drive M: | 2794,49 Gb Total Space | 257,07 Gb Free Space | 9,20% Space Free | Partition Type: NTFS Computer Name: LFSULTRA-WIDEN Current User Name: Jean-Marie Logged in as Administrator. Current Boot Mode: SafeMode with Networking Scan Mode: All users Include 64bit Scans Company Name Whitelist: On Skip Microsoft Files: On File Age = 360 Days [Processes - All] winlogon.exe -> -> File not found lsass.exe -> -> File not found dwm.exe -> -> File not found ots.exe -> C:\Users\Jean-Marie\Desktop\OTS.exe -> [2017/06/11 13:13:00 | 000,646,656 | ---- | M | MD5 = 700B66BC8B579C3CA00DC36E6E48714C] (OldTimer Tools) ota.exe -> C:\Users\Jean-Marie\Desktop\OTA.exe -> [2017/06/11 13:08:28 | 000,219,648 | ---- | M | MD5 = 03C9E0645D0F89AC41F9919D97C22106] (OldTimer Tools) oizbglcf.exe -> C:\Program Files\WWaJDEbu\OIZBGlcF.exe -> [2017/06/09 06:23:03 | 000,993,080 | ---- | M | Unable to obtain MD5] (Webroot) ps.exe -> C:\Program Files (x86)\CyberLink\Media Suite\PS.exe -> [2017/05/12 18:03:41 | 000,318,232 | ---- | M | MD5 = FD4488D189984869DA75B71202EC1D16] (CyberLink Corp.) fontdrvhost.exe -> C:\Windows\SysWOW64\fontdrvhost.exe -> [2017/04/26 19:34:20 | 000,626,520 | ---- | M | MD5 = 2139AD591E035F0D96853057715B00EE] (Microsoft Corporation) svchost.exe -> C:\Windows\SysWOW64\svchost.exe [comLaunch] -> [2017/03/18 22:58:48 | 000,040,904 | ---- | M | MD5 = 6BDB3091562E7DD2C877472286B6CC46] (Microsoft Corporation) svchost.exe -> C:\Windows\SysWOW64\svchost.exe [comLaunch] -> [2017/03/18 22:58:48 | 000,040,904 | ---- | M | MD5 = 6BDB3091562E7DD2C877472286B6CC46] (Microsoft Corporation) svchost.exe -> C:\Windows\SysWOW64\svchost.exe [comLaunch] -> [2017/03/18 22:58:48 | 000,040,904 | ---- | M | MD5 = 6BDB3091562E7DD2C877472286B6CC46] (Microsoft Corporation) svchost.exe -> C:\Windows\SysWOW64\svchost.exe [comLaunch] -> [2017/03/18 22:58:48 | 000,040,904 | ---- | M | MD5 = 6BDB3091562E7DD2C877472286B6CC46] (Microsoft Corporation) easeuseverysynccache.exe -> C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EaseUSEverySyncCache.exe -> [2015/10/19 15:45:00 | 000,992,808 | ---- | M | MD5 = CE851F0108F799A58A8F112C0CE3F1B5] () [Modules - All] ots.exe -> C:\Users\Jean-Marie\Desktop\OTS.exe -> [2017/06/11 13:13:00 | 000,646,656 | ---- | M | MD5 = 700B66BC8B579C3CA00DC36E6E48714C] (OldTimer Tools) ota.exe -> C:\Users\Jean-Marie\Desktop\OTA.exe -> [2017/06/11 13:08:28 | 000,219,648 | ---- | M | MD5 = 03C9E0645D0F89AC41F9919D97C22106] (OldTimer Tools) oizbglcf.exe -> C:\Program Files\WWaJDEbu\OIZBGlcF.exe -> [2017/06/09 06:23:03 | 000,993,080 | ---- | M | Unable to obtain MD5] (Webroot) commpipe.dll -> C:\Program Files (x86)\SpeedBit Video Accelerator\DLL3.3.8.8\CommPipe.dll -> [2017/06/08 17:40:30 | 000,284,328 | ---- | M | MD5 = 0E6C4F257A499ADE249A0C2D5A910CA3] (SPEEDbit) configdb.dll -> C:\Program Files (x86)\SpeedBit Video Accelerator\DLL3.3.8.8\ConfigDB.dll -> [2017/06/08 17:40:30 | 000,189,096 | ---- | M | MD5 = 326177B008EC401173557FE51EBF9E9B] (SPEEDbit) accelerator.dll -> C:\Program Files (x86)\SpeedBit Video Accelerator\DLL3.3.8.8\Accelerator.dll -> [2017/06/08 17:40:29 | 002,251,432 | ---- | M | MD5 = B96FB1D485241C367C58A30F13DE4913] (SPEEDbit) collector.dll -> C:\Program Files (x86)\SpeedBit Video Accelerator\DLL3.3.8.8\Collector.dll -> [2017/06/08 17:40:29 | 000,199,336 | ---- | M | MD5 = C167104CF04A49372E565446CCC0D7C1] (SPEEDbit) sblsp.dll -> C:\Program Files (x86)\SpeedBit Video Accelerator\sblsp.dll -> [2017/06/06 06:50:24 | 000,177,320 | ---- | M | MD5 = 3BEF492E391EB1019F7CDD08B9F480D5] (SPEEDbit) dapieengine.dll -> C:\Program Files (x86)\DAP\DAPIEEngine.dll -> [2017/06/06 06:46:18 | 000,176,784 | ---- | M | MD5 = 78B077F7EE3B59A448DCAE0683B2CAAC] (Speedbit Ltd.) dapie.dll -> C:\Program Files (x86)\DAP\dapie.dll -> [2017/06/06 06:46:18 | 000,091,792 | ---- | M | MD5 = C6E42A8924470C5BC7C2B6153180EEED] (Speedbit Ltd.) dapiemonitor.dll -> C:\Program Files (x86)\DAP\DAPIEMonitor.dll -> [2017/06/06 06:46:18 | 000,084,624 | ---- | M | MD5 = 12BC3B248C88ED013F944DB1361D162E] (Speedbit Ltd.) evoparser.dll -> C:\Program Files (x86)\CyberLink\Media Suite\EvoParser.dll -> [2017/05/12 18:03:58 | 000,204,568 | ---- | M | MD5 = 5700247F5F7D8E09F6E5165574123A0B] (Cyberlink Corp.) boomeranglib.dll -> C:\Program Files (x86)\CyberLink\Media Suite\Boomerang\x86\BoomerangLib.dll -> [2017/05/12 18:03:55 | 000,100,120 | ---- | M | MD5 = 0B53DEC5828EA3849FCAB8B85AC060B0] (CyberLink Corp.) pyloader.dll -> C:\Program Files (x86)\CyberLink\Media Suite\koan\pyloader.dll -> [2017/05/12 18:03:54 | 000,135,960 | ---- | M | MD5 = 3021855E16858879E2C6B6A5508521A2] (CyberLink Corp.) uno.dll -> C:\Program Files (x86)\CyberLink\Media Suite\UNO.dll -> [2017/05/12 18:03:53 | 000,915,736 | ---- | M | MD5 = 18C53801C1189B755A3D5CB7FE47C1A7] () _htmlview.pyd -> C:\Program Files (x86)\CyberLink\Media Suite\main\HTMLView\_HTMLView.pyd -> [2017/05/12 18:03:51 | 000,125,208 | ---- | M | MD5 = 338C4719937EEEAFBC7375748AFD12AB] (CyberLink Corp.) _infocenter.pyd -> C:\Program Files (x86)\CyberLink\Media Suite\main\InfoCenter\_InfoCenter.pyd -> [2017/05/12 18:03:49 | 000,186,648 | ---- | M | MD5 = AE62432E4D7942C374610D7BC17CB827] (CyberLink Corp.) _pyboomerang.pyd -> C:\Program Files (x86)\CyberLink\Media Suite\Boomerang\x86\PyBoomerang27\_PyBoomerang.pyd -> [2017/05/12 18:03:49 | 000,097,560 | ---- | M | MD5 = E40C84B3E0E48750C4B865741200349A] (CyberLink Corp.) _interpolator.pyd -> C:\Program Files (x86)\CyberLink\Media Suite\koan\_Interpolator.pyd -> [2017/05/12 18:03:47 | 000,127,256 | ---- | M | MD5 = 3AD56BED63CE70C3219BAAF345B45406] (CyberLink Corp.) _clmuitransfer.pyd -> C:\Program Files (x86)\CyberLink\Media Suite\main\MUI\_CLMuiTransfer.pyd -> [2017/05/12 18:03:47 | 000,050,456 | ---- | M | MD5 = CADA27BB8A464FEE4AD727B26387CD63] (CyberLink Corp.) _wingdi.pyd -> C:\Program Files (x86)\CyberLink\Media Suite\koan\_wingdi.pyd -> [2017/05/12 18:03:46 | 000,267,544 | ---- | M | MD5 = 61C076BA155C8782629C5DF03A991269] (CyberLink Corp.) _font.pyd -> C:\Program Files (x86)\CyberLink\Media Suite\koan\_font.pyd -> [2017/05/12 18:03:46 | 000,070,936 | ---- | M | MD5 = BB71E17F53255A08DC27DF9B699B4D44] (CyberLink Corp.) _image.pyd -> C:\Program Files (x86)\CyberLink\Media Suite\koan\_image.pyd -> [2017/05/12 18:03:45 | 000,057,112 | ---- | M | MD5 = 5F1F7A2F89A09D38CB0720A547E1DF42] (CyberLink Corp.) _pywinproc.pyd -> C:\Program Files (x86)\CyberLink\Media Suite\main\PyWinProc\_pywinproc.pyd -> [2017/05/12 18:03:45 | 000,046,872 | ---- | M | MD5 = 2E37EA53B68F841E60F81F996A05109B] (CyberLink) _render3d.pyd -> C:\Program Files (x86)\CyberLink\Media Suite\koan\_render3d.pyd -> [2017/05/12 18:03:44 | 000,861,464 | ---- | M | MD5 = AFC25D0E564B0739AFD8AE10650A3591] (CyberLink Corp.) _shellop.pyd -> C:\Program Files (x86)\CyberLink\Media Suite\main\ShellOp\_ShellOp.pyd -> [2017/05/12 18:03:42 | 000,077,592 | ---- | M | MD5 = 50C1A09B56FFBFAB36D7105D9E583515] (CyberLink Corp.) ps.exe -> C:\Program Files (x86)\CyberLink\Media Suite\PS.exe -> [2017/05/12 18:03:41 | 000,318,232 | ---- | M | MD5 = FD4488D189984869DA75B71202EC1D16] (CyberLink Corp.) python27.dll -> C:\Program Files (x86)\CyberLink\Media Suite\koan\python27.dll -> [2017/05/12 12:41:16 | 002,487,808 | ---- | M | MD5 = E29024F4B52C0EB4D7A18F32C5DDE70F] (Python Software Foundation) d3dcompiler_43.dll -> C:\Program Files (x86)\CyberLink\Media Suite\koan\D3DCompiler_43.dll -> [2017/05/12 12:41:16 | 002,106,216 | ---- | M | MD5 = 1C9B45E87528B8BB8CFA884EA0099A85] (Microsoft Corporation) _hashlib.pyd -> C:\Program Files (x86)\CyberLink\Media Suite\koan\_hashlib.pyd -> [2017/05/12 12:41:16 | 000,805,888 | ---- | M | MD5 = 9B0EC4BD218B7B2CBC0A0B94A35BE1BD] () _ctypes.pyd -> C:\Program Files (x86)\CyberLink\Media Suite\koan\_ctypes.pyd -> [2017/05/12 12:41:16 | 000,087,552 | ---- | M | MD5 = 96F2354593EC1D46DBE9E1DB6C120F48] () muitransfer.dll -> C:\Program Files (x86)\CyberLink\Media Suite\MUITransfer\MUITransfer.dll -> [2017/05/12 04:45:20 | 000,249,624 | ---- | M | MD5 = 8E9C484443E1FBF1C9BE1D5272AB352F] (CyberLink Corp.) gdi32full.dll -> C:\Windows\SysWOW64\gdi32full.dll -> [2017/04/28 03:38:54 | 001,411,128 | ---- | M | MD5 = C41AE32FBED58709CA1704FE00A102EC] (Microsoft Corporation) oleaut32.dll -> C:\Windows\SysWOW64\oleaut32.dll -> [2017/04/28 03:19:31 | 000,605,936 | ---- | M | MD5 = 5F91E0B146C4B15D9FB179515E253E7F] (Microsoft Corporation) kernelbase.dll -> C:\Windows\SysWOW64\KernelBase.dll -> [2017/04/28 03:19:03 | 001,839,872 | ---- | M | MD5 = B28734768CE940DB239FA8C3D1C9F83A] (Microsoft Corporation) coreuicomponents.dll -> C:\Windows\SysWOW64\CoreUIComponents.dll -> [2017/04/28 03:18:20 | 002,259,760 | ---- | M | MD5 = 29C27055A6FEC9326523E7CA75A42DDA] (Microsoft Corporation) kernel32.dll -> C:\Windows\SysWOW64\kernel32.dll -> [2017/04/28 03:16:18 | 000,599,576 | ---- | M | MD5 = A13FBBCB836D29F404935175BA8A6ACF] (Microsoft Corporation) iertutil.dll -> C:\Windows\SysWOW64\iertutil.dll -> [2017/04/28 03:11:09 | 002,158,544 | ---- | M | MD5 = 65CA4382CD65D0C30F500D5448D0C6BD] (Microsoft Corporation) crypt32.dll -> C:\Windows\SysWOW64\crypt32.dll -> [2017/04/28 03:09:42 | 001,557,288 | ---- | M | MD5 = 8002415AFF6B745EEEE84B2EB5E82D75] (Microsoft Corporation) combase.dll -> C:\Windows\SysWOW64\combase.dll -> [2017/04/28 03:08:59 | 002,330,520 | ---- | M | MD5 = 79314543755599A145FACABD72725585] (Microsoft Corporation) ole32.dll -> C:\Windows\SysWOW64\ole32.dll -> [2017/04/28 03:07:08 | 000,988,168 | ---- | M | MD5 = 79754F4AD5E58808C18077BEBABDBB85] (Microsoft Corporation) coremessaging.dll -> C:\Windows\SysWOW64\CoreMessaging.dll -> [2017/04/28 03:04:16 | 000,583,160 | ---- | M | MD5 = D333324DDC09806B477DAD41263EAFBA] (Microsoft Corporation) mshtml.dll -> C:\Windows\SysWOW64\mshtml.dll -> [2017/04/28 02:46:30 | 019,335,168 | ---- | M | MD5 = 921E86E1090040C6A8D7439C33F1E82A] (Microsoft Corporation) ieframe.dll -> C:\Windows\SysWOW64\ieframe.dll -> [2017/04/28 02:40:47 | 011,870,208 | ---- | M | MD5 = A0EB9E2886A798E8E36BD46236A3FF7B] (Microsoft Corporation) wininet.dll -> C:\Windows\SysWOW64\wininet.dll -> [2017/04/28 02:39:49 | 002,859,520 | ---- | M | MD5 = 9F75F07B64DAD8B0C63BA73EE60351E1] (Microsoft Corporation) jscript9.dll -> C:\Windows\SysWOW64\jscript9.dll -> [2017/04/28 02:39:28 | 003,655,680 | ---- | M | MD5 = 3A42B8FD529B3F936CE7B0B758AF0320] (Microsoft Corporation) d2d1.dll -> C:\Windows\SysWOW64\d2d1.dll -> [2017/04/28 02:39:18 | 005,225,984 | ---- | M | MD5 = FCFC1AEE0CB5C6C4624E7DE639F9450A] (Microsoft Corporation) urlmon.dll -> C:\Windows\SysWOW64\urlmon.dll -> [2017/04/28 02:37:01 | 001,626,624 | ---- | M | MD5 = C87BAA95CB88CDE1F5635A3D7CDA7D9B] (Microsoft Corporation) olepro32.dll -> C:\Windows\SysWOW64\olepro32.dll -> [2017/04/28 02:33:12 | 000,089,088 | ---- | M | MD5 = 80EEAEFFD3A2C57F94908939C0EE77C6] (Microsoft Corporation) mfc90u.dll -> C:\Windows\WinSxS\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4c\mfc90u.dll -> [2017/04/26 19:55:04 | 003,781,960 | ---- | M | MD5 = CA6ADE4F7761BB15B3325356DC3B82BB] (Microsoft Corporation) mfc90.dll -> C:\Windows\WinSxS\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4c\mfc90.dll -> [2017/04/26 19:55:04 | 003,766,600 | ---- | M | MD5 = 5963633010616B25503EE126F55E8DE4] (Microsoft Corporation) mfc90fra.dll -> C:\Windows\WinSxS\x86_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_49768ef57548175e\MFC90FRA.DLL -> [2017/04/26 19:55:01 | 000,062,800 | ---- | M | MD5 = BA49C7B642646DCACEFB26983303564F] (Microsoft Corporation) windowscodecs.dll -> C:\Windows\SysWOW64\WindowsCodecs.dll -> [2017/04/26 19:34:42 | 001,518,088 | ---- | M | MD5 = 36255AD5CC60D46B24D1D3A4DF718306] (Microsoft Corporation) winspool.drv -> C:\Windows\SysWOW64\winspool.drv -> [2017/04/26 19:34:42 | 000,429,568 | ---- | M | MD5 = E95EB82262BB928DFB53B8FD027F2A61] (Microsoft Corporation) msiso.dll -> C:\Windows\SysWOW64\msIso.dll -> [2017/04/26 19:34:42 | 000,364,032 | ---- | M | MD5 = FEE17F6EC047F3E455A271D80F12780C] (Microsoft Corporation) shell32.dll -> C:\Windows\SysWOW64\shell32.dll -> [2017/04/26 19:34:26 | 020,374,424 | ---- | M | MD5 = A1DD0AE5463AE737DFCAA64C9A912E14] (Microsoft Corporation) dbghelp.dll -> C:\Windows\SysWOW64\dbghelp.dll -> [2017/04/26 19:34:20 | 001,285,120 | ---- | M | MD5 = 5568E90976CD83549629DC0FBD26DDCC] (Microsoft Corporation) bcryptprimitives.dll -> C:\Windows\SysWOW64\bcryptprimitives.dll -> [2017/04/26 19:34:20 | 000,354,360 | ---- | M | MD5 = 5F3B6D6F85510A334441417B7B3928D1] (Microsoft Corporation) spp.dll -> C:\Windows\SysWOW64\spp.dll -> [2017/03/18 23:00:08 | 000,218,112 | ---- | M | MD5 = 73F78C4CF4D4DBE4B24ED332265D6E6E] (Microsoft Corporation) srclient.dll -> C:\Windows\SysWOW64\srclient.dll -> [2017/03/18 23:00:03 | 000,061,440 | ---- | M | MD5 = 0FD8D5289AE9AE9877EC1E074891D953] (Microsoft Corporation) vssapi.dll -> C:\Windows\SysWOW64\vssapi.dll -> [2017/03/18 22:59:54 | 001,157,632 | ---- | M | MD5 = B95630BD8293968A9B24B5EE8F877C53] (Microsoft Corporation) vsstrace.dll -> C:\Windows\SysWOW64\vsstrace.dll -> [2017/03/18 22:59:54 | 000,050,688 | ---- | M | MD5 = C0AEB38B767C408B38E5F62D92333414] (Microsoft Corporation) pnrpnsp.dll -> C:\Windows\SysWOW64\pnrpnsp.dll -> [2017/03/18 22:59:50 | 000,070,144 | ---- | M | MD5 = 110BE576916689570BF7643D89F38B04] (Microsoft Corporation) d3d9.dll -> C:\Windows\SysWOW64\d3d9.dll -> [2017/03/18 22:59:00 | 001,436,952 | ---- | M | MD5 = 89C616A2351571C80A1C8E59F06993C0] (Microsoft Corporation) user32.dll -> C:\Windows\SysWOW64\user32.dll -> [2017/03/18 22:59:00 | 001,292,872 | ---- | M | MD5 = CCA445CB2F0B36B651E976A3BD1FE26E] (Microsoft Corporation) imm32.dll -> C:\Windows\SysWOW64\imm32.dll -> [2017/03/18 22:59:00 | 000,143,672 | ---- | M | MD5 = CF12926DD97B5D843261253CC88492C8] (Microsoft Corporation) gdiplus.dll -> C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.15063.0_none_d802f55807fa1ec7\GdiPlus.dll -> [2017/03/18 22:58:59 | 001,448,960 | ---- | M | MD5 = 957B01943A2B57832CC739D8968C637B] (Microsoft Corporation) msctf.dll -> C:\Windows\SysWOW64\msctf.dll -> [2017/03/18 22:58:59 | 001,333,136 | ---- | M | MD5 = E9AAC17F256EA43E13619743D90E9730] (Microsoft Corporation) oleacc.dll -> C:\Windows\SysWOW64\oleacc.dll -> [2017/03/18 22:58:59 | 000,331,776 | ---- | M | MD5 = DE375FB216B47C7A936D5702A4EACBDC] (Microsoft Corporation) dwmapi.dll -> C:\Windows\SysWOW64\dwmapi.dll -> [2017/03/18 22:58:59 | 000,125,344 | ---- | M | MD5 = 8DFC38081B22061FFB3E4A1FE9001DA3] (Microsoft Corporation) win32u.dll -> C:\Windows\SysWOW64\win32u.dll -> [2017/03/18 22:58:59 | 000,081,176 | ---- | M | MD5 = A38999288DC415E5C0DD0E20692C297A] (Microsoft Corporation) msimtf.dll -> C:\Windows\SysWOW64\msimtf.dll -> [2017/03/18 22:58:59 | 000,036,864 | ---- | M | MD5 = 45306FB2B4F22DABC00B0C38A067CA12] (Microsoft Corporation) msimg32.dll -> C:\Windows\SysWOW64\msimg32.dll -> [2017/03/18 22:58:59 | 000,007,168 | ---- | M | MD5 = 0AA6A90017A9150F12029148A794A823] (Microsoft Corporation) comctl32.dll -> C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.0_none_583b8639f462029f\comctl32.dll -> [2017/03/18 22:58:58 | 002,139,040 | ---- | M | MD5 = 5CC1ADE35F7799C6FED0BFB3E2027D25] (Microsoft Corporation) winsta.dll -> C:\Windows\SysWOW64\winsta.dll -> [2017/03/18 22:58:58 | 000,254,720 | ---- | M | MD5 = BA71CAA96A8406B96FD974EB108D74B3] (Microsoft Corporation) wtsapi32.dll -> C:\Windows\SysWOW64\wtsapi32.dll -> [2017/03/18 22:58:58 | 000,053,272 | ---- | M | MD5 = B77F9EF19E8CCB5276BA726BFDFD9586] (Microsoft Corporation) version.dll -> C:\Windows\SysWOW64\version.dll -> [2017/03/18 22:58:58 | 000,027,424 | ---- | M | MD5 = 21B60105E1B145B31BFF7C3B55851D1D] (Microsoft Corporation) comctl32.dll -> C:\Windows\WinSxS\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.15063.0_none_8b4e86125c6fbfec\comctl32.dll -> [2017/03/18 22:58:57 | 000,573,856 | ---- | M | MD5 = 46241AC3E1DED7C74106E2C8AD0C34B8] (Microsoft Corporation) uxtheme.dll -> C:\Windows\SysWOW64\uxtheme.dll -> [2017/03/18 22:58:57 | 000,474,112 | ---- | M | MD5 = 387FF21062A4F2B41D3958DE67A9D6E1] (Microsoft Corporation) comdlg32.dll -> C:\Windows\SysWOW64\comdlg32.dll -> [2017/03/18 22:58:56 | 000,952,832 | ---- | M | MD5 = 54848388C5631FA059211D5B3A3F6927] (Microsoft Corporation) shlwapi.dll -> C:\Windows\SysWOW64\shlwapi.dll -> [2017/03/18 22:58:56 | 000,277,432 | ---- | M | MD5 = 4A9A263E9F24222B298B349A0B2C2F3E] (Microsoft Corporation) d3d10warp.dll -> C:\Windows\SysWOW64\d3d10warp.dll -> [2017/03/18 22:58:54 | 002,475,136 | ---- | M | MD5 = 927688AA090B26257CE93178B45ED85E] (Microsoft Corporation) dcomp.dll -> C:\Windows\SysWOW64\dcomp.dll -> [2017/03/18 22:58:54 | 000,949,920 | ---- | M | MD5 = 66FC05EA2A64837868FCF4DEAFB51C81] (Microsoft Corporation) shcore.dll -> C:\Windows\SysWOW64\SHCore.dll -> [2017/03/18 22:58:54 | 000,569,264 | ---- | M | MD5 = EFA74FD170285AA091CF93F723C29739] (Microsoft Corporation) dataexchange.dll -> C:\Windows\SysWOW64\DataExchange.dll -> [2017/03/18 22:58:54 | 000,254,464 | ---- | M | MD5 = 91206301BA38A7933B2E94285E301D18] (Microsoft Corporation) gdi32.dll -> C:\Windows\SysWOW64\gdi32.dll -> [2017/03/18 22:58:54 | 000,129,184 | ---- | M | MD5 = 68DB1DF22E4789F0390E5EAD1A11B134] (Microsoft Corporation) ondemandconnroutehelper.dll -> C:\Windows\SysWOW64\OnDemandConnRouteHelper.dll -> [2017/03/18 22:58:54 | 000,068,608 | ---- | M | MD5 = 6540CC5228582CD234455F03CB75F244] (Microsoft Corporation) windows.storage.dll -> C:\Windows\SysWOW64\windows.storage.dll -> [2017/03/18 22:58:52 | 005,820,984 | ---- | M | MD5 = 42F8C0D6CA7B271E03AECABB91C36ADA] (Microsoft Corporation) d3d11.dll -> C:\Windows\SysWOW64\d3d11.dll -> [2017/03/18 22:58:52 | 002,417,840 | ---- | M | MD5 = 772A1378C055DCA890634C2670A56A56] (Microsoft Corporation) dwrite.dll -> C:\Windows\SysWOW64\DWrite.dll -> [2017/03/18 22:58:52 | 002,344,960 | ---- | M | MD5 = A76FB1D0B5FCE9EDACBE91A71D46B994] (Microsoft Corporation) dxgi.dll -> C:\Windows\SysWOW64\dxgi.dll -> [2017/03/18 22:58:52 | 000,551,200 | ---- | M | MD5 = 9C1673EB0D29577DEFD29F6F591A50AC] (Microsoft Corporation) edputil.dll -> C:\Windows\SysWOW64\edputil.dll -> [2017/03/18 22:58:52 | 000,230,912 | ---- | M | MD5 = D40F3E68DF2FBA81DBED110A320DA25C] (Microsoft Corporation) msls31.dll -> C:\Windows\SysWOW64\msls31.dll -> [2017/03/18 22:58:52 | 000,187,392 | ---- | M | MD5 = 6B24AB50C017CB4D3C059364932EAE91] (Microsoft Corporation) propsys.dll -> C:\Windows\SysWOW64\propsys.dll -> [2017/03/18 22:58:51 | 001,465,360 | ---- | M | MD5 = 91343EAD5198B718ADAA776298D739ED] (Microsoft Corporation) twinapi.appcore.dll -> C:\Windows\SysWOW64\twinapi.appcore.dll -> [2017/03/18 22:58:51 | 001,267,056 | ---- | M | MD5 = 5F856693352174E2805FC1A4E77A46C1] (Microsoft Corporation) msscript.ocx -> C:\Windows\SysWOW64\msscript.ocx -> [2017/03/18 22:58:51 | 000,100,864 | ---- | M | MD5 = 593B5F84C746A4AE7FA47CA70B17555C] (Microsoft Corporation) ntmarta.dll -> C:\Windows\SysWOW64\ntmarta.dll -> [2017/03/18 22:58:50 | 000,152,440 | ---- | M | MD5 = 4DA9C49AE4354EED606C830D2976DEBF] (Microsoft Corporation) secur32.dll -> C:\Windows\SysWOW64\secur32.dll -> [2017/03/18 22:58:50 | 000,023,040 | ---- | M | MD5 = 93F2234DF4FF7DEC8B0A80586880E1B5] (Microsoft Corporation) winhttp.dll -> C:\Windows\SysWOW64\winhttp.dll -> [2017/03/18 22:58:49 | 000,703,576 | ---- | M | MD5 = 567D35838B771E6FD2B2AB772079B9AF] (Microsoft Corporation) schannel.dll -> C:\Windows\SysWOW64\schannel.dll -> [2017/03/18 22:58:49 | 000,397,312 | ---- | M | MD5 = AEA03D4A3CEBB801E788E31C9F3B7B7F] (Microsoft Corporation) cfgmgr32.dll -> C:\Windows\SysWOW64\cfgmgr32.dll -> [2017/03/18 22:58:49 | 000,226,816 | ---- | M | MD5 = 7CA9D4A953111E5F4FCD60B677004775] (Microsoft Corporation) dbgcore.dll -> C:\Windows\SysWOW64\dbgcore.dll -> [2017/03/18 22:58:49 | 000,133,632 | ---- | M | MD5 = 789968BA069BF9E7C0A0D2E8586B437A] (Microsoft Corporation) userenv.dll -> C:\Windows\SysWOW64\userenv.dll -> [2017/03/18 22:58:49 | 000,133,320 | ---- | M | MD5 = 96738514530231A2D674DF69240FDF93] (Microsoft Corporation) mpr.dll -> C:\Windows\SysWOW64\mpr.dll -> [2017/03/18 22:58:49 | 000,086,296 | ---- | M | MD5 = 8119BF07C49AD54F50CD84E8C59E4512] (Microsoft Corporation) srvcli.dll -> C:\Windows\SysWOW64\srvcli.dll -> [2017/03/18 22:58:49 | 000,074,960 | ---- | M | MD5 = 4965E7D5C348D472797067A75E37D0F6] (Microsoft Corporation) devrtl.dll -> C:\Windows\SysWOW64\devrtl.dll -> [2017/03/18 22:58:49 | 000,048,128 | ---- | M | MD5 = E8B5B1C45483732BAFBED623F0997AE3] (Microsoft Corporation) netutils.dll -> C:\Windows\SysWOW64\netutils.dll -> [2017/03/18 22:58:49 | 000,037,256 | ---- | M | MD5 = 1B81927C119C375FBAA24FE0ECBE3DAD] (Microsoft Corporation) wintypes.dll -> C:\Windows\SysWOW64\WinTypes.dll -> [2017/03/18 22:58:48 | 000,856,416 | ---- | M | MD5 = 162F85B2DA1F88AEBF4DDFAE924B13A7] (Microsoft Corporation) fwpuclnt.dll -> C:\Windows\SysWOW64\FWPUCLNT.DLL -> [2017/03/18 22:58:48 | 000,285,184 | ---- | M | MD5 = ED1669628C3C512074C5E2EB5EAF37FE] (Microsoft Corporation) powrprof.dll -> C:\Windows\SysWOW64\powrprof.dll -> [2017/03/18 22:58:48 | 000,276,400 | ---- | M | MD5 = 693BF051E477014B9CAB793DF6F7D9BD] (Microsoft Corporation) cryptnet.dll -> C:\Windows\SysWOW64\cryptnet.dll -> [2017/03/18 22:58:48 | 000,135,168 | ---- | M | MD5 = E0EC3988B927EE30A974CA225C0F0D6A] (Microsoft Corporation) ncrypt.dll -> C:\Windows\SysWOW64\ncrypt.dll -> [2017/03/18 22:58:48 | 000,119,424 | ---- | M | MD5 = ADE3AAB62A87EFBCABD8BFA99089BC9B] (Microsoft Corporation) netapi32.dll -> C:\Windows\SysWOW64\netapi32.dll -> [2017/03/18 22:58:48 | 000,068,776 | ---- | M | MD5 = E8E3044B0FB83A8C6BFE298687920A3E] (Microsoft Corporation) cryptsp.dll -> C:\Windows\SysWOW64\cryptsp.dll -> [2017/03/18 22:58:48 | 000,067,760 | ---- | M | MD5 = 513263CBDF1657C0950F74FD4753AFC2] (Microsoft Corporation) nlaapi.dll -> C:\Windows\SysWOW64\nlaapi.dll -> [2017/03/18 22:58:48 | 000,063,488 | ---- | M | MD5 = A5AE18A0663BFA194FDBD38007CCB07E] (Microsoft Corporation) usermgrcli.dll -> C:\Windows\SysWOW64\usermgrcli.dll -> [2017/03/18 22:58:48 | 000,055,872 | ---- | M | MD5 = D42AED3FAE1FAA59887483A7F3D89182] (Microsoft Corporation) dpapi.dll -> C:\Windows\SysWOW64\dpapi.dll -> [2017/03/18 22:58:48 | 000,013,312 | ---- | M | MD5 = EFAFD51012DD5AEAF113AE3322FCF991] (Microsoft Corporation) windows.staterepository.dll -> C:\Windows\SysWOW64\Windows.StateRepository.dll -> [2017/03/18 22:58:47 | 004,212,624 | ---- | M | MD5 = 21415CB683E3180D26FC22F84C50D03D] (Microsoft Corporation) staterepository.core.dll -> C:\Windows\SysWOW64\StateRepository.Core.dll -> [2017/03/18 22:58:47 | 000,552,664 | ---- | M | MD5 = DB7B353C0812D75DB405E9973B07DE9D] (Microsoft Corporation) webio.dll -> C:\Windows\SysWOW64\webio.dll -> [2017/03/18 22:58:47 | 000,463,360 | ---- | M | MD5 = B232D1C86614CE1A4803F5722CC58B01] (Microsoft Corporation) mlang.dll -> C:\Windows\SysWOW64\mlang.dll -> [2017/03/18 22:58:47 | 000,198,656 | ---- | M | MD5 = 600CD3FFE0E572E920F19179DA08515A] (Microsoft Corporation) rsaenh.dll -> C:\Windows\SysWOW64\rsaenh.dll -> [2017/03/18 22:58:47 | 000,183,448 | ---- | M | MD5 = 6BBB9A6E0633194515130D88FBB000E5] (Microsoft Corporation) ntasn1.dll -> C:\Windows\SysWOW64\ntasn1.dll -> [2017/03/18 22:58:47 | 000,177,200 | ---- | M | MD5 = AD403071DDBAF801ADD9D856CB690997] (Microsoft Corporation) srpapi.dll -> C:\Windows\SysWOW64\srpapi.dll -> [2017/03/18 22:58:47 | 000,122,880 | ---- | M | MD5 = 54D41BAB65FAAB286549756A713E8168] (Microsoft Corporation) bcrypt.dll -> C:\Windows\SysWOW64\bcrypt.dll -> [2017/03/18 22:58:47 | 000,093,536 | ---- | M | MD5 = CF6E2E4763476CB9E70719D40A795C5F] (Microsoft Corporation) samcli.dll -> C:\Windows\SysWOW64\samcli.dll -> [2017/03/18 22:58:47 | 000,070,144 | ---- | M | MD5 = 5D24F14F72789451610351DA8695A731] (Microsoft Corporation) wkscli.dll -> C:\Windows\SysWOW64\wkscli.dll -> [2017/03/18 22:58:47 | 000,057,920 | ---- | M | MD5 = DD2EF0B77269A7F321567CC67A77E168] (Microsoft Corporation) mskeyprotect.dll -> C:\Windows\SysWOW64\mskeyprotect.dll -> [2017/03/18 22:58:47 | 000,049,664 | ---- | M | MD5 = 30B1ACCB324940A82A6ACC2FC0CD1B31] (Microsoft Corporation) dsreg.dll -> C:\Windows\SysWOW64\dsreg.dll -> [2017/03/18 22:58:46 | 000,475,136 | ---- | M | MD5 = DCF387F85BAB27D9295B0FCB40B07FDC] (Microsoft Corporation) wintrust.dll -> C:\Windows\SysWOW64\wintrust.dll -> [2017/03/18 22:58:46 | 000,276,880 | ---- | M | MD5 = 1D7B82E68011E82F152324A3B9F71D40] (Microsoft Corporation) ncryptsslp.dll -> C:\Windows\SysWOW64\ncryptsslp.dll -> [2017/03/18 22:58:46 | 000,103,848 | ---- | M | MD5 = 104008DDA30E110DD9CE41CD54FB5303] (Microsoft Corporation) samlib.dll -> C:\Windows\SysWOW64\samlib.dll -> [2017/03/18 22:58:46 | 000,084,992 | ---- | M | MD5 = 9661E2E8F0AECE9EFFA37BD2B1B6839C] (Microsoft Corporation) wldp.dll -> C:\Windows\SysWOW64\wldp.dll -> [2017/03/18 22:58:46 | 000,059,456 | ---- | M | MD5 = 7B2CAE301605ED35DFA9C9DD4A30AB13] (Microsoft Corporation) msasn1.dll -> C:\Windows\SysWOW64\msasn1.dll -> [2017/03/18 22:58:46 | 000,049,656 | ---- | M | MD5 = 83F8BDD4E9B78710A2CC65E1645FBC6F] (Microsoft Corporation) kernel.appcore.dll -> C:\Windows\SysWOW64\kernel.appcore.dll -> [2017/03/18 22:58:46 | 000,047,096 | ---- | M | MD5 = 1A22A5A03EC68ABE1B48BB8E7019B9A8] (Microsoft Corporation) winmm.dll -> C:\Windows\SysWOW64\winmm.dll -> [2017/03/18 22:58:45 | 000,135,440 | ---- | M | MD5 = 77B8046E9C30807421F80D10272E8059] (Microsoft Corporation) winmmbase.dll -> C:\Windows\SysWOW64\winmmbase.dll -> [2017/03/18 22:58:45 | 000,129,736 | ---- | M | MD5 = F24F5FEA6AC7A765FD17F32554FEDFD1] (Microsoft Corporation) napinsp.dll -> C:\Windows\SysWOW64\NapiNSP.dll -> [2017/03/18 22:58:45 | 000,054,784 | ---- | M | MD5 = B3F21CE168CAA3AE19144664B6276DD2] (Microsoft Corporation) rasadhlp.dll -> C:\Windows\SysWOW64\rasadhlp.dll -> [2017/03/18 22:58:45 | 000,012,800 | ---- | M | MD5 = 4F9FF13A61D3EDD8FCDB74427E6A8092] (Microsoft Corporation) ntdll.dll -> C:\Windows\SysWOW64\ntdll.dll -> [2017/03/18 22:58:44 | 001,620,368 | ---- | M | MD5 = 50741B3F2D7DEBF5D2BED63D88404029] (Microsoft Corporation) ucrtbase.dll -> C:\Windows\SysWOW64\ucrtbase.dll -> [2017/03/18 22:58:44 | 001,150,776 | ---- | M | MD5 = CA7459D6350E48572117E1223A0AF91E] (Microsoft Corporation) rpcrt4.dll -> C:\Windows\SysWOW64\rpcrt4.dll -> [2017/03/18 22:58:44 | 000,787,712 | ---- | M | MD5 = ED758C8140AC5651A5DB9F13C8175EC0] (Microsoft Corporation) msvcrt.dll -> C:\Windows\SysWOW64\msvcrt.dll -> [2017/03/18 22:58:44 | 000,769,608 | ---- | M | MD5 = EAD17ED5B663B8F60BE41361EBA9BD4A] (Microsoft Corporation) dnsapi.dll -> C:\Windows\SysWOW64\dnsapi.dll -> [2017/03/18 22:58:44 | 000,508,344 | ---- | M | MD5 = 3F969D5ADEAB3284ABD500B37D74A8F8] (Microsoft Corporation) msvcp_win.dll -> C:\Windows\SysWOW64\msvcp_win.dll -> [2017/03/18 22:58:44 | 000,491,232 | ---- | M | MD5 = 91FFF55D746B30222769DAD56D0D4ADF] (Microsoft Corporation) ws2_32.dll -> C:\Windows\SysWOW64\ws2_32.dll -> [2017/03/18 22:58:44 | 000,415,864 | ---- | M | MD5 = 11CAC68A80884F593F41CA68EED61F86] (Microsoft Corporation) msvcp110_win.dll -> C:\Windows\SysWOW64\msvcp110_win.dll -> [2017/03/18 22:58:44 | 000,411,184 | ---- | M | MD5 = 8CD9F692C408424BD7DA63C16E6D0855] (Microsoft Corporation) textinputframework.dll -> C:\Windows\SysWOW64\TextInputFramework.dll -> [2017/03/18 22:58:44 | 000,401,920 | ---- | M | MD5 = 1E76E5EFF7EFE70DA66C7835F464C06D] (Microsoft Corporation) mswsock.dll -> C:\Windows\SysWOW64\mswsock.dll -> [2017/03/18 22:58:44 | 000,305,568 | ---- | M | MD5 = AAFC89AA6DABC174388173E33B25100F] (Microsoft Corporation) sechost.dll -> C:\Windows\SysWOW64\sechost.dll -> [2017/03/18 22:58:44 | 000,257,792 | ---- | M | MD5 = 5D7D214D287AA8B50FDD457767CEBF5A] (Microsoft Corporation) iphlpapi.dll -> C:\Windows\SysWOW64\IPHLPAPI.DLL -> [2017/03/18 22:58:44 | 000,187,544 | ---- | M | MD5 = 47BE70A28268DD69577152E9AA135A6D] (Microsoft Corporation) sspicli.dll -> C:\Windows\SysWOW64\sspicli.dll -> [2017/03/18 22:58:44 | 000,124,544 | ---- | M | MD5 = 564DCD07978A80B1789CAA12DB6453CD] (Microsoft Corporation) dhcpcsvc.dll -> C:\Windows\SysWOW64\dhcpcsvc.dll -> [2017/03/18 22:58:44 | 000,062,976 | ---- | M | MD5 = 3118641261EB2FC27E35C6078ED2C7CD] (Microsoft Corporation) profapi.dll -> C:\Windows\SysWOW64\profapi.dll -> [2017/03/18 22:58:44 | 000,059,456 | ---- | M | MD5 = 512C954CAE6E12DEE03307A20DF10F5E] (Microsoft Corporation) dhcpcsvc6.dll -> C:\Windows\SysWOW64\dhcpcsvc6.dll -> [2017/03/18 22:58:44 | 000,057,344 | ---- | M | MD5 = 579137FC1F74E03F97A53D89F72A5E5A] (Microsoft Corporation) cryptbase.dll -> C:\Windows\SysWOW64\cryptbase.dll -> [2017/03/18 22:58:44 | 000,031,592 | ---- | M | MD5 = 276B8A6686954A0BF9CCC46676DE113D] (Microsoft Corporation) msxml3.dll -> C:\Windows\SysWOW64\msxml3.dll -> [2017/03/18 22:58:42 | 001,565,184 | ---- | M | MD5 = 00765FE50B612BCA20431140E7A32FFF] (Microsoft Corporation) winrnr.dll -> C:\Windows\SysWOW64\winrnr.dll -> [2017/03/18 22:58:42 | 000,023,040 | ---- | M | MD5 = 8F6467AB8B4D7325B9A76A80169EBCD2] (Microsoft Corporation) clbcatq.dll -> C:\Windows\SysWOW64\clbcatq.dll -> [2017/03/18 22:58:41 | 000,521,728 | ---- | M | MD5 = F351C09105FB17B4BD79C029DF6EC313] (Microsoft Corporation) sfc_os.dll -> C:\Windows\SysWOW64\sfc_os.dll -> [2017/03/18 22:58:40 | 000,045,056 | ---- | M | MD5 = 18EE6C99D6D04A4A8D1E55D9B5D79765] (Microsoft Corporation) setupapi.dll -> C:\Windows\SysWOW64\setupapi.dll -> [2017/03/18 22:58:39 | 004,330,920 | ---- | M | MD5 = C311627682680927CC237431A86C9E56] (Microsoft Corporation) apphelp.dll -> C:\Windows\SysWOW64\apphelp.dll -> [2017/03/18 22:58:39 | 000,584,192 | ---- | M | MD5 = 1B6853F55BE06F631EBE0565562E7717] (Microsoft Corporation) advapi32.dll -> C:\Windows\SysWOW64\advapi32.dll -> [2017/03/18 22:58:39 | 000,480,920 | ---- | M | MD5 = 4957EFF7C1AE147F56995976B7EFF57D] (Microsoft Corporation) pcacli.dll -> C:\Windows\SysWOW64\pcacli.dll -> [2017/03/18 22:58:39 | 000,036,352 | ---- | M | MD5 = 52B7E82F963B97627D45EC3ACC8A72B1] (Microsoft Corporation) avrt.dll -> C:\Windows\SysWOW64\avrt.dll -> [2017/03/18 22:58:39 | 000,028,992 | ---- | M | MD5 = 5368EB21E6FF2F9C35E4332F0435ADF8] (Microsoft Corporation) psapi.dll -> C:\Windows\SysWOW64\psapi.dll -> [2017/03/18 22:58:39 | 000,017,112 | ---- | M | MD5 = 8A03D0BF444F6D37C35A48AF52C68061] (Microsoft Corporation) winnsi.dll -> C:\Windows\SysWOW64\winnsi.dll -> [2017/03/18 22:57:35 | 000,026,912 | ---- | M | MD5 = F75426C2A6E35F0350212E34614022BD] (Microsoft Corporation) nsi.dll -> C:\Windows\SysWOW64\nsi.dll -> [2017/03/18 22:57:35 | 000,020,216 | ---- | M | MD5 = DB2D1E3C24D371F020F45BD7669AA573] (Microsoft Corporation) msvcr90.dll -> C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9279_none_50939ec6bcb7c97c\msvcr90.dll -> [2017/03/18 22:56:51 | 000,653,976 | ---- | M | MD5 = C6657BBB7ADEC8E311D1CACC6D24F6B9] (Microsoft Corporation) msvcp90.dll -> C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.9279_none_50939ec6bcb7c97c\msvcp90.dll -> [2017/03/18 22:56:51 | 000,570,520 | ---- | M | MD5 = 77548AC1353D52A9C481F6953AA6EDB1] (Microsoft Corporation) easeuseverysynccache.exe -> C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EaseUSEverySyncCache.exe -> [2015/10/19 15:45:00 | 000,992,808 | ---- | M | MD5 = CE851F0108F799A58A8F112C0CE3F1B5] () mdnsnsp.dll -> C:\Program Files (x86)\Bonjour\mdnsNSP.dll -> [2015/08/12 16:03:38 | 000,122,128 | ---- | M | MD5 = F6D02735DE16705C1EBE6429592CD355] (Apple Inc.) d3dref9.dll -> C:\Windows\SysWOW64\d3dref9.dll -> [2015/02/02 19:25:58 | 000,398,480 | ---- | M | MD5 = B09677C0920CFF7157ACB256FAB54B01] (Microsoft Corporation) d3dx9_43.dll -> C:\Windows\SysWOW64\D3DX9_43.dll -> [2014/07/22 13:25:20 | 001,998,168 | ---- | M | MD5 = 86E39E9161C3D930D93822F1563C280D] (Microsoft Corporation) msvcr110.dll -> C:\Windows\SysWOW64\msvcr110.dll -> [2012/11/06 03:20:52 | 000,875,472 | ---- | M | MD5 = 4BA25D2CBE1587A841DCFB8C8C4A6EA6] (Microsoft Corporation) msvcp110.dll -> C:\Windows\SysWOW64\msvcp110.dll -> [2012/11/06 03:20:52 | 000,535,008 | ---- | M | MD5 = 3E29914113EC4B968BA5EB1F6D194A0A] (Microsoft Corporation) mfc110u.dll -> C:\Windows\SysWOW64\mfc110u.dll -> [2012/07/26 19:08:06 | 004,446,152 | ---- | M | MD5 = B820D8061DAA7887962A12B1F66A003B] (Microsoft Corporation) mfc110.dll -> C:\Windows\SysWOW64\mfc110.dll -> [2012/07/26 19:08:06 | 004,411,848 | ---- | M | MD5 = 9202F8F8370AF3ECAC12B86B9584B0A6] (Microsoft Corporation) [Win32 Services - All] 64bit-(WRSVC) [Auto | Running] -> C:\Program Files\WWaJDEbu\OIZBGlcF.exe -> [2017/06/09 06:23:03 | 000,993,080 | ---- | M | Unable to obtain MD5] (Webroot) 64bit-(GsServer) [On_Demand | Stopped] -> C:\Program Files\Siber Systems\GoodSync\gs-server.exe -> [2017/06/01 17:30:20 | 007,191,776 | ---- | M | MD5 = E724C36D0F5F8D0251824EAAE8655BA0] () 64bit-(DbxSvc) [Auto | Stopped] -> C:\Windows\SysNative\DbxSvc.exe -> [2017/05/26 16:58:32 | 000,048,944 | ---- | M | MD5 = 18FCD66BDCCA11DF03BDC3497E3C8055] (Dropbox, Inc.) 64bit-(avast! Firewall) [On_Demand | Stopped] -> C:\Program Files\AVAST Software\Avast\afwServ.exe -> [2017/05/25 14:05:31 | 000,310,496 | ---- | M | MD5 = FCE853F74DED74D58D2D5C477429F36A] (AVAST Software) 64bit-(RtkAudioService) [On_Demand | Stopped] -> C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe -> [2017/05/25 02:00:30 | 000,324,576 | ---- | M | MD5 = 27F345936EC059C2C510AB564B3E15BA] (Realtek Semiconductor) 64bit-(Disc Soft Pro Bus Service) [On_Demand | Stopped] -> C:\Program Files\DAEMON Tools Pro\DiscSoftBusServicePro.exe -> [2017/05/17 10:27:12 | 001,841,344 | ---- | M | MD5 = 3C7D233F41C1552B7840326B6215CB0F] (Disc Soft Ltd) 64bit-(ose64) [On_Demand | Stopped] -> c:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE -> [2017/05/14 16:05:32 | 000,257,224 | ---- | M | MD5 = 2E66B6C7A68D5A72870AE7C4AFC837BD] (Microsoft Corporation) 64bit-(ClickToRunSvc) [Auto | Stopped] -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe -> [2017/05/14 16:04:58 | 003,971,264 | ---- | M | MD5 = F6ED2A874E4FC4FC95F544088F0523F4] (Microsoft Corporation) 64bit-(Seed4.Me Service) [On_Demand | Stopped] -> C:\Program Files\Seed4.Me VPN\bin\Seed4.Me_service.exe -> [2017/05/13 19:21:58 | 003,922,768 | ---- | M | MD5 = 11F5E8B48106C91F432762BB7AF6FB6A] (Seed4.Me) 64bit-(avast! Antivirus) [Auto | Stopped] -> C:\Program Files\AVAST Software\Avast\AvastSvc.exe -> [2017/05/12 03:52:07 | 000,263,304 | ---- | M | MD5 = D961A7C05A76302E782B1B0CF6546BA7] (AVAST Software) 64bit-(aswbIDSAgent) [On_Demand | Stopped] -> C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe -> [2017/05/12 03:51:44 | 007,346,208 | ---- | M | MD5 = A760C2AFBA1A71E0F7310A6E900CB0E4] (AVAST Software s.r.o.) 64bit-(MBAMService) [On_Demand | Stopped] -> C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe -> [2017/05/09 17:40:18 | 004,470,736 | ---- | M | MD5 = D76E56108E6482905D3FAEA0649919E4] (Malwarebytes) 64bit-(iPod Service) [On_Demand | Stopped] -> C:\Program Files\iPod\bin\iPodService.exe -> [2017/05/09 04:02:44 | 000,689,464 | ---- | M | MD5 = 8A2A79444C72D6342976724F6908495B] (Apple Inc.) 64bit-(TeraCopyService) [On_Demand | Stopped] -> C:\Program Files\TeraCopy\TeraCopyService.exe -> [2017/05/05 12:02:42 | 000,110,416 | ---- | M | MD5 = 1D4F08B2531E169864B3AFFF52BE4574] (Code Sector) 64bit-(VoodooShieldService) [On_Demand | Stopped] -> C:\Program Files\VoodooShield\VoodooShieldService.exe -> [2017/05/01 12:35:04 | 000,129,360 | ---- | M | MD5 = 9C8F57D022F39AD1FF1B07C51A20B562] (VoodooSoft, LLC ) 64bit-(CoreMessagingRegistrar) [Unknown | Running] -> C:\Windows\SysNative\CoreMessaging.dll -> [2017/04/28 03:05:28 | 000,923,040 | ---- | M | MD5 = D734EBC7E66D82D543C874ED1FE9B40D] (Microsoft Corporation) 64bit-(ClipSVC) [Unknown | Stopped] -> C:\Windows\SysNative\ClipSVC.dll -> [2017/04/28 02:58:30 | 000,872,472 | ---- | M | MD5 = A5CA2992D42DB271DF933F49676E57DE] (Microsoft Corporation) 64bit-(RpcSs) [Unknown | Running] -> C:\Windows\SysNative\rpcss.dll -> [2017/04/28 02:03:52 | 001,085,440 | ---- | M | MD5 = 0E79A4C76CAAA0CFE9CA42C13E5AA086] (Microsoft Corporation) 64bit-(DcomLaunch) [Unknown | Running] -> C:\Windows\SysNative\rpcss.dll -> [2017/04/28 02:03:52 | 001,085,440 | ---- | M | MD5 = 0E79A4C76CAAA0CFE9CA42C13E5AA086] (Microsoft Corporation) 64bit-(TokenBroker) [On_Demand | Stopped] -> C:\Windows\SysNative\TokenBroker.dll -> [2017/04/28 01:58:36 | 001,054,208 | ---- | M | MD5 = C83505A5CC15E39D6C6D7B3C20187E5C] (Microsoft Corporation) 64bit-(AppXSvc) [On_Demand | Stopped] -> C:\Windows\SysNative\AppXDeploymentServer.dll -> [2017/04/28 01:57:51 | 002,800,128 | ---- | M | MD5 = EAE1B6D86D661BFC494A3975583F722C] (Microsoft Corporation) 64bit-(RetailDemo) [On_Demand | Stopped] -> C:\Windows\SysNative\RDXService.dll -> [2017/04/26 19:34:26 | 000,647,168 | ---- | M | MD5 = A12D167F73C3E285AC623BCA62B3A8BC] (Microsoft Corporation) 64bit-(EntAppSvc) [On_Demand | Stopped] -> C:\Windows\SysNative\EnterpriseAppMgmtSvc.dll -> [2017/04/26 19:34:26 | 000,301,056 | ---- | M | MD5 = CA966CED8970A60FB00A3592564EF093] (Microsoft Corporation) 64bit-(Audiosrv) [Auto | Stopped] -> C:\Windows\SysNative\audiosrv.dll -> [2017/04/26 19:34:25 | 001,356,800 | ---- | M | MD5 = DCD20FAF0485C59032397DA2F93746AE] (Microsoft Corporation) 64bit-(DoSvc) [Auto | Stopped] -> C:\Windows\SysNative\dosvc.dll -> [2017/04/26 19:34:25 | 001,295,872 | ---- | M | MD5 = 0A4A4493301996786CE385E7DEC71547] (Microsoft Corporation) 64bit-(StorSvc) [On_Demand | Stopped] -> C:\Windows\SysNative\StorSvc.dll -> [2017/04/26 19:34:25 | 000,750,080 | ---- | M | MD5 = 212CB512B785E218667CCA56C4BFD71D] (Microsoft Corporation) 64bit-(UsoSvc) [On_Demand | Stopped] -> C:\Windows\SysNative\usocore.dll -> [2017/04/26 19:34:25 | 000,681,984 | ---- | M | MD5 = C71F447901864A61698B9FA2CF538146] (Microsoft Corporation) 64bit-(AudioEndpointBuilder) [Auto | Stopped] -> C:\Windows\SysNative\AudioEndpointBuilder.dll -> [2017/04/26 19:34:25 | 000,624,640 | ---- | M | MD5 = 8FF48F1C894EDC6AA55CCF01AE1338EC] (Microsoft Corporation) 64bit-(wuauserv) [Unknown | Stopped] -> C:\Windows\SysNative\wuaueng.dll -> [2017/04/26 19:34:21 | 002,443,776 | ---- | M | MD5 = 05BEDBBEEAAC22F98FCA529FAC659582] (Microsoft Corporation) 64bit-({0CBD4F48-3751-475D-BE88-4F271385B672}) [On_Demand | Stopped] -> C:\Program Files\Shadow Defender\Service.exe -> [2017/04/22 03:07:45 | 000,130,784 | ---- | M | MD5 = F00E5195D8BDD34244F6CE5408D18100] (SHADOWDEFENDER.COM) 64bit-(imdsksvc) [On_Demand | Stopped] -> C:\Windows\SysNative\imdsksvc.exe -> [2017/04/12 11:03:08 | 000,022,024 | ---- | M | MD5 = C736CD6ADDDE98AEC8D1D3C0C4E5BAE6] (Olof Lagerkvist) 64bit-(Apple Mobile Device Service) [Auto | Stopped] -> C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe -> [2017/04/03 08:52:02 | 000,083,768 | ---- | M | MD5 = 7DEFAE8665BCEDDC2C9983138D69D7A5] (Apple Inc.) 64bit-(CG6Service) [On_Demand | Stopped] -> C:\Program Files\CyberGhost 6\CyberGhost.Service.exe -> [2017/03/22 09:39:52 | 000,087,088 | ---- | M | MD5 = A4574046504E8EBD017CE6D0AA3B9034] (CyberGhost S.R.L) 64bit-(UmRdpService) [Disabled | Stopped] -> C:\Windows\SysNative\umrdp.dll -> [2017/03/20 07:11:48 | 000,274,944 | ---- | M | MD5 = FBEF4641E3E08A03CA84AF5C393CA86B] (Microsoft Corporation) 64bit-(SensrSvc) [On_Demand | Stopped] -> C:\Windows\SysNative\sensrsvc.dll -> [2017/03/20 07:11:47 | 000,205,824 | ---- | M | MD5 = 9B3744C26F206F9F90713D93A93C8B6E] (Microsoft Corporation) 64bit-(Fax) [Disabled | Stopped] -> C:\Windows\SysNative\FXSSVC.exe -> [2017/03/18 23:00:03 | 000,637,440 | ---- | M | MD5 = ECC5AEFEA31F1A078E954305B8CA6373] (Microsoft Corporation) 64bit-(wbengine) [On_Demand | Stopped] -> C:\WINDOWS\SysNative\wbengine.exe -> [2017/03/18 23:00:01 | 001,528,832 | ---- | M | MD5 = EA0524A2A01792796EC80AE2FE08307A] (Microsoft Corporation) 64bit-(WalletService) [On_Demand | Stopped] -> C:\Windows\SysNative\WalletService.dll -> [2017/03/18 22:59:53 | 000,428,032 | ---- | M | MD5 = A0957CBC1C054A87EE7A65A994102A96] (Microsoft Corporation) 64bit-(AppReadiness) [On_Demand | Stopped] -> C:\Windows\SysNative\AppReadiness.dll -> [2017/03/18 22:59:52 | 000,585,216 | ---- | M | MD5 = 82432C4D8E83A94C7644A61697113B4A] (Microsoft Corporation) 64bit-(BDESVC) [Unknown | Stopped] -> C:\Windows\SysNative\bdesvc.dll -> [2017/03/18 22:59:52 | 000,385,536 | ---- | M | MD5 = C3B27514035315E3C1FCE64E69E253ED] (Microsoft Corporation) 64bit-(WPDBusEnum) [Disabled | Stopped] -> C:\Windows\SysNative\wpdbusenum.dll -> [2017/03/18 22:59:50 | 000,086,016 | ---- | M | MD5 = 2AD9CC8445F0E1A8900A9DE123643CD2] (Microsoft Corporation) 64bit-(SDRSVC) [On_Demand | Stopped] -> C:\Windows\SysNative\sdrsvc.dll -> [2017/03/18 22:59:42 | 000,145,920 | ---- | M | MD5 = 847F01FB8504425BB255856A14278A86] (Microsoft Corporation) 64bit-(wercplsupport) [On_Demand | Stopped] -> C:\Windows\SysNative\wercplsupport.dll -> [2017/03/18 22:58:35 | 000,091,648 | ---- | M | MD5 = BA78F20F7FD7709EA3AAAD91F8535EDA] (Microsoft Corporation) 64bit-(TermService) [Disabled | Stopped] -> C:\Windows\SysNative\termsrv.dll -> [2017/03/18 22:58:33 | 000,992,256 | ---- | M | MD5 = 0B5C6D1683CDE89B3488326C60EA6EF2] (Microsoft Corporation) 64bit-(LSM) [Unknown | Running] -> C:\Windows\SysNative\lsm.dll -> [2017/03/18 22:58:33 | 000,706,048 | ---- | M | MD5 = A69A59CD52D26443FF728FD52283598C] (Microsoft Corporation) 64bit-(SessionEnv) [Disabled | Stopped] -> C:\Windows\SysNative\SessEnv.dll -> [2017/03/18 22:58:33 | 000,385,536 | ---- | M | MD5 = 043D7B39E693C610036BD56DF30EF440] (Microsoft Corporation) 64bit-(shpamsvc) [Disabled | Stopped] -> C:\Windows\SysNative\Windows.SharedPC.AccountManager.dll -> [2017/03/18 22:58:32 | 000,199,168 | ---- | M | MD5 = 1F73E6C66E7D9ED4FD58F9238D27430E] (Microsoft Corporation) 64bit-(NcdAutoSetup) [On_Demand | Stopped] -> C:\Windows\SysNative\NcdAutoSetup.dll -> [2017/03/18 22:58:29 | 000,088,064 | ---- | M | MD5 = 932E2E43078A3D786A46A5428F21B314] (Microsoft Corporation) 64bit-(ShellHWDetection) [Auto | Stopped] -> C:\Windows\SysNative\shsvcs.dll -> [2017/03/18 22:58:27 | 000,612,864 | ---- | M | MD5 = 4293E11951DEAAFB3924AB1DAB1FAC08] (Microsoft Corporation) 64bit-(Themes) [Auto | Stopped] -> C:\Windows\SysNative\themeservice.dll -> [2017/03/18 22:58:25 | 000,069,632 | ---- | M | MD5 = 6568EF1B30101979107055B7E515EE58] (Microsoft Corporation) 64bit-(Spooler) [Auto | Stopped] -> C:\Windows\SysNative\spoolsv.exe -> [2017/03/18 22:58:24 | 000,757,760 | ---- | M | MD5 = 29D813B5D84BC2C26BBC607CAA57A675] (Microsoft Corporation) 64bit-(stisvc) [Auto | Stopped] -> C:\Windows\SysNative\wiaservc.dll -> [2017/03/18 22:58:24 | 000,634,368 | ---- | M | MD5 = F83F43CD328E6CEEAAC27612F3EB1FF5] (Microsoft Corporation) 64bit-(WiaRpc) [On_Demand | Stopped] -> C:\Windows\SysNative\wiarpc.dll -> [2017/03/18 22:58:24 | 000,081,920 | ---- | M | MD5 = 2DEB40D6837956CE08A8F9EB3ECA5A01] (Microsoft Corporation) 64bit-(TapiSrv) [Disabled | Stopped] -> C:\Windows\SysNative\tapisrv.dll -> [2017/03/18 22:58:23 | 000,306,688 | ---- | M | MD5 = C1C6A802C2A9A57029D4347E251F4D18] (Microsoft Corporation) 64bit-(CryptSvc) [Auto | Running] -> C:\Windows\SysNative\cryptsvc.dll -> [2017/03/18 22:58:22 | 000,094,720 | ---- | M | MD5 = 1F7F1A15B807BC7B241BB2FEEA79BC92] (Microsoft Corporation) 64bit-(diagnosticshub.standardcollector.service) [On_Demand | Stopped] -> C:\Windows\SysNative\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe -> [2017/03/18 22:58:22 | 000,086,528 | ---- | M | MD5 = 5DF493C7954890EEC65CC2A21D479F76] (Microsoft Corporation) 64bit-(wlidsvc) [On_Demand | Stopped] -> C:\Windows\SysNative\wlidsvc.dll -> [2017/03/18 22:58:21 | 002,155,008 | ---- | M | MD5 = 2393C4DB3DF3D19B0B920AD607098E79] (Microsoft Corporation) 64bit-(XblGameSave) [On_Demand | Stopped] -> C:\Windows\SysNative\XblGameSave.dll -> [2017/03/18 22:58:21 | 001,135,104 | ---- | M | MD5 = A8BD191F46CC58E45637CB3E262CF0F2] (Microsoft Corporation) 64bit-(WSearch) [Disabled | Stopped] -> C:\WINDOWS\SysNative\SearchIndexer.exe -> [2017/03/18 22:58:21 | 000,933,376 | ---- | M | MD5 = 1D91A91549CA9715662DC69E440DAF17] (Microsoft Corporation) 64bit-(WinHttpAutoProxySvc) [On_Demand | Stopped] -> C:\Windows\SysNative\winhttp.dll -> [2017/03/18 22:58:21 | 000,871,960 | ---- | M | MD5 = 61F0D6574577499FB43D9F4870B08A7F] (Microsoft Corporation) 64bit-(RasMan) [On_Demand | Stopped] -> C:\Windows\SysNative\rasmans.dll -> [2017/03/18 22:58:21 | 000,871,936 | ---- | M | MD5 = AC6A0AE3B33EE783717820458882F91C] (Microsoft Corporation) 64bit-(SmsRouter) [Unknown | Stopped] -> C:\Windows\SysNative\SmsRouterSvc.dll -> [2017/03/18 22:58:21 | 000,582,656 | ---- | M | MD5 = CB001810FD0C56F1D57229D023A84AE8] (Microsoft Corporation) 64bit-(WFDSConMgrSvc) [On_Demand | Stopped] -> C:\Windows\SysNative\WFDSConMgrSvc.dll -> [2017/03/18 22:58:21 | 000,555,008 | ---- | M | MD5 = 51D61CA3CED9A0C4E5501EEDBD48039F] (Microsoft Corporation) 64bit-(ProfSvc) [Auto | Running] -> C:\Windows\SysNative\profsvc.dll -> [2017/03/18 22:58:21 | 000,413,696 | ---- | M | MD5 = 56A7713DE64B16FB309D132E88FDB098] (Microsoft Corporation) 64bit-(NcbService) [On_Demand | Stopped] -> C:\Windows\SysNative\ncbservice.dll -> [2017/03/18 22:58:21 | 000,334,848 | ---- | M | MD5 = 9B3C6582CFB91BA2A04B1D06D8E2FB98] (Microsoft Corporation) 64bit-(LanmanServer) [Disabled | Stopped] -> C:\Windows\SysNative\srvsvc.dll -> [2017/03/18 22:58:21 | 000,303,616 | ---- | M | MD5 = 0DD3C5101AE1AA7E28B4CE5AB190C261] (Microsoft Corporation) 64bit-(LanmanWorkstation) [Auto | Running] -> C:\Windows\SysNative\wkssvc.dll -> [2017/03/18 22:58:21 | 000,272,384 | ---- | M | MD5 = B82D6C634638534E41748FCEC909E55D] (Microsoft Corporation) 64bit-(Power) [Auto | Running] -> C:\Windows\SysNative\umpo.dll -> [2017/03/18 22:58:21 | 000,148,992 | ---- | M | MD5 = 456DEA8B86DD28A2BAD65DC0F05B659E] (Microsoft Corporation) 64bit-(ALG) [On_Demand | Stopped] -> C:\Windows\SysNative\alg.exe -> [2017/03/18 22:58:21 | 000,092,672 | ---- | M | MD5 = F485CA5559DB37A4882467A4F7D58BEA] (Microsoft Corporation) 64bit-(WpnUserService_32722) [Unknown | Stopped] -> C:\Windows\SysNative\svchost.exe -> [2017/03/18 22:58:21 | 000,047,664 | ---- | M | MD5 = 3120B24060924F9B94182A1432B2D7F9] (Microsoft Corporation) 64bit-(UserDataSvc_32722) [Unknown | Stopped] -> C:\Windows\SysNative\svchost.exe -> [2017/03/18 22:58:21 | 000,047,664 | ---- | M | MD5 = 3120B24060924F9B94182A1432B2D7F9] (Microsoft Corporation) 64bit-(UnistoreSvc_32722) [Unknown | Stopped] -> C:\Windows\SysNative\svchost.exe -> [2017/03/18 22:58:21 | 000,047,664 | ---- | M | MD5 = 3120B24060924F9B94182A1432B2D7F9] (Microsoft Corporation) 64bit-(PimIndexMaintenanceSvc_32722) [Unknown | Stopped] -> C:\Windows\SysNative\svchost.exe -> [2017/03/18 22:58:21 | 000,047,664 | ---- | M | MD5 = 3120B24060924F9B94182A1432B2D7F9] (Microsoft Corporation) 64bit-(OneSyncSvc_32722) [Auto | Stopped] -> C:\Windows\SysNative\svchost.exe -> [2017/03/18 22:58:21 | 000,047,664 | ---- | M | MD5 = 3120B24060924F9B94182A1432B2D7F9] (Microsoft Corporation) 64bit-(MessagingService_32722) [On_Demand | Stopped] -> C:\Windows\SysNative\svchost.exe -> [2017/03/18 22:58:21 | 000,047,664 | ---- | M | MD5 = 3120B24060924F9B94182A1432B2D7F9] (Microsoft Corporation) 64bit-(DevicesFlowUserSvc_32722) [Unknown | Stopped] -> C:\Windows\SysNative\svchost.exe -> [2017/03/18 22:58:21 | 000,047,664 | ---- | M | MD5 = 3120B24060924F9B94182A1432B2D7F9] (Microsoft Corporation) 64bit-(CDPUserSvc_32722) [Auto | Stopped] -> C:\Windows\SysNative\svchost.exe -> [2017/03/18 22:58:21 | 000,047,664 | ---- | M | MD5 = 3120B24060924F9B94182A1432B2D7F9] (Microsoft Corporation) 64bit-(lmhosts) [Auto | Running] -> C:\Windows\SysNative\lmhsvc.dll -> [2017/03/18 22:58:21 | 000,026,112 | ---- | M | MD5 = AE561CB0813D4DFA7D3E4471B2B70F5F] (Microsoft Corporation) 64bit-(COMSysApp) [On_Demand | Stopped] -> C:\WINDOWS\SysNative\dllhost.exe -> [2017/03/18 22:58:21 | 000,021,408 | ---- | M | MD5 = 2D29C0AFCC8225AFF6637F7362C22960] (Microsoft Corporation) 64bit-(XboxNetApiSvc) [On_Demand | Stopped] -> C:\Windows\SysNative\XboxNetApiSvc.dll -> [2017/03/18 22:58:18 | 001,067,008 | ---- | M | MD5 = 8489AA1A36074B3487BFDA8A9FDBAB3D] (Microsoft Corporation) 64bit-(iphlpsvc) [Auto | Stopped] -> C:\Windows\SysNative\iphlpsvc.dll -> [2017/03/18 22:58:18 | 000,996,864 | ---- | M | MD5 = 57A93FCF94FAB8C2161335E56C81CD16] (Microsoft Corporation) 64bit-(tiledatamodelsvc) [Auto | Running] -> C:\Windows\SysNative\tileobjserver.dll -> [2017/03/18 22:58:18 | 000,630,272 | ---- | M | MD5 = 8949EED671F531E7B4A0FD7333CCC125] (Microsoft Corporation) 64bit-(embeddedmode) [On_Demand | Stopped] -> C:\Windows\SysNative\embeddedmodesvc.dll -> [2017/03/18 22:58:18 | 000,141,824 | ---- | M | MD5 = 0910A2954D7053537495DFF981177ACC] (Microsoft Corporation) 64bit-(dmwappushservice) [Disabled | Stopped] -> C:\Windows\SysNative\dmwappushsvc.dll -> [2017/03/18 22:58:18 | 000,055,296 | ---- | M | MD5 = 32C76DFE2586EBECFFA4112E9196591C] (Microsoft Corporation) 64bit-(SEMgrSvc) [On_Demand | Stopped] -> C:\Windows\SysNative\SEMgrSvc.dll -> [2017/03/18 22:58:17 | 001,191,424 | ---- | M | MD5 = 77FB9BE8EDDCC999D09F2B1A7878A2A9] (Microsoft Corporation) 64bit-(PhoneSvc) [On_Demand | Stopped] -> C:\Windows\SysNative\PhoneService.dll -> [2017/03/18 22:58:17 | 000,772,096 | ---- | M | MD5 = B730E963A31B73938A76D7B80666D60D] (Microsoft Corporation) 64bit-(DmEnrollmentSvc) [On_Demand | Stopped] -> C:\Windows\SysNative\Windows.Internal.Management.dll -> [2017/03/18 22:58:17 | 000,536,064 | ---- | M | MD5 = 626E3564A7588139DE2367E14F8CAAB2] (Microsoft Corporation) 64bit-(RmSvc) [Unknown | Stopped] -> C:\Windows\SysNative\RMapi.dll -> [2017/03/18 22:58:17 | 000,152,576 | ---- | M | MD5 = D31B2CD9458D2E212A5F24D56D2FB8D5] (Microsoft Corporation) 64bit-(XblAuthManager) [On_Demand | Stopped] -> C:\Windows\SysNative\XblAuthManager.dll -> [2017/03/18 22:58:16 | 001,013,248 | ---- | M | MD5 = 8C7C5945C3545CA767BE111D78C15314] (Microsoft Corporation) 64bit-(SharedAccess) [Disabled | Stopped] -> C:\Windows\SysNative\ipnathlp.dll -> [2017/03/18 22:58:13 | 000,537,600 | ---- | M | MD5 = 87B083252816171A17F833CBCB7AA85E] (Microsoft Corporation) 64bit-(WpnService) [Auto | Stopped] -> C:\Windows\SysNative\wpnservice.dll -> [2017/03/18 22:58:13 | 000,276,480 | ---- | M | MD5 = 3369EF007E43B88EAC8F1789B43D4393] (Microsoft Corporation) 64bit-(DsSvc) [On_Demand | Stopped] -> C:\Windows\SysNative\dssvc.dll -> [2017/03/18 22:58:12 | 000,149,504 | ---- | M | MD5 = E479C2656A3A47F5D4FAD10AE6EAED52] (Microsoft Corporation) 64bit-(WwanSvc) [On_Demand | Stopped] -> C:\Windows\SysNative\wwansvc.dll -> [2017/03/18 22:58:10 | 001,395,200 | ---- | M | MD5 = 3EEF7185E0974D9AB2D65CA3214132CF] (Microsoft Corporation) 64bit-(wlpasvc) [On_Demand | Stopped] -> C:\Windows\SysNative\lpasvc.dll -> [2017/03/18 22:58:10 | 001,295,360 | ---- | M | MD5 = E5AB2E0B4F766E34AFC768D9769A24D7] (Microsoft Corporation) 64bit-(SensorDataService) [On_Demand | Stopped] -> C:\Windows\SysNative\SensorDataService.exe -> [2017/03/18 22:58:10 | 001,284,608 | ---- | M | MD5 = 892C955E1081412942F64679E0DD7A5D] (Microsoft Corporation) 64bit-(CDPSvc) [Auto | Stopped] -> C:\Windows\SysNative\cdpsvc.dll -> [2017/03/18 22:58:10 | 000,970,240 | ---- | M | MD5 = 00C7849679FCF4AE8DA78DC16BDDA369] (Microsoft Corporation) 64bit-(upnphost) [On_Demand | Stopped] -> C:\Windows\SysNative\upnphost.dll -> [2017/03/18 22:58:10 | 000,432,128 | ---- | M | MD5 = BBB6BDBE5ADCE6F87F70623D5A1EC5BC] (Microsoft Corporation) 64bit-(DusmSvc) [Auto | Stopped] -> C:\Windows\SysNative\dusmsvc.dll -> [2017/03/18 22:58:10 | 000,302,592 | ---- | M | MD5 = 682D7DF9704217DD8716307F9E2EEC05] (Microsoft Corporation) 64bit-(EFS) [Unknown | Stopped] -> C:\Windows\SysNative\efssvc.dll -> [2017/03/18 22:58:10 | 000,057,344 | ---- | M | MD5 = 7B9D209FB56A3FEADCC29B0BA062F0C2] (Microsoft Corporation) 64bit-(MapsBroker) [Auto | Stopped] -> C:\Windows\SysNative\moshost.dll -> [2017/03/18 22:58:09 | 000,090,624 | ---- | M | MD5 = D365217A6D4528ABB41B40C8FBD227E8] (Microsoft Corporation) 64bit-(AJRouter) [On_Demand | Stopped] -> C:\Windows\SysNative\AJRouter.dll -> [2017/03/18 22:58:09 | 000,024,576 | ---- | M | MD5 = 41856B40EE15F96DEC8755AB01FA3CF7] (Microsoft Corporation) 64bit-(WlanSvc) [Auto | Running] -> C:\Windows\SysNative\wlansvc.dll -> [2017/03/18 22:58:07 | 002,425,856 | ---- | M | MD5 = E624376E7E7D9AC203113140D9E618A2] (Microsoft Corporation) 64bit-(BrokerInfrastructure) [Unknown | Running] -> C:\Windows\SysNative\bisrv.dll -> [2017/03/18 22:58:07 | 000,846,848 | ---- | M | MD5 = 04B27B2DE2981E79E078FAAC3AA8748F] (Microsoft Corporation) 64bit-(Wcmsvc) [Auto | Running] -> C:\Windows\SysNative\wcmsvc.dll -> [2017/03/18 22:58:07 | 000,802,816 | ---- | M | MD5 = E00FE13E415C97C60E5A418965372A74] (Microsoft Corporation) 64bit-(DsmSvc) [On_Demand | Stopped] -> C:\Windows\SysNative\DeviceSetupManager.dll -> [2017/03/18 22:58:07 | 000,233,984 | ---- | M | MD5 = 5E92CB292D676634058E6C62653C9227] (Microsoft Corporation) 64bit-(icssvc) [On_Demand | Stopped] -> C:\Windows\SysNative\tetheringservice.dll -> [2017/03/18 22:58:07 | 000,210,432 | ---- | M | MD5 = E3061D5ABA80394D29E26EA58AF7F69A] (Microsoft Corporation) 64bit-(EapHost) [Auto | Running] -> C:\Windows\SysNative\eapsvc.dll -> [2017/03/18 22:58:07 | 000,108,032 | ---- | M | MD5 = ECA1628436628362856ACF239E6AFD29] (Microsoft Corporation) 64bit-(SensorService) [On_Demand | Stopped] -> C:\Windows\SysNative\SensorService.dll -> [2017/03/18 22:58:04 | 000,548,864 | ---- | M | MD5 = 358008CBDE5603F3B56789C977661CE3] (Microsoft Corporation) 64bit-(xbgm) [On_Demand | Stopped] -> C:\Windows\SysNative\xbgmsvc.dll -> [2017/03/18 22:58:04 | 000,301,216 | ---- | M | MD5 = FC0147AB34C7CDB2D8A1B29C207F2CD1] (Microsoft Corporation) 64bit-(SSDPSRV) [On_Demand | Stopped] -> C:\Windows\SysNative\ssdpsrv.dll -> [2017/03/18 22:58:04 | 000,239,616 | ---- | M | MD5 = E95A6C339AE68515897B2E4C6B0842CA] (Microsoft Corporation) 64bit-(lfsvc) [On_Demand | Stopped] -> C:\Windows\SysNative\lfsvc.dll -> [2017/03/18 22:58:04 | 000,043,520 | ---- | M | MD5 = AF1077E89AD4458EC9B1CABB35595346] (Microsoft Corporation) 64bit-(DevQueryBroker) [On_Demand | Stopped] -> C:\Windows\SysNative\DevQueryBroker.dll -> [2017/03/18 22:58:04 | 000,033,792 | ---- | M | MD5 = F08F70BBD833BAA3BF0D5E500CBEE6CC] (Microsoft Corporation) 64bit-(LicenseManager) [On_Demand | Stopped] -> C:\Windows\SysNative\LicenseManagerSvc.dll -> [2017/03/18 22:58:04 | 000,026,624 | ---- | M | MD5 = C0CB3B9F1F92C36B91309FDACCDF918B] (Microsoft Corporation) 64bit-(XboxGipSvc) [On_Demand | Stopped] -> C:\Windows\SysNative\xboxgipsvc.dll -> [2017/03/18 22:58:04 | 000,018,944 | ---- | M | MD5 = E099DED5C602AE4A7ECCF7CD4B1D2E33] (Microsoft Corporation) 64bit-(WbioSrvc) [On_Demand | Stopped] -> C:\Windows\SysNative\wbiosrvc.dll -> [2017/03/18 22:58:03 | 000,942,592 | ---- | M | MD5 = 5E3E24AA72FA75D6322C7286917BEB4A] (Microsoft Corporation) 64bit-(defragsvc) [On_Demand | Stopped] -> C:\Windows\SysNative\defragsvc.dll -> [2017/03/18 22:58:03 | 000,489,984 | ---- | M | MD5 = 1175E107082287A58A756239F48E1A73] (Microsoft Corporation) 64bit-(WinRM) [On_Demand | Stopped] -> C:\Windows\SysNative\WsmSvc.dll -> [2017/03/18 22:58:01 | 002,757,120 | ---- | M | MD5 = 27DAA9AA3E03C1068678D5659461BB32] (Microsoft Corporation) 64bit-(BITS) [On_Demand | Stopped] -> C:\Windows\SysNative\qmgr.dll -> [2017/03/18 22:58:01 | 001,159,680 | ---- | M | MD5 = 5C0D4DBACB90D9ECE77907F4F6CF9EF6] (Microsoft Corporation) 64bit-(Schedule) [Unknown | Stopped] -> C:\Windows\SysNative\schedsvc.dll -> [2017/03/18 22:58:01 | 000,877,568 | ---- | M | MD5 = 5BBFA6CA63E8A5BB8FA2FA84A5562CE2] (Microsoft Corporation) 64bit-(NaturalAuthentication) [On_Demand | Stopped] -> C:\Windows\SysNative\NaturalAuth.dll -> [2017/03/18 22:58:01 | 000,723,968 | ---- | M | MD5 = BC80F85C129F12A5F64D6741A120B539] (Microsoft Corporation) 64bit-(WerSvc) [Disabled | Stopped] -> C:\Windows\SysNative\wersvc.dll -> [2017/03/18 22:58:01 | 000,176,640 | ---- | M | MD5 = E5AE3B23620126483B957BDFF38FE7B7] (Microsoft Corporation) 64bit-(IpxlatCfgSvc) [On_Demand | Stopped] -> C:\Windows\SysNative\ipxlatcfg.dll -> [2017/03/18 22:58:01 | 000,064,000 | ---- | M | MD5 = 9A6B993A95CCA15502DE3C980508DC44] (Microsoft Corporation) 64bit-(seclogon) [Disabled | Stopped] -> C:\Windows\SysNative\seclogon.dll -> [2017/03/18 22:58:01 | 000,031,232 | ---- | M | MD5 = 2AE8505519C7E8A903DD7BE793A79846] (Microsoft Corporation) 64bit-(smphost) [On_Demand | Stopped] -> C:\Windows\SysNative\smphost.dll -> [2017/03/18 22:58:01 | 000,023,552 | ---- | M | MD5 = 70A2FD5F5B7B1A5E1146BE45E4DFB75D] (Microsoft Corporation) 64bit-(NgcCtnrSvc) [Unknown | Stopped] -> C:\Windows\SysNative\NgcCtnrSvc.dll -> [2017/03/18 22:58:00 | 000,491,520 | ---- | M | MD5 = 0C124EAC0EF7B3767280C94A8C03615B] (Microsoft Corporation) 64bit-(RemoteRegistry) [Disabled | Stopped] -> C:\Windows\SysNative\regsvc.dll -> [2017/03/18 22:58:00 | 000,154,624 | ---- | M | MD5 = 19D1072193DAF71C97E5A05FC7673BB3] (Microsoft Corporation) 64bit-(UserManager) [Auto | Running] -> C:\Windows\SysNative\usermgr.dll -> [2017/03/18 22:57:58 | 000,877,568 | ---- | M | MD5 = C0E60CC6D48013728C7E4168D61A0B39] (Microsoft Corporation) 64bit-(W32Time) [On_Demand | Stopped] -> C:\Windows\SysNative\w32time.dll -> [2017/03/18 22:57:58 | 000,524,288 | ---- | M | MD5 = E75460AC4E936BFC0703021DB0BB17B8] (Microsoft Corporation) 64bit-(netprofm) [On_Demand | Running] -> C:\Windows\SysNative\netprofmsvc.dll -> [2017/03/18 22:57:58 | 000,519,168 | ---- | M | MD5 = 96173660A4DD4A56E4B8938A67DAD9B7] (Microsoft Corporation) 64bit-(TimeBrokerSvc) [Unknown | Stopped] -> C:\Windows\SysNative\TimeBrokerServer.dll -> [2017/03/18 22:57:58 | 000,165,888 | ---- | M | MD5 = E59D4F92FE11B47AB727C6D192CC977F] (Microsoft Corporation) 64bit-(bthserv) [On_Demand | Stopped] -> C:\Windows\SysNative\bthserv.dll -> [2017/03/18 22:57:58 | 000,154,112 | ---- | M | MD5 = 6927D295017E9F1A5D655A8F3A122672] (Microsoft Corporation) 64bit-(tzautoupdate) [Disabled | Stopped] -> C:\Windows\SysNative\tzautoupdate.dll -> [2017/03/18 22:57:58 | 000,095,744 | ---- | M | MD5 = B097B77121A057AB6D70C647636978D4] (Microsoft Corporation) 64bit-(SystemEventsBroker) [Unknown | Running] -> C:\Windows\SysNative\SystemEventsBrokerServer.dll -> [2017/03/18 22:57:54 | 000,292,352 | ---- | M | MD5 = 97E0FD613D031EAA73E8AD259169AC22] (Microsoft Corporation) 64bit-(QWAVE) [On_Demand | Stopped] -> C:\Windows\SysNative\qwave.dll -> [2017/03/18 22:57:54 | 000,278,016 | ---- | M | MD5 = E0DCCA2A78516D155A6485CCA99F0EA5] (Microsoft Corporation) 64bit-(HvHost) [On_Demand | Stopped] -> C:\Windows\SysNative\hvhostsvc.dll -> [2017/03/18 22:57:54 | 000,059,800 | ---- | M | MD5 = D3C45F1B5BB3EE772CDA416A4A3EEB9B] (Microsoft Corporation) 64bit-(NgcSvc) [Unknown | Stopped] -> C:\Windows\SysNative\ngcsvc.dll -> [2017/03/18 22:57:53 | 001,035,264 | ---- | M | MD5 = 6A3DA98447EF49AEB7931ECFBA51AFAD] (Microsoft Corporation) 64bit-(IKEEXT) [On_Demand | Stopped] -> C:\Windows\SysNative\IKEEXT.DLL -> [2017/03/18 22:57:53 | 000,934,912 | ---- | M | MD5 = E9E4BB312F6B544392F44D513FAA2243] (Microsoft Corporation) 64bit-(BFE) [Auto | Running] -> C:\Windows\SysNative\BFE.DLL -> [2017/03/18 22:57:53 | 000,815,616 | ---- | M | MD5 = 1FDC6CB56572203E6F4BF4E3FB30B886] (Microsoft Corporation) 64bit-(DiagTrack) [Disabled | Stopped] -> C:\Windows\SysNative\diagtrack.dll -> [2017/03/18 22:57:50 | 002,515,968 | ---- | M | MD5 = F38183343C14B0C0BAB900640652257F] (Microsoft Corporation) 64bit-(EventLog) [Auto | Running] -> C:\Windows\SysNative\wevtsvc.dll -> [2017/03/18 22:57:50 | 001,737,216 | ---- | M | MD5 = 2CA2A09DF5A12D2EF5CD24A94B746E2E] (Microsoft Corporation) 64bit-(SysMain) [Disabled | Stopped] -> C:\Windows\SysNative\sysmain.dll -> [2017/03/18 22:57:50 | 000,972,800 | ---- | M | MD5 = 4746E7782AABDDC950E94336C03D3D4E] (Microsoft Corporation) 64bit-(NlaSvc) [Auto | Running] -> C:\Windows\SysNative\nlasvc.dll -> [2017/03/18 22:57:50 | 000,365,568 | ---- | M | MD5 = 50F98CD010326B58F09082BACF3123AE] (Microsoft Corporation) 64bit-(lltdsvc) [On_Demand | Stopped] -> C:\Windows\SysNative\lltdsvc.dll -> [2017/03/18 22:57:50 | 000,268,800 | ---- | M | MD5 = 1797F544956D46966C67A2F7879403A9] (Microsoft Corporation) 64bit-(Winmgmt) [Auto | Running] -> C:\Windows\SysNative\wbem\WMIsvc.dll -> [2017/03/18 22:57:50 | 000,221,696 | ---- | M | MD5 = 9A26F7834706A6D8C8824EB08FD7C362] (Microsoft Corporation) 64bit-(wmiApSrv) [On_Demand | Stopped] -> C:\Windows\SysNative\wbem\WmiApSrv.exe -> [2017/03/18 22:57:50 | 000,199,168 | ---- | M | MD5 = F7B122E8A238354DE344B77216E8D9AC] (Microsoft Corporation) 64bit-(wisvc) [On_Demand | Stopped] -> C:\Windows\SysNative\FlightSettings.dll -> [2017/03/18 22:57:47 | 000,699,904 | ---- | M | MD5 = 11DDD4C9BDF095A5F5B5ACA98FBBF7A2] (Microsoft Corporation) 64bit-(NetSetupSvc) [On_Demand | Stopped] -> C:\Windows\SysNative\NetSetupSvc.dll -> [2017/03/18 22:57:47 | 000,261,632 | ---- | M | MD5 = 79C810D49E6D2825F51B0D7CAA6E2FAD] (Microsoft Corporation) 64bit-(PlugPlay) [Auto | Running] -> C:\Windows\SysNative\umpnpmgr.dll -> [2017/03/18 22:57:47 | 000,114,688 | ---- | M | MD5 = A2BACEBAC01BE7A6656B454E75C23262] (Microsoft Corporation) 64bit-(DeviceInstall) [On_Demand | Stopped] -> C:\Windows\SysNative\umpnpmgr.dll -> [2017/03/18 22:57:47 | 000,114,688 | ---- | M | MD5 = A2BACEBAC01BE7A6656B454E75C23262] (Microsoft Corporation) 64bit-(StateRepository) [On_Demand | Running] -> C:\Windows\SysNative\Windows.StateRepository.dll -> [2017/03/18 22:57:46 | 005,302,456 | ---- | M | MD5 = F1A5AC00B8CD7E28BBC8DD7E60D48B65] (Microsoft Corporation) 64bit-(MpsSvc) [Auto | Running] -> C:\Windows\SysNative\MPSSVC.dll -> [2017/03/18 22:57:46 | 000,972,288 | ---- | M | MD5 = FA53A01517BBA97EA3B71CF5CC2052F4] (Microsoft Corporation) 64bit-(DeviceAssociationService) [Auto | Stopped] -> C:\Windows\SysNative\das.dll -> [2017/03/18 22:57:46 | 000,455,168 | ---- | M | MD5 = BBCAC50027D030E07EC7E5C36469FAFF] (Microsoft Corporation) 64bit-(wudfsvc) [On_Demand | Stopped] -> C:\Windows\SysNative\WUDFSvc.dll -> [2017/03/18 22:57:38 | 000,091,648 | ---- | M | MD5 = 9EFE23CA208BF4B613FF4A6028DFAB10] (Microsoft Corporation) 64bit-(VaultSvc) [On_Demand | Stopped] -> C:\Windows\SysNative\lsass.exe -> [2017/03/18 22:57:36 | 000,058,488 | ---- | M | MD5 = EABFCDA6E996F8A32DC1B302F7683BB2] (Microsoft Corporation) 64bit-(SamSs) [Auto | Stopped] -> C:\Windows\SysNative\lsass.exe -> [2017/03/18 22:57:36 | 000,058,488 | ---- | M | MD5 = EABFCDA6E996F8A32DC1B302F7683BB2] (Microsoft Corporation) 64bit-(Netlogon) [On_Demand | Stopped] -> C:\Windows\SysNative\lsass.exe -> [2017/03/18 22:57:36 | 000,058,488 | ---- | M | MD5 = EABFCDA6E996F8A32DC1B302F7683BB2] (Microsoft Corporation) 64bit-(KeyIso) [On_Demand | Running] -> C:\Windows\SysNative\lsass.exe -> [2017/03/18 22:57:36 | 000,058,488 | ---- | M | MD5 = EABFCDA6E996F8A32DC1B302F7683BB2] (Microsoft Corporation) 64bit-(FontCache) [Auto | Stopped] -> C:\Windows\SysNative\FntCache.dll -> [2017/03/18 22:57:35 | 001,886,720 | ---- | M | MD5 = 3B42FD3CCD1E7A6A192B88284B0CBA4F] (Microsoft Corporation) 64bit-(Dhcp) [Auto | Running] -> C:\Windows\SysNative\dhcpcore.dll -> [2017/03/18 22:57:35 | 000,365,568 | ---- | M | MD5 = BC5188B3F35BB8070888441A2A740465] (Microsoft Corporation) 64bit-(Dnscache) [Disabled | Stopped] -> C:\Windows\SysNative\dnsrslvr.dll -> [2017/03/18 22:57:35 | 000,282,624 | ---- | M | MD5 = FC3AA34608A69BDAC67E31FB70C8A720] (Microsoft Corporation) 64bit-(RpcEptMapper) [Unknown | Running] -> C:\Windows\SysNative\RpcEpMap.dll -> [2017/03/18 22:57:35 | 000,077,824 | ---- | M | MD5 = C79F1F7C8A5FCBE90E3C833299AA1F59] (Microsoft Corporation) 64bit-(nsi) [Auto | Running] -> C:\Windows\SysNative\nsisvc.dll -> [2017/03/18 22:57:35 | 000,030,720 | ---- | M | MD5 = A85EB5721C7203AAAAAA04F551960CD9] (Microsoft Corporation) 64bit-(sppsvc) [Unknown | Stopped] -> C:\Windows\SysNative\sppsvc.exe -> [2017/03/18 22:57:29 | 004,574,192 | ---- | M | MD5 = E910861720DE6EDFB5CC6158CE3C7E17] (Microsoft Corporation) 64bit-(SCardSvr) [Unknown | Stopped] -> C:\Windows\SysNative\SCardSvr.dll -> [2017/03/18 22:57:29 | 000,250,368 | ---- | M | MD5 = 6A7F961E0E6382F185809AEC6A97E078] (Microsoft Corporation) 64bit-(ScDeviceEnum) [Unknown | Stopped] -> C:\Windows\SysNative\ScDeviceEnum.dll -> [2017/03/18 22:57:29 | 000,200,192 | ---- | M | MD5 = 45B203A8CD642F72E86690B957B6490D] (Microsoft Corporation) 64bit-(SCPolicySvc) [Unknown | Stopped] -> C:\Windows\SysNative\certprop.dll -> [2017/03/18 22:57:29 | 000,189,952 | ---- | M | MD5 = 0EC94DA356D89CACD89B6E139E4D0A7D] (Microsoft Corporation) 64bit-(CertPropSvc) [Unknown | Stopped] -> C:\Windows\SysNative\certprop.dll -> [2017/03/18 22:57:29 | 000,189,952 | ---- | M | MD5 = 0EC94DA356D89CACD89B6E139E4D0A7D] (Microsoft Corporation) 64bit-(Appinfo) [On_Demand | Stopped] -> C:\Windows\SysNative\appinfo.dll -> [2017/03/18 22:57:29 | 000,138,752 | ---- | M | MD5 = 13D7FEA71091D1EAD8ADDD10BFFEA06D] (Microsoft Corporation) 64bit-(AppIDSvc) [On_Demand | Stopped] -> C:\Windows\SysNative\appidsvc.dll -> [2017/03/18 22:57:29 | 000,120,320 | ---- | M | MD5 = F7FEBF66A705F18DC063DFD259F15102] (Microsoft Corporation) 64bit-(AxInstSV) [On_Demand | Stopped] -> C:\Windows\SysNative\AxInstSv.dll -> [2017/03/18 22:57:29 | 000,111,616 | ---- | M | MD5 = 6086B5EE0DA4600B2EC2725D82DEB74E] (Microsoft Corporation) 64bit-(UI0Detect) [On_Demand | Stopped] -> C:\Windows\SysNative\UI0Detect.exe -> [2017/03/18 22:57:29 | 000,043,008 | ---- | M | MD5 = 5A2F610B31CC3FD23D3E20C1D5F1EF52] (Microsoft Corporation) 64bit-(gpsvc) [Unknown | Stopped] -> C:\Windows\SysNative\gpsvc.dll -> [2017/03/18 22:57:24 | 001,269,248 | ---- | M | MD5 = CF22C0941409C772AA1568DC4F89A111] (Microsoft Corporation) 64bit-(hidserv) [On_Demand | Stopped] -> C:\Windows\SysNative\hidserv.dll -> [2017/03/18 22:57:24 | 000,034,304 | ---- | M | MD5 = 6339CC87F0F610D1575C9A419940602A] (Microsoft Corporation) 64bit-(WEPHOSTSVC) [On_Demand | Stopped] -> C:\Windows\SysNative\wephostsvc.dll -> [2017/03/18 22:57:24 | 000,027,648 | ---- | M | MD5 = 04CA184EB5743DE5A2CCEEF2DB2DA8B3] (Microsoft Corporation) 64bit-(MSiSCSI) [Disabled | Stopped] -> C:\Windows\SysNative\iscsiexe.dll -> [2017/03/18 22:57:23 | 000,150,016 | ---- | M | MD5 = 75FE54E84C1EB0C9C5E09F9FD5928ECC] (Microsoft Corporation) 64bit-(TabletInputService) [Disabled | Stopped] -> C:\Windows\SysNative\TabSvc.dll -> [2017/03/18 22:57:23 | 000,147,456 | ---- | M | MD5 = 7750219DFABC38261575B6CEFBF84EC6] (Microsoft Corporation) 64bit-(EventSystem) [Auto | Stopped] -> C:\Windows\SysNative\es.dll -> [2017/03/18 22:57:20 | 000,452,096 | ---- | M | MD5 = 1541374239F33512D7F4D24ED1E9238C] (Microsoft Corporation) 64bit-(KtmRm) [On_Demand | Stopped] -> C:\Windows\SysNative\msdtckrm.dll -> [2017/03/18 22:57:20 | 000,368,128 | ---- | M | MD5 = 08F9C3F7FE3019BF53B1405B1820528F] (Microsoft Corporation) 64bit-(MSDTC) [Unknown | Stopped] -> C:\Windows\SysNative\msdtc.exe -> [2017/03/18 22:57:20 | 000,147,456 | ---- | M | MD5 = 41C5D9B52F4A1B30C3F7219D601CF12C] (Microsoft Corporation) 64bit-(TrkWks) [Disabled | Stopped] -> C:\Windows\SysNative\trkwks.dll -> [2017/03/18 22:57:20 | 000,116,736 | ---- | M | MD5 = 85E0D4431D61675A94EA99C9E1F56436] (Microsoft Corporation) 64bit-(SENS) [Auto | Stopped] -> C:\Windows\SysNative\Sens.dll -> [2017/03/18 22:57:20 | 000,069,632 | ---- | M | MD5 = 25456AF499A0C9C4A93CFAC70BDE9CC2] (Microsoft Corporation) 64bit-(FDResPub) [On_Demand | Stopped] -> C:\Windows\SysNative\FDResPub.dll -> [2017/03/18 22:57:20 | 000,034,816 | ---- | M | MD5 = 367E878C79D9F391E3D53B6BBC1B6386] (Microsoft Corporation) 64bit-(RpcLocator) [On_Demand | Stopped] -> C:\Windows\SysNative\Locator.exe -> [2017/03/18 22:57:20 | 000,011,264 | ---- | M | MD5 = 1CE6928C1587F9760F7C3A036786CAE8] (Microsoft Corporation) 64bit-(WebClient) [Disabled | Stopped] -> C:\Windows\SysNative\WebClnt.dll -> [2017/03/18 22:57:19 | 000,224,256 | ---- | M | MD5 = 9066FE8EAB91E15437CB3C43757F2A65] (Microsoft Corporation) 64bit-(DPS) [Unknown | Stopped] -> C:\Windows\SysNative\dps.dll -> [2017/03/18 22:57:19 | 000,168,448 | ---- | M | MD5 = 3425E26D0A7792F2EE7745C0336C2062] (Microsoft Corporation) 64bit-(WdiSystemHost) [Unknown | Stopped] -> C:\Windows\SysNative\wdi.dll -> [2017/03/18 22:57:19 | 000,097,792 | ---- | M | MD5 = 501CB5E6999B7336BE5D0D401013D251] (Microsoft Corporation) 64bit-(WdiServiceHost) [Unknown | Stopped] -> C:\Windows\SysNative\wdi.dll -> [2017/03/18 22:57:19 | 000,097,792 | ---- | M | MD5 = 501CB5E6999B7336BE5D0D401013D251] (Microsoft Corporation) 64bit-(swprv) [On_Demand | Stopped] -> C:\Windows\SysNative\swprv.dll -> [2017/03/18 22:57:16 | 000,460,800 | ---- | M | MD5 = 13985DA558FBCBFD9108A2CACB5FE494] (Microsoft Corporation) 64bit-(fhsvc) [On_Demand | Stopped] -> C:\Windows\SysNative\fhsvc.dll -> [2017/03/18 22:57:16 | 000,121,856 | ---- | M | MD5 = 514F6A0B83527DD6ACCC8B21A57B10E3] (Microsoft Corporation) 64bit-(svsvc) [On_Demand | Stopped] -> C:\Windows\SysNative\svsvc.dll -> [2017/03/18 22:57:16 | 000,013,824 | ---- | M | MD5 = D284AB2CA6C30317D142D38CE1F848BE] (Microsoft Corporation) 64bit-(TieringEngineService) [On_Demand | Stopped] -> C:\Windows\SysNative\TieringEngineService.exe -> [2017/03/18 22:57:15 | 000,302,592 | ---- | M | MD5 = 2ABC11CFC2F03A919AF78A6E3E29C570] (Microsoft Corporation) 64bit-(fdPHost) [On_Demand | Stopped] -> C:\Windows\SysNative\fdPHost.dll -> [2017/03/18 22:57:15 | 000,020,992 | ---- | M | MD5 = 885C06C35CC8FAEDDE3CDA36B72CA2A9] (Microsoft Corporation) 64bit-(pla) [On_Demand | Stopped] -> C:\Windows\SysNative\pla.dll -> [2017/03/18 22:57:11 | 001,462,272 | ---- | M | MD5 = F9FB601621FF33376F3908C2C27C6EF4] (Microsoft Corporation) 64bit-(VSS) [On_Demand | Stopped] -> C:\Windows\SysNative\VSSVC.exe -> [2017/03/18 22:57:08 | 001,550,848 | ---- | M | MD5 = 0BB73BF6FDDD19DE3DE9377EA95E4C64] (Microsoft Corporation) 64bit-(vds) [On_Demand | Stopped] -> C:\Windows\SysNative\vds.exe -> [2017/03/18 22:57:08 | 000,643,072 | ---- | M | MD5 = 374CD93271184F04988FDC1C25B3E855] (Microsoft Corporation) 64bit-(PcaSvc) [Auto | Stopped] -> C:\Windows\SysNative\pcasvc.dll -> [2017/03/18 22:57:08 | 000,523,168 | ---- | M | MD5 = 72ABB842C15A6C3AC3D954308C6BF206] (Microsoft Corporation) 64bit-(spectrum) [On_Demand | Stopped] -> C:\Windows\SysNative\Spectrum.exe -> [2017/03/18 22:57:05 | 000,891,904 | ---- | M | MD5 = 10CD42898C9E4849193E78A87337B2E9] (Microsoft Corporation) 64bit-(FrameServer) [On_Demand | Stopped] -> C:\Windows\SysNative\FrameServer.dll -> [2017/03/18 22:57:05 | 000,599,552 | ---- | M | MD5 = 8E0A89C8BC29F4B066B1DA4B96A63609] (Microsoft Corporation) 64bit-(wscsvc) [Auto | Stopped] -> C:\Windows\SysNative\wscsvc.dll -> [2017/03/18 22:57:05 | 000,208,896 | ---- | M | MD5 = D4A0661AB0FE542460CA76BFB4FAA2D6] (Microsoft Corporation) 64bit-(Wecsvc) [On_Demand | Stopped] -> C:\Windows\SysNative\wecsvc.dll -> [2017/03/18 22:57:05 | 000,202,752 | ---- | M | MD5 = F322B8E6C5614E7975C8BF34B7A6710E] (Microsoft Corporation) 64bit-(msiserver) [On_Demand | Stopped] -> C:\WINDOWS\SysNative\msiexec.exe -> [2017/03/18 22:57:05 | 000,066,048 | ---- | M | MD5 = BCEC1D69554D9DFC82E599B74ABC9963] (Microsoft Corporation) 64bit-(NcaSvc) [On_Demand | Stopped] -> C:\Windows\SysNative\NcaSvc.dll -> [2017/03/18 22:57:03 | 000,167,424 | ---- | M | MD5 = F2EA6F3165E154C24C084AC35DD6C3F8] (Microsoft Corporation) 64bit-(RemoteAccess) [Disabled | Stopped] -> C:\Windows\SysNative\mprdim.dll -> [2017/03/18 22:57:02 | 000,490,496 | ---- | M | MD5 = D91C597DE82E1500525945E1FFF24B0F] (Microsoft Corporation) 64bit-(dot3svc) [On_Demand | Stopped] -> C:\Windows\SysNative\dot3svc.dll -> [2017/03/18 22:57:02 | 000,252,416 | ---- | M | MD5 = F08CB37830A1F9950E8B2F7B1F78CC7E] (Microsoft Corporation) 64bit-(irmon) [On_Demand | Stopped] -> C:\Windows\SysNative\irmon.dll -> [2017/03/18 22:57:02 | 000,024,576 | ---- | M | MD5 = 65B145143F6E5E1B5A213F0D9F4C4C44] (Microsoft Corporation) 64bit-(Netman) [On_Demand | Stopped] -> C:\Windows\SysNative\netman.dll -> [2017/03/18 22:57:01 | 000,253,440 | ---- | M | MD5 = D9FF8CA42C3541F4840693F17143C595] (Microsoft Corporation) 64bit-(RasAuto) [On_Demand | Stopped] -> C:\Windows\SysNative\rasauto.dll -> [2017/03/18 22:57:01 | 000,104,448 | ---- | M | MD5 = 3E8CB44832FE3F96047187291523CDA1] (Microsoft Corporation) 64bit-(SNMPTRAP) [Disabled | Stopped] -> C:\Windows\SysNative\snmptrap.exe -> [2017/03/18 22:57:01 | 000,015,872 | ---- | M | MD5 = 17B685A6DBD7543D2A55739526361583] (Microsoft Corporation) 64bit-(PolicyAgent) [On_Demand | Stopped] -> C:\Windows\SysNative\IPSECSVC.DLL -> [2017/03/18 22:57:00 | 000,458,240 | ---- | M | MD5 = 118E91AEE8F6DDAD088F955498CF2487] (Microsoft Corporation) 64bit-(SstpSvc) [On_Demand | Stopped] -> C:\Windows\SysNative\sstpsvc.dll -> [2017/03/18 22:57:00 | 000,208,384 | ---- | M | MD5 = FBD45746B2EDEECA10CCA6A861F8049B] (Microsoft Corporation) 64bit-(workfolderssvc) [On_Demand | Stopped] -> C:\Windows\SysNative\workfolderssvc.dll -> [2017/03/18 22:56:56 | 001,832,960 | ---- | M | MD5 = D571821EDAA1F23EB521314FB9AA1C88] (Microsoft Corporation) 64bit-(Browser) [On_Demand | Stopped] -> C:\Windows\SysNative\browser.dll -> [2017/03/18 22:56:56 | 000,133,120 | ---- | M | MD5 = 9C7F445B018AB4744B6E0C657B5D1833] (Microsoft Corporation) 64bit-(HomeGroupProvider) [On_Demand | Stopped] -> C:\Windows\SysNative\provsvc.dll -> [2017/03/18 22:56:55 | 000,463,360 | ---- | M | MD5 = A004895B838003BAE2281DAF193B6A09] (Microsoft Corporation) 64bit-(PNRPsvc) [On_Demand | Stopped] -> C:\Windows\SysNative\pnrpsvc.dll -> [2017/03/18 22:56:55 | 000,343,040 | ---- | M | MD5 = F5F10CE848CAF07A12A7B92290DBA38A] (Microsoft Corporation) 64bit-(p2pimsvc) [Disabled | Stopped] -> C:\Windows\SysNative\pnrpsvc.dll -> [2017/03/18 22:56:55 | 000,343,040 | ---- | M | MD5 = F5F10CE848CAF07A12A7B92290DBA38A] (Microsoft Corporation) 64bit-(HomeGroupListener) [On_Demand | Stopped] -> C:\Windows\SysNative\ListSvc.dll -> [2017/03/18 22:56:55 | 000,269,312 | ---- | M | MD5 = BD1CF47172B97707DFC66ADA741AE2BE] (Microsoft Corporation) 64bit-(p2psvc) [Disabled | Stopped] -> C:\Windows\SysNative\p2psvc.dll -> [2017/03/18 22:56:51 | 000,421,376 | ---- | M | MD5 = D1A9C22A98A10EB11A190B8FC7C07C6A] (Microsoft Corporation) 64bit-(PNRPAutoReg) [On_Demand | Stopped] -> C:\Windows\SysNative\pnrpauto.dll -> [2017/03/18 22:56:51 | 000,027,136 | ---- | M | MD5 = D54385DD5A39A5636D1587FC9ECFC337] (Microsoft Corporation) 64bit-(WdNisSvc) [Unknown | Stopped] -> C:\Program Files\Windows Defender\NisSrv.exe -> [2017/03/18 22:56:44 | 000,342,264 | ---- | M | MD5 = 2FFB0F94C3CBC1D7133EDD3213E41CC1] (Microsoft Corporation) 64bit-(SecurityHealthService) [Unknown | Stopped] -> C:\Windows\SysNative\SecurityHealthService.exe -> [2017/03/18 22:56:44 | 000,335,808 | ---- | M | MD5 = 09301074EA03CA8E82EAB16ADA1217CA] (Microsoft Corporation) 64bit-(vmicvss) [On_Demand | Stopped] -> C:\Windows\SysNative\icsvcext.dll -> [2017/03/18 22:56:44 | 000,307,712 | ---- | M | MD5 = F8F380ABEAFBC589FF6D2D96267C1210] (Microsoft Corporation) 64bit-(vmicrdv) [On_Demand | Stopped] -> C:\Windows\SysNative\icsvcext.dll -> [2017/03/18 22:56:44 | 000,307,712 | ---- | M | MD5 = F8F380ABEAFBC589FF6D2D96267C1210] (Microsoft Corporation) 64bit-(vmicvmsession) [On_Demand | Stopped] -> C:\Windows\SysNative\icsvc.dll -> [2017/03/18 22:56:44 | 000,283,648 | ---- | M | MD5 = A9C889CFDDE704A15CDC639C3D6662B6] (Microsoft Corporation) 64bit-(vmictimesync) [On_Demand | Stopped] -> C:\Windows\SysNative\icsvc.dll -> [2017/03/18 22:56:44 | 000,283,648 | ---- | M | MD5 = A9C889CFDDE704A15CDC639C3D6662B6] (Microsoft Corporation) 64bit-(vmicshutdown) [On_Demand | Stopped] -> C:\Windows\SysNative\icsvc.dll -> [2017/03/18 22:56:44 | 000,283,648 | ---- | M | MD5 = A9C889CFDDE704A15CDC639C3D6662B6] (Microsoft Corporation) 64bit-(vmickvpexchange) [On_Demand | Stopped] -> C:\Windows\SysNative\icsvc.dll -> [2017/03/18 22:56:44 | 000,283,648 | ---- | M | MD5 = A9C889CFDDE704A15CDC639C3D6662B6] (Microsoft Corporation) 64bit-(vmicheartbeat) [On_Demand | Stopped] -> C:\Windows\SysNative\icsvc.dll -> [2017/03/18 22:56:44 | 000,283,648 | ---- | M | MD5 = A9C889CFDDE704A15CDC639C3D6662B6] (Microsoft Corporation) 64bit-(vmicguestinterface) [On_Demand | Stopped] -> C:\Windows\SysNative\icsvc.dll -> [2017/03/18 22:56:44 | 000,283,648 | ---- | M | MD5 = A9C889CFDDE704A15CDC639C3D6662B6] (Microsoft Corporation) 64bit-(WinDefend) [Unknown | Stopped] -> C:\Program Files\Windows Defender\MsMpEng.exe -> [2017/03/18 22:56:44 | 000,102,816 | ---- | M | MD5 = D7BAC1BCC301F6D3A9C8F14F65837D87] (Microsoft Corporation) 64bit-(wcncsvc) [On_Demand | Stopped] -> C:\Windows\SysNative\wcncsvc.dll -> [2017/03/18 22:56:41 | 000,463,872 | ---- | M | MD5 = 2C396871F724DDF871A2EF4CADE5151D] (Microsoft Corporation) 64bit-(PrintNotify) [On_Demand | Stopped] -> C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll -> [2017/03/18 22:56:20 | 002,899,968 | ---- | M | MD5 = 5404E7A968A26DF03793B6F68536594D] (Microsoft Corporation) 64bit-(BthHFSrv) [On_Demand | Stopped] -> C:\Windows\SysNative\BthHFSrv.dll -> [2017/03/18 22:56:19 | 000,431,616 | ---- | M | MD5 = D8428BEF4033C7BFCD981074E2318F89] (Microsoft Corporation) 64bit-(WMPNetworkSvc) [Disabled | Stopped] -> C:\Program Files\Windows Media Player\wmpnetwk.exe -> [2017/03/18 06:47:10 | 001,177,088 | ---- | M | MD5 = 69D97F0CA7A9B05EDC355448DDF3FCB3] (Microsoft Corporation) 64bit-(RichVideo64) [On_Demand | Stopped] -> C:\Program Files\CyberLink\Shared files\RichVideo64.exe -> [2017/03/01 03:24:30 | 000,622,872 | ---- | M | MD5 = 6583D95B785FC7EAB8EA95956DF5C9A8] (CyberLink) 64bit-(MacriumService) [Auto | Stopped] -> C:\Program Files\Macrium\Common\MacriumService.exe -> [2017/02/25 16:09:22 | 003,878,728 | ---- | M | MD5 = 1062B6E10167650B5C5150E05A05F40D] (Paramount Software UK Ltd) 64bit-(!SASCORE) [Auto | Running] -> C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE -> [2017/01/31 01:47:14 | 000,173,472 | ---- | M | MD5 = 98E06CAC2C508118450095E581202230] (SUPERAntiSpyware.com) 64bit-(NitroReaderDriverReadSpool5) [On_Demand | Stopped] -> C:\Program Files\Nitro\Reader 5\NitroPDFReaderDriverService5x64.exe -> [2016/08/02 19:09:40 | 000,327,328 | ---- | M | MD5 = C7EE5F844EF9108DE242B55B2133C145] (Nitro Software, Inc.) 64bit-(SQLWriter) [Auto | Stopped] -> C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe -> [2016/04/30 10:11:08 | 000,131,776 | ---- | M | MD5 = E8276BE984738AA44070CFDE6EFC9300] (Microsoft Corporation) 64bit-(AMD External Events Utility) [Auto | Stopped] -> C:\Windows\SysNative\atiesrxx.exe -> [2015/10/09 21:24:28 | 000,305,168 | ---- | M | MD5 = 3F4E2D6E947BF0C81D4F10907151B312] (AMD) 64bit-(AMD FUEL Service) [Auto | Stopped] -> C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe -> [2015/08/21 22:09:14 | 000,344,064 | ---- | M | MD5 = 17DBF2825FFA6D66B1B3C55665721884] (Advanced Micro Devices, Inc.) 64bit-(Bonjour Service) [Auto | Stopped] -> C:\Program Files\Bonjour\mDNSResponder.exe -> [2015/08/12 16:03:42 | 000,462,096 | ---- | M | MD5 = B5C2F92EE1106DFE7BB1CCE4D35B6037] (Apple Inc.) 64bit-(AntiRansomwareService) [On_Demand | Stopped] -> C:\Program Files\RansomwareScreenUnlocker\arservice.exe -> [2015/07/30 07:38:28 | 000,100,864 | ---- | M | MD5 = EB0F03C06F5BB0FDD6FB422A3F401538] (Trend Micro Inc.) 64bit-(FolderSize) [Auto | Stopped] -> C:\Program Files\FolderSize\FolderSizeSvc.exe -> [2013/02/13 00:36:28 | 000,163,840 | ---- | M | MD5 = 813155B27B68DACCBAECCCEEA60BD8BF] (Brio) (VideoAcceleratorService) VideoAcceleratorService [On_Demand | Stopped] -> C:\Program Files (x86)\SpeedBit Video Accelerator\VideoAcceleratorService.exe -> [2017/06/08 17:40:32 | 000,298,152 | ---- | M | MD5 = 832D6FB867A6AC66235C48540A762840] (SPEEDbit) (AVG Firewall) AVG Firewall Service [On_Demand | Stopped] -> C:\Program Files (x86)\AVG\Antivirus\afwServ.exe -> [2017/06/06 08:26:19 | 000,311,624 | ---- | M | MD5 = 9211158D306DE6B7D8D9DFA12AC2DD98] (AVG Technologies CZ, s.r.o.) (AVG Antivirus) AVG Antivirus [Auto | Stopped] -> C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe -> [2017/06/02 14:16:59 | 000,264,432 | ---- | M | MD5 = 25A0986A222D76411010A6D6B9141AC1] (AVG Technologies CZ, s.r.o.) (avgbIDSAgent) avgbIDSAgent [On_Demand | Stopped] -> C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe -> [2017/06/02 14:16:54 | 007,396,872 | ---- | M | MD5 = 773B1568F99AAB185987D2D14201D4D3] (AVG Technologies CZ, s.r.o.) (dbupdatem) Service Mise à jour Dropbox (dbupdatem) [On_Demand | Stopped] -> C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe -> [2017/06/02 12:29:05 | 000,143,144 | ---- | M | MD5 = A1F58FFF448E4099297D6EE0641D4D0E] (Dropbox, Inc.) (dbupdate) Service Mise à jour Dropbox (dbupdate) [Auto | Stopped] -> C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe -> [2017/06/02 12:29:05 | 000,143,144 | ---- | M | MD5 = A1F58FFF448E4099297D6EE0641D4D0E] (Dropbox, Inc.) (avgsvc) AVG Service [Auto | Stopped] -> C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe -> [2017/05/31 14:46:56 | 001,428,656 | ---- | M | MD5 = 4F4D15E7D90DDA75B6038E494E001980] (AVG Technologies CZ, s.r.o.) (AdobeFlashPlayerUpdateSvc) Adobe Flash Player Update Service [On_Demand | Stopped] -> C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -> [2017/05/28 17:44:47 | 000,271,864 | ---- | M | MD5 = E6A1D864EC90F4397DF5AB2633B34DD4] (Adobe Systems Incorporated) (MozillaMaintenance) Mozilla Maintenance Service [On_Demand | Stopped] -> C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -> [2017/05/26 02:13:56 | 000,175,560 | ---- | M | MD5 = 2B76956806DB68475E5C25721CC52330] (Mozilla Foundation) (Unchecky) Unchecky [On_Demand | Stopped] -> C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe -> [2017/05/25 15:09:34 | 000,304,408 | ---- | M | MD5 = 20A45C0EBFABDCAF6FB3BCF6867EB145] (RaMMicHaeL) (Heimdal Uptime Checker) Heimdal Uptime Checker [On_Demand | Stopped] -> C:\Program Files (x86)\Heimdal\Heimdal.UptimeChecker.exe -> [2017/05/24 19:42:24 | 000,049,352 | ---- | M | MD5 = 22CD888CA3D83F07254BF13B07F5875D] (Heimdal Security) (Heimdal SecureDNS) Heimdal SecureDNS [On_Demand | Stopped] -> C:\Program Files (x86)\Heimdal\Heimdal.SecureDNS.exe -> [2017/05/24 19:42:18 | 000,043,208 | ---- | M | MD5 = 000C187CD6E5D41C4D0E266E22CB9931] (Heimdal Security) (Heimdal Client Host) Heimdal Client Host [On_Demand | Stopped] -> C:\Program Files (x86)\Heimdal\Heimdal.ClientHost.exe -> [2017/05/24 19:42:06 | 000,068,808 | ---- | M | MD5 = 3E3B4AADB76EA83B830BD23E0EEC3C60] (Heimdal Security) (FreemakeVideoCapture) FreemakeVideoCapture [On_Demand | Stopped] -> C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe -> [2017/05/24 07:48:54 | 000,009,216 | ---- | M | MD5 = 96CB433277BFD72A73270BC2AD44E143] (Ellora Assets Corp.) (Freemake Improver) Freemake Improver [Auto | Stopped] -> C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe -> [2017/05/23 15:36:40 | 000,104,448 | ---- | M | MD5 = 0EFB3DDBAD9BBF42F89B9651F5E0EBD5] (Freemake) (TeamViewer) TeamViewer 12 [On_Demand | Stopped] -> C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe -> [2017/05/23 15:30:29 | 010,884,848 | ---- | M | MD5 = C8E2119AF16AFD29569F391FB802897A] (TeamViewer GmbH) (DigitalWave.Update.Service) Digital Wave Update Service [On_Demand | Stopped] -> C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe -> [2017/05/12 16:51:46 | 000,440,808 | ---- | M | MD5 = E6C9A3290722E677DE5B7F228C9BC574] (Digital Wave Ltd.) (afcdpsrv) Acronis Nonstop Backup Service [On_Demand | Stopped] -> C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe -> [2017/05/12 04:39:37 | 004,463,960 | ---- | M | MD5 = B048C87A82322C06F0F22C7627D60B57] (Acronis) (WiseBootAssistant) Wise Boot Assistant [On_Demand | Stopped] -> C:\Program Files (x86)\Wise\Wise Care 365\BootTime.exe -> [2017/05/03 11:36:58 | 000,650,560 | ---- | M | MD5 = 2CB932994BB8A3C7674012D2EFE34113] (WiseCleaner.com) (CoreMessagingRegistrar) CoreMessaging [Unknown | Running] -> C:\Windows\SysWOW64\CoreMessaging.dll -> [2017/04/28 03:04:16 | 000,583,160 | ---- | M | MD5 = D333324DDC09806B477DAD41263EAFBA] (Microsoft Corporation) (TokenBroker) TokenBroker [On_Demand | Stopped] -> C:\Windows\SysWOW64\TokenBroker.dll -> [2017/04/28 02:40:07 | 000,799,232 | ---- | M | MD5 = E8003F21AECE4A5073837DBBFE1E23A4] (Microsoft Corporation) (gupdatem) Service Google Update (gupdatem) [On_Demand | Stopped] -> C:\Program Files (x86)\Google\Update\GoogleUpdate.exe -> [2017/04/23 11:43:49 | 000,153,752 | ---- | M | MD5 = 2D8BBF6C7241AAD9EDE7708EBB7B43A4] (Google Inc.) (gupdate) Service Google Update (gupdate) [Disabled | Stopped] -> C:\Program Files (x86)\Google\Update\GoogleUpdate.exe -> [2017/04/23 11:43:49 | 000,153,752 | ---- | M | MD5 = 2D8BBF6C7241AAD9EDE7708EBB7B43A4] (Google Inc.) (PDQInventory) PDQ Inventory [On_Demand | Stopped] -> C:\Program Files (x86)\Admin Arsenal\PDQ Inventory\PDQInventoryService.exe -> [2017/04/14 09:38:36 | 000,131,424 | ---- | M | MD5 = 6050DC2BDB2AE80E81DB718B4EBC8477] (Admin Arsenal) (FoxitPhantomService) FoxitPhantomService [On_Demand | Stopped] -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\FoxitConnectedPDFService.exe -> [2017/04/13 18:06:30 | 001,659,080 | ---- | M | MD5 = E21C42A9875A0DB8FC1B81721A85D7A2] (Foxit Software Inc.) (ZAMSvc) ZAM Controller Service [On_Demand | Stopped] -> C:\Program Files (x86)\Zemana AntiLogger\ZAM.exe -> [2017/04/03 17:22:32 | 014,522,512 | ---- | M | MD5 = A3B07B40F7AA4A39B202D14BCD72678C] (Copyright 2017.) (SecureVpn) AVG Secure VPN [Auto | Stopped] -> C:\Program Files (x86)\AVG\Secure VPN\VpnSvc.exe -> [2017/04/03 16:03:36 | 002,154,704 | ---- | M | MD5 = A2585B9A8FDDB269E7C19E6B202E81E9] (AVG Technologies CZ, s.r.o.) (AdvancedSystemCareService10) Advanced SystemCare Service 10 [Auto | Stopped] -> C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe -> [2017/03/21 10:19:30 | 000,462,624 | ---- | M | MD5 = 1CFADAA64D34D92AB64887802D1F33FE] (IObit) (HomeGroupProvider) Fournisseur du Groupement résidentiel [On_Demand | Stopped] -> C:\Windows\SysWOW64\provsvc.dll -> [2017/03/18 22:59:52 | 000,396,288 | ---- | M | MD5 = 7BD0232780AF1494786B340A9234ABF6] (Microsoft Corporation) (aspnet_state) ASP.NET State Service [On_Demand | Stopped] -> C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe -> [2017/03/18 22:59:42 | 000,052,920 | ---- | M | MD5 = 6FCFBDF7D820CEB7426D988FA6E3DBA2] (Microsoft Corporation) (SessionEnv) Configuration des services Bureau à distance [Disabled | Stopped] -> C:\Windows\SysWOW64\SessEnv.dll -> [2017/03/18 22:58:58 | 000,337,408 | ---- | M | MD5 = 9B2522EBB2DC2A1209BC427B32E0D8D2] (Microsoft Corporation) (ShellHWDetection) Détection matériel noyau [Auto | Stopped] -> C:\Windows\SysWOW64\shsvcs.dll -> [2017/03/18 22:58:57 | 000,564,224 | ---- | M | MD5 = A2F85FA367F911271E5E8D4D1B426D2D] (Microsoft Corporation) (DmEnrollmentSvc) Service d'inscription de la gestion des périphériques [On_Demand | Stopped] -> C:\Windows\SysWOW64\Windows.Internal.Management.dll -> [2017/03/18 22:58:54 | 000,394,240 | ---- | M | MD5 = 9F29E9ED5DCADDEC62449DB543326952] (Microsoft Corporation) (upnphost) Hôte de périphérique UPnP [On_Demand | Stopped] -> C:\Windows\SysWOW64\upnphost.dll -> [2017/03/18 22:58:54 | 000,325,120 | ---- | M | MD5 = 56E7BED718F1110D3C4D25051C048FD3] (Microsoft Corporation) (TapiSrv) Téléphonie [Disabled | Stopped] -> C:\Windows\SysWOW64\tapisrv.dll -> [2017/03/18 22:58:54 | 000,252,416 | ---- | M | MD5 = 288BAC85E239A9AF0846689916528361] (Microsoft Corporation) (WSearch) Windows Search [Disabled | Stopped] -> C:\WINDOWS\SysWow64\SearchIndexer.exe -> [2017/03/18 22:58:51 | 000,797,184 | ---- | M | MD5 = 039C448FF1E9A0A475AB21E6339164E6] (Microsoft Corporation) (WinHttpAutoProxySvc) Service de découverte automatique de Proxy Web pour les services HTTP Windows [On_Demand | Stopped] -> C:\Windows\SysWOW64\winhttp.dll -> [2017/03/18 22:58:49 | 000,703,576 | ---- | M | MD5 = 567D35838B771E6FD2B2AB772079B9AF] (Microsoft Corporation) (QWAVE) Expérience audio-vidéo haute qualité Windows [On_Demand | Stopped] -> C:\Windows\SysWOW64\qwave.dll -> [2017/03/18 22:58:49 | 000,239,104 | ---- | M | MD5 = 5D13B82CE9EDC755E511408F805300E1] (Microsoft Corporation) (Netlogon) Netlogon [On_Demand | Stopped] -> C:\Windows\SysWOW64\netlogon.dll -> [2017/03/18 22:58:48 | 000,665,600 | ---- | M | MD5 = BE08D0ACF53E9A9502D976AC220A6341] (Microsoft Corporation) (KeyIso) Isolation de clé CNG [On_Demand | Running] -> C:\Windows\SysWOW64\keyiso.dll -> [2017/03/18 22:58:48 | 000,069,632 | ---- | M | MD5 = 99D6C4AF6C56EB0FA294FB715E549123] (Microsoft Corporation) (StateRepository) Service State Repository (StateRepository) [On_Demand | Running] -> C:\Windows\SysWOW64\Windows.StateRepository.dll -> [2017/03/18 22:58:47 | 004,212,624 | ---- | M | MD5 = 21415CB683E3180D26FC22F84C50D03D] (Microsoft Corporation) (COMSysApp) Application système COM+ [On_Demand | Stopped] -> C:\WINDOWS\SysWow64\dllhost.exe -> [2017/03/18 22:58:47 | 000,019,360 | ---- | M | MD5 = FF19922720962D8A75412AB80868E796] (Microsoft Corporation) (WinRM) Gestion à distance de Windows (Gestion WSM) [On_Demand | Stopped] -> C:\Windows\SysWOW64\WsmSvc.dll -> [2017/03/18 22:58:46 | 002,354,688 | ---- | M | MD5 = D1F2DB490F3B91B64F506B1680392D2A] (Microsoft Corporation) (smphost) SMP de l’Espace de stockages Microsoft [On_Demand | Stopped] -> C:\Windows\SysWOW64\smphost.dll -> [2017/03/18 22:58:46 | 000,020,992 | ---- | M | MD5 = 5175EAE52D5814C9230188F8E5FA582F] (Microsoft Corporation) (RemoteAccess) Routage et accès distant [Disabled | Stopped] -> C:\Windows\SysWOW64\mprdim.dll -> [2017/03/18 22:58:45 | 000,406,528 | ---- | M | MD5 = 567D0AC3730C4132B28E59EE2E24E25A] (Microsoft Corporation) (Dhcp) Client DHCP [Auto | Running] -> C:\Windows\SysWOW64\dhcpcore.dll -> [2017/03/18 22:58:44 | 000,304,128 | ---- | M | MD5 = 24574BAD44B4C507DCCAA1271A02C3F2] (Microsoft Corporation) (PerfHost) Hôte de DLL de compteur de performance [On_Demand | Stopped] -> C:\Windows\SysWOW64\perfhost.exe -> [2017/03/18 22:58:44 | 000,021,504 | ---- | M | MD5 = 4DAD2C73778D41F951B33854936E7BDC] (Microsoft Corporation) (EventSystem) Système d’événement COM+ [Auto | Stopped] -> C:\Windows\SysWOW64\es.dll -> [2017/03/18 22:58:41 | 000,331,776 | ---- | M | MD5 = EF21F3B62E17BDDE3B76F9EE5A540D48] (Microsoft Corporation) (hidserv) Service du périphérique d’interface utilisateur [On_Demand | Stopped] -> C:\Windows\SysWOW64\hidserv.dll -> [2017/03/18 22:58:41 | 000,029,696 | ---- | M | MD5 = 6A16C536176D84DA5DD6FC6979B58529] (Microsoft Corporation) (pla) Journaux & alertes de performance [On_Demand | Stopped] -> C:\Windows\SysWOW64\pla.dll -> [2017/03/18 22:58:39 | 001,537,536 | ---- | M | MD5 = CC6D80FCC0BD7EEDBB8B4AE85BA52D10] (Microsoft Corporation) (WebClient) WebClient [Disabled | Stopped] -> C:\Windows\SysWOW64\WebClnt.dll -> [2017/03/18 22:58:39 | 000,196,608 | ---- | M | MD5 = EB98C9007BC95797E6FB03ECFAABB3E0] (Microsoft Corporation) (WdiSystemHost) Hôte système de diagnostics [Unknown | Stopped] -> C:\Windows\SysWOW64\wdi.dll -> [2017/03/18 22:58:39 | 000,089,088 | ---- | M | MD5 = 7F046C44A502F2230B917A29999CDEAD] (Microsoft Corporation) (WdiServiceHost) Service hôte WDIServiceHost [Unknown | Stopped] -> C:\Windows\SysWOW64\wdi.dll -> [2017/03/18 22:58:39 | 000,089,088 | ---- | M | MD5 = 7F046C44A502F2230B917A29999CDEAD] (Microsoft Corporation) (msiserver) Windows Installer [On_Demand | Stopped] -> C:\WINDOWS\SysWow64\msiexec.exe -> [2017/03/18 22:58:37 | 000,059,392 | ---- | M | MD5 = 98EEBF39B025339CF12672030777707D] (Microsoft Corporation) (TrustedInstaller) Programme d’installation pour les modules Windows [Unknown | Stopped] -> C:\Windows\servicing\TrustedInstaller.exe -> [2017/03/18 13:40:21 | 000,121,344 | ---- | M | MD5 = F21A69013A67B372675F523262AC1E33] (Microsoft Corporation) (FontCache3.0.0.0) Cache de police de Windows Presentation Foundation 3.0.0.0 [On_Demand | Stopped] -> C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe -> [2017/02/10 12:26:14 | 000,043,696 | ---- | M | MD5 = B282011D13BBEEA0273DF33C5E776D55] (Microsoft Corporation) (AcrSch2Svc) Acronis Scheduler2 Service [On_Demand | Stopped] -> C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe -> [2016/12/15 18:10:58 | 001,135,600 | ---- | M | MD5 = CA3DBCBB63249CDC4A064D81A79F947A] () (PDQDeploy) PDQ Deploy [On_Demand | Stopped] -> C:\Program Files (x86)\Admin Arsenal\PDQ Deploy\PDQDeployService.exe -> [2016/12/07 12:01:32 | 000,191,920 | ---- | M | MD5 = EE8E390AE61097F9FC6427AF42DEA7C2] (Admin Arsenal) (EaseUS Agent) Service Agent EaseUS [Auto | Stopped] -> C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe -> [2016/12/06 02:46:06 | 000,039,616 | ---- | M | MD5 = F8F1E7CE66C872DBCC8C9B0F8E41365D] (CHENGDU YIWO Tech Development Co., Ltd) (sgbupt) SuperBoost Software Updater [Auto | Stopped] -> C:\Program Files (x86)\SuperBoost\SuperBoost Software Updater\SuperBoostUpdater.exe -> [2016/10/21 11:13:12 | 002,600,256 | ---- | M | MD5 = 439B48D3A422052A1A6AA13F77BA8D3E] (SuperBoost Software) (WsDrvInst) Wondershare Driver Install Service [On_Demand | Stopped] -> C:\Program Files (x86)\Wondershare\MobileGo\DriverInstall.exe -> [2016/10/18 19:52:32 | 000,116,368 | ---- | M | MD5 = 7DE0C7523D3332D73B53193D312C4608] (Wondershare) (WsAppService) Wondershare Application Framework Service [On_Demand | Stopped] -> C:\Program Files (x86)\Wondershare\WAF\2.3.1.1\WsAppService.exe -> [2016/10/10 09:51:48 | 000,437,392 | ---- | M | MD5 = 7F78CEC3A96BEF80E1D20439BDE08A53] (Wondershare) (SyncBackTouch) SyncBack Touch [On_Demand | Stopped] -> C:\Program Files (x86)\2BrightSparks\SyncBackTouch\SyncBackTouchSvc.exe -> [2016/09/30 14:27:42 | 004,715,576 | ---- | M | MD5 = 5665DF875B21C31A2CF10E0E69CB00BF] (2BrightSparks Pte. Ltd.) (SQLAgent$ADK) SQL Server Agent (ADK) [Disabled | Stopped] -> C:\Program Files (x86)\Microsoft SQL Server\MSSQL11.ADK\MSSQL\Binn\SQLAGENT.EXE -> [2016/09/24 02:18:12 | 000,448,704 | ---- | M | MD5 = 246C027CAE18E16A16F744CEFB3ADFCF] (Microsoft Corporation) (MSSQL$ADK) SQL Server (ADK) [Auto | Stopped] -> C:\Program Files (x86)\Microsoft SQL Server\MSSQL11.ADK\MSSQL\Binn\sqlservr.exe -> [2016/09/24 02:18:12 | 000,163,008 | ---- | M | MD5 = 9CEA5019E781CDD154069E7192DB3B7C] (Microsoft Corporation) (VSStandardCollectorService140) Visual Studio Standard Collector Service [On_Demand | Stopped] -> C:\Program Files (x86)\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe -> [2016/09/06 22:17:22 | 000,108,776 | ---- | M | MD5 = BE6C456AE7620B86A7273CBD11A3D450] (Microsoft Corporation) (MyEpson Portal Service) MyEpson Portal Service [On_Demand | Stopped] -> C:\Program Files (x86)\EPSON\MyEpson Portal\mepService.exe -> [2016/08/08 15:16:06 | 000,703,696 | ---- | M | MD5 = A25648600888D412CCD2637071B08A04] (SEIKO EPSON CORPORATION) (syncagentsrv) Acronis Sync Agent Service [On_Demand | Stopped] -> C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe -> [2015/11/06 14:08:48 | 007,637,744 | ---- | M | MD5 = 0B061889D5EAB9FDB9893F164957B763] (Acronis) (ESLoadService) ESLoadService [On_Demand | Stopped] -> C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\ESLoadService.exe -> [2015/10/19 15:45:00 | 000,043,048 | ---- | M | MD5 = 05C0EAD888166FA464193E29F4624B69] (TODO: ) (mmsminisrv) Acronis Managed Machine Service Mini [Disabled | Stopped] -> C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe -> [2015/08/11 15:19:08 | 004,884,064 | ---- | M | MD5 = D9652739D1007B9B5CE34CEF38E095C5] (Acronis) (.AVQWindowsMonitorService) Fix-It Utilities Process Monitor [On_Demand | Stopped] -> C:\Program Files (x86)\Avanquest\Fix-It\AVQWinMonEngine.exe -> [2015/07/20 20:17:58 | 000,249,704 | ---- | M | MD5 = 9AADDDC36F8DDA4800B6A2A048806183] (Avanquest Software) (Fix-It Task Manager) Fix-It Utilities Task Manager [On_Demand | Stopped] -> C:\Program Files (x86)\Avanquest\Fix-It\MXTask.exe -> [2015/07/20 20:17:56 | 000,534,472 | ---- | M | MD5 = 6438F7332EEEBCBBAC47F16C29DD6D1C] (Avanquest Software) (VCOMCloudAgent) VCOM Cloud Agent [On_Demand | Stopped] -> C:\Program Files (x86)\Avanquest\Fix-It\VcomCloudAgent.exe -> [2015/07/20 20:17:12 | 000,142,720 | ---- | M | MD5 = CCEB41943B79B73C4A4CCF8A27709207] (Avanquest Software North America) (AQFileRestoreSrv) AQFileRestoreSrv [On_Demand | Stopped] -> C:\Program Files (x86)\Avanquest\Fix-It\AQFileRestoreSrv.exe -> [2015/07/20 20:17:02 | 000,113,536 | ---- | M | MD5 = F44ED3D015E38320FE8911E82F2E3929] (Avanquest Software) (UnsignedThemes) Unsigned Themes [On_Demand | Stopped] -> C:\Windows\unsignedthemes.exe -> [2015/03/01 00:22:50 | 000,022,184 | ---- | M | MD5 = 5D5FC880C46C1F08D72464250C8B0D70] (The Within Network, LLC) (BingDesktopUpdate) Bing Desktop Update service [Auto | Stopped] -> C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe -> [2014/11/26 18:48:04 | 000,173,248 | ---- | M | MD5 = 75332ACF4843F1BABC8FFF6379B63501] (Microsoft Corp.) (SDUpdateService) Spybot-S&D 2 Updating Service [Auto | Stopped] -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe -> [2014/06/27 11:52:26 | 002,088,408 | ---- | M | MD5 = 68D6C7F99BC73B88954D844FCCBEB2A0] (Safer-Networking Ltd.) (SDScannerService) Spybot-S&D 2 Scanner Service [Auto | Stopped] -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe -> [2014/06/24 10:41:42 | 001,738,168 | ---- | M | MD5 = D777F1417D9BB9F66CD9D9C3B61F730F] (Safer-Networking Ltd.) (SDWSCService) Spybot-S&D 2 Security Center Service [Auto | Stopped] -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe -> [2014/04/25 14:12:20 | 000,171,928 | ---- | M | MD5 = 9B9B368A8FF5CAF91D7A333CF62CD2CC] (Safer-Networking Ltd.) (WebUpdate4) Web Update Wizard Service V4 [On_Demand | Stopped] -> C:\Windows\SysWOW64\WebUpdateSvc4.exe -> [2013/11/25 21:33:58 | 000,412,776 | ---- | M | MD5 = 6690FAFC9F2C0DF23DD88953C010CFEB] (Data Perceptions / PowerProgrammer) (GSService) GSService [On_Demand | Stopped] -> C:\WINDOWS\SysWOW64\GSService.exe -> [2013/05/15 18:34:04 | 000,490,208 | ---- | M | MD5 = CC8206C9288EA409781DE1D7FC754A39] () (sesvc) ShadowExplorer Service [Auto | Stopped] -> C:\Program Files (x86)\ShadowExplorer\sesvc.exe -> [2013/01/02 17:49:24 | 000,009,216 | ---- | M | MD5 = 02DED435FCAA1C02959051AF636E154A] (www.shadowexplorer.com) (SQLBrowser) SQL Server Browser [Disabled | Stopped] -> C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe -> [2012/02/11 11:14:00 | 000,269,912 | ---- | M | MD5 = E9254892A2D74E537BAD3092F0F8EE40] (Microsoft Corporation) (NMSAccess) NMSAccess [Auto | Stopped] -> C:\Windows\SysWOW64\NMSAccessU.exe -> [2009/01/12 08:15:52 | 000,071,096 | ---- | M | MD5 = 7AEA4DF1CA68FD45DD4BBE1F0243CE7F] () [Driver Services - All] 64bit-(WRkrn) WRkrn [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\WRkrn.sys -> [2017/06/09 06:23:08 | 000,143,248 | ---- | M | Unable to obtain MD5] (Webroot) 64bit-(avgStm) avgStm [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\avgstm.sys -> [2017/06/06 08:35:15 | 000,160,008 | ---- | M | MD5 = E9D39B538EC9CCD1966F48FA62CEA5A9] (AVG Technologies CZ, s.r.o.) 64bit-(avgNetSec) avgNetSec [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\avgNetSec.sys -> [2017/06/06 08:26:20 | 000,509,056 | ---- | M | MD5 = 83D7FF4990D5F4E990FDC9B50D54D483] (AVG Technologies CZ, s.r.o.) 64bit-(avgSP) avgSP [File_System | System | Stopped] -> C:\Windows\SysNative\drivers\avgSP.sys -> [2017/06/02 14:17:26 | 000,570,320 | ---- | M | MD5 = F65863676D846FE699BD96623F996C4D] (AVG Technologies CZ, s.r.o.) 64bit-(avgVmm) avgVmm [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\avgVmm.sys -> [2017/06/02 14:17:26 | 000,340,824 | ---- | M | MD5 = 55E8C8AB6D024FD94AA59448A05B0F43] (AVG Technologies CZ, s.r.o.) 64bit-(avgMonFlt) avgMonFlt [File_System | Auto | Stopped] -> C:\Windows\SysNative\drivers\avgMonFlt.sys -> [2017/06/02 14:17:26 | 000,129,776 | ---- | M | MD5 = E390FC7F473E9881B798B44BF31E41FA] (AVG Technologies CZ, s.r.o.) 64bit-(avgRvrt) avgRvrt [Kernel | Boot | Stopped] -> C:\Windows\SysNative\drivers\avgRvrt.sys -> [2017/06/02 14:17:26 | 000,076,832 | ---- | M | MD5 = B67F104F18418BD36BA3DD6F4ADBFC06] (AVG Technologies CZ, s.r.o.) 64bit-(avgHwid) avgHwid [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\avgHwid.sys -> [2017/06/02 14:17:26 | 000,039,424 | ---- | M | MD5 = 2DD8AEB4EAB07384E03C7221CCD55523] (AVG Technologies CZ, s.r.o.) 64bit-(avgRdr) avgRdr [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\avgRdr2.sys -> [2017/06/02 14:17:25 | 000,102,280 | ---- | M | MD5 = 76680F830E770DE4D75031E2D3E85711] (AVG Technologies CZ, s.r.o.) 64bit-(avgSnx) avgSnx [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\avgSnx.sys -> [2017/06/02 14:16:57 | 001,008,288 | ---- | M | MD5 = 4101FFAB906644DB3A43FFA050AC19D4] (AVG Technologies CZ, s.r.o.) 64bit-(avgblog) avgblog [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\avgbloga.sys -> [2017/06/02 14:16:41 | 000,336,896 | ---- | M | MD5 = F8F277D752CFCF570928C28C4E7236C1] (AVG Technologies CZ, s.r.o.) 64bit-(avgbuniv) avgbuniv [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\avgbuniva.sys -> [2017/06/02 14:16:41 | 000,051,336 | ---- | M | MD5 = 207AA6B47C050DD13110D399BD4DA292] (AVG Technologies CZ, s.r.o.) 64bit-(avgbidsdriver) avgbidsdriver [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\avgbidsdrivera.sys -> [2017/06/02 14:16:40 | 000,314,128 | ---- | M | MD5 = 1FA0918F3365FE1AB30F47D3A4A23F05] (AVG Technologies CZ, s.r.o.) 64bit-(avgbidsh) avgbidsh [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\avgbidsha.sys -> [2017/06/02 14:16:40 | 000,192,584 | ---- | M | MD5 = A597136B52F1BE69ABB2CBE0D197E22F] (AVG Technologies CZ, s.r.o.) 64bit-(avgbdisk) avgbdisk [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\avgbdiska.sys -> [2017/06/02 14:16:40 | 000,166,624 | ---- | M | MD5 = 63A02B2298DA306327403F3F01BC3790] (AVG Technologies CZ, s.r.o.) 64bit-(MBAMSwissArmy) MBAMSwissArmy [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\MBAMSwissArmy.sys -> [2017/05/31 19:07:08 | 000,251,832 | ---- | M | MD5 = 53283EB9998AC9350E14C35A880989DB] (Malwarebytes) 64bit-(aswNetSec) aswNetSec [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\aswNetSec.sys -> [2017/05/25 14:05:32 | 000,507,928 | ---- | M | MD5 = DEC5206C45CBB8D8C7EDACFEAE0968B1] (AVAST Software) 64bit-(IntcAzAudAddService) Service for Realtek HD Audio (WDM) [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\RTKVHD64.sys -> [2017/05/25 02:00:44 | 005,780,448 | ---- | M | MD5 = 1290C704EC7D8F9355270C0BD13CA9AE] (Realtek Semiconductor Corp.) 64bit-(aswStm) aswStm [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\aswStm.sys -> [2017/05/19 03:35:24 | 000,158,880 | ---- | M | MD5 = 2933CBC7643168E4288D443B4125941C] (AVAST Software) 64bit-(file_tracker) file_tracker [File_System | Boot | Running] -> C:\Windows\SysNative\drivers\file_tracker.sys -> [2017/05/12 04:39:39 | 000,339,808 | ---- | M | MD5 = 3362EFB9ECE40CF85B0A729F23BAEB7D] (Acronis International GmbH) 64bit-(virtual_file) Acronis Virtual File Driver [File_System | Auto | Stopped] -> C:\Windows\SysNative\drivers\virtual_file.sys -> [2017/05/12 04:39:25 | 000,301,408 | ---- | M | MD5 = 0C987C7C5A0B710AB2881B3F19DF72F5] (Acronis International GmbH) 64bit-(tnd) Acronis Try&Decide filter [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\tnd.sys -> [2017/05/12 04:39:23 | 000,581,464 | ---- | M | MD5 = A6C7255A6C95B05E6551538F54248A7F] (Acronis International GmbH) 64bit-(tib_mounter) Acronis TIB Mounter [Kernel | Auto | Stopped] -> C:\Windows\SysNative\drivers\tib_mounter.sys -> [2017/05/12 04:39:22 | 000,202,592 | ---- | M | MD5 = DA3BF6E315D2FC2681CB7AE1E745DFDB] (Acronis International GmbH) 64bit-(tib) Acronis TIB Manager [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\tib.sys -> [2017/05/12 04:39:21 | 001,049,432 | ---- | M | MD5 = 3F656867E983E8D9E71E57354383C23A] (Acronis International GmbH) 64bit-(snapman) Acronis Snapshots Manager [Kernel | Boot | Stopped] -> C:\Windows\SysNative\drivers\snapman.sys -> [2017/05/12 04:39:18 | 000,339,288 | ---- | M | MD5 = 8C048728D8D4F3B204C18C5379BE7645] (Acronis International GmbH) 64bit-(fltsrv) Acronis Storage Filter Management [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\fltsrv.sys -> [2017/05/12 04:39:14 | 000,160,600 | ---- | M | MD5 = 48E43456C95CE0D73D09CE8FA3E5978A] (Acronis International GmbH) 64bit-(aswSP) aswSP [File_System | System | Stopped] -> C:\Windows\SysNative\drivers\aswSP.sys -> [2017/05/12 03:53:47 | 000,569,192 | ---- | M | MD5 = 7A17BD26C74F5329CB1DF029AE4DD357] (AVAST Software) 64bit-(aswVmm) aswVmm [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\aswVmm.sys -> [2017/05/12 03:53:47 | 000,339,696 | ---- | M | MD5 = E76C21203E29F2DCC489EF585E0B1A38] (AVAST Software) 64bit-(aswMonFlt) aswMonFlt [File_System | Auto | Stopped] -> C:\Windows\SysNative\drivers\aswMonFlt.sys -> [2017/05/12 03:53:46 | 000,128,648 | ---- | M | MD5 = 2B1490F2F1CC76C9C9B61CE63D6E7973] (AVAST Software) 64bit-(aswRvrt) aswRvrt [Kernel | Boot | Stopped] -> C:\Windows\SysNative\drivers\aswRvrt.sys -> [2017/05/12 03:53:46 | 000,075,704 | ---- | M | MD5 = C1007774450CFAB19D784D50C3410FC7] (AVAST Software) 64bit-(aswHwid) aswHwid [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\aswHwid.sys -> [2017/05/12 03:53:46 | 000,038,296 | ---- | M | MD5 = BA02CA77D989710F79FD662019C4DF94] (AVAST Software) 64bit-(aswRdr) aswRdr [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\aswRdr2.sys -> [2017/05/12 03:53:44 | 000,101,152 | ---- | M | MD5 = F26D1F761E14789743275FA5D258EAB8] (AVAST Software) 64bit-(aswSnx) aswSnx [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\aswSnx.sys -> [2017/05/12 03:52:02 | 001,007,160 | ---- | M | MD5 = EB1991686949400C51B8C21CE013621E] (AVAST Software) 64bit-(aswblog) aswblog [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\aswbloga.sys -> [2017/05/12 03:51:31 | 000,334,576 | ---- | M | MD5 = 5C561968CF601D76A98692DCC8CF74ED] (AVAST Software s.r.o.) 64bit-(aswbuniv) aswbuniv [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\aswbuniva.sys -> [2017/05/12 03:51:31 | 000,049,016 | ---- | M | MD5 = 335E5F19E7397A283B7ED20FE7B369EB] (AVAST Software s.r.o.) 64bit-(aswbidsdriver) aswbidsdriver [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\aswbidsdrivera.sys -> [2017/05/12 03:51:30 | 000,311,808 | ---- | M | MD5 = 0C19C91ED99964925FF8B05C23743AB1] (AVAST Software s.r.o.) 64bit-(aswbidsh) aswbidsh [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\aswbidsha.sys -> [2017/05/12 03:51:30 | 000,190,256 | ---- | M | MD5 = 670839F4BA6D82F3035AADFE8274F02E] (AVAST Software s.r.o.) 64bit-(GUSBootStartup) GUSBootStartup [Kernel | System | Stopped] -> C:\Windows\SysNative\drivers\GUSBootStartup.sys -> [2017/05/01 21:53:38 | 000,020,160 | ---- | M | MD5 = E4626B663B94E5FEB90F497395B5C059] (Glarysoft Ltd) 64bit-(dtliteusbbus) DAEMON Tools Lite Virtual USB Bus [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\dtliteusbbus.sys -> [2017/04/28 14:08:48 | 000,047,672 | ---- | M | MD5 = E23FDD696839A4790682CA66C48D3F2F] (Disc Soft Ltd) 64bit-(dtlitescsibus) DAEMON Tools Lite Virtual SCSI Bus [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\dtlitescsibus.sys -> [2017/04/28 14:05:40 | 000,030,264 | ---- | M | MD5 = 679FF716052109392D870F6A6C4A3535] (Disc Soft Ltd) 64bit-(DXGKrnl) LDDM Graphics Subsystem [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\dxgkrnl.sys -> [2017/04/28 03:00:30 | 002,444,192 | ---- | M | MD5 = 5FB6528EC95A2E83AE71005108C03D2B] (Microsoft Corporation) 64bit-(USBXHCI) Contrôleur d’hôte compatible xHCI USB [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\USBXHCI.SYS -> [2017/04/28 02:59:04 | 000,388,000 | ---- | M | MD5 = 50E70B3A95138AA4A30B095270EE0DE6] (Microsoft Corporation) 64bit-(BasicRender) BasicRender [Kernel | System | Running] -> C:\Windows\SysNative\drivers\BasicRender.sys -> [2017/04/28 02:11:52 | 000,035,840 | ---- | M | MD5 = CFD199354CC01F5857F3F27BC1BA2DBE] (Microsoft Corporation) 64bit-(srv2) Pilote de serveur SMB 2.xxx [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\srv2.sys -> [2017/04/28 01:54:21 | 000,722,944 | ---- | M | MD5 = A84B05C7C2A233497BE1D518A662C326] (Microsoft Corporation) 64bit-(srv) Pilote de serveur SMB 1.xxx [File_System | Auto | Stopped] -> C:\Windows\SysNative\drivers\srv.sys -> [2017/04/28 01:54:21 | 000,414,208 | ---- | M | MD5 = 36EAC4FE629FC036632F13EC14788FD1] (Microsoft Corporation) 64bit-(RTSUER) Realtek USB Card Reader - UER [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\RtsUer.sys -> [2017/04/27 09:02:58 | 000,420,832 | ---- | M | MD5 = BAF9F6E278144989B527FF9581BDBA8F] (Realsil Semiconductor Corporation) 64bit-(wcifs) Windows Container Isolation [File_System | Auto | Stopped] -> C:\Windows\SysNative\drivers\wcifs.sys -> [2017/04/26 19:34:21 | 000,142,240 | ---- | M | MD5 = 2B7CCCFBB166100842D31440228588CF] (Microsoft Corporation) 64bit-(netvsc) netvsc [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\netvsc.sys -> [2017/04/26 19:34:20 | 000,118,784 | ---- | M | MD5 = 8C03F2F5A9E93AEB08B3AEE51552394A] (Microsoft Corporation) 64bit-(GUBootStartup) GUBootStartup [Kernel | System | Stopped] -> C:\Windows\SysNative\drivers\GUBootStartup.sys -> [2017/04/23 11:52:40 | 000,020,160 | ---- | M | MD5 = C06C3D6C5A0805B314E3E940632C97CB] (Glarysoft Ltd) 64bit-(rzc7187za) rzc7187za [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\zinstall_z77\rzc7187za.sys -> [2017/04/12 04:41:52 | 000,255,120 | ---- | M | MD5 = EFDAF693FED0C553593BE0B517237811] (rzc7187za Foundation) 64bit-(imdisk) imdisk [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\imdisk.sys -> [2017/04/12 04:41:48 | 000,064,144 | ---- | M | MD5 = 2CD3BB4134D0AD024AA6B6B61B8A6404] (Olof Lagerkvist) 64bit-(awealloc) awealloc [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\awealloc.sys -> [2017/04/12 04:41:46 | 000,028,304 | ---- | M | MD5 = 1D5B6A41361B0883848570AC941A7FD3] (Olof Lagerkvist) 64bit-(diskpt) diskpt [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\diskpt.sys -> [2017/04/09 15:52:22 | 000,417,424 | ---- | M | MD5 = 265A5B7037EE283830148F5F906DF425] (SHADOWDEFENDER.COM) 64bit-(IMFCameraProtect) IMFCameraProtect [Kernel | System | Stopped] -> C:\Windows\SysNative\drivers\IMFCameraProtect.sys -> [2017/03/29 18:05:42 | 000,044,096 | ---- | M | MD5 = 870BDFC29BAC30339BF70639781143FD] (IObit.com) 64bit-(keycrypt) keycrypt [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\KeyCrypt64.sys -> [2017/03/22 12:44:48 | 000,161,408 | ---- | M | MD5 = BF0E0B7DE4E9BC8E0515779F66ACA853] (Zemana Ltd.) 64bit-(cgnetfilter1521) cgnetfilter1521 [Kernel | System | Running] -> C:\Windows\SysNative\drivers\cgnetfilter1521.sys -> [2017/03/22 09:39:54 | 000,084,768 | ---- | M | MD5 = 44293BF717CA39DC925C6A05453D8D34] (Windows (R) Win 7 DDK provider) 64bit-(rdpbus) Remote Desktop Device Redirector Bus Driver [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\rdpbus.sys -> [2017/03/20 07:11:48 | 000,027,136 | ---- | M | MD5 = 9414B22E093243636D362BF8C8C12A67] (Microsoft Corporation) 64bit-(terminpt) Pilote d’entrée du Bureau à distance Microsoft [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\terminpt.sys -> [2017/03/20 07:11:47 | 000,037,280 | ---- | M | MD5 = 96A35CDBA661D41C5A3914257CA1D200] (Microsoft Corporation) 64bit-(SpatialGraphFilter) Holographic Spatial Graph Filter [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\SpatialGraphFilter.sys -> [2017/03/20 07:11:45 | 000,040,352 | ---- | M | MD5 = F3F0B8CAC1F3E6C3382EAFCE762475AD] (Microsoft Corporation) 64bit-(RdpVideoMiniport) Remote Desktop Video Miniport Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\rdpvideominiport.sys -> [2017/03/20 07:11:44 | 000,030,624 | ---- | M | MD5 = DF32ED51DC0C3F6F3B1C4CEF71B8B426] (Microsoft Corporation) 64bit-(RDPDR) Pilote du redirecteur de périphérique du Bureau à distance [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\rdpdr.sys -> [2017/03/20 07:11:43 | 000,183,296 | ---- | M | MD5 = 53A01D3FDB701AC5D9DDE4140227E3D9] (Microsoft Corporation) 64bit-(fvevol) Pilote de filtre de chiffrement de lecteur BitLocker [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\fvevol.sys -> [2017/03/18 22:59:52 | 000,715,168 | ---- | M | MD5 = FF0699483185CE3B4E1144DF19AC5E97] (Microsoft Corporation) 64bit-(WpdUpFltr) WPD Upper Class Filter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\WpdUpFltr.sys -> [2017/03/18 22:59:50 | 000,030,624 | ---- | M | MD5 = 1FD80CBB192A20375F3664639DEB57B5] (Microsoft Corporation) 64bit-(storqosflt) Pilote de filtre de qualité de service de stockage [File_System | Auto | Stopped] -> C:\Windows\SysNative\drivers\storqosflt.sys -> [2017/03/18 22:58:33 | 000,079,872 | ---- | M | MD5 = 3A62FF78619258E6126C5C4B4CC82C8E] (Microsoft Corporation) 64bit-(CNG) CNG [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\cng.sys -> [2017/03/18 22:58:22 | 000,642,688 | ---- | M | MD5 = 3413CE81E02C091F33C4C3DD3071630F] (Microsoft Corporation) 64bit-(KSecPkg) KSecPkg [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\ksecpkg.sys -> [2017/03/18 22:58:22 | 000,170,912 | ---- | M | MD5 = 6629CAA1F157088B9EDD1EAD24C6D753] (Microsoft Corporation) 64bit-(IPNAT) IP Network Address Translator [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\ipnat.sys -> [2017/03/18 22:58:21 | 000,214,528 | ---- | M | MD5 = DCC05E5EAA580C97F13B434FAFACED85] (Microsoft Corporation) 64bit-(wanarpv6) Pilote ARP IPv6 d’accès à distance [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\wanarp.sys -> [2017/03/18 22:58:21 | 000,081,408 | ---- | M | MD5 = FDD16EF9177A8A2EF08A7FA3D3EFAA13] (Microsoft Corporation) 64bit-(wanarp) Pilote ARP IP d’accès à distance [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\wanarp.sys -> [2017/03/18 22:58:21 | 000,081,408 | ---- | M | MD5 = FDD16EF9177A8A2EF08A7FA3D3EFAA13] (Microsoft Corporation) 64bit-(vwififlt) Virtual WiFi Filter Driver [Kernel | System | Running] -> C:\Windows\SysNative\drivers\vwififlt.sys -> [2017/03/18 22:58:21 | 000,077,312 | ---- | M | MD5 = 799ECD541A9B2764B36A22A095885365] (Microsoft Corporation) 64bit-(Ndisuio) NDIS Usermode I/O Protocol [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\ndisuio.sys -> [2017/03/18 22:58:21 | 000,065,536 | ---- | M | MD5 = 6704F27EB15A5B30AA7FA5A4F4D1FD47] (Microsoft Corporation) 64bit-(ndproxy) @%SystemRoot%\system32\drivers\todo.sys,-101;NDIS Proxy [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\ndproxy.sys -> [2017/03/18 22:58:21 | 000,062,464 | ---- | M | MD5 = AC6AC99075732F5C29DB0004DD5B1AC6] (Microsoft Corporation) 64bit-(vwifibus) Virtual Wireless Bus Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\vwifibus.sys -> [2017/03/18 22:58:21 | 000,027,136 | ---- | M | MD5 = B47026E109828102266CBE2F5F9AD113] (Microsoft Corporation) 64bit-(NdisTapi) Pilote TAPI NDIS d’accès à distance [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\ndistapi.sys -> [2017/03/18 22:58:21 | 000,027,136 | ---- | M | MD5 = 73B4C72FB6170A08C64BDA92DE93ECF7] (Microsoft Corporation) 64bit-(wdiwifi) WDI Driver Framework [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\WdiWiFi.sys -> [2017/03/18 22:58:18 | 000,759,808 | ---- | M | MD5 = 2974422E31DBC953A585A065EF736948] (Microsoft Corporation) 64bit-(NativeWifiP) Filtre NativeWiFi [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\nwifi.sys -> [2017/03/18 22:58:18 | 000,549,888 | ---- | M | MD5 = 39C772E20B8C61858F969E4D60699D89] (Microsoft Corporation) 64bit-(RasAgileVpn) Miniport WAN (IKEv2) [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\agilevpn.sys -> [2017/03/18 22:58:18 | 000,108,544 | ---- | M | MD5 = 4E9379389D0A851DD19D130C8FAEFBD0] (Microsoft Corporation) 64bit-(MSKSSRV) Proxy de service de répartition Microsoft [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\mskssrv.sys -> [2017/03/18 22:58:18 | 000,032,768 | ---- | M | MD5 = B26E1C10C8323D2B6ADAF504CD487757] (Microsoft Corporation) 64bit-(GpuEnergyDrv) GPU Energy Driver [Kernel | System | Stopped] -> C:\Windows\SysNative\drivers\gpuenergydrv.sys -> [2017/03/18 22:58:18 | 000,008,192 | ---- | M | MD5 = 3FC3FCF557D0BE3D724EA10642E1F6FF] (Microsoft Corporation) 64bit-(ndiswanlegacy) Pilote réseau étendu NDIS HÉRITÉ d’accès à distance [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\ndiswan.sys -> [2017/03/18 22:58:16 | 000,192,000 | ---- | M | MD5 = 94517BC9F29A1B73D377F1BF1C3DCA34] (Microsoft Corporation) 64bit-(NdisWan) Pilote réseau étendu NDIS d’accès à distance [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\ndiswan.sys -> [2017/03/18 22:58:16 | 000,192,000 | ---- | M | MD5 = 94517BC9F29A1B73D377F1BF1C3DCA34] (Microsoft Corporation) 64bit-(Ndu) Windows Network Data Usage Monitoring Driver [Kernel | Auto | Stopped] -> C:\Windows\SysNative\drivers\Ndu.sys -> [2017/03/18 22:58:16 | 000,127,488 | ---- | M | MD5 = 9AC090451D92E6081EB89CDA83D74189] (Microsoft Corporation) 64bit-(ksthunk) Kernel Streaming Thunks [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\ksthunk.sys -> [2017/03/18 22:58:10 | 000,026,624 | ---- | M | MD5 = 365D39AD9D6BD9D61299DC098CDFC9E4] (Microsoft Corporation) 64bit-(Rasl2tp) Miniport réseau étendu (L2TP) [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\rasl2tp.sys -> [2017/03/18 22:58:07 | 000,107,008 | ---- | M | MD5 = 5279EC98F6218D29EADDFECCC0D80E9A] (Microsoft Corporation) 64bit-(PptpMiniport) Miniport réseau étendu (PPTP) [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\raspptp.sys -> [2017/03/18 22:58:07 | 000,097,792 | ---- | M | MD5 = D292D7FADCEE481CC64A9DE8FE9C3347] (Microsoft Corporation) 64bit-(RasSstp) Miniport WAN (SSTP) [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\rassstp.sys -> [2017/03/18 22:58:07 | 000,079,872 | ---- | M | MD5 = 6A4E45A7F17FA0B4B1B48C550E311944] (Microsoft Corporation) 64bit-(Ufx01000) USB Function Class Extension [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\ufx01000.sys -> [2017/03/18 22:58:04 | 000,263,584 | ---- | M | MD5 = 00BEF71C45FD6B06E7525E7B31EFA88C] (Microsoft Corporation) 64bit-(UcmTcpciCx0101) UCM-TCPCI KMDF Class Extension [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\UcmTcpciCx.sys -> [2017/03/18 22:58:04 | 000,179,200 | ---- | M | MD5 = 8BB64E04CD97AD8C68543181D93E2AFC] (Microsoft Corporation) 64bit-(UcmCx0101) USB Connector Manager KMDF Class Extension [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\UcmCx.sys -> [2017/03/18 22:58:04 | 000,104,448 | ---- | M | MD5 = 5C2C0296D9EE7DC92A3F14642FBE656D] (Microsoft Corporation) 64bit-(WindowsTrustedRT) Windows Trusted Execution Environment Class Extension [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\WindowsTrustedRT.sys -> [2017/03/18 22:58:04 | 000,070,232 | ---- | M | MD5 = C8EBCFED8FD2CDF725E44AF93016621E] (Microsoft Corporation) 64bit-(UrsCx01000) USB Role-Switch Support Library [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\urscx01000.sys -> [2017/03/18 22:58:04 | 000,059,288 | ---- | M | MD5 = 4329D880DB96B504F0DDC991A7374CCD] (Microsoft Corporation) 64bit-(IndirectKmd) Pilote en mode noyau pour affichages indirects [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\IndirectKmd.sys -> [2017/03/18 22:58:04 | 000,036,864 | ---- | M | MD5 = 0E33BC018502E7FDE77C343055D9C626] (Microsoft Corporation) 64bit-(MSTEE) Convertisseur en T/site-à-site de répartition Microsoft [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\mstee.sys -> [2017/03/18 22:58:04 | 000,012,800 | ---- | M | MD5 = 09D51564E49181E9928910D6B91C920E] (Microsoft Corporation) 64bit-(MSPCLOCK) Proxy d’horloge de répartition Microsoft [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\mspclock.sys -> [2017/03/18 22:58:04 | 000,010,752 | ---- | M | MD5 = B4860AB91DC4E73936F0FF504D6B4B07] (Microsoft Corporation) 64bit-(MSPQM) Proxy de gestion de qualité de répartition Microsoft [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\mspqm.sys -> [2017/03/18 22:58:04 | 000,010,752 | ---- | M | MD5 = 8EDC45C3F7F64A51C98B59E24648F74B] (Microsoft Corporation) 64bit-(AppID) Pilote AppID [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\appid.sys -> [2017/03/18 22:58:03 | 000,184,736 | ---- | M | MD5 = 5180537517C27375B1F2CB37ED599FAF] (Microsoft Corporation) 64bit-(mpsdrv) Windows Firewall Authorization Driver [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\mpsdrv.sys -> [2017/03/18 22:58:03 | 000,076,800 | ---- | M | MD5 = AD118EC95E9EF4D5223D681D8F183567] (Microsoft Corporation) 64bit-(applockerfltr) Pilote de filtre Smartlocker [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\applockerfltr.sys -> [2017/03/18 22:58:03 | 000,017,920 | ---- | M | MD5 = EAF36A714E16A69B8B4ED7591CBA77B6] (Microsoft Corporation) 64bit-(PEAUTH) PEAUTH [Kernel | Auto | Stopped] -> C:\Windows\SysNative\drivers\PEAuth.sys -> [2017/03/18 22:58:01 | 000,741,376 | ---- | M | MD5 = 4F190BA3C9BD2F0277BCBF480F396091] (Microsoft Corporation) 64bit-(mrxsmb20) Mini-redirecteur SMB 2.0 [File_System | On_Demand | Running] -> C:\Windows\SysNative\drivers\mrxsmb20.sys -> [2017/03/18 22:58:01 | 000,228,256 | ---- | M | MD5 = 1FC4802B593494746B6FE3BDAC25E371] (Microsoft Corporation) 64bit-(WinNat) Pilote NAT Windows [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\winnat.sys -> [2017/03/18 22:58:01 | 000,217,088 | ---- | M | MD5 = 2E1A614EFB0523E20860AE7978DDA0A4] (Microsoft Corporation) 64bit-(rspndr) Répondeur de découverte de la topologie de la couche de liaison [Kernel | Auto | Stopped] -> C:\Windows\SysNative\drivers\rspndr.sys -> [2017/03/18 22:58:01 | 000,082,432 | ---- | M | MD5 = E87EECED9287C275B6CF30EB598B1D77] (Microsoft Corporation) 64bit-(lltdio) Pilote E/S de mappage de découverte de topologie de la couche de liaison [Kernel | Auto | Stopped] -> C:\Windows\SysNative\drivers\lltdio.sys -> [2017/03/18 22:58:01 | 000,066,560 | ---- | M | MD5 = FC37745959DFA4871759E4DCC836227A] (Microsoft Corporation) 64bit-(CldFlt) Windows Cloud Files Filter Driver [File_System | Auto | Stopped] -> C:\Windows\SysNative\drivers\cldflt.sys -> [2017/03/18 22:58:01 | 000,012,288 | ---- | M | MD5 = 616E1ED94FA7F96D429D985FDB203D2E] (Microsoft Corporation) 64bit-(SerCx2) Serial UART Support Library [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\SerCx2.sys -> [2017/03/18 22:57:58 | 000,154,016 | ---- | M | MD5 = C8F4FDA8B3D039D7947344614FF5BFB2] (Microsoft Corporation) 64bit-(MsLldp) Protocole LLDP (Link Layer Discovery Protocol) Microsoft [Kernel | Unknown | Stopped] -> C:\Windows\SysNative\drivers\mslldp.sys -> [2017/03/18 22:57:58 | 000,083,456 | ---- | M | MD5 = E40B960078A15D4901265D32E071C42D] (Microsoft Corporation) 64bit-(hvservice) Hypervisor/Virtual Machine Support Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\hvservice.sys -> [2017/03/18 22:57:58 | 000,074,648 | ---- | M | MD5 = F60F8390B635156593F7493AE898AFB0] (Microsoft Corporation) 64bit-(cnghwassist) CNG Hardware Assist algorithm provider [Kernel | Disabled | Stopped] -> C:\Windows\SysNative\drivers\cnghwassist.sys -> [2017/03/18 22:57:58 | 000,039,840 | ---- | M | MD5 = E1BFF774FF67CA951A5DFF0E104FB132] (Microsoft Corporation) 64bit-(mshidumdf) HID transmis directement au pilote UMDF [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\mshidumdf.sys -> [2017/03/18 22:57:58 | 000,012,288 | ---- | M | MD5 = E8E568EF60677E4534F387C53EE1B35F] (Microsoft Corporation) 64bit-(mshidkmdf) Pass-through HID to KMDF Filter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\mshidkmdf.sys -> [2017/03/18 22:57:58 | 000,008,704 | ---- | M | MD5 = CBA955A54C9446CAAD28C76789D3B071] (Microsoft Corporation) 64bit-(rdbss) Sous-système de mise en mémoire tampon redirigée [File_System | System | Running] -> C:\Windows\SysNative\drivers\rdbss.sys -> [2017/03/18 22:57:57 | 000,434,080 | ---- | M | MD5 = F2C575A9657F7B2E027C6CE7BC8F1A2D] (Microsoft Corporation) 64bit-(fastfat) FAT12/16/32 File System Driver [File_System | On_Demand | Running] -> C:\WINDOWS\SysNative\drivers\fastfat.sys -> [2017/03/18 22:57:57 | 000,363,424 | ---- | M | MD5 = 8F51A5633DEB18DBC8B1C117B42B23D7] (Microsoft Corporation) 64bit-(Mup) Mup [File_System | Boot | Running] -> C:\Windows\SysNative\drivers\mup.sys -> [2017/03/18 22:57:57 | 000,123,808 | ---- | M | MD5 = E35F51C7474A26680627477462715206] (Microsoft Corporation) 64bit-(SerCx) Serial UART Support Library [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\SerCx.sys -> [2017/03/18 22:57:57 | 000,075,680 | ---- | M | MD5 = 585329F62195A4B7AAD0A95F6EC89751] (Microsoft Corporation) 64bit-(clreg) Virtual Registry for Containers [Kernel | Auto | Stopped] -> C:\Windows\SysNative\drivers\registry.sys -> [2017/03/18 22:57:57 | 000,014,336 | ---- | M | MD5 = 5118CFC33BBB51C7E3ED441B7085AD26] (Microsoft Corporation) 64bit-(mrxsmb) Wrapper et moteur de mini-redirecteur SMB [File_System | On_Demand | Running] -> C:\Windows\SysNative\drivers\mrxsmb.sys -> [2017/03/18 22:57:54 | 000,467,352 | ---- | M | MD5 = F2AD1B72C5A6475FB5FF332E1980DF88] (Microsoft Corporation) 64bit-(Wof) Windows Overlay File System Filter Driver [File_System | Boot | Running] -> C:\WINDOWS\SysNative\drivers\wof.sys -> [2017/03/18 22:57:54 | 000,208,288 | ---- | M | MD5 = 1AE1076034392218EE89D2744EC2A071] (Microsoft Corporation) 64bit-(GPIOClx0101) Microsoft GPIO Class Extension Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\msgpioclx.sys -> [2017/03/18 22:57:54 | 000,169,888 | ---- | M | MD5 = 4B11CFBE1D9B73A9D865F6AB26F800BA] (Microsoft Corporation) 64bit-(NdisImPlatform) Protocole de multiplexage de carte réseau Microsoft [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\NdisImPlatform.sys -> [2017/03/18 22:57:54 | 000,128,512 | ---- | M | MD5 = EB127689AF6F24091AB73538A556257F] (Microsoft Corporation) 64bit-(QWAVEdrv) Pilote QWAVE [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\qwavedrv.sys -> [2017/03/18 22:57:54 | 000,049,664 | ---- | M | MD5 = A2B0F46FBA2521E7E732BDBDB1238515] (Microsoft Corporation) 64bit-(WFPLWFS) Plateforme de filtrage Microsoft Windows [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\wfplwfs.sys -> [2017/03/18 22:57:53 | 000,164,768 | ---- | M | MD5 = 3C8F0ABD00E197101DCF43FEF8FB0D76] (Microsoft Corporation) 64bit-(FileInfo) File Information FS MiniFilter [File_System | Boot | Running] -> C:\Windows\SysNative\drivers\fileinfo.sys -> [2017/03/18 22:57:53 | 000,086,432 | ---- | M | MD5 = 3D6087F51110F3CC0DA89385354F8C5E] (Microsoft Corporation) 64bit-(wcnfs) Windows Container Name Virtualization [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\wcnfs.sys -> [2017/03/18 22:57:53 | 000,072,192 | ---- | M | MD5 = 1737BEF60CA384423CE4B32AF1C2BFFC] (Microsoft Corporation) 64bit-(exfat) exFAT File System Driver [File_System | On_Demand | Stopped] -> C:\WINDOWS\SysNative\drivers\exfat.sys -> [2017/03/18 22:57:50 | 000,347,136 | ---- | M | MD5 = 9C4D88E8614487AD85A6F18A71A7298F] (Microsoft Corporation) 64bit-(udfs) udfs [File_System | Disabled | Running] -> C:\Windows\SysNative\drivers\udfs.sys -> [2017/03/18 22:57:50 | 000,324,096 | ---- | M | MD5 = C82BE75239D412057C9E3DB1785680C6] (Microsoft Corporation) 64bit-(rdyboost) ReadyBoost [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\rdyboost.sys -> [2017/03/18 22:57:50 | 000,282,528 | ---- | M | MD5 = 2369A5B651308E0C3458143976E9B03B] (Microsoft Corporation) 64bit-(srvnet) srvnet [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\srvnet.sys -> [2017/03/18 22:57:50 | 000,255,488 | ---- | M | MD5 = 0351B28EEDFBD6C8CC69A7224A098CFA] (Microsoft Corporation) 64bit-(NdisCap) Capture NDIS Microsoft [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\ndiscap.sys -> [2017/03/18 22:57:50 | 000,050,688 | ---- | M | MD5 = 4EA73CFDEE4A628D387D95464A131F29] (Microsoft Corporation) 64bit-(WIMMount) WIMMount [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\wimmount.sys -> [2017/03/18 22:57:50 | 000,035,744 | ---- | M | MD5 = 75014BF6510D4C6C69EEE5B7743A52AF] (Microsoft Corporation) 64bit-(Dfsc) Pilote du client de l’espace de noms DFS [File_System | System | Running] -> C:\Windows\SysNative\drivers\dfsc.sys -> [2017/03/18 22:57:47 | 000,150,528 | ---- | M | MD5 = 185A4519B7764F4DEF714D890A7A9FD2] (Microsoft Corporation) 64bit-(SpbCx) Simple Peripheral Bus Support Library [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\SpbCx.sys -> [2017/03/18 22:57:47 | 000,080,288 | ---- | M | MD5 = 83E82B0E292DCDE4C75B9241BF0FB300] (Microsoft Corporation) 64bit-(ws2ifsl) Environnement de prise en charge de Fournisseur de services non-IFS Windows Sockets 2.0 [Kernel | System | Running] -> C:\Windows\SysNative\drivers\ws2ifsl.sys -> [2017/03/18 22:57:46 | 000,023,552 | ---- | M | MD5 = DAF4451760B46CB383D287C4FAFFE97D] (Microsoft Corporation) 64bit-(partmgr) Gestionnaire de partitions [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\partmgr.sys -> [2017/03/18 22:57:42 | 000,159,648 | ---- | M | MD5 = 664B7DDEE982ADF5EAB480C75B9F6218] (Microsoft Corporation) 64bit-(NTFS) NTFS [File_System | On_Demand | Running] -> C:\WINDOWS\SysNative\drivers\ntfs.sys -> [2017/03/18 22:57:39 | 002,328,480 | ---- | M | MD5 = 731FD52461C8107E5B19B9AEDBB82BFB] (Microsoft Corporation) 64bit-(ReFS) ReFS [File_System | On_Demand | Stopped] -> C:\WINDOWS\SysNative\drivers\refs.sys -> [2017/03/18 22:57:39 | 001,735,584 | ---- | M | MD5 = 3581FB9529035F8EC6DB681664CA70B1] (Microsoft Corporation) 64bit-(ReFSv1) ReFSv1 [File_System | On_Demand | Stopped] -> C:\WINDOWS\SysNative\drivers\refsv1.sys -> [2017/03/18 22:57:39 | 000,936,864 | ---- | M | MD5 = 79E1ADE19D8B7C56EF29D098EAF57AD0] (Microsoft Corporation) 64bit-(Wdf01000) Service Infrastructure de pilote en mode noyau [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\Wdf01000.sys -> [2017/03/18 22:57:39 | 000,902,376 | ---- | M | MD5 = 0C6CBF3490EE5F0D62B5820568CA30B8] (Microsoft Corporation) 64bit-(volsnap) Volume Shadow Copy driver [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\volsnap.sys -> [2017/03/18 22:57:39 | 000,397,216 | ---- | M | MD5 = E3429DBBEA3965BB96E24B16EF4A2551] (Microsoft Corporation) 64bit-(FltMgr) FltMgr [File_System | Boot | Running] -> C:\Windows\SysNative\drivers\fltMgr.sys -> [2017/03/18 22:57:39 | 000,386,464 | ---- | M | MD5 = A84261F75F490E45CFEDBA77EFE4F67E] (Microsoft Corporation) 64bit-(CLFS) Common Log (CLFS) [Kernel | Unknown | Running] -> C:\Windows\SysNative\drivers\clfs.sys -> [2017/03/18 22:57:39 | 000,382,368 | ---- | M | MD5 = 96C01F97576D2542FCBD28E13C8CC6A1] (Microsoft Corporation) 64bit-(volmgrx) Gestionnaire de volumes dynamiques [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\volmgrx.sys -> [2017/03/18 22:57:39 | 000,373,664 | ---- | M | MD5 = 6EE608257C1137A25B402EF8FC77E83A] (Microsoft Corporation) 64bit-(ahcache) Application Compatibility Cache [Kernel | System | Running] -> C:\Windows\SysNative\drivers\ahcache.sys -> [2017/03/18 22:57:39 | 000,239,616 | ---- | M | MD5 = 1D914C996F2C3134E2344BB74F79BCF6] (Microsoft Corporation) 64bit-(VerifierExt) VerifierExt [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\VerifierExt.sys -> [2017/03/18 22:57:39 | 000,215,456 | ---- | M | MD5 = C83F3BC00651448DB127D497CF955089] (Microsoft Corporation) 64bit-(cdfs) CD/DVD File System Reader [File_System | Disabled | Running] -> C:\Windows\SysNative\drivers\cdfs.sys -> [2017/03/18 22:57:39 | 000,093,184 | ---- | M | MD5 = B6E5AD7C83A5254DEE9D86023C0E5A81] (Microsoft Corporation) 64bit-(Npfs) Npfs [File_System | System | Running] -> C:\WINDOWS\SysNative\drivers\npfs.sys -> [2017/03/18 22:57:39 | 000,069,120 | ---- | M | MD5 = 6D8F6A9C53CFB0C49E8251A442B7283F] (Microsoft Corporation) 64bit-(pcw) Performance Counters for Windows Driver [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\pcw.sys -> [2017/03/18 22:57:39 | 000,052,640 | ---- | M | MD5 = 76EA512FD9D4673CF7A57775EE8922E2] (Microsoft Corporation) 64bit-(Msfs) Msfs [File_System | System | Running] -> C:\WINDOWS\SysNative\drivers\msfs.sys -> [2017/03/18 22:57:39 | 000,031,744 | ---- | M | MD5 = 92C00BD9616F353CA59A755C33269757] (Microsoft Corporation) 64bit-(hwpolicy) Hardware Policy Driver [Kernel | Boot | Stopped] -> C:\Windows\SysNative\drivers\hwpolicy.sys -> [2017/03/18 22:57:39 | 000,029,600 | ---- | M | MD5 = 563F5FC3B46A70A91AB6C8822AC8BF25] (Microsoft Corporation) 64bit-(Null) Null [Kernel | System | Running] -> C:\WINDOWS\SysNative\drivers\null.sys -> [2017/03/18 22:57:39 | 000,007,680 | ---- | M | MD5 = 4FFB2D5655D10700D5B8E205C4DB86BD] (Microsoft Corporation) 64bit-(WUDFWpdMtp) WUDFWpdMtp [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\WUDFRd.sys -> [2017/03/18 22:57:38 | 000,220,672 | ---- | M | MD5 = 5068DAA8F67A62E964C9C9F88B159EA9] (Microsoft Corporation) 64bit-(WUDFWpdFs) WUDFWpdFs [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\WUDFRd.sys -> [2017/03/18 22:57:38 | 000,220,672 | ---- | M | MD5 = 5068DAA8F67A62E964C9C9F88B159EA9] (Microsoft Corporation) 64bit-(WUDFRd) WUDFRd [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\WUDFRd.sys -> [2017/03/18 22:57:38 | 000,220,672 | ---- | M | MD5 = 5068DAA8F67A62E964C9C9F88B159EA9] (Microsoft Corporation) 64bit-(SensorsSimulatorDriver) UMDF Reflector service for SensorsSimulatorDriver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\WUDFRd.sys -> [2017/03/18 22:57:38 | 000,220,672 | ---- | M | MD5 = 5068DAA8F67A62E964C9C9F88B159EA9] (Microsoft Corporation) 64bit-(mountmgr) Gestionnaire des points de montage [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\mountmgr.sys -> [2017/03/18 22:57:38 | 000,105,880 | ---- | M | MD5 = 8BF7039787036529B98E50AE86A0E46B] (Microsoft Corporation) 64bit-(WudfPf) User Mode Driver Frameworks Platform Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\WUDFPf.sys -> [2017/03/18 22:57:38 | 000,100,864 | ---- | M | MD5 = 455609BF60DA3B57EEAB863DEFCCF14D] (Microsoft Corporation) 64bit-(condrv) Console Driver [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\condrv.sys -> [2017/03/18 22:57:38 | 000,056,224 | ---- | M | MD5 = 04532711732BE9DBC364E88E4A9EC18A] (Microsoft Corporation) 64bit-(iorate) Pilote du filtre du taux d’E/S du disque [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\iorate.sys -> [2017/03/18 22:57:38 | 000,049,568 | ---- | M | MD5 = 549C278119FF539C3B219C55B98B0E87] (Microsoft Corporation) 64bit-(Tcpip6) @todo.dll,-100;Microsoft IPv6 Protocol Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\tcpip.sys -> [2017/03/18 22:57:36 | 002,682,776 | ---- | M | MD5 = 0907BD52E5264C0851A839D471F35DA0] (Microsoft Corporation) 64bit-(Tcpip) Pilote pour protocole TCP/IP [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\tcpip.sys -> [2017/03/18 22:57:36 | 002,682,776 | ---- | M | MD5 = 0907BD52E5264C0851A839D471F35DA0] (Microsoft Corporation) 64bit-(AFD) Pilote de fonction connexe pour Winsock [Kernel | System | Running] -> C:\Windows\SysNative\drivers\afd.sys -> [2017/03/18 22:57:36 | 000,610,712 | ---- | M | MD5 = AC1928C2F7505BD556C552F153B062AB] (Microsoft Corporation) 64bit-(MsRPC) MsRPC [Kernel | On_Demand | Stopped] -> C:\WINDOWS\SysNative\drivers\msrpc.sys -> [2017/03/18 22:57:36 | 000,367,000 | ---- | M | MD5 = 7DA5FAC2A49D30CA5B7B96B8B26281AC] (Microsoft Corporation) 64bit-(KSecDD) KSecDD [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\ksecdd.sys -> [2017/03/18 22:57:36 | 000,136,088 | ---- | M | MD5 = BA7A5838866618A4E82FBC05B8923605] (Microsoft Corporation) 64bit-(NDIS) Pilote système NDIS [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\ndis.sys -> [2017/03/18 22:57:35 | 001,243,040 | ---- | M | MD5 = E27876B335FEB441DA511030AA85624D] (Microsoft Corporation) 64bit-(HTTP) HTTP [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\http.sys -> [2017/03/18 22:57:35 | 001,106,848 | ---- | M | MD5 = 2413454E305678EA9A486E8DE2E67849] (Microsoft Corporation) 64bit-(NetBT) NetBT [Kernel | System | Running] -> C:\Windows\SysNative\drivers\netbt.sys -> [2017/03/18 22:57:35 | 000,305,152 | ---- | M | MD5 = 30C2F67EC84EB11B22011620107E0325] (Microsoft Corporation) 64bit-(Psched) Planificateur de paquets QoS [Kernel | System | Running] -> C:\Windows\SysNative\drivers\pacer.sys -> [2017/03/18 22:57:35 | 000,152,992 | ---- | M | MD5 = B60431D2A046AD97F8427F6E568370F5] (Microsoft Corporation) 64bit-(NetAdapterCx) Network Adapter Wdf Class Extension Library [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\NetAdapterCx.sys -> [2017/03/18 22:57:35 | 000,122,368 | ---- | M | MD5 = A115DDB2C7805C41EEC9A5276FF5764E] (Microsoft Corporation) 64bit-(tdx) Pilote de prise en charge TDI héritée NetIO [Kernel | System | Running] -> C:\Windows\SysNative\drivers\tdx.sys -> [2017/03/18 22:57:35 | 000,120,224 | ---- | M | MD5 = 2540384EF2EEE5BE930E3FB1061395DC] (Microsoft Corporation) 64bit-(nsiproxy) NSI Proxy Service Driver [Kernel | System | Running] -> C:\Windows\SysNative\drivers\nsiproxy.sys -> [2017/03/18 22:57:35 | 000,041,984 | ---- | M | MD5 = 7A6BA778B48DF9FB7AC231D4FF6E3248] (Microsoft Corporation) 64bit-(scfilter) Pilote de filtre de classe PnP de carte à puce [Kernel | Unknown | Stopped] -> C:\Windows\SysNative\drivers\scfilter.sys -> [2017/03/18 22:57:29 | 000,043,520 | ---- | M | MD5 = 5CFEEFCC6FAD1FD09ACCFBD652DDD85B] (Microsoft Corporation) 64bit-(EhStorClass) Enhanced Storage Filter Driver [Kernel | Boot | Stopped] -> C:\Windows\SysNative\drivers\EhStorClass.sys -> [2017/03/18 22:57:24 | 000,088,992 | ---- | M | MD5 = FFBB37982E6D24AEC7A2E5459098EAC9] (Microsoft Corporation) 64bit-(Beep) Beep [Kernel | System | Running] -> C:\WINDOWS\SysNative\drivers\beep.sys -> [2017/03/18 22:57:23 | 000,010,240 | ---- | M | MD5 = ED03D2ACE378C9EB8BB957ABBD85B951] (Microsoft Corporation) 64bit-(MRxDAV) Pilote du redirecteur client WebDav [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\mrxdav.sys -> [2017/03/18 22:57:20 | 000,144,384 | ---- | M | MD5 = D14C297933C82B8CB0B5CBBA4DDC830B] (Microsoft Corporation) 64bit-(luafv) Virtualisation de fichier UAC [File_System | Auto | Stopped] -> C:\Windows\SysNative\drivers\luafv.sys -> [2017/03/18 22:57:19 | 000,124,928 | ---- | M | MD5 = 88F5570C04766EE561FF129B2F93030C] (Microsoft Corporation) 64bit-(dam) Desktop Activity Moderator Driver [Kernel | System | Stopped] -> C:\Windows\SysNative\drivers\dam.sys -> [2017/03/18 22:57:15 | 000,112,544 | ---- | M | MD5 = 994A369A2DFC62ADED1226C70F69D20D] (Microsoft Corporation) 64bit-(Filetrace) Filetrace [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\filetrace.sys -> [2017/03/18 22:57:15 | 000,036,864 | ---- | M | MD5 = 057E95E53C38260C4EF49B3A077770CD] (Microsoft Corporation) 64bit-(MMCSS) Multimedia Class Scheduler [Kernel | Auto | Stopped] -> C:\Windows\SysNative\drivers\mmcss.sys -> [2017/03/18 22:57:05 | 000,050,688 | ---- | M | MD5 = 9AE3C0CC0865B1618A3C97744A6A9E9B] (Microsoft Corporation) 64bit-(irda) irda [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\irda.sys -> [2017/03/18 22:57:03 | 000,120,320 | ---- | M | MD5 = 9035C10C7EB8CF7C87CEA82A62EBB43A] (Microsoft Corporation) 64bit-(IpFilterDriver) Pilote de filtre de trafic IP [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\ipfltdrv.sys -> [2017/03/18 22:57:03 | 000,087,040 | ---- | M | MD5 = A0F9F2E87F0C751FE164D90EB44A9B63] (Microsoft Corporation) 64bit-(RasPppoe) Pilote PPPOE d’accès à distance [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\raspppoe.sys -> [2017/03/18 22:57:03 | 000,081,920 | ---- | M | MD5 = D7FF75ED7A48FD60A573C9E959CF4DB5] (Microsoft Corporation) 64bit-(NetBIOS) NetBIOS Interface [File_System | System | Running] -> C:\Windows\SysNative\drivers\netbios.sys -> [2017/03/18 22:57:03 | 000,057,760 | ---- | M | MD5 = F420B6CAB5151A38E4DBBFFB500C11DA] (Microsoft Corporation) 64bit-(AsyncMac) Pilote de média asynchrone RAS [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\asyncmac.sys -> [2017/03/18 22:57:01 | 000,028,672 | ---- | M | MD5 = 766F3A7E42AFCF74265FAC78987D1665] (Microsoft Corporation) 64bit-(IRENUM) IR Bus Enumerator [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\irenum.sys -> [2017/03/18 22:57:01 | 000,019,968 | ---- | M | MD5 = E7FD479E3298F3C8852A0D2F092BDB35] (Microsoft Corporation) 64bit-(RasAcd) Remote Access Auto Connection Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\rasacd.sys -> [2017/03/18 22:57:01 | 000,017,920 | ---- | M | MD5 = EA9EB06EFC325CD2ACF5DF2F26A4894E] (Microsoft Corporation) 64bit-(MsBridge) Pont MAC Microsoft [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\bridge.sys -> [2017/03/18 22:57:00 | 000,115,200 | ---- | M | MD5 = BD12E1941A87671A767447B02C6A51A1] (Microsoft Corporation) 64bit-(tcpipreg) TCP/IP Registry Compatibility [Kernel | Auto | Stopped] -> C:\Windows\SysNative\drivers\tcpipreg.sys -> [2017/03/18 22:57:00 | 000,051,712 | ---- | M | MD5 = 1C35A5C62D110346379C55E39A3D547C] (Microsoft Corporation) 64bit-(Modem) Modem [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\modem.sys -> [2017/03/18 22:57:00 | 000,042,496 | ---- | M | MD5 = 0CD29540C32C2E2E0E3D7E9832752AF3] (Microsoft Corporation) 64bit-(NdisVirtualBus) Énumérateur de cartes réseau virtuelles Microsoft [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\NdisVirtualBus.sys -> [2017/03/18 22:57:00 | 000,020,992 | ---- | M | MD5 = FE87CCAA89433FC306A80F15E848F4B2] (Microsoft Corporation) 64bit-(bowser) Pilote de prise en charge du navigateur [File_System | On_Demand | Running] -> C:\Windows\SysNative\drivers\bowser.sys -> [2017/03/18 22:56:58 | 000,101,888 | ---- | M | MD5 = 2342B8619193B0D9FAC0D02C69DCE74A] (Microsoft Corporation) 64bit-(mrxsmb10) Mini-redirecteur SMB 1.x [File_System | Auto | Running] -> C:\Windows\SysNative\drivers\mrxsmb10.sys -> [2017/03/18 22:56:56 | 000,285,696 | ---- | M | MD5 = 469DD958B1D8CB09E38BE2298B8C398D] (Microsoft Corporation) 64bit-(WdFilter) Pilote de minifiltre de l’antivirus Windows Defender [File_System | Unknown | Stopped] -> C:\Windows\SysNative\drivers\WdFilter.sys -> [2017/03/18 22:56:44 | 000,294,816 | ---- | M | MD5 = F7B6CB0F9ECD28848E2BDACEAB0D9204] (Microsoft Corporation) 64bit-(WdNisDrv) Pilote du système NIS (Network Inspection System) de l’antivirus Windows Defender [Kernel | Unknown | Stopped] -> C:\Windows\SysNative\drivers\WdNisDrv.sys -> [2017/03/18 22:56:44 | 000,121,248 | ---- | M | MD5 = 82A4F22C884B4BAE8B531640859F9871] (Microsoft Corporation) 64bit-(WdBoot) Pilote de démarrage de l’antivirus Windows Defender [Kernel | Unknown | Stopped] -> C:\Windows\SysNative\drivers\WdBoot.sys -> [2017/03/18 22:56:44 | 000,044,632 | ---- | M | MD5 = 38130C1C5FE0E08820EE57E1B087B659] (Microsoft Corporation) 64bit-(Ucx01000) USB Host Support Library [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\Ucx01000.sys -> [2017/03/18 22:56:41 | 000,213,920 | ---- | M | MD5 = 5D4EAF3D0911338CB8FDB088386D6DCA] (Microsoft Corporation) 64bit-(acpiex) Microsoft ACPIEx Driver [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\acpiex.sys -> [2017/03/18 22:56:41 | 000,127,392 | ---- | M | MD5 = F72D7CC7E7A97A09757313F3B4C7E17A] (Microsoft Corporation) 64bit-(pdc) CDP [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\pdc.sys -> [2017/03/18 22:56:41 | 000,117,152 | ---- | M | MD5 = 4A88D29869609A39782EF53145E6F7CA] (Microsoft Corporation) 64bit-(FsDepends) File System Dependency Minifilter [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\fsdepends.sys -> [2017/03/18 22:56:41 | 000,063,904 | ---- | M | MD5 = D2814848206DFC18EB8D3D069FAE703E] (Microsoft Corporation) 64bit-(TsUsbFlt) Pilote de filtre pour classe de concentrateur USB du Bureau à distance [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\TsUsbFlt.sys -> [2017/03/18 22:56:41 | 000,061,440 | ---- | M | MD5 = 9856BCCD1CD5DE4D17E8DBBA7CEFC688] (Microsoft Corporation) 64bit-(FileCrypt) FileCrypt [File_System | System | Stopped] -> C:\Windows\SysNative\drivers\filecrypt.sys -> [2017/03/18 22:56:41 | 000,054,272 | ---- | M | MD5 = 27E764D6460504B7271AFECE7A59FB76] (Microsoft Corporation) 64bit-(UdeCx) USB Device Emulation Support Library [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\Udecx.sys -> [2017/03/18 22:56:41 | 000,045,568 | ---- | M | MD5 = 384E1F0D84B465820416338E52FE7C2B] (Microsoft Corporation) 64bit-(vhf) Pilote d'infrastructure HID virtuelle (VHF) [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\vhf.sys -> [2017/03/18 22:56:41 | 000,035,328 | ---- | M | MD5 = 1AD096A5C00E522398D0092D875A8CB6] (Microsoft Corporation) 64bit-(USBHUB3) Concentrateur SuperSpeed [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\USBHUB3.SYS -> [2017/03/18 22:56:35 | 000,553,888 | ---- | M | MD5 = C3F953D10C486D6A190AF548B3CF7DC9] (Microsoft Corporation) 64bit-(usbhub) Pilote de concentrateur standard USB Microsoft [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\usbhub.sys -> [2017/03/18 22:56:35 | 000,511,904 | ---- | M | MD5 = 1F723DA014062DBF3288B408A7611845] (Microsoft Corporation) 64bit-(sdbus) sdbus [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\sdbus.sys -> [2017/03/18 22:56:35 | 000,287,136 | ---- | M | MD5 = DCD86049661A2C36DEE69D9DF7C3330D] (Microsoft Corporation) 64bit-(TPM) Module de plateforme sécurisée (TPM) [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\tpm.sys -> [2017/03/18 22:56:35 | 000,219,040 | ---- | M | MD5 = 13878331EB3906C29A1F4E46B9606218] (Microsoft Corporation) 64bit-(usbccgp) Pilote parent générique USB Microsoft [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\usbccgp.sys -> [2017/03/18 22:56:35 | 000,173,984 | ---- | M | MD5 = 6B09AA6A04C8261E787B6523229E7159] (Microsoft Corporation) 64bit-(USBSTOR) Pilote de stockage de masse USB [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\USBSTOR.SYS -> [2017/03/18 22:56:35 | 000,131,488 | ---- | M | MD5 = 67E26F56CF7EACCBD9C9F75343A3D7C2] (Microsoft Corporation) 64bit-(i8042prt) Pilote de port clavier et souris PS/2 [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\i8042prt.sys -> [2017/03/18 22:56:35 | 000,115,200 | ---- | M | MD5 = C6C8315E3262FAE460529C6DA2951682] (Microsoft Corporation) 64bit-(HidBth) Miniport HID Microsoft Bluetooth [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\hidbth.sys -> [2017/03/18 22:56:35 | 000,106,496 | ---- | M | MD5 = 3CA3244C45B25F3B3ED9445C195E40EB] (Microsoft Corporation) 64bit-(usbehci) Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0 [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\usbehci.sys -> [2017/03/18 22:56:35 | 000,098,200 | ---- | M | MD5 = F8BCB536866474C6D8008F4C69B778A1] (Microsoft Corporation) 64bit-(sdstor) Pilote du port de stockage numérique sécurisé (SD) [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\sdstor.sys -> [2017/03/18 22:56:35 | 000,094,624 | ---- | M | MD5 = 6BC219F1D9CDE08CEB9084ADB41FBA01] (Microsoft Corporation) 64bit-(WINUSB) Pilote WinUsb [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\winusb.sys -> [2017/03/18 22:56:35 | 000,090,112 | ---- | M | MD5 = 03858B18BB6DF6A400D9FC5153FD28A8] (Microsoft Corporation) 64bit-(kbdclass) Pilote de la classe Clavier [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\kbdclass.sys -> [2017/03/18 22:56:35 | 000,064,416 | ---- | M | MD5 = D36B404BF979297C6572AEF98B2594F2] (Microsoft Corporation) 64bit-(mouclass) Pilote de la classe Souris [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\mouclass.sys -> [2017/03/18 22:56:35 | 000,060,320 | ---- | M | MD5 = F5D4E18A70BA069D479154442CDEB60D] (Microsoft Corporation) 64bit-(hidi2c) Pilote de miniport I2C HID Microsoft [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\hidi2c.sys -> [2017/03/18 22:56:35 | 000,052,224 | ---- | M | MD5 = 55DAF856F9633DD2519BA4E942870F02] (Microsoft Corporation) 64bit-(UcmUcsi) Client UCSI du gestionnaire de connecteur USB [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\UcmUcsi.sys -> [2017/03/18 22:56:35 | 000,051,712 | ---- | M | MD5 = 5A7CE114C8DA9060F32633F81A5625E5] (Microsoft Corporation) 64bit-(hidinterrupt) Pilote global pour les boutons HID implémentés avec des interruptions [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\hidinterrupt.sys -> [2017/03/18 22:56:35 | 000,051,104 | ---- | M | MD5 = E34216A190D9BF8EAA666F6903BCD0EF] (Microsoft Corporation) 64bit-(HidUsb) Pilote de classe HID Microsoft [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\hidusb.sys -> [2017/03/18 22:56:35 | 000,040,960 | ---- | M | MD5 = C1A608120DE0DF52E51B8BAF86AF19F9] (Microsoft Corporation) 64bit-(kbdhid) Pilote HID de clavier [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\kbdhid.sys -> [2017/03/18 22:56:35 | 000,040,448 | ---- | M | MD5 = 7E2036A846789D6D6A2EE21915017EE1] (Microsoft Corporation) 64bit-(buttonconverter) Service pour appareils Portable Device Control [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\buttonconverter.sys -> [2017/03/18 22:56:35 | 000,039,424 | ---- | M | MD5 = 102CAA11BA89290D48FBFD2E04274BA0] (Microsoft Corporation) 64bit-(usbuhci) Pilote miniport de contrôleur hôte universel USB Microsoft [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\usbuhci.sys -> [2017/03/18 22:56:35 | 000,035,328 | ---- | M | MD5 = 7BA802C9F73A84B75BB22538ADA495BE] (Microsoft Corporation) 64bit-(mouhid) Pilote HID de souris [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\mouhid.sys -> [2017/03/18 22:56:35 | 000,033,280 | ---- | M | MD5 = 5C09868963B0C076AC3BC7759A46B7B1] (Microsoft Corporation) 64bit-(usbohci) Pilote miniport de contrôleur hôte ouvert USB Microsoft [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\usbohci.sys -> [2017/03/18 22:56:35 | 000,030,720 | ---- | M | MD5 = BE6ED98FD0D3FE5FB11762AD7CCD6C96] (Microsoft Corporation) 64bit-(sermouse) Pilote pour souris sur port série [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\sermouse.sys -> [2017/03/18 22:56:35 | 000,028,672 | ---- | M | MD5 = E5BA0B7353ADC5C95AB466D2E4DC89B1] (Microsoft Corporation) 64bit-(kdnic) Miniport réseau de débogage du noyau Microsoft (NDIS 6.20) [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\kdnic.sys -> [2017/03/18 22:56:35 | 000,023,040 | ---- | M | MD5 = 4C054B8E901F41F5743DADE8A29FF256] (Microsoft Corporation) 64bit-(WindowsTrustedRTProxy) Service sécurisé d'exécution approuvée Microsoft Windows [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\WindowsTrustedRTProxy.sys -> [2017/03/18 22:56:35 | 000,018,520 | ---- | M | MD5 = D318557F9D7CA3836104F0B8ECB1F32E] (Microsoft Corporation) 64bit-(xboxgip) Xbox Game Input Protocol Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\xboxgip.sys -> [2017/03/18 22:56:34 | 000,277,504 | ---- | M | MD5 = 3AC720A97FE4B6325F3012B21AF74390] (Microsoft Corporation) 64bit-(ufxsynopsys) Contrôleur Synopsys USB [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\ufxsynopsys.sys -> [2017/03/18 22:56:34 | 000,138,656 | ---- | M | MD5 = CEE12C7A689BDF448715024A7E0EB9C3] (Microsoft Corporation) 64bit-(UfxChipidea) Contrôleur Chipidea USB [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\UfxChipidea.sys -> [2017/03/18 22:56:34 | 000,098,712 | ---- | M | MD5 = 9450AB15C30CF7D1F23C8A42E778C3A2] (Microsoft Corporation) 64bit-(msgpiowin32) Common Driver for Buttons, DockMode and Laptop/Slate Indicator [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\msgpiowin32.sys -> [2017/03/18 22:56:34 | 000,049,056 | ---- | M | MD5 = F27EC8F7A0A779276E5DA2E70C2B01EE] (Microsoft Corporation) 64bit-(xinputhid) XINPUT HID Filter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\xinputhid.sys -> [2017/03/18 22:56:34 | 000,046,592 | ---- | M | MD5 = 2E50A379A8E4F6C5D85E87C26C08D329] (Microsoft Corporation) 64bit-(UrsChipidea) Pilote de commutateur de rôle Chipidea USB [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\urschipidea.sys -> [2017/03/18 22:56:34 | 000,029,600 | ---- | M | MD5 = 4D23214CB8B1C36B82061280EB8FDAB3] (Microsoft Corporation) 64bit-(UrsSynopsys) Pilote de commutateur de rôle Synopsys USB [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\urssynopsys.sys -> [2017/03/18 22:56:34 | 000,028,064 | ---- | M | MD5 = 93FAD0AC5879F274FA248A49E3F3EA33] (Microsoft Corporation) 64bit-(npsvctrig) Named pipe service trigger provider [Kernel | System | Stopped] -> C:\Windows\SysNative\drivers\npsvctrig.sys -> [2017/03/18 22:56:34 | 000,027,136 | ---- | M | MD5 = BABF7E1757D6908941C9F9CBD66A5EF0] (Microsoft Corporation) 64bit-(genericusbfn) Classe de fonction USB générique [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\genericusbfn.sys -> [2017/03/18 22:56:34 | 000,021,504 | ---- | M | MD5 = 23174BB6937459B924BB8EF667FB28EF] (Microsoft Corporation) 64bit-(UmPass) Pilote Microsoft UMPass [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\umpass.sys -> [2017/03/18 22:56:34 | 000,014,336 | ---- | M | MD5 = 55984D4E64C2F8E4223542CBCC15EDEB] (Microsoft Corporation) 64bit-(iaLPSS2i_I2C_BXT_P) Pilote I2C d’E/S série Intel(R) v2 [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\iaLPSS2i_I2C_BXT_P.sys -> [2017/03/18 22:56:28 | 000,168,448 | ---- | M | MD5 = 4126F8DA08CE7924A3AE6F7235F85D5F] (Intel Corporation) 64bit-(iaLPSS2i_I2C) Pilote v2 I2C d’E/S série Intel(R) [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\iaLPSS2i_I2C.sys -> [2017/03/18 22:56:28 | 000,165,376 | ---- | M | MD5 = 2184CB3A65888F446FCD6DBA9F073F4C] (Intel Corporation) 64bit-(vmbus) Bus VMBus [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\vmbus.sys -> [2017/03/18 22:56:28 | 000,107,424 | ---- | M | MD5 = EE9A22CFD9AEDD7B52F98B0272494609] (Microsoft Corporation) 64bit-(iaLPSS2i_GPIO2_BXT_P) Pilote GPIO d’E/S série Intel(R) v2 [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\iaLPSS2i_GPIO2_BXT_P.sys -> [2017/03/18 22:56:28 | 000,085,504 | ---- | M | MD5 = BD47B2FEABFA48C6224D43EE9EA9BC06] (Intel Corporation) 64bit-(iai2c) Contrôleur hôte I2C d’E/S série Intel(R) [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\iai2c.sys -> [2017/03/18 22:56:28 | 000,081,408 | ---- | M | MD5 = 9A2A2F3C69B9A30B6E78536F6D258BAD] (Intel(R) Corporation) 64bit-(vpci) Bus PCI virtuel Microsoft Hyper-V [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\vpci.sys -> [2017/03/18 22:56:28 | 000,074,656 | ---- | M | MD5 = B25589A0892E6DF8CC07E5CB48BFC954] (Microsoft Corporation) 64bit-(iaLPSS2i_GPIO2) Pilote de contrôleur GPIO d’E/S série Intel(R) v2 [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\iaLPSS2i_GPIO2.sys -> [2017/03/18 22:56:28 | 000,070,656 | ---- | M | MD5 = 42962355A7911407026E920E7252E3E5] (Intel Corporation) 64bit-(Synth3dVsc) Synth3dVsc [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\Synth3dVsc.sys -> [2017/03/18 22:56:28 | 000,064,512 | ---- | M | MD5 = 572F81CF08972D53BAFFC2A110A2A586] (Microsoft Corporation) 64bit-(CAD) Charge Arbitration Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\CAD.sys -> [2017/03/18 22:56:28 | 000,053,664 | ---- | M | MD5 = 029434AC0A3935F9125ABBD08BF7C30B] (Microsoft Corporation) 64bit-(storflt) Accélérateur de stockage Microsoft Hyper-V [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\vmstorfl.sys -> [2017/03/18 22:56:28 | 000,047,520 | ---- | M | MD5 = E5F703788DFA05411F1469E96838F438] (Microsoft Corporation) 64bit-(dmvsc) dmvsc [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\dmvsc.sys -> [2017/03/18 22:56:28 | 000,047,104 | ---- | M | MD5 = 038B8B76284BC291EC75B005BB3EB13F] (Microsoft Corporation) 64bit-(storvsc) storvsc [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\storvsc.sys -> [2017/03/18 22:56:28 | 000,036,768 | ---- | M | MD5 = 3DC3B17E92DA02E36B4138733DF6C1AC] (Microsoft Corporation) 64bit-(TsUsbGD) Périphérique USB générique du Bureau à distance [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\TsUsbGD.sys -> [2017/03/18 22:56:28 | 000,035,328 | ---- | M | MD5 = 837AD2B941E721BCCEB7EF137E2DEE18] (Microsoft Corporation) 64bit-(iagpio) Pilote de contrôleur GPIO d’E/S série Intel [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\iagpio.sys -> [2017/03/18 22:56:28 | 000,033,280 | ---- | M | MD5 = C6B8743B213F06AA60943D8366FE968F] (Intel(R) Corporation) 64bit-(VMBusHID) VMBusHID [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\VMBusHID.sys -> [2017/03/18 22:56:28 | 000,025,088 | ---- | M | MD5 = BFBD0895926FD98A03AD6BB845B569B7] (Microsoft Corporation) 64bit-(swenum) Pilote de bus logiciel [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\swenum.sys -> [2017/03/18 22:56:28 | 000,018,336 | ---- | M | MD5 = 2BC4D0EBC2467FE90302AE0AFAF23768] (Microsoft Corporation) 64bit-(hyperkbd) hyperkbd [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\hyperkbd.sys -> [2017/03/18 22:56:28 | 000,016,896 | ---- | M | MD5 = C082249BC3E972C8A132D9EC6AD9EAD5] (Microsoft Corporation) 64bit-(gencounter) Compteur de génération Microsoft Hyper-V [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\vmgencounter.sys -> [2017/03/18 22:56:28 | 000,013,824 | ---- | M | MD5 = 4616F61E24B3AEA6E0E4EA7D69531EF4] (Microsoft Corporation) 64bit-(vmgid) Pilote d’infrastructure invité Microsoft Hyper-V [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\vmgid.sys -> [2017/03/18 22:56:28 | 000,010,240 | ---- | M | MD5 = C123C97D351C56C75FE5335AB18255EE] (Microsoft Corporation) 64bit-(s3cap) s3cap [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\vms3cap.sys -> [2017/03/18 22:56:28 | 000,009,216 | ---- | M | MD5 = 6308366D3CDEA5F427CFF4BCF0081B4E] (Microsoft Corporation) 64bit-(vhdmp) vhdmp [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\vhdmp.sys -> [2017/03/18 22:56:26 | 000,730,016 | ---- | M | MD5 = 1021DCD0E3632E099E599B8893DC7969] (Microsoft Corporation) 64bit-(ACPI) Pilote ACPI Microsoft [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\acpi.sys -> [2017/03/18 22:56:26 | 000,723,352 | ---- | M | MD5 = D3DB4E3C096EFF74FB6E73E37CB66DD7] (Microsoft Corporation) 64bit-(iaStorAV) Contrôleur RAID SATA Intel(R) pour Windows [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\iaStorAV.sys -> [2017/03/18 22:56:26 | 000,673,184 | ---- | M | MD5 = D820075D3395BED28FC57AEF8FBA666F] (Intel Corporation) 64bit-(spaceport) Pilote des espaces de stockage [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\spaceport.sys -> [2017/03/18 22:56:26 | 000,587,168 | ---- | M | MD5 = 2334ED0B61CAE7E7B1B454674206CDAC] (Microsoft Corporation) 64bit-(iaStorV) Contrôleur RAID Intel Windows 7 [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\iaStorV.sys -> [2017/03/18 22:56:26 | 000,412,064 | ---- | M | MD5 = A243E0CE8644378C9A9D015ABC3EDA27] (Intel Corporation) 64bit-(mausbhost) Pilote de contrôleur d’hôte de bus MA-USB [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\mausbhost.sys -> [2017/03/18 22:56:26 | 000,405,408 | ---- | M | MD5 = C3EED732789052C98A2613A7E1C37CDA] (Microsoft Corporation) 64bit-(pci) Pilote de bus PCI [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\pci.sys -> [2017/03/18 22:56:26 | 000,353,696 | ---- | M | MD5 = C5B74C6D87E77BC64DEBD1BF57DEB375] (Microsoft Corporation) 64bit-(intelppm) Pilote de processeur Intel [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\intelppm.sys -> [2017/03/18 22:56:26 | 000,193,536 | ---- | M | MD5 = 64EC687A811DC4F69DF3816F073352AA] (Microsoft Corporation) 64bit-(AmdK8) Pilote de processeur AMD K8 [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\amdk8.sys -> [2017/03/18 22:56:26 | 000,176,640 | ---- | M | MD5 = 9C39FBA94FFEF04561D13ED0D1B50DD0] (Microsoft Corporation) 64bit-(AmdPPM) Pilote de processeur AMD [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\amdppm.sys -> [2017/03/18 22:56:26 | 000,172,544 | ---- | M | MD5 = 395D56FA2E22A10AE4774440D086F559] (Microsoft Corporation) 64bit-(Processor) Pilote processeur [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\processr.sys -> [2017/03/18 22:56:26 | 000,172,032 | ---- | M | MD5 = D57CF871B3977731A91FE9611A54C7C1] (Microsoft Corporation) 64bit-(storahci) Lecteur AHCI SATA Microsoft standard [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\storahci.sys -> [2017/03/18 22:56:26 | 000,144,288 | ---- | M | MD5 = 63F1C499672A1049F0814F243798F35F] (Microsoft Corporation) 64bit-(Disk) Pilote de disque [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\disk.sys -> [2017/03/18 22:56:26 | 000,102,816 | ---- | M | MD5 = 1203EA16F36C5BEB2509FB7CC03DC178] (Microsoft Corporation) 64bit-(pmem) Pilote de disque de mémoire persistante Microsoft [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\pmem.sys -> [2017/03/18 22:56:26 | 000,101,376 | ---- | M | MD5 = 414CA4DCC31D795882B25ADC1DACE779] (Microsoft Corporation) 64bit-(Parport) Pilote de port parallèle [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\parport.sys -> [2017/03/18 22:56:26 | 000,097,792 | ---- | M | MD5 = 2CC6C325B271C7CA60F374F8F868CB45] (Microsoft Corporation) 64bit-(stornvme) Pilote NVM Express standard de Microsoft [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\stornvme.sys -> [2017/03/18 22:56:26 | 000,095,648 | ---- | M | MD5 = 0D0128244FF55EAD3F878D3FE542DBA5] (Microsoft Corporation) 64bit-(IPMIDRV) IPMIDRV [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\IPMIDrv.sys -> [2017/03/18 22:56:26 | 000,092,064 | ---- | M | MD5 = 656DDB34996A96539BA6E2843B5F2A77] (Microsoft Corporation) 64bit-(scmbus) Pilote de bus de mémoire de classe stockage Microsoft [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\scmbus.sys -> [2017/03/18 22:56:26 | 000,091,040 | ---- | M | MD5 = 5C8620FAC0E3C1658C8EF7AD7BB7EA5F] (Microsoft Corporation) 64bit-(Serial) Pilote de port série [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\serial.sys -> [2017/03/18 22:56:26 | 000,084,480 | ---- | M | MD5 = 628D8DD136F92316BFEB58FA005338B7] (Microsoft Corporation) 64bit-(volmgr) Pilote du gestionnaire de volumes [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\volmgr.sys -> [2017/03/18 22:56:26 | 000,083,360 | ---- | M | MD5 = 0AB9C264F13E2A070A8CF10EDD099ED2] (Microsoft Corporation) 64bit-(nvdimmn) Pilote de périphérique Microsoft NVDIMM-N [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\nvdimmn.sys -> [2017/03/18 22:56:26 | 000,080,896 | ---- | M | MD5 = 99EB6376EC2C03CE5F668577651E3454] (Microsoft Corporation) 64bit-(UASPStor) Pilote UAS (USB Attached SCSI) [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\uaspstor.sys -> [2017/03/18 22:56:26 | 000,078,752 | ---- | M | MD5 = B4C846ABD462558D45CA578C855759C3] (Microsoft Corporation) 64bit-(usbser) Pilote série USB Microsoft [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\usbser.sys -> [2017/03/18 22:56:26 | 000,071,680 | ---- | M | MD5 = 99F0738B320B7A8D11351A32F68AA5F1] (Microsoft Corporation) 64bit-(BasicDisplay) BasicDisplay [Kernel | System | Running] -> C:\Windows\SysNative\drivers\BasicDisplay.sys -> [2017/03/18 22:56:26 | 000,057,344 | ---- | M | MD5 = F8129321B1874D4386F7FEB754BC3380] (Microsoft Corporation) 64bit-(vdrvroot) Énumérateur de lecteur virtuel Microsoft [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\vdrvroot.sys -> [2017/03/18 22:56:26 | 000,054,176 | ---- | M | MD5 = C1EC9211C7759D2487FD30934AA3EE96] (Microsoft Corporation) 64bit-(mausbip) Pilote de filtre IP MA-USB [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\mausbip.sys -> [2017/03/18 22:56:26 | 000,051,104 | ---- | M | MD5 = 4DCE65116A28488593FF5A6A18B03DB0] (Microsoft Corporation) 64bit-(mssmbios) Microsoft System Management BIOS Driver [Kernel | System | Running] -> C:\Windows\SysNative\drivers\mssmbios.sys -> [2017/03/18 22:56:26 | 000,044,960 | ---- | M | MD5 = 7E3365C8BC83DCE88D6226BB5C7170C4] (Microsoft Corporation) 64bit-(HidBatt) Pilote de batterie d’onduleur HID [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\hidbatt.sys -> [2017/03/18 22:56:26 | 000,038,296 | ---- | M | MD5 = 9F90819E301C70A3A042FC05D3E41B5F] (Microsoft Corporation) 64bit-(storufs) Pilote Universal Flash Storage (UFS) Microsoft [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\storufs.sys -> [2017/03/18 22:56:26 | 000,036,760 | ---- | M | MD5 = C6097966F8EA3B288070CDF7C3C8C3E8] (Microsoft Corporation) 64bit-(fdc) Pilote de contrôleur de lecteur de disquettes [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\fdc.sys -> [2017/03/18 22:56:26 | 000,032,768 | ---- | M | MD5 = 853081957BA148F38FD8DE4390CFCF4A] (Microsoft Corporation) 64bit-(SDFRd) Réflecteur SDF [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\SDFRd.sys -> [2017/03/18 22:56:26 | 000,031,128 | ---- | M | MD5 = 464B615872981015AC4FEEBDEA83A063] () 64bit-(CmBatt) Pilote pour Batterie à méthode de contrôle ACPI Microsoft [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\CmBatt.sys -> [2017/03/18 22:56:26 | 000,030,208 | ---- | M | MD5 = 232F3A3AC3A2FB32C5C46503A6517073] (Microsoft Corporation) 64bit-(UEFI) Pilote UEFI Microsoft [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\uefi.sys -> [2017/03/18 22:56:26 | 000,029,600 | ---- | M | MD5 = CCDF6EFF952BF3BF34DC17600F479397] (Microsoft Corporation) 64bit-(atapi) Canal IDE [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\atapi.sys -> [2017/03/18 22:56:26 | 000,029,088 | ---- | M | MD5 = 01733BEEE02E51F712330D5909BD701C] (Microsoft Corporation) 64bit-(flpydisk) Pilote de lecteur de disquettes [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\flpydisk.sys -> [2017/03/18 22:56:26 | 000,026,624 | ---- | M | MD5 = 90B2983D8495C26345A1DC5F0C3BB07B] (Microsoft Corporation) 64bit-(Serenum) Pilote de filtre Serenum [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\serenum.sys -> [2017/03/18 22:56:26 | 000,026,112 | ---- | M | MD5 = E5B450E4E0DC1591254BF9CCF6C57B40] (Microsoft Corporation) 64bit-(isapnp) isapnp [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\isapnp.sys -> [2017/03/18 22:56:26 | 000,022,944 | ---- | M | MD5 = 7FE3B3A30FA20F27AF7022A01C2266BA] (Microsoft Corporation) 64bit-(intelide) intelide [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\intelide.sys -> [2017/03/18 22:56:26 | 000,019,360 | ---- | M | MD5 = 4B7F8A1AAC7172DB6918A0E10E1D78A3] (Microsoft Corporation) 64bit-(msisadrv) msisadrv [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\msisadrv.sys -> [2017/03/18 22:56:26 | 000,019,352 | ---- | M | MD5 = 16376B7B0730C04DD1A2C0CC8E09E420] (Microsoft Corporation) 64bit-(sfloppy) Lecteur de disquettes haute densité [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\sfloppy.sys -> [2017/03/18 22:56:26 | 000,018,432 | ---- | M | MD5 = 15CFCC4692DA8887B977CE5FC5181084] (Microsoft Corporation) 64bit-(WmiAcpi) Microsoft Windows Management Interface for ACPI [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\wmiacpi.sys -> [2017/03/18 22:56:26 | 000,018,432 | ---- | M | MD5 = 0D6E1347A891607759340B1E55BA2A77] (Microsoft Corporation) 64bit-(pciide) pciide [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\pciide.sys -> [2017/03/18 22:56:26 | 000,016,800 | ---- | M | MD5 = CFB85CB7A6F6926EA0EB96EDFB3C8A91] (Microsoft Corporation) 64bit-(volume) Pilote de volume [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\volume.sys -> [2017/03/18 22:56:26 | 000,016,288 | ---- | M | MD5 = 86E790B503C771E674C7DF8FFCBFEFDB] (Microsoft Corporation) 64bit-(acpitime) Pilote d’alarme de sortie de veille ACPI [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\acpitime.sys -> [2017/03/18 22:56:26 | 000,014,336 | ---- | M | MD5 = 686BFFC47454DD2F58795C2EE891CA9F] (Microsoft Corporation) 64bit-(acpipagr) Pilote d’agrégation de processeurs ACPI [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\acpipagr.sys -> [2017/03/18 22:56:26 | 000,012,800 | ---- | M | MD5 = F04B6F53FBDB2B6B0451AE53DE19F0C9] (Microsoft Corporation) 64bit-(cht4vbd) Chelsio Virtual Bus Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\cht4vx64.sys -> [2017/03/18 22:56:25 | 002,104,224 | ---- | M | MD5 = 863E1C9F6750446DFB9EDCAEC3531367] (Chelsio Communications) 64bit-(ADP80XX) ADP80XX [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\adp80xx.sys -> [2017/03/18 22:56:25 | 001,135,512 | ---- | M | MD5 = FBDA59118E59B3722248C66BAD89CAA9] (PMC-Sierra) 64bit-(mlx4_bus) Mellanox ConnectX Bus Enumerator [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\mlx4_bus.sys -> [2017/03/18 22:56:25 | 000,842,656 | ---- | M | MD5 = 89257B8D3826B5629CF7F73F97DA44F9] (Mellanox) 64bit-(megasr) megasr [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\megasr.sys -> [2017/03/18 22:56:25 | 000,575,904 | ---- | M | MD5 = 2B7D3B206833D769218A1F4BE2D73B97] (LSI Corporation, Inc.) 64bit-(ibbus) Mellanox InfiniBand Bus/AL (Filter Driver) [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\ibbus.sys -> [2017/03/18 22:56:25 | 000,526,240 | ---- | M | MD5 = E16E4FC9F250E48CB2CAD93E59D010E2] (Mellanox) 64bit-(cht4iscsi) cht4iscsi [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\cht4sx64.sys -> [2017/03/18 22:56:25 | 000,347,032 | ---- | M | MD5 = 05EA22CFC40EDE05BF6E3BC782E5204C] (Chelsio Communications) 64bit-(VSTXRAID) Pilote Windows du contrôleur RAID de stockage VIA StorX [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\VSTXRAID.SYS -> [2017/03/18 22:56:25 | 000,305,568 | ---- | M | MD5 = 98BB6C9AD39D8F2E883093F28282FAEC] (VIA Corporation) 64bit-(iScsiPrt) Pilote iScsiPort [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\msiscsi.sys -> [2017/03/18 22:56:25 | 000,279,968 | ---- | M | MD5 = D492648D96A14BA639B76D177B24CD82] (Microsoft Corporation) 64bit-(amdsbs) amdsbs [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\amdsbs.sys -> [2017/03/18 22:56:25 | 000,259,488 | ---- | M | MD5 = 3B5C5C696F33FE61F1922533B03B9316] (AMD Technologies Inc.) 64bit-(1394ohci) Contrôleur d’hôte compatible OHCI 1394 [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\1394ohci.sys -> [2017/03/18 22:56:25 | 000,238,080 | ---- | M | MD5 = AAB860A5E606B9621E130D8C29D3F305] (Microsoft Corporation) 64bit-(vsmraid) vsmraid [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\vsmraid.sys -> [2017/03/18 22:56:25 | 000,166,816 | ---- | M | MD5 = AA4466A47D2CA7ECE3DCF5256017DCC3] (VIA Technologies Inc.,Ltd) 64bit-(nvstor) nvstor [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\nvstor.sys -> [2017/03/18 22:56:25 | 000,166,304 | ---- | M | MD5 = 4C04BFBD4DB2EECCC47F5FA39D65BB6E] (NVIDIA Corporation) 64bit-(cdrom) Pilote de CD-ROM [Kernel | System | Running] -> C:\Windows\SysNative\drivers\cdrom.sys -> [2017/03/18 22:56:25 | 000,160,256 | ---- | M | MD5 = ABE77AD954BC3D72F559CF0C381E50BC] (Microsoft Corporation) 64bit-(nvraid) nvraid [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\nvraid.sys -> [2017/03/18 22:56:25 | 000,150,432 | ---- | M | MD5 = 3DB2E9E207358BFBD09B77B5119ECA5B] (NVIDIA Corporation) 64bit-(arcsas) Pilote miniport Storport Adaptec SAS/SATA-II RAID [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\arcsas.sys -> [2017/03/18 22:56:25 | 000,132,000 | ---- | M | MD5 = 6E456A94B9BD7F6B4758729BCEDE40C3] (PMC-Sierra, Inc.) 64bit-(LSI_SAS2i) LSI_SAS2i [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\lsi_sas2i.sys -> [2017/03/18 22:56:25 | 000,123,808 | ---- | M | MD5 = 920F0CFCED5F28A31B79F1C470649D11] (LSI Corporation) 64bit-(CapImg) Pilote HID pour écran tactile CapImg [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\capimg.sys -> [2017/03/18 22:56:25 | 000,122,880 | ---- | M | MD5 = 307AE8BC9B45772DA02FB952A1D86C35] (Microsoft Corporation) 64bit-(sbp2port) Pilote de bus de transport/protocole SBP-2 [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\sbp2port.sys -> [2017/03/18 22:56:25 | 000,110,496 | ---- | M | MD5 = 33B2DC5C2F19DA89F862484E23D9833D] (Microsoft Corporation) 64bit-(LSI_SAS) LSI_SAS [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\lsi_sas.sys -> [2017/03/18 22:56:25 | 000,108,960 | ---- | M | MD5 = 16C9D4D822CCA795A72DC88B25A577CC] (LSI Corporation) 64bit-(ndfltr) NetworkDirect Service [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\ndfltr.sys -> [2017/03/18 22:56:25 | 000,108,960 | ---- | M | MD5 = 0FFE8AF1B94C5FD54E6ACC6DAE990D31] (Mellanox) 64bit-(3ware) 3ware [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\3ware.sys -> [2017/03/18 22:56:25 | 000,107,424 | ---- | M | MD5 = 4140B14929C555E9513D59A2EEB5C471] (LSI) 64bit-(LSI_SAS3i) LSI_SAS3i [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\lsi_sas3i.sys -> [2017/03/18 22:56:25 | 000,103,328 | ---- | M | MD5 = 0FE63316F1C70A0F759A449FAC64C24B] (Avago Technologies) 64bit-(amdsata) amdsata [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\amdsata.sys -> [2017/03/18 22:56:25 | 000,083,352 | ---- | M | MD5 = EB729A9ADCB9F9C406B533F95E2F67D4] (Advanced Micro Devices) 64bit-(LSI_SSS) LSI_SSS [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\lsi_sss.sys -> [2017/03/18 22:56:25 | 000,082,848 | ---- | M | MD5 = 80E82C46B27A923A3744531069B63857] (LSI Corporation) 64bit-(SiSRaid4) SiSRaid4 [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\sisraid4.sys -> [2017/03/18 22:56:25 | 000,081,824 | ---- | M | MD5 = F520D50AD7266ED31D25DF4C8EA6BC2D] (Silicon Integrated Systems) 64bit-(WinVerbs) WinVerbs Service [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\winverbs.sys -> [2017/03/18 22:56:25 | 000,064,920 | ---- | M | MD5 = 0BF4A43CF1F3A4D50AFA4561C3B4628D] (Mellanox) 64bit-(megasas2i) megasas2i [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\MegaSas2i.sys -> [2017/03/18 22:56:25 | 000,064,416 | ---- | M | MD5 = EEC64C8D498D121607C7615FDFBEE4D0] (Avago Technologies) 64bit-(HpSAMD) HpSAMD [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\HpSAMD.sys -> [2017/03/18 22:56:25 | 000,064,416 | ---- | M | MD5 = 8ADD9CA3E0F18CEA11EA6FAED794A228] (Hewlett-Packard Company) 64bit-(mvumis) mvumis [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\mvumis.sys -> [2017/03/18 22:56:25 | 000,063,904 | ---- | M | MD5 = 74BD1149BF50F1E24934042A3BD17C90] (Marvell Semiconductor, Inc.) 64bit-(percsas3i) percsas3i [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\percsas3i.sys -> [2017/03/18 22:56:25 | 000,061,848 | ---- | M | MD5 = FCA143274792F12383C35902E801E83A] (Avago Technologies) 64bit-(megasas) megasas [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\megasas.sys -> [2017/03/18 22:56:25 | 000,059,808 | ---- | M | MD5 = 0609BF877A2F4DEECC62EEE220AB6242] (Avago Technologies) 64bit-(percsas2i) percsas2i [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\percsas2i.sys -> [2017/03/18 22:56:25 | 000,058,784 | ---- | M | MD5 = FE52FF97A094609429FEF098EDC6FB08] (Avago Technologies) 64bit-(umbus) Pilote d’énumérateur UMBus [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\umbus.sys -> [2017/03/18 22:56:25 | 000,057,856 | ---- | M | MD5 = F39ED750EDF5948FA8CD99D1F4EC9372] (Microsoft Corporation) 64bit-(SiSRaid2) SiSRaid2 [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\sisraid2.sys -> [2017/03/18 22:56:25 | 000,044,960 | ---- | M | MD5 = 2339F6B45E1D863B1D327F3AFD75A675] (Silicon Integrated Systems Corp.) 64bit-(WinMad) WinMad Service [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\winmad.sys -> [2017/03/18 22:56:25 | 000,032,160 | ---- | M | MD5 = 31DDF1D001336B2DCE7DF24E99EF1D04] (Mellanox) 64bit-(stexstor) stexstor [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\stexstor.sys -> [2017/03/18 22:56:25 | 000,031,136 | ---- | M | MD5 = D40C589F80EB1C511263D0547C0259AE] (Promise Technology, Inc.) 64bit-(WacomPen) Pilote de tablette Wacom à stylet série [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\wacompen.sys -> [2017/03/18 22:56:25 | 000,030,720 | ---- | M | MD5 = F0F477541F7AF67CC05DA1CF4921A500] (Microsoft Corporation) 64bit-(amdxata) amdxata [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\amdxata.sys -> [2017/03/18 22:56:25 | 000,027,040 | ---- | M | MD5 = A7D45A303FF8A9493C96C4B804051E6E] (Advanced Micro Devices) 64bit-(AcpiDev) Pilote d’appareils ACPI [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\AcpiDev.sys -> [2017/03/18 22:56:25 | 000,020,480 | ---- | M | MD5 = 3E5E5DAE5CAEC0209C93D3AD8128D8A0] (Microsoft Corporation) 64bit-(MTConfig) Microsoft Input Configuration Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\MTConfig.sys -> [2017/03/18 22:56:25 | 000,016,896 | ---- | M | MD5 = 793AE56A3946EAD5F906C28D294FEFE6] (Microsoft Corporation) 64bit-(ErrDev) Microsoft Hardware Error Device Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\errdev.sys -> [2017/03/18 22:56:25 | 000,013,824 | ---- | M | MD5 = B9A59B4AD516E38C39FA416398B96CCB] (Microsoft Corporation) 64bit-(bcmfn2) bcmfn2 Service [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\bcmfn2.sys -> [2017/03/18 22:56:25 | 000,009,728 | ---- | M | MD5 = 739D089777D2B66DBE7201E5EA4BA2D7] (Windows (R) Win 7 DDK provider) 64bit-(ebdrv) Carte QLogic 10 Gigabit Ethernet VBD [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\evbda.sys -> [2017/03/18 22:56:23 | 003,419,040 | ---- | M | MD5 = D64CD3AE93125EDA383190C2AF607E70] (QLogic Corporation) 64bit-(b06bdrv) Carte réseau QLogic VBD [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\bxvbda.sys -> [2017/03/18 22:56:23 | 000,533,920 | ---- | M | MD5 = 0914A5E66C0775CE11960452A6434FEC] (QLogic Corporation) 64bit-(intelpep) Pilote de plug-in du moteur d’alimentation Intel(R) [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\intelpep.sys -> [2017/03/18 22:56:23 | 000,074,840 | ---- | M | MD5 = 0A3DBE89C965FFB7C0D0E38834E77B90] (Microsoft Corporation) 64bit-(monitor) Service Pilote de fonction de classe Moniteur Microsoft [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\monitor.sys -> [2017/03/18 22:56:23 | 000,039,424 | ---- | M | MD5 = 534477FCAFDFCA6B841BFA06BD26BCC5] (Microsoft Corporation) 64bit-(iaLPSSi_GPIO) Pilote de contrôleur GPIO d’E/S série Intel(R) [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\iaLPSSi_GPIO.sys -> [2017/03/18 22:56:23 | 000,038,128 | ---- | M | MD5 = 16A10CCEDCF5AC4CAAE43DC9FC40392F] (Intel Corporation) 64bit-(WSDPrintDevice) Prise en charge de l’impression WSD [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\WSDPrint.sys -> [2017/03/18 22:56:23 | 000,022,528 | ---- | M | MD5 = F6E37A2C168A58F0172DA50018959228] (Microsoft Corporation) 64bit-(AcpiPmi) Jauge d’alimentation ACPI [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\acpipmi.sys -> [2017/03/18 22:56:23 | 000,014,848 | ---- | M | MD5 = C347A6095F3BE417D24F1E1349F4AF0F] (Microsoft Corporation) 64bit-(usbaudio) Pilote USB audio (WDM) [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\USBAUDIO.sys -> [2017/03/18 22:56:20 | 000,134,656 | ---- | M | MD5 = FC318082D0793B76C766A8DFD4C247C5] (Microsoft Corporation) 64bit-(usbcir) Récepteur infrarouge eHome (USBCIR) [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\usbcir.sys -> [2017/03/18 22:56:20 | 000,103,424 | ---- | M | MD5 = ECE3AD18B4C22ED0C4AB1A2AD9AC32C8] (Microsoft Corporation) 64bit-(usbscan) Pilote de scanneur USB [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\usbscan.sys -> [2017/03/18 22:56:20 | 000,047,104 | ---- | M | MD5 = 96B48485A7CC2C0A63C196A16403C5F3] (Microsoft Corporation) 64bit-(usbprint) Classe d’imprimantes USB Microsoft [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\usbprint.sys -> [2017/03/18 22:56:20 | 000,027,136 | ---- | M | MD5 = CEE43CD5357DB8786CE6E2C430841AE4] (Microsoft Corporation) 64bit-(WSDScan) Prise en charge de la numérisation WSD [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\WSDScan.sys -> [2017/03/18 22:56:20 | 000,024,576 | ---- | M | MD5 = F454BF3F0D3F19057B8612CA523D22D5] (Microsoft Corporation) 64bit-(drmkaud) Pilotes audio approuvés par Microsoft [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\drmkaud.sys -> [2017/03/18 22:56:20 | 000,016,232 | ---- | M | MD5 = 3D934A1C02EB6979CF45C70A71F580EC] (Microsoft Corporation) 64bit-(pcmcia) pcmcia [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\pcmcia.sys -> [2017/03/18 22:56:19 | 000,120,224 | ---- | M | MD5 = 13B7D84B397A90E82682C47A15C3A98D] (Microsoft Corporation) 64bit-(EhStorTcgDrv) Pilote Microsoft pour dispositif de stockage prenant en charge les protocoles IEEE 1667 et TCG [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\EhStorTcgDrv.sys -> [2017/03/18 22:56:19 | 000,119,200 | ---- | M | MD5 = ABF38D02E01D6ED87AE1DF65FC5DF62D] (Microsoft Corporation) 64bit-(iaLPSSi_I2C) Pilote de contrôleur I2C d’E/S série Intel(R) [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\iaLPSSi_I2C.sys -> [2017/03/18 22:56:19 | 000,113,152 | ---- | M | MD5 = EB82A11613326691508D9ED9A4FE29E7] (Intel Corporation) 64bit-(BthHFEnum) Énumérateur HID de contrôle d’appel et de contrôle audio mains libres Bluetooth [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\bthhfenum.sys -> [2017/03/18 22:56:19 | 000,097,792 | ---- | M | MD5 = 729CC10B1658178F0F009FE0E9159281] (Microsoft Corporation) 64bit-(HDAudBus) Pilote de bus UAA Microsoft pour High Definition Audio [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\hdaudbus.sys -> [2017/03/18 22:56:19 | 000,086,528 | ---- | M | MD5 = DD1A6F4998E7E21564FA9BAFE21C87ED] (Microsoft Corporation) 64bit-(BTHMODEM) Pilote de communications modem Bluetooth [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\bthmodem.sys -> [2017/03/18 22:56:19 | 000,066,560 | ---- | M | MD5 = 5428242193611BF91DDBF4F58900A55A] (Microsoft Corporation) 64bit-(circlass) Périphériques IR grand public [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\circlass.sys -> [2017/03/18 22:56:19 | 000,049,152 | ---- | M | MD5 = 3E416539352B007AD0610BF34AC15D31] (Microsoft Corporation) 64bit-(HidIr) Pilote HID infrarouge Microsoft [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\hidir.sys -> [2017/03/18 22:56:19 | 000,046,592 | ---- | M | MD5 = 852DBB5185996AD8C73872A43A453729] (Microsoft Corporation) 64bit-(BthAvrcpTg) HID de contrôle à distance audio/vidéo Bluetooth [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\BthAvrcpTg.sys -> [2017/03/18 22:56:19 | 000,043,520 | ---- | M | MD5 = AF57F0B0E284BE06860A7B701341324D] (Microsoft Corporation) 64bit-(bthhfhid) HID de contrôle d’appel mains libres Bluetooth [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\BthhfHid.sys -> [2017/03/18 22:56:19 | 000,032,256 | ---- | M | MD5 = 336A9C0254A0178ED50281B6EDF5B836] (Microsoft Corporation) 64bit-(SmartDefragDriver) SmartDefragDriver [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\SmartDefragDriver.sys -> [2017/03/09 13:53:28 | 000,030,744 | ---- | M | MD5 = D2DDE8F0BD39F90E43146DB0B3B5DA57] (IObit) 64bit-(GridinSoftTrafficInspectDriver) GridinSoftTrafficInspectDriver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\gsinspect.sys -> [2017/03/02 19:16:20 | 000,038,160 | ---- | M | MD5 = 3E0CD5BF6679CB4D709CFAD21EC326FA] () 64bit-(GeneStor) Genesys Logic Storage Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\GeneStor.sys -> [2017/01/12 15:32:06 | 000,131,664 | ---- | M | MD5 = 7C66A2C6D7514F4D37DFE1F16EF00AD0] (GenesysLogic) 64bit-(epmntdrv) epmntdrv [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\epmntdrv.sys -> [2016/12/07 13:26:06 | 000,033,448 | ---- | M | MD5 = D1186D11D7FF6191CBC4BE68C8ADEAD2] () 64bit-(EUBKMON0) EUBKMON0 [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\EUBKMON0.sys -> [2016/11/28 14:13:58 | 000,052,392 | ---- | M | MD5 = 5061B571167E1EE26E8D549CCDBE9CC6] () 64bit-(EUBKMON) EUBKMON [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\EUBKMON.sys -> [2016/11/28 14:13:58 | 000,052,392 | ---- | M | MD5 = 5061B571167E1EE26E8D549CCDBE9CC6] () 64bit-(EUFDDISK0) EUFDDISK0 [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\EUFDDISK0.sys -> [2016/11/28 14:13:56 | 000,196,776 | ---- | M | MD5 = 6B133EE401475A72D252D49F8736936E] (CHENGDU YIWO Tech Development Co., Ltd) 64bit-(EUBAKUP0) EUBAKUP0 [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\EUBAKUP0.sys -> [2016/11/28 14:13:56 | 000,065,192 | ---- | M | MD5 = C5713A2B4C9D9150041FB70C4A2ADE07] (CHENGDU YIWO Tech Development Co., Ltd) 64bit-(EUBAKUP) EUBAKUP [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\eubakup.sys -> [2016/11/28 14:13:56 | 000,065,192 | ---- | M | MD5 = C5713A2B4C9D9150041FB70C4A2ADE07] (CHENGDU YIWO Tech Development Co., Ltd) 64bit-(teamviewervpn) TeamViewer VPN Adapter [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\teamviewervpn.sys -> [2016/11/28 12:55:21 | 000,035,112 | ---- | M | MD5 = F5520DBB47C60EE83024B38720ABDA24] (TeamViewer GmbH) 64bit-(avc3) avc3 [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\avc3.sys -> [2016/11/23 14:52:40 | 001,605,376 | ---- | M | MD5 = DA978AB6E0AAEA82235C943DEED3484C] (BitDefender) 64bit-(avckf) avckf [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\avckf.sys -> [2016/11/23 14:52:40 | 000,878,072 | ---- | M | MD5 = 09A3015AEA14CF9A4ECDE1CEA6AFE0AA] (BitDefender) 64bit-(pimou) Pluralinput Mouse 1.0 [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\pimou.sys -> [2016/11/17 18:21:34 | 000,042,392 | ---- | M | MD5 = 8E4CB6A8862188DC4D23586B853DB9B0] (Christian Gulden) 64bit-(pikbd) Pluralinput Keyboard 1.0 [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\pikbd.sys -> [2016/11/17 18:21:34 | 000,041,368 | ---- | M | MD5 = C54551CC28214130EA4A356FC12B09EB] () 64bit-(dtproscsibus) DAEMON Tools Pro Virtual SCSI Bus [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\dtproscsibus.sys -> [2016/11/14 10:27:16 | 000,030,264 | ---- | M | MD5 = 726E40B11612664486BB6C6105283C95] (Disc Soft Ltd) 64bit-(ZAM) ZAM Helper Driver [Kernel | System | Stopped] -> C:\Windows\SysNative\drivers\zam64.sys -> [2016/11/14 10:15:25 | 000,203,680 | ---- | M | MD5 = 21E13F2CB269DEFEAE5E1D09887D47BB] (Zemana Ltd.) 64bit-(ZAM_Guard) ZAM Guard Driver [Kernel | System | Stopped] -> C:\Windows\SysNative\drivers\zamguard64.sys -> [2016/11/14 10:15:19 | 000,203,680 | ---- | M | MD5 = 21E13F2CB269DEFEAE5E1D09887D47BB] (Zemana Ltd.) 64bit-(IDMWFP) IDMWFP [Kernel | Auto | Stopped] -> C:\Windows\SysNative\drivers\idmwfp.sys -> [2016/10/17 17:35:48 | 000,223,464 | ---- | M | MD5 = 0EF1E8299F58E1369B067F7B65D9F773] (Tonec Inc.) 64bit-(GridinSoftAntiRansomwareDriver) GridinSoft AntiRansomware [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\gsars.sys -> [2016/10/13 18:05:46 | 000,019,560 | ---- | M | MD5 = 94203B31B0618221780611608C8875DE] () 64bit-(L1C) NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\L1C63x64.sys -> [2016/09/19 10:16:46 | 000,161,096 | ---- | M | MD5 = A4FD20E038BEA02ECF62EA20C535CC9E] (Qualcomm Atheros, Inc.) 64bit-(VSScanner) VSScanner [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\vsscanner.sys -> [2016/08/18 18:17:00 | 000,029,808 | ---- | M | MD5 = 88457246BE3C9DE59DDAA36305C013F4] (VoodooSoft, LLC) 64bit-(ignis) ignis Service [Kernel | Boot | Stopped] -> C:\Windows\SysNative\drivers\ignis.sys -> [2016/08/15 10:41:02 | 000,300,840 | ---- | M | MD5 = 2C3928A343E2F29A7770BD429331DDCF] (Bitdefender) 64bit-(EuGdiDrv) EuGdiDrv [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\EuGdiDrv.sys -> [2016/07/11 10:01:24 | 000,010,848 | ---- | M | MD5 = 08C997734B2CECE882656BB2855E6E76] () 64bit-(clwvd7) @oem22.inf,%clwvd.DeviceDesc% Service;CyberLink WebCam Virtual Driver 7.0 Service [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\clwvd7.sys -> [2016/06/02 05:48:21 | 000,049,944 | ---- | M | MD5 = 30EAA7468E7721A99ED8221A7CEE7A80] (CyberLink Corporation) 64bit-(clvad) clvad [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\clvad.sys -> [2016/05/27 12:07:24 | 000,040,384 | ---- | M | MD5 = EFC50A6C4C6B6F9AA09AFAC5C15881B6] (CyberLink) 64bit-(clwvdVM) @oem13.inf,%clwvd.DeviceDesc% Service;Camera for VideoMeeting+/PresenterLink+ Service [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\clwvdVM.sys -> [2016/05/27 12:07:01 | 000,055,240 | ---- | M | MD5 = 0FBA6EDE873360E0AD44BB74A8B1ED85] (CyberLink Corporation) 64bit-(xlkfs) xlkfs [File_System | System | Stopped] -> C:\Windows\SysNative\drivers\xlkfs.sys -> [2016/05/26 13:12:26 | 000,044,272 | ---- | M | MD5 = 8B888F4663A25EC5D0A3448F29815B00] (XOSLAB.COM) 64bit-(tap0901) TAP-Windows Adapter V9 [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\tap0901.sys -> [2016/04/21 11:10:04 | 000,027,136 | ---- | M | MD5 = D765F43CBEA72D14C04AF3D2B9C8E54B] (The OpenVPN Project) 64bit-(BdfNdisf) BitDefender Firewall NDIS 6 Filter Driver [Kernel | System | Running] -> C:\Windows\SysNative\drivers\bdfndisf6.sys -> [2016/02/16 17:52:38 | 000,107,496 | ---- | M | MD5 = AF3E1ABAB951FC9064267ED76268F41B] (BitDefender LLC) 64bit-(avchv) avchv Function Driver [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\avchv.sys -> [2016/01/05 14:45:28 | 000,282,000 | ---- | M | MD5 = 3FC014DABD685F8958C89EAA35D77368] (BitDefender) 64bit-(WDC_SAM) WD SCSI Pass Thru driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\wdcsam64.sys -> [2015/11/12 23:50:10 | 000,026,880 | ---- | M | MD5 = A556768CC1FA4F36022BEE2F0EDE2566] (Western Digital Technologies, Inc.) 64bit-(amdkmdap) amdkmdap [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\atikmpag.sys -> [2015/10/09 21:24:58 | 000,493,584 | ---- | M | MD5 = 99B3E17A61C4D2B2619844BEE30B677C] (Advanced Micro Devices, Inc.) 64bit-(amdkmdag) amdkmdag [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\atikmdag.sys -> [2015/10/09 21:24:54 | 021,528,600 | ---- | M | MD5 = 96E72D84DC19E3EA220478405EE279CD] (Advanced Micro Devices, Inc.) 64bit-(AQFileRestore) AQFileRestore [File_System | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\AQFileRestore.sys -> [2015/07/20 20:18:02 | 000,022,096 | ---- | M | MD5 = 691275C85EF3FCD230A2CA1BD6B9BBAE] () 64bit-(uxstyle) uxstyle [Kernel | Auto | Stopped] -> C:\Windows\SysNative\drivers\elytsxu.sys -> [2015/03/01 00:22:52 | 000,032,424 | ---- | M | MD5 = 4736C69400D1FD0B7D36A30771675E13] (The Within Network, LLC) 64bit-(amd_sata) amd_sata [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\amd_sata.sys -> [2015/02/15 10:07:16 | 000,083,656 | ---- | M | MD5 = 0C7D6D5506304BDCF33E37CB2A568D5E] (Advanced Micro Devices) 64bit-(amd_xata) amd_xata [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\amd_xata.sys -> [2015/02/15 10:07:16 | 000,023,752 | ---- | M | MD5 = B971C576C80FB989E7A49B6E8B82DC95] (Advanced Micro Devices) 64bit-(EUFDDISK) EUFDDISK [Kernel | System | Stopped] -> C:\Windows\SysNative\drivers\EuFdDisk.sys -> [2014/12/15 01:59:40 | 000,192,040 | ---- | M | MD5 = 1D866B50C9B1BA3FE90CC81E0DBC0E15] (CHENGDU YIWO Tech Development Co., Ltd) 64bit-(EUDSKACS) EUDSKACS [Kernel | System | Stopped] -> C:\Windows\SysNative\drivers\eudskacs.sys -> [2014/12/15 01:59:40 | 000,018,472 | ---- | M | MD5 = FCFD172899D0A026E5BD29F4775BFA76] (CHENGDU YIWO Tech Development Co., Ltd) 64bit-(CLVirtualBus01) CyberLink Virtual CDROM Bus Enumerator [Kernel | On_Demand | Running] -> C:\Windows\SysNative\drivers\CLVirtualBus01.sys -> [2014/11/05 11:21:09 | 000,103,176 | ---- | M | MD5 = 0C7626AFB2419207B2ABCB6F8AEA334F] (CyberLink) 64bit-(Uim_DEVIM) UIM Direct Device Image Plugin [Kernel | System | Stopped] -> C:\Windows\SysNative\drivers\uim_devim.sys -> [2014/07/09 13:04:16 | 000,025,992 | ---- | M | MD5 = 9C05A6BE2E0D7A9412D5728C5AEA2C91] () 64bit-(UimBus) Universal Image Mounter Controller [Kernel | System | Stopped] -> C:\Windows\SysNative\drivers\UimBus.sys -> [2014/07/09 13:04:14 | 000,102,664 | ---- | M | MD5 = 121D10ADF79144F2A0130A4A4ABFDC86] () 64bit-(Uim_IM) UIM Drive Backup Image Plugin [Kernel | System | Stopped] -> C:\Windows\SysNative\drivers\uim_im.sys -> [2014/07/09 13:04:12 | 000,700,296 | ---- | M | MD5 = 48F252C0022B14164199D071E5F9C860] () 64bit-(hotcore3) hc3ServiceName [Kernel | Boot | Running] -> C:\Windows\SysNative\drivers\hotcore3.sys -> [2014/07/09 13:03:48 | 000,034,056 | ---- | M | MD5 = 735982D69324230856793BB4D3770350] (Paragon Software Group) 64bit-(CLBUDF) CyberLink InstantBurn UDF Filesystem [File_System | Auto | Stopped] -> C:\WINDOWS\SysNative\drivers\CLBUDF.sys -> [2013/09/24 17:12:18 | 000,379,144 | ---- | M | MD5 = C3EE731B310E6C563A47F80C0ADD39CD] (CyberLink Corporation.) 64bit-(CLBStor) InstantBurn Storage Helper Driver [Kernel | System | Running] -> C:\Windows\SysNative\drivers\CLBStor.sys -> [2013/09/24 17:12:16 | 000,025,864 | ---- | M | MD5 = 19863788DFFBE37CB63BF19D1FD5C247] (Cyberlink Co.,Ltd.) 64bit-(KbHook) KbHook [Kernel | System | Stopped] -> C:\Program Files\RansomwareScreenUnlocker\hookdriver64.sys -> [2013/06/08 11:28:41 | 000,018,720 | ---- | M | MD5 = 7339ACD1FAD38BD97C550BADEE8F98C9] () 64bit-(MDA_NTDRV) MDA_NTDRV [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\MDA_NTDRV.sys -> [2013/02/25 11:10:02 | 000,021,208 | ---- | M | MD5 = CF17A39BA7D1D1E386FD0C1303642B91] () 64bit-(LVUVC64) @oem20.inf,%PID_081B_DD%(UVC);Logitech HD Webcam C310(UVC) [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\lvuvc64.sys -> [2012/10/26 17:42:22 | 004,758,176 | ---- | M | MD5 = 415E344294D1C0D04627B29146F68481] (Logitech Inc.) 64bit-(lvrs64) Logitech RightSound Filter Driver [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\lvrs64.sys -> [2012/10/26 17:42:22 | 000,351,520 | ---- | M | MD5 = A0A527569856B9814E8920F52EBB67F5] (Logitech Inc.) 64bit-(CompFilter64) UVCCompositeFilter [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\lvbflt64.sys -> [2012/10/26 17:42:22 | 000,026,784 | ---- | M | MD5 = 81F2B52C47B8AD32CC4FF967FC8D73DA] (Logitech Inc.) 64bit-(MMPDrv) MMPDrv [Kernel | On_Demand | Stopped] -> C:\Windows\SysNative\drivers\MMPDrv.sys -> [2012/09/03 23:44:28 | 000,021,752 | ---- | M | MD5 = 650D69D771F2B511DE7E9369DF1F90DE] () 64bit-(SASDIFSV) SASDIFSV [Kernel | System | Stopped] -> C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS -> [2011/07/22 18:26:56 | 000,014,928 | ---- | M | MD5 = 3289766038DB2CB14D07DC84392138D5] (SUPERAdBlocker.com and SUPERAntiSpyware.com) 64bit-(SASKUTIL) SASKUTIL [Kernel | System | Stopped] -> C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS -> [2011/07/12 23:55:18 | 000,012,368 | ---- | M | MD5 = 58A38E75F3316A83C23DF6173D41F2B5] (SUPERAdBlocker.com and SUPERAntiSpyware.com) 64bit-(ElRawDisk) ElRawDisk [Kernel | System | Stopped] -> C:\Windows\SysNative\drivers\rsdrvx64.sys -> [2009/02/12 15:11:26 | 000,026,024 | ---- | M | MD5 = 4778EEECB75C6FB419745BEED3530B9D] (EldoS Corporation) (WiseHDInfo) WiseHDInfo [Kernel | On_Demand | Stopped] -> C:\Windows\WiseHDInfo64.dll -> [2017/06/06 17:50:28 | 000,014,800 | ---- | M | MD5 = 96CC61325A387239C1AD3656F9313DEE] (wisecleaner.com) (GUMHFilters) GUMHFilters [File_System | On_Demand | Stopped] -> C:\Program Files (x86)\Glarysoft\Malware Hunter\Native\winxp_x64\GUMHFilter.sys -> [2017/05/19 05:32:02 | 000,041,272 | ---- | M | MD5 = 75DF4478862CC82A414A766C025FD4EE] (GlarySoft Ltd) ({A14A8EF6-B11D-4356-9ECC-4B937E6CC626}) Power Control [2017/05/23 16:41:21] [Kernel | Auto | Stopped] -> C:\Program Files (x86)\CyberLink\PowerDVD17\Common\NavFilter\000.fcl -> [2017/05/03 11:56:51 | 000,038,168 | ---- | M | MD5 = F59E24428FDE06FDDD441DB1A6D53CC9] (CyberLink Corp.) (HWiNFO32) HWiNFO32/64 Kernel Driver [Kernel | System | Stopped] -> C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS -> [2017/04/27 15:06:32 | 000,027,552 | ---- | M | MD5 = EF558A02D734A1403583E95CCEEC2487] (REALiX(tm)) (CompositeBus) Pilote de l’énumérateur de bus composite [Kernel | On_Demand | Running] -> C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_de4c68ea4fb1be53\CompositeBus.sys -> [2017/03/18 22:56:19 | 000,040,448 | ---- | M | MD5 = DFDAEDB857BC18764F0D8ECDCC3C1499] (Microsoft Corporation) (EuGdiDrv) EuGdiDrv [Kernel | On_Demand | Stopped] -> C:\Windows\SysWOW64\EuGdiDrv.sys -> [2016/07/11 10:01:24 | 000,010,208 | ---- | M | MD5 = 886CDC85E0B6C9AC2547F919E5B224A3] () ({41E8078B-96D9-42DC-8789-A1CF102CD880}) Power Control [2016/11/15 11:05:37] [Kernel | Auto | Stopped] -> C:\Program Files (x86)\CyberLink\PowerDVD16\Common\NavFilter\000.fcl -> [2016/06/22 12:33:00 | 000,038,168 | ---- | M | MD5 = D4408D580E87280C8B5D570B25D6C3AD] (CyberLink Corp.) (epmntdrv) epmntdrv [Kernel | On_Demand | Stopped] -> C:\Windows\SysWOW64\epmntdrv.sys -> [2016/01/14 10:05:18 | 000,021,496 | ---- | M | MD5 = 5F2D1F871FF277EDE5FAEB971D8335ED] () [Registry - All] < 64bit-Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> -> HKEY_LOCAL_MACHINE\: Main\\"Default_Page_URL" -> about:blank -> HKEY_LOCAL_MACHINE\: Main\\"Default_Search_URL" -> http://go.microsoft.com -> HKEY_LOCAL_MACHINE\: Main\\"Default_Secondary_Page_URL" -> [binary data] -> HKEY_LOCAL_MACHINE\: Main\\"Extensions Off Page" -> about:NoAdd-ons -> HKEY_LOCAL_MACHINE\: Main\\"Local Page" -> C:\Windows\System32\blank.htm -> HKEY_LOCAL_MACHINE\: Main\\"Search Page" -> http://go.microsoft.com -> HKEY_LOCAL_MACHINE\: Main\\"Security Risk Page" -> about:SecurityRisk -> HKEY_LOCAL_MACHINE\: Main\\"Start Page" -> http://go.microsoft.com/fwlink/?LinkID=617912&ResetID=131400243384397698&GUID=6CAF4E33-21B2-43DC-B21F-032965DE936F -> HKEY_LOCAL_MACHINE\: "ProxyEnable" -> 0 -> < Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> -> HKEY_LOCAL_MACHINE\: Main\\"Default_Page_URL" -> about:blank -> HKEY_LOCAL_MACHINE\: Main\\"Default_Search_URL" -> http://go.microsoft.com -> HKEY_LOCAL_MACHINE\: Main\\"Default_Secondary_Page_URL" -> [binary data] -> HKEY_LOCAL_MACHINE\: Main\\"Extensions Off Page" -> about:NoAdd-ons -> HKEY_LOCAL_MACHINE\: Main\\"Local Page" -> C:\WINDOWS\System32\blank.htm -> HKEY_LOCAL_MACHINE\: Main\\"Search Page" -> http://go.microsoft.com -> HKEY_LOCAL_MACHINE\: Main\\"Security Risk Page" -> about:SecurityRisk -> HKEY_LOCAL_MACHINE\: Main\\"Start Page" -> http://go.microsoft.com/fwlink/?LinkID=617912&ResetID=131400243384424191&GUID=6CAF4E33-21B2-43DC-B21F-032965DE936F -> HKEY_LOCAL_MACHINE\: "ProxyEnable" -> 0 -> < Internet Explorer Settings [HKEY_USERS\.DEFAULT\] > -> -> HKEY_USERS\.DEFAULT\: "ProxyEnable" -> 0 -> < Internet Explorer Settings [HKEY_USERS\S-1-5-18\] > -> -> HKEY_USERS\S-1-5-18\: "ProxyEnable" -> 0 -> < Internet Explorer Settings [HKEY_USERS\S-1-5-19\] > -> -> HKEY_USERS\S-1-5-19\: Main\\"Local Page" -> C:\WINDOWS\System32\blank.htm -> HKEY_USERS\S-1-5-19\: Main\\"Search Page" -> http://go.microsoft.com/fwlink/?LinkId=54896 -> 64bit-HKEY_USERS\S-1-5-19\: URLSearchHooks\\"{CFBFAE00-17A6-11D0-99CB-00C04FD64497}" [HKLM] -> C:\Windows\SysNative\ieframe.dll [Microsoft Url Search Hook] -> [2017/04/28 01:58:48 | 012,787,200 | ---- | M | MD5 = 73318E5C8F169E99DDCFD17AD57E64D9] (Microsoft Corporation) HKEY_USERS\S-1-5-19\: URLSearchHooks\\"{CFBFAE00-17A6-11D0-99CB-00C04FD64497}" [HKLM] -> C:\Windows\SysWOW64\ieframe.dll [Microsoft Url Search Hook] -> [2017/04/28 02:40:47 | 011,870,208 | ---- | M | MD5 = A0EB9E2886A798E8E36BD46236A3FF7B] (Microsoft Corporation) HKEY_USERS\S-1-5-19\: "ProxyEnable" -> 0 -> < Internet Explorer Settings [HKEY_USERS\S-1-5-20\] > -> -> HKEY_USERS\S-1-5-20\: Main\\"Local Page" -> C:\WINDOWS\System32\blank.htm -> HKEY_USERS\S-1-5-20\: Main\\"Search Page" -> http://go.microsoft.com/fwlink/?LinkId=54896 -> 64bit-HKEY_USERS\S-1-5-20\: URLSearchHooks\\"{CFBFAE00-17A6-11D0-99CB-00C04FD64497}" [HKLM] -> C:\Windows\SysNative\ieframe.dll [Microsoft Url Search Hook] -> [2017/04/28 01:58:48 | 012,787,200 | ---- | M | MD5 = 73318E5C8F169E99DDCFD17AD57E64D9] (Microsoft Corporation) HKEY_USERS\S-1-5-20\: URLSearchHooks\\"{CFBFAE00-17A6-11D0-99CB-00C04FD64497}" [HKLM] -> C:\Windows\SysWOW64\ieframe.dll [Microsoft Url Search Hook] -> [2017/04/28 02:40:47 | 011,870,208 | ---- | M | MD5 = A0EB9E2886A798E8E36BD46236A3FF7B] (Microsoft Corporation) HKEY_USERS\S-1-5-20\: "ProxyEnable" -> 0 -> < Internet Explorer Settings [HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\] > -> -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\: Main\\"Default Download Directory" -> C:\Users\Jean-Marie\Desktop -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\: Main\\"Default_Page_URL" -> about:blank -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\: Main\\"Default_Search_URL" -> http://go.microsoft.com -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\: Main\\"Local Page" -> C:\WINDOWS\System32\blank.htm -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\: Main\\"Search Page" -> http://go.microsoft.com -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\: Main\\"Start Page" -> http://go.speedbit.com/?s=H68b -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\: Main\\"Start Page Redirect Cache AcceptLangs" -> fr-FR -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\: Main\\"Start Page Redirect Cache_TIMESTAMP" -> C2 85 50 94 BE 3C D2 01 [binary data] -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\: Main\\"Start Page_TIMESTAMP" -> 22 0A 11 21 BB DE D2 01 [binary data] -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\: Main\\"SyncHomePage Protected - It is a violation of Windows Policy to modify. See aka.ms/browserpolicy" -> 01 00 00 00 0F 00 00 00 DF 76 0A 03 47 14 58 56 25 6E 36 D8 B1 4B E9 02 00 00 00 0E 00 00 00 72 78 59 71 57 59 43 33 4B 64 51 25 33 64 [binary data] -> 64bit-HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\: URLSearchHooks\\"{CFBFAE00-17A6-11D0-99CB-00C04FD64497}" [HKLM] -> C:\Windows\SysNative\ieframe.dll [Microsoft Url Search Hook] -> [2017/04/28 01:58:48 | 012,787,200 | ---- | M | MD5 = 73318E5C8F169E99DDCFD17AD57E64D9] (Microsoft Corporation) HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\: URLSearchHooks\\"{CFBFAE00-17A6-11D0-99CB-00C04FD64497}" [HKLM] -> C:\Windows\SysWOW64\ieframe.dll [Microsoft Url Search Hook] -> [2017/04/28 02:40:47 | 011,870,208 | ---- | M | MD5 = A0EB9E2886A798E8E36BD46236A3FF7B] (Microsoft Corporation) HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\: "ProxyEnable" -> 0 -> < FireFox Settings [Prefs.js] > -> C:\Users\Jean-Marie\AppData\Roaming\Mozilla\FireFox\Profiles\0an3ou4g.default\prefs.js -> browser.search.countryCode -> "FR" -> browser.search.region -> "FR" -> < FireFox Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla HKLM\software\mozilla\Firefox\Extensions -> -> HKLM\software\mozilla\Firefox\Extensions\\FFExtnHTML2PDF@foxitsoftware.com -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\FirefoxAddin\FFExtnHTML2PDF.xpi [C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT PHANTOMPDF\PLUGINS\CREATOR\FIREFOXADDIN\FFEXTNHTML2PDF.XPI] -> [2017/03/21 18:30:14 | 000,092,777 | ---- | M | MD5 = F29F404666A99EE0C6A1450F428254F0] () HKLM\software\mozilla\Firefox\Extensions\\youcam@cyberlink.com -> C:\PROGRAM FILES (X86)\CYBERLINK\YOUCAM7\BROWSEREXTENSION\FIREFOX\ [C:\PROGRAM FILES (X86)\CYBERLINK\YOUCAM7\BROWSEREXTENSION\FIREFOX\] -> [2016/11/15 15:02:31 | 000,000,000 | ---D | M] HKLM\software\mozilla\Firefox\Extensions\\daplinkchecker@speedbit.com -> C:\Program Files (x86)\DAP\daplinkchecker [C:\PROGRAM FILES (X86)\DAP\DAPLINKCHECKER] -> [2017/06/06 06:47:25 | 000,000,000 | ---D | M] HKLM\software\mozilla\Mozilla Firefox 53.0.3\extensions -> -> HKLM\software\mozilla\Mozilla Thunderbird 54.0\extensions -> -> < FireFox Extensions [User Folders] > -> -> C:\Users\Jean-Marie\AppData\Roaming\mozilla\Extensions -> [2017/06/09 08:30:19 | 000,000,000 | ---D | M] -> C:\Users\Jean-Marie\AppData\Roaming\mozilla\Firefox\Profiles\0an3ou4g.default\extensions -> [2017/06/10 10:55:19 | 000,000,000 | ---D | M] < FireFox Extensions [Program Folders] > -> -> C:\Program Files (x86)\Mozilla Firefox\browser\extensions -> [2017/06/09 08:24:34 | 000,000,000 | ---D | M] < HOSTS File > ([2017/06/08 20:09:40 | 000,002,830 | ---- | M | Unable to obtain MD5] - 70 lines) -> C:\WINDOWS\SysNative\Drivers\etc\hosts -> First 25 entries... Reset Hosts 0.0.0.0 choice.microsoft.com 0.0.0.0 choice.microsoft.com.nstac.net 0.0.0.0 df.telemetry.microsoft.com 0.0.0.0 oca.telemetry.microsoft.com 0.0.0.0 oca.telemetry.microsoft.com.nsatc.net 0.0.0.0 redir.metaservices.microsoft.com 0.0.0.0 reports.wes.df.telemetry.microsoft.com 0.0.0.0 services.wes.df.telemetry.microsoft.com 0.0.0.0 settings-sandbox.data.microsoft.com 0.0.0.0 settings-win.data.microsoft.com 0.0.0.0 sqm.df.telemetry.microsoft.com 0.0.0.0 sqm.telemetry.microsoft.com 0.0.0.0 sqm.telemetry.microsoft.com.nsatc.net 0.0.0.0 telecommand.telemetry.microsoft.com 0.0.0.0 telecommand.telemetry.microsoft.com.nsatc.net 0.0.0.0 telemetry.appex.bing.net 0.0.0.0 telemetry.microsoft.com 0.0.0.0 telemetry.urs.microsoft.com 0.0.0.0 vortex-sandbox.data.microsoft.com 0.0.0.0 vortex-win.data.microsoft.com 0.0.0.0 vortex.data.microsoft.com 0.0.0.0 watson.telemetry.microsoft.com 0.0.0.0 watson.telemetry.microsoft.com.nsatc.net 0.0.0.0 watson.ppe.telemetry.microsoft.com < 64bit-BHO's [HKEY_LOCAL_MACHINE] > -> 64bit-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ -> {0055C089-8582-441B-A0BF-17B458C2A3A8} [HKLM] -> C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [IDM integration (IDMIEHlprObj Class)] -> [2016/12/10 21:22:30 | 000,517,176 | ---- | M | MD5 = F93CB9F9AD8A8E3919D40C96938A64AF] (Internet Download Manager, Tonec Inc.) {10921475-03CE-4E04-90CE-E2E7EF20C814} [HKLM] -> Reg Error: Key error. [Reg Error: Key error.] -> File not found < BHO's [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} [HKLM] -> C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll [IObit Surfing Protection] -> [2016/08/03 17:16:28 | 001,203,112 | ---- | M | MD5 = 1C9743E63884BCB12CAD4A5055F3ABBF] (IObit) {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} [HKLM] -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\GROOVEEX.DLL [Microsoft OneDrive for Business Browser Helper] -> [2017/05/27 11:18:22 | 002,075,440 | ---- | M | MD5 = EC234ECF3A85AF2BFCBF0C1D8EA6A869] (Microsoft Corporation) {D5974A72-C81C-4DC3-BE77-A8A7BBC8864E} [HKLM] -> C:\Program Files (x86)\DAP\LinkVerifier.dll [SpeedBit Link Verification Helper] -> [2017/06/06 06:46:18 | 000,442,472 | ---- | M | MD5 = 582A8E396D61B4948C80C44767EB91C3] (Speedbit Ltd.) {DBC80044-A445-435b-BC74-9C25C1C588A9} [HKLM] -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\jp2ssv.dll [Java(tm) Plug-In 2 SSV Helper] -> [2017/05/29 16:59:23 | 000,186,944 | ---- | M | MD5 = 14F57FB1F3DA1502E8D3E25AC67C9974] (Oracle Corporation) {F9B65201-3D7F-48DA-AAB3-57A6FAD648FD} [HKLM] -> C:\Program Files (x86)\Keepvid\KeepVid Pro (FR)\BrowserPlugin\KVBrowserAppMgr.dll [KeepVid Pro 4.10.0] -> [2017/06/08 11:02:36 | 000,633,464 | ---- | M | MD5 = AC26259DA97D6917FD169B624AD409D8] () {FFCB3198-32F3-4E8B-9539-4324694ED664} [HKLM] -> C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\Adblock\ADBlock.dll [IObit Ads Removal] -> [2016/06/23 14:35:54 | 000,734,632 | ---- | M | MD5 = 82F93F864B380DFD5840C02D4F700271] (IObit) < 64bit-Run [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> "AvastUI.exe" -> C:\Program Files\AVAST Software\Avast\AvLaunch.exe ["C:\Program Files\AVAST Software\Avast\AvLaunch.exe" /gui] -> [2017/05/12 03:53:24 | 000,213,824 | ---- | M | MD5 = 8DD6F98101EBBA3FC92C8092333A6B32] (AVAST Software) "AvgUi" -> C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe ["C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe" /lps=fmw] -> [2017/05/31 14:47:04 | 000,239,592 | ---- | M | MD5 = 5B60104A562B64552E1392395F6BBC4B] (AVG Technologies CZ, s.r.o.) "AVGUI.exe" -> C:\Program Files (x86)\AVG\Antivirus\AvLaunch.exe ["C:\Program Files (x86)\AVG\Antivirus\AvLaunch.exe" /gui] -> [2017/06/02 14:17:09 | 000,263,232 | ---- | M | MD5 = D9034BE319B5F56796662BA970426CA5] (AVG Technologies CZ, s.r.o.) "Classic Start Menu" -> C:\Program Files\Classic Shell\ClassicStartMenu.exe ["C:\Program Files\Classic Shell\ClassicStartMenu.exe" -autorun] -> [2016/07/30 09:05:16 | 000,163,800 | ---- | M | MD5 = 5677C8C60F4659E8626AC9036EEF38DF] (IvoSoft) "RTHDVCPL" -> C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe ["C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s] -> [2017/05/25 02:00:22 | 018,378,208 | ---- | M | MD5 = CD66CEE524C0EBBAB4E4493BA44EF79A] (Realtek Semiconductor) < Run [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> "Aimersoft Helper Compact.exe" -> C:\Program Files (x86)\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe [C:\Program Files (x86)\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe] -> [2016/10/08 17:04:14 | 002,138,272 | ---- | M | MD5 = 2355145A0097829D3E84FE84C88342B8] (AimerSoft) "BingDesktop" -> C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe [C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe /fromkey] -> [2014/11/26 18:48:04 | 002,372,800 | ---- | M | MD5 = 0567F1DEBA5A27B918E19DBD5F86E048] (Microsoft Corp.) "Dropbox" -> C:\Program Files (x86)\Dropbox\Client\Dropbox.exe ["C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup] -> [2017/05/26 16:57:12 | 003,487,032 | ---- | M | MD5 = CFC78BD5678006EE9872FF5E656D37B1] (Dropbox, Inc.) "KeepVidProUpdateHelper.exe" -> C:\Program Files (x86)\Keepvid\KeepVid Pro (FR)\KeepVidProUpdateHelper.exe [C:\Program Files (x86)\Keepvid\KeepVid Pro (FR)\KeepVidProUpdateHelper.exe] -> [2017/06/08 11:02:06 | 000,033,912 | ---- | M | MD5 = 8CBFFCA730248C757F8B4F06104E8244] () "Syncios device service" -> C:\Program Files (x86)\Anvsoft\Syncios\SynciosDeviceService.exe [C:\Program Files (x86)\Anvsoft\Syncios\SynciosDeviceService.exe] -> [2017/05/18 10:02:44 | 001,840,792 | ---- | M | MD5 = D99D48D20C80712661B891244415DD26] () "Wondershare Helper Compact.exe" -> C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe] -> [2016/10/08 16:49:34 | 002,137,744 | ---- | M | MD5 = C6BDF0F7C7354CE2073BAB2C8B1BE845] (Wondershare) < Run [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> "OneDriveSetup" -> C:\Windows\SysWOW64\OneDriveSetup.exe [C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup] -> [2017/03/18 22:57:00 | 020,488,312 | ---- | M | MD5 = 450FDD861FD582026BDCE55FCB2162C4] (Microsoft Corporation) < Run [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> "OneDriveSetup" -> C:\Windows\SysWOW64\OneDriveSetup.exe [C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup] -> [2017/03/18 22:57:00 | 020,488,312 | ---- | M | MD5 = 450FDD861FD582026BDCE55FCB2162C4] (Microsoft Corporation) < Run [HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\] > -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run -> "Advanced SystemCare 10" -> C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe ["C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe" /Auto] -> [2017/03/30 16:57:52 | 003,920,672 | ---- | M | MD5 = 66661B397F7DF0AD5AD1FA75D72D6F39] (IObit) "AshSnap" -> C:\Program Files (x86)\Ashampoo\Ashampoo Snap 2017\ashsnap.exe [C:\Program Files (x86)\Ashampoo\Ashampoo Snap 2017\ashsnap.exe] -> [2017/01/10 10:40:02 | 007,223,608 | ---- | M | MD5 = 4652E48A2526E19A4D5728BB54AA5882] (Ashampoo GmbH & Co. KG) "DownloadAccelerator" -> C:\Program Files (x86)\DAP\DAP.EXE ["C:\Program Files (x86)\DAP\DAP.EXE" /STARTUP] -> [2017/06/06 06:46:20 | 004,242,064 | ---- | M | MD5 = 29157E7FCBE92662DA8CC389C5FAF8EE] (Speedbit Ltd.) "EPLTarget\P0000000000000000" -> [C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATILPE.EXE /EPT "EPLTarget\P0000000000000000" /M "XP-710 Series" /EF "HKCU"] -> File not found "SharewareOnSale Notifier" -> C:\ProgramData\SharewareOnSale Notifier\SharewareOnSale Notifier.exe [C:\ProgramData\SharewareOnSale Notifier\SharewareOnSale Notifier.exe] -> [2017/06/10 09:46:08 | 001,008,816 | ---- | M | MD5 = 5C7F4F6F66DA721CC2083A518312C4F5] () "SpeedBitVideoAccelerator" -> C:\Program Files (x86)\SpeedBit Video Accelerator\VideoAccelerator.exe ["C:\Program Files (x86)\SpeedBit Video Accelerator\VideoAccelerator.exe" /startup] -> [2017/06/08 17:40:30 | 001,517,736 | ---- | M | MD5 = DB7795F78393CA3CEC5D68C1E57E6EBE] (SPEEDbit) < Software Policy Settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer -> HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Internet Explorer\Infodelivery\Restrictions \Infodelivery\Restrictions\\"NoUpdateCheck" -> [1] -> File not found < Software Policy Settings [HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001] > -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\SOFTWARE\Policies\Microsoft\Internet Explorer -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\Software\Policies\Microsoft\Internet Explorer\Feed Discovery \Feed Discovery\\"Enabled" -> [1] -> File not found HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\Software\Policies\Microsoft\Internet Explorer\Feeds \Feeds\\"BackgroundSyncStatus" -> [1] -> File not found < CurrentVersion Policy Settings - Explorer [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer \\"ForceActiveDesktopOn" -> [0] -> File not found \\"NoActiveDesktop" -> [0] -> File not found \\"NoActiveDesktopChanges" -> [0] -> File not found \\"NoRecentDocsHistory" -> [0] -> File not found < CurrentVersion Policy Settings - System [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System \\"ConsentPromptBehaviorAdmin" -> [5] -> File not found \\"ConsentPromptBehaviorUser" -> [3] -> File not found \\"DSCAutomationHostEnabled" -> [2] -> File not found \\"EnableCursorSuppression" -> [1] -> File not found \\"EnableInstallerDetection" -> [1] -> File not found \\"EnableLUA" -> [1] -> File not found \\"EnableSecureUIAPaths" -> [1] -> File not found \\"EnableUIADesktopToggle" -> [0] -> File not found \\"EnableVirtualization" -> [1] -> File not found \\"PromptOnSecureDesktop" -> [1] -> File not found \\"ValidateAdminCodeSignatures" -> [0] -> File not found \\"undockwithoutlogon" -> [1] -> File not found \\"EnableLinkedConnections" -> [1] -> File not found \\"UacDisableNotify" -> [0] -> File not found HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats \UIPI\Clipboard\ExceptionFormats\\"CF_BITMAP" -> [2] -> File not found \UIPI\Clipboard\ExceptionFormats\\"CF_DIB" -> [8] -> File not found \UIPI\Clipboard\ExceptionFormats\\"CF_DIBV5" -> [17] -> File not found \UIPI\Clipboard\ExceptionFormats\\"CF_OEMTEXT" -> [7] -> File not found \UIPI\Clipboard\ExceptionFormats\\"CF_PALETTE" -> [9] -> File not found \UIPI\Clipboard\ExceptionFormats\\"CF_TEXT" -> [1] -> File not found \UIPI\Clipboard\ExceptionFormats\\"CF_UNICODETEXT" -> [13] -> File not found < CurrentVersion Policy Settings [HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001] > -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer \\"NoSimpleNetIDList" -> [1] -> File not found \\"NolowDiskSpaceChecks" -> [1] -> File not found \\"NoDriveTypeAutoRun" -> [221] -> File not found < CurrentVersion Policy Settings [HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001] > -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System -> < 64bit-Internet Explorer Menu Extensions [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\MenuExt\ -> &Download with &DAP -> C:\Program Files (x86)\DAP\dapextie.htm [C:\Program Files (x86)\DAP\dapextie.htm] -> [2017/06/06 06:46:20 | 000,002,273 | ---- | M | MD5 = 6A87B7A399327F4BCFF0572C96213C41] () &Verify with DAP -> C:\Program Files (x86)\DAP\dapverify.htm [C:\Program Files (x86)\DAP\dapverify.htm] -> [2017/06/06 06:46:20 | 000,001,599 | ---- | M | MD5 = C328D7CF96D4D72E782038F79121F88E] () Download &all with DAP -> C:\Program Files (x86)\DAP\dapextie2.htm [C:\Program Files (x86)\DAP\dapextie2.htm] -> [2017/06/06 06:46:20 | 000,001,041 | ---- | M | MD5 = D107E7CA809D15137DFE1082E1A2389A] () < Internet Explorer Menu Extensions [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\MenuExt\ -> &Download with &DAP -> C:\Program Files (x86)\DAP\dapextie.htm [C:\Program Files (x86)\DAP\dapextie.htm] -> [2017/06/06 06:46:20 | 000,002,273 | ---- | M | MD5 = 6A87B7A399327F4BCFF0572C96213C41] () &Verify with DAP -> C:\Program Files (x86)\DAP\dapverify.htm [C:\Program Files (x86)\DAP\dapverify.htm] -> [2017/06/06 06:46:20 | 000,001,599 | ---- | M | MD5 = C328D7CF96D4D72E782038F79121F88E] () Download &all with DAP -> C:\Program Files (x86)\DAP\dapextie2.htm [C:\Program Files (x86)\DAP\dapextie2.htm] -> [2017/06/06 06:46:20 | 000,001,041 | ---- | M | MD5 = D107E7CA809D15137DFE1082E1A2389A] () < 64bit-Internet Explorer Menu Extensions [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\MenuExt\ -> &Download with &DAP -> C:\Program Files (x86)\DAP\dapextie.htm [C:\Program Files (x86)\DAP\dapextie.htm] -> [2017/06/06 06:46:20 | 000,002,273 | ---- | M | MD5 = 6A87B7A399327F4BCFF0572C96213C41] () &Verify with DAP -> C:\Program Files (x86)\DAP\dapverify.htm [C:\Program Files (x86)\DAP\dapverify.htm] -> [2017/06/06 06:46:20 | 000,001,599 | ---- | M | MD5 = C328D7CF96D4D72E782038F79121F88E] () Download &all with DAP -> C:\Program Files (x86)\DAP\dapextie2.htm [C:\Program Files (x86)\DAP\dapextie2.htm] -> [2017/06/06 06:46:20 | 000,001,041 | ---- | M | MD5 = D107E7CA809D15137DFE1082E1A2389A] () < Internet Explorer Menu Extensions [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\MenuExt\ -> &Download with &DAP -> C:\Program Files (x86)\DAP\dapextie.htm [C:\Program Files (x86)\DAP\dapextie.htm] -> [2017/06/06 06:46:20 | 000,002,273 | ---- | M | MD5 = 6A87B7A399327F4BCFF0572C96213C41] () &Verify with DAP -> C:\Program Files (x86)\DAP\dapverify.htm [C:\Program Files (x86)\DAP\dapverify.htm] -> [2017/06/06 06:46:20 | 000,001,599 | ---- | M | MD5 = C328D7CF96D4D72E782038F79121F88E] () Download &all with DAP -> C:\Program Files (x86)\DAP\dapextie2.htm [C:\Program Files (x86)\DAP\dapextie2.htm] -> [2017/06/06 06:46:20 | 000,001,041 | ---- | M | MD5 = D107E7CA809D15137DFE1082E1A2389A] () < 64bit-Internet Explorer Menu Extensions [HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\] > -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\Software\Microsoft\Internet Explorer\MenuExt\ -> &Download with &DAP -> C:\Program Files (x86)\DAP\dapextie.htm [C:\Program Files (x86)\DAP\dapextie.htm] -> [2017/06/06 06:46:20 | 000,002,273 | ---- | M | MD5 = 6A87B7A399327F4BCFF0572C96213C41] () &Verify with DAP -> C:\Program Files (x86)\DAP\dapverify.htm [C:\Program Files (x86)\DAP\dapverify.htm] -> [2017/06/06 06:46:20 | 000,001,599 | ---- | M | MD5 = C328D7CF96D4D72E782038F79121F88E] () Append Link Page to Another PDF -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll [res://C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll/IEContextMenuLinkAppendPDF.html] -> [2017/03/31 16:40:26 | 004,690,632 | ---- | M | MD5 = 55933823C0D576C762FF9F4FD4DAF34A] () Append to Another PDF -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll [res://C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll/IEContextMenuCurrentAppendPDF.html] -> [2017/03/31 16:40:26 | 004,690,632 | ---- | M | MD5 = 55933823C0D576C762FF9F4FD4DAF34A] () Convert Link Page to Foxit PDF -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll [res://C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll/IEContextMenuLinkNewPDF.html] -> [2017/03/31 16:40:26 | 004,690,632 | ---- | M | MD5 = 55933823C0D576C762FF9F4FD4DAF34A] () Convert to Foxit PDF -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll [res://C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll/IEContextMenuCurrentNewPDF.html] -> [2017/03/31 16:40:26 | 004,690,632 | ---- | M | MD5 = 55933823C0D576C762FF9F4FD4DAF34A] () Download &all with DAP -> C:\Program Files (x86)\DAP\dapextie2.htm [C:\Program Files (x86)\DAP\dapextie2.htm] -> [2017/06/06 06:46:20 | 000,001,041 | ---- | M | MD5 = D107E7CA809D15137DFE1082E1A2389A] () Download video with Wise Video Downloader -> C:\Program Files (x86)\Wise\Wise Video Downloader\IEydown.htm [C:\Program Files (x86)\Wise\Wise Video Downloader\IEydown.htm] -> [2013/03/07 18:42:20 | 000,000,460 | ---- | M | MD5 = BF7DF072986FC19F5DD8F60A8D0AE638] () Télécharger avec IDM -> C:\Program Files (x86)\Internet Download Manager\IEExt.htm [C:\Program Files (x86)\Internet Download Manager\IEExt.htm] -> [2004/12/02 17:31:10 | 000,000,277 | ---- | M | MD5 = 7EE0CC294B365F8FC4FAB2F06E01AC95] () Télécharger tous les liens avec IDM -> C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm [C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm] -> [2003/10/20 11:13:14 | 000,000,283 | ---- | M | MD5 = 648E7B2602158D2FF9197D664F59B28B] () < Internet Explorer Menu Extensions [HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\] > -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\Software\Microsoft\Internet Explorer\MenuExt\ -> &Download with &DAP -> C:\Program Files (x86)\DAP\dapextie.htm [C:\Program Files (x86)\DAP\dapextie.htm] -> [2017/06/06 06:46:20 | 000,002,273 | ---- | M | MD5 = 6A87B7A399327F4BCFF0572C96213C41] () &Verify with DAP -> C:\Program Files (x86)\DAP\dapverify.htm [C:\Program Files (x86)\DAP\dapverify.htm] -> [2017/06/06 06:46:20 | 000,001,599 | ---- | M | MD5 = C328D7CF96D4D72E782038F79121F88E] () Append Link Page to Another PDF -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll [res://C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll/IEContextMenuLinkAppendPDF.html] -> [2017/03/31 16:40:26 | 004,690,632 | ---- | M | MD5 = 55933823C0D576C762FF9F4FD4DAF34A] () Append to Another PDF -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll [res://C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll/IEContextMenuCurrentAppendPDF.html] -> [2017/03/31 16:40:26 | 004,690,632 | ---- | M | MD5 = 55933823C0D576C762FF9F4FD4DAF34A] () Convert Link Page to Foxit PDF -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll [res://C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll/IEContextMenuLinkNewPDF.html] -> [2017/03/31 16:40:26 | 004,690,632 | ---- | M | MD5 = 55933823C0D576C762FF9F4FD4DAF34A] () Convert to Foxit PDF -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll [res://C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll/IEContextMenuCurrentNewPDF.html] -> [2017/03/31 16:40:26 | 004,690,632 | ---- | M | MD5 = 55933823C0D576C762FF9F4FD4DAF34A] () Download &all with DAP -> C:\Program Files (x86)\DAP\dapextie2.htm [C:\Program Files (x86)\DAP\dapextie2.htm] -> [2017/06/06 06:46:20 | 000,001,041 | ---- | M | MD5 = D107E7CA809D15137DFE1082E1A2389A] () Download video with Wise Video Downloader -> C:\Program Files (x86)\Wise\Wise Video Downloader\IEydown.htm [C:\Program Files (x86)\Wise\Wise Video Downloader\IEydown.htm] -> [2013/03/07 18:42:20 | 000,000,460 | ---- | M | MD5 = BF7DF072986FC19F5DD8F60A8D0AE638] () Télécharger avec IDM -> C:\Program Files (x86)\Internet Download Manager\IEExt.htm [C:\Program Files (x86)\Internet Download Manager\IEExt.htm] -> [2004/12/02 17:31:10 | 000,000,277 | ---- | M | MD5 = 7EE0CC294B365F8FC4FAB2F06E01AC95] () Télécharger tous les liens avec IDM -> C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm [C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm] -> [2003/10/20 11:13:14 | 000,000,283 | ---- | M | MD5 = 648E7B2602158D2FF9197D664F59B28B] () < 64bit-Internet Explorer Extensions [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ -> {2670000A-7350-4f3c-8081-5663EE0C6C49}:{48E73304-E1D6-4330-914C-F5F514E3486C} [HKLM] -> C:\Program Files\Microsoft Office\root\Office16\ONBttnIE.dll [Button: Send to OneNote] -> [2017/05/27 11:17:42 | 000,282,312 | ---- | M | MD5 = D50C8D9E9425D1EC652546B0A3863E34] (Microsoft Corporation) {2670000A-7350-4f3c-8081-5663EE0C6C49}:{48E73304-E1D6-4330-914C-F5F514E3486C} [HKLM] -> C:\Program Files\Microsoft Office\root\Office16\ONBttnIE.dll [Menu: Se&nd to OneNote] -> [2017/05/27 11:17:42 | 000,282,312 | ---- | M | MD5 = D50C8D9E9425D1EC652546B0A3863E34] (Microsoft Corporation) {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}:{FFFDC614-B694-4AE6-AB38-5D6374584B52} [HKLM] -> C:\Program Files\Microsoft Office\root\Office16\ONBttnIELinkedNotes.dll [Button: OneNote Lin&ked Notes] -> [2017/05/27 11:17:41 | 000,254,144 | ---- | M | MD5 = BBDA4431D2D0A36FB3C6B537B1413B64] (Microsoft Corporation) {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA}:{FFFDC614-B694-4AE6-AB38-5D6374584B52} [HKLM] -> C:\Program Files\Microsoft Office\root\Office16\ONBttnIELinkedNotes.dll [Menu: OneNote Lin&ked Notes] -> [2017/05/27 11:17:41 | 000,254,144 | ---- | M | MD5 = BBDA4431D2D0A36FB3C6B537B1413B64] (Microsoft Corporation) < 64bit-Internet Explorer Plugins [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Plugins\ -> PluginsPageFriendlyName -> Microsoft ActiveX Gallery -> PluginsPage -> http://activex.microsoft.com/controls/find.asp?ext=%s&mime=%s -> < Internet Explorer Plugins [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Plugins\ -> PluginsPageFriendlyName -> Microsoft ActiveX Gallery -> PluginsPage -> http://activex.microsoft.com/controls/find.asp?ext=%s&mime=%s -> < 64bit-Default Prefix > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix "" -> http:// < Default Prefix > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\DefaultPrefix "" -> http:// < 64bit-Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. -> < 64bit-Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> < Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. -> < Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> < Trusted Sites Domains [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. -> < Trusted Sites Ranges [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> < Trusted Sites Domains [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. -> < Trusted Sites Ranges [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> < Trusted Sites Domains [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. -> < Trusted Sites Ranges [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> < Trusted Sites Domains [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 0 domain(s) found. -> < Trusted Sites Ranges [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> < Trusted Sites Domains [HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\] > -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 1 domain(s) found. -> update_drp.su [http] -> Local intranet -> update_drp.su [https] -> Local intranet -> < Trusted Sites Ranges [HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\] > -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. -> < Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ -> {8AD9C840-044E-11D1-B3E9-00805F499D93} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab [Java Plug-in 11.131.2] -> {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab [Java Plug-in 1.6.0_18] -> {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} [HKLM] -> http://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab [Java Plug-in 11.131.2] -> < Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\ -> DhcpNameServer -> 192.168.1.1 192.168.1.1 -> < Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ -> {99d2a21a-f04d-4ce6-af1a-ed86024bbe07}\\NameServer -> 8.8.8.8 () -> {f082584a-8909-4bb8-81f4-a55b0715a133}\\DhcpNameServer -> 192.168.1.1 192.168.1.1 () -> IE Styles -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Styles "MaxScriptStatements" -> Reg Error: Invalid data type. < 64bit-AppInit_DLLs [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs -> 64bit-*AppInit_DLLs* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_Dlls -> C:\PROGRA~2\KEYCRY~1\KEYCRY~4.DLL -> C:\Program Files (x86)\KeyCryptSDK\KeyCrypt64(3).dll -> [2017/01/19 17:43:18 | 000,094,568 | ---- | M | MD5 = 7E720518B4711CE62DE69DB1127CCA7E] (Zemana Ltd.) *MultiFile Done* -> -> < 64bit-Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon -> 64bit-*Shell* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell -> explorer.exe -> C:\WINDOWS\explorer.exe -> [2017/04/26 19:34:26 | 004,848,440 | ---- | M | MD5 = 6314A1E16B2B6D2E0E3FE65C9BA7BD73] (Microsoft Corporation) *MultiFile Done* -> -> 64bit-*UserInit* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\UserInit -> C:\WINDOWS\system32\userinit.exe -> C:\Windows\SysNative\userinit.exe -> [2017/03/18 22:58:21 | 000,032,256 | ---- | M | MD5 = 46B72E05D0B9F489CA60DBD7361039B0] (Microsoft Corporation) *MultiFile Done* -> -> 64bit-*VMApplet* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet -> SystemPropertiesPerformance.exe -> C:\WINDOWS\SysNative\SystemPropertiesPerformance.exe -> [2017/03/18 22:58:25 | 000,083,968 | ---- | M | MD5 = 0A23DBE5F3926280D0EEEF6E35B8E603] (Microsoft Corporation) /pagefile -> -> File not found *MultiFile Done* -> -> < Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon -> *Shell* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell -> explorer.exe -> C:\WINDOWS\SysWow64\explorer.exe -> [2017/04/26 19:34:20 | 004,469,832 | ---- | M | MD5 = 97FA9E2FD62081E635DDB7AF09121A20] (Microsoft Corporation) *MultiFile Done* -> -> *UserInit* -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\UserInit -> C:\WINDOWS\SYSWOW64\userinit.exe -> C:\Windows\SysWOW64\userinit.exe -> [2017/03/18 22:58:47 | 000,027,136 | ---- | M | MD5 = 61E7F56A1C00894FCB212F25BB52EE68] (Microsoft Corporation) *MultiFile Done* -> -> < Winlogon settings [HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001] > -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon -> *Shell* -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\Shell -> explorer.exe -> C:\WINDOWS\SysWow64\explorer.exe -> [2017/04/26 19:34:20 | 004,469,832 | ---- | M | MD5 = 97FA9E2FD62081E635DDB7AF09121A20] (Microsoft Corporation) *MultiFile Done* -> -> < Winlogon\Notify settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ -> SDWinLogon -> -> File not found < 64bit-SSODL [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad -> "{E6FB5E20-DE35-11CF-9C87-00AA005127ED}" [HKLM] -> Reg Error: Key error. [WebCheck] -> File not found < SSODL [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad -> "{E6FB5E20-DE35-11CF-9C87-00AA005127ED}" [HKLM] -> Reg Error: Key error. [WebCheck] -> File not found < SecurityProviders [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\\SecurityProviders -> 64bit-*SecurityProviders* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\\SecurityProviders -> credssp.dll -> C:\WINDOWS\SysNative\credssp.dll -> [2017/03/18 22:58:01 | 000,024,064 | ---- | M | MD5 = 76386F3A7899BEA25C4D749D6BB80387] (Microsoft Corporation) *MultiFile Done* -> -> *SecurityProviders* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\\SecurityProviders -> credssp.dll -> C:\WINDOWS\SysWow64\credssp.dll -> [2017/03/18 22:58:47 | 000,019,456 | ---- | M | MD5 = 682E76AE6DFB0493903035DCC2EAD5E4] (Microsoft Corporation) *MultiFile Done* -> -> < LSA Authentication Packages [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\Authentication Packages -> 64bit-*LSA Authentication Packages* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\Authentication Packages -> msv1_0 -> C:\WINDOWS\SysNative\msv1_0.dll -> [2017/03/18 22:58:22 | 000,411,040 | ---- | M | MD5 = C07BFB35D6C57C7ABB0C718311C5FDDE] (Microsoft Corporation) *MultiFile Done* -> -> *LSA Authentication Packages* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\Authentication Packages -> msv1_0 -> C:\WINDOWS\SysWow64\msv1_0.dll -> [2017/03/18 22:58:49 | 000,349,600 | ---- | M | MD5 = CFBE7384296869263019E297A023DE33] (Microsoft Corporation) *MultiFile Done* -> -> < Vista Public Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile\AuthorizedApplications -> < Vista Standard Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications -> 64bit-HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List \List\\"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access] -> [2014/06/24 10:42:12 | 004,101,576 | ---- | M | MD5 = 7EE68A122ED08E4AAD8DA551E34D2515] (Safer-Networking Ltd.) \List\\"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service] -> [2014/06/24 10:41:42 | 001,738,168 | ---- | M | MD5 = D777F1417D9BB9F66CD9D9C3B61F730F] (Safer-Networking Ltd.) \List\\"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater] -> [2014/06/27 11:52:46 | 004,747,720 | ---- | M | MD5 = 9CCE733E5262FB92C2331E8578512B49] (Safer-Networking Ltd.) \List\\"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service] -> [2014/06/27 11:52:26 | 002,088,408 | ---- | M | MD5 = 68D6C7F99BC73B88954D844FCCBEB2A0] (Safer-Networking Ltd.) < Vista Active Firewall Rules > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules -> {93885DD8-CFD1-4138-83C7-C6708E39585D} -> lport=5353 | protocol=17 | dir=in | action=allow | name=google chrome (mdns-in) | app=c:\program files (x86)\google\chrome\application\chrome.exe | < Vista Active Application Exception Rules > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules -> {032CCD89-1A2F-4738-B5DB-3FE06A9A1D05} -> dir=out | action=allow | name=sp_ff | app=c:\program files (x86)\iobit\advanced systemcare\surfing protection\ffnativemessage.exe | {062DD11D-FE1D-468E-8E50-BB3F318DEE28} -> profile=private | protocol=6 | dir=in | action=allow | name=firefox (c:\program files (x86)\mozilla firefox) | app=c:\program files (x86)\mozilla firefox\firefox.exe | {0639A7E6-3731-4C61-A577-FBAC55266E00} -> dir=in | action=allow | name=syncios data transfer | app=c:\program files (x86)\anvsoft\syncios\pdt_syncios.exe | {08104BD7-2EB7-4AF2-B206-BEEAB54C8D9C} -> profile=private | protocol=6 | dir=in | action=allow | name=easeus_smart | app=c:\program files (x86)\easeus\todo backup\bin\todobackupservice.exe | {35A4F2C6-3CB6-42D6-9E7C-E94254A26500} -> dir=in | action=allow | name=sp_ff | app=c:\program files (x86)\iobit\advanced systemcare\surfing protection\ffnativemessage.exe | {45411870-110D-4DBB-B110-5C1E93543C16} -> dir=out | action=allow | name=driver easy | app=c:\program files\easeware\drivereasy\drivereasy.exe | {76CA4DA4-2DBF-4A5D-B12D-E832288A9C50} -> profile=private | protocol=17 | dir=in | action=allow | name=firefox (c:\program files (x86)\mozilla firefox) | app=c:\program files (x86)\mozilla firefox\firefox.exe | {77CBC56F-03DD-4E10-8C42-68FE80B06467} -> dir=in | action=allow | name=pcmover | app=c:\program files (x86)\laplink\pcmover\pcmover.exe | {8D96790F-65A8-47C4-88FC-52D86B93C19A} -> dir=in | action=allow | name=goodsync server | app=c:\program files\siber systems\goodsync\gs-server.exe | {B19BA2F4-2253-451B-8AF3-A7431C96A66F} -> profile=domain | dir=in | action=allow | name=syncback touch | app=c:\program files (x86)\2brightsparks\syncbacktouch\syncbacktouchsvc.exe | {C4E65C00-DD9D-4B7E-9888-EA51E6F2A553} -> profile=private | protocol=17 | dir=in | action=allow | name=easeus_smart | app=c:\program files (x86)\easeus\todo backup\bin\todobackupservice.exe | TCP Query User{7BF2CF6B-2FD8-4DCE-8F13-870F8DF47CC4}C:\program files (x86)\glarysoft\software update pro\softwareupdatepro.exe -> profile=private | protocol=6 | dir=in | action=allow | name=glary softwareupdatepro | app=c:\program files (x86)\glarysoft\software update pro\softwareupdatepro.exe | UDP Query User{3DE0E6B2-D68B-43D4-845E-262F7A8B21B9}C:\program files (x86)\glarysoft\software update pro\softwareupdatepro.exe -> profile=private | protocol=17 | dir=in | action=allow | name=glary softwareupdatepro | app=c:\program files (x86)\glarysoft\software update pro\softwareupdatepro.exe | < Standard Profile Authorized Applications List > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List -> "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service] -> [2014/06/24 10:41:42 | 001,738,168 | ---- | M | MD5 = D777F1417D9BB9F66CD9D9C3B61F730F] (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access] -> [2014/06/24 10:42:12 | 004,101,576 | ---- | M | MD5 = 7EE68A122ED08E4AAD8DA551E34D2515] (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater] -> [2014/06/27 11:52:46 | 004,747,720 | ---- | M | MD5 = 9CCE733E5262FB92C2331E8578512B49] (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service] -> [2014/06/27 11:52:26 | 002,088,408 | ---- | M | MD5 = 68D6C7F99BC73B88954D844FCCBEB2A0] (Safer-Networking Ltd.) < SafeBoot AlternateShell [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot -> "AlternateShell" -> cmd.exe -> < CDROM Autorun Setting [HKEY_LOCAL_MACHINE]> -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom -> "AutoRun" -> 1 -> "DisplayName" -> @cdrom.inf,%cdrom_ServiceDesc%;CD-ROM Driver -> "ImagePath" -> [\SystemRoot\System32\drivers\cdrom.sys] -> File not found < Drives with AutoRun files > -> -> D:\autorun.inf [] -> D:\autorun.inf [ FAT32 ] -> [2017/04/15 11:25:48 | 000,000,000 | -HS- | M | Unable to obtain MD5] () M:\AutoBackupSystem.dat [] -> M:\AutoBackupSystem.dat [ NTFS ] -> [2016/09/30 07:06:21 | 000,002,344 | ---- | M | MD5 = A196D33E98FCD09B2D40A226EF350FEF] () M:\AutoCreateBoot.dat [] -> M:\AutoCreateBoot.dat [ NTFS ] -> [2016/09/30 07:06:19 | 000,000,048 | ---- | M | MD5 = 56DAA4D8DB165C2184B60C9BC1A30181] () M:\Automobile-Elevator-with-Car.jpg [ÿØÿà | ] -> M:\Automobile-Elevator-with-Car.jpg [ NTFS ] -> [2016/07/21 18:48:20 | 001,130,532 | ---- | M | MD5 = 42415321B2913329BF48CD4C5AA0597A] () M:\Automobile-Elevatr.-Car-lift-600X400.jpg [ÿØÿá6UExif | ] -> M:\Automobile-Elevatr.-Car-lift-600X400.jpg [ NTFS ] -> [2016/07/21 18:48:20 | 000,208,345 | ---- | M | MD5 = E82D671F6B01F804CB0F0B3124844308] () M:\autorun (1).inf [[autorun] | open=Framakey.exe | icon=Framakey.exe | label=Framakey 2 | | shell=Framakey | shell\FramaKey=FramaKey 2 | shell\FramaKey\command=Framakey.exe | ] -> M:\autorun (1).inf [ NTFS ] -> [2016/11/17 16:03:12 | 000,000,149 | ---- | M | MD5 = 21782659DB8FF9C76C09A7A4B6CFAF68] () < MountPoints2 [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2 -> < Registry Shell Spawning - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command -> 64bit-comfile [open] -> "%1" %* 64bit-exefile [open] -> "%1" %* comfile [open] -> "%1" %* -> exefile [open] -> "%1" %* -> < 64bit-File Associations - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\ -> .com [@ = comfile] -> "%1" %* -> .exe [@ = exefile] -> "%1" %* -> < File Associations - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\ -> .com [@ = comfile] -> "%1" %* -> .exe [@ = exefile] -> "%1" %* -> [Registry - Additional Scans - Safe List] < 64bit-File Associations - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\ -> .bat [@ = batfile] -> "%1" %* -> .chm [@ = ] -> Reg Error: Key error. -> File not found .cmd [@ = cmdfile] -> "%1" %* -> .com [@ = comfile] -> "%1" %* -> .exe [@ = exefile] -> "%1" %* -> .html [@ = htmlfile] -> C:\Program Files\Internet Explorer\IEXPLORE.EXE -> [2017/03/18 07:43:20 | 000,824,128 | ---- | M | MD5 = 0F3C97716FED8B554A7EC0464D50719F] (Microsoft Corporation) .url [@ = InternetShortcut] -> C:\WINDOWS\SysNative\rundll32.exe -> [2017/03/18 22:58:29 | 000,068,608 | ---- | M | MD5 = ECB702B8C5650381C0784F1EEABB97BC] (Microsoft Corporation) .pif [@ = piffile] -> "%1" %* -> .scr [@ = scrfile] -> "%1" /S -> < File Associations - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\ -> .bat [@ = batfile] -> "%1" %* -> .chm [@ = ] -> Reg Error: Key error. -> File not found .cmd [@ = cmdfile] -> "%1" %* -> .com [@ = comfile] -> "%1" %* -> .cpl [@ = cplfile] -> C:\WINDOWS\SysWow64\control.exe -> [2017/03/18 22:58:56 | 000,114,688 | ---- | M | MD5 = AB5785DB901410485F13E7B2C8021A31] (Microsoft Corporation) .exe [@ = exefile] -> "%1" %* -> .html [@ = htmlfile] -> C:\Program Files\Internet Explorer\IEXPLORE.EXE -> [2017/03/18 07:43:20 | 000,824,128 | ---- | M | MD5 = 0F3C97716FED8B554A7EC0464D50719F] (Microsoft Corporation) .pif [@ = piffile] -> "%1" %* -> .scr [@ = scrfile] -> "%1" /S -> < File Associations - Select to Repair > -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\SOFTWARE\Classes\\ -> .html [@ = FirefoxHTML] -> C:\Program Files\Mozilla Firefox\firefox.exe -> [2017/05/18 10:31:07 | 000,477,640 | ---- | M | MD5 = BB88EC12D720AF7BC776491E47AEEDA3] (Mozilla Corporation) < 64bit-Protocol Handlers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ -> tbauth:{14654CA6-5711-491D-B89A-58E571679951} [HKLM] -> C:\Windows\SysNative\tbauth.dll[Microsoft TBAuth Single-Sign On Protocol] -> [2017/03/18 22:58:01 | 000,036,864 | ---- | M | MD5 = 29CCA2A8E6FCD7ECA0918FA4D56C973D] (Microsoft Corporation) windows.tbauth:{14654CA6-5711-491D-B89A-58E571679951} [HKLM] -> C:\Windows\SysNative\tbauth.dll[Microsoft TBAuth Single-Sign On Protocol] -> [2017/03/18 22:58:01 | 000,036,864 | ---- | M | MD5 = 29CCA2A8E6FCD7ECA0918FA4D56C973D] (Microsoft Corporation) WSKVAllmytubechrome:{91AB862D-07B8-4A85 [HKLM] -> Reg Error: Key error.[Reg Error: Key error.] -> File not found < Protocol Handlers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ -> tbauth:{14654CA6-5711-491D-B89A-58E571679951} [HKLM] -> C:\Windows\SysWOW64\tbauth.dll[Microsoft TBAuth Single-Sign On Protocol] -> [2017/03/18 22:58:46 | 000,030,720 | ---- | M | MD5 = E4CFDE043C2A8876E3BDD100793DD092] (Microsoft Corporation) windows.tbauth:{14654CA6-5711-491D-B89A-58E571679951} [HKLM] -> C:\Windows\SysWOW64\tbauth.dll[Microsoft TBAuth Single-Sign On Protocol] -> [2017/03/18 22:58:46 | 000,030,720 | ---- | M | MD5 = E4CFDE043C2A8876E3BDD100793DD092] (Microsoft Corporation) WSKVAllmytubechrome:{91AB862D-07B8-4A85 [HKLM] -> Reg Error: Key error.[Reg Error: Key error.] -> File not found < 64bit-Security Center Settings > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center -> 64bit-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center \\"cval" -> [0] -> File not found 64bit-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ -> -> 64bit-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\ -> -> 64bit-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc \Svc\\"VistaSp1" -> [E3 42 40 4C B9 BE D2 01 [binary data]] -> File not found 64bit-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade\ -> -> 64bit-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade \Svc\Upgrade\\"UpgradeTime" -> [ [binary data]] -> File not found < Security Center Settings > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade\ -> -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade \Svc\Upgrade\\"UpgradeTime" -> Reg Error: Unknown registry data type [Reg Error: Unknown registry data type] -> File not found < System Restore Service > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService -> "Start" -> 2 -> < Windows DomainProfile Firewall Policy Settings > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile \\"EnableFirewall" -> [1] -> File not found \\"DisableNotifications" -> [0] -> File not found HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\ -> -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\ -> -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\Logging\ -> -> < Windows StandardProfile Firewall Policy Settings > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile \\"EnableFirewall" -> [1] -> File not found \\"DisableNotifications" -> [0] -> File not found HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\ -> -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\ -> -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\Logging\ -> -> < Winsock2 Catalogs [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\ -> 64bit-NameSpace_Catalog5\Catalog_Entries64\000000000007 [mdnsNSP] -> C:\Program Files\Bonjour\mdnsNSP.dll -> [2015/08/12 16:03:42 | 000,133,392 | ---- | M | MD5 = EAAA2B83C4764FDCFBEE4A4D6546DE92] (Apple Inc.) NameSpace_Catalog5\Catalog_Entries\000000000007 [mdnsNSP] -> C:\Program Files (x86)\Bonjour\mdnsNSP.dll -> [2015/08/12 16:03:38 | 000,122,128 | ---- | M | MD5 = F6D02735DE16705C1EBE6429592CD355] (Apple Inc.) Protocol_Catalog9\Catalog_Entries\000000000001 -> C:\Program Files (x86)\SpeedBit Video Accelerator\sblsp.dll -> [2017/06/06 06:50:24 | 000,177,320 | ---- | M | MD5 = 3BEF492E391EB1019F7CDD08B9F480D5] (SPEEDbit) Protocol_Catalog9\Catalog_Entries\000000000002 -> C:\Program Files (x86)\SpeedBit Video Accelerator\sblsp.dll -> [2017/06/06 06:50:24 | 000,177,320 | ---- | M | MD5 = 3BEF492E391EB1019F7CDD08B9F480D5] (SPEEDbit) Protocol_Catalog9\Catalog_Entries\000000000003 -> C:\Program Files (x86)\SpeedBit Video Accelerator\sblsp.dll -> [2017/06/06 06:50:24 | 000,177,320 | ---- | M | MD5 = 3BEF492E391EB1019F7CDD08B9F480D5] (SPEEDbit) Protocol_Catalog9\Catalog_Entries\000000000004 -> C:\Program Files (x86)\SpeedBit Video Accelerator\sblsp.dll -> [2017/06/06 06:50:24 | 000,177,320 | ---- | M | MD5 = 3BEF492E391EB1019F7CDD08B9F480D5] (SPEEDbit) Protocol_Catalog9\Catalog_Entries\000000000005 -> C:\Program Files (x86)\SpeedBit Video Accelerator\sblsp.dll -> [2017/06/06 06:50:24 | 000,177,320 | ---- | M | MD5 = 3BEF492E391EB1019F7CDD08B9F480D5] (SPEEDbit) Protocol_Catalog9\Catalog_Entries\000000000006 -> C:\Program Files (x86)\SpeedBit Video Accelerator\sblsp.dll -> [2017/06/06 06:50:24 | 000,177,320 | ---- | M | MD5 = 3BEF492E391EB1019F7CDD08B9F480D5] (SPEEDbit) Protocol_Catalog9\Catalog_Entries\000000000007 -> C:\Program Files (x86)\SpeedBit Video Accelerator\sblsp.dll -> [2017/06/06 06:50:24 | 000,177,320 | ---- | M | MD5 = 3BEF492E391EB1019F7CDD08B9F480D5] (SPEEDbit) Protocol_Catalog9\Catalog_Entries\000000000008 -> C:\Program Files (x86)\SpeedBit Video Accelerator\sblsp.dll -> [2017/06/06 06:50:24 | 000,177,320 | ---- | M | MD5 = 3BEF492E391EB1019F7CDD08B9F480D5] (SPEEDbit) Protocol_Catalog9\Catalog_Entries\000000000009 -> C:\Program Files (x86)\SpeedBit Video Accelerator\sblsp.dll -> [2017/06/06 06:50:24 | 000,177,320 | ---- | M | MD5 = 3BEF492E391EB1019F7CDD08B9F480D5] (SPEEDbit) Protocol_Catalog9\Catalog_Entries\000000000010 -> C:\Program Files (x86)\SpeedBit Video Accelerator\sblsp.dll -> [2017/06/06 06:50:24 | 000,177,320 | ---- | M | MD5 = 3BEF492E391EB1019F7CDD08B9F480D5] (SPEEDbit) Protocol_Catalog9\Catalog_Entries\000000000011 -> C:\Program Files (x86)\SpeedBit Video Accelerator\sblsp.dll -> [2017/06/06 06:50:24 | 000,177,320 | ---- | M | MD5 = 3BEF492E391EB1019F7CDD08B9F480D5] (SPEEDbit) Protocol_Catalog9\Catalog_Entries\000000000012 -> C:\Program Files (x86)\SpeedBit Video Accelerator\sblsp.dll -> [2017/06/06 06:50:24 | 000,177,320 | ---- | M | MD5 = 3BEF492E391EB1019F7CDD08B9F480D5] (SPEEDbit) Protocol_Catalog9\Catalog_Entries\000000000025 -> C:\Program Files (x86)\SpeedBit Video Accelerator\sblsp.dll -> [2017/06/06 06:50:24 | 000,177,320 | ---- | M | MD5 = 3BEF492E391EB1019F7CDD08B9F480D5] (SPEEDbit) < Default Protocols [HKEY_LOCAL_MACHINE\] - Select to Repair > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults -> knownfolder -> 0 = Computer (Not a Default Protocol) -> ldap -> 4 = Restricted sites (Not a Default Protocol) -> news -> 4 = Restricted sites (Not a Default Protocol) -> nntp -> 4 = Restricted sites (Not a Default Protocol) -> oecmd -> 4 = Restricted sites (Not a Default Protocol) -> snews -> 4 = Restricted sites (Not a Default Protocol) -> < Default Protocols [HKEY_USERS\.DEFAULT\] - Select to Repair > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults -> knownfolder -> 0 = Computer (Not a Default Protocol) -> < Default Protocols [HKEY_USERS\S-1-5-18\] - Select to Repair > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults -> knownfolder -> 0 = Computer (Not a Default Protocol) -> < Default Protocols [HKEY_USERS\S-1-5-19\] - Select to Repair > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults -> @ivt -> @ivt protocol not assigned -> file -> file protocol not assigned -> ftp -> ftp protocol not assigned -> http -> http protocol not assigned -> https -> https protocol not assigned -> shell -> shell protocol not assigned -> < Default Protocols [HKEY_USERS\S-1-5-20\] - Select to Repair > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults -> @ivt -> @ivt protocol not assigned -> file -> file protocol not assigned -> ftp -> ftp protocol not assigned -> http -> http protocol not assigned -> https -> https protocol not assigned -> shell -> shell protocol not assigned -> < Default Protocols [HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\] - Select to Repair > -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults -> knownfolder -> 0 = Computer (Not a Default Protocol) -> < 64bit-Uninstall List [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ -> {0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D} -> PDFCreator {04B83666-3A62-452B-85D3-70F8117F2329}_is1 -> CamStudio 2.7.4 {063E67F0-C298-8A2A-0FA6-84C15322A4E0} -> ccc-utility64 {06D33B93-9458-4E28-BDEA-F5ECB2C3C30E} -> AntimalwareEngine {078F51FA-D92F-419A-9E69-08BC59265F7E}_is1 -> AVG Secure VPN {0A596141-97D5-45FA-9281-98DFAF48D579} -> Apple Mobile Device Support {0D4447E0-A261-43A4-AEBC-F76E983901F0} -> Microsoft SQL Server Compact 4.0 SP1 x64 FRA {0F21980D-B00D-43F5-A41B-2C5D3CA14BF8} -> Microsoft System CLR Types pour SQL Server 2014 {10BD561E-12B5-4E3D-B982-DF43879E7DAC} -> Active Directory Authentication Library pour SQL Server {115FB0FD-1A0A-4C26-82A7-A6689A799BB9} -> Boost {13FD7E30-D2F1-498D-ABC2-A4242DB6610E} -> IIS 10.0 Express {1454FA4E-58BC-2EF1-9A19-147B0E499E03} -> UEV Tools on amd64 {17520B79-9D56-4107-891F-5207F2B5B4D8}_is1 -> Remo Convert OST to PST {1D2AE7A5-78A9-41D4-9454-5DFFEDC8FAF3} -> Microsoft System CLR Types pour SQL Server 2016 {1D8E6291-B0D5-35EC-8441-6616F567A0F7} -> Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 {20E15FF2-47B5-4C2A-A65B-1D15EC32341E} -> Microsoft Visual Studio 2015 Performance Collection Tools {22C37D82-6137-40BF-8625-7A846ED65F3A}_is1 -> FolderIco 5.1 {26F31E12-3722-45FD-903B-49012286BB4C} -> OnlineThreatsEngine {28A17CCB-77BB-49C9-847B-60E076DC43D1} -> UxStyle {296D0B70-F8D8-4D58-9E55-C86B3E82DB7C} -> Microsoft SQL Server 2014 Management Objects (x64) {299EB32D-0525-4482-A8B5-1F30725AB6F1}_is1 -> PhotoStitcher 2.0 {2B75557A-B66B-4C26-8AFD-F1B752C1D4CB} -> Fast HTML Checker {2B9EE1FE-105F-4093-A40E-C1BF12F873B7} -> Microsoft SQL Server 2012 Native Client {2C22EA92-CB30-4932-0053-000001000000} -> InfraRecorder 0.53 (x64 edition) {2D02967A-1085-4421-8559-B0147208EE13} -> Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - amd64 {2DFD8316-9EF1-3210-908C-4CB61961C1AC} -> Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 {34BFF66C-9A7E-4778-8A9F-1DA1F0F4C22E} -> Microsoft Build Tools Language Resources 14.0 (amd64) {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 -> Malwarebytes version 3.1.2.1733 {352E35F2-B50A-3721-83E8-FD40758AE36D} -> Microsoft Visual Studio Team Foundation Server 2015 Update 3 CTP1 Office Integration Language Pack (x64) - ENU {37B8F9C7-03FB-3253-8781-2517C99D7C00} -> Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 {37FED9EB-66AD-4E9B-91D2-2F90AC1AA547} -> PDF-Tools {3835543E-37BA-4CE3-91BE-608DA8827675} -> Utilitaires ligne de comm. Microsoft SQL Server 2012 {383BB30A-B4A7-4666-9A83-22CFA8640097} -> Classic Shell {3E0DD83F-BE4C-4478-86A0-AD0D79D1353E} -> Microsoft VSS Writer for SQL Server 2012 {3E494002-985C-4908-B72C-5B4DD15BE090}_is1 -> Start Menu X version 6.1 {3E5BEF30-3962-4B47-AECA-937B6CBB0A68} -> AvcEngine {406CC721-9FAD-3610-B44E-3130F84358D8} -> Microsoft Visual C++ 2015 x64 Debug Runtime - 14.0.24215 {42BEF461-E91D-4C9E-94A2-790D973CE971} -> Nitro Reader 5 {48A2A66F-1269-4954-80AB-BEA80E7E76A4} -> Microsoft SQL Server 2016 LocalDB {4E27A682-5F47-3B82-AF7C-90218C7078C3} -> Microsoft Visual Studio Team Foundation Server 2015 Update 3 CTP1 Storyboarding (x64) {50A2BC33-C9CD-3BF1-A8FF-53C10A0B183C} -> Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215 {5247E16E-BCF8-95AB-1653-B3F8FBF8B3F1} -> Windows Software Development Kit DirectX x64 Remote {56DDDFB8-7F79-4480-89D5-25E1F52AB28F} -> Bonjour {595B8A7B-253D-4A4E-95C2-A823EDDD5496} -> Macrium Reflect Free Edition {599702AA-91EB-38C1-B994-CDE35C57E007} -> Microsoft Visual Studio 2015 VsGraphics Helper Dependencies {5A2BC38A-406C-4A5B-BF45-6991F9A05325}_is1 -> PeaZip 6.4.1 (WIN64) {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} -> Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 {60DED060-0B6B-3CC1-B955-D0CD401F0FBA} -> Visual C++ IDE x64 Package {62D2E847-606F-49FB-A38B-F9D5AA936331} -> Microsoft Visual Studio 2015 Diagnostic Tools - amd64 {647DB777-6309-3551-9262-6B9CDB97635B} -> Microsoft Visual Studio Team Foundation Server 2015 Update 3 CTP1 Office Integration (x64) {661C14D6-243A-44CA-A409-4BCF4B061521} -> PDF-XChange Editor {67975182-2130-493C-A58F-7C2604B8852A} -> AVG {6EACD521-875C-4455-A653-42CDD47A57AE} -> Perfectly Clear Photo Enhancer {76C8F882-DBFC-43FB-9483-E5DE5D7D5FFA}_is1 -> Remo Privacy Cleaner {77BE1F2C-552C-438E-8E6B-4C0816BDEC5D} -> Rebit Pro (64-bit) {79750C81-714E-45F2-B5DE-42DEF00687B8} -> Microsoft Build Tools 14.0 (amd64) {7DE129E5-BB4A-4517-A6CD-C69EEB346781} -> AntispamEngine {7E265513-8CDA-4631-B696-F40D983F3B07}_is1 -> CDBurnerXP {7F7C8AE0-961B-4AED-B99A-D9BE29C0F24C} -> AdAwareProxyEngine {80335352-54F1-4A35-890E-25D768F95919} -> test {8220EEFE-38CD-377E-8595-13398D740ACE} -> Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 {855F1729-ECA5-4BF8-A8E4-9E521BB36E10} -> Microsoft SQL Server 2014 Transact-SQL ScriptDom {858B2F00-0091-3AB7-AB1C-A7664A16C5F9} -> Microsoft Visual Studio Team Foundation Server 2015 Update 3 CTP1 Storyboarding Language Pack (x64) - ENU {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} -> Microsoft Silverlight {8DD5B1BF-E1BB-43DB-965C-DC6180A19518}_is1 -> Remo Repair MOV {90160000-007E-0000-1000-0000000FF1CE} -> Office 16 Click-to-Run Licensing Component {90160000-008C-0000-1000-0000000FF1CE} -> Office 16 Click-to-Run Extensibility Component {90160000-008C-0409-1000-0000000FF1CE} -> Office 16 Click-to-Run Localization Component {93A07A0D-454E-43d1-86A9-5DE9C5F4411A} -> Shadow Defender {94E1227C-08A9-4962-B388-1F05D89AEA75} -> Microsoft Web Deploy 3.6 {96F4525A-470D-F15C-796E-58D9988C3E5F} -> Windows Software Development Kit for Windows Store Apps DirectX x64 Remote {993F6DDC-63F8-4BCD-9B28-D941971A9CAC} -> Windows XP Targeting with C++ {9C912B1E-06DD-43EF-BB2B-45CB2C88BAAE} -> Apple Application Support (64 bits) {9CF6A157-F0E8-4216-B229-C0CA8204BE2C}_is1 -> Copy Handler 1.44 {A278382D-4F1B-4D47-9885-8523F7261E8D}_is1 -> PDF-Viewer {A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1 -> Revo Uninstaller 2.0.3 {A2CB1ACB-94A2-32BA-A15E-7D80319F7589} -> Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 {A8644328-A66F-490E-B8FA-901FF649189D}_is1 -> VoodooShield version 3.59 {AAF4B2C1-2E27-46EF-9B9E-2B2130F056F3} -> FirewallEngine {AC53FC8B-EE18-3F9C-9B59-60937D0B182C} -> Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 {ad8a2fa1-06e7-4b0d-927d-6e54b3d31028} -> Microsoft Visual C++ 2005 Redistributable (x64) {AF1C7D47-5BA6-4485-98D0-793E6B944CD5} -> Visual Studio 2015 Prerequisites - FRA Language Pack {AF4C2E26-9BE2-4813-B1A4-9CA0717374D3} -> FMW 1 {B26B00DA-2E5D-4CF2-83C5-911198C0F009} -> GoodSync {B66A510A-C6BE-4E85-A2B7-28C66A830B92} -> Microsoft SQL Server 2016 Management Objects (x64) {B8D1E97B-3C79-47A4-ADB7-09625917A2FB}_is1 -> Remo Repair Registry {BCAC059C-E06C-4D45-928A-A69061678ECA} -> Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - amd64 {BE40AB1F-558F-4434-B72F-461EF97E7796}_is1 -> BDAntiRansomware {C268B5E1-A5DA-11DF-A289-005056C00008} -> Paragon Backup and Recovery™ 2014 Free {c5a4aba3-1aba-3ef8-b2d5-c3fa37f59738} -> Microsoft .NET Version Manager (x64) 1.0.0-beta5 {CD95F661-A5C4-44F5-A6AA-ECDD91C2410F} -> WinZip 21.5 {CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA} -> SUPERAntiSpyware {CE3829CE-559B-3BFA-BAE7-0F745FAFCD28} -> Application Compatibility Toolkit {CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97} -> Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 {D0D369FA-174B-4B7B-9489-82650922D1E7} -> Microsoft SQL Server 2016 T-SQL ScriptDom {D78E5094-F665-4F98-A552-43AE08C6C105}_is1 -> Remo File Eraser 2.0 {D7BF2029-EB2D-4523-AFA0-95CE605E696E} -> AdAwareInstaller {DA060B99-6B87-4D85-8B1A-29BCF6DF2B06}_is1 -> Easy Duplicate Finder {DB76C19A-1E2A-4A8F-9AB7-3FC315EC57C7} -> LibreOffice 5.3.3.2 {DF32E41C-24AD-4A87-B43A-B38553B1806E} -> Visual Studio 2015 Prerequisites {E721A8AA-2632-4798-B439-6D4C8A689BB8} -> Microsoft SQL Server 2012 Transact-SQL ScriptDom {E7366CA8-7179-77AE-E712-BA18D70A0A07} -> AMD Fuel {EF1EC6A9-17DE-3DA9-B040-686A1E8A8B04} -> Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215 {F008F551-A58D-4257-9FB6-2F750860A0DE}_is1 -> GridinSoft Anti-Ransomware 0.9.1 {F0AC1918-447F-473B-863B-812F25E37885} -> Fast Spell Checker {F0C7385A-9D20-45F3-8101-05D383885180} -> iTunes {F16377E6-0E7B-4CC5-AE32-ABA126021956} -> Microsoft Visual Studio 2015 Performance Collection Tools - FRA {F24FF688-7138-4CCF-A83F-71E9FB01170E} -> Folder Size (64-bit) {F8A7B103-5C82-478E-A71F-FE3344D9A4F7} -> PDF-XChange Lite V6 Home 68388fc2-5a22-11e6-a23f-0cc47a024924 -> Mindomo 8.0.20 7-Zip -> 7-Zip 17.00 beta (x64) 8B3D7924-ED89-486B-8322-E8594065D5CB_is1 -> RogueKiller version 12.11.1.0 anti-malware-setup -> anti-malware-setup BEC55C5D-D6D0-4A41-B82C-264EC5EE8052_is1 -> RogueKillerPE version 1.32.0.0 C4E7EE54-826F-41C4-BE3C-375CC70DC1D8_is1 -> UCheck version 2.0.0.0 CCleaner -> CCleaner CyberGhost 6_is1 -> CyberGhost 6 DAEMON Tools Pro -> DAEMON Tools Pro Defraggler -> Defraggler DriverEasy_is1 -> Driver Easy 5.5.1 EPSON XP-710 Series -> EPSON XP-710 Series Printer Uninstall FileMenu Tools_is1 -> FileMenu Tools GIMP-2_is1 -> GIMP 2.8.22 Greenshot_is1 -> Greenshot 1.2.9.129 MacriumReflect -> Macrium Reflect Free Edition MiniTool Power Data Recovery Edition_is1 -> MiniTool Power Data Recovery Edition 7.0 Mozilla Firefox 53.0.3 (x64 en-US) -> Mozilla Firefox 53.0.3 (x64 en-US) MozillaMaintenanceService -> Mozilla Maintenance Service MultiCommander x64 -> MultiCommander (x64) OneNoteFreeRetail - en-us -> Microsoft OneNote Home and Student 2016 - en-us Pale Moon 26.5.0 (x64 en-US) -> Pale Moon 26.5.0 (x64 en-US) PerigeeCopy -> PerigeeCopy 1.7 proDAD-Adorage-3.0 -> proDAD Adorage 3.0 (64bit) QEMU -> QEMU Recuva -> Recuva Seed4.Me VPN -> Seed4.Me VPN 1.0.10 Software Informer_is1 -> Software Informer 1.5.1324.0 SumatraPDF -> SumatraPDF TAP-Windows -> TAP-Windows 9.21.2 TeraCopy_is1 -> TeraCopy version 3.1 TreeSize_is1 -> TreeSize V6.3.6 (64 bit) Unlocker -> Unlocker 1.9.2 VLC media player -> VLC media player WinRAR archiver -> WinRAR 5.50 beta 3 (64-bit) WinToHDD_is1 -> WinToHDD version 2.4 Beta Wise Hotkey_is1 -> Wise Hotkey 1.14 Wondershare Filmora_is1 -> Wondershare Filmora(Build 8.2.2) xplorer2p64_u -> xplorer² Ultimate 64 bit < Uninstall List [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ -> {0078CD4D-B146-4D77-8CF0-268B36C1A3EC} -> CyberLink YouCam 7 {023FCA1D-E591-3AF9-9D2F-9876639A511A} -> Visual C++ Library PGO X86 Package {030A6785-C3A9-37DA-8530-444C320629FA} -> Microsoft Visual Studio 2015 Shell (Minimum) {033E8A5C-E0F9-4253-855E-C2AF972093B2}_is1 -> iMyFone D-Port 2.0.0.4 {05935793-A34C-4272-3361-7AF9AEEE5649} -> Imaging And Configuration Designer {07326A3E-02B3-1078-25D7-B8666BA8FE15} -> CCC Help Korean {0779F56D-92B4-414E-B619-F31674A926C6} -> Microsoft System CLR Types pour SQL Server 2014 {07AA1C7F-E8CA-4FDC-B975-BC9EBC22B6DE} -> Epson Easy Photo Print 2 {07CF5846-FAEA-4A01-8B70-9014216AA707} -> YouTube Video Ad Blocker {085EBD0C-F24E-EB94-6D33-2A22EF64C5CF} -> CCC Help Finnish {08610298-29AE-445B-B37D-EFBE05802967} -> LWS Pictures And Video {08C03D14-B619-4CD6-938F-C2BB569364E0} -> FF Copy {099218A5-A723-43DC-8DB5-6173656A1E94} -> Dropbox Update Helper {09C617AB-1EA7-4FF6-94B1-F9B0491A334A}_is1 -> Video Watermarker version 1.0.3.21 {09D51995-D17C-35E4-9143-314298EB5155} -> Microsoft Portable Library Multi-Targeting Pack {0A11EA01-7909-E272-BFA6-BC39E55F240A}_is1 -> Ashampoo Snap 10 {0A11EA01-C7C0-3122-BD18-704840EFADD4}_is1 -> Ashampoo ZIP Business {0A11EA01-F22C-84C3-9723-53CA58DB6F9C}_is1 -> Ashampoo Snap 2017 {0A3B508E-5638-4471-BCC9-954E1868CB86} -> WCF Data Services Tools for Microsoft Visual Studio 2015 {0B11329E-1DDE-448A-95E6-AA003C63A6A7}_is1 -> MiniCopier {0D008B74-0622-7F35-0791-C763427F3969} -> Volume Activation Management Tool {0DC92391-4C2B-4C35-A674-EBDEE5ABB375} -> Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - ENU {0E4C791E-B78E-477D-BD5A-CDD0985BA6EC} -> Application Insights Tools for Visual Studio 2015 {0F8A1CB4-7F19-4fe9-A724-5F3DE1CB4513}_is1 -> Aiseesoft Video Enhancer 9.2.10 {0FDFB80D-91E1-36F1-B523-0B90421FDDC1} -> Visual C++ IDE Core Professional Plus Resource Package {107518BF-43A3-4CB6-B571-9C5A241F9586} -> Microsoft Azure Mobile Services Connected Service {10A7315E-3376-48F3-A681-8DE609CB47E2} -> Vole Windows Expedition {10AC3DD9-90D5-4560-930A-FFB939849175} -> CyberLink VideoMeeting+ {11087D24-567D-7D88-69C6-D7A08B5F4C47} -> Catalyst Control Center - Branding {117CE366-3EED-48C5-BF6A-E0F47A0E68A4} -> ShadowCopy {11EC1574-3EC8-3386-B51D-42C7556A94D0} -> Assemblys du Kit de développement logiciel (SDK) Windows Phone 8.0 pour Visual Studio 2015 - FRA {11FC9C17-17FF-4F2B-9D5A-4DE097629F00}}_is1 -> Kotobee Reader version 1.1.1 {11FC9C17-17FF-4F2B-9D5A-4DE097629F21}}_is1 -> Kotobee Author version 1.3.5 {124D51A1-F3C2-45AE-B812-D3CA71247093} -> SQL Server 2012 Common Files {128C1654-3B9E-4959-8BFB-CE6F09C0A01D} -> MSBuild/NuGet Integration 14.0 (x86) {13A4EE12-23EA-3371-91EE-EFB36DDFFF3E} -> Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 {15134cb0-b767-4960-a911-f2d16ae54797} -> Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 {15634701-BACE-4449-8B25-1567DA8C9FD3} -> CameraHelperMsi {15A5D4D5-6435-322E-9435-C21252920944} -> Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (Français) {1637E141-7E5A-4DE9-9D52-0F6334AC3474} -> Microsoft VisualStudio JavaScript Project System {1651216E-E7AD-4250-92A1-FB8ED61391C9} -> LWS Help_main {166EEF5C-F996-390E-91F6-DD6DFD008E9B} -> Microsoft Visual Studio 2015 Shell (Minimum) Interop Assemblies {1690CE56-2231-4E59-9006-A0876D949EA8} -> Tools for .Net 3.5 {174A3B31-4C43-43DD-866F-73C9DB887B48} -> LWS Twitter {18637763-c8e5-4c49-ba8a-b854367f6b55} -> Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 {18C5824A-FD59-453D-9DC1-5D86FA034357} -> CyberLink AudioDirector 7 {1914EF4B-70F3-47AA-90A2-B5FB0C45E45D} -> WCF Data Services Tools for Microsoft Visual Studio 2015 FRA Language Pack {1959CCD2-1227-4de4-97E7-04F29D526762}_is1 -> AnyMedia Player 3.4.4 {19A5926D-66E1-46FC-854D-163AA10A52D3} -> Microsoft .NET Framework 4.5.1 SDK {19E8AE59-4D4A-3534-B567-6CC08FA4102E} -> Microsoft .NET Framework 4.5.2 Multi-Targeting Pack {1AD99E77-37CC-744E-39CA-67F6FD34565A} -> Catalyst Control Center Localization All {1af6dc7d-ee8d-4bf8-aea0-07c6969a7170} -> Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 {1BB85E73-0D92-604A-0AAF-C7AAD5E3A3C6} -> CCC Help English {1D958A62-C980-3CB7-AC59-40EF0D1FA80E} -> Visual C++ IDE Core Professional Plus Resource Package {1DC85000-B0F8-325F-AD01-2770D36517D5} -> Visual C++ IDE Core Professional Plus Resource Package {1E04C795-7359-4E05-8A0E-5644F777AA09}_is1 -> Wondershare MobileGo(Version 8.2.3) {1E5CA362-39B6-4BD0-B9C0-69CF15F0FEA2} -> AzureTools.Notifications {1E72F5D1-553E-CFF9-06A3-8C5AF507DD1C} -> CCC Help French {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} -> Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 {1F211BEF-B722-4FF7-8629-9A51978C0515} -> Fix-It {1FBF6C24-C1fD-4101-A42B-0C564F9E8E79} -> CyberLink Media Suite 15 {205E7FEB-E47C-4D50-821E-9A42DF2E8C29} -> Microsoft System CLR Types pour SQL Server 2016 {21DF0294-6B9D-4741-AB6F-B2ABFBD2387E} -> LWS YouTube Plugin {22154f09-719a-4619-bb71-5b3356999fbf} -> Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 {2230AE9A-A95A-4C15-A4D1-6536F4B24B7D} -> Microsoft Visual Studio 2015 XAML Application Timeline {224757CE-5740-4E20-84CB-670D8D593A1C} -> Microsoft .NET Framework 4.6 SDK (Français) {230524D3-ADB4-69CC-2A78-96D879E3221B} -> Windows PE x86 x64 {240E3426-3B55-4AE9-BB63-742651900BC4} -> Microsoft ASP.NET MVC 4 - Visual Studio 2015 - FRA {2450591F-9CC5-4E4D-B650-F3FCD6D3F16F} -> FoxitSpellCheck {2452C59D-5040-4A9A-A97F-B925390619E1} -> Silent Install Builder 5 {2467A7FE-F3AE-3DF8-847E-C592943BC471} -> Visual F# 4.0 SDK Language Pack - FRA {248fcd1e-5ee1-421d-893f-ec0a94dd7b01} -> Microsoft Visual Studio Community 2015 avec mises à jour {2513C88B-51D2-4413-ACE8-C9B324C25AB2} -> GooPatient {25ACE797-EBDA-0E4B-096F-9FE97A1E2A6F} -> CCC Help Russian {262e777c-5de0-4947-83c5-4793815512a9} -> Microsoft .NET Framework 4.6.1 Developer Pack (FRA) {26A24AE4-039D-4CA4-87B4-2F32180131F0} -> Java 8 Update 131 {26A24AE4-039D-4CA4-87B4-2F83216018FF} -> Java(TM) 6 Update 18 {26adfabf-dec5-4140-9f85-795f483836f3}_is1 -> GiliSoft Video Splitter 7.0.0 {26DF8A34-CC4E-341B-82A0-612D4121CF6C} -> Roslyn Language Services - x86 {2814958A-07FC-4351-A6B4-AF90EE320DFB} -> Outils de diagnostic de Microsoft Visual Studio 2015 Update 3 - FRA {293B15F9-91A8-44D4-ACBB-E13E8E2EC97D} -> CyberLink ColorDirector 5 {2A56910C-69C8-495D-8ED8-9080F0A14E58} -> Entity Framework 6.1.3 Tools for Visual Studio 2015 Update 1 {2B9DD034-5045-4CC7-AFC4-980589EE71E5}_is1 -> WinInizio PenSuite NetWork 2.1 {2CC6A4A7-AAC2-46C9-9DBB-3727B5954F65} -> Microsoft .NET Framework 4.6 Targeting Pack {2D07E15C-A9A4-D8D6-D371-92EC8779E587} -> CCC Help Hungarian {2D170B66-A905-385C-93E0-20A47812B777} -> Microsoft NuGet - Visual Studio 2015 {2D2D8FE2-605C-4D3C-B706-36E981E7EEF0} -> BD_3D Advisor {2F0ECC80-B9E4-4485-8083-CD32F22ABD92} -> Microsoft .NET Framework 4.6.1 SDK {2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36} -> Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 {2F9B0544-9222-4FD6-BD99-9DE548BC94C0} -> Advanced Installer 14.0.2 {2F9CCB8C-8584-45CF-B916-E8C98F6497A4}_is1 -> Free Screen Recorder 7.3.0 {2FEE4EBD-CEB0-3E26-9405-CF0D812CFA3C} -> Visual C++ IDE Core Professional Plus Resource Package {2FFCB33A-76F1-3E78-91BA-3A2547A54ADE} -> Concepteur XAML Microsoft Visual Studio 2015 - FRA {3064B250-EDCA-4E69-A62A-4DA32225E4BE} -> Morae Recorder {30AB2FCD-FBF2-4bed-3333-13E6A1468621}_is1 -> GiliSoft Audio Recorder Pro 7.1.0 {30B0517F-1E18-3D45-A78C-C2E34B9A368D} -> Visual C++ IDE Base Package {30CA21F2-901A-44DB-A43F-FC31CD0F2493} -> Sql Server Customer Experience Improvement Program {314D548C-60FF-48F8-BEAE-C94946706349} -> WCF Data Services 5.6.4 FRA Language Pack {3196EC29-B75D-4EE3-8AB0-46418BC31483} -> Microsoft.VisualStudio.Office365 {324F76CC-D8DD-4D87-B77D-D4AF5E1AA7B3} -> CyberLink WaveEditor 2 {3361D415-BA35-4143-B301-661991BA6219} -> MyEpson Portal {33689273-0F4C-40AD-AEFB-59583F08767D} -> Composants nécessaires pour SSDT {33CDD91A-53FB-42B2-98BE-51A9783DF9A9} -> Outils de diagnostic de Microsoft Visual Studio 2015 Update 3 - FRA {33DA2215-AF20-3F21-A171-57F0533A5CAF} -> Visual C++ IDE Core Professional Plus Resource Package {349DE029-E451-3661-A181-F29CE6F94349} -> Microsoft ASP.NET and Web Tools 2015.1 (Beta8) - Visual Studio 2015 - fra {350E61E5-6C2C-2F3C-3A14-7E094AB6D3A0} -> CCC Help Spanish {35433594-85A3-3EEA-963E-0E5E860B82D6} -> Visual C++ MSBuild Base Package {35A71DED-DA81-1313-352A-EC8A0B27DF3B} -> CCC Help Chinese Standard {35AB7D6C-C217-4470-B2D7-021291708FF4} -> SX Blocker Suite {35B1EDF3-63B5-4908-989D-6F62DBA02C58} -> Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - x86 {35B8CC58-F128-4169-82EB-0E6CB0C3AFE6} -> ArcSoft PhotoImpression {363D76EC-B5B9-5D7B-0F59-C193FF6F03FC} -> Windows System Image Manager on amd64 {37E53780-3944-4A6A-842F-727128E8616E} -> Blend for Visual Studio SDK for .NET 4.5 {38FFFD17-81AD-49EE-80F0-12DF92162DD2}_is1 -> EyesRelaxingAndFocusing 3.0 {39ebb79f-797c-418f-b329-97cfdf92b7ab} -> Kit de déploiement et d’évaluation Windows - Windows 10 {3bcf8c72-b231-4d28-9f39-3405c22d8b5a} -> Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 {3CDAADFE-E957-43A9-9F40-18BB890AFFDC} -> Module linguistique des outils de test de Microsoft Visual Studio 2015 - FRA {3E1679DA-5081-44AA-B4C2-BF8EE7E107E0} -> OpenOffice 4.1.3 {3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C} -> erLT {405147F7-FCC5-499B-A27E-EA6BD4A80435}_is1 -> Aimersoft Helper Compact 2.5.2 {4100F789-5312-4A41-817C-3118F6F44CAB} -> Microsoft Visual Studio 2015 Windows Diagnostic Tools {4152D9BF-6975-4653-B993-5CA882638A72} -> Service de langage T-SQL Microsoft SQL Server 2014 {419A7FCF-93E1-474D-BFE9-987CF3F90C88}_is1 -> Spybot Anti-Beacon {4209F371-C86E-DC46-5245-9E069261137B}_is1 -> Ashampoo WinOptimizer 15 {4295750B-3AAC-4EC1-AD15-84BD6150EF60} -> Video Explosion Deluxe {42AF2A8C-6EBB-3D2E-9BF1-6135379FBABC} -> Windows Espc Package {42C14710-7126-489A-8899-C73AE77E5345} -> Microsoft VisualStudio JavaScript Language Service {43027679-FD40-32E6-A9F0-7BB3CDEBE416} -> Visual C++ IDE Core Professional Plus Resource Package {436A18DD-5F2C-4B3C-985E-AD3C13B0CC25} -> PreEmptive Analytics Visual Studio Components {43C5B500-38EB-456F-8C71-CE7B1F7F9976} -> VirusTotal Scanner {442293A0-4534-3887-ACB4-876B3D5AE514} -> Visual C++ IDE Common Resource Package {44A100D0-C1AE-4BB7-A0CC-AA60B7566681} -> Microsoft ASP.NET MVC 4 - Visual Studio 2015 - ENU {46184842-5ED5-4BE1-BDA7-DA29903B8983} -> Microsoft SQL Server Data Tools - FRA (14.0.60519.0) {463d5540-8dfd-4eef-92e5-b729b3b73cfb} -> Microsoft .NET Framework 4.6.1 Developer Pack {465ACA24-B8D6-4FEC-A42D-9EFCB92CD560} -> TypeScript Power Tool {46E9BE31-70DC-4797-A24B-CB7FF0BB68BB} -> FileOpen {4740889B-2D03-3A6F-BC42-07C8AFDF3B2E} -> Microsoft Help Viewer 2.2 {47AEE104-BF96-E407-D3FE-80BBD42732F4} -> Windows PE x86 x64 wims {49D4D4E2-21E8-3346-A496-1A1415B18594} -> Visual C++ IDE Core Professional Plus Resource Package {4A03706F-666A-4037-7777-5F2748764D10} -> Java Auto Updater {4AD3777F-D26B-4FCD-8823-B1D9784141C6} -> Microsoft Visual Studio 2015 Profiling Tools {4B9E6EB0-0EED-4E74-9479-F982C3254F71} -> SQL Server Browser for SQL Server 2012 {4C742A71-01FC-391A-972B-87DAFB8C46DD} -> Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (Français) {4D989432-59D7-76A0-DD51-B96422F6FF7F} -> Windows Phone Common Packaging and Test Tools (NT_x86_fre) {4E61EF40-8A51-3D99-AA4C-32F203370083} -> Visual C++ IDE Core Professional Plus Resource Package {4E62123C-4C0D-4123-A8A2-C0103B92D7EA} -> Should I Remove It {50A252FB-E372-30D7-98A2-41DA044460DE} -> Ressources de Microsoft Visual Studio 2015 Shell (minimum) {5127B392-8820-4822-A21F-1CB78C2E25AD} -> Microsoft Build Tools Language Resources 14.0 (x86) {5130318D-7FEA-35E6-927D-01368910BDFC} -> Visual C++ IDE Core Professional Plus Resource Package {51547499-4A12-3CC6-AE3D-3C5E87D72909} -> Visual C++ MSBuild ARM Package {527BBE2F-1FED-3D8B-91CB-4DB0F838E69E} -> Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 {52D87F32-70E4-4348-8148-C0B9F35B1314} -> Apple Software Update {52EA560E-E50F-DC8F-146D-1B631548BA29} -> Windows Deployment Tools {5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1 -> Wondershare Helper Compact 2.5.2 {53892D48-8DEF-40E1-BCBF-98A46BBBBB91} -> Morae Observer {549DAD2D-2505-204C-EC58-59807FE6E037} -> WPT Redistributables {54F84805-0116-467F-8713-899DFC472235} -> SQL Server 2012 Database Engine Shared {5536AAD4-740A-4577-843D-4281D3F30726} -> Microsoft Azure Mobile Services Tools for Visual Studio - v1.4 {55A41219-9B22-4098-BAE7-AE289B3C569A}_is1 -> Panda USB Vaccine 1.0.1.4 {561FA6E1-9438-E678-2D2A-CA99F8DDFBC0} -> Windows Assessment Services - Client (AMD64 Architecture Specific, Client SKU) {56AD3004-0B49-967F-F682-B05650B61A78} -> Windows Software Development Kit for Windows Store Apps DirectX x86 Remote {56E962F0-4FB0-3C67-88DB-9EAA6EEFC493} -> Microsoft .NET Framework 4.5 Multi-Targeting Pack {5701D7D0-0525-3A40-8ECD-351BED0BD4AD} -> Visual C++ IDE Base Resource Package {577BA87A-5425-365E-9F0F-CB88D42E648B} -> Visual C++ MSBuild Base Resource Package {57DBB38F-F888-45C3-B2DF-5CE939E96243} -> Microsoft Visual Studio 2015 Windows Diagnostic Tools - ENU {581697C8-33DC-44BA-A7C3-992B5D29C011} -> Advanced Installer 13.8.1 {58259C24-7B5E-4977-93B0-E9EEA1B884CE} -> InstaCards {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} -> Realtek Card Reader {5BD113FE-B8D8-4E7A-9BA1-17C649432B3E} -> PDQ Deploy {5C5B24E7-4694-4049-A222-CCE7D3FAC63F}_is1 -> CryptoPrevent {5DD7489B-EC46-47AF-BB68-22F47253228B} -> Spy BHO Remover {5F951DA6-8F50-4E55-B2A3-DCE78BF3D185} -> Microsoft .NET Framework 4.5.1 SDK (Français) {60018889-9E0F-43E8-9B89-29E8C828B40A} -> Dotfuscator and Analytics Community Edition 5.22.0 {600C936B-7684-42F0-9FBF-04726F3D45E2} -> Vole Edutainment {603DCF17-E958-3A31-AFED-919086709DB6} -> Microsoft ASP.NET and Web Tools 2015.1 (Beta8) - Visual Studio 2015 {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} -> Google Update Helper {6143A694-5FE1-BDF6-F78E-4F7BF3E9419B} -> Toolkit Documentation {63AE6DDF-017D-3AED-BFE6-F6A8A3B6ADF0} -> Microsoft .NET Framework 4.5.1 RC Multi-Targeting Pack pour les applications du Windows Store (Français) {643108C8-AF54-39A4-AFC2-F8290D9BB870} -> Microsoft Agents pour Visual Studio 2015 Preview - FRA {64AB8FE0-0627-4FE2-A136-2DAB4B0AF087}_is1 -> Kotobee Publisher version 2.14 {64D5A142-BD50-726E-ED9E-D2508D2A17E2} -> Catalyst Control Center InstallProxy {65A12DD3-9992-47D2-8BA2-510CA59F893F} -> Microsoft ASP.NET Web Pages 2 - Visual Studio 2015 - ENU {665680CE-EABF-4678-94AA-F3253AD70B0A}_is1 -> Remo Repair RAR {66DA8EAA-D4CD-30DC-B993-0EDF728ED1F6} -> Visual C++ IDE Core Professional Plus Resource Package {67A74EC1-A89D-3553-B38D-D17D4991CD2F} -> Microsoft Visual Studio 2015 SDK - ENU {67D33EF6-3AAA-376D-ADC3-098E6DAC96E4} -> Visual C++ IDE Debugger Resource Package {6970C7E1-F99D-388D-8903-DF8FCE677FED} -> Roslyn Language Services - x86 {69BCE4AC-9572-3271-A2FB-9423BDA36A43} -> Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215 {6A0C6700-EA93-372C-8871-DCCF13D160A4} -> Microsoft .NET Framework 4.5.1 Multi-Targeting Pack {6A28A586-C58B-40DB-A2F7-2D04C320CCD9} -> Microsoft SQL Server 2016 T-SQL Language Service {6BD4394B-DE2E-4D0A-B835-31E2BD9AEC38} -> Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - x86 {6BF8837D-67E1-4359-89FB-C08BFD6F2138} -> Microsoft Build Tools 14.0 (x86) {6bf90d91-c5db-454e-a7b4-81bc6cbbe13f} -> UxStyle {6C4F538B-A66F-444E-9615-A2EBC202EFC5}_is1 -> Remo Drive Defrag {6D74EB04-2E10-4266-A435-C5012FC68A36}_is1 -> Remo Outlook Backup & Migrate 1.0.0 {6D8235B9-ADE2-3052-ADFC-55B3E3BCAE00} -> Visual F# 4.0 VS Language Pack - FRA {6F76EC3C-34B1-436E-97FB-48C58D7BEDCD} -> LWS Gallery {6FDCB1C3-9EDC-3CBC-473C-DD85ED5E0494} -> CCC Help German {710f4c1c-cc18-4c49-8cbf-51240c89a1a2} -> Microsoft Visual C++ 2005 Redistributable {71A096E4-A48D-42FA-88BB-96B996580DC4} -> Microsoft .NET Framework 4.6 Targeting Pack (Français) {71E66D3F-A009-44AB-8784-75E2819BA4BA} -> LWS Motion Detection {7299052b-02a4-4627-81f2-1818da5d550d} -> Microsoft Visual C++ 2005 Redistributable {76722C36-3BF4-4326-9ADF-A56ABA50AA9F} -> Microsoft Visual Studio Connected Services {76E41F43-59D2-4F30-BA42-9A762EE1E8DE} -> Avanquest update {789E7816-C3DD-4392-B486-7C913C26FEDA}_is1 -> Remo Repair PowerPoint {79B9B6C9-3FAF-4F50-96A9-C1651EA0DD31} -> Microsoft Visual Studio Services Hub {79D22166-78C1-2AD4-04E7-BD22BD58FD46} -> CCC Help Chinese Traditional {7A3F32E0-D8E1-40C1-8E1B-1F5693F2ADE0} -> CyberLink Power2Go 11 {7A3F3715-7953-4247-8B5C-5D03050B9EA9} -> CyberLink PresenterLink+ {7A95671A-759E-3B83-B763-4289D1D24D73} -> Team Explorer for Microsoft Visual Studio 2015 Update 3.1 {7ABAD880-D14E-48D4-9EFD-C0B531AA566E} -> Module linguistique de Dotfuscator and Analytics Community Edition 5.22.0 fr-FR {7ADEC622-3230-4C9A-9DCE-9BD462B74095}_is1 -> Icecream Screen Recorder version 4.76 {7B263E76-5E76-327F-A65C-B971E634DA36} -> Visual C++ IDE Base Resource Package {7B6B35D5-404D-498E-95D0-3CCB2B2FC6F9} -> Microsoft Expression Blend SDK for .NET 4 {7BA87AB0-2055-11E7-8E16-000C2992F709} -> Foxit PhantomPDF {7BAA8C5C-160C-4258-AEC0-729E43638F9B}_is1 -> Remo Drive Wipe 2.0.0 {7BAC3F7A-B963-468E-982E-B5608A87408D} -> Epson Software Updater {7BC93EE9-44F1-3783-AD76-F6BD6C8F6B58} -> Visual C++ Compiler/Tools X86 Base Package {7CD1ACC0-3DD0-4894-90C7-BF2A136C074D} -> CyberLink PowerDVD 16 {7D095455-D971-4D4C-9EFD-9AF6A6584F3A} -> Bing Bureau {7D29ED63-84F9-4EC7-B49F-994A3A3195B2} -> SQL Server 2012 Common Files {7DFB810E-B924-4DAD-975A-E07F58153727} -> Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - x86 {7E2D87F3-F3BC-4fa5-9F72-BF021ED66CB3} -> CyberLink Power2Go 10 {7E30FA29-6EED-4660-A38A-753519B5A9AA} -> Version préparatoire de Microsoft Visual Studio 2015 {80986AB6-3CB0-49db-AB48-1600844D6374} -> CyberLink PhotoDirector 8 {81B64FE0-5DC1-35D4-A51E-AD11803C520C} -> Visual C++ IDE Core Package {82CA1714-13EA-F419-91FE-12834424745E} -> CCC Help Italian {837b34e3-7c30-493c-8f6a-2b0f04e2912c} -> Microsoft Visual C++ 2005 Redistributable {83C8FA3C-F4EA-46C4-8392-D3CE353738D6} -> LWS Launcher {84CECC1B-21EF-41B1-9A91-3E724E5D99D3} -> Manuels EPSON {85D5400A-370B-33E6-B080-4C5721732969} -> Microsoft Visual Studio Community 2015 - FRA {86906CF0-B184-40AF-AB25-945F1DD59DC2}_is1 -> Paste As File Uninstall {87C334CF-063A-4AEA-B523-1DE04014BA19}_is1 -> Kastor - Tube To Mp3 V 2.99 {87D50333-E534-493A-8E98-0A49BC28F64B} -> SQL Server 2012 Database Engine Services {8937D274-C281-42E4-8CDB-A0B2DF979189} -> LWS Webcam Software {89A437F4-A712-329F-BE11-6B7883AB6087} -> Microsoft Portable Library Multi-Targeting Pack Language Pack - fra {8A1AD070-269F-4A15-AAB5-76AB896EF195} -> Azure AD Authentication Connected Service {8BC3EEC9-090F-4C53-A8DA-1BEC913040F9} -> Microsoft .NET Framework 4.6.1 Targeting Pack {8BC81320-F684-439E-89F2-7155E1C4EB22}_is1 -> Giveaway Club Reminder {8C26982F-B345-3C87-8D17-5E88ADDAFFF6} -> Visual Studio Graphics Analyzer {8C5F8558-39DE-4903-B55A-4DF790090CB3} -> Microsoft SQL Server 2012 Setup (English) {8C5FB518-E78C-F8F0-BFEC-8EAC65F51003} -> Windows Assessment Services - Client (Client SKU) {8C784F8B-89D0-4A59-A000-7EEF129E1574} -> Jing {8CB498C5-672B-3F6C-9143-84B0BBC1EAB3} -> Visual C++ MSBuild X86 Package {8CBC65A3-40AB-DE65-2CB1-997ABDA8FD68} -> CCC Help Turkish {8D149BE2-6542-4F6A-AEC4-7D61E6DCAEFB} -> CyberLink MediaEspresso 7.5 {8EEB28EE-5141-411C-9CF0-9952264FE4AF} -> Microsoft .NET Framework 4.6.1 Targeting Pack (ENU) {8F0CD7D1-42F3-4195-95CD-833578D45057}_is1 -> Zemana AntiLogger {8F15E32A-FAD1-49E3-9378-C8EE0530E192} -> Microsoft Azure Storage Connected Service {8FB8C3D9-ED65-4D0D-9CA1-62A4FDCA98A9} -> Autorun File Remover {8FCCB703-3FBF-49e7-A43F-A81E27D9B07E} -> CyberLink MediaShow 6 {8FFCCB27-EE2D-D58F-5ABD-ED5C06B91E81} -> CCC Help Swedish {91361B2A-F741-E591-303B-4EF957F3BAF1} -> Windows Assessment Toolkit (AMD64 Architecture Specific) {91B33C97-2D9F-F73A-2D1E-C77CF6921C45}_is1 -> Ashampoo Burning Studio Elements v.10.0.9 {91B33C97-87C8-5585-2940-1AE1120D4DCC}_is1 -> Ashampoo Privacy Protector {91B33C97-AF35-C3DC-976E-8A253D817482}_is1 -> Ashampoo Burning Studio 18 {91B33C97-C878-6579-69BA-23E5405C7AAB}_is1 -> Ashampoo Burning Studio 2017 {91D821C9-ED4D-ED57-E224-CEF877967911} -> Microsoft ASP.NET Web Frameworks and Tools - Visual Studio 2015 - FRA {9222F12D-9DD6-3F84-BF8D-A70B9BB4ECAB} -> Applications hybrides multi-appareils en C# - Modèles - FRA {925B61EB-DB5A-482E-9620-F1B67BC88393} -> Vole Magic Note {933B4015-4618-4716-A828-5289FC03165F} -> VC80CRTRedist - 8.0.50727.6195 {9369E1F2-44C9-4864-843E-159725E660CB} -> Kit de développement logiciel (SDK) Microsoft .NET Framework 4.6.1 (Français) {976C3D92-0DEC-37A6-A870-FF4FC18CD029} -> Microsoft .NET Framework 4.5.1 RC Multi-Targeting Pack for Windows Store Apps {97B6FAD9-6F14-CC46-3165-F1785ECCE255} -> WPTx64 {983FEDDC-AD2E-48D5-8593-331D3B93407C}_is1 -> Online Video Recorder 3.4.4 {9A25302D-30C0-39D9-BD6F-21E6EC160475} -> Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 {9BE518E6-ECC6-35A9-88E4-87755C07200F} -> Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 {9BF12010-8799-41A5-A671-E9CFDE9E79F3}_is1 -> iSkysoft Helper Compact 2.5.2 {9C0E5B32-7BAF-4E40-916F-5C30EAF7F2F9} -> SX Network Suite {9CD2AD15-115E-4F44-90A8-435B9537973B} -> Microsoft SQL Server 2014 Management Objects {9D550F66-5D52-29CA-28B5-EE0C2C0CDFBE} -> Windows Deployment Customizations {9DAEA76B-E50F-4272-A595-0124E826553D} -> LWS WLM Plugin {9EABBFE1-7EED-47D9-8FB8-21D7E4808057} -> Test Tools for Microsoft Visual Studio 2015 {9F205E94-9E42-4486-A92A-DF3F6CB85444} -> Epson Event Manager {A00EC54A-CE16-4CF6-A14A-5CF81A1FE03F} -> Microsoft Azure Mobile Services SDK V2.0 {a0fe116e-9a8a-466f-aee0-625cb7c207e3} -> Microsoft Visual C++ 2005 Redistributable - KB2467175 {A1238426-ECDF-4639-BE2F-8D12A97AE23C} -> Google Drive {A1CB8286-CFB3-A985-D799-721A0F2A27F3} -> Windows Software Development Kit DirectX x86 Remote {A1F87963-FDBD-364B-8529-5B312D529044} -> Visual C++ Compiler/Tools X86 Base Resource Package {A306FD29-7D3A-4287-91AC-9A0180931395}_is1 -> Roadkil's Unstoppable Copier Version 5.2 {A39258D7-D80D-4148-84BC-4172C3CFF285} -> Microsoft SQL Server 2012 RsFx Driver {A3BCFD43-58D6-3132-A7DF-16CE04672372} -> Visual Studio 2012 Verification SDK {A49D20B8-A2E7-485D-A4A4-29C475D486F3}_is1 -> Online Video Recorder Extras 3.0.2 {A5A6A4D0-2005-2A05-2E21-495808CF95ED} -> CCC Help Norwegian {A5C0F000-F324-46D3-BBD9-5F6AD1886B12} -> Microsoft Visual Studio 2015 Update 3 Performance Debugger Web Views {A6DB9DAB-4780-3068-8DAD-37D8D3B3339D} -> Ressources Devenv de Microsoft Visual Studio 2015 {A760847A-C4D9-E7EF-716F-07C6CBF6B147} -> CCC Help Thai {AD054CB0-F527-48AD-832B-E65D46237C88} -> Microsoft .NET Framework 4.6.1 Targeting Pack (Français) {AD9D2D2F-E04F-46EF-9416-2F04AD04A56A} -> Microsoft SQL Server 2016 Management Objects {ADD5DB49-72CF-11D8-9D75-000129760D75} -> CyberLink PowerBackup 2.6 {AE372858-B1BD-49EF-8308-648322846008} -> Acronis Disk Director 12 {AE7675D6-0B31-494F-ABFA-822E1A0FDF17}_is1 -> Kingo ROOT version 1.5.1.2996 {AF0FDA86-6E7B-1A6C-51D4-43AF50181ED2} -> AMD Catalyst Control Center {AmazingDataEncryption}_is1 -> Free Any Data Encryption version 5.1.1.8 {AmazingPartitionManager}_is1 -> Free Partition Manager version 5.1.1.8 {AmazingScreenRecorder}_is1 -> Free Screen Recorder version 5.1.1.8 {B026557A-EF19-4812-8A79-B30F94AA0A78}_is1 -> Wondershare PDFelement 6 Pro(Build 6.1.2) {B175520C-86A2-35A7-8619-86DC379688B9} -> Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 {B2321364-E928-325D-A954-933D35239BE5} -> Visual C++ IDE Core Professional Plus Resource Package {B2918D01-1D89-34D3-87EF-A28121BC6EB7} -> VS Update core components {B398F6FE-E797-4764-B6F2-C4AE0121A71B} -> PDQ Inventory {B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1 -> Spybot - Search & Destroy {B5915D37-0637-4A26-A3AA-C5DC9F856370} -> Microsoft .NET Framework 4.6 SDK {B6AEA771-9737-41A2-AA07-772CB1A1CC27}_is1 -> Auslogics BitReplica {B7B58EF9-6307-4DCF-8276-2F17D1E6DE69} -> PreEmptive Analytics Client French Language Pack {B839153C-D4D2-F89C-5033-0A160C62706B} -> CCC Help Portuguese {B969EF2E-1A11-3A73-9FF7-942EBFBBCC05} -> Google Chrome {BA5762C7-D35F-4725-A4BD-525854127018} -> TypeScript Tools for Microsoft Visual Studio 2015 {BBD54A11-C598-4789-8F12-AA189B3374C2} -> SX Antivirus Kit {BBF2AC74-720C-3CB3-8291-5E34039232FA} -> Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215 {BD5A23D6-1E9F-3378-89CF-E96908078D53} -> Visual C++ IDE Common Package {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} -> Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 {BFEC9D45-BAD4-3D7C-B6A7-887D21E6C25A} -> Visual C++ Compiler/Tools X86 Base Package {C1EA3764-1138-AE27-AD63-549BAD99BA15} -> CCC Help Japanese {C22613C2-C7A4-4761-A906-116ECD4E7477} -> SQL Server 2012 Database Engine Services {C24A0C03-69ED-4AF8-9E79-52C1A72D2F7B} -> Microsoft ASP.NET Web Pages 2 - Visual Studio 2015 - FRA {C2E9BCE3-56A8-4A85-9944-6FF3DDCCE816}_is1 -> Remo Repair ZIP {C30A729A-E9BA-37F8-3C58-64AD9F1D4694} -> Imaging Tools Support {C37962EE-EE24-4E9F-8A41-514ACD79177C} -> Tools for .Net 3.5 - FRA Lang Pack {C39560B5-0426-4A7C-ABFD-EAA7813A72A8} -> Microsoft Visual Studio 2015 XAML Application Timeline - ENU {C3D13AB8-468A-0174-1D06-DB9AAE8A131B} -> CCC Help Czech {C3E8DEF8-0993-4828-9C95-4FB450AE45C1}_is1 -> Fast File Copy version 1.0 {C59C179C-668D-49A9-B6EA-0121CCFC1243} -> CyberLink LabelPrint 2.5 {C59CF2CE-B302-4833-AA35-E0E07D8EBC52}_is1 -> SRWare Iron version 58.0.3050.0 {C661B45B-1D2A-AF7C-27D0-B4FFD670A4FE} -> Kits Configuration Installer {C67257E4-F24C-3C35-86BB-E9B7D5D4D9FB} -> Visual C++ IDE Professional Core Package {C9292B61-7F3A-44B3-8C38-5662F0AE749D}_is1 -> FileVoyager version 17.4.7.0 {C92AB6F1-5566-A904-B32C-720C3BA1A819}_is1 -> Ashampoo Photo Converter 2 v.2.0.0 {C956892E-D1F3-3781-935C-8D9060E7CD7E} -> Microsoft Visual C++ 2015 x86 Debug Runtime - 14.0.24215 {CA916A4C-52F7-5055-975F-9B4AD4204007} -> Microsoft ASP.NET Web Frameworks and Tools - Visual Studio 2015 - ENU {CA95D57F-9FC3-0DD7-7C36-362F74D8C04E} -> CCC Help Dutch {CAC63D58-E774-32B8-9D03-AC57AB819B6E} -> Microsoft Blend pour Visual Studio 2015 - FRA {CB84FEF6-C573-4328-B9A4-B29568A4E10E}_is1 -> Kastor - Stream Recorder V 1.0 {CE37CE67-2660-30EE-805B-78829CC3554B} -> Microsoft Agents for Visual Studio 2015 Preview {CE513FDB-75AD-42D9-B6F2-31CFAB97487A} -> Version préparatoire de Microsoft Visual Studio 2015 {CEAC6D9F-944A-40F7-AB5D-A7412AF9CED9} -> Acronis True Image WD Edition {CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE} -> Microsoft .NET Framework 4 Multi-Targeting Pack {D0545205-ADE2-4BC3-BC8C-9D29A1DCCE2D} -> Active Directory Authentication Library pour SQL Server (x86) {D08A30AC-A663-4EA8-8D81-B98E17F19F1C}_is1 -> ISO to USB {D0F44C37-A22B-4733-BBA7-86C9F4988725} -> SQL Server 2012 Database Engine Shared {D1201DF3-F934-342A-A586-2B255CB8B215} -> Visual C++ IDE Core Professional Plus Resource Package {D15BFD7F-6BBA-49A7-A6B1-14C00DCA6842} -> CyberLink PowerDVD 17 {D16A31F9-276D-4968-A753-FFEAC56995D0} -> Epson Print CD {D1D9844E-7CD5-435B-96B7-B3097A1B55B2} -> Version préparatoire de Microsoft Visual Studio 2015 {D209BFE9-3EDA-3606-AF6B-DCADA87A2285} -> Visual C++ IDE Core Professional Plus Resource Package {D243A198-99BB-42A0-828E-98AE3F01D215}_is1 -> ScanPapyrus {D25D3E15-CABD-420c-B62C-70C1C5EE63FD} -> CyberLink Application Manager {D40EB009-0499-459c-A8AF-C9C110766215} -> Logitech Webcam Software {D441BD04-E548-4F8E-97A4-1B66135BAAA8} -> Microsoft SQL Server 2008 Setup Support Files {D4EAD35D-5D25-4952-9A0C-AAA4AD13C596} -> SX System Suite {D5C69738-B486-402E-85AC-2456D98A64E4} -> Assistant Mise à niveau de Windows 10 {D7C23E28-E8E0-326D-92B2-357D6D6AFBC0} -> Microsoft Blend for Visual Studio 2015 {D881F038-D767-45AA-90C1-1E5411A9670A} -> e-Carte Bleue Caisse d'Epargne {d992c12e-cab2-426f-bde3-fb8c53950b0d} -> Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 {D9CAC4A5-7F4C-3792-90F1-C93F4FDB4120} -> Microsoft Visual Studio 2015 XAML Designer {D9CE69E8-D77A-3C94-A910-641622794ED4} -> Visual C++ IDE Core Professional Plus Resource Package {DB85E7BD-B2DD-43D4-B3C0-23D7B527B597} -> WCF Data Services 5.6.4 Runtime {DB981AC8-910B-4C0E-8250-829243E85934} -> e-Carte Bleue LCL {DBE41381-7F13-43B1-AFB0-CABC93710819} -> muvee Runtime {DC6804FF-F6B5-370C-8EC1-8099C7BE8C9F} -> Module linguistique du Kit de développement logiciel (SDK) de Microsoft Visual Studio 2015 - FRA {DD3D64A7-3165-458D-96D4-06FBC609C22A} -> Google Ad Blocker {DD61292F-143F-4424-B78B-B229F7B99CF7} -> Module linguistique Microsoft Azure Mobile Services Tools pour Visual Studio - v1.4 {DE064F60-6522-3310-9665-B5E3E78B3638} -> Microsoft Visual Studio Community 2015 {DE681E93-5CCA-36CE-A8E4-2AEFDE89F7E9} -> Visual C++ Compiler/Tools X86 Base Resource Package {DEF2E5A3-0317-4822-B930-8B721EB483E4} -> ArcSoft VideoImpression 1.6 {E092A9F3-15AE-46B4-9A25-6C25F7F44795} -> Microsoft .NET Core 5.0 SDK {E121816F-71EB-44BD-A728-4243E9FECBD5} -> Heimdal Agent {E17085AE-9658-AA36-AE63-2A79581D8B64} -> MXAx64 {E19BE644-5805-4C4F-A95E-4549BD8B8718} -> Microsoft Visual Studio 2015 XAML Visual Diagnostics - ENU {e2803110-78b3-4664-a479-3611a381656a} -> Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 {E3D04529-6EDB-11D8-A372-0050BAE317E1} -> CyberLink PowerDVD Copy 1.5 {E51C8DC9-BFE1-433F-8339-EA2321EF9F12} -> InPixio Photo Editor {E5CA7FA8-5C93-45E1-969A-14571AFBF0A3} -> Advanced Windows Service Manager {E78951B4-61B4-46BD-A959-0412DD94C94C} -> Affichages web du débogueur de performances de Microsoft Visual Studio 2015 Update 3 - Ressources FRA {E817E580-6318-AFC8-2102-322C73117EC4} -> CCC Help Polish {E92BB800-BCC5-4C25-8102-AC2C3B7C7C1E} -> Apple Application Support (32 bits) {E9D6312A-7207-403F-B0B4-E3732BE62937} -> Laplink PCmover Professional {EE527713-BE8A-348A-8854-DACBCE5316F2} -> Visual C++ MSBuild X64 Package {EF872C6F-497F-30D7-D4D8-52C8D524080E} -> muvee Wedding Studio {F02B1BAC-94DA-46FB-B27B-7287FC0EF481} -> Microsoft Azure Shared Components for Visual Studio 2015 - v1.8 {F0878C7C-EB1D-405C-B41B-DD8FEF3B014A} -> Module linguistique des composants partagés Microsoft Azure pour Visual Studio 2015 (FRA) - v1.8 {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} -> Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} -> Realtek High Definition Audio Driver {F1C7B031-9603-33E9-BD03-48B2047EB250} -> Microsoft Visual Studio 2015 Update 3.1 Team Explorer Language Pack - ENU {F361FE04-789E-42F3-BBAB-E7B380AA5E06} -> Windows XP Targeting with C++ {F3F23EAE-D617-3A1F-8717-FACD35A1ECEE} -> Visual C++ IDE Debugger Package {F4EBF948-F00E-29EF-894C-D10A718F981D} -> Windows Assessment Toolkit {f65db027-aff3-4070-886a-0d87064aabb1} -> Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 {F6E60D5C-0F2E-37F8-B9FC-EEDF33E4811E} -> Module linguistique de la visionneuse d'aide Microsoft 2.2 - FRA {F77474EE-EB6C-C87B-88AF-3310C848E068} -> CCC Help Greek {F7AADEDA-233A-1079-CD15-03AEB050F0C6} -> User State Migration Tool {F7E1CA14-B39D-452A-960B-39423DDDD933} -> DriveImage XML (Private Edition) {F7F87D0F-81E6-D85A-FE3C-5C2ADCA92479}_is1 -> GiliSoft Youtube Video Downloader {F8288793-51B6-47EF-2F93-D37767663FC5} -> Assessments on Client {F8B6EDC8-7919-4DE5-A2F5-B3F0798A397C} -> SX WiFi Security Suite {F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185} -> Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 {F8DDBE95-DCBE-03B5-5359-DE3601146E21} -> CCC Help Danish {f9b04b37-35d5-4a19-a51b-fcf4a8734851} -> Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 {FA285575-B543-4E6E-A573-A4F534AC9965} -> CyberLink PowerDirector 15 {FAFA0B40-AF76-4158-9DFA-1D2052CD0963} -> Composants requis pour SSDT {FB54F620-9555-3A11-26CB-B027C4DDF260} -> Imaging Designer {FC1F3422-0C94-3178-AD95-3EA889DF55AF} -> Microsoft Visual Studio 2015 Devenv {FC94D188-1E08-3707-9D23-F41178D44664} -> Windows Espc Resource Package {FD0367D8-220D-4374-9C4E-1A8D0F086B8E} -> PDF Password Recover {FD733BA2-59BF-4BF1-ADD4-14A1F3EB98CD} -> Microsoft Visual Studio 2015 XAML Visual Diagnostics {FDB30193-FDA0-3DAA-ACCA-A75EEFE53607} -> Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 {FF167195-9EE4-46C0-8CD7-FBA3457E88AB} -> LWS Facebook {FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4} -> Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 299AF5A5-0809-4CE0-8FD5-1E6EFD27E518_is1 -> Dimo Videomate version 3.0.1 3DYD Youtube Source -> 3DYD Youtube Source (remove only) 7-Zip -> 7-Zip 16.04 AC3Filter_is1 -> AC3Filter 2.6.0b ADC_is1 -> Advanced Disk Cleaner Adobe Digital Editions 4.5 -> Adobe Digital Editions 4.5 Adobe Flash Player NPAPI -> Adobe Flash Player 25 NPAPI Advanced SystemCare_is1 -> Advanced SystemCare 10 Advanced Windows Service Manager 6.0 -> Advanced Windows Service Manager Animated Wallpaper Maker -> Animated Wallpaper Maker Anti-Locky_is1 -> Anti-Locky Ashampoo Photo Converter_is1 -> Ashampoo Photo Converter v.1.0.1 Ashampoo StartUp Tuner 2_is1 -> Ashampoo StartUp Tuner 2.00 AU11_is1 -> Advanced Uninstaller PRO - Version 12 Audacity®_is1 -> Audacity 2.1.3 AutoItv3 -> AutoIt v3.3.14.2 Autorun File Remover 5.0 -> Autorun File Remover Avast Antivirus -> Avast Internet Security AVG Antivirus -> AVG Protection AVS Audio Converter_is1 -> AVS Audio Converter 8.3.2 AVS Audio Editor_is1 -> AVS Audio Editor 8.3.2 AVS Disc Creator_is1 -> AVS Disc Creator 5.2.8 AVS Document Converter_is1 -> AVS Document Converter 3.1.2 AVS Image Converter_is1 -> AVS Image Converter 4.1.2 AVS Media Player_is1 -> AVS Media Player 4.4.1 AVS Photo Editor_is1 -> AVS Photo Editor 2.3.6 AVS Video Editor_is1 -> AVS Video Editor 7.5.1 AVS Video ReMaker_is1 -> AVS Video ReMaker 5.1.1 AVS4YOU Video Converter 7_is1 -> AVS Video Converter 9.5.1 Bass Audio Decoder -> Bass Audio Decoder (remove only) Batch Picture Resizer_is1 -> Batch Picture Resizer 7.3 Black Bird Cleaner -> Black Bird Cleaner Black Bird Image Optimizer -> Black Bird Image Optimizer Black Bird System Info -> Black Bird System Info CHK-Mate_is1 -> DIY DataRecovery CHK-Mate CHM Editor -> CHM Editor Clipdiary -> Clipdiary 5.0 Date Time Counter_is1 -> Date Time Counter 6.0 DCoder Image Source -> DCoder Image Source (remove only) DebugMode Wink -> DebugMode Wink DirectVobSub -> DirectVobSub (remove only) DivX Setup -> Configuration DivX DMX5_is1 -> DriverMax 9 Download Accelerator Plus (DAP) -> Download Accelerator Plus (DAP) Dropbox -> Dropbox EaseUS EverySync_is1 -> EaseUS EverySync 3.0 EaseUS Partition Master_is1 -> EaseUS Partition Master 12.0 EaseUS Todo Backup_is1 -> EaseUS Todo Backup Free 10.0 EPSON Scanner -> EPSON Scan ePUBee Magic -> ePUBee Magic ffdshow_is1 -> ffdshow v1.3.4533 [2014-09-29] FFMPEG Core Files -> FFMPEG Core Files (remove only) FileHippo.com -> FileHippo App Manager Flip HTML5_is1 -> Flip HTML5 Flip PDF Professional_is1 -> Flip PDF Professional Folderico -> Folderico 4.0 RC12 FolderViewer -> FolderViewer FormatFactory -> FormatFactory 4.1.0.0 Foxit Reader_is1 -> Foxit Reader Free Studio_is1 -> Free Studio Free Video Converter_is1 -> Free Video Converter V 2.3 Free Video Splitter -> Free Video Splitter 4.0.1 Free Video to DVD Converter_is1 -> Free Video to DVD Converter Free Video to GIF Converter_is1 -> Free Video to GIF Converter (1.6.0.0) Free YouTube Download_is1 -> Free YouTube Download Free YouTube To MP3 Converter_is1 -> Free YouTube To MP3 Converter FreeFileSync_is1 -> FreeFileSync 9.1 [Donation Edition] Freemake Video Converter_is1 -> Freemake Video Converter version 4.1.9 Freemake Video Downloader_is1 -> Freemake Video Downloader Freeraser -> Freeraser Glary Utilities 5 -> Glary Utilities PRO 5.77 Google Ad Blocker 6.5 -> Google Ad Blocker HaaliMkx -> Haali Media Splitter Hard Disk Shield -> Hard Disk Shield HissenITMasterdata -> HissenIT Masterdata icofx 3_is1 -> icofx 3.0.3 IconPack -> IconPack Green Memory iGetting Audio -> iGetting Audio IM_Magic_PR -> IM-Magic Partition Resizer Free 2017 ImgBurn -> ImgBurn InstallShield_{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7} -> CyberLink Media Suite 15 InstallShield_{D25D3E15-CABD-420c-B62C-70C1C5EE63FD} -> CyberLink Application Manager Internet Download Manager -> Internet Download Manager iSkysoft iMedia Converter Deluxe_is1 -> iSkysoft iMedia Converter Deluxe(Build 9.0.0.1) ISO Workshop_is1 -> ISO Workshop 7.5 Jet Screenshot_is1 -> Jet Screenshot v 3.1 Kastor Free Vimeo Downloader_is1 -> Kastor Free Vimeo Downloader V 2.0 KeepVid Pro_is1 -> KeepVid Pro(Build 6.2.1.0) KLiteCodecPack_is1 -> K-Lite Codec Pack 13.2.0 Full lavfilters_is1 -> LAV Filters 0.69 LogoMaker_is1 -> LogoMaker 4.0 Macrorit_extender -> Macrorit Partition Extender Free 2017 MadVR -> MadVR (remove only) Majorgeeks.com Software Updates and News -> Majorgeeks.com Software Updates and News Malware Hunter -> Malware Hunter 1.37.0.69 Microsoft Help Viewer 2.2 -> Microsoft Help Viewer 2.2 Microsoft SQL Server 11 -> Microsoft SQL Server 2012 Microsoft SQL Server SQLServer2012 -> Microsoft SQL Server 2012 Module linguistique de la visionneuse d'aide Microsoft 2.2 - FRA -> Module linguistique Microsoft Help Viewer 2.2 - FRA Movavi Video Suite 11 -> Movavi Video Suite 11 Mozilla Firefox 53.0.3 (x86 fr) -> Mozilla Firefox 53.0.3 (x86 fr) Mozilla Thunderbird 54.0 (x86 en-US) -> Mozilla Thunderbird 54.0 (x86 en-US) muCommander -> muCommander (remove only) Multi Install 2.4.5 -> Multi Install 2.4.5 MyEpson Portal -> MyEpson Portal NewBlue Paint Effects for Windows -> NewBlue Paint Effects for Windows NewBlue Titler Pro for Windows -> NewBlue Titler Pro for Windows NewBlue Video Essentials for Windows -> NewBlue Video Essentials for Windows NewBlue Video Essentials V for Windows -> NewBlue Video Essentials V for Windows NewBlue Video Essentials VI for Windows -> NewBlue Video Essentials VI for Windows NewBlue Video Essentials VII for Windows -> NewBlue Video Essentials VII for Windows Notepad++ -> Notepad++ (32-bit x86) Open Codecs -> Xiph.Org Open Codecs 0.85.17777 OSToto Software Box -> OSToto Software Box - 3.0.2.16 PDF-to-Excel 1.5 Demo -> PDF-to-Excel 1.5 Demo PDF-to-HTML 1.1 Demo -> PDF-to-HTML 1.1 Demo PDF-to-Word 3.1 Demo -> PDF-to-Word 3.1 Demo Photo Stamp Remover_is1 -> Photo Stamp Remover 9.0 PicosmosTools -> PicosmosTools 1.9.0.0 ProcessLasso -> Process Lasso proDAD-MercalliEasy-2.0 -> proDAD Mercalli Easy Video Stabilizer 2.0 Quick Search -> Quick Search 5.28.1.96 Reg Organizer_is1 -> Reg Organizer version 7.80 Registry Recycler_is1 -> Registry Recycler Reload Icons Cache 1.00 -> Reload Icons Cache 1.00 RPD_is1 -> NeoSetup Updater Securely File Shredder -> Securely File Shredder ShadowExplorer_is1 -> ShadowExplorer 0.9 SkinPack -> SkinPack Windows Phone10 Slowin Killer -> Slowin' Killer Software Update Pro -> Software Update Pro 5.43.0.37 Software Update Wizard (Redist) -> Software Update Wizard (Redist) 4.5 Sothink Media Toolkit_is1 -> Sothink Media Toolkit 1.0.0.2 (19/08/2016) SoundCloud Download_is1 -> SoundCloud Download Speed Install_is1 -> Speed Install 2.0.2.1738 SpeedBit Video Accelerator -> SpeedBit Video Accelerator SpeedOptimizer -> SpeedOptimizer Spy BHO Remover 7.0 -> Spy BHO Remover StartIsBack -> StartIsBack++ SuperbGameBoost_is1 -> Superb Game Boost 3.1 Supercopier -> Supercopier 1.2.3.6 SX Antivirus Kit 4.0 -> SX Antivirus Kit SX Blocker Suite 3.0 -> SX Blocker Suite SX Network Suite 5.0 -> SX Network Suite SX System Suite 3.0 -> SX System Suite SX WiFi Security Suite 6.0 -> SX WiFi Security Suite SyncBackFree_is1 -> SyncBackFree SyncBackPro_is1 -> SyncBackPro SyncBackTouch_is1 -> SyncBackTouch Syncios -> Syncios 6.1.3 TeamViewer -> TeamViewer 12 TechPowerUp GPU-Z -> TechPowerUp GPU-Z TreeSize Free_is1 -> TreeSize Free V4.0.1 trolCommander -> trolCommander (remove only) Ultracopier -> Ultracopier 1.2.3.5 Unchecky -> Unchecky v1.0.2 UnrealCommander_is1 -> Unreal Commander v3.57 Usbfix -> UsbFix Premium 2016 UX Pack -> macOS UX Pack Vimeo Download_is1 -> Vimeo Download VirusTotal Scanner 6.5 -> VirusTotal Scanner VivPDFEditor_is1 -> VivPDF Editor Winamp -> Winamp Windows 10 - Codec Pack -> Windows 10 Codec Pack 2.0.8 Windows 7 - Codec Pack -> Windows 7 Codec Pack 4.1.6 Windows 8 - Codec Pack -> Windows 8 Codec Pack 2.0.7 Windows Boot Genius -> Windows Boot Genius Winja_is1 -> Winja version 3.0.3 WinMend File Copy_is1 -> WinMend File Copy 2.3.0 WinPcapInst -> WinPcap 4.1.2 WinX HD Video Converter Deluxe_is1 -> WinX HD Video Converter Deluxe 5.9.9 Wise Care 365_is1 -> Wise Care 365 4.64 Wise Duplicate Finder_is1 -> Wise Duplicate Finder 1.15 Wise Folder Hider Pro_is1 -> Wise Folder Hider Pro Wise JetSearch_is1 -> Wise JetSearch 2.33 Wise Memory Optimizer_is1 -> Wise Memory Optimizer 3.51 Wise Video Downloader_is1 -> Wise Video Downloader 2.53 Wondershare TidyMyMusic_is1 -> Wondershare TidyMyMusic(Build 1.5.0.1) WRUNINST -> Webroot SecureAnywhere WUCCCApp -> AMD Catalyst Control Center Xilisoft CHM to EPUB Converter -> Xilisoft CHM en EPUB Convertisseur Xilisoft HTML to EPUB Converter -> Xilisoft HTML en EPUB Convertisseur Xilisoft PDF to EPUB Converter -> Xilisoft PDF en EPUB Convertisseur Xilisoft Video Editor 2 -> Xilisoft Éditeur Vidéo 2 Xilisoft Video Splitter 2 -> Xilisoft Découpeur Vidéo 2 xplorer2l -> xplorer² lite 32 bit XYplorerFree -> XYplorerFree 17.40 Your Software Deals_is1 -> Your Software Deals YouTube Video Ad Blocker 3.0 -> YouTube Video Ad Blocker ZoomPlayer -> Zoom Player (remove only) ZoomPlayer_French -> Zoom Player French language (remove only) < Uninstall List [HKEY_USERS\.DEFAULT\] > -> HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ -> < Uninstall List [HKEY_USERS\S-1-5-18\] > -> HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ -> < Uninstall List [HKEY_USERS\S-1-5-19\] > -> HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ -> < Uninstall List [HKEY_USERS\S-1-5-20\] > -> HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ -> < Uninstall List [HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\] > -> HKEY_USERS\S-1-5-21-1766228302-1366166313-1596766668-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ -> {20BF67A8-D81A-4489-8225-FABAA0896E2D}_is1 -> Apowersoft Online Launcher version 1.4.5 {EF0B188B-6C1F-4573-8979-DAB1C66266CD} -> eXpert PDF démo 2c4529525b7e166a -> Windows 10 IoT Core Dashboard Boost 1.0.2 -> Boost cyberlink mediasuite 15 setup by findmysoft -> cyberlink mediasuite 15 setup by findmysoft La_Cle_USB_du_Photographe_Nomade_Version_Allegee_2.0.1 -> La_Cle_USB_du_Photographe_Nomade_Version_Allegee_2.0.1 lfs ultra & 100% sécurisé finalis part G. Lobale Finale apps multisetup -> lfs ultra & 100% sécurisé finalis part G. Lobale Finale apps multisetup OneDriveSetup.exe -> Microsoft OneDrive Opera 45.0.2552.888 -> Opera Stable 45.0.2552.888 Pale Moon 27.3.0 (x64 en-US) -> Pale Moon 27.3.0 (x64 en-US) PhotoFiltre -> PhotoFiltre SharewareOnSale Notifier -> SharewareOnSale Notifier Should I Remove It 1.0.4 -> Should I Remove It Spotify -> Spotify Vision Technology Vision -> Vision - Software for the Color Blinded < EventViewer Logs - Last 10 Errors > -> Event Information -> Description Application [ Error ] 11/06/2017 11:25:06 Computer Name = lfsultra-widen | Source = Microsoft-Windows-Immersive-Shell | ID = 5973 -> Description = Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2144927141 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Application [ Error ] 11/06/2017 11:25:08 Computer Name = lfsultra-widen | Source = Microsoft-Windows-Immersive-Shell | ID = 5973 -> Description = Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2144927141 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Application [ Error ] 11/06/2017 11:25:11 Computer Name = lfsultra-widen | Source = Microsoft-Windows-Immersive-Shell | ID = 5973 -> Description = Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2144927141 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Application [ Error ] 11/06/2017 11:25:13 Computer Name = lfsultra-widen | Source = Microsoft-Windows-Immersive-Shell | ID = 5973 -> Description = Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2144927141 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Application [ Error ] 11/06/2017 11:25:15 Computer Name = lfsultra-widen | Source = Microsoft-Windows-Immersive-Shell | ID = 5973 -> Description = Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2144927141 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Application [ Error ] 11/06/2017 11:27:21 Computer Name = lfsultra-widen | Source = SideBySide | ID = 16842830 -> Description = La création du contexte d’activation a échoué pour « C:\Program Files (x86)\Audacity\audacity.exe ». Erreur dans le fichier de manifeste ou de stratégie « ? » à la ligne ?. Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active. Les composants en conflit sont : Composant 1 : C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.0_none_108e4f62dfe5d999.manifest. Composant 2 : C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.0_none_583b8639f462029f.manifest. Application [ Error ] 11/06/2017 11:27:21 Computer Name = lfsultra-widen | Source = SideBySide | ID = 16842830 -> Description = La création du contexte d’activation a échoué pour « C:\Program Files (x86)\Audacity\audacity.exe ». Erreur dans le fichier de manifeste ou de stratégie « ? » à la ligne ?. Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active. Les composants en conflit sont : Composant 1 : C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.0_none_108e4f62dfe5d999.manifest. Composant 2 : C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.0_none_583b8639f462029f.manifest. Application [ Error ] 11/06/2017 13:45:41 Computer Name = lfsultra-widen | Source = Application Error | ID = 1000 -> Description = Nom de l’application défaillante DTShellHlp.exe, version : 8.2.0.708, horodatage : 0x591c0984 Nom du module défaillant : DTShellHlp.exe, version : 8.2.0.708, horodatage : 0x591c0984 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00000000000084cf ID du processus défaillant : 0xb74 Heure de début de l’application défaillante : 0x01d2e2c74bccd0f7 Chemin d’accès de l’application défaillante : C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe Chemin d’accès du module défaillant: C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe ID de rapport : 4e29dcff-02f4-486d-acad-088dc83721e6 Nom complet du package défaillant : ? ID de l’application relative au package défaillant : ? Application [ Error ] 11/06/2017 13:50:49 Computer Name = lfsultra-widen | Source = Application Error | ID = 1000 -> Description = Nom de l’application défaillante DTShellHlp.exe, version : 8.2.0.708, horodatage : 0x591c0984 Nom du module défaillant : DTShellHlp.exe, version : 8.2.0.708, horodatage : 0x591c0984 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00000000000084cf ID du processus défaillant : 0xd64 Heure de début de l’application défaillante : 0x01d2e2da8d1f93e7 Chemin d’accès de l’application défaillante : C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe Chemin d’accès du module défaillant: C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe ID de rapport : a4250780-47ed-4923-8191-56db58a1a385 Nom complet du package défaillant : ? ID de l’application relative au package défaillant : ? Application [ Error ] 11/06/2017 13:51:23 Computer Name = lfsultra-widen | Source = Application Error | ID = 1000 -> Description = Nom de l’application défaillante DTShellHlp.exe, version : 8.2.0.708, horodatage : 0x591c0984 Nom du module défaillant : DTShellHlp.exe, version : 8.2.0.708, horodatage : 0x591c0984 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00000000000084cf ID du processus défaillant : 0x9ac Heure de début de l’application défaillante : 0x01d2e2db43b2fafb Chemin d’accès de l’application défaillante : C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe Chemin d’accès du module défaillant: C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe ID de rapport : dfa2e940-8704-498d-8804-b711af253d79 Nom complet du package défaillant : ? ID de l’application relative au package défaillant : ? Microsoft-Windows-Diagnostics-Performance/Operational [ Error ] 21/05/2017 10:28:08 Computer Name = lfsultra-widen | Source = Microsoft-Windows-Diagnostics-Performance | ID = 100 -> Description = Microsoft-Windows-Diagnostics-Performance/Operational [ Error ] 29/05/2017 02:12:13 Computer Name = lfsultra-widen | Source = Microsoft-Windows-Diagnostics-Performance | ID = 100 -> Description = Microsoft-Windows-Diagnostics-Performance/Operational [ Error ] 29/05/2017 02:12:13 Computer Name = lfsultra-widen | Source = Microsoft-Windows-Diagnostics-Performance | ID = 101 -> Description = Microsoft-Windows-Diagnostics-Performance/Operational [ Error ] 30/05/2017 14:41:18 Computer Name = lfsultra-widen | Source = Microsoft-Windows-Diagnostics-Performance | ID = 100 -> Description = Microsoft-Windows-Diagnostics-Performance/Operational [ Error ] 01/06/2017 17:41:34 Computer Name = lfsultra-widen | Source = Microsoft-Windows-Diagnostics-Performance | ID = 100 -> Description = Microsoft-Windows-Diagnostics-Performance/Operational [ Error ] 06/06/2017 05:05:16 Computer Name = lfsultra-widen | Source = Microsoft-Windows-Diagnostics-Performance | ID = 203 -> Description = Microsoft-Windows-Diagnostics-Performance/Operational [ Error ] 06/06/2017 05:05:20 Computer Name = lfsultra-widen | Source = Microsoft-Windows-Diagnostics-Performance | ID = 100 -> Description = Microsoft-Windows-Diagnostics-Performance/Operational [ Error ] 08/06/2017 14:10:50 Computer Name = lfsultra-widen | Source = Microsoft-Windows-Diagnostics-Performance | ID = 100 -> Description = Microsoft-Windows-Diagnostics-Performance/Operational [ Error ] 09/06/2017 01:28:01 Computer Name = lfsultra-widen | Source = Microsoft-Windows-Diagnostics-Performance | ID = 200 -> Description = Microsoft-Windows-Diagnostics-Performance/Operational [ Error ] 09/06/2017 01:28:51 Computer Name = lfsultra-widen | Source = Microsoft-Windows-Diagnostics-Performance | ID = 101 -> Description = System [ Error ] 23/05/2017 12:02:29 Computer Name = lfsultra-widen | Source = DCOM | ID = 10005 -> Description = System [ Error ] 23/05/2017 12:02:29 Computer Name = lfsultra-widen | Source = DCOM | ID = 10005 -> Description = System [ Error ] 23/05/2017 12:02:29 Computer Name = lfsultra-widen | Source = DCOM | ID = 10005 -> Description = System [ Error ] 23/05/2017 12:02:29 Computer Name = lfsultra-widen | Source = DCOM | ID = 10005 -> Description = System [ Error ] 23/05/2017 12:02:29 Computer Name = lfsultra-widen | Source = DCOM | ID = 10005 -> Description = System [ Error ] 23/05/2017 12:02:29 Computer Name = lfsultra-widen | Source = DCOM | ID = 10005 -> Description = System [ Error ] 23/05/2017 12:02:29 Computer Name = lfsultra-widen | Source = DCOM | ID = 10005 -> Description = System [ Error ] 23/05/2017 12:02:29 Computer Name = lfsultra-widen | Source = DCOM | ID = 10005 -> Description = System [ Error ] 23/05/2017 12:02:29 Computer Name = lfsultra-widen | Source = DCOM | ID = 10005 -> Description = System [ Error ] 23/05/2017 12:02:29 Computer Name = lfsultra-widen | Source = DCOM | ID = 10005 -> Description = [Files/Folders - Created Within 360 Days] avgstm.sys -> C:\WINDOWS\SysNative\drivers\avgstm.sys -> [2017/06/11 22:54:16 | 000,160,008 | ---- | C | MD5 = E9D39B538EC9CCD1966F48FA62CEA5A9] (AVG Technologies CZ, s.r.o.) avgSnx.sys -> C:\WINDOWS\SysNative\drivers\avgSnx.sys -> [2017/06/11 22:52:59 | 001,008,288 | ---- | C | MD5 = 4101FFAB906644DB3A43FFA050AC19D4] (AVG Technologies CZ, s.r.o.) avgSP.sys -> C:\WINDOWS\SysNative\drivers\avgSP.sys -> [2017/06/11 22:52:59 | 000,570,320 | ---- | C | MD5 = F65863676D846FE699BD96623F996C4D] (AVG Technologies CZ, s.r.o.) avgNetSec.sys -> C:\WINDOWS\SysNative\drivers\avgNetSec.sys -> [2017/06/11 22:52:59 | 000,509,056 | ---- | C | MD5 = 83D7FF4990D5F4E990FDC9B50D54D483] (AVG Technologies CZ, s.r.o.) avgVmm.sys -> C:\WINDOWS\SysNative\drivers\avgVmm.sys -> [2017/06/11 22:52:59 | 000,340,824 | ---- | C | MD5 = 55E8C8AB6D024FD94AA59448A05B0F43] (AVG Technologies CZ, s.r.o.) avgbloga.sys -> C:\WINDOWS\SysNative\drivers\avgbloga.sys -> [2017/06/11 22:52:59 | 000,336,896 | ---- | C | MD5 = F8F277D752CFCF570928C28C4E7236C1] (AVG Technologies CZ, s.r.o.) avgbidsdrivera.sys -> C:\WINDOWS\SysNative\drivers\avgbidsdrivera.sys -> [2017/06/11 22:52:59 | 000,314,128 | ---- | C | MD5 = 1FA0918F3365FE1AB30F47D3A4A23F05] (AVG Technologies CZ, s.r.o.) avgbidsha.sys -> C:\WINDOWS\SysNative\drivers\avgbidsha.sys -> [2017/06/11 22:52:59 | 000,192,584 | ---- | C | MD5 = A597136B52F1BE69ABB2CBE0D197E22F] (AVG Technologies CZ, s.r.o.) avgstm.sys.149721445548401 -> C:\WINDOWS\SysNative\drivers\avgstm.sys.149721445548401 -> [2017/06/11 22:52:59 | 000,159,496 | ---- | C | MD5 = 97DF7BC580FE76FBC0F125DCAC7015D5] (AVG Technologies CZ, s.r.o.) avgMonFlt.sys -> C:\WINDOWS\SysNative\drivers\avgMonFlt.sys -> [2017/06/11 22:52:59 | 000,129,776 | ---- | C | MD5 = E390FC7F473E9881B798B44BF31E41FA] (AVG Technologies CZ, s.r.o.) avgRdr2.sys -> C:\WINDOWS\SysNative\drivers\avgRdr2.sys -> [2017/06/11 22:52:59 | 000,102,280 | ---- | C | MD5 = 76680F830E770DE4D75031E2D3E85711] (AVG Technologies CZ, s.r.o.) avgRvrt.sys -> C:\WINDOWS\SysNative\drivers\avgRvrt.sys -> [2017/06/11 22:52:59 | 000,076,832 | ---- | C | MD5 = B67F104F18418BD36BA3DD6F4ADBFC06] (AVG Technologies CZ, s.r.o.) avgbuniva.sys -> C:\WINDOWS\SysNative\drivers\avgbuniva.sys -> [2017/06/11 22:52:59 | 000,051,336 | ---- | C | MD5 = 207AA6B47C050DD13110D399BD4DA292] (AVG Technologies CZ, s.r.o.) avgHwid.sys -> C:\WINDOWS\SysNative\drivers\avgHwid.sys -> [2017/06/11 22:52:59 | 000,039,424 | ---- | C | MD5 = 2DD8AEB4EAB07384E03C7221CCD55523] (AVG Technologies CZ, s.r.o.) avgbdiska.sys -> C:\WINDOWS\SysNative\drivers\avgbdiska.sys -> [2017/06/11 22:52:58 | 000,166,624 | ---- | C | MD5 = 63A02B2298DA306327403F3F01BC3790] (AVG Technologies CZ, s.r.o.) avgBoot.exe -> C:\WINDOWS\SysNative\avgBoot.exe -> [2017/06/11 22:46:42 | 000,401,584 | ---- | C | MD5 = 76D46E802C2F164FE540598F3DD516A3] (AVG Technologies CZ, s.r.o.) Windows 7 - Codec Pack -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 7 - Codec Pack -> [2017/06/11 22:40:24 | 000,000,000 | ---D | C] Macrium -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Macrium -> [2017/06/11 21:54:58 | 000,000,000 | ---D | C] Macrium -> C:\Program Files\Macrium -> [2017/06/11 21:54:54 | 000,000,000 | ---D | C] iolo -> C:\Program Files\Common Files\iolo -> [2017/06/11 21:36:18 | 000,000,000 | ---D | C] PhotoFiltre 7 -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 -> [2017/06/11 21:35:19 | 000,000,000 | ---D | C] PhotoFiltre 7 -> C:\Program Files (x86)\PhotoFiltre 7 -> [2017/06/11 21:35:14 | 000,000,000 | ---D | C] System Mechanic -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Mechanic -> [2017/06/11 21:35:12 | 000,000,000 | ---D | C] System Mechanic -> C:\Program Files (x86)\System Mechanic -> [2017/06/11 21:34:33 | 000,000,000 | ---D | C] WebM Project -> C:\Program Files (x86)\Common Files\WebM Project -> [2017/06/11 21:34:19 | 000,000,000 | ---D | C] Xiph.Org -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xiph.Org -> [2017/06/11 21:34:15 | 000,000,000 | ---D | C] Xiph.Org -> C:\Program Files (x86)\Xiph.Org -> [2017/06/11 21:33:16 | 000,000,000 | ---D | C] FileHippo.com -> C:\Program Files (x86)\FileHippo.com -> [2017/06/11 20:54:28 | 000,000,000 | ---D | C] OTS.exe -> C:\Users\Jean-Marie\Desktop\OTS.exe -> [2017/06/11 19:50:40 | 000,646,656 | ---- | C | MD5 = 700B66BC8B579C3CA00DC36E6E48714C] (OldTimer Tools) OTS (1).exe -> C:\Users\Jean-Marie\Desktop\OTS (1).exe -> [2017/06/11 19:50:40 | 000,646,656 | ---- | C | MD5 = 700B66BC8B579C3CA00DC36E6E48714C] (OldTimer Tools) OTA.exe -> C:\Users\Jean-Marie\Desktop\OTA.exe -> [2017/06/11 19:45:34 | 000,219,648 | ---- | C | MD5 = 03C9E0645D0F89AC41F9919D97C22106] (OldTimer Tools) WSPDFelementMonitor.dll -> C:\WINDOWS\SysNative\WSPDFelementMonitor.dll -> [2017/06/11 16:17:08 | 000,112,840 | ---- | C | MD5 = 40153E8CBF6F3B2301A3EB002E1AD145] (Wondershare Software) PDFelement 6 Pro -> C:\ProgramData\PDFelement 6 Pro -> [2017/06/11 16:05:21 | 000,000,000 | ---D | C] PDFPasswordRecover -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFPasswordRecover -> [2017/06/11 10:26:58 | 000,000,000 | ---D | C] PDFPasswordRecover -> C:\Program Files (x86)\PDFPasswordRecover -> [2017/06/11 10:26:50 | 000,000,000 | ---D | C] VideoWatermarker -> C:\Users\Jean-Marie\AppData\Local\VideoWatermarker -> [2017/06/11 10:25:53 | 000,000,000 | ---D | C] Video Watermarker -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video Watermarker -> [2017/06/11 10:24:06 | 000,000,000 | ---D | C] VideoWatermarker -> C:\ProgramData\VideoWatermarker -> [2017/06/11 10:24:05 | 000,000,000 | ---D | C] PCWinSoftPBar.ocx -> C:\WINDOWS\SysWow64\PCWinSoftPBar.ocx -> [2017/06/11 10:24:04 | 000,032,392 | ---- | C | MD5 = 2CCDA8B139E4845996D5ED657B8BFA1E] (Axis) FLVSplitter.ax -> C:\WINDOWS\SysWow64\FLVSplitter.ax -> [2017/06/11 10:23:40 | 000,413,696 | ---- | C | MD5 = B9F4C71AD277616C012A59C943C07442] (Gabest) mp4mux.dll -> C:\WINDOWS\SysWow64\mp4mux.dll -> [2017/06/11 10:23:35 | 000,229,376 | ---- | C | MD5 = 259BAEE26B709FB8D5A9FF7EF01EEE08] (GDCL (www.gdcl.co.uk)) mp4demux.dll -> C:\WINDOWS\SysWow64\mp4demux.dll -> [2017/06/11 10:23:35 | 000,189,952 | ---- | C | MD5 = AAC1EF6E2747F5919CF0391B4B0365C8] (GDCL (www.gdcl.co.uk)) Video Watermarker -> C:\Users\Jean-Marie\Documents\Video Watermarker -> [2017/06/11 10:23:34 | 000,000,000 | ---D | C] Video Watermarker -> C:\Program Files (x86)\Video Watermarker -> [2017/06/11 10:23:34 | 000,000,000 | ---D | C] Paste As File (SharewareOnSale) -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Paste As File (SharewareOnSale) -> [2017/06/11 09:58:17 | 000,000,000 | ---D | C] Paste As File (SharewareOnSale) -> C:\Program Files (x86)\Paste As File (SharewareOnSale) -> [2017/06/11 09:58:09 | 000,000,000 | ---D | C] IconPack -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IconPack -> [2017/06/10 11:01:57 | 000,000,000 | ---D | C] immersive-explorer.com -> C:\Users\Jean-Marie\AppData\Local\immersive-explorer.com -> [2017/06/10 10:57:46 | 000,000,000 | ---D | C] IconPack -> C:\IconPack -> [2017/06/10 10:56:09 | 000,000,000 | ---D | C] MetroSidebar -> C:\Users\Jean-Marie\AppData\Roaming\MetroSidebar -> [2017/06/10 10:49:45 | 000,000,000 | ---D | C] SkinPack -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SkinPack -> [2017/06/10 10:49:08 | 000,000,000 | ---D | C] W7P_Backups -> C:\W7P_Backups -> [2017/06/10 10:46:30 | 000,000,000 | -H-D | C] Fast Spell Checker -> C:\Users\Jean-Marie\AppData\Local\Fast Spell Checker -> [2017/06/10 10:37:17 | 000,000,000 | ---D | C] Fast Spell Checker -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fast Spell Checker -> [2017/06/10 10:37:00 | 000,000,000 | ---D | C] Fast Spell Checker -> C:\Program Files\Fast Spell Checker -> [2017/06/10 10:36:59 | 000,000,000 | ---D | C] FFMPEG Core Files -> C:\Program Files (x86)\FFMPEG Core Files -> [2017/06/10 10:00:20 | 000,000,000 | ---D | C] AC3Filter -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AC3Filter -> [2017/06/10 09:59:54 | 000,000,000 | ---D | C] AC3Filter -> C:\Program Files (x86)\AC3Filter -> [2017/06/10 09:59:53 | 000,000,000 | ---D | C] Haali Media Splitter -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter -> [2017/06/10 09:59:24 | 000,000,000 | ---D | C] Haali -> C:\Program Files (x86)\Haali -> [2017/06/10 09:59:24 | 000,000,000 | ---D | C] ffdshow -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ffdshow -> [2017/06/10 09:59:14 | 000,000,000 | ---D | C] languages -> C:\WINDOWS\SysWow64\languages -> [2017/06/10 09:59:13 | 000,000,000 | ---D | C] DCoder Image Source -> C:\Program Files (x86)\DCoder Image Source -> [2017/06/10 09:58:48 | 000,000,000 | ---D | C] 7-Zip -> C:\Program Files (x86)\7-Zip -> [2017/06/10 09:58:44 | 000,000,000 | ---D | C] DirectVobSub -> C:\Program Files (x86)\DirectVobSub -> [2017/06/10 09:58:36 | 000,000,000 | ---D | C] 3DYD Youtube Source -> C:\Program Files (x86)\3DYD Youtube Source -> [2017/06/10 09:58:21 | 000,000,000 | ---D | C] MadVR -> C:\Program Files (x86)\MadVR -> [2017/06/10 09:57:56 | 000,000,000 | ---D | C] Bass Audio Decoder -> C:\Program Files (x86)\Bass Audio Decoder -> [2017/06/10 09:52:34 | 000,000,000 | ---D | C] LAV Filters -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LAV Filters -> [2017/06/10 09:51:57 | 000,000,000 | ---D | C] LAV Filters -> C:\Program Files (x86)\LAV Filters -> [2017/06/10 09:51:46 | 000,000,000 | ---D | C] Zoom Player -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zoom Player -> [2017/06/10 09:51:21 | 000,000,000 | ---D | C] Zoom Player -> C:\ProgramData\Zoom Player -> [2017/06/10 09:50:12 | 000,000,000 | ---D | C] Zoom Player -> C:\Program Files (x86)\Zoom Player -> [2017/06/10 09:50:12 | 000,000,000 | ---D | C] SharewareOnSale Notifier -> C:\ProgramData\SharewareOnSale Notifier -> [2017/06/10 09:46:07 | 000,000,000 | ---D | C] Société -> C:\Program Files\Société -> [2017/06/09 10:26:19 | 000,000,000 | ---D | C] test -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\test -> [2017/06/09 10:23:29 | 000,000,000 | ---D | C] Plugins -> C:\WINDOWS\SysWow64\Plugins -> [2017/06/09 10:21:18 | 000,000,000 | ---D | C] Société -> C:\Users\Jean-Marie\AppData\Roaming\Société -> [2017/06/09 10:20:59 | 000,000,000 | ---D | C] Advanced Installer -> C:\Users\Jean-Marie\Documents\Advanced Installer -> [2017/06/09 10:10:11 | 000,000,000 | ---D | C] Caphyon -> C:\Users\Jean-Marie\AppData\Roaming\Caphyon -> [2017/06/09 09:56:58 | 000,000,000 | ---D | C] PhotoFiltre -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre -> [2017/06/09 08:53:11 | 000,000,000 | ---D | C] PhotoFiltre -> C:\Program Files (x86)\PhotoFiltre -> [2017/06/09 08:53:10 | 000,000,000 | ---D | C] icofx3 -> C:\ProgramData\icofx3 -> [2017/06/09 08:53:07 | 000,000,000 | ---D | C] icofx3 -> C:\Program Files (x86)\icofx3 -> [2017/06/09 08:53:02 | 000,000,000 | ---D | C] YaraEditor -> C:\ProgramData\YaraEditor -> [2017/06/09 08:52:12 | 000,000,000 | ---D | C] Aimersoft -> C:\ProgramData\Aimersoft -> [2017/06/09 08:42:53 | 000,000,000 | ---D | C] Keepvid -> C:\Users\Jean-Marie\AppData\Local\Keepvid -> [2017/06/09 08:42:43 | 000,000,000 | ---D | C] KeepVid Pro Recorded -> C:\KeepVid Pro Recorded -> [2017/06/09 08:42:10 | 000,000,000 | ---D | C] KeepVid Pro Downloaded -> C:\KeepVid Pro Downloaded -> [2017/06/09 08:42:10 | 000,000,000 | ---D | C] KeepVid Pro Converted -> C:\KeepVid Pro Converted -> [2017/06/09 08:42:10 | 000,000,000 | ---D | C] Aimersoft -> C:\Users\Jean-Marie\AppData\Local\Aimersoft -> [2017/06/09 08:42:06 | 000,000,000 | ---D | C] Aimersoft -> C:\Program Files (x86)\Common Files\Aimersoft -> [2017/06/09 08:42:05 | 000,000,000 | ---D | C] KeepVid -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeepVid -> [2017/06/09 08:41:47 | 000,000,000 | ---D | C] KeepVid -> C:\Users\Jean-Marie\AppData\Roaming\KeepVid -> [2017/06/09 08:41:43 | 000,000,000 | ---D | C] KeepVid -> C:\ProgramData\KeepVid -> [2017/06/09 08:40:51 | 000,000,000 | ---D | C] Keepvid -> C:\Program Files (x86)\Keepvid -> [2017/06/09 08:40:51 | 000,000,000 | ---D | C] adaware -> C:\ProgramData\adaware -> [2017/06/09 08:40:40 | 000,000,000 | ---D | C] Lavasoft -> C:\ProgramData\Lavasoft -> [2017/06/09 08:40:33 | 000,000,000 | ---D | C] Keepvid -> C:\Users\Public\Documents\Keepvid -> [2017/06/09 08:39:19 | 000,000,000 | ---D | C] Laplink PCmover Professional -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Laplink PCmover Professional -> [2017/06/09 08:35:52 | 000,000,000 | ---D | C] Laplink -> C:\Program Files (x86)\Laplink -> [2017/06/09 08:35:51 | 000,000,000 | ---D | C] Uninstall Information -> C:\Program Files (x86)\Uninstall Information -> [2017/06/09 08:33:29 | 000,000,000 | -H-D | C] Mozilla -> C:\Users\Jean-Marie\AppData\Local\Mozilla -> [2017/06/09 08:30:18 | 000,000,000 | ---D | C] Mozilla Firefox -> C:\Program Files (x86)\Mozilla Firefox -> [2017/06/09 08:24:30 | 000,000,000 | ---D | C] Avanquest -> C:\Users\Jean-Marie\AppData\Roaming\Avanquest -> [2017/06/09 07:55:54 | 000,000,000 | ---D | C] Avanquest Software -> C:\Users\Public\Documents\Avanquest Software -> [2017/06/09 07:55:53 | 000,000,000 | ---D | C] Avanquest -> C:\ProgramData\Avanquest -> [2017/06/09 07:55:01 | 000,000,000 | ---D | C] EasyDuplicateFinder -> C:\Users\Jean-Marie\Documents\EasyDuplicateFinder -> [2017/06/09 06:26:10 | 000,000,000 | ---D | C] EasyDuplicateFinder -> C:\Users\Jean-Marie\AppData\Roaming\EasyDuplicateFinder -> [2017/06/09 06:26:10 | 000,000,000 | ---D | C] Easy Duplicate Finder -> C:\ProgramData\Easy Duplicate Finder -> [2017/06/09 06:26:10 | 000,000,000 | ---D | C] Easy Duplicate Finder -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Easy Duplicate Finder -> [2017/06/09 06:23:47 | 000,000,000 | ---D | C] Easy Duplicate Finder -> C:\Program Files\Easy Duplicate Finder -> [2017/06/09 06:23:46 | 000,000,000 | ---D | C] Webroot SecureAnywhere -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Webroot SecureAnywhere -> [2017/06/09 06:23:23 | 000,000,000 | ---D | C] WRusr.dll -> C:\WINDOWS\SysWow64\WRusr.dll -> [2017/06/09 06:23:08 | 000,193,072 | ---- | C | MD5 = 5DEF72D10D84BDAED1CCD7ED4492A9F3] (Webroot) WRkrn.sys -> C:\WINDOWS\SysNative\drivers\WRkrn.sys -> [2017/06/09 06:23:08 | 000,143,248 | ---- | C | Unable to obtain MD5] (Webroot) WRusr.dll -> C:\WINDOWS\SysNative\WRusr.dll -> [2017/06/09 06:23:08 | 000,126,696 | ---- | C | MD5 = A8B951AACC06E73ECBEFA453DCDA45CD] (Webroot) WWaJDEbu -> C:\Program Files\WWaJDEbu -> [2017/06/09 06:23:03 | 000,000,000 | ---D | C] WRData -> C:\ProgramData\WRData -> [2017/06/09 06:22:39 | 000,000,000 | ---D | C] Laplink -> C:\ProgramData\Laplink -> [2017/06/09 06:18:28 | 000,000,000 | ---D | C] PCmover_EN.exe -> C:\Users\Jean-Marie\Documents\PCmover_EN.exe -> [2017/06/09 06:14:13 | 146,379,680 | ---- | C | MD5 = 0FECFFF72F3E8C2C867775A1846F5DA0] (Laplink Software, Inc. ) _Backup -> C:\_Backup -> [2017/06/09 06:10:42 | 000,000,000 | ---D | C] DAEMON Tools Images -> C:\Users\Public\Documents\DAEMON Tools Images -> [2017/06/09 06:01:16 | 000,000,000 | ---D | C] Logs -> C:\ProgramData\Logs -> [2017/06/08 20:29:06 | 000,000,000 | ---D | C] muvee Technologies -> C:\Users\Jean-Marie\AppData\Roaming\muvee Technologies -> [2017/06/08 20:27:59 | 000,000,000 | ---D | C] muvee Wedding Studio -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\muvee Wedding Studio -> [2017/06/08 20:22:56 | 000,000,000 | R--D | C] muvee Technologies -> C:\Program Files (x86)\muvee Technologies -> [2017/06/08 20:20:03 | 000,000,000 | ---D | C] muvee Technologies -> C:\Program Files (x86)\Common Files\muvee Technologies -> [2017/06/08 20:16:40 | 000,000,000 | ---D | C] Athentech -> C:\Program Files\Athentech -> [2017/06/08 20:00:06 | 000,000,000 | ---D | C] idmwfp.sys -> C:\WINDOWS\SysNative\drivers\idmwfp.sys -> [2017/06/08 18:59:16 | 000,223,432 | ---- | C | MD5 = 025868A34E359A5F49D2324C0B14D537] (Tonec Inc.) Heimdal -> C:\Program Files (x86)\Heimdal -> [2017/06/08 17:43:10 | 000,000,000 | ---D | C] Heimdal Security -> C:\Users\Public\Documents\Heimdal Security -> [2017/06/08 17:42:54 | 000,000,000 | ---D | C] Heimdal Security -> C:\ProgramData\Heimdal Security -> [2017/06/08 17:41:57 | 000,000,000 | ---D | C] SpeedBit Video Accelerator -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpeedBit Video Accelerator -> [2017/06/08 17:40:35 | 000,000,000 | ---D | C] SpeedOptimizer -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpeedOptimizer -> [2017/06/08 17:39:14 | 000,000,000 | ---D | C] SpeedOptimizer -> C:\Program Files (x86)\SpeedOptimizer -> [2017/06/08 17:39:08 | 000,000,000 | ---D | C] muvee Technologies -> C:\ProgramData\muvee Technologies -> [2017/06/08 17:14:04 | 000,000,000 | ---D | C] Advanced Installer 14.0.2 -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced Installer 14.0.2 -> [2017/06/06 18:31:19 | 000,000,000 | ---D | C] Wise Memory Optimizer -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Memory Optimizer -> [2017/06/06 18:22:21 | 000,000,000 | ---D | C] WiseHDInfo64.dll -> C:\WINDOWS\WiseHDInfo64.dll -> [2017/06/06 17:50:28 | 000,014,800 | ---- | C | MD5 = 96CC61325A387239C1AD3656F9313DEE] (wisecleaner.com) GoodSync -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GoodSync -> [2017/06/06 17:30:02 | 000,000,000 | ---D | C] AdvinstAnalytics -> C:\Users\Jean-Marie\AppData\Local\AdvinstAnalytics -> [2017/06/06 17:26:21 | 000,000,000 | ---D | C] Advanced SystemCare -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare -> [2017/06/06 16:56:50 | 000,000,000 | ---D | C] Black Bird Cleaner -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Black Bird Cleaner -> [2017/06/06 16:42:28 | 000,000,000 | ---D | C] Black Bird Cleaner -> C:\Program Files (x86)\Black Bird Cleaner -> [2017/06/06 16:42:27 | 000,000,000 | ---D | C] Black Bird Image Optimizer -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Black Bird Image Optimizer -> [2017/06/06 16:41:42 | 000,000,000 | ---D | C] Black Bird Image Optimizer -> C:\Program Files (x86)\Black Bird Image Optimizer -> [2017/06/06 16:41:41 | 000,000,000 | ---D | C] Digiarty -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Digiarty -> [2017/06/06 16:24:27 | 000,000,000 | ---D | C] Easeware -> C:\Users\Jean-Marie\AppData\Roaming\Easeware -> [2017/06/06 16:23:34 | 000,000,000 | ---D | C] Digiarty -> C:\Users\Jean-Marie\AppData\Roaming\Digiarty -> [2017/06/06 16:23:22 | 000,000,000 | ---D | C] Driver Easy -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Easy -> [2017/06/06 16:23:06 | 000,000,000 | ---D | C] Easeware -> C:\Program Files\Easeware -> [2017/06/06 16:23:04 | 000,000,000 | ---D | C] Digiarty -> C:\Program Files (x86)\Digiarty -> [2017/06/06 16:21:20 | 000,000,000 | ---D | C] Wise Care 365 -> C:\Users\Jean-Marie\AppData\Roaming\Wise Care 365 -> [2017/06/06 16:20:22 | 000,000,000 | ---D | C] Wise Care 365 -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Care 365 -> [2017/06/06 16:19:30 | 000,000,000 | ---D | C] Black Bird Cleaner Software -> C:\Users\Jean-Marie\AppData\Local\Black Bird Cleaner Software -> [2017/06/06 16:17:39 | 000,000,000 | ---D | C] Black Bird System Info -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Black Bird System Info -> [2017/06/06 16:16:49 | 000,000,000 | ---D | C] Black Bird System Info -> C:\Program Files (x86)\Black Bird System Info -> [2017/06/06 16:16:46 | 000,000,000 | ---D | C] FolderSize -> C:\Program Files\FolderSize -> [2017/06/06 14:51:10 | 000,000,000 | ---D | C] Animated Wallpaper Maker -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Animated Wallpaper Maker -> [2017/06/06 14:15:15 | 000,000,000 | ---D | C] Animated Wallpaper Maker -> C:\Program Files (x86)\Animated Wallpaper Maker -> [2017/06/06 14:15:13 | 000,000,000 | ---D | C] Animated Wallpaper Examples -> C:\Users\Jean-Marie\Documents\Animated Wallpaper Examples -> [2017/06/06 14:15:13 | 000,000,000 | ---D | C] BlackParrot -> C:\Users\Jean-Marie\AppData\Local\BlackParrot -> [2017/06/06 13:49:55 | 000,000,000 | ---D | C] ScanPapyrus -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScanPapyrus -> [2017/06/06 13:49:48 | 000,000,000 | ---D | C] ScanPapyrus -> C:\Program Files (x86)\ScanPapyrus -> [2017/06/06 13:49:28 | 000,000,000 | ---D | C] MPC-HC -> C:\Users\Jean-Marie\AppData\Roaming\MPC-HC -> [2017/06/06 11:52:32 | 000,000,000 | ---D | C] WinToHDD -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinToHDD -> [2017/06/06 09:39:30 | 000,000,000 | ---D | C] WinToHDD -> C:\Program Files\WinToHDD -> [2017/06/06 09:39:21 | 000,000,000 | ---D | C] avgstm.sys.149673091482801 -> C:\WINDOWS\SysNative\drivers\avgstm.sys.149673091482801 -> [2017/06/06 08:34:47 | 000,159,496 | ---- | C | MD5 = 97DF7BC580FE76FBC0F125DCAC7015D5] (AVG Technologies CZ, s.r.o.) Speedbit -> C:\Users\Public\Documents\Speedbit -> [2017/06/06 06:50:30 | 000,000,000 | ---D | C] SpeedBit Video Accelerator -> C:\Program Files (x86)\SpeedBit Video Accelerator -> [2017/06/06 06:50:27 | 000,000,000 | ---D | C] SpeedBit -> C:\Program Files (x86)\Common Files\SpeedBit -> [2017/06/06 06:50:13 | 000,000,000 | ---D | C] My DAP Downloads -> C:\Users\Jean-Marie\Documents\My DAP Downloads -> [2017/06/06 06:48:24 | 000,000,000 | ---D | C] Download Accelerator Plus (DAP) -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Download Accelerator Plus (DAP) -> [2017/06/06 06:48:16 | 000,000,000 | ---D | C] SpeedBit -> C:\Users\Jean-Marie\AppData\Roaming\SpeedBit -> [2017/06/06 06:48:03 | 000,000,000 | ---D | C] SpeedBit -> C:\ProgramData\SpeedBit -> [2017/06/06 06:48:03 | 000,000,000 | ---D | C] DAP -> C:\Program Files (x86)\DAP -> [2017/06/06 06:46:44 | 000,000,000 | ---D | C] AniGIF.ocx -> C:\WINDOWS\SysWow64\AniGIF.ocx -> [2017/06/06 06:46:18 | 000,172,032 | ---- | C | MD5 = 45960B40C1ECB75ED5549A80049879E1] (Jin Hui E-mail: jinhui@jcomsoft.com Web: http://www.jcomsoft.com) AntiRansomware -> C:\ProgramData\AntiRansomware -> [2017/06/06 06:42:13 | 000,000,000 | ---D | C] RansomwareScreenUnlocker -> C:\Program Files\RansomwareScreenUnlocker -> [2017/06/06 06:40:10 | 000,000,000 | ---D | C] pack 5 - aide forums dualboot cubuntu & deux pc -> C:\Users\Jean-Marie\Documents\pack 5 - aide forums dualboot cubuntu & deux pc -> [2017/06/05 22:18:30 | 000,000,000 | ---D | C] Auslogics -> C:\ProgramData\Auslogics -> [2017/06/05 21:51:08 | 000,000,000 | ---D | C] Auslogics -> C:\Users\Jean-Marie\AppData\Roaming\Auslogics -> [2017/06/05 21:50:57 | 000,000,000 | ---D | C] Auslogics -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics -> [2017/06/05 21:50:39 | 000,000,000 | ---D | C] Auslogics -> C:\Program Files (x86)\Auslogics -> [2017/06/05 21:50:34 | 000,000,000 | ---D | C] CrashRpt -> C:\Users\Jean-Marie\AppData\Local\CrashRpt -> [2017/06/05 21:42:05 | 000,000,000 | ---D | C] Dropbox -> C:\Users\Jean-Marie\Dropbox -> [2017/06/05 18:54:53 | 000,000,000 | R--D | C] AVG -> C:\Users\Jean-Marie\AppData\Roaming\AVG -> [2017/06/05 18:54:44 | 000,000,000 | ---D | C] MultiCommander -> C:\Users\Jean-Marie\AppData\Roaming\MultiCommander -> [2017/06/05 18:36:41 | 000,000,000 | ---D | C] AVG -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG -> [2017/06/02 14:09:43 | 000,000,000 | ---D | C] AVG -> C:\Program Files (x86)\AVG -> [2017/06/02 14:02:56 | 000,000,000 | ---D | C] Avg -> C:\ProgramData\Avg -> [2017/06/02 14:02:52 | 000,000,000 | ---D | C] Common Files -> C:\ProgramData\Common Files -> [2017/06/02 14:02:51 | 000,000,000 | -H-D | C] AvgSetupLog -> C:\Users\Jean-Marie\AppData\Local\AvgSetupLog -> [2017/06/02 14:02:50 | 000,000,000 | ---D | C] Avg -> C:\Users\Jean-Marie\AppData\Local\Avg -> [2017/06/02 14:02:50 | 000,000,000 | ---D | C] Spybot - Search & Destroy 2 -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2 -> [2017/06/02 14:00:19 | 000,000,000 | ---D | C] sdnclean64.exe -> C:\WINDOWS\SysNative\sdnclean64.exe -> [2017/06/02 13:59:56 | 000,021,040 | ---- | C | MD5 = 82446D358A9FB51CB9DA32A5C901D7A0] (Safer Networking Limited) Spybot - Search & Destroy -> C:\ProgramData\Spybot - Search & Destroy -> [2017/06/02 13:59:48 | 000,000,000 | ---D | C] Spybot - Search & Destroy 2 -> C:\Program Files (x86)\Spybot - Search & Destroy 2 -> [2017/06/02 13:59:19 | 000,000,000 | ---D | C] SUPERAntiSpyware -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware -> [2017/06/02 13:58:54 | 000,000,000 | ---D | C] SUPERAntiSpyware.com -> C:\ProgramData\SUPERAntiSpyware.com -> [2017/06/02 13:58:39 | 000,000,000 | ---D | C] SUPERAntiSpyware -> C:\Program Files\SUPERAntiSpyware -> [2017/06/02 13:58:39 | 000,000,000 | ---D | C] PDFCreator -> C:\Users\Jean-Marie\AppData\Local\PDFCreator -> [2017/06/02 13:57:51 | 000,000,000 | ---D | C] pdfcmon.dll -> C:\WINDOWS\SysNative\pdfcmon.dll -> [2017/06/02 13:57:23 | 000,116,224 | ---- | C | MD5 = 8FD644D85BDB0206E87FF21C70444E76] (pdfforge GmbH) PDFCreator -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator -> [2017/06/02 13:56:29 | 000,000,000 | ---D | C] PDFCreator -> C:\Program Files\PDFCreator -> [2017/06/02 13:56:08 | 000,000,000 | ---D | C] Canneverbe Limited -> C:\Users\Jean-Marie\AppData\Roaming\Canneverbe Limited -> [2017/06/02 13:55:56 | 000,000,000 | ---D | C] CDBurnerXP -> C:\Program Files\CDBurnerXP -> [2017/06/02 13:55:50 | 000,000,000 | ---D | C] Apple Computer -> C:\Users\Jean-Marie\AppData\Local\Apple Computer -> [2017/06/02 13:55:28 | 000,000,000 | ---D | C] iTunes -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes -> [2017/06/02 13:55:14 | 000,000,000 | ---D | C] iPod -> C:\Program Files\iPod -> [2017/06/02 13:51:09 | 000,000,000 | ---D | C] iTunes -> C:\Program Files\iTunes -> [2017/06/02 13:51:01 | 000,000,000 | ---D | C] Apple Computer -> C:\ProgramData\Apple Computer -> [2017/06/02 13:51:01 | 000,000,000 | ---D | C] Dropbox -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox -> [2017/06/02 13:43:10 | 000,000,000 | ---D | C] Apple -> C:\Users\Jean-Marie\AppData\Local\Apple -> [2017/06/02 13:37:33 | 000,000,000 | ---D | C] Apple Software Update -> C:\Program Files (x86)\Apple Software Update -> [2017/06/02 13:37:13 | 000,000,000 | ---D | C] Bonjour -> C:\Program Files\Bonjour -> [2017/06/02 13:35:46 | 000,000,000 | ---D | C] Bonjour -> C:\Program Files (x86)\Bonjour -> [2017/06/02 13:35:46 | 000,000,000 | ---D | C] Apple -> C:\Program Files\Common Files\Apple -> [2017/06/02 13:32:33 | 000,000,000 | ---D | C] Apple -> C:\ProgramData\Apple -> [2017/06/02 13:28:40 | 000,000,000 | ---D | C] Apple -> C:\Program Files (x86)\Common Files\Apple -> [2017/06/02 13:28:40 | 000,000,000 | ---D | C] LibreOffice 5.3 -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 5.3 -> [2017/06/02 13:23:53 | 000,000,000 | --SD | C] LibreOffice 5 -> C:\Program Files\LibreOffice 5 -> [2017/06/02 13:18:16 | 000,000,000 | ---D | C] OpenOffice 4.1.3 -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.3 -> [2017/06/02 12:58:53 | 000,000,000 | --SD | C] OpenOffice 4 -> C:\Program Files (x86)\OpenOffice 4 -> [2017/06/02 12:55:03 | 000,000,000 | ---D | C] GIMP 2 -> C:\Program Files\GIMP 2 -> [2017/06/02 12:43:49 | 000,000,000 | ---D | C] Dropbox -> C:\Users\Jean-Marie\AppData\Roaming\Dropbox -> [2017/06/02 12:30:47 | 000,000,000 | ---D | C] Dropbox -> C:\Users\Jean-Marie\AppData\Local\Dropbox -> [2017/06/02 12:29:11 | 000,000,000 | ---D | C] Dropbox -> C:\Program Files (x86)\Dropbox -> [2017/06/02 12:29:11 | 000,000,000 | ---D | C] Dropbox -> C:\ProgramData\Dropbox -> [2017/06/02 12:29:10 | 000,000,000 | ---D | C] Spotify -> C:\Users\Jean-Marie\AppData\Local\Spotify -> [2017/06/02 12:28:16 | 000,000,000 | ---D | C] Spotify -> C:\Users\Jean-Marie\AppData\Roaming\Spotify -> [2017/06/02 12:28:02 | 000,000,000 | ---D | C] K-Lite Codec Pack -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack -> [2017/06/02 12:24:53 | 000,000,000 | ---D | C] Google Drive -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive -> [2017/06/02 12:21:30 | 000,000,000 | ---D | C] VideoLAN -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN -> [2017/06/02 12:19:01 | 000,000,000 | ---D | C] VideoLAN -> C:\Program Files\VideoLAN -> [2017/06/02 12:17:43 | 000,000,000 | ---D | C] Audacity -> C:\Program Files (x86)\Audacity -> [2017/06/02 12:11:34 | 000,000,000 | ---D | C] PX Storage Engine -> C:\Program Files (x86)\Common Files\PX Storage Engine -> [2017/06/02 12:07:51 | 000,000,000 | ---D | C] Winamp -> C:\Users\Jean-Marie\AppData\Roaming\Winamp -> [2017/06/02 12:06:50 | 000,000,000 | ---D | C] Winamp -> C:\Program Files (x86)\Winamp -> [2017/06/02 12:06:50 | 000,000,000 | ---D | C] PeaZip -> C:\Users\Jean-Marie\AppData\Roaming\PeaZip -> [2017/06/02 12:04:27 | 000,000,000 | ---D | C] PeaZip -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PeaZip -> [2017/06/02 12:03:58 | 000,000,000 | ---D | C] PeaZip -> C:\Program Files\PeaZip -> [2017/06/02 12:03:26 | 000,000,000 | ---D | C] Classic Shell -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell -> [2017/06/02 12:02:13 | 000,000,000 | ---D | C] Classic Shell -> C:\Program Files\Classic Shell -> [2017/06/02 12:01:04 | 000,000,000 | ---D | C] Revo Uninstaller -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller -> [2017/06/02 11:59:45 | 000,000,000 | ---D | C] VS Revo Group -> C:\Program Files\VS Revo Group -> [2017/06/02 11:59:28 | 000,000,000 | ---D | C] SumatraPDF -> C:\Program Files\SumatraPDF -> [2017/06/02 11:59:04 | 000,000,000 | ---D | C] InfraRecorder -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\InfraRecorder -> [2017/06/02 11:58:52 | 000,000,000 | ---D | C] InfraRecorder -> C:\Program Files\InfraRecorder -> [2017/06/02 11:58:38 | 000,000,000 | ---D | C] ImgBurn -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn -> [2017/06/02 11:57:36 | 000,000,000 | ---D | C] ImgBurn -> C:\Program Files (x86)\ImgBurn -> [2017/06/02 11:57:35 | 000,000,000 | ---D | C] Notepad++ -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ -> [2017/06/02 11:57:06 | 000,000,000 | ---D | C] Notepad++ -> C:\Users\Jean-Marie\AppData\Roaming\Notepad++ -> [2017/06/02 11:56:49 | 000,000,000 | ---D | C] Notepad++ -> C:\Program Files (x86)\Notepad++ -> [2017/06/02 11:56:49 | 000,000,000 | ---D | C] 7-Zip -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip -> [2017/06/02 11:56:35 | 000,000,000 | ---D | C] 7-Zip -> C:\Program Files\7-Zip -> [2017/06/02 11:56:30 | 000,000,000 | ---D | C] Registry Recycler -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Registry Recycler -> [2017/06/02 11:51:39 | 000,000,000 | ---D | C] Registry Recycler -> C:\Program Files (x86)\Registry Recycler -> [2017/06/02 11:51:38 | 000,000,000 | ---D | C] Fix-It Registry Optimizer -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fix-It Registry Optimizer -> [2017/06/02 11:47:30 | 000,000,000 | ---D | C] Fix-It Registry Optimizer -> C:\Program Files (x86)\Fix-It Registry Optimizer -> [2017/06/02 11:47:30 | 000,000,000 | ---D | C] uts -> C:\Users\Jean-Marie\AppData\Local\uts -> [2017/06/02 11:45:37 | 000,000,000 | ---D | C] Kingosoft -> C:\Users\Jean-Marie\AppData\Roaming\Kingosoft -> [2017/06/02 11:44:27 | 000,000,000 | ---D | C] Kingosoft -> C:\Users\Jean-Marie\AppData\Local\Kingosoft -> [2017/06/02 11:44:25 | 000,000,000 | ---D | C] Kingo ROOT -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kingo ROOT -> [2017/06/02 11:44:17 | 000,000,000 | ---D | C] Kingo ROOT -> C:\Program Files (x86)\Kingo ROOT -> [2017/06/02 11:44:07 | 000,000,000 | ---D | C] ProcessLasso -> C:\ProgramData\ProcessLasso -> [2017/06/02 10:32:03 | 000,000,000 | ---D | C] Process Lasso -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Process Lasso -> [2017/06/02 10:31:45 | 000,000,000 | ---D | C] ProcessLasso -> C:\Users\Jean-Marie\AppData\Roaming\ProcessLasso -> [2017/06/02 10:31:35 | 000,000,000 | ---D | C] Process Lasso -> C:\Program Files\Process Lasso -> [2017/06/02 10:31:34 | 000,000,000 | ---D | C] AxBx -> C:\Program Files (x86)\AxBx -> [2017/06/02 09:02:26 | 000,000,000 | ---D | C] spyhunter portablespyhunter pots -> C:\Users\Jean-Marie\Desktop\spyhunter portablespyhunter pots -> [2017/06/02 06:27:07 | 000,000,000 | ---D | C] cce_public_x86 -> C:\Users\Jean-Marie\Desktop\cce_public_x86 -> [2017/06/02 06:16:43 | 000,000,000 | ---D | C] Reason -> C:\Program Files (x86)\Reason -> [2017/06/01 23:11:32 | 000,000,000 | ---D | C] Should I Remove It -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Should I Remove It -> [2017/06/01 23:11:30 | 000,000,000 | ---D | C] SupersonicPC -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SupersonicPC -> [2017/06/01 23:09:54 | 000,000,000 | ---D | C] SupersonicPC -> C:\Program Files (x86)\SupersonicPC -> [2017/06/01 23:09:37 | 000,000,000 | ---D | C] Avanquest -> C:\Program Files (x86)\Avanquest -> [2017/06/01 23:05:19 | 000,000,000 | ---D | C] rzc7187za.sys -> C:\WINDOWS\SysNative\drivers\zinstall_z77\rzc7187za.sys -> [2017/06/01 22:15:06 | 000,255,120 | ---- | C | MD5 = EFDAF693FED0C553593BE0B517237811] (rzc7187za Foundation) imdisk.sys -> C:\WINDOWS\SysNative\drivers\imdisk.sys -> [2017/06/01 22:15:06 | 000,064,144 | ---- | C | MD5 = 2CD3BB4134D0AD024AA6B6B61B8A6404] (Olof Lagerkvist) zinstall_z77 -> C:\WINDOWS\SysWow64\drivers\zinstall_z77 -> [2017/06/01 22:15:06 | 000,000,000 | ---D | C] zinstall_z77 -> C:\WINDOWS\SysNative\drivers\zinstall_z77 -> [2017/06/01 22:15:06 | 000,000,000 | ---D | C] awealloc.sys -> C:\WINDOWS\SysNative\drivers\awealloc.sys -> [2017/06/01 22:15:05 | 000,028,304 | ---- | C | MD5 = 1D5B6A41361B0883848570AC941A7FD3] (Olof Lagerkvist) imdsksvc.exe -> C:\WINDOWS\SysNative\imdsksvc.exe -> [2017/06/01 22:15:05 | 000,022,024 | ---- | C | MD5 = C736CD6ADDDE98AEC8D1D3C0C4E5BAE6] (Olof Lagerkvist) Zinstall -> C:\ProgramData\Zinstall -> [2017/06/01 22:12:07 | 000,000,000 | ---D | C] ProductData -> C:\Users\Jean-Marie\AppData\Roaming\ProductData -> [2017/06/01 19:32:45 | 000,000,000 | ---D | C] muscade-moulu de widen - vaincre peur malware - adsfix - avanquest trials -> C:\Users\Jean-Marie\Desktop\muscade-moulu de widen - vaincre peur malware - adsfix - avanquest trials -> [2017/06/01 18:59:46 | 000,000,000 | ---D | C] muscade-moulu de widen - vaincre peur malware - adsfix - avanquest trials -> C:\Users\Jean-Marie\Documents\muscade-moulu de widen - vaincre peur malware - adsfix - avanquest trials -> [2017/06/01 18:57:01 | 000,000,000 | ---D | C] {74E9F814-C737-42CC-B721-DBBC4059367A} -> C:\ProgramData\{74E9F814-C737-42CC-B721-DBBC4059367A} -> [2017/06/01 18:35:44 | 000,000,000 | ---D | C] IObit -> C:\Program Files (x86)\Common Files\IObit -> [2017/06/01 18:35:10 | 000,000,000 | ---D | C] Windows 8 - Codec Pack -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 8 - Codec Pack -> [2017/06/01 18:31:50 | 000,000,000 | ---D | C] IObit -> C:\Users\Jean-Marie\AppData\Roaming\IObit -> [2017/06/01 18:31:41 | 000,000,000 | ---D | C] IObit -> C:\Program Files (x86)\IObit -> [2017/06/01 18:31:40 | 000,000,000 | ---D | C] IObit -> C:\ProgramData\IObit -> [2017/06/01 18:31:19 | 000,000,000 | ---D | C] Spybot Anti-Beacon -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot Anti-Beacon -> [2017/06/01 18:17:01 | 000,000,000 | ---D | C] Spybot Anti-Beacon -> C:\Program Files (x86)\Spybot Anti-Beacon -> [2017/06/01 18:17:00 | 000,000,000 | ---D | C] Morae -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Morae -> [2017/06/01 17:13:11 | 000,000,000 | ---D | C] Advanced Disk Cleaner -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced Disk Cleaner -> [2017/06/01 13:22:31 | 000,000,000 | ---D | C] ArcticLine -> C:\Users\Jean-Marie\AppData\Roaming\ArcticLine -> [2017/06/01 11:56:56 | 000,000,000 | ---D | C] Jet Screenshot -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Jet Screenshot -> [2017/06/01 11:56:46 | 000,000,000 | ---D | C] Jet Screenshot -> C:\Program Files (x86)\Jet Screenshot -> [2017/06/01 11:56:44 | 000,000,000 | ---D | C] Windows Boot Genius -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Boot Genius -> [2017/06/01 11:39:09 | 000,000,000 | ---D | C] Windows Boot Genius -> C:\Program Files (x86)\Windows Boot Genius -> [2017/06/01 11:39:03 | 000,000,000 | ---D | C] Avanquest Software -> C:\Users\Jean-Marie\AppData\Roaming\Avanquest Software -> [2017/06/01 11:07:34 | 000,000,000 | ---D | C] Avanquest -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Avanquest -> [2017/06/01 11:07:33 | 000,000,000 | ---D | C] Avanquest -> C:\Users\Jean-Marie\AppData\Local\Avanquest -> [2017/06/01 11:07:33 | 000,000,000 | ---D | C] Siber Systems -> C:\Program Files\Siber Systems -> [2017/06/01 07:32:52 | 000,000,000 | ---D | C] GoodSync -> C:\ProgramData\GoodSync -> [2017/06/01 07:30:37 | 000,000,000 | ---D | C] GoodSync -> C:\Users\Jean-Marie\AppData\Roaming\GoodSync -> [2017/06/01 07:30:27 | 000,000,000 | ---D | C] hotcore3.sys -> C:\WINDOWS\SysNative\drivers\hotcore3.sys -> [2017/06/01 07:17:56 | 000,034,056 | ---- | C | MD5 = 735982D69324230856793BB4D3770350] (Paragon Software Group) Paragon Backup and Recovery™ 2014 Free -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Paragon Backup and Recovery™ 2014 Free -> [2017/06/01 07:17:31 | 000,000,000 | ---D | C] Paragon Software -> C:\Program Files\Paragon Software -> [2017/06/01 07:16:46 | 000,000,000 | ---D | C] Nitro -> C:\Users\Jean-Marie\AppData\Roaming\Nitro -> [2017/05/31 20:58:02 | 000,000,000 | ---D | C] nitrolocalmon10.dll -> C:\WINDOWS\SysNative\nitrolocalmon10.dll -> [2017/05/31 20:56:48 | 000,031,904 | ---- | C | MD5 = 827101D25486B90E7F9467A5125EFBBC] (Nitro Software, Inc.) nitrolocalui10.dll -> C:\WINDOWS\SysNative\nitrolocalui10.dll -> [2017/05/31 20:56:48 | 000,020,128 | ---- | C | MD5 = 428957AA3ABFD26D93B4551408C51DA1] (Nitro Software, Inc.) Nitro -> C:\ProgramData\Nitro -> [2017/05/31 20:56:11 | 000,000,000 | ---D | C] Nitro -> C:\Program Files\Nitro -> [2017/05/31 20:56:10 | 000,000,000 | ---D | C] Nitro -> C:\Program Files (x86)\Nitro -> [2017/05/31 20:56:10 | 000,000,000 | ---D | C] Nitro -> C:\Program Files\Common Files\Nitro -> [2017/05/31 20:56:07 | 000,000,000 | ---D | C] Downloaded Installations -> C:\Users\Jean-Marie\AppData\Roaming\Downloaded Installations -> [2017/05/31 20:52:48 | 000,000,000 | ---D | C] UsbFix_Maintenance -> C:\Users\Jean-Marie\Documents\UsbFix_Maintenance -> [2017/05/31 18:30:21 | 000,000,000 | ---D | C] .trolcommander -> C:\Users\Jean-Marie\.trolcommander -> [2017/05/31 17:36:24 | 000,000,000 | ---D | C] .mucommander -> C:\Users\Jean-Marie\.mucommander -> [2017/05/31 17:36:07 | 000,000,000 | ---D | C] $GlaryQuarantine -> C:\$GlaryQuarantine -> [2017/05/31 17:09:09 | 000,000,000 | -H-D | C] Trial-Reset 4.0 Final Fixed -> C:\Users\Jean-Marie\Documents\Trial-Reset 4.0 Final Fixed -> [2017/05/31 17:04:27 | 000,000,000 | ---D | C] Startup-Disabled -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup-Disabled -> [2017/05/31 14:42:55 | 000,000,000 | -H-D | C] Trojan Killer -> C:\Program Files (x86)\Trojan Killer -> [2017/05/31 14:36:07 | 000,000,000 | ---D | C] iolo -> C:\Users\Jean-Marie\AppData\Roaming\iolo -> [2017/05/30 20:32:11 | 000,000,000 | ---D | C] iolo -> C:\ProgramData\iolo -> [2017/05/30 20:32:11 | 000,000,000 | ---D | C] Slowin Killer -> C:\Program Files (x86)\Slowin Killer -> [2017/05/30 19:18:07 | 000,000,000 | ---D | C] AI_RecycleBin -> C:\WINDOWS\SysWow64\AI_RecycleBin -> [2017/05/30 18:49:40 | 000,000,000 | -HSD | C] Reason -> C:\Users\Jean-Marie\AppData\Roaming\Reason -> [2017/05/30 18:45:13 | 000,000,000 | ---D | C] DfSdkBt.exe -> C:\WINDOWS\SysNative\DfSdkBt.exe -> [2017/05/30 17:13:15 | 000,034,304 | ---- | C | MD5 = 2322AC4F74D5033E8AF0EBD85DFC677B] (mst software GmbH, Germany) Adobe_Systems_Incorporate -> C:\Users\Jean-Marie\AppData\Local\Adobe_Systems_Incorporate -> [2017/05/30 17:12:23 | 000,000,000 | ---D | C] ePUBee -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ePUBee -> [2017/05/30 17:06:54 | 000,000,000 | ---D | C] Adobe -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe -> [2017/05/30 17:05:36 | 000,000,000 | ---D | C] Adobe -> C:\Program Files (x86)\Adobe -> [2017/05/30 17:04:58 | 000,000,000 | ---D | C] ePUBee -> C:\Program Files (x86)\ePUBee -> [2017/05/30 17:04:45 | 000,000,000 | ---D | C] My Digital Editions -> C:\Users\Jean-Marie\Documents\My Digital Editions -> [2017/05/30 17:04:29 | 000,000,000 | ---D | C] Ashampoo Burning Studio 2017 -> C:\Users\Jean-Marie\Documents\Ashampoo Burning Studio 2017 -> [2017/05/30 15:47:59 | 000,000,000 | ---D | C] FreeFileSync_9.1_[Donation_Edition]_Windows_Setup.exe -> C:\Users\Jean-Marie\Documents\FreeFileSync_9.1_[Donation_Edition]_Windows_Setup.exe -> [2017/05/30 13:49:32 | 011,690,272 | ---- | C | MD5 = 0AE1961E0D6C6CA04AB28E911B491BDC] (www.FreeFileSync.org ) ATI -> C:\ProgramData\ATI -> [2017/05/30 09:23:33 | 000,000,000 | ---D | C] RtsUer.sys -> C:\WINDOWS\SysNative\drivers\RtsUer.sys -> [2017/05/30 06:47:13 | 000,420,832 | ---- | C | MD5 = BAF9F6E278144989B527FF9581BDBA8F] (Realsil Semiconductor Corporation) pimou.sys -> C:\WINDOWS\SysNative\drivers\pimou.sys -> [2017/05/30 06:44:57 | 000,042,392 | ---- | C | MD5 = 8E4CB6A8862188DC4D23586B853DB9B0] (Christian Gulden) GSCoinst.dll -> C:\WINDOWS\SysNative\GSCoinst.dll -> [2017/05/30 06:38:07 | 000,153,752 | ---- | C | MD5 = D5544599CAE052FEE4B9B186CE781309] (Genesys Logic) GeneIcon.dll -> C:\WINDOWS\SysNative\GeneIcon.dll -> [2017/05/30 06:38:06 | 005,636,288 | ---- | C | MD5 = FF54AB639C24A165375B1890F27249FF] (Genesys) GeneStor.sys -> C:\WINDOWS\SysNative\drivers\GeneStor.sys -> [2017/05/30 06:38:06 | 000,131,664 | ---- | C | MD5 = 7C66A2C6D7514F4D37DFE1F16EF00AD0] (GenesysLogic) DAX3 -> C:\WINDOWS\SysNative\DAX3 -> [2017/05/30 06:31:44 | 000,000,000 | ---D | C] Audyssey Labs -> C:\ProgramData\Audyssey Labs -> [2017/05/30 06:31:43 | 000,000,000 | ---D | C] DAX2 -> C:\WINDOWS\SysNative\DAX2 -> [2017/05/30 06:31:41 | 000,000,000 | ---D | C] AMD Catalyst Control Center -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center -> [2017/05/30 06:29:40 | 000,000,000 | ---D | C] ATI Technologies -> C:\Program Files\ATI Technologies -> [2017/05/30 06:28:29 | 000,000,000 | ---D | C] YamahaAE3.dll -> C:\WINDOWS\SysNative\YamahaAE3.dll -> [2017/05/30 06:23:45 | 015,202,000 | ---- | C | MD5 = A96FA210DEAC74EFC499F0B3D0C0AFEB] (Yamaha Corporation) YamahaAE2.dll -> C:\WINDOWS\SysNative\YamahaAE2.dll -> [2017/05/30 06:23:39 | 003,299,792 | ---- | C | MD5 = 8AB3326C0B58988F20831640FD8D139C] (Yamaha Corporation) YamahaAE.dll -> C:\WINDOWS\SysNative\YamahaAE.dll -> [2017/05/30 06:23:38 | 002,190,952 | ---- | C | MD5 = 54EF5AE7D738F6C1892535AE66FA117E] (Yamaha Corporation) SRSTSX64.dll -> C:\WINDOWS\SysNative\SRSTSX64.dll -> [2017/05/30 06:23:33 | 000,532,344 | ---- | C | MD5 = 337BC2707F85AE6B2C09953FBD977FDF] (SRS Labs, Inc.) SRSWOW64.dll -> C:\WINDOWS\SysNative\SRSWOW64.dll -> [2017/05/30 06:23:33 | 000,166,168 | ---- | C | MD5 = 09802DD8E742B6B8EFC141E8203F5172] (SRS Labs, Inc.) SRRPTR64.dll -> C:\WINDOWS\SysNative\SRRPTR64.dll -> [2017/05/30 06:23:32 | 001,435,104 | ---- | C | MD5 = 616E094561AA4BC246FDAB13E10D7307] (Synopsys, Inc.) SRSTSH64.dll -> C:\WINDOWS\SysNative\SRSTSH64.dll -> [2017/05/30 06:23:32 | 000,221,936 | ---- | C | MD5 = E78B514FF29194BDA96073572AC46209] (SRS Labs, Inc.) SRSHP64.dll -> C:\WINDOWS\SysNative\SRSHP64.dll -> [2017/05/30 06:23:32 | 000,209,504 | ---- | C | MD5 = 6669FCE03C19F506FCBC870C74166277] (SRS Labs, Inc.) SRAPO64.dll -> C:\WINDOWS\SysNative\SRAPO64.dll -> [2017/05/30 06:23:31 | 000,467,120 | ---- | C | MD5 = 567A37C922AB823B57A4411C826A0628] (Synopsys, Inc.) SRCOM64.dll -> C:\WINDOWS\SysNative\SRCOM64.dll -> [2017/05/30 06:23:31 | 000,381,376 | ---- | C | MD5 = B3E10DC7AAA9FAABF81B93FD9BA34997] (Synopsys, Inc.) SRCOM.dll -> C:\WINDOWS\SysWow64\SRCOM.dll -> [2017/05/30 06:23:31 | 000,341,112 | ---- | C | MD5 = 444245C7E05DAA78F6F08C491C20DC38] (Synopsys, Inc.) SRCOM.dll -> C:\WINDOWS\SysNative\SRCOM.dll -> [2017/05/30 06:23:31 | 000,341,112 | ---- | C | MD5 = 444245C7E05DAA78F6F08C491C20DC38] (Synopsys, Inc.) sltech64.dll -> C:\WINDOWS\SysNative\sltech64.dll -> [2017/05/30 06:23:30 | 003,122,624 | ---- | C | MD5 = 9F575A46008FA5C884713F4C68C209D1] (DTS, Inc.) slprp64.dll -> C:\WINDOWS\SysNative\slprp64.dll -> [2017/05/30 06:23:30 | 000,258,832 | ---- | C | MD5 = D1D2F139A39EAD430CACFEF34B815E69] (TODO: ) slcnt64.dll -> C:\WINDOWS\SysNative\slcnt64.dll -> [2017/05/30 06:23:29 | 003,410,800 | ---- | C | MD5 = AF4A068AAE74487DFB3AFF34C0391DCD] (DTS, Inc.) sl3apo64.dll -> C:\WINDOWS\SysNative\sl3apo64.dll -> [2017/05/30 06:23:28 | 000,984,880 | ---- | C | MD5 = 12E7F88E24DF7C87139E1A21CF32F61A] (DTS, Inc.) SFNHK64.dll -> C:\WINDOWS\SysNative\SFNHK64.dll -> [2017/05/30 06:23:27 | 000,231,888 | ---- | C | MD5 = 62B0C373CD21DD0CD93249726AD593FC] (Synopsys, Inc.) SFCOM64.dll -> C:\WINDOWS\SysNative\SFCOM64.dll -> [2017/05/30 06:23:26 | 000,090,888 | ---- | C | MD5 = D20175125F48AA8A07BA401C0463592E] (Synopsys, Inc.) SFCOM.dll -> C:\WINDOWS\SysWow64\SFCOM.dll -> [2017/05/30 06:23:26 | 000,083,592 | ---- | C | MD5 = 21D9128384387E4530DA36DA3748169B] (Virage Logic Corporation / Sonic Focus) SFAPO64.dll -> C:\WINDOWS\SysNative\SFAPO64.dll -> [2017/05/30 06:23:24 | 000,088,288 | ---- | C | MD5 = 8180D2CBCDADE5AF3DB969F87741F976] (Synopsys, Inc.) SEHDRA64.dll -> C:\WINDOWS\SysNative\SEHDRA64.dll -> [2017/05/30 06:23:21 | 000,866,096 | ---- | C | MD5 = 0FD0248864B87DD3ABA43B6DAC3E8C76] (Sound Research, Corp.) SEHDHF64.dll -> C:\WINDOWS\SysNative\SEHDHF64.dll -> [2017/05/30 06:23:20 | 001,016,384 | ---- | C | MD5 = D711BAC94B0D5A17D29BA7992EED67CF] (Sound Research, Corp.) SEHDHF32.dll -> C:\WINDOWS\SysWow64\SEHDHF32.dll -> [2017/05/30 06:23:20 | 000,876,888 | ---- | C | MD5 = 87B04595BAF7F58D85E3A7F9DB609FAF] (Sound Research, Corp.) SECOMN64.dll -> C:\WINDOWS\SysNative\SECOMN64.dll -> [2017/05/30 06:23:19 | 000,867,120 | ---- | C | MD5 = 1AB9D2F912D0D13D1FA96146C05F6169] (Sound Research, Corp.) SECOMN32.dll -> C:\WINDOWS\SysWow64\SECOMN32.dll -> [2017/05/30 06:23:19 | 000,736,912 | ---- | C | MD5 = 1D2E923FE1159AA7FC29BBC324771D05] (Sound Research, Corp.) SEAPO64.dll -> C:\WINDOWS\SysNative\SEAPO64.dll -> [2017/05/30 06:23:19 | 000,525,736 | ---- | C | MD5 = 5A6B49F503C4DB30DA650044B4B8EEDF] (Sound Research, Corp.) RTEEP64A.dll -> C:\WINDOWS\SysNative\RTEEP64A.dll -> [2017/05/30 06:23:05 | 000,387,280 | ---- | C | MD5 = 8A535BE877C1010727269ECFA027FC68] (Dolby Laboratories, Inc.) RTEED64A.dll -> C:\WINDOWS\SysNative\RTEED64A.dll -> [2017/05/30 06:23:05 | 000,214,800 | ---- | C | MD5 = DFA5B8B36F22413700E8C2DE0C695C55] (Dolby Laboratories, Inc.) RTEEL64A.dll -> C:\WINDOWS\SysNative\RTEEL64A.dll -> [2017/05/30 06:23:05 | 000,110,952 | ---- | C | MD5 = 9CC8F8C6C547E9FFC61B8C8E2B641760] (Dolby Laboratories, Inc.) RTEEG64A.dll -> C:\WINDOWS\SysNative\RTEEG64A.dll -> [2017/05/30 06:23:05 | 000,088,312 | ---- | C | MD5 = 68DBEBD52A22663A178A081D903D6B94] (Dolby Laboratories, Inc.) RP3DAA64.dll -> C:\WINDOWS\SysNative\RP3DAA64.dll -> [2017/05/30 06:22:54 | 000,321,688 | ---- | C | MD5 = C4762BF9C40A5D616ABAB2A70CFD2ED5] (Dolby Laboratories, Inc.) RP3DHT64.dll -> C:\WINDOWS\SysNative\RP3DHT64.dll -> [2017/05/30 06:22:54 | 000,321,680 | ---- | C | MD5 = B6305CD765EF09C38305DB2217950733] (Dolby Laboratories, Inc.) R4EEP64A.dll -> C:\WINDOWS\SysNative\R4EEP64A.dll -> [2017/05/30 06:22:28 | 007,172,880 | ---- | C | MD5 = E1DEC01AA749389B07A48AA9D4E442D4] (Dolby Laboratories) R4EEL64A.dll -> C:\WINDOWS\SysNative\R4EEL64A.dll -> [2017/05/30 06:22:27 | 000,151,752 | ---- | C | MD5 = 3201D8C7A56D17EE842D1C3303ABF0FA] (Dolby Laboratories) R4EED64A.dll -> C:\WINDOWS\SysNative\R4EED64A.dll -> [2017/05/30 06:22:26 | 000,447,680 | ---- | C | MD5 = 0FA9039AA291BA4F2AA6710ED40B4D39] (Dolby Laboratories) R4EEG64A.dll -> C:\WINDOWS\SysNative\R4EEG64A.dll -> [2017/05/30 06:22:26 | 000,084,584 | ---- | C | MD5 = 0BF0F6D68511A965FEEF84A4FEB941B8] (Dolby Laboratories) R4EEA64A.dll -> C:\WINDOWS\SysNative\R4EEA64A.dll -> [2017/05/30 06:22:25 | 000,134,160 | ---- | C | MD5 = C5834CDB7B32EF1BFADB74F12AD9B9C7] (Dolby Laboratories) ICEsoundAPO64.dll -> C:\WINDOWS\SysNative\ICEsoundAPO64.dll -> [2017/05/30 06:22:24 | 000,680,520 | ---- | C | MD5 = 32F931EAE1C23662A0A26230AF3F0406] (ICEpower a/s) HMUI.dll -> C:\WINDOWS\SysNative\HMUI.dll -> [2017/05/30 06:22:23 | 000,416,472 | ---- | C | MD5 = 34057FA2710BEB0C1A6F6B5E67FF30DE] (Harman) HMHVS.dll -> C:\WINDOWS\SysNative\HMHVS.dll -> [2017/05/30 06:22:23 | 000,203,808 | ---- | C | MD5 = 2DAA5C88AD3979E9BD6E22BB38F293A5] (Harman) HMEQ.dll -> C:\WINDOWS\SysNative\HMEQ.dll -> [2017/05/30 06:22:23 | 000,190,904 | ---- | C | MD5 = DFD28A0D1C9339F14128828511AD6D7F] (Harman) HMEQ_Voice.dll -> C:\WINDOWS\SysNative\HMEQ_Voice.dll -> [2017/05/30 06:22:23 | 000,190,896 | ---- | C | MD5 = CEFD73823D962E8DB4623C41BB28E525] (Harman) HMLimiter.dll -> C:\WINDOWS\SysNative\HMLimiter.dll -> [2017/05/30 06:22:23 | 000,179,568 | ---- | C | MD5 = 317C33A0CE9FFF3E7699B4DC87E0BC16] (Harman) HiFiDAX2APIPCLL.dll -> C:\WINDOWS\SysNative\HiFiDAX2APIPCLL.dll -> [2017/05/30 06:22:22 | 000,406,424 | ---- | C | MD5 = FC25C90C84CF6F68E5784C3A4E4B8224] (Dolby Laboratories) HiFiDAX2API.dll -> C:\WINDOWS\SysNative\HiFiDAX2API.dll -> [2017/05/30 06:22:22 | 000,378,344 | ---- | C | MD5 = C5DF10815DC8FA90FF5228EF9CA8742B] (Dolby Laboratories) HMAPO.dll -> C:\WINDOWS\SysNative\HMAPO.dll -> [2017/05/30 06:22:22 | 000,366,088 | ---- | C | MD5 = 720AFC7CB7E4D9243EEE272941A7B6B9] (Windows (R) Win 7 DDK provider) HMClariFi.dll -> C:\WINDOWS\SysNative\HMClariFi.dll -> [2017/05/30 06:22:22 | 000,360,312 | ---- | C | MD5 = 6C5C79B30BDB31A875D0CAC152838B18] (Harman) HarmanAudioInterface.dll -> C:\WINDOWS\SysNative\HarmanAudioInterface.dll -> [2017/05/30 06:22:20 | 000,154,328 | ---- | C | MD5 = 45377430B7DE32B35D704F440F3EC2E6] (Harman) DTSSymmetryDLL64.dll -> C:\WINDOWS\SysNative\DTSSymmetryDLL64.dll -> [2017/05/30 06:22:18 | 000,727,400 | ---- | C | MD5 = 9E2DF0C909F06266223F720EACFB4354] (DTS) DTSVoiceClarityDLL64.dll -> C:\WINDOWS\SysNative\DTSVoiceClarityDLL64.dll -> [2017/05/30 06:22:18 | 000,708,280 | ---- | C | MD5 = DCFD348E9A37E1E95B2C9372CA686A1A] (DTS) DTSS2SpeakerDLL64.dll -> C:\WINDOWS\SysNative\DTSS2SpeakerDLL64.dll -> [2017/05/30 06:22:17 | 001,780,584 | ---- | C | MD5 = 70E38398DC8B09FC1FA058093FB7CC13] (DTS) DTSS2HeadphoneDLL64.dll -> C:\WINDOWS\SysNative\DTSS2HeadphoneDLL64.dll -> [2017/05/30 06:22:17 | 001,591,024 | ---- | C | MD5 = 5AD60A6D67590889B0A96937B00A5B4A] (DTS) DTSNeoPCDLL64.dll -> C:\WINDOWS\SysNative\DTSNeoPCDLL64.dll -> [2017/05/30 06:22:16 | 000,504,272 | ---- | C | MD5 = 27A6458535D50B9B4D4AEA797E9747B8] (DTS) DTSLimiterDLL64.dll -> C:\WINDOWS\SysNative\DTSLimiterDLL64.dll -> [2017/05/30 06:22:16 | 000,445,368 | ---- | C | MD5 = 5D4E744B5F2773702DF2C376BC9E93C3] (DTS) DTSGFXAPO64.dll -> C:\WINDOWS\SysNative\DTSGFXAPO64.dll -> [2017/05/30 06:22:14 | 000,253,864 | ---- | C | MD5 = 2B3773FBECBFC9F513244D985DD63CA1] (DTS) DTSLFXAPO64.dll -> C:\WINDOWS\SysNative\DTSLFXAPO64.dll -> [2017/05/30 06:22:14 | 000,253,824 | ---- | C | MD5 = 12F57A227AABC224A61F639701CE576B] (DTS) DTSGFXAPONS64.dll -> C:\WINDOWS\SysNative\DTSGFXAPONS64.dll -> [2017/05/30 06:22:14 | 000,252,840 | ---- | C | MD5 = FECE76D852735EE737BD31EE21AC5414] (DTS) DTSBoostDLL64.dll -> C:\WINDOWS\SysNative\DTSBoostDLL64.dll -> [2017/05/30 06:22:13 | 001,508,896 | ---- | C | MD5 = 59284B2F85E00117B825113C3BD29FCD] (DTS) DTSGainCompensatorDLL64.dll -> C:\WINDOWS\SysNative\DTSGainCompensatorDLL64.dll -> [2017/05/30 06:22:13 | 000,441,232 | ---- | C | MD5 = 46373E5D1E06BDD93BD3768FB883A754] (DTS) DolbyDAX2APOvlldp.dll -> C:\WINDOWS\SysNative\DolbyDAX2APOvlldp.dll -> [2017/05/30 06:22:12 | 001,170,840 | ---- | C | MD5 = FBC17A71A1E520ABEF1DAEF1FAE3832B] (Dolby Laboratories) DTSBassEnhancementDLL64.dll -> C:\WINDOWS\SysNative\DTSBassEnhancementDLL64.dll -> [2017/05/30 06:22:12 | 000,743,928 | ---- | C | MD5 = 16CE4F4B1E5618B54C58E289AF2257FB] (DTS) DolbyDAX2APOv211.dll -> C:\WINDOWS\SysNative\DolbyDAX2APOv211.dll -> [2017/05/30 06:22:11 | 005,346,968 | ---- | C | MD5 = 2F24E0AF82890074CBA69492BB3A687C] (Dolby Laboratories) DolbyDAX2APOv201.dll -> C:\WINDOWS\SysNative\DolbyDAX2APOv201.dll -> [2017/05/30 06:22:08 | 002,444,648 | ---- | C | MD5 = DC7EF6B6756E3ED9785FC01643522307] (Dolby Laboratories) DDPP64AF3.dll -> C:\WINDOWS\SysNative\DDPP64AF3.dll -> [2017/05/30 06:22:07 | 006,264,600 | ---- | C | MD5 = F3553C79FA430FA15B86550A2D6A16B3] (Dolby Laboratories) DolbyDAX2APOProp.dll -> C:\WINDOWS\SysNative\DolbyDAX2APOProp.dll -> [2017/05/30 06:22:07 | 001,133,040 | ---- | C | MD5 = 6457E8159FB7E2AB8675C1F4688A785E] (Dolby Laboratories) DDPP64A.dll -> C:\WINDOWS\SysNative\DDPP64A.dll -> [2017/05/30 06:22:06 | 007,096,160 | ---- | C | MD5 = 73501B48AB2C1A40E4D4F8D5FE99BC5C] (Dolby Laboratories) DDPD64AF3.dll -> C:\WINDOWS\SysNative\DDPD64AF3.dll -> [2017/05/30 06:22:03 | 001,959,568 | ---- | C | MD5 = 554A344F8052482FB580F24D75C1FCB5] (Dolby Laboratories) DDPO64AF3.dll -> C:\WINDOWS\SysNative\DDPO64AF3.dll -> [2017/05/30 06:22:03 | 000,362,016 | ---- | C | MD5 = C3A8AC0AAA2B3B94833DE08654E9EEDF] (Dolby Laboratories) DDPO64A.dll -> C:\WINDOWS\SysNative\DDPO64A.dll -> [2017/05/30 06:22:03 | 000,327,424 | ---- | C | MD5 = 5E06E4A4C275726DB63DE3F0D8C7DD4F] (Dolby Laboratories) DDPD64A.dll -> C:\WINDOWS\SysNative\DDPD64A.dll -> [2017/05/30 06:22:02 | 001,965,776 | ---- | C | MD5 = AB152FFE140F11BCC241736597A7299B] (Dolby Laboratories) DAX3APOv251.dll -> C:\WINDOWS\SysNative\DAX3APOv251.dll -> [2017/05/30 06:22:01 | 001,326,392 | ---- | C | MD5 = 0600BD1966B7B8667646B4B66F22211E] (Dolby Laboratories) DDPA64F3.dll -> C:\WINDOWS\SysNative\DDPA64F3.dll -> [2017/05/30 06:22:01 | 000,310,384 | ---- | C | MD5 = 22053CB5D7418F7446B6872DB3DDBCE0] (Dolby Laboratories) DDPA64.dll -> C:\WINDOWS\SysNative\DDPA64.dll -> [2017/05/30 06:22:01 | 000,272,680 | ---- | C | MD5 = 111849023CAD2EBBE9AFF93C25330487] (Dolby Laboratories) DAX3APOProp.dll -> C:\WINDOWS\SysNative\DAX3APOProp.dll -> [2017/05/30 06:22:00 | 001,517,896 | ---- | C | MD5 = B4E7356B1DF156E1CDA0DD5369C1644D] (Dolby Laboratories) CONEQMSAPOGUILibrary.dll -> C:\WINDOWS\SysNative\CONEQMSAPOGUILibrary.dll -> [2017/05/30 06:21:52 | 000,122,288 | ---- | C | MD5 = 17B1B5ABA62EA22033CC657B15E83CDA] (Real Sound Lab SIA) AudysseyEfx.dll -> C:\WINDOWS\SysNative\AudysseyEfx.dll -> [2017/05/30 06:21:49 | 002,993,688 | ---- | C | MD5 = CE7FC69BE03416189AEDD59489548B92] (Audyssey Labs) L1C63x64.sys -> C:\WINDOWS\SysNative\drivers\L1C63x64.sys -> [2017/05/30 06:18:05 | 000,161,096 | ---- | C | MD5 = A4FD20E038BEA02ECF62EA20C535CC9E] (Qualcomm Atheros, Inc.) coinst_15.20.dll -> C:\WINDOWS\SysNative\coinst_15.20.dll -> [2017/05/30 06:03:20 | 000,873,488 | ---- | C | MD5 = EF89F5666867ED5E8C0B192CE6833AB6] (AMD) atitmm64.dll -> C:\WINDOWS\SysNative\atitmm64.dll -> [2017/05/30 06:03:09 | 000,199,696 | ---- | C | MD5 = 0B71612AB262DF3C791881B8ED5B6DEE] (AMD) atimuixx.dll -> C:\WINDOWS\SysNative\atimuixx.dll -> [2017/05/30 06:03:00 | 000,038,416 | ---- | C | MD5 = B2E57907B57F47AD942FDB0F97CB0606] (AMD) atieclxx.exe -> C:\WINDOWS\SysNative\atieclxx.exe -> [2017/05/30 06:02:54 | 000,704,528 | ---- | C | MD5 = 13FACFCFF374FD2D9BC7C5596EEE0F90] (AMD) atiesrxx.exe -> C:\WINDOWS\SysNative\atiesrxx.exe -> [2017/05/30 06:02:54 | 000,305,168 | ---- | C | MD5 = 3F4E2D6E947BF0C81D4F10907151B312] (AMD) OpenCL.dll -> C:\WINDOWS\SysNative\OpenCL.dll -> [2017/05/30 06:02:42 | 000,073,752 | ---- | C | MD5 = B0B0F74726737877E5F5FC87CE38C9B1] (Khronos Group) OpenCL.dll -> C:\WINDOWS\SysWow64\OpenCL.dll -> [2017/05/30 06:02:41 | 000,068,112 | ---- | C | MD5 = A8CBA68F0147BF474710ACE2165096A2] (Khronos Group) Java -> C:\Program Files (x86)\Common Files\Java -> [2017/05/29 17:03:45 | 000,000,000 | ---D | C] Sun -> C:\Users\Jean-Marie\AppData\Roaming\Sun -> [2017/05/29 17:02:13 | 000,000,000 | ---D | C] Java -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java -> [2017/05/29 17:01:05 | 000,000,000 | ---D | C] LimeWire -> C:\Users\Jean-Marie\AppData\Roaming\LimeWire -> [2017/05/29 14:21:55 | 000,000,000 | ---D | C] Sun -> C:\ProgramData\Sun -> [2017/05/29 14:02:48 | 000,000,000 | ---D | C] Java -> C:\Program Files (x86)\Java -> [2017/05/29 13:59:20 | 000,000,000 | ---D | C] AVS4YOU -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AVS4YOU -> [2017/05/29 13:10:19 | 000,000,000 | ---D | C] AVS4YOU -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVS4YOU -> [2017/05/29 12:27:34 | 000,000,000 | ---D | C] AVS4YOU -> C:\ProgramData\AVS4YOU -> [2017/05/29 12:26:59 | 000,000,000 | ---D | C] $RECYCLE.BIN -> C:\$RECYCLE.BIN -> [2017/05/29 12:26:02 | 000,000,000 | -HSD | C] libeay32.dll -> C:\WINDOWS\SysWow64\libeay32.dll -> [2017/05/29 12:25:48 | 001,006,416 | ---- | C | MD5 = 30D04FCB2C198BA6C5A23BC912DC0D7D] (The OpenSSL Project, http://www.openssl.org/) FreemakeVideoConverter -> C:\Users\Jean-Marie\AppData\Local\FreemakeVideoConverter -> [2017/05/29 12:23:56 | 000,000,000 | ---D | C] AVS4YOU -> C:\Program Files (x86)\AVS4YOU -> [2017/05/29 12:20:24 | 000,000,000 | ---D | C] AVSMedia -> C:\Program Files (x86)\Common Files\AVSMedia -> [2017/05/29 12:20:20 | 000,000,000 | ---D | C] Remo File Eraser -> C:\Users\Jean-Marie\AppData\Roaming\Remo File Eraser -> [2017/05/29 12:18:04 | 000,000,000 | ---D | C] barrow 2 à 4, widen, & lfsu100%sf part 1 to Z apps -> C:\Users\Jean-Marie\Desktop\barrow 2 à 4, widen, & lfsu100%sf part 1 to Z apps -> [2017/05/29 08:08:25 | 000,000,000 | R--D | C] IDM -> C:\Users\Jean-Marie\AppData\Roaming\IDM -> [2017/05/29 07:12:58 | 000,000,000 | ---D | C] IDM -> C:\ProgramData\IDM -> [2017/05/29 07:12:58 | 000,000,000 | ---D | C] DMCache -> C:\Users\Jean-Marie\AppData\Roaming\DMCache -> [2017/05/29 07:12:58 | 000,000,000 | ---D | C] Internet Download Manager -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager -> [2017/05/29 07:12:34 | 000,000,000 | ---D | C] Internet Download Manager -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager -> [2017/05/29 07:12:33 | 000,000,000 | ---D | C] Internet Download Manager -> C:\Program Files (x86)\Internet Download Manager -> [2017/05/29 07:12:31 | 000,000,000 | ---D | C] Adobe -> C:\Users\Jean-Marie\AppData\Local\Adobe -> [2017/05/28 17:35:56 | 000,000,000 | ---D | C] SRWare Iron -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SRWare Iron -> [2017/05/28 17:35:44 | 000,000,000 | ---D | C] Chromium -> C:\Users\Jean-Marie\AppData\Local\Chromium -> [2017/05/28 17:35:42 | 000,000,000 | ---D | C] SRWare Iron -> C:\Program Files (x86)\SRWare Iron -> [2017/05/28 17:34:18 | 000,000,000 | ---D | C] Mozilla Firefox -> C:\Program Files\Mozilla Firefox -> [2017/05/28 17:19:16 | 000,000,000 | ---D | C] FreemakeVideoDownloader -> C:\Users\Jean-Marie\AppData\Local\FreemakeVideoDownloader -> [2017/05/28 16:48:37 | 000,000,000 | ---D | C] WinPcap -> C:\Program Files\WinPcap -> [2017/05/28 16:48:10 | 000,000,000 | ---D | C] Freemake -> C:\Users\Jean-Marie\Documents\Freemake -> [2017/05/28 16:46:46 | 000,000,000 | ---D | C] Freemake -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake -> [2017/05/28 16:46:44 | 000,000,000 | ---D | C] Freemake -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake -> [2017/05/28 16:46:43 | 000,000,000 | ---D | C] Freemake -> C:\ProgramData\Freemake -> [2017/05/28 16:46:36 | 000,000,000 | ---D | C] Freemake -> C:\Program Files (x86)\Freemake -> [2017/05/28 16:39:33 | 000,000,000 | ---D | C] My Drivers -> C:\Users\Jean-Marie\My Drivers -> [2017/05/28 16:08:08 | 000,000,000 | ---D | C] WinZip 21.5 -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip 21.5 -> [2017/05/28 16:06:08 | 000,000,000 | ---D | C] Nero -> C:\Users\Jean-Marie\AppData\Roaming\Nero -> [2017/05/28 15:32:53 | 000,000,000 | ---D | C] Photo Stamp Remover -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Stamp Remover -> [2017/05/28 14:24:04 | 000,000,000 | ---D | C] Photo Stamp Remover -> C:\Program Files (x86)\Photo Stamp Remover -> [2017/05/28 14:23:57 | 000,000,000 | ---D | C] GooPatient -> C:\Users\Jean-Marie\AppData\Roaming\GooPatient -> [2017/05/28 14:11:42 | 000,000,000 | ---D | C] GooPatient -> C:\Program Files (x86)\GooPatient -> [2017/05/28 14:11:42 | 000,000,000 | ---D | C] Skins -> C:\WINDOWS\SysWow64\Skins -> [2017/05/27 14:17:19 | 000,000,000 | ---D | C] Sfxs -> C:\WINDOWS\SysWow64\Sfxs -> [2017/05/27 14:17:19 | 000,000,000 | ---D | C] lang -> C:\WINDOWS\SysWow64\lang -> [2017/05/27 14:17:19 | 000,000,000 | ---D | C] Icons -> C:\WINDOWS\SysWow64\Icons -> [2017/05/27 14:17:19 | 000,000,000 | ---D | C] Help -> C:\WINDOWS\SysWow64\Help -> [2017/05/27 14:17:19 | 000,000,000 | ---D | C] DESIGNER -> C:\Program Files\Common Files\DESIGNER -> [2017/05/27 11:22:01 | 000,000,000 | ---D | C] DigitalWave.ApplicationUpdater_files -> C:\ProgramData\DigitalWave.ApplicationUpdater_files -> [2017/05/26 18:34:40 | 000,000,000 | ---D | C] DVDVideoSoft -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft -> [2017/05/26 18:31:52 | 000,000,000 | ---D | C] FreeCodecPack -> C:\Program Files (x86)\FreeCodecPack -> [2017/05/26 18:31:00 | 000,000,000 | ---D | C] DVDVideoSoft -> C:\Program Files (x86)\DVDVideoSoft -> [2017/05/26 18:30:58 | 000,000,000 | ---D | C] DVDVideoSoft -> C:\Program Files (x86)\Common Files\DVDVideoSoft -> [2017/05/26 18:30:58 | 000,000,000 | ---D | C] DVDVideoSoft -> C:\Users\Jean-Marie\AppData\Roaming\DVDVideoSoft -> [2017/05/26 18:30:33 | 000,000,000 | ---D | C] WinParam -> C:\Users\Jean-Marie\AppData\Roaming\WinParam -> [2017/05/26 18:22:24 | 000,000,000 | ---D | C] PicosmosTools -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PicosmosTools -> [2017/05/26 17:26:37 | 000,000,000 | ---D | C] Picosmos -> C:\Users\Jean-Marie\AppData\Roaming\Picosmos -> [2017/05/26 17:26:11 | 000,000,000 | ---D | C] PicosmosTools -> C:\Program Files (x86)\PicosmosTools -> [2017/05/26 17:25:51 | 000,000,000 | ---D | C] FFOutput -> C:\FFOutput -> [2017/05/26 17:10:20 | 000,000,000 | ---D | C] FormatFactory -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory -> [2017/05/26 17:10:07 | 000,000,000 | ---D | C] FormatFactory -> C:\Program Files (x86)\FormatFactory -> [2017/05/26 17:08:52 | 000,000,000 | ---D | C] DbxSvc.exe -> C:\WINDOWS\SysNative\DbxSvc.exe -> [2017/05/26 16:58:32 | 000,048,944 | ---- | C | MD5 = 18FCD66BDCCA11DF03BDC3497E3C8055] (Dropbox, Inc.) dbx-stable.sys -> C:\WINDOWS\SysNative\drivers\dbx-stable.sys -> [2017/05/26 16:55:54 | 000,045,672 | ---- | C | MD5 = C277C7D9638C8FA025339961772CA80D] (Dropbox, Inc.) dbx-dev.sys -> C:\WINDOWS\SysNative\drivers\dbx-dev.sys -> [2017/05/26 16:55:54 | 000,045,672 | ---- | C | MD5 = C277C7D9638C8FA025339961772CA80D] (Dropbox, Inc.) dbx-canary.sys -> C:\WINDOWS\SysNative\drivers\dbx-canary.sys -> [2017/05/26 16:55:54 | 000,045,672 | ---- | C | MD5 = C277C7D9638C8FA025339961772CA80D] (Dropbox, Inc.) Icecream Screen Recorder -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Icecream Screen Recorder -> [2017/05/26 15:50:06 | 000,000,000 | ---D | C] Icecream Screen Recorder -> C:\Program Files (x86)\Icecream Screen Recorder -> [2017/05/26 15:49:31 | 000,000,000 | ---D | C] YouCam -> C:\Users\Jean-Marie\Documents\YouCam -> [2017/05/26 14:42:44 | 000,000,000 | ---D | C] Wondershare -> C:\Users\Jean-Marie\Documents\Wondershare -> [2017/05/26 14:18:56 | 000,000,000 | ---D | C] Wondershare -> C:\Users\Jean-Marie\AppData\Roaming\Wondershare -> [2017/05/26 14:10:08 | 000,000,000 | ---D | C] Movavi Video Suite 11 -> C:\ProgramData\Movavi Video Suite 11 -> [2017/05/26 12:37:14 | 000,000,000 | ---D | C] MOVAVI -> C:\Users\Jean-Marie\AppData\Roaming\MOVAVI -> [2017/05/26 12:33:14 | 000,000,000 | ---D | C] Movavi Video Suite 11 -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movavi Video Suite 11 -> [2017/05/26 12:31:25 | 000,000,000 | ---D | C] Movavi Video Suite 11 -> C:\Program Files (x86)\Movavi Video Suite 11 -> [2017/05/26 12:30:03 | 000,000,000 | ---D | C] MiniTool Power Data Recovery 7.0 -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool Power Data Recovery 7.0 -> [2017/05/26 10:56:37 | 000,000,000 | ---D | C] PowerDataRecovery -> C:\Program Files\PowerDataRecovery -> [2017/05/26 10:56:27 | 000,000,000 | ---D | C] Bing Bureau -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bing Bureau -> [2017/05/26 10:37:33 | 000,000,000 | ---D | C] Microsoft -> C:\Program Files (x86)\Microsoft -> [2017/05/26 10:37:19 | 000,000,000 | ---D | C] Thunderbird -> C:\Users\Jean-Marie\AppData\Roaming\Thunderbird -> [2017/05/26 09:25:24 | 000,000,000 | ---D | C] Thunderbird -> C:\Users\Jean-Marie\AppData\Local\Thunderbird -> [2017/05/26 09:25:24 | 000,000,000 | ---D | C] Mozilla Maintenance Service -> C:\Program Files (x86)\Mozilla Maintenance Service -> [2017/05/26 09:24:55 | 000,000,000 | ---D | C] Mozilla Thunderbird -> C:\Program Files (x86)\Mozilla Thunderbird -> [2017/05/26 09:24:15 | 000,000,000 | ---D | C] Glarysoft -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glarysoft -> [2017/05/26 06:33:22 | 000,000,000 | ---D | C] Glarysoft -> C:\ProgramData\Glarysoft -> [2017/05/26 06:32:57 | 000,000,000 | ---D | C] Glarysoft -> C:\Program Files (x86)\Glarysoft -> [2017/05/26 06:30:54 | 000,000,000 | ---D | C] Glary Utilities 5 -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5 -> [2017/05/26 06:26:49 | 000,000,000 | ---D | C] GlarySoft -> C:\Users\Jean-Marie\AppData\Roaming\GlarySoft -> [2017/05/26 06:26:08 | 000,000,000 | ---D | C] Glary Utilities 5 -> C:\Program Files (x86)\Glary Utilities 5 -> [2017/05/26 06:23:42 | 000,000,000 | ---D | C] Sauvegarde Personnelle -> C:\Sauvegarde Personnelle -> [2017/05/26 06:21:42 | 000,000,000 | ---D | C] EUFDDISK0.sys -> C:\WINDOWS\SysNative\drivers\EUFDDISK0.sys -> [2017/05/26 06:20:45 | 000,196,776 | ---- | C | MD5 = 6B133EE401475A72D252D49F8736936E] (CHENGDU YIWO Tech Development Co., Ltd) EUBAKUP0.sys -> C:\WINDOWS\SysNative\drivers\EUBAKUP0.sys -> [2017/05/26 06:20:44 | 000,065,192 | ---- | C | MD5 = C5713A2B4C9D9150041FB70C4A2ADE07] (CHENGDU YIWO Tech Development Co., Ltd) eubakup.sys -> C:\WINDOWS\SysNative\drivers\eubakup.sys -> [2017/05/26 06:20:44 | 000,065,192 | ---- | C | MD5 = C5713A2B4C9D9150041FB70C4A2ADE07] (CHENGDU YIWO Tech Development Co., Ltd) EaseUS Todo Backup 10.0 -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Todo Backup 10.0 -> [2017/05/26 06:20:27 | 000,000,000 | ---D | C] Dimo Videomate -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dimo Videomate -> [2017/05/26 06:18:58 | 000,000,000 | ---D | C] fbnative.exe -> C:\WINDOWS\SysNative\fbnative.exe -> [2017/05/26 06:15:05 | 000,026,304 | ---- | C | MD5 = DFBDC24417B2EDE6513F5570E6CD24C8] (CHENGDU YIWO Tech Development Co., Ltd) IsolatedStorage -> C:\ProgramData\IsolatedStorage -> [2017/05/25 21:35:54 | 000,000,000 | ---D | C] Software Informer -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Software Informer -> [2017/05/25 21:33:38 | 000,000,000 | ---D | C] Software Informer -> C:\Users\Jean-Marie\AppData\Roaming\Software Informer -> [2017/05/25 21:33:37 | 000,000,000 | ---D | C] Software Informer -> C:\Program Files\Software Informer -> [2017/05/25 21:33:36 | 000,000,000 | ---D | C] LibreELEC -> C:\Users\Jean-Marie\AppData\Roaming\LibreELEC -> [2017/05/25 21:25:58 | 000,000,000 | ---D | C] CyberLink Application Manager -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Application Manager -> [2017/05/25 21:18:28 | 000,000,000 | R--D | C] vsscanner.sys -> C:\WINDOWS\SysNative\drivers\vsscanner.sys -> [2017/05/25 20:14:43 | 000,029,808 | ---- | C | MD5 = 88457246BE3C9DE59DDAA36305C013F4] (VoodooSoft, LLC) VoodooShield -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VoodooShield -> [2017/05/25 20:14:43 | 000,000,000 | ---D | C] VoodooShield -> C:\ProgramData\VoodooShield -> [2017/05/25 20:14:39 | 000,000,000 | ---D | C] VoodooShield -> C:\Program Files\VoodooShield -> [2017/05/25 20:14:39 | 000,000,000 | ---D | C] tmp0000094c -> C:\WINDOWS\SysWow64\tmp0000094c -> [2017/05/25 19:46:37 | 000,000,000 | ---D | C] Unchecky -> C:\ProgramData\Unchecky -> [2017/05/25 15:09:34 | 000,000,000 | ---D | C] Unchecky -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unchecky -> [2017/05/25 15:09:34 | 000,000,000 | ---D | C] Unchecky -> C:\Program Files (x86)\Unchecky -> [2017/05/25 15:09:33 | 000,000,000 | ---D | C] IM-Magic Partition Resizer Free -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IM-Magic Partition Resizer Free -> [2017/05/25 14:19:15 | 000,000,000 | ---D | C] IM-Magic -> C:\Program Files\IM-Magic -> [2017/05/25 14:19:08 | 000,000,000 | ---D | C] EaseUS Partition Master 12.0 -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Partition Master 12.0 -> [2017/05/25 14:17:44 | 000,000,000 | ---D | C] aswSnx.sys -> C:\WINDOWS\SysNative\drivers\aswSnx.sys -> [2017/05/25 14:06:23 | 001,007,160 | ---- | C | MD5 = EB1991686949400C51B8C21CE013621E] (AVAST Software) aswSP.sys -> C:\WINDOWS\SysNative\drivers\aswSP.sys -> [2017/05/25 14:06:23 | 000,569,192 | ---- | C | MD5 = 7A17BD26C74F5329CB1DF029AE4DD357] (AVAST Software) aswVmm.sys -> C:\WINDOWS\SysNative\drivers\aswVmm.sys -> [2017/05/25 14:06:23 | 000,339,696 | ---- | C | MD5 = E76C21203E29F2DCC489EF585E0B1A38] (AVAST Software) aswStm.sys -> C:\WINDOWS\SysNative\drivers\aswStm.sys -> [2017/05/25 14:06:23 | 000,158,880 | ---- | C | MD5 = 2933CBC7643168E4288D443B4125941C] (AVAST Software) aswMonFlt.sys -> C:\WINDOWS\SysNative\drivers\aswMonFlt.sys -> [2017/05/25 14:06:23 | 000,128,648 | ---- | C | MD5 = 2B1490F2F1CC76C9C9B61CE63D6E7973] (AVAST Software) aswRdr2.sys -> C:\WINDOWS\SysNative\drivers\aswRdr2.sys -> [2017/05/25 14:06:23 | 000,101,152 | ---- | C | MD5 = F26D1F761E14789743275FA5D258EAB8] (AVAST Software) aswRvrt.sys -> C:\WINDOWS\SysNative\drivers\aswRvrt.sys -> [2017/05/25 14:06:23 | 000,075,704 | ---- | C | MD5 = C1007774450CFAB19D784D50C3410FC7] (AVAST Software) aswHwid.sys -> C:\WINDOWS\SysNative\drivers\aswHwid.sys -> [2017/05/25 14:06:23 | 000,038,296 | ---- | C | MD5 = BA02CA77D989710F79FD662019C4DF94] (AVAST Software) aswNetSec.sys -> C:\WINDOWS\SysNative\drivers\aswNetSec.sys -> [2017/05/25 14:06:22 | 000,507,928 | ---- | C | MD5 = DEC5206C45CBB8D8C7EDACFEAE0968B1] (AVAST Software) aswbloga.sys -> C:\WINDOWS\SysNative\drivers\aswbloga.sys -> [2017/05/25 14:06:22 | 000,334,576 | ---- | C | MD5 = 5C561968CF601D76A98692DCC8CF74ED] (AVAST Software s.r.o.) aswbidsdrivera.sys -> C:\WINDOWS\SysNative\drivers\aswbidsdrivera.sys -> [2017/05/25 14:06:22 | 000,311,808 | ---- | C | MD5 = 0C19C91ED99964925FF8B05C23743AB1] (AVAST Software s.r.o.) aswbidsha.sys -> C:\WINDOWS\SysNative\drivers\aswbidsha.sys -> [2017/05/25 14:06:22 | 000,190,256 | ---- | C | MD5 = 670839F4BA6D82F3035AADFE8274F02E] (AVAST Software s.r.o.) aswbuniva.sys -> C:\WINDOWS\SysNative\drivers\aswbuniva.sys -> [2017/05/25 14:06:22 | 000,049,016 | ---- | C | MD5 = 335E5F19E7397A283B7ED20FE7B369EB] (AVAST Software s.r.o.) aswBoot.exe -> C:\WINDOWS\SysNative\aswBoot.exe -> [2017/05/25 14:05:59 | 000,400,456 | ---- | C | MD5 = C7FB2578AD61DB530FF8169348EE9A30] (AVAST Software) Power2Go10 -> C:\Users\Jean-Marie\AppData\Local\Power2Go10 -> [2017/05/24 22:08:16 | 000,000,000 | ---D | C] ProductData -> C:\ProgramData\ProductData -> [2017/05/24 22:07:35 | 000,000,000 | ---D | C] Micro_Application -> C:\Users\Jean-Marie\AppData\Local\Micro_Application -> [2017/05/23 20:40:10 | 000,000,000 | ---D | C] Micro Application -> C:\Users\Jean-Marie\AppData\Local\Micro Application -> [2017/05/23 20:37:01 | 000,000,000 | ---D | C] Studio V5 -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Studio V5 -> [2017/05/23 20:36:07 | 000,000,000 | ---D | C] A4Desk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\A4Desk -> [2017/05/23 20:32:17 | 000,000,000 | ---D | C] A4Desk -> C:\Program Files (x86)\A4Desk -> [2017/05/23 20:32:13 | 000,000,000 | ---D | C] Studio V5 -> C:\Program Files (x86)\Studio V5 -> [2017/05/23 20:28:11 | 000,000,000 | ---D | C] Nikon -> C:\Program Files (x86)\Common Files\Nikon -> [2017/05/23 17:07:58 | 000,000,000 | ---D | C] CyberLink PhotoDirector 8 -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PhotoDirector 8 -> [2017/05/23 17:07:53 | 000,000,000 | R--D | C] ATI Technologies -> C:\Program Files (x86)\ATI Technologies -> [2017/05/23 16:27:50 | 000,000,000 | ---D | C] IObitSmartDefragExtension.dll -> C:\WINDOWS\SysNative\IObitSmartDefragExtension.dll -> [2017/05/23 15:55:57 | 000,128,288 | ---- | C | MD5 = D506921989872994B9C5615D4761882C] (IObit) SmartDefragDriver.sys -> C:\WINDOWS\SysNative\drivers\SmartDefragDriver.sys -> [2017/05/23 15:55:55 | 000,030,744 | ---- | C | MD5 = D2DDE8F0BD39F90E43146DB0B3B5DA57] (IObit) McAfee -> C:\Program Files (x86)\Common Files\McAfee -> [2017/05/23 14:41:53 | 000,000,000 | ---D | C] McAfee -> C:\Program Files (x86)\McAfee -> [2017/05/23 14:41:10 | 000,000,000 | ---D | C] McAfee -> C:\ProgramData\McAfee -> [2017/05/23 14:40:15 | 000,000,000 | ---D | C] cyberlink mediasuite 15 setup by findmysoft -> C:\Users\Jean-Marie\AppData\Local\cyberlink mediasuite 15 setup by findmysoft -> [2017/05/23 14:38:16 | 000,000,000 | ---D | C] {EAAB5A83-3809-4B0E-83A6-E4B0DBF2157E} -> C:\ProgramData\{EAAB5A83-3809-4B0E-83A6-E4B0DBF2157E} -> [2017/05/23 12:34:38 | 000,000,000 | ---D | C] Codecs -> C:\WINDOWS\SysWow64\Codecs -> [2017/05/23 12:30:47 | 000,000,000 | ---D | C] Greenshot -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Greenshot -> [2017/05/23 12:29:00 | 000,000,000 | ---D | C] Greenshot -> C:\Program Files\Greenshot -> [2017/05/23 12:28:58 | 000,000,000 | ---D | C] WiPS Security 2.1 -> C:\Program Files (x86)\WiPS Security 2.1 -> [2017/05/23 12:19:24 | 000,000,000 | ---D | C] La_Cle_USB_du_Photographe_Nomade_Version_Allegee_2.0.1 -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\La_Cle_USB_du_Photographe_Nomade_Version_Allegee_2.0.1 -> [2017/05/23 12:15:06 | 000,000,000 | ---D | C] La_Cle_USB_du_Photographe_Nomade_Version_Allegee_2.0.1 -> C:\Program Files (x86)\La_Cle_USB_du_Photographe_Nomade_Version_Allegee_2.0.1 -> [2017/05/23 12:12:22 | 000,000,000 | ---D | C] DAEMON Tools Pro -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Pro -> [2017/05/23 12:10:27 | 000,000,000 | ---D | C] DAEMON Tools Pro -> C:\Program Files\DAEMON Tools Pro -> [2017/05/23 12:09:52 | 000,000,000 | ---D | C] Dashlane -> C:\Users\Jean-Marie\AppData\Roaming\Dashlane -> [2017/05/23 12:02:43 | 000,000,000 | ---D | C] TriSun_Software_Limited -> C:\Users\Jean-Marie\AppData\Local\TriSun_Software_Limited -> [2017/05/23 12:01:59 | 000,000,000 | ---D | C] TSS -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TSS -> [2017/05/23 12:00:51 | 000,000,000 | ---D | C] TSS -> C:\Program Files (x86)\TSS -> [2017/05/23 12:00:51 | 000,000,000 | ---D | C] Apple Computer -> C:\Users\Jean-Marie\AppData\Roaming\Apple Computer -> [2017/05/23 11:59:38 | 000,000,000 | ---D | C] iMyFone -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iMyFone -> [2017/05/23 11:59:31 | 000,000,000 | ---D | C] iMyFone -> C:\Program Files (x86)\iMyFone -> [2017/05/23 11:59:14 | 000,000,000 | ---D | C] opera autoupdate -> C:\Users\Jean-Marie\opera autoupdate -> [2017/05/23 07:28:12 | 000,000,000 | ---D | C] PortableApps -> C:\PortableApps -> [2017/05/23 04:33:46 | 000,000,000 | ---D | C] Documents -> C:\Documents -> [2017/05/23 04:33:45 | 000,000,000 | --SD | C] CodySafe -> C:\CodySafe -> [2017/05/23 04:33:31 | 000,000,000 | --SD | C] Wise Registry Cleaner Free -> C:\Wise Registry Cleaner Free -> [2017/05/22 23:53:45 | 000,000,000 | ---D | C] RtCRX64.dll -> C:\WINDOWS\SysNative\RtCRX64.dll -> [2017/05/22 22:52:30 | 000,084,480 | ---- | C | MD5 = D7CFCE6811519582690065C21088E9A5] (Realtek Semiconductor.) Foolish IT -> C:\ProgramData\Foolish IT -> [2017/05/22 22:35:59 | 000,000,000 | ---D | C] IMFCameraProtect.sys -> C:\WINDOWS\SysNative\drivers\IMFCameraProtect.sys -> [2017/05/22 21:46:28 | 000,044,096 | ---- | C | MD5 = 870BDFC29BAC30339BF70639781143FD] (IObit.com) sda -> C:\WINDOWS\SysWow64\sda -> [2017/05/22 21:45:21 | 000,000,000 | ---D | C] Genesys Logic -> C:\Program Files (x86)\Genesys Logic -> [2017/05/22 21:44:54 | 000,000,000 | ---D | C] SmartDefragBootTime.exe -> C:\WINDOWS\SysNative\SmartDefragBootTime.exe -> [2017/05/22 21:43:53 | 000,036,824 | ---- | C | MD5 = D57880A3F9F22D67974EF0EB8B67021C] (IObit) Smart Defrag -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Defrag -> [2017/05/22 21:42:42 | 000,000,000 | ---D | C] SuperBoost -> C:\ProgramData\SuperBoost -> [2017/05/22 21:35:39 | 000,000,000 | ---D | C] Superb Game Boost -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Superb Game Boost -> [2017/05/22 21:34:32 | 000,000,000 | ---D | C] EasyHook32.dll -> C:\WINDOWS\SysWow64\EasyHook32.dll -> [2017/05/22 21:33:06 | 000,229,184 | ---- | C | MD5 = 623A8CB497DF298E78091B6D48BA046A] (easyhook.codeplex.com) SuperBoost -> C:\Users\Jean-Marie\AppData\Roaming\SuperBoost -> [2017/05/22 21:31:34 | 000,000,000 | ---D | C] SuperBoost -> C:\Program Files (x86)\SuperBoost -> [2017/05/22 21:31:29 | 000,000,000 | ---D | C] Mindomo -> C:\Users\Jean-Marie\AppData\Roaming\Mindomo -> [2017/05/22 21:14:55 | 000,000,000 | ---D | C] Mindomo -> C:\Program Files (x86)\Mindomo -> [2017/05/22 21:13:29 | 000,000,000 | ---D | C] lfs ultra & 100% sécurisé finalis part G. Lobale Finale apps multisetup -> C:\Users\Jean-Marie\AppData\Local\lfs ultra & 100% sécurisé finalis part G. Lobale Finale apps multisetup -> [2017/05/22 21:07:40 | 000,000,000 | ---D | C] Loaris -> C:\ProgramData\Loaris -> [2017/05/22 12:23:22 | 000,000,000 | ---D | C] Opera Software -> C:\Users\Jean-Marie\AppData\Local\Opera Software -> [2017/05/22 07:26:07 | 000,000,000 | ---D | C] Opera Software -> C:\Users\Jean-Marie\AppData\Roaming\Opera Software -> [2017/05/22 07:24:29 | 000,000,000 | ---D | C] GiliSoft -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GiliSoft -> [2017/05/21 16:29:54 | 000,000,000 | ---D | C] %LOCALAPPDATA% -> C:\WINDOWS\%LOCALAPPDATA% -> [2017/05/21 14:05:45 | 000,000,000 | ---D | C] Windows 10 IoT Core -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 10 IoT Core -> [2017/05/21 13:43:49 | 000,000,000 | ---D | C] Sothink Media Toolkit -> C:\Users\Jean-Marie\Documents\Sothink Media Toolkit -> [2017/05/19 13:23:32 | 000,000,000 | ---D | C] Sothink Media Toolkit -> C:\Users\Jean-Marie\AppData\Roaming\Sothink Media Toolkit -> [2017/05/19 13:23:32 | 000,000,000 | ---D | C] Sothink Media Toolkit -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sothink Media Toolkit -> [2017/05/19 13:22:40 | 000,000,000 | ---D | C] Sothink Media Toolkit -> C:\Program Files (x86)\Sothink Media Toolkit -> [2017/05/19 13:21:09 | 000,000,000 | ---D | C] Dimo Videomate -> C:\Program Files (x86)\Dimo Videomate -> [2017/05/19 13:18:44 | 000,000,000 | ---D | C] UX Pack -> C:\Program Files (x86)\UX Pack -> [2017/05/19 13:12:43 | 000,000,000 | ---D | C] Flurry.scr -> C:\WINDOWS\Flurry.scr -> [2017/05/19 13:11:04 | 000,118,845 | ---- | C | MD5 = 04810EC57CBBDD1F047C8217B9F6C092] (Matt Ginzton) GiliSoft -> C:\Users\Jean-Marie\AppData\Roaming\GiliSoft -> [2017/05/19 11:43:56 | 000,000,000 | ---D | C] GiliSoft -> C:\Program Files (x86)\GiliSoft -> [2017/05/19 11:41:47 | 000,000,000 | ---D | C] BDAntiRansomware -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BDAntiRansomware -> [2017/05/19 11:38:54 | 000,000,000 | ---D | C] Bitdefender -> C:\Program Files\Bitdefender -> [2017/05/19 11:38:50 | 000,000,000 | ---D | C] CryptoPrevent -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CryptoPrevent -> [2017/05/19 11:37:25 | 000,000,000 | ---D | C] Foolish IT -> C:\Program Files (x86)\Foolish IT -> [2017/05/19 11:37:04 | 000,000,000 | ---D | C] PDF-XChange PDF Viewer -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF-XChange PDF Viewer -> [2017/05/19 11:22:32 | 000,000,000 | ---D | C] Tracker Software -> C:\ProgramData\Tracker Software -> [2017/05/19 11:22:29 | 000,000,000 | ---D | C] pxcpm5L.dll -> C:\WINDOWS\SysNative\pxcpm5L.dll -> [2017/05/19 11:18:49 | 000,150,720 | ---- | C | MD5 = AEA44FFAF079E81EA79B52F78DBA2420] (Tracker Software Products (Canada) Ltd.) Tracker Software -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tracker Software -> [2017/05/19 11:18:44 | 000,000,000 | ---D | C] Tracker Software -> C:\Program Files\Tracker Software -> [2017/05/19 11:18:33 | 000,000,000 | ---D | C] Temp -> C:\Users\Jean-Marie\AppData\Local\Temp -> [2017/05/19 03:51:59 | 000,000,000 | ---D | C] System Volume Information -> C:\System Volume Information -> [2017/05/19 03:26:17 | 000,000,000 | -HSD | C] Unreal Commander -> C:\Unreal Commander -> [2017/05/12 06:11:03 | 000,000,000 | R--D | C] vuze & lfsu100%sf part widen apps (giveaways 12 & 13 mai, winoptimizer 15, dt lite v11 ou v10.6, ...) -> C:\Users\Jean-Marie\Desktop\vuze & lfsu100%sf part widen apps (giveaways 12 & 13 mai, winoptimizer 15, dt lite v11 ou v10.6, ...) -> [2017/05/12 05:55:14 | 000,000,000 | ---D | C] ATI2016WD_build33 -> C:\Users\Jean-Marie\Desktop\ATI2016WD_build33 -> [2017/05/12 04:34:33 | 000,000,000 | ---D | C] Admin Arsenal -> C:\Users\Public\Documents\Admin Arsenal -> [2017/05/12 03:50:24 | 000,000,000 | ---D | C] Downloaded Installations -> C:\WINDOWS\Downloaded Installations -> [2017/05/05 13:28:07 | 000,000,000 | ---D | C] EFL -> C:\Users\Public\Documents\EFL -> [2017/05/05 13:17:42 | 000,000,000 | ---D | C] ManageMy_Barrow 2à4, Widen & lfsu100%sf -> C:\Users\Jean-Marie\Desktop\ManageMy_Barrow 2à4, Widen & lfsu100%sf -> [2017/05/05 13:15:14 | 000,000,000 | R--D | C] Syncios -> C:\Users\Jean-Marie\Documents\Syncios -> [2017/05/05 12:43:14 | 000,000,000 | ---D | C] KDirectShow -> C:\WINDOWS\SysWow64\KDirectShow -> [2017/05/05 12:29:51 | 000,000,000 | ---D | C] teifoc _ vierge _ suir -> C:\Users\Jean-Marie\Documents\teifoc _ vierge _ suir -> [2017/05/04 11:10:47 | 000,000,000 | ---D | C] Minidump -> C:\WINDOWS\Minidump -> [2017/05/02 14:42:10 | 000,000,000 | ---D | C] Windows 10 UX Pack 7.0 -> C:\Users\Jean-Marie\Documents\Windows 10 UX Pack 7.0 -> [2017/05/02 13:42:01 | 000,000,000 | ---D | C] Windows 10 Transformation Pack 7.0 -> C:\Users\Jean-Marie\Documents\Windows 10 Transformation Pack 7.0 -> [2017/05/02 13:41:14 | 000,000,000 | ---D | C] My CamStudio Videos -> C:\Users\Jean-Marie\Documents\My CamStudio Videos -> [2017/05/02 11:25:36 | 000,000,000 | ---D | C] AmazingSave -> C:\AmazingSave -> [2017/05/02 10:36:24 | 000,000,000 | ---D | C] My CamStudio Temp Files -> C:\Users\Jean-Marie\Documents\My CamStudio Temp Files -> [2017/05/02 10:11:32 | 000,000,000 | ---D | C] cgnetfilter1521.sys -> C:\WINDOWS\SysNative\drivers\cgnetfilter1521.sys -> [2017/05/01 22:58:44 | 000,084,768 | ---- | C | MD5 = 44293BF717CA39DC925C6A05453D8D34] (Windows (R) Win 7 DDK provider) cyberlink power2go 11 essentials - the efm du musée de l'homme, 1er app lfs ultra après lfs ultra finalis pass lfsu-100%s-cewbe suite to version 4, and widen application -> C:\Users\Jean-Marie\Desktop\cyberlink power2go 11 essentials - the efm du musée de l'homme, 1er app lfs ultra après lfs ultra finalis pass lfsu-100%s-cewbe suite to version 4, and widen application -> [2017/05/01 22:57:37 | 000,000,000 | R--D | C] GUSBootStartup.sys -> C:\WINDOWS\SysNative\drivers\GUSBootStartup.sys -> [2017/05/01 21:53:38 | 000,020,160 | ---- | C | MD5 = E4626B663B94E5FEB90F497395B5C059] (Glarysoft Ltd) Mes téléchargements Filehippo -> C:\Users\Jean-Marie\Documents\Mes téléchargements Filehippo -> [2017/04/30 19:16:30 | 000,000,000 | ---D | C] pdftotext.exe -> C:\WINDOWS\SysNative\pdftotext.exe -> [2017/04/30 18:28:03 | 000,552,448 | ---- | C | MD5 = 1FEFCBFFE96D2C5EE074AAE27846C30E] (Glyph & Cog, LLC ) pdfinfo.exe -> C:\WINDOWS\SysNative\pdfinfo.exe -> [2017/04/30 18:28:03 | 000,514,560 | ---- | C | MD5 = 1BD31AF098E9E4A4A48D2ECFF0A12F30] (Glyph & Cog, LLC ) prodad-codec.dll -> C:\WINDOWS\SysNative\prodad-codec.dll -> [2017/04/29 18:19:45 | 000,607,256 | ---- | C | MD5 = 0225FC6F0D91F84B44CE252487D8D725] (proDAD GmbH) proDAD-PA-Support.dll -> C:\WINDOWS\SysNative\proDAD-PA-Support.dll -> [2017/04/29 18:19:30 | 000,376,344 | ---- | C | MD5 = E5FCE41A5114E40EE573AB8631925BF3] (proDAD GmbH) video -> C:\Users\Jean-Marie\Documents\video -> [2017/04/29 11:33:00 | 000,000,000 | ---D | C] Tuto 'n' copy apps for yc8 & phd9 -> C:\Users\Jean-Marie\Desktop\Tuto 'n' copy apps for yc8 & phd9 -> [2017/04/29 09:47:29 | 000,000,000 | ---D | C] diskpt.sys -> C:\WINDOWS\SysNative\drivers\diskpt.sys -> [2017/04/29 09:20:53 | 000,417,424 | ---- | C | MD5 = 265A5B7037EE283830148F5F906DF425] (SHADOWDEFENDER.COM) dtliteusbbus.sys -> C:\WINDOWS\SysNative\drivers\dtliteusbbus.sys -> [2017/04/28 14:08:47 | 000,047,672 | ---- | C | MD5 = E23FDD696839A4790682CA66C48D3F2F] (Disc Soft Ltd) dtlitescsibus.sys -> C:\WINDOWS\SysNative\drivers\dtlitescsibus.sys -> [2017/04/28 14:05:39 | 000,030,264 | ---- | C | MD5 = 679FF716052109392D870F6A6C4A3535] (Disc Soft Ltd) PolicyDefinitions -> C:\WINDOWS\SysWow64\PolicyDefinitions -> [2017/04/28 13:58:48 | 000,000,000 | ---D | C] HardDiskShield -> C:\Users\Jean-Marie\Documents\HardDiskShield -> [2017/04/28 13:45:26 | 000,000,000 | ---D | C] CFDecode64.ax -> C:\WINDOWS\SysNative\CFDecode64.ax -> [2017/04/28 13:10:08 | 001,250,304 | ---- | C | MD5 = F18E1F295EBB5FDD7E6D93571113E5A8] (CineForm Inc.) Wondershare Filmora -> C:\Users\Jean-Marie\Documents\Wondershare Filmora -> [2017/04/28 13:08:55 | 000,000,000 | ---D | C] Wondershare -> C:\Users\Public\Documents\Wondershare -> [2017/04/28 13:05:37 | 000,000,000 | ---D | C] Aiseesoft Studio -> C:\Users\Jean-Marie\Documents\Aiseesoft Studio -> [2017/04/28 12:23:27 | 000,000,000 | ---D | C] rsdrvx64.sys -> C:\WINDOWS\SysNative\drivers\rsdrvx64.sys -> [2017/04/27 15:56:01 | 000,026,024 | ---- | C | MD5 = 4778EEECB75C6FB419745BEED3530B9D] (EldoS Corporation) Speed Install -> C:\Users\Jean-Marie\Documents\Speed Install -> [2017/04/27 15:52:05 | 000,000,000 | ---D | C] rsrorx32.dll -> C:\WINDOWS\SysWow64\rsrorx32.dll -> [2017/04/27 15:50:02 | 002,451,048 | ---- | C | MD5 = 3FE1177C731A499D875FFD2555C0EED1] (Advanced Messaging Systems LLC) rsror32.dll -> C:\WINDOWS\SysWow64\rsror32.dll -> [2017/04/27 15:49:49 | 007,963,240 | ---- | C | MD5 = F5C5B3A75783BEFF7257EABA026783CA] (Advanced Messaging Systems LLC) rsror64.dll -> C:\WINDOWS\SysNative\rsror64.dll -> [2017/04/27 15:49:32 | 012,800,104 | ---- | C | MD5 = 166CDCF1CA92579C051BCA8C5C13C3FB] (Advanced Messaging Systems LLC) rsrorx64.dll -> C:\WINDOWS\SysNative\rsrorx64.dll -> [2017/04/27 15:49:32 | 003,884,136 | ---- | C | MD5 = F7BAB6656AA3851FB90D3E1699F9B946] (Advanced Messaging Systems LLC) HWiNFO64A.SYS -> C:\WINDOWS\SysWow64\drivers\HWiNFO64A.SYS -> [2017/04/27 15:06:30 | 000,027,552 | ---- | C | MD5 = EF558A02D734A1403583E95CCEEC2487] (REALiX(tm)) ImCleanDisabled -> C:\WINDOWS\tasks\ImCleanDisabled -> [2017/04/27 14:55:19 | 000,000,000 | ---D | C] autres applications -> C:\Users\Jean-Marie\Desktop\autres applications -> [2017/04/27 14:44:54 | 000,000,000 | ---D | C] OneDriveTemp -> C:\OneDriveTemp -> [2017/04/27 10:34:27 | 000,000,000 | -H-D | C] FyK -> C:\FyK -> [2017/04/27 10:05:45 | 000,000,000 | ---D | C] souvenir seule dernier version findykill et backup dextop 1er septem 2016 -> C:\Users\Jean-Marie\Desktop\souvenir seule dernier version findykill et backup dextop 1er septem 2016 -> [2017/04/27 10:04:36 | 000,000,000 | ---D | C] Recovery -> C:\Recovery -> [2017/04/26 19:45:05 | 000,000,000 | -HSD | C] DXCpl.exe -> C:\WINDOWS\SysWow64\DXCpl.exe -> [2017/04/26 19:28:27 | 000,370,176 | ---- | C | MD5 = 806562190B84D33BD3C98B3CE2EE5E57] (Windows (R) Win 7 DDK provider) DXCpl.exe -> C:\WINDOWS\SysNative\DXCpl.exe -> [2017/04/26 19:28:26 | 000,393,216 | ---- | C | MD5 = 4F17B3F6BD4253E30FAA8E28961B55E2] (Windows (R) Win 7 DDK provider) ServiceProfiles -> C:\WINDOWS\ServiceProfiles -> [2017/04/26 19:26:27 | 000,000,000 | ---D | C] Microsoft -> C:\WINDOWS\SysNative\Microsoft -> [2017/04/26 19:26:27 | 000,000,000 | ---D | C] XPSViewer -> C:\WINDOWS\SysWow64\XPSViewer -> [2017/04/26 19:18:54 | 000,000,000 | ---D | C] Mes vidéos -> C:\Users\Jean-Marie\Documents\Mes vidéos -> [2017/04/26 18:53:30 | 000,000,000 | -HSD | C] Mes images -> C:\Users\Jean-Marie\Documents\Mes images -> [2017/04/26 18:53:30 | 000,000,000 | -HSD | C] Ma musique -> C:\Users\Jean-Marie\Documents\Ma musique -> [2017/04/26 18:53:30 | 000,000,000 | -HSD | C] SRSLabs -> C:\WINDOWS\SysNative\SRSLabs -> [2017/04/26 18:50:57 | 000,000,000 | ---D | C] RTCOM -> C:\WINDOWS\SysWow64\RTCOM -> [2017/04/26 18:50:33 | 000,000,000 | ---D | C] Prefetch -> C:\WINDOWS\Prefetch -> [2017/04/26 18:48:40 | 000,000,000 | ---D | C] SleepStudy -> C:\WINDOWS\SysNative\SleepStudy -> [2017/04/26 18:47:17 | 000,000,000 | ---D | C] Panther -> C:\WINDOWS\Panther -> [2017/04/26 16:34:14 | 000,000,000 | ---D | C] AeroGlass -> C:\AeroGlass -> [2017/04/26 13:54:01 | 000,000,000 | ---D | C] Look_my_hardware -> C:\Look_my_hardware -> [2017/04/26 12:14:47 | 000,000,000 | ---D | C] SkinPack -> C:\SkinPack -> [2017/04/25 18:18:12 | 000,000,000 | ---D | C] MBAMSwissArmy.sys -> C:\WINDOWS\SysNative\drivers\MBAMSwissArmy.sys -> [2017/04/25 15:42:45 | 000,251,832 | ---- | C | MD5 = 53283EB9998AC9350E14C35A880989DB] (Malwarebytes) _OTM -> C:\_OTM -> [2017/04/25 15:20:43 | 000,000,000 | ---D | C] cadeaux jes-jes m-moulu st-j conr 17_3 & lfsu100%sf pt Z -> C:\Users\Jean-Marie\Desktop\cadeaux jes-jes m-moulu st-j conr 17_3 & lfsu100%sf pt Z -> [2017/04/24 17:38:28 | 000,000,000 | ---D | C] MMPDrv.sys -> C:\WINDOWS\SysNative\drivers\MMPDrv.sys -> [2017/04/24 15:30:31 | 000,021,752 | ---- | C | MD5 = 650D69D771F2B511DE7E9369DF1F90DE] () PhotoImpression Screen Saver.scr -> C:\WINDOWS\SysWow64\PhotoImpression Screen Saver.scr -> [2017/04/24 10:29:12 | 000,163,840 | ---- | C | MD5 = C7A1F603619B96503674D15BF4FFE637] (ArcSoft Inc.) teamviewervpn.sys -> C:\WINDOWS\SysNative\drivers\teamviewervpn.sys -> [2017/04/24 09:48:03 | 000,035,112 | ---- | C | MD5 = F5520DBB47C60EE83024B38720ABDA24] (TeamViewer GmbH) Videos -> C:\Users\Jean-Marie\Documents\Videos -> [2017/04/24 09:45:08 | 000,000,000 | ---D | C] tm20dec.ax -> C:\WINDOWS\SysWow64\tm20dec.ax -> [2017/04/24 09:40:29 | 000,140,800 | ---- | C | MD5 = 89112689A307A65769CA942079CACE9B] (The Duck Corporation) pcdlib32.dll -> C:\WINDOWS\pcdlib32.dll -> [2017/04/24 09:23:13 | 000,212,480 | ---- | C | MD5 = F007C4273BA24B52A56387E899311DB7] (Eastman Kodak) TeamViewer_Setup.exe -> C:\Users\Jean-Marie\Documents\TeamViewer_Setup.exe -> [2017/04/24 09:06:11 | 014,718,840 | ---- | C | MD5 = A1ED5F97B6D7D5756EF1C2E4D4F554B0] (TeamViewer GmbH) EverySync -> C:\EverySync -> [2017/04/23 14:05:27 | 000,000,000 | ---D | C] fondamentaux 1er semestre 2014 + lfsu100%sf part F -> C:\Users\Jean-Marie\Documents\fondamentaux 1er semestre 2014 + lfsu100%sf part F -> [2017/04/23 11:56:24 | 000,000,000 | ---D | C] GUBootStartup.sys -> C:\WINDOWS\SysNative\drivers\GUBootStartup.sys -> [2017/04/23 11:52:39 | 000,020,160 | ---- | C | MD5 = C06C3D6C5A0805B314E3E940632C97CB] (Glarysoft Ltd) Hydrogen -> C:\WINDOWS\SysNative\Hydrogen -> [2017/03/20 07:11:49 | 000,000,000 | ---D | C] HoloShell -> C:\WINDOWS\HoloShell -> [2017/03/20 07:11:49 | 000,000,000 | ---D | C] OCR -> C:\WINDOWS\OCR -> [2017/03/20 07:11:22 | 000,000,000 | ---D | C] SKB -> C:\WINDOWS\SKB -> [2017/03/20 07:11:06 | 000,000,000 | ---D | C] winrm -> C:\WINDOWS\SysWow64\winrm -> [2017/03/20 07:10:28 | 000,000,000 | ---D | C] WCN -> C:\WINDOWS\SysWow64\WCN -> [2017/03/20 07:10:28 | 000,000,000 | ---D | C] sysprep -> C:\WINDOWS\SysWow64\sysprep -> [2017/03/20 07:10:28 | 000,000,000 | ---D | C] slmgr -> C:\WINDOWS\SysWow64\slmgr -> [2017/03/20 07:10:28 | 000,000,000 | ---D | C] Printing_Admin_Scripts -> C:\WINDOWS\SysWow64\Printing_Admin_Scripts -> [2017/03/20 07:10:28 | 000,000,000 | ---D | C] winrm -> C:\WINDOWS\SysNative\winrm -> [2017/03/20 07:10:27 | 000,000,000 | ---D | C] WCN -> C:\WINDOWS\SysNative\WCN -> [2017/03/20 07:10:27 | 000,000,000 | ---D | C] UMDF -> C:\WINDOWS\SysWow64\drivers\UMDF -> [2017/03/20 07:10:27 | 000,000,000 | ---D | C] slmgr -> C:\WINDOWS\SysNative\slmgr -> [2017/03/20 07:10:27 | 000,000,000 | ---D | C] Printing_Admin_Scripts -> C:\WINDOWS\SysNative\Printing_Admin_Scripts -> [2017/03/20 07:10:27 | 000,000,000 | ---D | C] fr-FR -> C:\WINDOWS\SysWow64\drivers\fr-FR -> [2017/03/20 07:10:27 | 000,000,000 | ---D | C] fr -> C:\WINDOWS\SysWow64\fr -> [2017/03/20 07:10:27 | 000,000,000 | ---D | C] en-US -> C:\WINDOWS\SysWow64\drivers\UMDF\en-US -> [2017/03/20 07:10:27 | 000,000,000 | ---D | C] en-US -> C:\WINDOWS\SysWow64\drivers\en-US -> [2017/03/20 07:10:27 | 000,000,000 | ---D | C] en -> C:\WINDOWS\SysWow64\en -> [2017/03/20 07:10:27 | 000,000,000 | ---D | C] 0409 -> C:\WINDOWS\SysWow64\0409 -> [2017/03/20 07:10:27 | 000,000,000 | ---D | C] fr-FR -> C:\WINDOWS\SysNative\drivers\UMDF\fr-FR -> [2017/03/20 07:10:26 | 000,000,000 | ---D | C] fr-FR -> C:\WINDOWS\SysNative\drivers\fr-FR -> [2017/03/20 07:10:26 | 000,000,000 | ---D | C] fr-FR -> C:\WINDOWS\fr-FR -> [2017/03/20 07:10:26 | 000,000,000 | ---D | C] fr -> C:\WINDOWS\SysNative\fr -> [2017/03/20 07:10:26 | 000,000,000 | ---D | C] en-US -> C:\WINDOWS\SysNative\drivers\UMDF\en-US -> [2017/03/20 07:10:26 | 000,000,000 | ---D | C] en-US -> C:\WINDOWS\SysNative\drivers\en-US -> [2017/03/20 07:10:26 | 000,000,000 | ---D | C] en-US -> C:\WINDOWS\en-US -> [2017/03/20 07:10:26 | 000,000,000 | ---D | C] en -> C:\WINDOWS\SysNative\en -> [2017/03/20 07:10:26 | 000,000,000 | ---D | C] DigitalLocker -> C:\WINDOWS\DigitalLocker -> [2017/03/20 07:10:26 | 000,000,000 | ---D | C] 0409 -> C:\WINDOWS\SysNative\0409 -> [2017/03/20 07:10:26 | 000,000,000 | ---D | C] Setup -> C:\WINDOWS\Setup -> [2017/03/18 23:06:43 | 000,000,000 | ---D | C] Web -> C:\WINDOWS\Web -> [2017/03/18 23:03:30 | 000,000,000 | ---D | C] Nui -> C:\WINDOWS\SysWow64\Nui -> [2017/03/18 23:03:29 | 000,000,000 | --SD | C] Nui -> C:\WINDOWS\SysNative\Nui -> [2017/03/18 23:03:29 | 000,000,000 | --SD | C] F12 -> C:\WINDOWS\SysWow64\F12 -> [2017/03/18 23:03:29 | 000,000,000 | --SD | C] F12 -> C:\WINDOWS\SysNative\F12 -> [2017/03/18 23:03:29 | 000,000,000 | --SD | C] dsc -> C:\WINDOWS\SysNative\dsc -> [2017/03/18 23:03:29 | 000,000,000 | --SD | C] Downloaded Program Files -> C:\WINDOWS\Downloaded Program Files -> [2017/03/18 23:03:29 | 000,000,000 | --SD | C] DiagSvcs -> C:\WINDOWS\SysWow64\DiagSvcs -> [2017/03/18 23:03:29 | 000,000,000 | --SD | C] DiagSvcs -> C:\WINDOWS\SysNative\DiagSvcs -> [2017/03/18 23:03:29 | 000,000,000 | --SD | C] Configuration -> C:\WINDOWS\SysWow64\Configuration -> [2017/03/18 23:03:29 | 000,000,000 | --SD | C] Configuration -> C:\WINDOWS\SysNative\Configuration -> [2017/03/18 23:03:29 | 000,000,000 | --SD | C] Media -> C:\WINDOWS\Media -> [2017/03/18 23:03:29 | 000,000,000 | R-SD | C] Fonts -> C:\WINDOWS\Fonts -> [2017/03/18 23:03:29 | 000,000,000 | R-SD | C] PrintDialog -> C:\WINDOWS\PrintDialog -> [2017/03/18 23:03:29 | 000,000,000 | R--D | C] Offline Web Pages -> C:\WINDOWS\Offline Web Pages -> [2017/03/18 23:03:29 | 000,000,000 | R--D | C] MiracastView -> C:\WINDOWS\MiracastView -> [2017/03/18 23:03:29 | 000,000,000 | R--D | C] ImmersiveControlPanel -> C:\WINDOWS\ImmersiveControlPanel -> [2017/03/18 23:03:29 | 000,000,000 | R--D | C] Installer -> C:\WINDOWS\Installer -> [2017/03/18 23:03:29 | 000,000,000 | -HSD | C] ProgramData -> C:\ProgramData -> [2017/03/18 23:03:29 | 000,000,000 | -H-D | C] ELAMBKUP -> C:\WINDOWS\ELAMBKUP -> [2017/03/18 23:03:29 | 000,000,000 | -H-D | C] zh-TW -> C:\WINDOWS\SysWow64\zh-TW -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] zh-TW -> C:\WINDOWS\SysNative\zh-TW -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] zh-CN -> C:\WINDOWS\SysWow64\zh-CN -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] zh-CN -> C:\WINDOWS\SysNative\zh-CN -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] WinMetadata -> C:\WINDOWS\SysWow64\WinMetadata -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] WinMetadata -> C:\WINDOWS\SysNative\WinMetadata -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] winevt -> C:\WINDOWS\SysNative\winevt -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] WindowsPowerShell -> C:\WINDOWS\SysWow64\WindowsPowerShell -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] WindowsPowerShell -> C:\WINDOWS\SysNative\WindowsPowerShell -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] WinBioPlugIns -> C:\WINDOWS\SysNative\WinBioPlugIns -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] WinBioDatabase -> C:\WINDOWS\SysNative\WinBioDatabase -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] WDI -> C:\WINDOWS\SysNative\WDI -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] wbem -> C:\WINDOWS\SysWow64\wbem -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] wbem -> C:\WINDOWS\SysNative\wbem -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Vss -> C:\WINDOWS\Vss -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] uk-UA -> C:\WINDOWS\SysWow64\uk-UA -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] uk-UA -> C:\WINDOWS\SysNative\uk-UA -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] twain_32 -> C:\WINDOWS\twain_32 -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] tr-TR -> C:\WINDOWS\SysWow64\tr-TR -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] tr-TR -> C:\WINDOWS\SysNative\tr-TR -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] tracing -> C:\WINDOWS\tracing -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] th-TH -> C:\WINDOWS\SysWow64\th-TH -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] th-TH -> C:\WINDOWS\SysNative\th-TH -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Temp -> C:\WINDOWS\Temp -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Tasks -> C:\WINDOWS\SysWow64\Tasks -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Tasks -> C:\WINDOWS\SysNative\Tasks -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] TAPI -> C:\WINDOWS\TAPI -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] SystemResources -> C:\WINDOWS\SystemResources -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] SystemResetPlatform -> C:\WINDOWS\SysNative\SystemResetPlatform -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] SystemApps -> C:\WINDOWS\SystemApps -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] System -> C:\WINDOWS\System -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] sv-SE -> C:\WINDOWS\SysWow64\sv-SE -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] sv-SE -> C:\WINDOWS\SysNative\sv-SE -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] sru -> C:\WINDOWS\SysWow64\sru -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] sru -> C:\WINDOWS\SysNative\sru -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] sr-Latn-RS -> C:\WINDOWS\SysWow64\sr-Latn-RS -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] sr-Latn-RS -> C:\WINDOWS\SysNative\sr-Latn-RS -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] sppui -> C:\WINDOWS\SysWow64\sppui -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] sppui -> C:\WINDOWS\SysNative\sppui -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] spp -> C:\WINDOWS\SysWow64\spp -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] spp -> C:\WINDOWS\SysNative\spp -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] spool -> C:\WINDOWS\SysNative\spool -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Speech_OneCore -> C:\WINDOWS\SysWow64\Speech_OneCore -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Speech_OneCore -> C:\WINDOWS\SysNative\Speech_OneCore -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Speech_OneCore -> C:\WINDOWS\Speech_OneCore -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Speech -> C:\WINDOWS\SysWow64\Speech -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Speech -> C:\WINDOWS\System\Speech -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Speech -> C:\WINDOWS\SysNative\Speech -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Speech -> C:\WINDOWS\Speech -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] SMI -> C:\WINDOWS\SysWow64\SMI -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] sl-SI -> C:\WINDOWS\SysWow64\sl-SI -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] sl-SI -> C:\WINDOWS\SysNative\sl-SI -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] sk-SK -> C:\WINDOWS\SysWow64\sk-SK -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] sk-SK -> C:\WINDOWS\SysNative\sk-SK -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] ShellExperiences -> C:\WINDOWS\ShellExperiences -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] setup -> C:\WINDOWS\SysWow64\setup -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] setup -> C:\WINDOWS\SysNative\setup -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] security -> C:\WINDOWS\security -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] SecureBootUpdates -> C:\WINDOWS\SysNative\SecureBootUpdates -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] schemas -> C:\WINDOWS\schemas -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] SchCache -> C:\WINDOWS\SchCache -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] ru-RU -> C:\WINDOWS\SysWow64\ru-RU -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] ru-RU -> C:\WINDOWS\SysNative\ru-RU -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] ro-RO -> C:\WINDOWS\SysWow64\ro-RO -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] ro-RO -> C:\WINDOWS\SysNative\ro-RO -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] restore -> C:\WINDOWS\SysWow64\restore -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] restore -> C:\WINDOWS\SysNative\restore -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Resources -> C:\WINDOWS\Resources -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Registration -> C:\WINDOWS\Registration -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Recovery -> C:\WINDOWS\SysWow64\Recovery -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Recovery -> C:\WINDOWS\SysNative\Recovery -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] RasToast -> C:\WINDOWS\SysWow64\RasToast -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] RasToast -> C:\WINDOWS\SysNative\RasToast -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] ras -> C:\WINDOWS\SysWow64\ras -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] ras -> C:\WINDOWS\SysNative\ras -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] pt-PT -> C:\WINDOWS\SysWow64\pt-PT -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] pt-PT -> C:\WINDOWS\SysNative\pt-PT -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] pt-BR -> C:\WINDOWS\SysWow64\pt-BR -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] pt-BR -> C:\WINDOWS\SysNative\pt-BR -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] ProximityToast -> C:\WINDOWS\SysNative\ProximityToast -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Provisioning -> C:\WINDOWS\Provisioning -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] PolicyDefinitions -> C:\WINDOWS\PolicyDefinitions -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] PointOfService -> C:\WINDOWS\SysNative\PointOfService -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] pl-PL -> C:\WINDOWS\SysWow64\pl-PL -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] pl-PL -> C:\WINDOWS\SysNative\pl-PL -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] PLA -> C:\WINDOWS\PLA -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Performance -> C:\WINDOWS\Performance -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] oobe -> C:\WINDOWS\SysWow64\oobe -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] oobe -> C:\WINDOWS\SysNative\oobe -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] nl-NL -> C:\WINDOWS\SysWow64\nl-NL -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] nl-NL -> C:\WINDOWS\SysNative\nl-NL -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] networklist -> C:\WINDOWS\SysWow64\networklist -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] networklist -> C:\WINDOWS\SysNative\networklist -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] NDF -> C:\WINDOWS\SysWow64\NDF -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] NDF -> C:\WINDOWS\SysNative\NDF -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] nb-NO -> C:\WINDOWS\SysWow64\nb-NO -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] nb-NO -> C:\WINDOWS\SysNative\nb-NO -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] MUI -> C:\WINDOWS\SysWow64\MUI -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] MUI -> C:\WINDOWS\SysNative\MUI -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] MsDtc -> C:\WINDOWS\SysWow64\MsDtc -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] MsDtc -> C:\WINDOWS\SysNative\MsDtc -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] MSDRM -> C:\WINDOWS\SysWow64\MSDRM -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] MSDRM -> C:\WINDOWS\SysNative\MSDRM -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] ModemLogs -> C:\WINDOWS\ModemLogs -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] migwiz -> C:\WINDOWS\SysWow64\migwiz -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] migwiz -> C:\WINDOWS\SysNative\migwiz -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] migration -> C:\WINDOWS\SysWow64\migration -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] migration -> C:\WINDOWS\SysNative\migration -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Migration -> C:\WINDOWS\Migration -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] MailContactsCalendarSync -> C:\WINDOWS\SysWow64\MailContactsCalendarSync -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] MailContactsCalendarSync -> C:\WINDOWS\SysNative\MailContactsCalendarSync -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Macromed -> C:\WINDOWS\SysWow64\Macromed -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Macromed -> C:\WINDOWS\SysNative\Macromed -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] lv-LV -> C:\WINDOWS\SysWow64\lv-LV -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] lv-LV -> C:\WINDOWS\SysNative\lv-LV -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] lt-LT -> C:\WINDOWS\SysWow64\lt-LT -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] lt-LT -> C:\WINDOWS\SysNative\lt-LT -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] LogFiles -> C:\WINDOWS\SysWow64\LogFiles -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] LogFiles -> C:\WINDOWS\SysNative\LogFiles -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] LiveKernelReports -> C:\WINDOWS\LiveKernelReports -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Licenses -> C:\WINDOWS\SysWow64\Licenses -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Licenses -> C:\WINDOWS\SysNative\Licenses -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] L2Schemas -> C:\WINDOWS\L2Schemas -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] ko-KR -> C:\WINDOWS\SysWow64\ko-KR -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] ko-KR -> C:\WINDOWS\SysNative\ko-KR -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] ja-JP -> C:\WINDOWS\SysWow64\ja-JP -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] ja-jp -> C:\WINDOWS\SysNative\ja-jp -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] it-IT -> C:\WINDOWS\SysWow64\it-IT -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] it-IT -> C:\WINDOWS\SysNative\it-IT -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Ipmi -> C:\WINDOWS\SysWow64\Ipmi -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Ipmi -> C:\WINDOWS\SysNative\Ipmi -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] InstallShield -> C:\WINDOWS\SysWow64\InstallShield -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] InputMethod -> C:\WINDOWS\SysWow64\InputMethod -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] InputMethod -> C:\WINDOWS\SysNative\InputMethod -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] InputMethod -> C:\WINDOWS\InputMethod -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] InfusedApps -> C:\WINDOWS\InfusedApps -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] inetsrv -> C:\WINDOWS\SysWow64\inetsrv -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] inetsrv -> C:\WINDOWS\SysNative\inetsrv -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] IME -> C:\WINDOWS\SysWow64\IME -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] IME -> C:\WINDOWS\SysNative\IME -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] IME -> C:\WINDOWS\IME -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] icsxml -> C:\WINDOWS\SysWow64\icsxml -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] icsxml -> C:\WINDOWS\SysNative\icsxml -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] ias -> C:\WINDOWS\SysNative\ias -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] hu-HU -> C:\WINDOWS\SysWow64\hu-HU -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] hu-HU -> C:\WINDOWS\SysNative\hu-HU -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] hr-HR -> C:\WINDOWS\SysWow64\hr-HR -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] hr-HR -> C:\WINDOWS\SysNative\hr-HR -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Help -> C:\WINDOWS\Help -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] he-IL -> C:\WINDOWS\SysWow64\he-IL -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] he-IL -> C:\WINDOWS\SysNative\he-IL -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Globalization -> C:\WINDOWS\Globalization -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] GameBarPresenceWriter -> C:\WINDOWS\GameBarPresenceWriter -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] FxsTmp -> C:\WINDOWS\SysWow64\FxsTmp -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] FxsTmp -> C:\WINDOWS\SysNative\FxsTmp -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] fr-FR -> C:\WINDOWS\SysWow64\fr-FR -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] fr-FR -> C:\WINDOWS\SysNative\fr-FR -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] fr-CA -> C:\WINDOWS\SysWow64\fr-CA -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] fr-CA -> C:\WINDOWS\SysNative\fr-CA -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] fi-FI -> C:\WINDOWS\SysWow64\fi-FI -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] fi-FI -> C:\WINDOWS\SysNative\fi-FI -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] et-EE -> C:\WINDOWS\SysWow64\et-EE -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] et-EE -> C:\WINDOWS\SysNative\et-EE -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] etc -> C:\WINDOWS\SysNative\drivers\etc -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] es-MX -> C:\WINDOWS\SysWow64\es-MX -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] es-MX -> C:\WINDOWS\SysNative\es-MX -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] es-ES -> C:\WINDOWS\SysWow64\es-ES -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] es-ES -> C:\WINDOWS\SysNative\es-ES -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] en-US -> C:\WINDOWS\SysWow64\en-US -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] en-US -> C:\WINDOWS\SysNative\en-US -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] en-GB -> C:\WINDOWS\SysWow64\en-GB -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] en-GB -> C:\WINDOWS\SysNative\en-GB -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] el-GR -> C:\WINDOWS\SysWow64\el-GR -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] el-GR -> C:\WINDOWS\SysNative\el-GR -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] DriverStore -> C:\WINDOWS\SysWow64\DriverStore -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] drivers -> C:\WINDOWS\SysWow64\drivers -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] downlevel -> C:\WINDOWS\SysWow64\downlevel -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Dism -> C:\WINDOWS\SysWow64\Dism -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] diagnostics -> C:\WINDOWS\diagnostics -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] de-DE -> C:\WINDOWS\SysWow64\de-DE -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] de-DE -> C:\WINDOWS\SysNative\de-DE -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] debug -> C:\WINDOWS\debug -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] DDFs -> C:\WINDOWS\SysNative\DDFs -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] da-DK -> C:\WINDOWS\SysWow64\da-DK -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] da-DK -> C:\WINDOWS\SysNative\da-DK -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Cursors -> C:\WINDOWS\Cursors -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] cs-CZ -> C:\WINDOWS\SysWow64\cs-CZ -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] cs-CZ -> C:\WINDOWS\SysNative\cs-CZ -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] config -> C:\WINDOWS\SysWow64\config -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Com -> C:\WINDOWS\SysWow64\Com -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Com -> C:\WINDOWS\SysNative\Com -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] CodeIntegrity -> C:\WINDOWS\SysNative\CodeIntegrity -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] catroot2 -> C:\WINDOWS\SysNative\catroot2 -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] catroot -> C:\WINDOWS\SysWow64\catroot -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Bthprops -> C:\WINDOWS\SysWow64\Bthprops -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Bthprops -> C:\WINDOWS\SysNative\Bthprops -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Branding -> C:\WINDOWS\Branding -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Boot -> C:\WINDOWS\SysNative\Boot -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] Boot -> C:\WINDOWS\Boot -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] bg-BG -> C:\WINDOWS\SysWow64\bg-BG -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] bg-BG -> C:\WINDOWS\SysNative\bg-BG -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] bcastdvr -> C:\WINDOWS\bcastdvr -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] ar-SA -> C:\WINDOWS\SysWow64\ar-SA -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] ar-SA -> C:\WINDOWS\SysNative\ar-SA -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] AppReadiness -> C:\WINDOWS\AppReadiness -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] appraiser -> C:\WINDOWS\SysNative\appraiser -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] AppPatch -> C:\WINDOWS\AppPatch -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] AppLocker -> C:\WINDOWS\SysWow64\AppLocker -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] AppLocker -> C:\WINDOWS\SysNative\AppLocker -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] appcompat -> C:\WINDOWS\appcompat -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] addins -> C:\WINDOWS\addins -> [2017/03/18 23:03:29 | 000,000,000 | ---D | C] assembly -> C:\WINDOWS\assembly -> [2017/03/18 23:03:28 | 000,000,000 | R-SD | C] Program Files -> C:\Program Files -> [2017/03/18 23:03:28 | 000,000,000 | R--D | C] Program Files (x86) -> C:\Program Files (x86) -> [2017/03/18 23:03:28 | 000,000,000 | R--D | C] Microsoft.NET -> C:\WINDOWS\Microsoft.NET -> [2017/03/18 23:03:28 | 000,000,000 | R--D | C] PerfLogs -> C:\PerfLogs -> [2017/03/18 23:03:28 | 000,000,000 | ---D | C] UMDF -> C:\WINDOWS\SysNative\drivers\UMDF -> [2017/03/18 23:02:56 | 000,000,000 | ---D | C] drivers -> C:\WINDOWS\SysNative\drivers -> [2017/03/18 23:02:55 | 000,000,000 | ---D | C] INF -> C:\WINDOWS\INF -> [2017/03/18 23:01:21 | 000,000,000 | ---D | C] DscCoreConfProv.dll -> C:\WINDOWS\SysWow64\DscCoreConfProv.dll -> [2017/03/18 22:58:56 | 000,138,752 | ---- | C | MD5 = DC32B90CF4223CE6E5E50233BD5FB331] (Windows (R) Win 7 DDK provider) icuin.dll -> C:\WINDOWS\SysWow64\icuin.dll -> [2017/03/18 22:58:54 | 001,638,400 | R--- | C | MD5 = 1103780D756AA2FB9E77E3EFCDF0DA01] (The ICU Project) icuuc.dll -> C:\WINDOWS\SysWow64\icuuc.dll -> [2017/03/18 22:58:54 | 001,135,616 | R--- | C | MD5 = 2B0C7708F336874D96DC04B30E3D42CB] (The ICU Project) winsqlite3.dll -> C:\WINDOWS\SysWow64\winsqlite3.dll -> [2017/03/18 22:58:54 | 000,584,216 | ---- | C | MD5 = F56116AC148838EAB5C2A922E3A09625] (SQLite Development Team) DscCoreConfProv.dll -> C:\WINDOWS\SysNative\DscCoreConfProv.dll -> [2017/03/18 22:58:24 | 000,199,680 | ---- | C | MD5 = 28A2688D7A338B67DBF89A13132DB79F] (Windows (R) Win 7 DDK provider) icuin.dll -> C:\WINDOWS\SysNative\icuin.dll -> [2017/03/18 22:58:18 | 001,895,424 | R--- | C | MD5 = 916E53A237FE9B6D90E0F711D9F0801C] (The ICU Project) icuuc.dll -> C:\WINDOWS\SysNative\icuuc.dll -> [2017/03/18 22:58:18 | 001,321,984 | R--- | C | MD5 = BD7D744D60682C2A9C5C1982EEF1A9BF] (The ICU Project) winsqlite3.dll -> C:\WINDOWS\SysNative\winsqlite3.dll -> [2017/03/18 22:58:10 | 000,773,648 | ---- | C | MD5 = 2272140602CB3A800A6C4A4502051A2C] (SQLite Development Team) cht4vx64.sys -> C:\WINDOWS\SysNative\drivers\cht4vx64.sys -> [2017/03/18 22:56:25 | 002,104,224 | ---- | C | MD5 = 863E1C9F6750446DFB9EDCAEC3531367] (Chelsio Communications) adp80xx.sys -> C:\WINDOWS\SysNative\drivers\adp80xx.sys -> [2017/03/18 22:56:25 | 001,135,512 | ---- | C | MD5 = FBDA59118E59B3722248C66BAD89CAA9] (PMC-Sierra) mlx4_bus.sys -> C:\WINDOWS\SysNative\drivers\mlx4_bus.sys -> [2017/03/18 22:56:25 | 000,842,656 | ---- | C | MD5 = 89257B8D3826B5629CF7F73F97DA44F9] (Mellanox) megasr.sys -> C:\WINDOWS\SysNative\drivers\megasr.sys -> [2017/03/18 22:56:25 | 000,575,904 | ---- | C | MD5 = 2B7D3B206833D769218A1F4BE2D73B97] (LSI Corporation, Inc.) ibbus.sys -> C:\WINDOWS\SysNative\drivers\ibbus.sys -> [2017/03/18 22:56:25 | 000,526,240 | ---- | C | MD5 = E16E4FC9F250E48CB2CAD93E59D010E2] (Mellanox) cht4sx64.sys -> C:\WINDOWS\SysNative\drivers\cht4sx64.sys -> [2017/03/18 22:56:25 | 000,347,032 | ---- | C | MD5 = 05EA22CFC40EDE05BF6E3BC782E5204C] (Chelsio Communications) VSTXRAID.SYS -> C:\WINDOWS\SysNative\drivers\VSTXRAID.SYS -> [2017/03/18 22:56:25 | 000,305,568 | ---- | C | MD5 = 98BB6C9AD39D8F2E883093F28282FAEC] (VIA Corporation) amdsbs.sys -> C:\WINDOWS\SysNative\drivers\amdsbs.sys -> [2017/03/18 22:56:25 | 000,259,488 | ---- | C | MD5 = 3B5C5C696F33FE61F1922533B03B9316] (AMD Technologies Inc.) arcsas.sys -> C:\WINDOWS\SysNative\drivers\arcsas.sys -> [2017/03/18 22:56:25 | 000,132,000 | ---- | C | MD5 = 6E456A94B9BD7F6B4758729BCEDE40C3] (PMC-Sierra, Inc.) lsi_sas2i.sys -> C:\WINDOWS\SysNative\drivers\lsi_sas2i.sys -> [2017/03/18 22:56:25 | 000,123,808 | ---- | C | MD5 = 920F0CFCED5F28A31B79F1C470649D11] (LSI Corporation) lsi_sas.sys -> C:\WINDOWS\SysNative\drivers\lsi_sas.sys -> [2017/03/18 22:56:25 | 000,108,960 | ---- | C | MD5 = 16C9D4D822CCA795A72DC88B25A577CC] (LSI Corporation) ndfltr.sys -> C:\WINDOWS\SysNative\drivers\ndfltr.sys -> [2017/03/18 22:56:25 | 000,108,960 | ---- | C | MD5 = 0FFE8AF1B94C5FD54E6ACC6DAE990D31] (Mellanox) 3ware.sys -> C:\WINDOWS\SysNative\drivers\3ware.sys -> [2017/03/18 22:56:25 | 000,107,424 | ---- | C | MD5 = 4140B14929C555E9513D59A2EEB5C471] (LSI) lsi_sas3i.sys -> C:\WINDOWS\SysNative\drivers\lsi_sas3i.sys -> [2017/03/18 22:56:25 | 000,103,328 | ---- | C | MD5 = 0FE63316F1C70A0F759A449FAC64C24B] (Avago Technologies) cht4dx64.sys -> C:\WINDOWS\SysNative\drivers\cht4dx64.sys -> [2017/03/18 22:56:25 | 000,102,816 | ---- | C | MD5 = 76BDC115C94B5BA25940013D2BDD5F65] (Chelsio Communications) lsi_sss.sys -> C:\WINDOWS\SysNative\drivers\lsi_sss.sys -> [2017/03/18 22:56:25 | 000,082,848 | ---- | C | MD5 = 80E82C46B27A923A3744531069B63857] (LSI Corporation) sisraid4.sys -> C:\WINDOWS\SysNative\drivers\sisraid4.sys -> [2017/03/18 22:56:25 | 000,081,824 | ---- | C | MD5 = F520D50AD7266ED31D25DF4C8EA6BC2D] (Silicon Integrated Systems) winverbs.sys -> C:\WINDOWS\SysNative\drivers\winverbs.sys -> [2017/03/18 22:56:25 | 000,064,920 | ---- | C | MD5 = 0BF4A43CF1F3A4D50AFA4561C3B4628D] (Mellanox) MegaSas2i.sys -> C:\WINDOWS\SysNative\drivers\MegaSas2i.sys -> [2017/03/18 22:56:25 | 000,064,416 | ---- | C | MD5 = EEC64C8D498D121607C7615FDFBEE4D0] (Avago Technologies) mvumis.sys -> C:\WINDOWS\SysNative\drivers\mvumis.sys -> [2017/03/18 22:56:25 | 000,063,904 | ---- | C | MD5 = 74BD1149BF50F1E24934042A3BD17C90] (Marvell Semiconductor, Inc.) percsas3i.sys -> C:\WINDOWS\SysNative\drivers\percsas3i.sys -> [2017/03/18 22:56:25 | 000,061,848 | ---- | C | MD5 = FCA143274792F12383C35902E801E83A] (Avago Technologies) megasas.sys -> C:\WINDOWS\SysNative\drivers\megasas.sys -> [2017/03/18 22:56:25 | 000,059,808 | ---- | C | MD5 = 0609BF877A2F4DEECC62EEE220AB6242] (Avago Technologies) percsas2i.sys -> C:\WINDOWS\SysNative\drivers\percsas2i.sys -> [2017/03/18 22:56:25 | 000,058,784 | ---- | C | MD5 = FE52FF97A094609429FEF098EDC6FB08] (Avago Technologies) winmad.sys -> C:\WINDOWS\SysNative\drivers\winmad.sys -> [2017/03/18 22:56:25 | 000,032,160 | ---- | C | MD5 = 31DDF1D001336B2DCE7DF24E99EF1D04] (Mellanox) bcmfn2.sys -> C:\WINDOWS\SysNative\drivers\bcmfn2.sys -> [2017/03/18 22:56:25 | 000,009,728 | ---- | C | MD5 = 739D089777D2B66DBE7201E5EA4BA2D7] (Windows (R) Win 7 DDK provider) CbsTemp -> C:\WINDOWS\CbsTemp -> [2017/03/18 22:51:24 | 000,000,000 | ---D | C] SysWOW64 -> C:\WINDOWS\SysWOW64 -> [2017/03/18 13:40:24 | 000,000,000 | ---D | C] Logs -> C:\WINDOWS\Logs -> [2017/03/18 13:40:24 | 000,000,000 | ---D | C] AdvancedInstallers -> C:\WINDOWS\SysWow64\AdvancedInstallers -> [2017/03/18 13:40:24 | 000,000,000 | ---D | C] AdvancedInstallers -> C:\WINDOWS\SysNative\AdvancedInstallers -> [2017/03/18 13:40:24 | 000,000,000 | ---D | C] Sysprep -> C:\WINDOWS\SysNative\Sysprep -> [2017/03/18 13:40:22 | 000,000,000 | ---D | C] downlevel -> C:\WINDOWS\SysNative\downlevel -> [2017/03/18 13:40:22 | 000,000,000 | ---D | C] Dism -> C:\WINDOWS\SysNative\Dism -> [2017/03/18 13:40:22 | 000,000,000 | ---D | C] Users -> C:\Users -> [2017/03/18 13:40:20 | 000,000,000 | R--D | C] WinSxS -> C:\WINDOWS\WinSxS -> [2017/03/18 13:40:20 | 000,000,000 | ---D | C] Windows -> C:\Windows -> [2017/03/18 13:40:20 | 000,000,000 | ---D | C] System32 -> C:\WINDOWS\System32 -> [2017/03/18 13:40:20 | 000,000,000 | ---D | C] SMI -> C:\WINDOWS\SysNative\SMI -> [2017/03/18 13:40:20 | 000,000,000 | ---D | C] servicing -> C:\WINDOWS\servicing -> [2017/03/18 13:40:20 | 000,000,000 | ---D | C] DriverStore -> C:\WINDOWS\SysNative\DriverStore -> [2017/03/18 13:40:20 | 000,000,000 | ---D | C] config -> C:\WINDOWS\SysNative\config -> [2017/03/18 13:40:20 | 000,000,000 | ---D | C] CatRoot -> C:\WINDOWS\SysNative\CatRoot -> [2017/03/18 13:40:20 | 000,000,000 | ---D | C] Trufos.sys -> C:\WINDOWS\SysNative\drivers\Trufos.sys -> [2017/02/08 13:52:24 | 000,442,848 | ---- | C | MD5 = B9E5E3CFD096A5D60F2F7061A6FBB67B] (BitDefender S.R.L.) gzflt.sys -> C:\WINDOWS\SysNative\drivers\gzflt.sys -> [2017/02/08 13:52:24 | 000,178,384 | ---- | C | MD5 = 058FAB3147ACFF026A7DA55CEFCF7485] (BitDefender LLC) avc3.sys -> C:\WINDOWS\SysNative\drivers\avc3.sys -> [2016/11/23 14:52:40 | 001,605,376 | ---- | C | MD5 = DA978AB6E0AAEA82235C943DEED3484C] (BitDefender) avckf.sys -> C:\WINDOWS\SysNative\drivers\avckf.sys -> [2016/11/23 14:52:40 | 000,878,072 | ---- | C | MD5 = 09A3015AEA14CF9A4ECDE1CEA6AFE0AA] (BitDefender) isotousb_setup.exe -> C:\Users\Jean-Marie\Documents\isotousb_setup.exe -> [2016/11/15 18:20:48 | 001,733,751 | ---- | C | MD5 = C881589E86F0EFFC8611AAE0C52CB9C6] (isotousb.com ) CLBStor.sys -> C:\WINDOWS\SysNative\drivers\CLBStor.sys -> [2016/11/15 11:34:26 | 000,025,864 | ---- | C | MD5 = 19863788DFFBE37CB63BF19D1FD5C247] (Cyberlink Co.,Ltd.) DRVSTORE -> C:\WINDOWS\SysNative\DRVSTORE -> [2016/11/15 11:34:26 | 000,000,000 | ---D | C] m-disc 25 go -> C:\Users\Jean-Marie\Documents\m-disc 25 go -> [2016/11/14 19:11:45 | 000,000,000 | ---D | C] m-disc 100 go -> C:\Users\Jean-Marie\Documents\m-disc 100 go -> [2016/11/14 19:11:15 | 000,000,000 | ---D | C] m-disc 4 go -> C:\Users\Jean-Marie\Documents\m-disc 4 go -> [2016/11/14 19:09:36 | 000,000,000 | ---D | C] CyberLink_VideoMeetingPlus_Downloader.exe -> C:\Users\Jean-Marie\Documents\CyberLink_VideoMeetingPlus_Downloader.exe -> [2016/11/14 11:04:11 | 001,040,152 | ---- | C | MD5 = 6038D5C90AF8B85D4F97FB1FBA0B8825] (CyberLink) clvad.sys -> C:\WINDOWS\SysNative\drivers\clvad.sys -> [2016/11/14 11:02:59 | 000,040,384 | ---- | C | MD5 = EFC50A6C4C6B6F9AA09AFAC5C15881B6] (CyberLink) CyberLink_PresenterLinkPlus_Downloader.exe -> C:\Users\Jean-Marie\Documents\CyberLink_PresenterLinkPlus_Downloader.exe -> [2016/11/14 10:53:24 | 001,040,152 | ---- | C | MD5 = 6AD45F2D6D995E33A927E3D09AFD1F40] (CyberLink) ReflectDL.exe -> C:\Users\Jean-Marie\Documents\ReflectDL.exe -> [2016/11/14 10:30:43 | 003,545,552 | ---- | C | MD5 = 44EC7B3F7BFA980AC3F79CFD0B46CAA1] (Paramount Software UK Ltd) dtproscsibus.sys -> C:\WINDOWS\SysNative\drivers\dtproscsibus.sys -> [2016/11/14 10:27:16 | 000,030,264 | ---- | C | MD5 = 726E40B11612664486BB6C6105283C95] (Disc Soft Ltd) DTPro800-0634.exe -> C:\Users\Jean-Marie\Documents\DTPro800-0634.exe -> [2016/11/14 10:24:25 | 030,417,640 | ---- | C | MD5 = F4D4E8B2988970F1F56899241CC5161B] (Disc Soft Ltd) zam64.sys -> C:\WINDOWS\SysNative\drivers\zam64.sys -> [2016/11/14 10:12:46 | 000,203,680 | ---- | C | MD5 = 21E13F2CB269DEFEAE5E1D09887D47BB] (Zemana Ltd.) zamguard64.sys -> C:\WINDOWS\SysNative\drivers\zamguard64.sys -> [2016/11/14 10:12:38 | 000,203,680 | ---- | C | MD5 = 21E13F2CB269DEFEAE5E1D09887D47BB] (Zemana Ltd.) KeyCrypt64.sys -> C:\WINDOWS\SysNative\drivers\KeyCrypt64.sys -> [2016/11/14 10:05:31 | 000,161,408 | ---- | C | MD5 = BF0E0B7DE4E9BC8E0515779F66ACA853] (Zemana Ltd.) 9E53D577-781A-41E2-BF-BF-68-62-E6-DD-26-7D.sys -> C:\WINDOWS\SysNative\drivers\9E53D577-781A-41E2-BF-BF-68-62-E6-DD-26-7D.sys -> [2016/11/14 10:05:31 | 000,159,360 | ---- | C | MD5 = 8E6E3C6D32042055F918C457B3CB683C] (Zemana Ltd.) 38848DF6-A9ED-4330-BC-9A-92-33-7E-5B-AD-6E.sys -> C:\WINDOWS\SysNative\drivers\38848DF6-A9ED-4330-BC-9A-92-33-7E-5B-AD-6E.sys -> [2016/11/14 10:05:31 | 000,159,360 | ---- | C | MD5 = 8E6E3C6D32042055F918C457B3CB683C] (Zemana Ltd.) EuFdDisk.sys -> C:\WINDOWS\SysNative\drivers\EuFdDisk.sys -> [2016/11/14 09:37:11 | 000,192,040 | ---- | C | MD5 = 1D866B50C9B1BA3FE90CC81E0DBC0E15] (CHENGDU YIWO Tech Development Co., Ltd) eudskacs.sys -> C:\WINDOWS\SysNative\drivers\eudskacs.sys -> [2016/11/14 09:37:09 | 000,018,472 | ---- | C | MD5 = FCFD172899D0A026E5BD29F4775BFA76] (CHENGDU YIWO Tech Development Co., Ltd) iSkysoft -> C:\Users\Public\Documents\iSkysoft -> [2016/11/14 09:00:50 | 000,000,000 | ---D | C] tuxboot-0.8.2.exe -> C:\Users\Jean-Marie\Documents\tuxboot-0.8.2.exe -> [2016/11/14 07:50:00 | 005,111,808 | ---- | C | MD5 = 05C16DE9E243B288D60261E107103C01] (Thomas Tsai) LFS Ultra - 100 % Sécurisé - Cewbé Suite v5.5 -> C:\Users\Jean-Marie\Desktop\LFS Ultra - 100 % Sécurisé - Cewbé Suite v5.5 -> [2016/11/14 07:41:31 | 000,000,000 | R--D | C] MRT -> C:\WINDOWS\SysNative\MRT -> [2016/11/13 22:44:33 | 000,000,000 | ---D | C] Visual Studio 2015 -> C:\Users\Jean-Marie\Documents\Visual Studio 2015 -> [2016/11/12 22:52:06 | 000,000,000 | ---D | C] ShellNew -> C:\WINDOWS\ShellNew -> [2016/11/12 16:30:14 | 000,000,000 | ---D | C] 1036 -> C:\WINDOWS\SysWow64\1036 -> [2016/11/12 14:36:58 | 000,000,000 | ---D | C] symbols -> C:\WINDOWS\symbols -> [2016/11/12 14:22:54 | 000,000,000 | ---D | C] 1033 -> C:\WINDOWS\SysNative\1033 -> [2016/11/12 11:45:55 | 000,000,000 | ---D | C] 1033 -> C:\WINDOWS\SysWow64\1033 -> [2016/11/12 11:45:54 | 000,000,000 | ---D | C] 1036 -> C:\WINDOWS\SysNative\1036 -> [2016/11/12 11:11:16 | 000,000,000 | ---D | C] User Pinned -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\User Pinned -> [2016/11/12 10:08:56 | 000,000,000 | -H-D | C] SoftwareDistribution -> C:\WINDOWS\SoftwareDistribution -> [2016/11/12 10:01:33 | 000,000,000 | ---D | C] fr-FR -> C:\WINDOWS\SysWow64\drivers\UMDF\fr-FR -> [2016/11/12 09:33:14 | 000,000,000 | ---D | C] zh-HK -> C:\WINDOWS\SysWow64\zh-HK -> [2016/11/12 09:22:36 | 000,000,000 | ---D | C] zh-HK -> C:\WINDOWS\SysNative\zh-HK -> [2016/11/12 09:22:36 | 000,000,000 | ---D | C] Tasks -> C:\WINDOWS\Tasks -> [2016/11/12 09:22:36 | 000,000,000 | ---D | C] sr-Latn-CS -> C:\WINDOWS\SysWow64\sr-Latn-CS -> [2016/11/12 09:22:36 | 000,000,000 | ---D | C] Tasks_Migrated -> C:\WINDOWS\SysNative\Tasks_Migrated -> [2016/11/12 09:22:35 | 000,000,000 | ---D | C] sr-Latn-CS -> C:\WINDOWS\SysNative\sr-Latn-CS -> [2016/11/12 09:22:35 | 000,000,000 | ---D | C] MARMITON -> C:\MARMITON -> [2016/11/11 18:27:25 | 000,000,000 | ---D | C] AdsFix -> C:\AdsFix -> [2016/11/11 13:24:20 | 000,000,000 | ---D | C] Pre_Scan -> C:\Pre_Scan -> [2016/11/11 13:21:09 | 000,000,000 | ---D | C] UsbFix -> C:\UsbFix -> [2016/11/11 11:26:34 | 000,000,000 | ---D | C] AdwCleaner -> C:\AdwCleaner -> [2016/11/10 21:49:12 | 000,000,000 | ---D | C] QuickDiag -> C:\QuickDiag -> [2016/11/10 20:27:11 | 000,000,000 | ---D | C] AMD -> C:\AMD -> [2016/11/10 20:17:35 | 000,000,000 | ---D | C] CyberLink -> C:\Users\Public\Documents\CyberLink -> [2016/11/10 19:58:11 | 000,000,000 | ---D | C] CLVirtualBus01.sys -> C:\WINDOWS\SysNative\drivers\CLVirtualBus01.sys -> [2016/11/10 19:52:59 | 000,103,176 | ---- | C | MD5 = 0C7626AFB2419207B2ABCB6F8AEA334F] (CyberLink) Config.Msi -> C:\Config.Msi -> [2016/11/10 16:47:21 | 000,000,000 | -HSD | C] $GetCurrent -> C:\$GetCurrent -> [2016/11/10 16:26:48 | 000,000,000 | -H-D | C] Windows10Upgrade -> C:\Windows10Upgrade -> [2016/11/10 16:25:37 | 000,000,000 | ---D | C] CyberLink -> C:\Users\Jean-Marie\Documents\CyberLink -> [2016/11/10 16:03:53 | 000,000,000 | ---D | C] hp.system.package.metadata -> C:\Users\Jean-Marie\Documents\hp.system.package.metadata -> [2016/11/10 15:52:02 | 000,000,000 | ---D | C] hp.applications.package.appdata -> C:\Users\Jean-Marie\Documents\hp.applications.package.appdata -> [2016/11/10 15:52:02 | 000,000,000 | ---D | C] Mes vidéos -> C:\Users\Public\Documents\Mes vidéos -> [2016/11/10 15:49:09 | 000,000,000 | -HSD | C] Mes images -> C:\Users\Public\Documents\Mes images -> [2016/11/10 15:49:09 | 000,000,000 | -HSD | C] Ma musique -> C:\Users\Public\Documents\Ma musique -> [2016/11/10 15:49:09 | 000,000,000 | -HSD | C] ignis.sys -> C:\WINDOWS\SysNative\drivers\ignis.sys -> [2016/08/15 10:41:02 | 000,300,840 | ---- | C | MD5 = 2C3928A343E2F29A7770BD429331DDCF] (Bitdefender) StartMenuHelper64.dll -> C:\WINDOWS\SysNative\StartMenuHelper64.dll -> [2016/07/30 09:05:16 | 000,289,240 | ---- | C | MD5 = 643BC8D0DD30E19D542D8EA97A2D81CF] (IvoSoft) StartMenuHelper32.dll -> C:\WINDOWS\SysWow64\StartMenuHelper32.dll -> [2016/07/30 09:05:16 | 000,247,768 | ---- | C | MD5 = 2723F8B0470F79AA3C33EF4DA9764E8F] (IvoSoft) xlkfs.sys -> C:\WINDOWS\SysNative\drivers\xlkfs.sys -> [2016/05/26 13:12:26 | 000,044,272 | ---- | C | MD5 = 8B888F4663A25EC5D0A3448F29815B00] (XOSLAB.COM) tap0901.sys -> C:\WINDOWS\SysNative\drivers\tap0901.sys -> [2016/04/21 11:10:04 | 000,027,136 | ---- | C | MD5 = D765F43CBEA72D14C04AF3D2B9C8E54B] (The OpenVPN Project) IcarosUICore.dll.new -> C:\WINDOWS\SysNative\IcarosUICore.dll.new -> [2016/03/20 18:17:50 | 000,314,368 | ---- | C | MD5 = D0DC98FB55A2F601FE896CB019B7D21C] (Tabibito Technology) IcarosUICore.dll -> C:\WINDOWS\SysWow64\IcarosUICore.dll -> [2016/03/20 18:17:50 | 000,314,368 | ---- | C | MD5 = D0DC98FB55A2F601FE896CB019B7D21C] (Tabibito Technology) IcarosUICore.dll -> C:\WINDOWS\SysNative\IcarosUICore.dll -> [2016/03/20 18:17:50 | 000,314,368 | ---- | C | MD5 = D0DC98FB55A2F601FE896CB019B7D21C] (Tabibito Technology) IcarosConfig.exe.new -> C:\WINDOWS\SysNative\IcarosConfig.exe.new -> [2016/03/20 18:17:50 | 000,265,216 | ---- | C | MD5 = E34E18DBB5834973FB90D3A0DD7AC7C1] (Tabibito Technology) IcarosConfig.exe -> C:\WINDOWS\SysWow64\IcarosConfig.exe -> [2016/03/20 18:17:50 | 000,265,216 | ---- | C | MD5 = E34E18DBB5834973FB90D3A0DD7AC7C1] (Tabibito Technology) IcarosConfig.exe -> C:\WINDOWS\SysNative\IcarosConfig.exe -> [2016/03/20 18:17:50 | 000,265,216 | ---- | C | MD5 = E34E18DBB5834973FB90D3A0DD7AC7C1] (Tabibito Technology) IcarosPropertyHandler.dll.new -> C:\WINDOWS\SysNative\IcarosPropertyHandler.dll.new -> [2016/03/20 18:17:42 | 000,716,288 | ---- | C | MD5 = 33EF0ABFB943680ABB3D442748DF6ECB] (Tabibito Technology) IcarosPropertyHandler.dll -> C:\WINDOWS\SysNative\IcarosPropertyHandler.dll -> [2016/03/20 18:17:42 | 000,716,288 | ---- | C | MD5 = 33EF0ABFB943680ABB3D442748DF6ECB] (Tabibito Technology) IcarosThumbnailProvider.dll.new -> C:\WINDOWS\SysNative\IcarosThumbnailProvider.dll.new -> [2016/03/20 18:17:40 | 000,418,816 | ---- | C | MD5 = 3E8A57CB7D6260692C3759C5D0E142C3] (Tabibito Technology) IcarosThumbnailProvider.dll -> C:\WINDOWS\SysNative\IcarosThumbnailProvider.dll -> [2016/03/20 18:17:40 | 000,418,816 | ---- | C | MD5 = 3E8A57CB7D6260692C3759C5D0E142C3] (Tabibito Technology) IcarosCache.dll.new -> C:\WINDOWS\SysNative\IcarosCache.dll.new -> [2016/03/20 18:17:34 | 000,317,440 | ---- | C | MD5 = 52C4FCFF3FC3BD071514A1351C6C3ABD] (Tabibito Technology) IcarosCache.dll -> C:\WINDOWS\SysNative\IcarosCache.dll -> [2016/03/20 18:17:34 | 000,317,440 | ---- | C | MD5 = 52C4FCFF3FC3BD071514A1351C6C3ABD] (Tabibito Technology) IcarosPropertyHandler.dll -> C:\WINDOWS\SysWow64\IcarosPropertyHandler.dll -> [2016/03/20 18:17:28 | 000,599,040 | ---- | C | MD5 = E3395EF7AD4188DC52C766C4D51A7EE6] (Tabibito Technology) IcarosThumbnailProvider.dll -> C:\WINDOWS\SysWow64\IcarosThumbnailProvider.dll -> [2016/03/20 18:17:26 | 000,356,352 | ---- | C | MD5 = BB551782B8BA73CE43CE68F0CBC9EA5F] (Tabibito Technology) IcarosCache.dll -> C:\WINDOWS\SysWow64\IcarosCache.dll -> [2016/03/20 18:17:20 | 000,259,584 | ---- | C | MD5 = 673D062061DA02017C6213E211123BA8] (Tabibito Technology) avcodec-ics-57.dll.new -> C:\WINDOWS\SysNative\avcodec-ics-57.dll.new -> [2016/03/20 16:49:00 | 007,858,176 | ---- | C | MD5 = CF77ACCB98A041D7818164B824FDF9BA] (FFmpeg Project) avcodec-ics-57.dll -> C:\WINDOWS\SysNative\avcodec-ics-57.dll -> [2016/03/20 16:49:00 | 007,858,176 | ---- | C | MD5 = CF77ACCB98A041D7818164B824FDF9BA] (FFmpeg Project) avformat-ics-57.dll.new -> C:\WINDOWS\SysNative\avformat-ics-57.dll.new -> [2016/03/20 16:49:00 | 001,126,400 | ---- | C | MD5 = 36F1E27A26D178790E114B33C77E50E3] (FFmpeg Project) avformat-ics-57.dll -> C:\WINDOWS\SysNative\avformat-ics-57.dll -> [2016/03/20 16:49:00 | 001,126,400 | ---- | C | MD5 = 36F1E27A26D178790E114B33C77E50E3] (FFmpeg Project) swscale-ics-4.dll.new -> C:\WINDOWS\SysNative\swscale-ics-4.dll.new -> [2016/03/20 16:49:00 | 000,532,480 | ---- | C | MD5 = 312E654D0912B42FAFB67FA5143CF08F] (FFmpeg Project) swscale-ics-4.dll -> C:\WINDOWS\SysNative\swscale-ics-4.dll -> [2016/03/20 16:49:00 | 000,532,480 | ---- | C | MD5 = 312E654D0912B42FAFB67FA5143CF08F] (FFmpeg Project) avutil-ics-55.dll.new -> C:\WINDOWS\SysNative\avutil-ics-55.dll.new -> [2016/03/20 16:49:00 | 000,510,976 | ---- | C | MD5 = 2BF05D9264B57465B631BB928C72C84C] (FFmpeg Project) avutil-ics-55.dll -> C:\WINDOWS\SysNative\avutil-ics-55.dll -> [2016/03/20 16:49:00 | 000,510,976 | ---- | C | MD5 = 2BF05D9264B57465B631BB928C72C84C] (FFmpeg Project) avcodec-ics-57.dll -> C:\WINDOWS\SysWow64\avcodec-ics-57.dll -> [2016/03/20 16:45:26 | 007,568,384 | ---- | C | MD5 = 9719D5F0381C6A04AEDA98F8EDBF1A59] (FFmpeg Project) avformat-ics-57.dll -> C:\WINDOWS\SysWow64\avformat-ics-57.dll -> [2016/03/20 16:45:26 | 001,199,104 | ---- | C | MD5 = 00F3CD06651AF0FE5CAB66F7AC571044] (FFmpeg Project) avutil-ics-55.dll -> C:\WINDOWS\SysWow64\avutil-ics-55.dll -> [2016/03/20 16:45:26 | 000,556,544 | ---- | C | MD5 = 599E8FC95BC2B30EBABB527AF9DD45EA] (FFmpeg Project) swscale-ics-4.dll -> C:\WINDOWS\SysWow64\swscale-ics-4.dll -> [2016/03/20 16:45:26 | 000,537,088 | ---- | C | MD5 = EEF46D99121F174FA0C76D14700BD873] (FFmpeg Project) LAVVideo.ax.new -> C:\WINDOWS\SysNative\LAVVideo.ax.new -> [2016/03/08 14:32:56 | 001,306,296 | ---- | C | MD5 = 7D88F47D1CBF764FC9F2C916F32280C0] (1f0.de - Hendrik Leppkes) LAVVideo.ax -> C:\WINDOWS\SysNative\LAVVideo.ax -> [2016/03/08 14:32:56 | 001,306,296 | ---- | C | MD5 = 7D88F47D1CBF764FC9F2C916F32280C0] (1f0.de - Hendrik Leppkes) LAVSplitter.ax.new -> C:\WINDOWS\SysNative\LAVSplitter.ax.new -> [2016/03/08 14:32:54 | 000,660,152 | ---- | C | MD5 = 6638795D65E04C6DEBE47C6C92E370F0] (1f0.de - Hendrik Leppkes) LAVSplitter.ax -> C:\WINDOWS\SysNative\LAVSplitter.ax -> [2016/03/08 14:32:54 | 000,660,152 | ---- | C | MD5 = 6638795D65E04C6DEBE47C6C92E370F0] (1f0.de - Hendrik Leppkes) LAVAudio.ax.new -> C:\WINDOWS\SysNative\LAVAudio.ax.new -> [2016/03/08 14:32:50 | 000,306,360 | ---- | C | MD5 = FA22C12A575ECB497E646799022FD125] (1f0.de - Hendrik Leppkes) LAVAudio.ax -> C:\WINDOWS\SysNative\LAVAudio.ax -> [2016/03/08 14:32:50 | 000,306,360 | ---- | C | MD5 = FA22C12A575ECB497E646799022FD125] (1f0.de - Hendrik Leppkes) swscale-lav-4.dll -> C:\WINDOWS\SysNative\swscale-lav-4.dll -> [2016/03/08 14:32:48 | 000,532,664 | ---- | C | MD5 = A428AAC066824A1A62851B82BDB60C10] (FFmpeg Project) avutil-lav-55.dll -> C:\WINDOWS\SysNative\avutil-lav-55.dll -> [2016/03/08 14:32:44 | 000,510,648 | ---- | C | MD5 = EA975F24513B2A6E4492D147F1F6DDA8] (FFmpeg Project) avresample-lav-3.dll -> C:\WINDOWS\SysNative\avresample-lav-3.dll -> [2016/03/08 14:32:42 | 000,168,120 | ---- | C | MD5 = 840184A748942ADAF2D8A6D34DBB5488] (FFmpeg Project) avformat-lav-57.dll -> C:\WINDOWS\SysNative\avformat-lav-57.dll -> [2016/03/08 14:32:38 | 001,587,896 | ---- | C | MD5 = 35FAA3911CF0D1012A9B6C0CCC3537EB] (FFmpeg Project) avfilter-lav-6.dll -> C:\WINDOWS\SysNative\avfilter-lav-6.dll -> [2016/03/08 14:32:36 | 000,193,720 | ---- | C | MD5 = 60FECAEB32B86FF0451C6C2CD29751E6] (FFmpeg Project) avcodec-lav-57.dll -> C:\WINDOWS\SysNative\avcodec-lav-57.dll -> [2016/03/08 14:32:32 | 011,095,736 | ---- | C | MD5 = 2D73F14806925F1F3C6DE5534362AA62] (FFmpeg Project) LAVVideo.ax -> C:\WINDOWS\SysWow64\LAVVideo.ax -> [2016/03/08 14:32:24 | 001,083,064 | ---- | C | MD5 = 1A91F1CBF0C40B551DECE883C45EE917] (1f0.de - Hendrik Leppkes) LAVSplitter.ax -> C:\WINDOWS\SysWow64\LAVSplitter.ax -> [2016/03/08 14:32:20 | 000,542,392 | ---- | C | MD5 = 0A2BCB86422F8555DA6819F103177E03] (1f0.de - Hendrik Leppkes) LAVAudio.ax -> C:\WINDOWS\SysWow64\LAVAudio.ax -> [2016/03/08 14:32:18 | 000,258,744 | ---- | C | MD5 = 60E14F61138F3259C3462C735F50814C] (1f0.de - Hendrik Leppkes) swscale-lav-4.dll -> C:\WINDOWS\SysWow64\swscale-lav-4.dll -> [2016/03/08 14:32:14 | 000,537,784 | ---- | C | MD5 = BE21BB79AAA9763EEDECCA9BA1CCF33A] (FFmpeg Project) avutil-lav-55.dll -> C:\WINDOWS\SysWow64\avutil-lav-55.dll -> [2016/03/08 14:32:10 | 000,556,216 | ---- | C | MD5 = 996592C287935D37284C0C0005EBB68E] (FFmpeg Project) avresample-lav-3.dll -> C:\WINDOWS\SysWow64\avresample-lav-3.dll -> [2016/03/08 14:32:08 | 000,160,440 | ---- | C | MD5 = EFF6BF79B5D0BB35CC2EBC79BD3C8A21] (FFmpeg Project) avformat-lav-57.dll -> C:\WINDOWS\SysWow64\avformat-lav-57.dll -> [2016/03/08 14:32:04 | 001,697,976 | ---- | C | MD5 = 656B8CC7651C7BABDE151F694376DC7B] (FFmpeg Project) avfilter-lav-6.dll -> C:\WINDOWS\SysWow64\avfilter-lav-6.dll -> [2016/03/08 14:32:02 | 000,188,088 | ---- | C | MD5 = C5AA99D288FC08BBA7346522DF587643] (FFmpeg Project) avcodec-lav-57.dll -> C:\WINDOWS\SysWow64\avcodec-lav-57.dll -> [2016/03/08 14:31:58 | 010,766,520 | ---- | C | MD5 = 787DFF22586F0D4B518656F96A63079B] (FFmpeg Project) bdfndisf6.sys -> C:\WINDOWS\SysNative\drivers\bdfndisf6.sys -> [2016/02/16 17:52:38 | 000,107,496 | ---- | C | MD5 = AF3E1ABAB951FC9064267ED76268F41B] (BitDefender LLC) avchv.sys -> C:\WINDOWS\SysNative\drivers\avchv.sys -> [2016/01/05 14:45:28 | 000,282,000 | ---- | C | MD5 = 3FC014DABD685F8958C89EAA35D77368] (BitDefender) cdxareader.ax.new -> C:\WINDOWS\SysNative\cdxareader.ax.new -> [2015/11/14 19:28:38 | 000,428,272 | ---- | C | MD5 = 6A8C883EDB087B05CC9A4E8DF54B1433] (MPC-HC Team) cdxareader.ax -> C:\WINDOWS\SysNative\cdxareader.ax -> [2015/11/14 19:28:38 | 000,428,272 | ---- | C | MD5 = 6A8C883EDB087B05CC9A4E8DF54B1433] (MPC-HC Team) cdxareader.ax -> C:\WINDOWS\SysWow64\cdxareader.ax -> [2015/11/14 19:21:28 | 000,368,368 | ---- | C | MD5 = 8145029CEFFBB1C6F196A0DB37A27231] (MPC-HC Team) wdcsam64.sys -> C:\WINDOWS\SysNative\drivers\wdcsam64.sys -> [2015/11/12 23:50:10 | 000,026,880 | ---- | C | MD5 = A556768CC1FA4F36022BEE2F0EDE2566] (Western Digital Technologies, Inc.) psmounterex.sys -> C:\WINDOWS\SysNative\drivers\psmounterex.sys -> [2015/10/12 14:39:20 | 000,168,968 | ---- | C | MD5 = D06C8A05ABD8B3D0EDCEC1B632396143] (Windows (R) Win 7 DDK provider) FirefoxCaptureBridge.dll -> C:\WINDOWS\SysWow64\FirefoxCaptureBridge.dll -> [2015/09/29 22:31:00 | 000,075,584 | ---- | C | MD5 = 1892A823ACF268C7177B285294B03138] (TechSmith Corporation) elytsxu.sys -> C:\WINDOWS\SysNative\drivers\elytsxu.sys -> [2015/03/01 00:22:52 | 000,032,424 | ---- | C | MD5 = 4736C69400D1FD0B7D36A30771675E13] (The Within Network, LLC) unsignedthemes.exe -> C:\WINDOWS\unsignedthemes.exe -> [2015/03/01 00:22:50 | 000,022,184 | ---- | C | MD5 = 5D5FC880C46C1F08D72464250C8B0D70] (The Within Network, LLC) x264vfw.dll -> C:\WINDOWS\SysWow64\x264vfw.dll -> [2014/11/16 14:15:28 | 003,525,120 | ---- | C | MD5 = 79CD1ABAFDAEF7CC2DC5B535B9B0A7A5] (x264vfw project) tsccvid64.dll -> C:\WINDOWS\SysWow64\tsccvid64.dll -> [2014/11/11 08:40:34 | 000,619,008 | ---- | C | MD5 = 90E3BF3FCB2D4BF37A3A494158663D06] (TechSmith Corporation) tsccvid.dll -> C:\WINDOWS\SysWow64\tsccvid.dll -> [2014/11/11 08:40:34 | 000,592,384 | ---- | C | MD5 = CAF488402B61822C0DAB5FC0D9C96926] (TechSmith Corporation) tsc2_codec64.dll -> C:\WINDOWS\SysWow64\tsc2_codec64.dll -> [2014/08/27 20:16:54 | 000,270,848 | ---- | C | MD5 = 70B417222BCE4FF041FADA751FEEB996] (TechSmith Corporation) tsc2_codec32.dll -> C:\WINDOWS\SysWow64\tsc2_codec32.dll -> [2014/08/27 20:16:54 | 000,234,496 | ---- | C | MD5 = 034743B1C443E7199F619C6E9F6D45D4] (TechSmith Corporation) PSVolAcc.sys -> C:\WINDOWS\SysNative\drivers\PSVolAcc.sys -> [2014/07/21 11:36:48 | 000,012,760 | ---- | C | MD5 = 436E1F795F0495B2715116A4EC176803] (Paramount Software UK Ltd) vimsdk.dll -> C:\WINDOWS\SysNative\vimsdk.dll -> [2014/07/09 13:03:36 | 001,720,072 | ---- | C | MD5 = 7311FE234248B8E4307811B03B20E616] (Paragon Software Group) Vim.RWBlock.dll -> C:\WINDOWS\SysNative\Vim.RWBlock.dll -> [2014/07/09 13:03:34 | 000,937,224 | ---- | C | MD5 = 8D80B4DDA80E156262FEB1544CA9D08C] (Paragon Software Group) blockmounter.dll -> C:\WINDOWS\SysNative\drivers\UMDF\blockmounter.dll -> [2014/07/09 13:03:34 | 000,401,672 | ---- | C | MD5 = 59301A73B625CAB45C98C5E4F34FF11F] (Paragon Software Group) vimbase.dll -> C:\WINDOWS\SysNative\vimbase.dll -> [2014/07/09 13:03:34 | 000,079,112 | ---- | C | MD5 = 4ECF5C1ABA1DFC397A1AF3C43CEF54A8] (Paragon Software Group) VSFilter.dll.new -> C:\WINDOWS\SysNative\VSFilter.dll.new -> [2013/12/17 04:38:56 | 001,929,216 | ---- | C | MD5 = EA9A0B745B6D4C7AFC797C9C577E1F4F] (xy-VSFilter Team) VSFilter.dll -> C:\WINDOWS\SysNative\VSFilter.dll -> [2013/12/17 04:38:56 | 001,929,216 | ---- | C | MD5 = EA9A0B745B6D4C7AFC797C9C577E1F4F] (xy-VSFilter Team) VSFilter.dll -> C:\WINDOWS\SysWow64\VSFilter.dll -> [2013/12/17 04:38:54 | 001,573,376 | ---- | C | MD5 = A065F69A2AA291D6E93113C5968361DC] (xy-VSFilter Team) DivXa32.acm -> C:\WINDOWS\SysWow64\DivXa32.acm -> [2013/12/17 03:30:18 | 000,291,408 | ---- | C | MD5 = 765EAA222E1F6C7122EB22EE66D88CE1] (Packed With Joy !) WebUpdateSvc4.exe -> C:\WINDOWS\SysWow64\WebUpdateSvc4.exe -> [2013/11/25 21:33:58 | 000,412,776 | ---- | C | MD5 = 6690FAFC9F2C0DF23DD88953C010CFEB] (Data Perceptions / PowerProgrammer) FMAPO64.dll -> C:\WINDOWS\SysNative\FMAPO64.dll -> [2013/08/01 14:12:30 | 002,743,328 | ---- | C | MD5 = 46D901798362F966BA1EA3FACB7F8450] (Fortemedia Corporation) DivXControlPanelApplet.cpl -> C:\WINDOWS\SysWow64\DivXControlPanelApplet.cpl -> [2013/03/23 03:09:28 | 000,354,656 | ---- | C | MD5 = 8A917DFB8115382CE129F1F140F268A9] (DivX, Inc.) DCBassSourceMod.ax -> C:\WINDOWS\SysWow64\DCBassSourceMod.ax -> [2013/02/24 21:40:38 | 000,233,984 | ---- | C | MD5 = 6DE33A351A1D77FA22C60FCD1746D65E] (http://www.dsp-worx.de) bass.dll -> C:\WINDOWS\SysWow64\bass.dll -> [2013/02/16 15:02:00 | 000,107,584 | ---- | C | MD5 = 9586E7BE6AE8016932038932D1417241] (Un4seen Developments) bass_alac.dll -> C:\WINDOWS\SysWow64\bass_alac.dll -> [2013/01/31 18:02:38 | 000,009,416 | ---- | C | MD5 = 6B6344CD7EFC4916F58D177045674FC9] (MaresWEB) hp -> C:\hp -> [2013/01/07 13:49:41 | 000,000,000 | R-SD | C] basswv.dll -> C:\WINDOWS\SysWow64\basswv.dll -> [2012/12/05 19:27:06 | 000,025,664 | ---- | C | MD5 = 400858642C08E623E8024CB4D65408CE] (Un4seen Developments) bass_aac.dll -> C:\WINDOWS\SysWow64\bass_aac.dll -> [2012/10/16 15:17:58 | 000,149,720 | ---- | C | MD5 = C6AA10109D7BE3395E3A312C5453DA2C] (MaresWEB) bassopus.dll -> C:\WINDOWS\SysWow64\bassopus.dll -> [2012/08/23 15:43:14 | 000,054,328 | ---- | C | MD5 = 39275510E10E8B748583313B2155426E] (Un4seen Developments) SWSETUP -> C:\SWSETUP -> [2012/08/02 05:15:28 | 000,000,000 | ---D | C] Boot -> C:\Boot -> [2012/08/02 04:02:18 | 000,000,000 | -HSD | C] SYSTEM.SAV -> C:\SYSTEM.SAV -> [2012/08/01 11:57:15 | 000,000,000 | R-SD | C] Documents and Settings -> C:\Documents and Settings -> [2012/07/26 09:22:08 | 000,000,000 | --SD | C] My Videos -> C:\Users\Public\Documents\My Videos -> [2012/07/26 09:22:08 | 000,000,000 | -HSD | C] My Pictures -> C:\Users\Public\Documents\My Pictures -> [2012/07/26 09:22:08 | 000,000,000 | -HSD | C] My Music -> C:\Users\Public\Documents\My Music -> [2012/07/26 09:22:08 | 000,000,000 | -HSD | C] bass_mpc.dll -> C:\WINDOWS\SysWow64\bass_mpc.dll -> [2012/05/09 14:26:08 | 000,021,112 | ---- | C | MD5 = 76F123C199319616760B9C0470C7997B] (MaresWEB) wuw4.dll -> C:\WINDOWS\wuw4.dll -> [2012/02/08 17:47:14 | 000,037,136 | ---- | C | MD5 = 98065BAD585B78CD7A42A6666975AD85] (Data Perceptions) dpl100.dll -> C:\WINDOWS\SysWow64\dpl100.dll -> [2011/10/21 01:26:22 | 000,094,208 | ---- | C | MD5 = 90C7F5E71EEFE13F762CFE7B42C7157A] (DivX, Inc.) bass_ape.dll -> C:\WINDOWS\SysWow64\bass_ape.dll -> [2011/08/03 17:48:34 | 000,033,456 | ---- | C | MD5 = 13BEB78A9FCE8106C43C21FB705F9D5D] (MaresWEB) tak_deco_lib.dll -> C:\WINDOWS\SysWow64\tak_deco_lib.dll -> [2011/07/08 16:45:26 | 000,112,640 | ---- | C | MD5 = BDB65DCE335AC29ECCBC2CA7A7AD36B7] (Thomas Becker, Osnabrueck) basscd.dll -> C:\WINDOWS\SysWow64\basscd.dll -> [2011/05/12 15:16:12 | 000,019,008 | ---- | C | MD5 = C0C3FA022F605FD04C867CD7B2F5F2A5] (Un4seen Developments) wpcap.dll -> C:\WINDOWS\SysWow64\wpcap.dll -> [2011/02/11 23:23:34 | 000,281,104 | ---- | C | MD5 = 190FB481D293D85B507D071E75BCB05C] (CACE Technologies, Inc.) Packet.dll -> C:\WINDOWS\SysWow64\Packet.dll -> [2011/02/11 23:23:34 | 000,096,784 | ---- | C | MD5 = 1250BEF11BFA086F772CD2A273BC036E] (CACE Technologies, Inc.) npf.sys -> C:\WINDOWS\SysNative\drivers\npf.sys -> [2011/02/11 23:23:34 | 000,035,344 | ---- | C | MD5 = 351533ACC2A069B94E80BBFC177E8FDF] (CACE Technologies, Inc.) madFlac.ax -> C:\WINDOWS\SysWow64\madFlac.ax -> [2011/01/03 13:07:08 | 000,490,496 | ---- | C | MD5 = A6549E3D8196829311BCA50DA7C2699B] (www.madshi.net) Packet.dll -> C:\WINDOWS\SysNative\Packet.dll -> [2010/07/16 02:45:44 | 000,106,000 | ---- | C | MD5 = 652F1F54E573AF4D59E0AE658376D077] (CACE Technologies, Inc.) wpcap.dll -> C:\WINDOWS\SysNative\wpcap.dll -> [2010/07/16 02:45:42 | 000,369,168 | ---- | C | MD5 = A2473CC88ABA67391CE7929E5C69E767] (CACE Technologies, Inc.) Launcher.exe -> C:\Launcher.exe -> [2010/04/22 20:53:22 | 001,065,984 | ---- | C | MD5 = 4BEA053A5B4FB3EB31BA2103012B61DD] (Codyssey) pdvcodec.dll -> C:\WINDOWS\SysWow64\pdvcodec.dll -> [2010/03/12 11:14:04 | 000,265,797 | ---- | C | MD5 = C998E69D8884F49D0A6316DF96BA3DF2] (Matsushita Electric Industrial Co., Ltd.) DivX.dll -> C:\WINDOWS\SysWow64\DivX.dll -> [2010/02/19 21:27:36 | 000,720,384 | ---- | C | MD5 = F42E95BFB193754E9148DB6434D2E88E] (DivX, Inc.) divx_xx07.dll -> C:\WINDOWS\SysWow64\divx_xx07.dll -> [2010/02/19 21:27:16 | 000,856,064 | ---- | C | MD5 = A266D3E430E9FF97E9D659E5F087EF99] (DivX, Inc.) divx_xx0c.dll -> C:\WINDOWS\SysWow64\divx_xx0c.dll -> [2010/02/19 21:27:16 | 000,856,064 | ---- | C | MD5 = 725C556795DFC534660E784F9324515C] (DivX, Inc.) divx_xx0a.dll -> C:\WINDOWS\SysWow64\divx_xx0a.dll -> [2010/02/19 21:27:16 | 000,847,872 | ---- | C | MD5 = 0DADCB1C15AB04A655F7B386FE625B35] (DivX, Inc.) divx_xx16.dll -> C:\WINDOWS\SysWow64\divx_xx16.dll -> [2010/02/19 21:27:16 | 000,843,776 | ---- | C | MD5 = AD8E4393EAD5A8A71378BEEE95C59FDA] (DivX, Inc.) divx_xx11.dll -> C:\WINDOWS\SysWow64\divx_xx11.dll -> [2010/02/19 21:27:16 | 000,839,680 | ---- | C | MD5 = E1F94DFDC350BB8CE14655F5DB567149] (DivX, Inc.) StartCodySafe.exe -> C:\StartCodySafe.exe -> [2010/02/14 00:18:58 | 000,182,756 | ---- | C | MD5 = 7FEA5C981C720D6A89CE65D95AE13E38] (by Codyssey.com) Eject.exe -> C:\Eject.exe -> [2010/02/14 00:18:58 | 000,120,378 | ---- | C | MD5 = 2F8EDB4D8630BB45BF851BE757F56E55] (Codyssey.com) DriveDoctor.exe -> C:\DriveDoctor.exe -> [2010/02/14 00:18:58 | 000,093,685 | ---- | C | MD5 = 6E320162A672A902710E26762FD4F58D] (Codyssey.com) bassflac.dll -> C:\WINDOWS\SysWow64\bassflac.dll -> [2009/12/09 13:40:04 | 000,025,152 | ---- | C | MD5 = 50AF8A7D49E83A723ED0F70FB682DCFB] (Un4seen Developments) bass_ofr.dll -> C:\WINDOWS\SysWow64\bass_ofr.dll -> [2009/04/24 12:20:48 | 000,005,960 | ---- | C | MD5 = B3CC560AC7A5D1D266CB54E9A5A4767E] (MaresWEB) bass_tta.dll -> C:\WINDOWS\SysWow64\bass_tta.dll -> [2008/02/27 22:49:50 | 000,008,536 | ---- | C | MD5 = 4AD2D66E10AAA0FFE4C7A4F46EADBB56] (MaresWEB) killcopy.exe -> C:\WINDOWS\SysWow64\killcopy.exe -> [2006/10/29 17:36:54 | 001,185,792 | ---- | C | MD5 = 6315AB54B0156C7B5B1B6E499601C171] (Killer{R}) 15 C:\WINDOWS\SysNative\drivers\*.tmp files -> C:\WINDOWS\SysNative\drivers\*.tmp -> [Files/Folders - Modified Within 360 Days] avgstm.sys -> C:\WINDOWS\SysNative\drivers\avgstm.sys -> [2017/06/11 22:54:16 | 000,160,008 | ---- | M | MD5 = E9D39B538EC9CCD1966F48FA62CEA5A9] (AVG Technologies CZ, s.r.o.) Antivirus Emergency Update.job -> C:\WINDOWS\tasks\Antivirus Emergency Update.job -> [2017/06/11 22:54:01 | 000,000,348 | -H-- | M | MD5 = 892B77E2419DCC9FAD3D29D697677F3F] () avgstm.sys.149721445548401 -> C:\WINDOWS\SysNative\drivers\avgstm.sys.149721445548401 -> [2017/06/11 22:45:47 | 000,159,496 | ---- | M | MD5 = 97DF7BC580FE76FBC0F125DCAC7015D5] (AVG Technologies CZ, s.r.o.) CodecPackTrayMenu.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CodecPackTrayMenu.lnk -> [2017/06/11 22:41:46 | 000,001,957 | ---- | M | MD5 = 591B1EE9F38D3A70530FBFD4CBE52997] () CreateExplorerShellUnelevatedTask.job -> C:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job -> [2017/06/11 21:37:20 | 000,000,214 | ---- | M | MD5 = E71DDBB4ED4D07389DAAEE830729DF36] () AVG EUpdate Task.job -> C:\WINDOWS\tasks\AVG EUpdate Task.job -> [2017/06/11 21:26:57 | 000,000,392 | -H-- | M | MD5 = 41B488F10C0EEFC61E5454C663277B47] () mfc45.dll -> C:\WINDOWS\SysWow64\mfc45.dll -> [2017/06/11 21:12:58 | 000,074,703 | ---- | M | MD5 = DE7ECC022151ACB7375F09C5417E7425] () Software Informer.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Software Informer.lnk -> [2017/06/11 20:54:24 | 000,000,950 | ---- | M | MD5 = 55C5776553630F71FFCE0AD715FD9C9F] () bootstat.dat -> C:\WINDOWS\bootstat.dat -> [2017/06/11 17:25:16 | 000,067,584 | --S- | M | MD5 = F982EE1B5E8F56125DAB04902B7CF2B0] () FNTCACHE.DAT -> C:\WINDOWS\SysNative\FNTCACHE.DAT -> [2017/06/11 17:23:47 | 000,489,656 | ---- | M | MD5 = 05129B0E4647C7344462683D39A15FF5] () Webroot SecureAnywhere .lnk -> C:\Users\Public\Desktop\Webroot SecureAnywhere .lnk -> [2017/06/11 17:23:42 | 000,000,821 | ---- | M | MD5 = 9D0CB66544DBF9D5A27E1F605DAE3335] () swapfile.sys -> C:\swapfile.sys -> [2017/06/11 17:23:11 | 268,435,456 | -HS- | M | Unable to obtain MD5] () ZAM.krnl.trace -> C:\WINDOWS\ZAM.krnl.trace -> [2017/06/11 16:54:11 | 005,485,918 | ---- | M | MD5 = 91A9B13572C6A7D39FF4820EAA81406E] () ZAM_Guard.krnl.trace -> C:\WINDOWS\ZAM_Guard.krnl.trace -> [2017/06/11 16:54:10 | 005,721,692 | ---- | M | MD5 = 778A394AE9F52D72D06A42BBAF8552D7] () SA.DAT -> C:\WINDOWS\tasks\SA.DAT -> [2017/06/11 16:54:07 | 000,000,006 | -H-- | M | MD5 = 708EA029F398E51E2AEBBD0AD5E5CA73] () NTUSER.DAT -> C:\Users\Jean-Marie\NTUSER.DAT -> [2017/06/11 16:53:54 | 009,437,184 | -H-- | M | Unable to obtain MD5] () OTS.exe -> C:\Users\Jean-Marie\Desktop\OTS.exe -> [2017/06/11 13:13:00 | 000,646,656 | ---- | M | MD5 = 700B66BC8B579C3CA00DC36E6E48714C] (OldTimer Tools) OTS (1).exe -> C:\Users\Jean-Marie\Desktop\OTS (1).exe -> [2017/06/11 13:12:16 | 000,646,656 | ---- | M | MD5 = 700B66BC8B579C3CA00DC36E6E48714C] (OldTimer Tools) OTA.exe -> C:\Users\Jean-Marie\Desktop\OTA.exe -> [2017/06/11 13:08:28 | 000,219,648 | ---- | M | MD5 = 03C9E0645D0F89AC41F9919D97C22106] (OldTimer Tools) ImmersiveExplorer.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ImmersiveExplorer.lnk -> [2017/06/10 10:49:16 | 000,000,893 | ---- | M | MD5 = 74D0CE4D659BF2FABA1A36B6CB76EA49] () MetroSidebar.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\MetroSidebar.lnk -> [2017/06/10 10:49:10 | 000,000,828 | ---- | M | MD5 = 41A8E4EF29BA057CBB2705A98EF3B907] () unins000.dat -> C:\WINDOWS\SysWow64\unins000.dat -> [2017/06/10 09:59:16 | 000,043,581 | ---- | M | MD5 = 19DA76E72460CFB57B1CBF64DEDA8A4F] () unins000.exe -> C:\WINDOWS\SysWow64\unins000.exe -> [2017/06/10 09:59:08 | 001,203,537 | ---- | M | MD5 = C7009F7BF63B768CE41AE4E5BF231AC3] () KeepVid Pro.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\KeepVid Pro.lnk -> [2017/06/09 08:41:48 | 000,001,428 | ---- | M | MD5 = 80E2D32C71198A0E72B773247C667968] () EasyDuplicateFinder.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\EasyDuplicateFinder.lnk -> [2017/06/09 06:23:54 | 000,001,047 | ---- | M | MD5 = BCC172B973A18ADA98CFE8A8EA4752C4] () WRusr.dll -> C:\WINDOWS\SysWow64\WRusr.dll -> [2017/06/09 06:23:08 | 000,193,072 | ---- | M | MD5 = 5DEF72D10D84BDAED1CCD7ED4492A9F3] (Webroot) WRkrn.sys -> C:\WINDOWS\SysNative\drivers\WRkrn.sys -> [2017/06/09 06:23:08 | 000,143,248 | ---- | M | Unable to obtain MD5] (Webroot) WRusr.dll -> C:\WINDOWS\SysNative\WRusr.dll -> [2017/06/09 06:23:08 | 000,126,696 | ---- | M | MD5 = A8B951AACC06E73ECBEFA453DCDA45CD] (Webroot) WORDPAD.INI -> C:\WINDOWS\WORDPAD.INI -> [2017/06/09 05:58:02 | 000,000,193 | ---- | M | MD5 = 72F2D357120F95C1E725C22915FE95E1] () muvee Wedding Studio.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\muvee Wedding Studio.lnk -> [2017/06/08 20:23:00 | 000,001,544 | ---- | M | MD5 = 8542C228ACB07754E2CFDEFBB3F2CA08] () hosts -> C:\WINDOWS\SysNative\drivers\etc\hosts -> [2017/06/08 20:09:40 | 000,002,830 | ---- | M | Unable to obtain MD5] () idmwfp.sys -> C:\WINDOWS\SysNative\drivers\idmwfp.sys -> [2017/06/08 18:15:14 | 000,223,432 | ---- | M | MD5 = 025868A34E359A5F49D2324C0B14D537] (Tonec Inc.) Heimdal Security Service Monitor.job -> C:\WINDOWS\tasks\Heimdal Security Service Monitor.job -> [2017/06/08 17:42:51 | 000,000,562 | ---- | M | MD5 = 25350175E6914799ED39D2C3EEAA9D6F] () Launch 1509.job -> C:\WINDOWS\tasks\Launch 1509.job -> [2017/06/08 17:40:22 | 000,000,280 | ---- | M | MD5 = 8B898DF11DAE4314E186F97BC74A727E] () Launch 1395.job -> C:\WINDOWS\tasks\Launch 1395.job -> [2017/06/08 17:39:47 | 000,000,280 | ---- | M | MD5 = AE1280AEF458256DACBDC29969A0D5A0] () Heimdal.DeliveryLauncher.msi -> C:\Users\Jean-Marie\Documents\Heimdal.DeliveryLauncher.msi -> [2017/06/08 17:27:58 | 000,774,656 | ---- | M | MD5 = 3F886DF9E1B0BDA28DFBDD9CB5063479] () clé de license giveawayclub heimdal 8 juin 2017.rtf -> C:\Users\Jean-Marie\Documents\clé de license giveawayclub heimdal 8 juin 2017.rtf -> [2017/06/08 17:27:10 | 000,000,298 | ---- | M | MD5 = AD80FB740DAC40CE5DE64FC01183176E] () PCWinSoftPBar.ocx -> C:\WINDOWS\SysWow64\PCWinSoftPBar.ocx -> [2017/06/07 16:00:58 | 000,032,392 | ---- | M | MD5 = 2CCDA8B139E4845996D5ED657B8BFA1E] (Axis) TrueSight.sys -> C:\WINDOWS\SysNative\drivers\TrueSight.sys -> [2017/06/06 18:20:05 | 000,028,272 | ---- | M | MD5 = 0D5A09B08568760AE85A801FCBC0F83D] () WiseHDInfo64.dll -> C:\WINDOWS\WiseHDInfo64.dll -> [2017/06/06 17:50:28 | 000,014,800 | ---- | M | MD5 = 96CC61325A387239C1AD3656F9313DEE] (wisecleaner.com) Quick Search.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Quick Search.lnk -> [2017/06/06 17:42:47 | 000,001,313 | ---- | M | MD5 = D64E5EF5B75440C72C2E65B7FDE7DF34] () Malware Hunter.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Malware Hunter.lnk -> [2017/06/06 17:41:47 | 000,001,327 | ---- | M | MD5 = 9438CFF6C3E1A4404ADED946C8EC77BD] () Google Chrome.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> [2017/06/06 17:35:03 | 000,002,360 | ---- | M | MD5 = BA6DFA262F0E716E753C58420AD80084] () GoodSync Explorer.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\GoodSync Explorer.lnk -> [2017/06/06 17:30:08 | 000,002,230 | ---- | M | MD5 = 2ABD18117EB1D45284E1EC779EB0BA33] () GoodSync.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\GoodSync.lnk -> [2017/06/06 17:30:08 | 000,002,138 | ---- | M | MD5 = 66A2D67F53E6D90DB918E9B036EBB18C] () WinX HD Video Converter Deluxe.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\WinX HD Video Converter Deluxe.lnk -> [2017/06/06 16:24:29 | 000,001,549 | ---- | M | MD5 = 4446CF6607BAD2E37814AF36B8C8313D] () Glary Utilities 5.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Glary Utilities 5.lnk -> [2017/06/06 16:23:51 | 000,001,189 | ---- | M | MD5 = 989A82E46814840D92AB65BC3B2D2ACB] () WebUpdateSvc4.INI -> C:\WINDOWS\WebUpdateSvc4.INI -> [2017/06/06 14:16:22 | 000,000,031 | ---- | M | MD5 = 285B3D67359BCE18E3CD1438267498D6] () Animated Wallpaper Maker Uninstaller.exe -> C:\WINDOWS\Animated Wallpaper Maker Uninstaller.exe -> [2017/06/06 14:15:16 | 000,163,294 | ---- | M | MD5 = 08D4DC03D798AC981C29337AC96F381A] () wuwuninst.exe -> C:\WINDOWS\SysWow64\wuwuninst.exe -> [2017/06/06 14:15:16 | 000,049,165 | ---- | M | MD5 = 3BBDA84E3492AED50C748015F246A348] () AVG Secure VPN.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AVG Secure VPN.lnk -> [2017/06/06 09:06:30 | 000,001,193 | ---- | M | MD5 = D7DD1A510E206C54BBD3478D8ABDBB86] () avgstm.sys.149673091482801 -> C:\WINDOWS\SysNative\drivers\avgstm.sys.149673091482801 -> [2017/06/06 08:27:14 | 000,159,496 | ---- | M | MD5 = 97DF7BC580FE76FBC0F125DCAC7015D5] (AVG Technologies CZ, s.r.o.) avgNetSec.sys -> C:\WINDOWS\SysNative\drivers\avgNetSec.sys -> [2017/06/06 08:26:20 | 000,509,056 | ---- | M | MD5 = 83D7FF4990D5F4E990FDC9B50D54D483] (AVG Technologies CZ, s.r.o.) AniGIF.ocx -> C:\WINDOWS\SysWow64\AniGIF.ocx -> [2017/06/06 06:46:18 | 000,172,032 | ---- | M | MD5 = 45960B40C1ECB75ED5549A80049879E1] (Jin Hui E-mail: jinhui@jcomsoft.com Web: http://www.jcomsoft.com) ntuser.pol -> C:\ProgramData\ntuser.pol -> [2017/06/05 18:19:02 | 000,000,008 | RHS- | M | MD5 = 8E1B08222F20E45A3E8DB04C569F9CB7] () avgSP.sys -> C:\WINDOWS\SysNative\drivers\avgSP.sys -> [2017/06/02 14:17:26 | 000,570,320 | ---- | M | MD5 = F65863676D846FE699BD96623F996C4D] (AVG Technologies CZ, s.r.o.) avgBoot.exe -> C:\WINDOWS\SysNative\avgBoot.exe -> [2017/06/02 14:17:26 | 000,401,584 | ---- | M | MD5 = 76D46E802C2F164FE540598F3DD516A3] (AVG Technologies CZ, s.r.o.) avgVmm.sys -> C:\WINDOWS\SysNative\drivers\avgVmm.sys -> [2017/06/02 14:17:26 | 000,340,824 | ---- | M | MD5 = 55E8C8AB6D024FD94AA59448A05B0F43] (AVG Technologies CZ, s.r.o.) avgMonFlt.sys -> C:\WINDOWS\SysNative\drivers\avgMonFlt.sys -> [2017/06/02 14:17:26 | 000,129,776 | ---- | M | MD5 = E390FC7F473E9881B798B44BF31E41FA] (AVG Technologies CZ, s.r.o.) avgRvrt.sys -> C:\WINDOWS\SysNative\drivers\avgRvrt.sys -> [2017/06/02 14:17:26 | 000,076,832 | ---- | M | MD5 = B67F104F18418BD36BA3DD6F4ADBFC06] (AVG Technologies CZ, s.r.o.) avgHwid.sys -> C:\WINDOWS\SysNative\drivers\avgHwid.sys -> [2017/06/02 14:17:26 | 000,039,424 | ---- | M | MD5 = 2DD8AEB4EAB07384E03C7221CCD55523] (AVG Technologies CZ, s.r.o.) avgRdr2.sys -> C:\WINDOWS\SysNative\drivers\avgRdr2.sys -> [2017/06/02 14:17:25 | 000,102,280 | ---- | M | MD5 = 76680F830E770DE4D75031E2D3E85711] (AVG Technologies CZ, s.r.o.) avgSnx.sys -> C:\WINDOWS\SysNative\drivers\avgSnx.sys -> [2017/06/02 14:16:57 | 001,008,288 | ---- | M | MD5 = 4101FFAB906644DB3A43FFA050AC19D4] (AVG Technologies CZ, s.r.o.) avgbloga.sys -> C:\WINDOWS\SysNative\drivers\avgbloga.sys -> [2017/06/02 14:16:41 | 000,336,896 | ---- | M | MD5 = F8F277D752CFCF570928C28C4E7236C1] (AVG Technologies CZ, s.r.o.) avgbuniva.sys -> C:\WINDOWS\SysNative\drivers\avgbuniva.sys -> [2017/06/02 14:16:41 | 000,051,336 | ---- | M | MD5 = 207AA6B47C050DD13110D399BD4DA292] (AVG Technologies CZ, s.r.o.) avgbidsdrivera.sys -> C:\WINDOWS\SysNative\drivers\avgbidsdrivera.sys -> [2017/06/02 14:16:40 | 000,314,128 | ---- | M | MD5 = 1FA0918F3365FE1AB30F47D3A4A23F05] (AVG Technologies CZ, s.r.o.) avgbidsha.sys -> C:\WINDOWS\SysNative\drivers\avgbidsha.sys -> [2017/06/02 14:16:40 | 000,192,584 | ---- | M | MD5 = A597136B52F1BE69ABB2CBE0D197E22F] (AVG Technologies CZ, s.r.o.) avgbdiska.sys -> C:\WINDOWS\SysNative\drivers\avgbdiska.sys -> [2017/06/02 14:16:40 | 000,166,624 | ---- | M | MD5 = 63A02B2298DA306327403F3F01BC3790] (AVG Technologies CZ, s.r.o.) pdfcmon.dll -> C:\WINDOWS\SysNative\pdfcmon.dll -> [2017/06/02 13:57:23 | 000,116,224 | ---- | M | MD5 = 8FD644D85BDB0206E87FF21C70444E76] (pdfforge GmbH) Winamp.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Winamp.lnk -> [2017/06/02 12:10:26 | 000,001,078 | ---- | M | MD5 = B508E4E0215ECAB3033DCC132BA0AC03] () uts.ini -> C:\Users\Jean-Marie\AppData\Local\uts.ini -> [2017/06/02 11:45:37 | 000,000,126 | ---- | M | MD5 = 884DE7F3B9E261E1F1B2380FED24856C] () Adobe Digital Editions 4.5.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Adobe Digital Editions 4.5.lnk -> [2017/06/02 09:04:11 | 000,002,303 | ---- | M | MD5 = A1915A1E09A430BEC6D07FD2B4BA3C6F] () wininit.ini -> C:\WINDOWS\wininit.ini -> [2017/06/02 09:00:28 | 000,000,494 | ---- | M | MD5 = 821D025ED064845D5DF73CFAF7D80C5A] () AnyMedia Player.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\AnyMedia Player.lnk -> [2017/06/01 23:07:36 | 000,001,191 | ---- | M | MD5 = F0D941B6C287FD9B9E7BDF32A606CBC9] () Online Video Recorder.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Online Video Recorder.lnk -> [2017/06/01 23:05:57 | 000,001,262 | ---- | M | MD5 = C05CD2875F6CBE1DB45657A52DF05820] () Xilisoft HTML en EPUB Convertisseur.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Xilisoft HTML en EPUB Convertisseur.lnk -> [2017/06/01 18:25:53 | 000,002,309 | ---- | M | MD5 = CDF1299E223AD7CFA6234FB38B58043B] () Xilisoft PDF en EPUB Convertisseur.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Xilisoft PDF en EPUB Convertisseur.lnk -> [2017/06/01 18:25:03 | 000,002,266 | ---- | M | MD5 = B5ECC6F1B2B5F8AAAA361E488DD3CE44] () Xilisoft CHM en EPUB Convertisseur.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Xilisoft CHM en EPUB Convertisseur.lnk -> [2017/06/01 18:24:55 | 000,002,298 | ---- | M | MD5 = 8B57788C67E9B17C8D2687A144BE25F7] () Advanced Disk Cleaner.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Advanced Disk Cleaner.lnk -> [2017/06/01 13:22:31 | 000,001,397 | ---- | M | MD5 = B308FD17A19EB7ED34E9E14F7B1306CB] () MultiCommander (x64).lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\MultiCommander (x64).lnk -> [2017/05/31 21:57:41 | 000,001,895 | ---- | M | MD5 = DC21ADE9FF81DF6479259653ABC56963] () MBAMSwissArmy.sys -> C:\WINDOWS\SysNative\drivers\MBAMSwissArmy.sys -> [2017/05/31 19:07:08 | 000,251,832 | ---- | M | MD5 = 53283EB9998AC9350E14C35A880989DB] (Malwarebytes) mbae64.sys -> C:\WINDOWS\SysNative\drivers\mbae64.sys -> [2017/05/31 17:59:23 | 000,077,440 | ---- | M | MD5 = 233DB99476B8D1CF61AC1177D0137036] () trolCommander.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\trolCommander.lnk -> [2017/05/31 17:35:42 | 000,001,166 | ---- | M | MD5 = 2FF5892EE3B39E93C04E95DF8D9F877E] () muCommander.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\muCommander.lnk -> [2017/05/31 17:35:31 | 000,001,142 | ---- | M | MD5 = 9C872C330934A1EC2C1FE7D66F4C3625] () mfc45.dat -> C:\WINDOWS\SysWow64\mfc45.dat -> [2017/05/30 20:33:41 | 000,074,703 | ---- | M | MD5 = 71ABC8BBBCE405F72B0C4C0DDE2E2D56] () FreeFileSync_9.1_[Donation_Edition]_Windows_Setup.exe -> C:\Users\Jean-Marie\Documents\FreeFileSync_9.1_[Donation_Edition]_Windows_Setup.exe -> [2017/05/30 13:24:22 | 011,690,272 | ---- | M | MD5 = 0AE1961E0D6C6CA04AB28E911B491BDC] (www.FreeFileSync.org ) NTUSER.DAT{1f0dc2b2-3c32-11e7-bcbe-4c72b9f956a2}.TMContainer00000000000000000001.regtrans-ms -> C:\Users\Jean-Marie\NTUSER.DAT{1f0dc2b2-3c32-11e7-bcbe-4c72b9f956a2}.TMContainer00000000000000000001.regtrans-ms -> [2017/05/30 06:58:28 | 000,524,288 | -HS- | M | Unable to obtain MD5] () NTUSER.DAT{1f0dc2b2-3c32-11e7-bcbe-4c72b9f956a2}.TM.blf -> C:\Users\Jean-Marie\NTUSER.DAT{1f0dc2b2-3c32-11e7-bcbe-4c72b9f956a2}.TM.blf -> [2017/05/30 06:58:28 | 000,065,536 | -HS- | M | Unable to obtain MD5] () DP45977C.lfl -> C:\ProgramData\DP45977C.lfl -> [2017/05/30 06:33:50 | 000,000,000 | -H-- | M | MD5 = D41D8CD98F00B204E9800998ECF8427E] () Error.ini -> C:\WINDOWS\SysWow64\Error.ini -> [2017/05/29 15:27:46 | 000,000,036 | ---- | M | MD5 = 2AA1C4DF2E3E3D5AEEDAD4A27859BB3A] () SRWare Iron.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\SRWare Iron.lnk -> [2017/05/28 17:35:48 | 000,001,117 | ---- | M | MD5 = 682345B01304553B95098A08BCAFFAAE] () win.ini -> C:\WINDOWS\win.ini -> [2017/05/28 16:05:27 | 000,000,204 | ---- | M | MD5 = 39A09DB18CA86C636E6284A8E6996A4F] () Software Update Pro.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Software Update Pro.lnk -> [2017/05/28 14:43:17 | 000,001,388 | ---- | M | MD5 = 1950A8E8663FC6C003AAE31B24E76D84] () PerfStringBackup.INI -> C:\WINDOWS\SysNative\PerfStringBackup.INI -> [2017/05/27 01:29:32 | 003,414,920 | ---- | M | MD5 = E0723987980D9C1D46A3CC4AE39FFC3F] () perfh00C.dat -> C:\WINDOWS\SysNative\perfh00C.dat -> [2017/05/27 01:29:32 | 001,575,128 | ---- | M | MD5 = E8125941118F1890CE09C748C6ADC553] () perfh009.dat -> C:\WINDOWS\SysNative\perfh009.dat -> [2017/05/27 01:29:32 | 001,054,800 | ---- | M | MD5 = 1BD3119404448F91755CFAA581CEEA61] () perfc00C.dat -> C:\WINDOWS\SysNative\perfc00C.dat -> [2017/05/27 01:29:32 | 000,399,928 | ---- | M | MD5 = 187F4CE2F90974F16B990C8B122C6BA9] () perfc009.dat -> C:\WINDOWS\SysNative\perfc009.dat -> [2017/05/27 01:29:32 | 000,354,844 | ---- | M | MD5 = D8BA85DC1A355599B27EAD0CB21E4387] () Free Tube To Mp3.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Free Tube To Mp3.lnk -> [2017/05/26 18:14:44 | 000,001,181 | ---- | M | MD5 = E353D053B87F4B3560661A297B65E5CD] () Free Screen Recorder 7.3.0.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Free Screen Recorder 7.3.0.lnk -> [2017/05/26 17:17:49 | 000,001,421 | ---- | M | MD5 = BB5ADA4CE95679938DF6CC2D380FFC14] () CamStudio.cfg -> C:\Users\Jean-Marie\AppData\Roaming\CamStudio.cfg -> [2017/05/26 17:13:14 | 000,004,547 | ---- | M | MD5 = B64AE5C7EAE216FF58C17B0F6F1F7185] () CamShapes.ini -> C:\Users\Jean-Marie\AppData\Roaming\CamShapes.ini -> [2017/05/26 17:13:13 | 000,000,408 | ---- | M | MD5 = 9744A4A984980C7B030CB46E42D4AC97] () CamLayout.ini -> C:\Users\Jean-Marie\AppData\Roaming\CamLayout.ini -> [2017/05/26 17:13:13 | 000,000,408 | ---- | M | MD5 = 7C8DA0B9D6FA4F36ED8334A1980E05CF] () Camdata.ini -> C:\Users\Jean-Marie\AppData\Roaming\Camdata.ini -> [2017/05/26 17:13:13 | 000,000,174 | ---- | M | MD5 = B860C937AA5A2386555462BC14E8DE5C] () DbxSvc.exe -> C:\WINDOWS\SysNative\DbxSvc.exe -> [2017/05/26 16:58:32 | 000,048,944 | ---- | M | MD5 = 18FCD66BDCCA11DF03BDC3497E3C8055] (Dropbox, Inc.) dbx-stable.sys -> C:\WINDOWS\SysNative\drivers\dbx-stable.sys -> [2017/05/26 16:55:54 | 000,045,672 | ---- | M | MD5 = C277C7D9638C8FA025339961772CA80D] (Dropbox, Inc.) dbx-dev.sys -> C:\WINDOWS\SysNative\drivers\dbx-dev.sys -> [2017/05/26 16:55:54 | 000,045,672 | ---- | M | MD5 = C277C7D9638C8FA025339961772CA80D] (Dropbox, Inc.) dbx-canary.sys -> C:\WINDOWS\SysNative\drivers\dbx-canary.sys -> [2017/05/26 16:55:54 | 000,045,672 | ---- | M | MD5 = C277C7D9638C8FA025339961772CA80D] (Dropbox, Inc.) version2.xml -> C:\Users\Jean-Marie\AppData\Roaming\version2.xml -> [2017/05/26 15:52:30 | 000,000,096 | ---- | M | MD5 = 9E3D46FEA2CB93CF7CBA1E216DC5E68A] () Capture_1.mp4 -> C:\Users\Jean-Marie\Documents\Capture_1.mp4 -> [2017/05/26 15:16:14 | 145,480,367 | ---- | M | MD5 = 5E158702CB335F487140D3627770FC58] () Capture_1_mp4.mrk -> C:\Users\Jean-Marie\Documents\Capture_1_mp4.mrk -> [2017/05/26 15:16:14 | 000,000,216 | ---- | M | MD5 = B72B26CADA88C78C3C1A9E3D5A357709] () Capture.mp4 -> C:\Users\Jean-Marie\Documents\Capture.mp4 -> [2017/05/26 14:50:53 | 000,358,813 | ---- | M | MD5 = F3AF771EEB472FCC2C7228B53511A6E7] () Capture_mp4.mrk -> C:\Users\Jean-Marie\Documents\Capture_mp4.mrk -> [2017/05/26 14:50:53 | 000,000,129 | ---- | M | MD5 = 114BACFA55C6DDF55D71CAE6AFFC7F15] () Wondershare MobileGo.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Wondershare MobileGo.lnk -> [2017/05/26 14:10:40 | 000,001,262 | ---- | M | MD5 = 229C1C7BE682F978934DADF6DD52752C] () mobilego_setup_full818.exe -> C:\Users\Jean-Marie\Documents\mobilego_setup_full818.exe -> [2017/05/26 14:08:15 | 001,183,888 | ---- | M | MD5 = C3ACC53FBD74DDA02543A2BF1CD416FB] () Msft_User_WpdMtpDr_01_11_00.Wdf -> C:\WINDOWS\SysNative\drivers\Msft_User_WpdMtpDr_01_11_00.Wdf -> [2017/05/25 16:54:49 | 000,000,000 | -H-- | M | MD5 = D41D8CD98F00B204E9800998ECF8427E] () dm.dmap -> C:\WINDOWS\dm.dmap -> [2017/05/25 14:56:28 | 000,000,064 | ---- | M | MD5 = C676F5F0FCF6EC261629813C282D7CFF] () EaseUS Partition Master 12.0.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\EaseUS Partition Master 12.0.lnk -> [2017/05/25 14:17:46 | 000,001,455 | ---- | M | MD5 = 5563401C60066A085165E6633997CAF0] () aswNetSec.sys -> C:\WINDOWS\SysNative\drivers\aswNetSec.sys -> [2017/05/25 14:05:32 | 000,507,928 | ---- | M | MD5 = DEC5206C45CBB8D8C7EDACFEAE0968B1] (AVAST Software) YamahaAE3.dll -> C:\WINDOWS\SysNative\YamahaAE3.dll -> [2017/05/25 02:05:30 | 015,202,000 | ---- | M | MD5 = A96FA210DEAC74EFC499F0B3D0C0AFEB] (Yamaha Corporation) YamahaAE2.dll -> C:\WINDOWS\SysNative\YamahaAE2.dll -> [2017/05/25 02:05:28 | 003,299,792 | ---- | M | MD5 = 8AB3326C0B58988F20831640FD8D139C] (Yamaha Corporation) YamahaAE.dll -> C:\WINDOWS\SysNative\YamahaAE.dll -> [2017/05/25 02:05:26 | 002,190,952 | ---- | M | MD5 = 54EF5AE7D738F6C1892535AE66FA117E] (Yamaha Corporation) SRSWOW64.dll -> C:\WINDOWS\SysNative\SRSWOW64.dll -> [2017/05/25 02:04:42 | 000,166,168 | ---- | M | MD5 = 09802DD8E742B6B8EFC141E8203F5172] (SRS Labs, Inc.) SRSTSX64.dll -> C:\WINDOWS\SysNative\SRSTSX64.dll -> [2017/05/25 02:04:40 | 000,532,344 | ---- | M | MD5 = 337BC2707F85AE6B2C09953FBD977FDF] (SRS Labs, Inc.) SRSTSH64.dll -> C:\WINDOWS\SysNative\SRSTSH64.dll -> [2017/05/25 02:04:38 | 000,221,936 | ---- | M | MD5 = E78B514FF29194BDA96073572AC46209] (SRS Labs, Inc.) SRSHP64.dll -> C:\WINDOWS\SysNative\SRSHP64.dll -> [2017/05/25 02:04:36 | 000,209,504 | ---- | M | MD5 = 6669FCE03C19F506FCBC870C74166277] (SRS Labs, Inc.) SRRPTR64.dll -> C:\WINDOWS\SysNative\SRRPTR64.dll -> [2017/05/25 02:04:30 | 001,435,104 | ---- | M | MD5 = 616E094561AA4BC246FDAB13E10D7307] (Synopsys, Inc.) SRCOM64.dll -> C:\WINDOWS\SysNative\SRCOM64.dll -> [2017/05/25 02:04:26 | 000,381,376 | ---- | M | MD5 = B3E10DC7AAA9FAABF81B93FD9BA34997] (Synopsys, Inc.) SRCOM.dll -> C:\WINDOWS\SysWow64\SRCOM.dll -> [2017/05/25 02:04:22 | 000,341,112 | ---- | M | MD5 = 444245C7E05DAA78F6F08C491C20DC38] (Synopsys, Inc.) SRCOM.dll -> C:\WINDOWS\SysNative\SRCOM.dll -> [2017/05/25 02:04:22 | 000,341,112 | ---- | M | MD5 = 444245C7E05DAA78F6F08C491C20DC38] (Synopsys, Inc.) SRAPO64.dll -> C:\WINDOWS\SysNative\SRAPO64.dll -> [2017/05/25 02:04:20 | 000,467,120 | ---- | M | MD5 = 567A37C922AB823B57A4411C826A0628] (Synopsys, Inc.) sltech64.dll -> C:\WINDOWS\SysNative\sltech64.dll -> [2017/05/25 02:04:06 | 003,122,624 | ---- | M | MD5 = 9F575A46008FA5C884713F4C68C209D1] (DTS, Inc.) slcnt64.dll -> C:\WINDOWS\SysNative\slcnt64.dll -> [2017/05/25 02:03:36 | 003,410,800 | ---- | M | MD5 = AF4A068AAE74487DFB3AFF34C0391DCD] (DTS, Inc.) sl3apo64.dll -> C:\WINDOWS\SysNative\sl3apo64.dll -> [2017/05/25 02:03:26 | 000,984,880 | ---- | M | MD5 = 12E7F88E24DF7C87139E1A21CF32F61A] (DTS, Inc.) SFNHK64.dll -> C:\WINDOWS\SysNative\SFNHK64.dll -> [2017/05/25 02:03:04 | 000,231,888 | ---- | M | MD5 = 62B0C373CD21DD0CD93249726AD593FC] (Synopsys, Inc.) SFCOM64.dll -> C:\WINDOWS\SysNative\SFCOM64.dll -> [2017/05/25 02:02:46 | 000,090,888 | ---- | M | MD5 = D20175125F48AA8A07BA401C0463592E] (Synopsys, Inc.) SFCOM.dll -> C:\WINDOWS\SysWow64\SFCOM.dll -> [2017/05/25 02:02:44 | 000,083,592 | ---- | M | MD5 = 21D9128384387E4530DA36DA3748169B] (Virage Logic Corporation / Sonic Focus) SFAPO64.dll -> C:\WINDOWS\SysNative\SFAPO64.dll -> [2017/05/25 02:02:42 | 000,088,288 | ---- | M | MD5 = 8180D2CBCDADE5AF3DB969F87741F976] (Synopsys, Inc.) SEHDRA64.dll -> C:\WINDOWS\SysNative\SEHDRA64.dll -> [2017/05/25 02:02:38 | 000,866,096 | ---- | M | MD5 = 0FD0248864B87DD3ABA43B6DAC3E8C76] (Sound Research, Corp.) SEHDHF64.dll -> C:\WINDOWS\SysNative\SEHDHF64.dll -> [2017/05/25 02:02:28 | 001,016,384 | ---- | M | MD5 = D711BAC94B0D5A17D29BA7992EED67CF] (Sound Research, Corp.) SEHDHF32.dll -> C:\WINDOWS\SysWow64\SEHDHF32.dll -> [2017/05/25 02:02:26 | 000,876,888 | ---- | M | MD5 = 87B04595BAF7F58D85E3A7F9DB609FAF] (Sound Research, Corp.) SECOMN64.dll -> C:\WINDOWS\SysNative\SECOMN64.dll -> [2017/05/25 02:02:22 | 000,867,120 | ---- | M | MD5 = 1AB9D2F912D0D13D1FA96146C05F6169] (Sound Research, Corp.) SECOMN32.dll -> C:\WINDOWS\SysWow64\SECOMN32.dll -> [2017/05/25 02:02:20 | 000,736,912 | ---- | M | MD5 = 1D2E923FE1159AA7FC29BBC324771D05] (Sound Research, Corp.) SEAPO64.dll -> C:\WINDOWS\SysNative\SEAPO64.dll -> [2017/05/25 02:02:14 | 000,525,736 | ---- | M | MD5 = 5A6B49F503C4DB30DA650044B4B8EEDF] (Sound Research, Corp.) RTEEP64A.dll -> C:\WINDOWS\SysNative\RTEEP64A.dll -> [2017/05/25 02:01:46 | 000,387,280 | ---- | M | MD5 = 8A535BE877C1010727269ECFA027FC68] (Dolby Laboratories, Inc.) RTEEL64A.dll -> C:\WINDOWS\SysNative\RTEEL64A.dll -> [2017/05/25 02:01:40 | 000,110,952 | ---- | M | MD5 = 9CC8F8C6C547E9FFC61B8C8E2B641760] (Dolby Laboratories, Inc.) RTEEG64A.dll -> C:\WINDOWS\SysNative\RTEEG64A.dll -> [2017/05/25 02:01:36 | 000,088,312 | ---- | M | MD5 = 68DBEBD52A22663A178A081D903D6B94] (Dolby Laboratories, Inc.) RTEED64A.dll -> C:\WINDOWS\SysNative\RTEED64A.dll -> [2017/05/25 02:01:30 | 000,214,800 | ---- | M | MD5 = DFA5B8B36F22413700E8C2DE0C695C55] (Dolby Laboratories, Inc.) RP3DHT64.dll -> C:\WINDOWS\SysNative\RP3DHT64.dll -> [2017/05/25 02:01:12 | 000,321,680 | ---- | M | MD5 = B6305CD765EF09C38305DB2217950733] (Dolby Laboratories, Inc.) RP3DAA64.dll -> C:\WINDOWS\SysNative\RP3DAA64.dll -> [2017/05/25 02:01:08 | 000,321,688 | ---- | M | MD5 = C4762BF9C40A5D616ABAB2A70CFD2ED5] (Dolby Laboratories, Inc.) R4EEL64A.dll -> C:\WINDOWS\SysNative\R4EEL64A.dll -> [2017/05/25 02:01:02 | 000,151,752 | ---- | M | MD5 = 3201D8C7A56D17EE842D1C3303ABF0FA] (Dolby Laboratories) slprp64.dll -> C:\WINDOWS\SysNative\slprp64.dll -> [2017/05/25 02:01:00 | 000,258,832 | ---- | M | MD5 = D1D2F139A39EAD430CACFEF34B815E69] (TODO: ) R4EEG64A.dll -> C:\WINDOWS\SysNative\R4EEG64A.dll -> [2017/05/25 02:01:00 | 000,084,584 | ---- | M | MD5 = 0BF0F6D68511A965FEEF84A4FEB941B8] (Dolby Laboratories) R4EED64A.dll -> C:\WINDOWS\SysNative\R4EED64A.dll -> [2017/05/25 02:00:58 | 000,447,680 | ---- | M | MD5 = 0FA9039AA291BA4F2AA6710ED40B4D39] (Dolby Laboratories) R4EEA64A.dll -> C:\WINDOWS\SysNative\R4EEA64A.dll -> [2017/05/25 02:00:58 | 000,134,160 | ---- | M | MD5 = C5834CDB7B32EF1BFADB74F12AD9B9C7] (Dolby Laboratories) ICEsoundAPO64.dll -> C:\WINDOWS\SysNative\ICEsoundAPO64.dll -> [2017/05/25 02:00:46 | 000,680,520 | ---- | M | MD5 = 32F931EAE1C23662A0A26230AF3F0406] (ICEpower a/s) HMLimiter.dll -> C:\WINDOWS\SysNative\HMLimiter.dll -> [2017/05/25 02:00:44 | 000,179,568 | ---- | M | MD5 = 317C33A0CE9FFF3E7699B4DC87E0BC16] (Harman) HMHVS.dll -> C:\WINDOWS\SysNative\HMHVS.dll -> [2017/05/25 02:00:42 | 000,203,808 | ---- | M | MD5 = 2DAA5C88AD3979E9BD6E22BB38F293A5] (Harman) HMEQ_Voice.dll -> C:\WINDOWS\SysNative\HMEQ_Voice.dll -> [2017/05/25 02:00:36 | 000,190,896 | ---- | M | MD5 = CEFD73823D962E8DB4623C41BB28E525] (Harman) HMEQ.dll -> C:\WINDOWS\SysNative\HMEQ.dll -> [2017/05/25 02:00:32 | 000,190,904 | ---- | M | MD5 = DFD28A0D1C9339F14128828511AD6D7F] (Harman) HMClariFi.dll -> C:\WINDOWS\SysNative\HMClariFi.dll -> [2017/05/25 02:00:26 | 000,360,312 | ---- | M | MD5 = 6C5C79B30BDB31A875D0CAC152838B18] (Harman) HMAPO.dll -> C:\WINDOWS\SysNative\HMAPO.dll -> [2017/05/25 02:00:20 | 000,366,088 | ---- | M | MD5 = 720AFC7CB7E4D9243EEE272941A7B6B9] (Windows (R) Win 7 DDK provider) R4EEP64A.dll -> C:\WINDOWS\SysNative\R4EEP64A.dll -> [2017/05/25 02:00:18 | 007,172,880 | ---- | M | MD5 = E1DEC01AA749389B07A48AA9D4E442D4] (Dolby Laboratories) HiFiDAX2APIPCLL.dll -> C:\WINDOWS\SysNative\HiFiDAX2APIPCLL.dll -> [2017/05/25 02:00:14 | 000,406,424 | ---- | M | MD5 = FC25C90C84CF6F68E5784C3A4E4B8224] (Dolby Laboratories) DTSVoiceClarityDLL64.dll -> C:\WINDOWS\SysNative\DTSVoiceClarityDLL64.dll -> [2017/05/25 02:00:10 | 000,708,280 | ---- | M | MD5 = DCFD348E9A37E1E95B2C9372CA686A1A] (DTS) DTSSymmetryDLL64.dll -> C:\WINDOWS\SysNative\DTSSymmetryDLL64.dll -> [2017/05/25 02:00:08 | 000,727,400 | ---- | M | MD5 = 9E2DF0C909F06266223F720EACFB4354] (DTS) DTSS2SpeakerDLL64.dll -> C:\WINDOWS\SysNative\DTSS2SpeakerDLL64.dll -> [2017/05/25 02:00:06 | 001,780,584 | ---- | M | MD5 = 70E38398DC8B09FC1FA058093FB7CC13] (DTS) HMUI.dll -> C:\WINDOWS\SysNative\HMUI.dll -> [2017/05/25 02:00:06 | 000,416,472 | ---- | M | MD5 = 34057FA2710BEB0C1A6F6B5E67FF30DE] (Harman) DTSS2HeadphoneDLL64.dll -> C:\WINDOWS\SysNative\DTSS2HeadphoneDLL64.dll -> [2017/05/25 02:00:04 | 001,591,024 | ---- | M | MD5 = 5AD60A6D67590889B0A96937B00A5B4A] (DTS) DTSNeoPCDLL64.dll -> C:\WINDOWS\SysNative\DTSNeoPCDLL64.dll -> [2017/05/25 02:00:00 | 000,504,272 | ---- | M | MD5 = 27A6458535D50B9B4D4AEA797E9747B8] (DTS) HiFiDAX2API.dll -> C:\WINDOWS\SysNative\HiFiDAX2API.dll -> [2017/05/25 02:00:00 | 000,378,344 | ---- | M | MD5 = C5DF10815DC8FA90FF5228EF9CA8742B] (Dolby Laboratories) HarmanAudioInterface.dll -> C:\WINDOWS\SysNative\HarmanAudioInterface.dll -> [2017/05/25 01:59:58 | 000,154,328 | ---- | M | MD5 = 45377430B7DE32B35D704F440F3EC2E6] (Harman) DTSLimiterDLL64.dll -> C:\WINDOWS\SysNative\DTSLimiterDLL64.dll -> [2017/05/25 01:59:56 | 000,445,368 | ---- | M | MD5 = 5D4E744B5F2773702DF2C376BC9E93C3] (DTS) DTSLFXAPO64.dll -> C:\WINDOWS\SysNative\DTSLFXAPO64.dll -> [2017/05/25 01:59:52 | 000,253,824 | ---- | M | MD5 = 12F57A227AABC224A61F639701CE576B] (DTS) DolbyDAX2APOProp.dll -> C:\WINDOWS\SysNative\DolbyDAX2APOProp.dll -> [2017/05/25 01:59:48 | 001,133,040 | ---- | M | MD5 = 6457E8159FB7E2AB8675C1F4688A785E] (Dolby Laboratories) DTSGFXAPONS64.dll -> C:\WINDOWS\SysNative\DTSGFXAPONS64.dll -> [2017/05/25 01:59:48 | 000,252,840 | ---- | M | MD5 = FECE76D852735EE737BD31EE21AC5414] (DTS) DTSGFXAPO64.dll -> C:\WINDOWS\SysNative\DTSGFXAPO64.dll -> [2017/05/25 01:59:46 | 000,253,864 | ---- | M | MD5 = 2B3773FBECBFC9F513244D985DD63CA1] (DTS) DDPP64AF3.dll -> C:\WINDOWS\SysNative\DDPP64AF3.dll -> [2017/05/25 01:59:44 | 006,264,600 | ---- | M | MD5 = F3553C79FA430FA15B86550A2D6A16B3] (Dolby Laboratories) DTSGainCompensatorDLL64.dll -> C:\WINDOWS\SysNative\DTSGainCompensatorDLL64.dll -> [2017/05/25 01:59:44 | 000,441,232 | ---- | M | MD5 = 46373E5D1E06BDD93BD3768FB883A754] (DTS) DTSBoostDLL64.dll -> C:\WINDOWS\SysNative\DTSBoostDLL64.dll -> [2017/05/25 01:59:42 | 001,508,896 | ---- | M | MD5 = 59284B2F85E00117B825113C3BD29FCD] (DTS) DDPP64A.dll -> C:\WINDOWS\SysNative\DDPP64A.dll -> [2017/05/25 01:59:40 | 007,096,160 | ---- | M | MD5 = 73501B48AB2C1A40E4D4F8D5FE99BC5C] (Dolby Laboratories) DTSBassEnhancementDLL64.dll -> C:\WINDOWS\SysNative\DTSBassEnhancementDLL64.dll -> [2017/05/25 01:59:34 | 000,743,928 | ---- | M | MD5 = 16CE4F4B1E5618B54C58E289AF2257FB] (DTS) DolbyDAX2APOvlldp.dll -> C:\WINDOWS\SysNative\DolbyDAX2APOvlldp.dll -> [2017/05/25 01:59:30 | 001,170,840 | ---- | M | MD5 = FBC17A71A1E520ABEF1DAEF1FAE3832B] (Dolby Laboratories) DolbyDAX2APOv211.dll -> C:\WINDOWS\SysNative\DolbyDAX2APOv211.dll -> [2017/05/25 01:59:28 | 005,346,968 | ---- | M | MD5 = 2F24E0AF82890074CBA69492BB3A687C] (Dolby Laboratories) CONEQMSAPOGUILibrary.dll -> C:\WINDOWS\SysNative\CONEQMSAPOGUILibrary.dll -> [2017/05/25 01:59:28 | 000,122,288 | ---- | M | MD5 = 17B1B5ABA62EA22033CC657B15E83CDA] (Real Sound Lab SIA) DolbyDAX2APOv201.dll -> C:\WINDOWS\SysNative\DolbyDAX2APOv201.dll -> [2017/05/25 01:59:26 | 002,444,648 | ---- | M | MD5 = DC7EF6B6756E3ED9785FC01643522307] (Dolby Laboratories) DDPO64AF3.dll -> C:\WINDOWS\SysNative\DDPO64AF3.dll -> [2017/05/25 01:59:22 | 000,362,016 | ---- | M | MD5 = C3A8AC0AAA2B3B94833DE08654E9EEDF] (Dolby Laboratories) DDPO64A.dll -> C:\WINDOWS\SysNative\DDPO64A.dll -> [2017/05/25 01:59:18 | 000,327,424 | ---- | M | MD5 = 5E06E4A4C275726DB63DE3F0D8C7DD4F] (Dolby Laboratories) DDPD64AF3.dll -> C:\WINDOWS\SysNative\DDPD64AF3.dll -> [2017/05/25 01:59:16 | 001,959,568 | ---- | M | MD5 = 554A344F8052482FB580F24D75C1FCB5] (Dolby Laboratories) DDPD64A.dll -> C:\WINDOWS\SysNative\DDPD64A.dll -> [2017/05/25 01:59:12 | 001,965,776 | ---- | M | MD5 = AB152FFE140F11BCC241736597A7299B] (Dolby Laboratories) audioLibVc.dll -> C:\WINDOWS\SysNative\audioLibVc.dll -> [2017/05/25 01:59:12 | 000,105,272 | ---- | M | MD5 = A8AC627B6EC902D3E0108E25B0AB31FA] () DDPA64F3.dll -> C:\WINDOWS\SysNative\DDPA64F3.dll -> [2017/05/25 01:59:10 | 000,310,384 | ---- | M | MD5 = 22053CB5D7418F7446B6872DB3DDBCE0] (Dolby Laboratories) DDPA64.dll -> C:\WINDOWS\SysNative\DDPA64.dll -> [2017/05/25 01:59:08 | 000,272,680 | ---- | M | MD5 = 111849023CAD2EBBE9AFF93C25330487] (Dolby Laboratories) AcpiServiceVnA64.dll -> C:\WINDOWS\SysNative\AcpiServiceVnA64.dll -> [2017/05/25 01:59:06 | 000,118,560 | ---- | M | MD5 = 51C56B638DAF5642C67F2E8CE730C5C5] () DAX3APOv251.dll -> C:\WINDOWS\SysNative\DAX3APOv251.dll -> [2017/05/25 01:58:58 | 001,326,392 | ---- | M | MD5 = 0600BD1966B7B8667646B4B66F22211E] (Dolby Laboratories) DAX3APOProp.dll -> C:\WINDOWS\SysNative\DAX3APOProp.dll -> [2017/05/25 01:58:54 | 001,517,896 | ---- | M | MD5 = B4E7356B1DF156E1CDA0DD5369C1644D] (Dolby Laboratories) AudysseyEfx.dll -> C:\WINDOWS\SysNative\AudysseyEfx.dll -> [2017/05/25 01:58:46 | 002,993,688 | ---- | M | MD5 = CE7FC69BE03416189AEDD59489548B92] (Audyssey Labs) rtvienna.dat -> C:\WINDOWS\SysNative\drivers\rtvienna.dat -> [2017/05/24 20:21:44 | 005,804,772 | ---- | M | MD5 = 7D7FBC9504575D97885A858EA93684F5] () RTAIODAT.DAT -> C:\WINDOWS\SysNative\drivers\RTAIODAT.DAT -> [2017/05/24 20:21:42 | 012,977,976 | ---- | M | MD5 = 696D1F3D6531A89AB576DE0F72A44947] () GiliSoft Audio Recorder Pro 7.1.0.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\GiliSoft Audio Recorder Pro 7.1.0.lnk -> [2017/05/23 19:29:01 | 000,001,350 | ---- | M | MD5 = 07E813F208D4A4CE36F9ED719C54B7AB] () GiliSoft Video Splitter 7.0.0.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\GiliSoft Video Splitter 7.0.0.lnk -> [2017/05/23 12:24:22 | 000,001,312 | ---- | M | MD5 = 852A72ED4AC4028D61443B44C2DD8BE8] () Launcher.ini -> C:\Launcher.ini -> [2017/05/23 12:10:43 | 000,000,043 | ---- | M | MD5 = FABF8A9DE5FB87CAB72D12B90996E8D5] () iMyFone D-Port.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\iMyFone D-Port.lnk -> [2017/05/23 11:59:34 | 000,001,268 | ---- | M | MD5 = F9CDAEFC0DBB93103A438ADC45BA4499] () RtCRX64.dll -> C:\WINDOWS\SysNative\RtCRX64.dll -> [2017/05/22 22:52:31 | 000,084,480 | ---- | M | MD5 = D7CFCE6811519582690065C21088E9A5] (Realtek Semiconductor.) zlib.dll -> C:\WINDOWS\SysWow64\zlib.dll -> [2017/05/22 22:35:08 | 000,053,248 | ---- | M | MD5 = 4965107D112666D3835308A831A29274] () GiliSoft Youtube Video Downloader.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\GiliSoft Youtube Video Downloader.lnk -> [2017/05/21 16:29:54 | 000,001,388 | ---- | M | MD5 = CDA9D01C53CC1661EF6CBBCAD4B7AF25] () uninstaller.dat -> C:\WINDOWS\uninstaller.dat -> [2017/05/21 11:07:52 | 000,051,617 | ---- | M | MD5 = 4F9DB054BE3DBDE9731D57753CC15F94] () Sothink Media Toolkit.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Sothink Media Toolkit.lnk -> [2017/05/19 13:22:41 | 000,001,262 | ---- | M | MD5 = F6DA71771D2663B55B5D3453525B5ABA] () NTUSER.DAT{1f0dc2b2-3c32-11e7-bcbe-4c72b9f956a2}.TMContainer00000000000000000002.regtrans-ms -> C:\Users\Jean-Marie\NTUSER.DAT{1f0dc2b2-3c32-11e7-bcbe-4c72b9f956a2}.TMContainer00000000000000000002.regtrans-ms -> [2017/05/19 03:51:57 | 000,524,288 | -HS- | M | Unable to obtain MD5] () aswStm.sys -> C:\WINDOWS\SysNative\drivers\aswStm.sys -> [2017/05/19 03:35:24 | 000,158,880 | ---- | M | MD5 = 2933CBC7643168E4288D443B4125941C] (AVAST Software) Flip HTML5.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Flip HTML5.lnk -> [2017/05/12 07:21:40 | 000,001,155 | ---- | M | MD5 = 68C479FEDEFF0A0FC9047FF51EE685C1] () Unreal Commander.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Unreal Commander.lnk -> [2017/05/12 07:20:46 | 000,000,706 | ---- | M | MD5 = 03A71DDDCD7071B2C74EB98853078077] () ISO Workshop.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\ISO Workshop.lnk -> [2017/05/12 07:09:24 | 000,001,298 | ---- | M | MD5 = 82830724EA1E215DAC60E1EC4EE79A05] () Ashampoo StartUp Tuner 2.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Ashampoo StartUp Tuner 2.lnk -> [2017/05/12 07:07:54 | 000,001,215 | ---- | M | MD5 = 7F21FED1C2729C54A1AE7466137CAD40] () aswSP.sys -> C:\WINDOWS\SysNative\drivers\aswSP.sys -> [2017/05/12 03:53:47 | 000,569,192 | ---- | M | MD5 = 7A17BD26C74F5329CB1DF029AE4DD357] (AVAST Software) aswVmm.sys -> C:\WINDOWS\SysNative\drivers\aswVmm.sys -> [2017/05/12 03:53:47 | 000,339,696 | ---- | M | MD5 = E76C21203E29F2DCC489EF585E0B1A38] (AVAST Software) aswMonFlt.sys -> C:\WINDOWS\SysNative\drivers\aswMonFlt.sys -> [2017/05/12 03:53:46 | 000,128,648 | ---- | M | MD5 = 2B1490F2F1CC76C9C9B61CE63D6E7973] (AVAST Software) aswRvrt.sys -> C:\WINDOWS\SysNative\drivers\aswRvrt.sys -> [2017/05/12 03:53:46 | 000,075,704 | ---- | M | MD5 = C1007774450CFAB19D784D50C3410FC7] (AVAST Software) aswHwid.sys -> C:\WINDOWS\SysNative\drivers\aswHwid.sys -> [2017/05/12 03:53:46 | 000,038,296 | ---- | M | MD5 = BA02CA77D989710F79FD662019C4DF94] (AVAST Software) aswBoot.exe -> C:\WINDOWS\SysNative\aswBoot.exe -> [2017/05/12 03:53:45 | 000,400,456 | ---- | M | MD5 = C7FB2578AD61DB530FF8169348EE9A30] (AVAST Software) aswRdr2.sys -> C:\WINDOWS\SysNative\drivers\aswRdr2.sys -> [2017/05/12 03:53:44 | 000,101,152 | ---- | M | MD5 = F26D1F761E14789743275FA5D258EAB8] (AVAST Software) aswSnx.sys -> C:\WINDOWS\SysNative\drivers\aswSnx.sys -> [2017/05/12 03:52:02 | 001,007,160 | ---- | M | MD5 = EB1991686949400C51B8C21CE013621E] (AVAST Software) aswbloga.sys -> C:\WINDOWS\SysNative\drivers\aswbloga.sys -> [2017/05/12 03:51:31 | 000,334,576 | ---- | M | MD5 = 5C561968CF601D76A98692DCC8CF74ED] (AVAST Software s.r.o.) aswbuniva.sys -> C:\WINDOWS\SysNative\drivers\aswbuniva.sys -> [2017/05/12 03:51:31 | 000,049,016 | ---- | M | MD5 = 335E5F19E7397A283B7ED20FE7B369EB] (AVAST Software s.r.o.) aswbidsdrivera.sys -> C:\WINDOWS\SysNative\drivers\aswbidsdrivera.sys -> [2017/05/12 03:51:30 | 000,311,808 | ---- | M | MD5 = 0C19C91ED99964925FF8B05C23743AB1] (AVAST Software s.r.o.) aswbidsha.sys -> C:\WINDOWS\SysNative\drivers\aswbidsha.sys -> [2017/05/12 03:51:30 | 000,190,256 | ---- | M | MD5 = 670839F4BA6D82F3035AADFE8274F02E] (AVAST Software s.r.o.) pxcpm5L.dll -> C:\WINDOWS\SysNative\pxcpm5L.dll -> [2017/05/12 01:19:08 | 000,150,720 | ---- | M | MD5 = AEA44FFAF079E81EA79B52F78DBA2420] (Tracker Software Products (Canada) Ltd.) DriveImage XML.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\DriveImage XML.lnk -> [2017/05/05 13:26:46 | 000,001,210 | ---- | M | MD5 = 968D71A2CDCE6319B3E04452684FA89B] () Foxit Reader.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Foxit Reader.lnk -> [2017/05/04 18:07:46 | 000,001,454 | ---- | M | MD5 = 292323CC13038756CDCEE540035F039F] () NTUSER.DAT{2bc079dc-2aa8-11e7-8051-d64fc06443f1}.TMContainer00000000000000000001.regtrans-ms -> C:\Users\Jean-Marie\NTUSER.DAT{2bc079dc-2aa8-11e7-8051-d64fc06443f1}.TMContainer00000000000000000001.regtrans-ms -> [2017/05/03 14:58:34 | 000,524,288 | -HS- | M | MD5 = 472E111BA268AC4CD1021BEF09165B0E] () NTUSER.DAT{2bc079dc-2aa8-11e7-8051-d64fc06443f1}.TM.blf -> C:\Users\Jean-Marie\NTUSER.DAT{2bc079dc-2aa8-11e7-8051-d64fc06443f1}.TM.blf -> [2017/05/03 14:58:34 | 000,065,536 | -HS- | M | MD5 = 2069E8FBD91CA2718FACA94454B785E7] () WinMend File Copy.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\WinMend File Copy.lnk -> [2017/05/02 17:37:28 | 000,001,157 | ---- | M | MD5 = AE3F6550918EC78480B584000C68330A] () Windows 10 Transformation Pack 7.0.rar -> C:\Users\Jean-Marie\Documents\Windows 10 Transformation Pack 7.0.rar -> [2017/05/02 13:34:31 | 140,034,974 | ---- | M | MD5 = 4531C93D3012F5434E1EA554D0D01CAE] () Windows 10 UX Pack 7.0.rar -> C:\Users\Jean-Marie\Documents\Windows 10 UX Pack 7.0.rar -> [2017/05/02 13:34:19 | 101,622,425 | ---- | M | MD5 = 79A0783A80D77567183B26BB2028F13E] () power2go 10 & 11 setups.zip -> C:\Users\Jean-Marie\Documents\power2go 10 & 11 setups.zip -> [2017/05/02 06:44:25 | 882,621,505 | ---- | M | MD5 = 46D81931C3D4CB82133C74D5F81D8538] () CyberGhost 6.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\CyberGhost 6.lnk -> [2017/05/01 22:54:20 | 000,000,917 | ---- | M | MD5 = 3B3123FEA9A76150398927BB9B4CF879] () GUSBootStartup.sys -> C:\WINDOWS\SysNative\drivers\GUSBootStartup.sys -> [2017/05/01 21:53:38 | 000,020,160 | ---- | M | MD5 = E4626B663B94E5FEB90F497395B5C059] (Glarysoft Ltd) diskptex.dat -> C:\WINDOWS\diskptex.dat -> [2017/04/29 20:57:52 | 000,000,000 | ---- | M | MD5 = D41D8CD98F00B204E9800998ECF8427E] () diskpt.dat -> C:\WINDOWS\diskpt.dat -> [2017/04/29 20:57:52 | 000,000,000 | ---- | M | MD5 = D41D8CD98F00B204E9800998ECF8427E] () Flip PDF Professional.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Flip PDF Professional.lnk -> [2017/04/29 11:38:13 | 000,001,252 | ---- | M | MD5 = 5A22DDF7CA4859625E0D5632D1B3D73D] () Kastor Free Video Converter.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Kastor Free Video Converter.lnk -> [2017/04/29 11:31:17 | 000,001,269 | ---- | M | MD5 = F82ECD5F469823B0BEA8EBC28EAE55BE] () Free Video to GIF Converter.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Free Video to GIF Converter.lnk -> [2017/04/29 11:25:36 | 000,001,365 | ---- | M | MD5 = B99DB72EF2393D0DD51DDDE04284D90C] () Copy Handler.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Copy Handler.lnk -> [2017/04/29 09:46:58 | 000,000,883 | ---- | M | MD5 = 1732718CCF2FFB792346AC28A0772231] () Xilisoft Découpeur Vidéo 2.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Xilisoft Découpeur Vidéo 2.lnk -> [2017/04/29 09:38:11 | 000,002,237 | ---- | M | MD5 = BD10D131EC3796204C7AA71C79DCDFCF] () Xilisoft Éditeur Vidéo 2.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Xilisoft Éditeur Vidéo 2.lnk -> [2017/04/29 09:36:50 | 000,002,212 | ---- | M | MD5 = E776BB19F5B10046C4BAF7DA2375A213] () Shadow Defender.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Shadow Defender.lnk -> [2017/04/29 09:21:10 | 000,001,113 | ---- | M | MD5 = 3AA21078CEB183109F26D82C3B4446C2] () diskpt.crt -> C:\WINDOWS\diskpt.crt -> [2017/04/29 09:20:55 | 000,000,064 | ---- | M | MD5 = 57F716609A45CBC5B15C65981F6B4E89] () iSkysoft iMedia Converter Deluxe.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\iSkysoft iMedia Converter Deluxe.lnk -> [2017/04/28 14:55:36 | 000,001,270 | ---- | M | MD5 = 0B557BB3BD92CC336424942648620B27] () ShadowCopy.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\ShadowCopy.lnk -> [2017/04/28 14:09:06 | 000,001,219 | ---- | M | MD5 = 74AB00F9E2A0016D0F8765A6F7CA8624] () dtliteusbbus.sys -> C:\WINDOWS\SysNative\drivers\dtliteusbbus.sys -> [2017/04/28 14:08:48 | 000,047,672 | ---- | M | MD5 = E23FDD696839A4790682CA66C48D3F2F] (Disc Soft Ltd) dtlitescsibus.sys -> C:\WINDOWS\SysNative\drivers\dtlitescsibus.sys -> [2017/04/28 14:05:40 | 000,030,264 | ---- | M | MD5 = 679FF716052109392D870F6A6C4A3535] (Disc Soft Ltd) Wondershare TidyMyMusic.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Wondershare TidyMyMusic.lnk -> [2017/04/28 13:07:15 | 000,001,298 | ---- | M | MD5 = 2894B59F17808A4A3699E1A315899728] () Aiseesoft Video Enhancer.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Aiseesoft Video Enhancer.lnk -> [2017/04/28 12:23:01 | 000,001,629 | ---- | M | MD5 = D1E52038A5B545BCF75C14705F71D5A9] () HWiNFO64A.SYS -> C:\WINDOWS\SysWow64\drivers\HWiNFO64A.SYS -> [2017/04/27 15:06:32 | 000,027,552 | ---- | M | MD5 = EF558A02D734A1403583E95CCEEC2487] (REALiX(tm)) NTUSER.DAT{2bc079dc-2aa8-11e7-8051-d64fc06443f1}.TMContainer00000000000000000002.regtrans-ms -> C:\Users\Jean-Marie\NTUSER.DAT{2bc079dc-2aa8-11e7-8051-d64fc06443f1}.TMContainer00000000000000000002.regtrans-ms -> [2017/04/27 10:07:29 | 000,524,288 | -HS- | M | MD5 = 125F52F693CE79B34C4E8ADFEB8806B5] () RtsUer.sys -> C:\WINDOWS\SysNative\drivers\RtsUer.sys -> [2017/04/27 09:02:58 | 000,420,832 | ---- | M | MD5 = BAF9F6E278144989B527FF9581BDBA8F] (Realsil Semiconductor Corporation) ntuser.ini -> C:\Users\Jean-Marie\ntuser.ini -> [2017/04/26 20:46:00 | 000,000,020 | -HS- | M | MD5 = 6FC234AD3752E1267B34FB12BCD6718B] () diagwrn.xml -> C:\WINDOWS\diagwrn.xml -> [2017/04/26 20:16:35 | 000,011,433 | ---- | M | MD5 = 0E359EF178B73AAAE2C6D6AC11B4FE15] () diagerr.xml -> C:\WINDOWS\diagerr.xml -> [2017/04/26 20:16:35 | 000,011,433 | ---- | M | MD5 = 0E359EF178B73AAAE2C6D6AC11B4FE15] () emptyregdb.dat -> C:\WINDOWS\SysNative\emptyregdb.dat -> [2017/04/26 20:07:12 | 000,023,108 | ---- | M | MD5 = 45753B2B17E144450F611AE8C5AEB447] () edgehtmlpluginpolicy.bin -> C:\WINDOWS\SysNative\edgehtmlpluginpolicy.bin -> [2017/04/26 19:34:20 | 000,032,004 | ---- | M | MD5 = B0A3B85B6A2605A26B8C44B9A9C5F9B1] () PerfStringBackup.INI -> C:\WINDOWS\SysWow64\PerfStringBackup.INI -> [2017/04/26 18:52:03 | 001,978,024 | ---- | M | MD5 = A03878583E9A9CD28C418B3E37CE0021] () ativpsrm.bin -> C:\WINDOWS\ativpsrm.bin -> [2017/04/26 18:50:25 | 000,000,000 | ---- | M | MD5 = D41D8CD98F00B204E9800998ECF8427E] () Msft_Kernel_avchv_01009.Wdf -> C:\WINDOWS\SysNative\drivers\Msft_Kernel_avchv_01009.Wdf -> [2017/04/26 18:49:26 | 000,000,000 | -H-- | M | MD5 = D41D8CD98F00B204E9800998ECF8427E] () Msft_User_WpdFs_01_11_00.Wdf -> C:\WINDOWS\SysNative\drivers\Msft_User_WpdFs_01_11_00.Wdf -> [2017/04/26 18:49:00 | 000,000,000 | -H-- | M | MD5 = D41D8CD98F00B204E9800998ECF8427E] () progress.ini -> C:\WINDOWS\progress.ini -> [2017/04/26 16:34:06 | 000,000,036 | ---- | M | MD5 = 09394999ADB19901C665454EE964B13C] () BootMan.exe -> C:\WINDOWS\SysWow64\BootMan.exe -> [2017/04/26 15:37:52 | 002,953,920 | ---- | M | MD5 = B4D8A81F2BD16301E192667665EC4804] () BootMan.exe -> C:\WINDOWS\SysNative\BootMan.exe -> [2017/04/26 15:37:48 | 003,885,248 | ---- | M | MD5 = 4F2711EAABDCCEE069ED7E12B74D8558] () videoimp.ini -> C:\WINDOWS\videoimp.ini -> [2017/04/24 09:41:02 | 000,000,433 | ---- | M | MD5 = E6E7ED3CEEBFC47D7C23F71665110432] () TeamViewer_Setup.exe -> C:\Users\Jean-Marie\Documents\TeamViewer_Setup.exe -> [2017/04/24 09:04:43 | 014,718,840 | ---- | M | MD5 = A1ED5F97B6D7D5756EF1C2E4D4F554B0] (TeamViewer GmbH) GUBootStartup.sys -> C:\WINDOWS\SysNative\drivers\GUBootStartup.sys -> [2017/04/23 11:52:40 | 000,020,160 | ---- | M | MD5 = C06C3D6C5A0805B314E3E940632C97CB] (Glarysoft Ltd) Kastor Free Vimeo Downloader.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Kastor Free Vimeo Downloader.lnk -> [2017/04/23 11:29:59 | 000,001,301 | ---- | M | MD5 = DC0CE472AC2D28D7E5DB681AAE8A4928] () Kastor Stream Recorder.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Kastor Stream Recorder.lnk -> [2017/04/23 11:27:18 | 000,001,234 | ---- | M | MD5 = AAB97940B90BBA33E71AF49E74F2B377] () imdsksvc.exe -> C:\WINDOWS\SysNative\imdsksvc.exe -> [2017/04/12 11:03:08 | 000,022,024 | ---- | M | MD5 = C736CD6ADDDE98AEC8D1D3C0C4E5BAE6] (Olof Lagerkvist) npe-fre.exe -> C:\WINDOWS\SysNative\npe-fre.exe -> [2017/04/12 05:38:36 | 000,713,632 | ---- | M | MD5 = DABD3C78809D580EBCF04B4D183ECFC9] () rzc7187za.sys -> C:\WINDOWS\SysNative\drivers\zinstall_z77\rzc7187za.sys -> [2017/04/12 04:41:52 | 000,255,120 | ---- | M | MD5 = EFDAF693FED0C553593BE0B517237811] (rzc7187za Foundation) imdisk.sys -> C:\WINDOWS\SysNative\drivers\imdisk.sys -> [2017/04/12 04:41:48 | 000,064,144 | ---- | M | MD5 = 2CD3BB4134D0AD024AA6B6B61B8A6404] (Olof Lagerkvist) awealloc.sys -> C:\WINDOWS\SysNative\drivers\awealloc.sys -> [2017/04/12 04:41:46 | 000,028,304 | ---- | M | MD5 = 1D5B6A41361B0883848570AC941A7FD3] (Olof Lagerkvist) WSPDFelementMonitor.dll -> C:\WINDOWS\SysNative\WSPDFelementMonitor.dll -> [2017/04/11 11:57:02 | 000,112,840 | ---- | M | MD5 = 40153E8CBF6F3B2301A3EB002E1AD145] (Wondershare Software) diskpt.sys -> C:\WINDOWS\SysNative\drivers\diskpt.sys -> [2017/04/09 15:52:22 | 000,417,424 | ---- | M | MD5 = 265A5B7037EE283830148F5F906DF425] (SHADOWDEFENDER.COM) UsbFix_Standard(3).zip -> C:\Users\Jean-Marie\Documents\UsbFix_Standard(3).zip -> [2017/04/06 10:01:36 | 003,923,789 | ---- | M | MD5 = 721FE9C6C5355D687109B83943E935E4] () UsbFix_Standard(2).zip -> C:\Users\Jean-Marie\Documents\UsbFix_Standard(2).zip -> [2017/04/06 10:01:33 | 003,923,789 | ---- | M | MD5 = 721FE9C6C5355D687109B83943E935E4] () UsbFix_Standard.zip -> C:\Users\Jean-Marie\Documents\UsbFix_Standard.zip -> [2017/04/06 10:01:31 | 003,923,789 | ---- | M | MD5 = 721FE9C6C5355D687109B83943E935E4] () UsbFix_Maintenance.zip -> C:\Users\Jean-Marie\Documents\UsbFix_Maintenance.zip -> [2017/04/06 10:01:28 | 002,754,406 | ---- | M | MD5 = DAC0785C68DB4EFF1D7A487E33DBF966] () IMFCameraProtect.sys -> C:\WINDOWS\SysNative\drivers\IMFCameraProtect.sys -> [2017/03/29 18:05:42 | 000,044,096 | ---- | M | MD5 = 870BDFC29BAC30339BF70639781143FD] (IObit.com) KeyCrypt64.sys -> C:\WINDOWS\SysNative\drivers\KeyCrypt64.sys -> [2017/03/22 12:44:48 | 000,161,408 | ---- | M | MD5 = BF0E0B7DE4E9BC8E0515779F66ACA853] (Zemana Ltd.) cgnetfilter1521.sys -> C:\WINDOWS\SysNative\drivers\cgnetfilter1521.sys -> [2017/03/22 09:39:54 | 000,084,768 | ---- | M | MD5 = 44293BF717CA39DC925C6A05453D8D34] (Windows (R) Win 7 DDK provider) CaptureCountdown.hcp -> C:\WINDOWS\SysNative\CaptureCountdown.hcp -> [2017/03/20 07:11:46 | 000,125,015 | R--- | M | MD5 = DC112F4CFDF23AAF5CB0F46BE92CB1CE] () CaptureBrackets.hcp -> C:\WINDOWS\SysNative\CaptureBrackets.hcp -> [2017/03/20 07:11:46 | 000,119,017 | R--- | M | MD5 = 4B307488C9D3D1030DEC61FA4DAC7EE0] () CaptureToast.hcp -> C:\WINDOWS\SysNative\CaptureToast.hcp -> [2017/03/20 07:11:46 | 000,017,806 | R--- | M | MD5 = F80C2CB1D5A28528D662B0DDF440F0F3] () HolographicShareInterop.ProxyStub.dll -> C:\WINDOWS\SysNative\HolographicShareInterop.ProxyStub.dll -> [2017/03/20 07:11:45 | 000,014,336 | ---- | M | MD5 = 7B7859030FF4D38A912A7BCC4A1B3B5E] () perfi00C.dat -> C:\WINDOWS\SysNative\perfi00C.dat -> [2017/03/20 07:10:21 | 000,351,124 | ---- | M | MD5 = 9A780B14EEAFA8B9A2409F02BF9D9AF0] () perfd00C.dat -> C:\WINDOWS\SysNative\perfd00C.dat -> [2017/03/20 07:10:21 | 000,040,694 | ---- | M | MD5 = 9F9AF8517189B0D61B2615007E071084] () dssec.dat -> C:\WINDOWS\SysWow64\dssec.dat -> [2017/03/18 23:01:14 | 000,215,943 | ---- | M | MD5 = 8C6F56F4CDDE6A1FD01F4FCF2773298E] () NOISE.DAT -> C:\WINDOWS\SysWow64\NOISE.DAT -> [2017/03/18 23:01:14 | 000,000,741 | ---- | M | MD5 = DE78E0C57BC478D47CC2F470B68E1A45] () OEMDefaultAssociations.xml -> C:\WINDOWS\SysNative\OEMDefaultAssociations.xml -> [2017/03/18 23:01:13 | 000,015,940 | ---- | M | MD5 = C9246EF96F14CB2F0C393F73A20590D8] () lmhosts.sam -> C:\WINDOWS\SysNative\drivers\etc\lmhosts.sam -> [2017/03/18 23:01:13 | 000,003,683 | ---- | M | MD5 = 18413B90E1B291EC3E777A845C37CFEE] () NOISE.DAT -> C:\WINDOWS\SysNative\NOISE.DAT -> [2017/03/18 23:01:13 | 000,000,741 | ---- | M | MD5 = DE78E0C57BC478D47CC2F470B68E1A45] () perfi009.dat -> C:\WINDOWS\SysNative\perfi009.dat -> [2017/03/18 23:01:12 | 000,297,062 | ---- | M | MD5 = 56C3B96DD714B0DA77C0B9FB0D392C86] () dssec.dat -> C:\WINDOWS\SysNative\dssec.dat -> [2017/03/18 23:01:12 | 000,215,943 | ---- | M | MD5 = 8C6F56F4CDDE6A1FD01F4FCF2773298E] () perfd009.dat -> C:\WINDOWS\SysNative\perfd009.dat -> [2017/03/18 23:01:12 | 000,033,424 | ---- | M | MD5 = 1E60BC5E525063B96078DF17FBD3C4E1] () DefaultQuestions.json -> C:\WINDOWS\SysNative\DefaultQuestions.json -> [2017/03/18 23:01:12 | 000,000,858 | ---- | M | MD5 = 664AA698FC0106A2B075A641E8DC6302] () xpsrchvw.xml -> C:\WINDOWS\SysWow64\xpsrchvw.xml -> [2017/03/18 22:59:52 | 000,076,060 | ---- | M | MD5 = 9D6B8FC71167D22849424084F0F3D9E9] () xpsrchvw.xml -> C:\WINDOWS\SysNative\xpsrchvw.xml -> [2017/03/18 22:59:52 | 000,076,060 | ---- | M | MD5 = 9D6B8FC71167D22849424084F0F3D9E9] () ScavengeSpace.xml -> C:\WINDOWS\SysNative\ScavengeSpace.xml -> [2017/03/18 22:59:52 | 000,010,429 | ---- | M | MD5 = 5C18CD22BE4628865FCB63337A6E5EF6] () ieuinit.inf -> C:\WINDOWS\SysWow64\ieuinit.inf -> [2017/03/18 22:59:49 | 000,003,458 | ---- | M | MD5 = 6B31D08801D3A3F51B59FB1DB14E4A01] () Core.xml -> C:\WINDOWS\Core.xml -> [2017/03/18 22:59:41 | 000,034,390 | ---- | M | MD5 = F471CF70EE6D49C5650A4D5295531435] () lcphrase.tbl -> C:\WINDOWS\SysWow64\lcphrase.tbl -> [2017/03/18 22:58:59 | 000,211,938 | ---- | M | MD5 = 531FE5A2634D87A078017259F21D9736] () lcptr.tbl -> C:\WINDOWS\SysWow64\lcptr.tbl -> [2017/03/18 22:58:59 | 000,024,114 | ---- | M | MD5 = D3C85593F8C4576FCF9B42AC48CA4368] () SecurityAndMaintenance_Error.png -> C:\WINDOWS\SysWow64\SecurityAndMaintenance_Error.png -> [2017/03/18 22:58:58 | 000,006,886 | ---- | M | MD5 = 099BA37F81C044F6B2609537FDB7D872] () SecurityAndMaintenance.png -> C:\WINDOWS\SysWow64\SecurityAndMaintenance.png -> [2017/03/18 22:58:58 | 000,005,796 | ---- | M | MD5 = 00E5FCFD833151F7CBDE607E2F7AFEB4] () SecurityAndMaintenance_Alert.png -> C:\WINDOWS\SysWow64\SecurityAndMaintenance_Alert.png -> [2017/03/18 22:58:58 | 000,002,626 | ---- | M | MD5 = 5719BFC9CFDA7A9C059A71A47A0E6383] () lusrmgr.msc -> C:\WINDOWS\SysWow64\lusrmgr.msc -> [2017/03/18 22:58:56 | 000,144,998 | ---- | M | MD5 = 3279476E39DE235B426D69CFE8DEBF55] () DscCoreConfProv.dll -> C:\WINDOWS\SysWow64\DscCoreConfProv.dll -> [2017/03/18 22:58:56 | 000,138,752 | ---- | M | MD5 = DC32B90CF4223CE6E5E50233BD5FB331] (Windows (R) Win 7 DDK provider) SubRange.uce -> C:\WINDOWS\SysWow64\SubRange.uce -> [2017/03/18 22:58:56 | 000,093,702 | ---- | M | MD5 = 30F5568679A54042F99CA9EC1102EBCD] () ideograf.uce -> C:\WINDOWS\SysWow64\ideograf.uce -> [2017/03/18 22:58:56 | 000,060,458 | ---- | M | MD5 = 038F6AD6CEE43585D814CDBC7CDFD3EC] () BWContextHandler.dll -> C:\WINDOWS\SysWow64\BWContextHandler.dll -> [2017/03/18 22:58:56 | 000,054,272 | ---- | M | MD5 = 693DE46346815A50B595529FF6F0F958] () gb2312.uce -> C:\WINDOWS\SysWow64\gb2312.uce -> [2017/03/18 22:58:56 | 000,024,006 | ---- | M | MD5 = 4FDED87068052EEB9B72A97FDBC141DB] () bopomofo.uce -> C:\WINDOWS\SysWow64\bopomofo.uce -> [2017/03/18 22:58:56 | 000,022,984 | ---- | M | MD5 = 405E1EF8E3C88E9BCD2853382BB12430] () ShiftJIS.uce -> C:\WINDOWS\SysWow64\ShiftJIS.uce -> [2017/03/18 22:58:56 | 000,016,740 | ---- | M | MD5 = 8CA32E9D986FA76F60EFBCFCD9D80A58] () korean.uce -> C:\WINDOWS\SysWow64\korean.uce -> [2017/03/18 22:58:56 | 000,012,876 | ---- | M | MD5 = 7A7A04370A6030B9B0E8178DAD4A6E41] () kanji_2.uce -> C:\WINDOWS\SysWow64\kanji_2.uce -> [2017/03/18 22:58:56 | 000,008,484 | ---- | M | MD5 = 529BBD63519BBD654EF328454019693F] () kanji_1.uce -> C:\WINDOWS\SysWow64\kanji_1.uce -> [2017/03/18 22:58:56 | 000,006,948 | ---- | M | MD5 = 7C0C25F4BA1084C4ABBEEA2C74194C5F] () icuin.dll -> C:\WINDOWS\SysWow64\icuin.dll -> [2017/03/18 22:58:54 | 001,638,400 | R--- | M | MD5 = 1103780D756AA2FB9E77E3EFCDF0DA01] (The ICU Project) icuuc.dll -> C:\WINDOWS\SysWow64\icuuc.dll -> [2017/03/18 22:58:54 | 001,135,616 | R--- | M | MD5 = 2B0C7708F336874D96DC04B30E3D42CB] (The ICU Project) winsqlite3.dll -> C:\WINDOWS\SysWow64\winsqlite3.dll -> [2017/03/18 22:58:54 | 000,584,216 | ---- | M | MD5 = F56116AC148838EAB5C2A922E3A09625] (SQLite Development Team) InputHost.dll -> C:\WINDOWS\SysWow64\InputHost.dll -> [2017/03/18 22:58:54 | 000,116,824 | ---- | M | MD5 = 24E1434E899B3EC4E3CD4CA56AA63BC6] () HeatCore.dll -> C:\WINDOWS\SysWow64\HeatCore.dll -> [2017/03/18 22:58:54 | 000,112,128 | ---- | M | MD5 = 2927ADFC93821B344BA524BCF9889A51] () WindowsDefaultHeatProcessor.dll -> C:\WINDOWS\SysWow64\WindowsDefaultHeatProcessor.dll -> [2017/03/18 22:58:54 | 000,086,528 | ---- | M | MD5 = D676BC75BD566BC91BFEC3D4EDA42655] () sysprtj.sep -> C:\WINDOWS\SysWow64\sysprtj.sep -> [2017/03/18 22:58:54 | 000,003,666 | ---- | M | MD5 = 58A67EC6B00A54A69DC364194CA171E0] () sysprint.sep -> C:\WINDOWS\SysWow64\sysprint.sep -> [2017/03/18 22:58:54 | 000,003,317 | ---- | M | MD5 = 81B14F1AD906AC1CF9102796C97A54FE] () tcpbidi.xml -> C:\WINDOWS\SysWow64\tcpbidi.xml -> [2017/03/18 22:58:54 | 000,001,673 | ---- | M | MD5 = 31B010EF50D54D548B4B8B211F421318] () @EnrollmentToastIcon.png -> C:\WINDOWS\SysWow64\@EnrollmentToastIcon.png -> [2017/03/18 22:58:54 | 000,000,330 | ---- | M | MD5 = 495C1F072039B434827A5FE0D9761E4D] () pcl.sep -> C:\WINDOWS\SysWow64\pcl.sep -> [2017/03/18 22:58:54 | 000,000,150 | ---- | M | MD5 = 66D58077CC739E4B8166E33AB0BA4639] () pscript.sep -> C:\WINDOWS\SysWow64\pscript.sep -> [2017/03/18 22:58:54 | 000,000,051 | ---- | M | MD5 = C09741B9886EF0D15EC3B1443352FB62] () Windows.UI.Input.Inking.Analysis.dll -> C:\WINDOWS\SysWow64\Windows.UI.Input.Inking.Analysis.dll -> [2017/03/18 22:58:52 | 003,200,000 | ---- | M | MD5 = 9F5C9217F39B2FFFC42DD41B70AFBC84] () xboxgipsynthetic.dll -> C:\WINDOWS\SysWow64\xboxgipsynthetic.dll -> [2017/03/18 22:58:52 | 000,059,904 | ---- | M | MD5 = 0EE8797A5CBE1C3FC90960992217FBB9] () chs_singlechar_pinyin.dat -> C:\WINDOWS\SysWow64\chs_singlechar_pinyin.dat -> [2017/03/18 22:58:51 | 000,167,640 | ---- | M | MD5 = CCEAEFAA4DF2F399E9A179D942FEB23C] () @VpnToastIcon.png -> C:\WINDOWS\SysWow64\@VpnToastIcon.png -> [2017/03/18 22:58:51 | 000,000,404 | ---- | M | MD5 = 1622DE67156496C78D6B7BE9B471645B] () AppxProvisioning.xml -> C:\WINDOWS\SysWow64\AppxProvisioning.xml -> [2017/03/18 22:58:48 | 000,002,778 | ---- | M | MD5 = 331C418378E2F0B02E0EBC968006986C] () WimBootCompress.ini -> C:\WINDOWS\SysWow64\WimBootCompress.ini -> [2017/03/18 22:58:48 | 000,002,307 | ---- | M | MD5 = BB2D1DF427C9284DE64DC66A6F1CC2AD] () winrm.vbs -> C:\WINDOWS\SysWow64\winrm.vbs -> [2017/03/18 22:58:46 | 000,204,105 | ---- | M | MD5 = 9D7684F978EBD77E6A3EA7EF1330B946] () wsmanconfig_schema.xml -> C:\WINDOWS\SysWow64\wsmanconfig_schema.xml -> [2017/03/18 22:58:46 | 000,004,675 | ---- | M | MD5 = 930423065AB3F5DB52D5726C7FC66385] () WsmTxt.xsl -> C:\WINDOWS\SysWow64\WsmTxt.xsl -> [2017/03/18 22:58:46 | 000,002,426 | ---- | M | MD5 = B2EDF82825D979928AE07CBE9C7A2160] () WsmPty.xsl -> C:\WINDOWS\SysWow64\WsmPty.xsl -> [2017/03/18 22:58:46 | 000,001,559 | ---- | M | MD5 = D6CBFA113B69C491DE370E85EBAC80E9] () winrm.cmd -> C:\WINDOWS\SysWow64\winrm.cmd -> [2017/03/18 22:58:46 | 000,000,033 | ---- | M | MD5 = F80EEF72983614DB418A0C1FAE21EBC1] () WF.msc -> C:\WINDOWS\SysWow64\WF.msc -> [2017/03/18 22:58:45 | 000,115,091 | ---- | M | MD5 = 9ED84D86676B79DFC7A9DD1B537E1883] () xwizard.dtd -> C:\WINDOWS\SysWow64\xwizard.dtd -> [2017/03/18 22:58:45 | 000,004,014 | ---- | M | MD5 = 684DDBD6ED4066B10660A3A06655B59A] () rasctrnm.h -> C:\WINDOWS\SysWow64\rasctrnm.h -> [2017/03/18 22:58:45 | 000,001,820 | ---- | M | MD5 = 3A77C18665A4C8428768CE186A5BC1EF] () NdfEventView.xml -> C:\WINDOWS\SysWow64\NdfEventView.xml -> [2017/03/18 22:58:45 | 000,000,565 | ---- | M | MD5 = 86166DAA04A6C154826508304CC6D4AC] () @AudioToastIcon.png -> C:\WINDOWS\SysWow64\@AudioToastIcon.png -> [2017/03/18 22:58:44 | 000,000,308 | ---- | M | MD5 = 82C37C3E27020AF6C2E018E944284676] () msjetoledb40.dll -> C:\WINDOWS\SysWow64\msjetoledb40.dll -> [2017/03/18 22:58:42 | 000,364,544 | ---- | M | MD5 = F13CEF6A36B555AC2390D8A5501AA137] () slmgr.vbs -> C:\WINDOWS\SysWow64\slmgr.vbs -> [2017/03/18 22:58:42 | 000,142,904 | ---- | M | MD5 = 3903BCAB32A4A853DFA54962112D4D02] () odbcconf.rsp -> C:\WINDOWS\SysWow64\odbcconf.rsp -> [2017/03/18 22:58:42 | 000,004,453 | ---- | M | MD5 = CE8AC7BCA89A2789235669DAEB1E0A5B] () 12520850.cpx -> C:\WINDOWS\SysWow64\12520850.cpx -> [2017/03/18 22:58:42 | 000,002,233 | ---- | M | MD5 = D69AE057CD82D04EE7D311809ABEFB2A] () 12520437.cpx -> C:\WINDOWS\SysWow64\12520437.cpx -> [2017/03/18 22:58:42 | 000,002,151 | ---- | M | MD5 = 0A0FEB9EB28BDE8CD835716343B03B14] () boot.sdi -> C:\WINDOWS\SysWow64\boot.sdi -> [2017/03/18 22:58:41 | 003,170,304 | ---- | M | MD5 = 22D9945B4AAE36DD59620A918F2E65F4] () comexp.msc -> C:\WINDOWS\SysWow64\comexp.msc -> [2017/03/18 22:58:41 | 000,124,118 | ---- | M | MD5 = AC27746CE65F3A7A1329BEBA7A64E08F] () diskmgmt.msc -> C:\WINDOWS\SysWow64\diskmgmt.msc -> [2017/03/18 22:58:41 | 000,047,682 | ---- | M | MD5 = E343F7FD42210043208A295CBD6E251C] () gm.dls -> C:\WINDOWS\SysWow64\drivers\gm.dls -> [2017/03/18 22:58:39 | 003,440,660 | ---- | M | MD5 = 7F29903CB8F5590D52DB0C9F97049A25] () ssdm.dll -> C:\WINDOWS\SysWow64\ssdm.dll -> [2017/03/18 22:58:39 | 000,307,200 | ---- | M | MD5 = 1291A61F0F4A49E5F4C869E677F67C57] () devmgmt.msc -> C:\WINDOWS\SysWow64\devmgmt.msc -> [2017/03/18 22:58:39 | 000,145,622 | ---- | M | MD5 = 383A3B36999FABD8DCA7691B38713C40] () perfmon.msc -> C:\WINDOWS\SysWow64\perfmon.msc -> [2017/03/18 22:58:39 | 000,145,519 | ---- | M | MD5 = 9BE46DD971FBA66D84567679D3D414EC] () tpm.msc -> C:\WINDOWS\SysWow64\tpm.msc -> [2017/03/18 22:58:39 | 000,144,862 | ---- | M | MD5 = 9359341F78E00134B527814B4868ECD5] () RestartManager.mof -> C:\WINDOWS\SysWow64\RestartManager.mof -> [2017/03/18 22:58:39 | 000,000,714 | ---- | M | MD5 = 43E7D0AB6A8564F5BF375FBF0934FAD1] () RestartManagerUninstall.mof -> C:\WINDOWS\SysWow64\RestartManagerUninstall.mof -> [2017/03/18 22:58:39 | 000,000,176 | ---- | M | MD5 = 3F75A221A01F68D6CE67FE99A868BD8F] () Windows.Mirage.dll -> C:\WINDOWS\SysWow64\Windows.Mirage.dll -> [2017/03/18 22:58:37 | 001,859,072 | ---- | M | MD5 = F1C530B1027E878C4C00282FA194CE6E] () eventvwr.msc -> C:\WINDOWS\SysWow64\eventvwr.msc -> [2017/03/18 22:58:37 | 000,145,127 | ---- | M | MD5 = 9BDCCC1A87CCA27ADEACE8144F385165] () taskschd.msc -> C:\WINDOWS\SysWow64\taskschd.msc -> [2017/03/18 22:58:37 | 000,145,059 | ---- | M | MD5 = AB2A58839814D2EA5EE621B5DBF944FF] () fsmgmt.msc -> C:\WINDOWS\SysWow64\fsmgmt.msc -> [2017/03/18 22:58:37 | 000,144,909 | ---- | M | MD5 = 97AED7FC6C2B38F34CA1A3C10D2F5A60] () compmgmt.msc -> C:\WINDOWS\SysWow64\compmgmt.msc -> [2017/03/18 22:58:37 | 000,113,256 | ---- | M | MD5 = F04C119C159670C9271623454BEC3254] () services.msc -> C:\WINDOWS\SysWow64\services.msc -> [2017/03/18 22:58:37 | 000,092,746 | ---- | M | MD5 = 2D8D95469EC26AAA986AAD1CE424E631] () certlm.msc -> C:\WINDOWS\SysWow64\certlm.msc -> [2017/03/18 22:58:37 | 000,063,081 | ---- | M | MD5 = DCCA682FEA47192106EC4F2001EAE182] () certmgr.msc -> C:\WINDOWS\SysWow64\certmgr.msc -> [2017/03/18 22:58:37 | 000,063,070 | ---- | M | MD5 = 4C7390A1FF613FBBF59141CA0BE8AE89] () azman.msc -> C:\WINDOWS\SysWow64\azman.msc -> [2017/03/18 22:58:37 | 000,041,587 | ---- | M | MD5 = C5B3E109B3B88B0CC420304EA7BF6B70] () EventViewer_EventDetails.xsl -> C:\WINDOWS\SysWow64\EventViewer_EventDetails.xsl -> [2017/03/18 22:58:37 | 000,017,935 | ---- | M | MD5 = 93E76CF7B04EC33A1E9E0FD7546D3603] () lcphrase.tbl -> C:\WINDOWS\SysNative\lcphrase.tbl -> [2017/03/18 22:58:35 | 000,211,938 | ---- | M | MD5 = 531FE5A2634D87A078017259F21D9736] () lcptr.tbl -> C:\WINDOWS\SysNative\lcptr.tbl -> [2017/03/18 22:58:35 | 000,024,114 | ---- | M | MD5 = D3C85593F8C4576FCF9B42AC48CA4368] () lusrmgr.msc -> C:\WINDOWS\SysNative\lusrmgr.msc -> [2017/03/18 22:58:29 | 000,144,998 | ---- | M | MD5 = 3279476E39DE235B426D69CFE8DEBF55] () SubRange.uce -> C:\WINDOWS\SysNative\SubRange.uce -> [2017/03/18 22:58:29 | 000,093,702 | ---- | M | MD5 = 30F5568679A54042F99CA9EC1102EBCD] () DataStoreCacheDumpTool.exe -> C:\WINDOWS\SysNative\DataStoreCacheDumpTool.exe -> [2017/03/18 22:58:29 | 000,086,016 | ---- | M | MD5 = 75BC227ACD70C906785DB11F853165E4] () BWContextHandler.dll -> C:\WINDOWS\SysNative\BWContextHandler.dll -> [2017/03/18 22:58:29 | 000,064,000 | ---- | M | MD5 = BCAA2EF98D1B25165B680357AAA7F5FA] () ideograf.uce -> C:\WINDOWS\SysNative\ideograf.uce -> [2017/03/18 22:58:29 | 000,060,458 | ---- | M | MD5 = 038F6AD6CEE43585D814CDBC7CDFD3EC] () gb2312.uce -> C:\WINDOWS\SysNative\gb2312.uce -> [2017/03/18 22:58:29 | 000,024,006 | ---- | M | MD5 = 4FDED87068052EEB9B72A97FDBC141DB] () bopomofo.uce -> C:\WINDOWS\SysNative\bopomofo.uce -> [2017/03/18 22:58:29 | 000,022,984 | ---- | M | MD5 = 405E1EF8E3C88E9BCD2853382BB12430] () ShiftJIS.uce -> C:\WINDOWS\SysNative\ShiftJIS.uce -> [2017/03/18 22:58:29 | 000,016,740 | ---- | M | MD5 = 8CA32E9D986FA76F60EFBCFCD9D80A58] () DevModeRunAsUserConfig.msc -> C:\WINDOWS\SysNative\DevModeRunAsUserConfig.msc -> [2017/03/18 22:58:29 | 000,013,091 | ---- | M | MD5 = A99DE223E49E2253426D3DF4746437EC] () korean.uce -> C:\WINDOWS\SysNative\korean.uce -> [2017/03/18 22:58:29 | 000,012,876 | ---- | M | MD5 = 7A7A04370A6030B9B0E8178DAD4A6E41] () kanji_2.uce -> C:\WINDOWS\SysNative\kanji_2.uce -> [2017/03/18 22:58:29 | 000,008,484 | ---- | M | MD5 = 529BBD63519BBD654EF328454019693F] () kanji_1.uce -> C:\WINDOWS\SysNative\kanji_1.uce -> [2017/03/18 22:58:29 | 000,006,948 | ---- | M | MD5 = 7C0C25F4BA1084C4ABBEEA2C74194C5F] () @language_notification_icon.png -> C:\WINDOWS\SysNative\@language_notification_icon.png -> [2017/03/18 22:58:29 | 000,000,600 | ---- | M | MD5 = 373CF57FF3DAAEEB629F90CE7226B30D] () @optionalfeatures.png -> C:\WINDOWS\SysNative\@optionalfeatures.png -> [2017/03/18 22:58:29 | 000,000,520 | ---- | M | MD5 = 46DACDA5036EBECEDF08427407E3017C] () SecurityAndMaintenance_Error.png -> C:\WINDOWS\SysNative\SecurityAndMaintenance_Error.png -> [2017/03/18 22:58:27 | 000,006,886 | ---- | M | MD5 = 099BA37F81C044F6B2609537FDB7D872] () SecurityAndMaintenance.png -> C:\WINDOWS\SysNative\SecurityAndMaintenance.png -> [2017/03/18 22:58:27 | 000,005,796 | ---- | M | MD5 = 00E5FCFD833151F7CBDE607E2F7AFEB4] () SecurityAndMaintenance_Alert.png -> C:\WINDOWS\SysNative\SecurityAndMaintenance_Alert.png -> [2017/03/18 22:58:27 | 000,002,626 | ---- | M | MD5 = 5719BFC9CFDA7A9C059A71A47A0E6383] () WindowsShell.Manifest -> C:\WINDOWS\WindowsShell.Manifest -> [2017/03/18 22:58:27 | 000,000,670 | RH-- | M | MD5 = C844CA459F3B209329984772269B6E56] () DscCoreConfProv.dll -> C:\WINDOWS\SysNative\DscCoreConfProv.dll -> [2017/03/18 22:58:24 | 000,199,680 | ---- | M | MD5 = 28A2688D7A338B67DBF89A13132DB79F] (Windows (R) Win 7 DDK provider) tcpmon.ini -> C:\WINDOWS\SysNative\tcpmon.ini -> [2017/03/18 22:58:24 | 000,060,124 | ---- | M | MD5 = D602CA245CC6774A0981B607F0675609] () sysprtj.sep -> C:\WINDOWS\SysNative\sysprtj.sep -> [2017/03/18 22:58:24 | 000,003,666 | ---- | M | MD5 = 58A67EC6B00A54A69DC364194CA171E0] () sysprint.sep -> C:\WINDOWS\SysNative\sysprint.sep -> [2017/03/18 22:58:24 | 000,003,317 | ---- | M | MD5 = 81B14F1AD906AC1CF9102796C97A54FE] () pcl.sep -> C:\WINDOWS\SysNative\pcl.sep -> [2017/03/18 22:58:24 | 000,000,150 | ---- | M | MD5 = 66D58077CC739E4B8166E33AB0BA4639] () pscript.sep -> C:\WINDOWS\SysNative\pscript.sep -> [2017/03/18 22:58:24 | 000,000,051 | ---- | M | MD5 = C09741B9886EF0D15EC3B1443352FB62] () tcpbidi.xml -> C:\WINDOWS\SysNative\tcpbidi.xml -> [2017/03/18 22:58:23 | 000,001,673 | ---- | M | MD5 = 31B010EF50D54D548B4B8B211F421318] () Shows Desktop.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> [2017/03/18 22:58:23 | 000,000,352 | ---- | M | MD5 = 325B790BC93AD8D27655C44365B485C0] () Window Switcher.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> [2017/03/18 22:58:23 | 000,000,334 | ---- | M | MD5 = DD26C664F5264C672B6C4C260ED79C73] () locale.nls -> C:\WINDOWS\SysWow64\locale.nls -> [2017/03/18 22:58:22 | 000,804,312 | ---- | M | MD5 = 2DB71E6DBE64FA74AEDCE71F81F01B64] () locale.nls -> C:\WINDOWS\SysNative\locale.nls -> [2017/03/18 22:58:22 | 000,804,312 | ---- | M | MD5 = 2DB71E6DBE64FA74AEDCE71F81F01B64] () chs_singlechar_pinyin.dat -> C:\WINDOWS\SysNative\chs_singlechar_pinyin.dat -> [2017/03/18 22:58:21 | 000,167,640 | ---- | M | MD5 = CCEAEFAA4DF2F399E9A179D942FEB23C] () @VpnToastIcon.png -> C:\WINDOWS\SysNative\@VpnToastIcon.png -> [2017/03/18 22:58:21 | 000,000,404 | ---- | M | MD5 = 1622DE67156496C78D6B7BE9B471645B] () icuin.dll -> C:\WINDOWS\SysNative\icuin.dll -> [2017/03/18 22:58:18 | 001,895,424 | R--- | M | MD5 = 916E53A237FE9B6D90E0F711D9F0801C] (The ICU Project) icuuc.dll -> C:\WINDOWS\SysNative\icuuc.dll -> [2017/03/18 22:58:18 | 001,321,984 | R--- | M | MD5 = BD7D744D60682C2A9C5C1982EEF1A9BF] (The ICU Project) HeatCore.dll -> C:\WINDOWS\SysNative\HeatCore.dll -> [2017/03/18 22:58:18 | 000,125,440 | ---- | M | MD5 = 762F865F75F21FCB260E7C95404B5110] () WindowsDefaultHeatProcessor.dll -> C:\WINDOWS\SysNative\WindowsDefaultHeatProcessor.dll -> [2017/03/18 22:58:18 | 000,098,304 | ---- | M | MD5 = 558D9282D5CEA82B2253B88017552F33] () @WiFiNotificationIcon.png -> C:\WINDOWS\SysNative\@WiFiNotificationIcon.png -> [2017/03/18 22:58:18 | 000,015,106 | ---- | M | MD5 = 7AC3EA1A5175106ED6467FF0C5315541] () TransformPPSToWlan.xslt -> C:\WINDOWS\SysNative\TransformPPSToWlan.xslt -> [2017/03/18 22:58:18 | 000,010,576 | ---- | M | MD5 = B88B8D017386A00D7724519F475317A0] () TransformPPSToWlanCredentials.xslt -> C:\WINDOWS\SysNative\TransformPPSToWlanCredentials.xslt -> [2017/03/18 22:58:18 | 000,001,688 | ---- | M | MD5 = 2F05390B798363D51EBE65D6320CD45E] () @BackgroundAccessToastIcon.png -> C:\WINDOWS\SysNative\@BackgroundAccessToastIcon.png -> [2017/03/18 22:58:18 | 000,000,450 | ---- | M | MD5 = 8E4B25CC8E98F63DBD54176DFAB539E0] () wpcmon.png -> C:\WINDOWS\SysNative\wpcmon.png -> [2017/03/18 22:58:17 | 000,004,687 | ---- | M | MD5 = C30C621748C66CE751B19B2788559A3E] () @EnrollmentToastIcon.png -> C:\WINDOWS\SysNative\@EnrollmentToastIcon.png -> [2017/03/18 22:58:17 | 000,000,330 | ---- | M | MD5 = 495C1F072039B434827A5FE0D9761E4D] () @WwanSimLockIcon.png -> C:\WINDOWS\SysNative\@WwanSimLockIcon.png -> [2017/03/18 22:58:13 | 000,000,352 | ---- | M | MD5 = 85D91E478AF18125007C531227FF6E59] () @WwanNotificationIcon.png -> C:\WINDOWS\SysNative\@WwanNotificationIcon.png -> [2017/03/18 22:58:13 | 000,000,155 | ---- | M | MD5 = D0FCF781D0801ABF5F74B54E98076A5B] () winsqlite3.dll -> C:\WINDOWS\SysNative\winsqlite3.dll -> [2017/03/18 22:58:10 | 000,773,648 | ---- | M | MD5 = 2272140602CB3A800A6C4A4502051A2C] (SQLite Development Team) InputHost.dll -> C:\WINDOWS\SysNative\InputHost.dll -> [2017/03/18 22:58:10 | 000,138,000 | ---- | M | MD5 = 479B7966309A411BF4FC34898AC96557] () Windows.UI.Input.Inking.Analysis.dll -> C:\WINDOWS\SysNative\Windows.UI.Input.Inking.Analysis.dll -> [2017/03/18 22:58:07 | 003,826,176 | ---- | M | MD5 = BBE571D62392563AD426A8BEFB35C527] () xboxgipsynthetic.dll -> C:\WINDOWS\SysNative\xboxgipsynthetic.dll -> [2017/03/18 22:58:04 | 000,086,016 | ---- | M | MD5 = F1D3B38E1E93729388D0EABB37A09C99] () settings.dat -> C:\WINDOWS\SysNative\settings.dat -> [2017/03/18 22:58:03 | 000,008,192 | ---- | M | MD5 = A8308D2F3DDE0745E8B678BF69A2ECD0] () winrm.vbs -> C:\WINDOWS\SysNative\winrm.vbs -> [2017/03/18 22:58:01 | 000,204,105 | ---- | M | MD5 = 9D7684F978EBD77E6A3EA7EF1330B946] () hypervisor.mof -> C:\WINDOWS\SysNative\hypervisor.mof -> [2017/03/18 22:58:01 | 000,045,461 | ---- | M | MD5 = A565537F1580872AE5B95D0CA457D780] () wsmanconfig_schema.xml -> C:\WINDOWS\SysNative\wsmanconfig_schema.xml -> [2017/03/18 22:58:01 | 000,004,675 | ---- | M | MD5 = 930423065AB3F5DB52D5726C7FC66385] () WsmTxt.xsl -> C:\WINDOWS\SysNative\WsmTxt.xsl -> [2017/03/18 22:58:01 | 000,002,426 | ---- | M | MD5 = B2EDF82825D979928AE07CBE9C7A2160] () WsmPty.xsl -> C:\WINDOWS\SysNative\WsmPty.xsl -> [2017/03/18 22:58:01 | 000,001,559 | ---- | M | MD5 = D6CBFA113B69C491DE370E85EBAC80E9] () wpr.config.xml -> C:\WINDOWS\SysNative\wpr.config.xml -> [2017/03/18 22:58:01 | 000,000,726 | ---- | M | MD5 = B6B479B04C64AF5EF36C24EBDF278302] () removehypervisor.mof -> C:\WINDOWS\SysNative\removehypervisor.mof -> [2017/03/18 22:58:01 | 000,000,167 | ---- | M | MD5 = 692DC6EF573FFCDD9DFB55D1C783DB93] () winrm.cmd -> C:\WINDOWS\SysNative\winrm.cmd -> [2017/03/18 22:58:01 | 000,000,033 | ---- | M | MD5 = F80EEF72983614DB418A0C1FAE21EBC1] () DiskSnapshot.conf -> C:\WINDOWS\SysNative\DiskSnapshot.conf -> [2017/03/18 22:57:58 | 000,092,186 | ---- | M | MD5 = E82380D30048D73E4D4CB8C925F6E721] () psmodulediscoveryprovider.mof -> C:\WINDOWS\SysNative\psmodulediscoveryprovider.mof -> [2017/03/18 22:57:54 | 000,004,148 | ---- | M | MD5 = 007893E8374C766471239EB291BA8C17] () @WindowsHelloFaceToastIcon.png -> C:\WINDOWS\SysNative\@WindowsHelloFaceToastIcon.png -> [2017/03/18 22:57:53 | 000,000,714 | ---- | M | MD5 = 13EF2C8D799F7B6E9D8E3D6BACB9C779] () C_949.NLS -> C:\WINDOWS\SysNative\C_949.NLS -> [2017/03/18 22:57:50 | 000,196,642 | ---- | M | MD5 = D2558C26CDBF05740348451DB6A5B955] () C_950.NLS -> C:\WINDOWS\SysNative\C_950.NLS -> [2017/03/18 22:57:50 | 000,196,642 | ---- | M | MD5 = 8557D3EDA30586685DAD701ABA69D0DD] () C_936.NLS -> C:\WINDOWS\SysNative\C_936.NLS -> [2017/03/18 22:57:50 | 000,196,642 | ---- | M | MD5 = 17028718996FCBCEEE59F38F2D944281] () C_1361.NLS -> C:\WINDOWS\SysNative\C_1361.NLS -> [2017/03/18 22:57:50 | 000,189,986 | ---- | M | MD5 = A337491EA01F4BE0779A981CB7ACB999] () C_20005.NLS -> C:\WINDOWS\SysNative\C_20005.NLS -> [2017/03/18 22:57:50 | 000,187,938 | ---- | M | MD5 = 9C78D8BC06315FE97936167F5063F924] () C_20001.NLS -> C:\WINDOWS\SysNative\C_20001.NLS -> [2017/03/18 22:57:50 | 000,186,402 | ---- | M | MD5 = 48699E0B2F0B56E132D8200BA23E7176] () C_20003.NLS -> C:\WINDOWS\SysNative\C_20003.NLS -> [2017/03/18 22:57:50 | 000,185,378 | ---- | M | MD5 = 971E382CB790C07536F380C172848C92] () C_20932.NLS -> C:\WINDOWS\SysNative\C_20932.NLS -> [2017/03/18 22:57:50 | 000,180,770 | ---- | M | MD5 = 3FEF4EEFC8827A03B19124575B17205E] () C_20000.NLS -> C:\WINDOWS\SysNative\C_20000.NLS -> [2017/03/18 22:57:50 | 000,180,258 | ---- | M | MD5 = AAB0740BCBDCE107E0BABEE466905EB4] () C_20004.NLS -> C:\WINDOWS\SysNative\C_20004.NLS -> [2017/03/18 22:57:50 | 000,180,258 | ---- | M | MD5 = A47DBDBAEA690F4713185EBB5790BBFF] () C_20949.NLS -> C:\WINDOWS\SysNative\C_20949.NLS -> [2017/03/18 22:57:50 | 000,177,698 | ---- | M | MD5 = 232094E602642181A5A508975665D11B] () C_20002.NLS -> C:\WINDOWS\SysNative\C_20002.NLS -> [2017/03/18 22:57:50 | 000,173,602 | ---- | M | MD5 = A5D79E78E4412AC3C79DED42CD95C3EA] () C_20936.NLS -> C:\WINDOWS\SysNative\C_20936.NLS -> [2017/03/18 22:57:50 | 000,173,602 | ---- | M | MD5 = 32919D0DA9A834E8197203C4858ABCF6] () C_932.NLS -> C:\WINDOWS\SysNative\C_932.NLS -> [2017/03/18 22:57:50 | 000,162,850 | ---- | M | MD5 = 1955F78D9E7E16099DBABAB36FE3CC3C] () C_20261.NLS -> C:\WINDOWS\SysNative\C_20261.NLS -> [2017/03/18 22:57:50 | 000,139,810 | ---- | M | MD5 = 7D07126E0ED768C04B245A43AF2F94ED] () C_861.NLS -> C:\WINDOWS\SysNative\C_861.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | M | MD5 = DDE3D4D8C117B5A67F7898DA547F0E4E] () C_850.NLS -> C:\WINDOWS\SysNative\C_850.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | M | MD5 = CAAF621DC0936CCAC5106EA62F350E80] () C_864.NLS -> C:\WINDOWS\SysNative\C_864.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | M | MD5 = C58563DF50115E935BC811FFBCE1FC89] () C_720.NLS -> C:\WINDOWS\SysNative\C_720.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | M | MD5 = C050215D8D21DF5658E94187973FB89C] () C_737.NLS -> C:\WINDOWS\SysNative\C_737.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | M | MD5 = BAC7072B365F9648CA318154BA7E03EC] () C_860.NLS -> C:\WINDOWS\SysNative\C_860.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | M | MD5 = B124A84735113A699F0413F1D6875975] () C_862.NLS -> C:\WINDOWS\SysNative\C_862.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | M | MD5 = A99203A3397A9DB352C5D8DFBDA230A8] () C_857.NLS -> C:\WINDOWS\SysNative\C_857.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | M | MD5 = A8764750B22B528D85A691A52CB21856] () C_874.NLS -> C:\WINDOWS\SysNative\C_874.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | M | MD5 = 7A0EE54F89FFE0F038660BA580FB4440] () C_869.NLS -> C:\WINDOWS\SysNative\C_869.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | M | MD5 = 780C444EB16B65E6DE96F794A732DA12] () C_866.NLS -> C:\WINDOWS\SysNative\C_866.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | M | MD5 = 5CD475CA7B87844DE1E0483B536F9AAE] () C_858.NLS -> C:\WINDOWS\SysNative\C_858.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | M | MD5 = 42518F84AA761C84B4F5F366C6E424F1] () C_865.NLS -> C:\WINDOWS\SysNative\C_865.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | M | MD5 = 4091021638E2591CFAED8E1CF9D54E1F] () C_855.NLS -> C:\WINDOWS\SysNative\C_855.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | M | MD5 = 3E969213F35127D83DAB48FF1283E8E4] () C_852.NLS -> C:\WINDOWS\SysNative\C_852.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | M | MD5 = 21E928C8E6ED8EEAB0D1AAEE82ACDD76] () C_775.NLS -> C:\WINDOWS\SysNative\C_775.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | M | MD5 = 0E61D6CD6391CE9BF007BAF0DC905320] () C_863.NLS -> C:\WINDOWS\SysNative\C_863.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | M | MD5 = 0220888BDD435156DE91C5D390FE0166] () C_28591.NLS -> C:\WINDOWS\SysNative\C_28591.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = E45ECA3F540E09C039710EF00219A61B] () C_28595.NLS -> C:\WINDOWS\SysNative\C_28595.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = E22D1B9AC7854C0A654E4C4232074E49] () C_1253.NLS -> C:\WINDOWS\SysNative\C_1253.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = E1858EDF032363E84922CDB91E75797A] () C_20866.NLS -> C:\WINDOWS\SysNative\C_20866.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = DD7F9900C070890C59417B5271581ED3] () C_28605.NLS -> C:\WINDOWS\SysNative\C_28605.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = DA11C0F72C41A6B3CA24FB83E52D7043] () C_1255.NLS -> C:\WINDOWS\SysNative\C_1255.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = C386BDB1A653A4390313AE192EFF2732] () C_28599.NLS -> C:\WINDOWS\SysNative\C_28599.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = C37A21EE1ADFDC13FC707D97073148ED] () C_28598.NLS -> C:\WINDOWS\SysNative\C_28598.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = BDD5D78F5DB2204A9247C53861357FAF] () C_28597.NLS -> C:\WINDOWS\SysNative\C_28597.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = B537ACFAB9E70F0EF48DB696A08ADC81] () C_1257.NLS -> C:\WINDOWS\SysNative\C_1257.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = AF381A5B093736A3A28EFDC1BB4F5FCB] () C_1254.NLS -> C:\WINDOWS\SysNative\C_1254.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = 808CCC573F51DC7AB3D5151A2D2AF1BF] () C_708.NLS -> C:\WINDOWS\SysNative\C_708.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = 77F127766D758EB2C6451E221A0C7F7D] () C_1256.NLS -> C:\WINDOWS\SysNative\C_1256.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = 6F42B3E7ED97C9EAC38615B907F08721] () C_20127.NLS -> C:\WINDOWS\SysNative\C_20127.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = 6CB26848BCDAA361B6EE21264FB362C3] () C_28594.NLS -> C:\WINDOWS\SysNative\C_28594.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = 5D038EEABA8EA438F6B5ABD5E91BC851] () C_28596.NLS -> C:\WINDOWS\SysNative\C_28596.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = 4D4C7CED88E5621F21A4911A44CADACC] () C_1258.NLS -> C:\WINDOWS\SysNative\C_1258.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = 43B0D0C38C885CCF742740FFC1F00535] () C_21866.NLS -> C:\WINDOWS\SysNative\C_21866.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = 41034D46626ECC2CC635FD884E878D6D] () c_28603.nls -> C:\WINDOWS\SysNative\c_28603.nls -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = 35448F3A71EBBECF8E997FAD3A99327D] () C_1250.NLS -> C:\WINDOWS\SysNative\C_1250.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = 2E0B152ED60DE2431DFC0C436363385E] () C_28592.NLS -> C:\WINDOWS\SysNative\C_28592.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = 0F8F998263E4C090C9C9B31D84C41654] () C_1251.NLS -> C:\WINDOWS\SysNative\C_1251.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = 0E91B896B81CF0B7DF62C824224B891A] () C_28593.NLS -> C:\WINDOWS\SysNative\C_28593.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | M | MD5 = 082453B28A3F457FFF330DBDDB32FF45] () AppxProvisioning.xml -> C:\WINDOWS\SysNative\AppxProvisioning.xml -> [2017/03/18 22:57:50 | 000,002,778 | ---- | M | MD5 = 331C418378E2F0B02E0EBC968006986C] () WimBootCompress.ini -> C:\WINDOWS\SysNative\WimBootCompress.ini -> [2017/03/18 22:57:50 | 000,002,307 | ---- | M | MD5 = BB2D1DF427C9284DE64DC66A6F1CC2AD] () mlang.dat -> C:\WINDOWS\SysWow64\mlang.dat -> [2017/03/18 22:57:47 | 000,673,088 | ---- | M | MD5 = ED434A3EBE29070A7E0138C42482EB93] () mlang.dat -> C:\WINDOWS\SysNative\mlang.dat -> [2017/03/18 22:57:47 | 000,673,088 | ---- | M | MD5 = ED434A3EBE29070A7E0138C42482EB93] () ResPriHMImageList -> C:\WINDOWS\SysNative\ResPriHMImageList -> [2017/03/18 22:57:47 | 000,009,055 | ---- | M | MD5 = D9DF00023703568AE6B4303E3C5C90BB] () ResPriImageList -> C:\WINDOWS\SysNative\ResPriImageList -> [2017/03/18 22:57:47 | 000,008,483 | ---- | M | MD5 = 99C7924C7268BABB5C4E3CFD2EE03331] () normidna.nls -> C:\WINDOWS\SysNative\normidna.nls -> [2017/03/18 22:57:46 | 000,080,078 | ---- | M | MD5 = 597C96281C55868CDBB06E22ADAEDCA9] () normnfkc.nls -> C:\WINDOWS\SysNative\normnfkc.nls -> [2017/03/18 22:57:46 | 000,071,824 | ---- | M | MD5 = BBD02FA36D24E43EF5FF51266D1B71A4] () normnfkd.nls -> C:\WINDOWS\SysNative\normnfkd.nls -> [2017/03/18 22:57:46 | 000,065,698 | ---- | M | MD5 = A492147939DE74E189BB270144CDA7FB] () normnfc.nls -> C:\WINDOWS\SysNative\normnfc.nls -> [2017/03/18 22:57:46 | 000,050,112 | ---- | M | MD5 = 9814F3AA6D4992B2C063D01B1D45E526] () normnfd.nls -> C:\WINDOWS\SysNative\normnfd.nls -> [2017/03/18 22:57:46 | 000,043,566 | ---- | M | MD5 = 2288FE4F6518F8A836E1FE31E808C401] () @AudioToastIcon.png -> C:\WINDOWS\SysNative\@AudioToastIcon.png -> [2017/03/18 22:57:42 | 000,000,308 | ---- | M | MD5 = 82C37C3E27020AF6C2E018E944284676] () C_437.NLS -> C:\WINDOWS\SysWow64\C_437.NLS -> [2017/03/18 22:57:39 | 000,066,594 | ---- | M | MD5 = 0BD539284D746E022BDA27C1F85A525A] () C_437.NLS -> C:\WINDOWS\SysNative\C_437.NLS -> [2017/03/18 22:57:39 | 000,066,594 | ---- | M | MD5 = 0BD539284D746E022BDA27C1F85A525A] () C_1252.NLS -> C:\WINDOWS\SysWow64\C_1252.NLS -> [2017/03/18 22:57:39 | 000,066,082 | ---- | M | MD5 = ACB769EC498FB62316EAB45ADB680F22] () C_1252.NLS -> C:\WINDOWS\SysNative\C_1252.NLS -> [2017/03/18 22:57:39 | 000,066,082 | ---- | M | MD5 = ACB769EC498FB62316EAB45ADB680F22] () l_intl.nls -> C:\WINDOWS\SysWow64\l_intl.nls -> [2017/03/18 22:57:39 | 000,009,926 | ---- | M | MD5 = 3EC1A12B4841F7CCD65B12D792FC8FDA] () l_intl.nls -> C:\WINDOWS\SysNative\l_intl.nls -> [2017/03/18 22:57:39 | 000,009,926 | ---- | M | MD5 = 3EC1A12B4841F7CCD65B12D792FC8FDA] () IHDS.dll -> C:\WINDOWS\SysNative\IHDS.dll -> [2017/03/18 22:57:35 | 000,193,024 | ---- | M | MD5 = 6DF9BA3AD0CD866EE939C4C49CEA7B30] () odbcconf.rsp -> C:\WINDOWS\SysNative\odbcconf.rsp -> [2017/03/18 22:57:30 | 000,000,263 | ---- | M | MD5 = 5D27362AF3BCAA75A418F5416A35934E] () slmgr.vbs -> C:\WINDOWS\SysNative\slmgr.vbs -> [2017/03/18 22:57:29 | 000,142,904 | ---- | M | MD5 = 3903BCAB32A4A853DFA54962112D4D02] () @edptoastimage.png -> C:\WINDOWS\SysNative\@edptoastimage.png -> [2017/03/18 22:57:25 | 000,014,791 | ---- | M | MD5 = 2E04FA797218711D9ED5958CD2B656AB] () @bitlockertoastimage.png -> C:\WINDOWS\SysNative\@bitlockertoastimage.png -> [2017/03/18 22:57:25 | 000,000,199 | ---- | M | MD5 = 3937359E324E15F6A7A7092D4DAEBD64] () MBR2GPT.EXE -> C:\WINDOWS\SysNative\MBR2GPT.EXE -> [2017/03/18 22:57:20 | 000,777,728 | ---- | M | MD5 = A8A402B0C566B1AF97F35DD492C4A6B6] () comexp.msc -> C:\WINDOWS\SysNative\comexp.msc -> [2017/03/18 22:57:20 | 000,124,118 | ---- | M | MD5 = AC27746CE65F3A7A1329BEBA7A64E08F] () perfmon.msc -> C:\WINDOWS\SysNative\perfmon.msc -> [2017/03/18 22:57:19 | 000,145,519 | ---- | M | MD5 = 9BE46DD971FBA66D84567679D3D414EC] () WdsUnattendTemplate.xml -> C:\WINDOWS\SysNative\WdsUnattendTemplate.xml -> [2017/03/18 22:57:19 | 000,000,614 | ---- | M | MD5 = 6EDD021A8B6457DDE09DE7B7FA4E8C8B] () boot.sdi -> C:\WINDOWS\SysNative\boot.sdi -> [2017/03/18 22:57:16 | 003,170,304 | ---- | M | MD5 = 22D9945B4AAE36DD59620A918F2E65F4] () srms.dat -> C:\WINDOWS\SysNative\srms.dat -> [2017/03/18 22:57:16 | 000,057,987 | ---- | M | MD5 = 5128BC123224124D67397A1BE698431C] () diskmgmt.msc -> C:\WINDOWS\SysNative\diskmgmt.msc -> [2017/03/18 22:57:15 | 000,047,682 | ---- | M | MD5 = E343F7FD42210043208A295CBD6E251C] () C_10002.NLS -> C:\WINDOWS\SysWow64\C_10002.NLS -> [2017/03/18 22:57:12 | 000,195,618 | ---- | M | MD5 = 05C0B7F8FA403E6DA75671685A58A940] () C_10002.NLS -> C:\WINDOWS\SysNative\C_10002.NLS -> [2017/03/18 22:57:12 | 000,195,618 | ---- | M | MD5 = 05C0B7F8FA403E6DA75671685A58A940] () C_10003.NLS -> C:\WINDOWS\SysWow64\C_10003.NLS -> [2017/03/18 22:57:12 | 000,177,698 | ---- | M | MD5 = 1855E6398A2E937E47809FD8B83647E4] () C_10003.NLS -> C:\WINDOWS\SysNative\C_10003.NLS -> [2017/03/18 22:57:12 | 000,177,698 | ---- | M | MD5 = 1855E6398A2E937E47809FD8B83647E4] () C_10008.NLS -> C:\WINDOWS\SysWow64\C_10008.NLS -> [2017/03/18 22:57:12 | 000,173,602 | ---- | M | MD5 = 23C1E8F026FB81824388E8EC457CF75E] () C_10008.NLS -> C:\WINDOWS\SysNative\C_10008.NLS -> [2017/03/18 22:57:12 | 000,173,602 | ---- | M | MD5 = 23C1E8F026FB81824388E8EC457CF75E] () C_10001.NLS -> C:\WINDOWS\SysWow64\C_10001.NLS -> [2017/03/18 22:57:12 | 000,162,850 | ---- | M | MD5 = 157A2706E78D7B581642F6F787EC37E5] () C_10001.NLS -> C:\WINDOWS\SysNative\C_10001.NLS -> [2017/03/18 22:57:12 | 000,162,850 | ---- | M | MD5 = 157A2706E78D7B581642F6F787EC37E5] () C_1144.NLS -> C:\WINDOWS\SysWow64\C_1144.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = FD2D28063FB4FD12BC6EF18A6D10769E] () C_1144.NLS -> C:\WINDOWS\SysNative\C_1144.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = FD2D28063FB4FD12BC6EF18A6D10769E] () C_10021.NLS -> C:\WINDOWS\SysWow64\C_10021.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = F3C139AD492C4F73353057442E6995CE] () C_10021.NLS -> C:\WINDOWS\SysNative\C_10021.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = F3C139AD492C4F73353057442E6995CE] () C_1141.NLS -> C:\WINDOWS\SysWow64\C_1141.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = F0C0509A9A633332B99F009D1DAA7612] () C_1141.NLS -> C:\WINDOWS\SysNative\C_1141.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = F0C0509A9A633332B99F009D1DAA7612] () C_10081.NLS -> C:\WINDOWS\SysWow64\C_10081.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = EFFDFF60A38CF648811BBCDD722ECF5E] () C_10081.NLS -> C:\WINDOWS\SysNative\C_10081.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = EFFDFF60A38CF648811BBCDD722ECF5E] () C_20107.NLS -> C:\WINDOWS\SysWow64\C_20107.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = EB7AD61171B280F1CA90CF3AC0F43717] () C_20107.NLS -> C:\WINDOWS\SysNative\C_20107.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = EB7AD61171B280F1CA90CF3AC0F43717] () C_20924.NLS -> C:\WINDOWS\SysWow64\C_20924.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = E4642396D2098F65C7E88C0AC1EE7379] () C_20924.NLS -> C:\WINDOWS\SysNative\C_20924.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = E4642396D2098F65C7E88C0AC1EE7379] () C_20423.NLS -> C:\WINDOWS\SysWow64\C_20423.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = E3AAE11859C598FB936017816567FD96] () C_20423.NLS -> C:\WINDOWS\SysNative\C_20423.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = E3AAE11859C598FB936017816567FD96] () C_20284.NLS -> C:\WINDOWS\SysWow64\C_20284.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = E37E1766C1D7C21C5EFAD0F20D923039] () C_20284.NLS -> C:\WINDOWS\SysNative\C_20284.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = E37E1766C1D7C21C5EFAD0F20D923039] () C_20833.NLS -> C:\WINDOWS\SysWow64\C_20833.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = E27DCCEEFABD04FC7D81BE65B233C653] () C_20833.NLS -> C:\WINDOWS\SysNative\C_20833.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = E27DCCEEFABD04FC7D81BE65B233C653] () C_10029.NLS -> C:\WINDOWS\SysWow64\C_10029.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = D2CA471D36A69D17F82D5C1B64FAEE39] () C_10029.NLS -> C:\WINDOWS\SysNative\C_10029.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = D2CA471D36A69D17F82D5C1B64FAEE39] () C_1146.NLS -> C:\WINDOWS\SysWow64\C_1146.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = D288777605A2F4E12A9C6E360CE44987] () C_1146.NLS -> C:\WINDOWS\SysNative\C_1146.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = D288777605A2F4E12A9C6E360CE44987] () C_20108.NLS -> C:\WINDOWS\SysWow64\C_20108.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = C8FBDF3805D2F229DE3CA2EF5A248CCC] () C_20108.NLS -> C:\WINDOWS\SysNative\C_20108.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = C8FBDF3805D2F229DE3CA2EF5A248CCC] () C_20297.NLS -> C:\WINDOWS\SysWow64\C_20297.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = C3581190325F812CB7F5F928E722F132] () C_20297.NLS -> C:\WINDOWS\SysNative\C_20297.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = C3581190325F812CB7F5F928E722F132] () C_20285.NLS -> C:\WINDOWS\SysWow64\C_20285.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = BCD8AC4CE06E227A2FBA81862B5F0D42] () C_20285.NLS -> C:\WINDOWS\SysNative\C_20285.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = BCD8AC4CE06E227A2FBA81862B5F0D42] () C_20269.NLS -> C:\WINDOWS\SysWow64\C_20269.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = BA660D994876755C9E90871B919BB5EC] () C_20269.NLS -> C:\WINDOWS\SysNative\C_20269.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = BA660D994876755C9E90871B919BB5EC] () C_20290.NLS -> C:\WINDOWS\SysWow64\C_20290.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = B2B3B6A63D9A1837673A2B2C44455A20] () C_20290.NLS -> C:\WINDOWS\SysNative\C_20290.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = B2B3B6A63D9A1837673A2B2C44455A20] () C_20278.NLS -> C:\WINDOWS\SysWow64\C_20278.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = AF4F8AEC071515D6FC6E8203A0DBF655] () C_20278.NLS -> C:\WINDOWS\SysNative\C_20278.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = AF4F8AEC071515D6FC6E8203A0DBF655] () C_10007.NLS -> C:\WINDOWS\SysWow64\C_10007.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = AF4A866226BD04ACF06135088D75BB63] () C_10007.NLS -> C:\WINDOWS\SysNative\C_10007.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = AF4A866226BD04ACF06135088D75BB63] () C_10000.NLS -> C:\WINDOWS\SysWow64\C_10000.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = A716B23BA6632B7F0DABB5B8AC078F27] () C_10000.NLS -> C:\WINDOWS\SysNative\C_10000.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = A716B23BA6632B7F0DABB5B8AC078F27] () C_20838.NLS -> C:\WINDOWS\SysWow64\C_20838.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = A124CAA7470CCF0354A57AB30808293F] () C_20838.NLS -> C:\WINDOWS\SysNative\C_20838.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = A124CAA7470CCF0354A57AB30808293F] () C_10082.NLS -> C:\WINDOWS\SysWow64\C_10082.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 9CA501D2A8E6909C5B2E8C9274682BF1] () C_10082.NLS -> C:\WINDOWS\SysNative\C_10082.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 9CA501D2A8E6909C5B2E8C9274682BF1] () C_20277.NLS -> C:\WINDOWS\SysWow64\C_20277.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 947B06BC793BFF9A4808C8CF57B0E273] () C_20277.NLS -> C:\WINDOWS\SysNative\C_20277.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 947B06BC793BFF9A4808C8CF57B0E273] () C_20273.NLS -> C:\WINDOWS\SysWow64\C_20273.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 947813F75A56A20EF65DC9E479EBEA4D] () C_20273.NLS -> C:\WINDOWS\SysNative\C_20273.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 947813F75A56A20EF65DC9E479EBEA4D] () C_500.NLS -> C:\WINDOWS\SysWow64\C_500.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 90F5232D99D17AA1BBA3CE2228CF1B2A] () C_500.NLS -> C:\WINDOWS\SysNative\C_500.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 90F5232D99D17AA1BBA3CE2228CF1B2A] () C_875.NLS -> C:\WINDOWS\SysWow64\C_875.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 8BE0D77A873730B4EB1DAB7C6622CD46] () C_875.NLS -> C:\WINDOWS\SysNative\C_875.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 8BE0D77A873730B4EB1DAB7C6622CD46] () C_21025.NLS -> C:\WINDOWS\SysWow64\C_21025.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 85D74656F26B33F21B5129252B1578D0] () C_21025.NLS -> C:\WINDOWS\SysNative\C_21025.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 85D74656F26B33F21B5129252B1578D0] () C_20880.NLS -> C:\WINDOWS\SysWow64\C_20880.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 8464E9CAB0DA3F209320D782631DD5A2] () C_20880.NLS -> C:\WINDOWS\SysNative\C_20880.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 8464E9CAB0DA3F209320D782631DD5A2] () C_1047.NLS -> C:\WINDOWS\SysWow64\C_1047.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 7CB90B3604A45355218E6A20BD7B7A0B] () C_1047.NLS -> C:\WINDOWS\SysNative\C_1047.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 7CB90B3604A45355218E6A20BD7B7A0B] () C_1147.NLS -> C:\WINDOWS\SysWow64\C_1147.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 7623492F4FCB5E317578F897A7476E16] () C_1147.NLS -> C:\WINDOWS\SysNative\C_1147.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 7623492F4FCB5E317578F897A7476E16] () C_10005.NLS -> C:\WINDOWS\SysWow64\C_10005.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 72233F1A1D788A84D4687A258CC97CBF] () C_10005.NLS -> C:\WINDOWS\SysNative\C_10005.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 72233F1A1D788A84D4687A258CC97CBF] () C_1026.NLS -> C:\WINDOWS\SysWow64\C_1026.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 71E7F8B0F28585439E95B3D3B296984B] () C_1026.NLS -> C:\WINDOWS\SysNative\C_1026.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 71E7F8B0F28585439E95B3D3B296984B] () C_10010.NLS -> C:\WINDOWS\SysWow64\C_10010.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 6F8A509550FE8C92D07EE0143BF29BA1] () C_10010.NLS -> C:\WINDOWS\SysNative\C_10010.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 6F8A509550FE8C92D07EE0143BF29BA1] () C_1142.NLS -> C:\WINDOWS\SysWow64\C_1142.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 69316F1B309BA5AC371EFD09267BD670] () C_1142.NLS -> C:\WINDOWS\SysNative\C_1142.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 69316F1B309BA5AC371EFD09267BD670] () C_20871.NLS -> C:\WINDOWS\SysWow64\C_20871.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 61FBE3736279973CBA71EE0CDEAAAA6C] () C_20871.NLS -> C:\WINDOWS\SysNative\C_20871.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 61FBE3736279973CBA71EE0CDEAAAA6C] () C_20420.NLS -> C:\WINDOWS\SysWow64\C_20420.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 4FEA99284FA34D8E69C8D865D9426D2B] () C_20420.NLS -> C:\WINDOWS\SysNative\C_20420.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 4FEA99284FA34D8E69C8D865D9426D2B] () C_870.NLS -> C:\WINDOWS\SysWow64\C_870.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 48841546AC3B8698C93991E99851F0CF] () C_870.NLS -> C:\WINDOWS\SysNative\C_870.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 48841546AC3B8698C93991E99851F0CF] () C_1149.NLS -> C:\WINDOWS\SysWow64\C_1149.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 484A1C398A16DD464E8468046526985C] () C_1149.NLS -> C:\WINDOWS\SysNative\C_1149.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 484A1C398A16DD464E8468046526985C] () C_1143.NLS -> C:\WINDOWS\SysWow64\C_1143.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 3EA8E21340AF59C80CB35A6A53FE52D7] () C_1143.NLS -> C:\WINDOWS\SysNative\C_1143.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 3EA8E21340AF59C80CB35A6A53FE52D7] () C_20424.NLS -> C:\WINDOWS\SysWow64\C_20424.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 3A0FA5F25C5FF909766347627B446511] () C_20424.NLS -> C:\WINDOWS\SysNative\C_20424.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 3A0FA5F25C5FF909766347627B446511] () C_1148.NLS -> C:\WINDOWS\SysWow64\C_1148.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 32CA3320D8C8F37770764BDFF1C2FE15] () C_1148.NLS -> C:\WINDOWS\SysNative\C_1148.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 32CA3320D8C8F37770764BDFF1C2FE15] () C_10017.NLS -> C:\WINDOWS\SysWow64\C_10017.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 314E85390BEBDAE5D1E11DB2D8CBC6E9] () C_10017.NLS -> C:\WINDOWS\SysNative\C_10017.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 314E85390BEBDAE5D1E11DB2D8CBC6E9] () C_20280.NLS -> C:\WINDOWS\SysWow64\C_20280.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 2AB1DF9DFBD49E343AF5D5FA7D17024E] () C_20280.NLS -> C:\WINDOWS\SysNative\C_20280.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 2AB1DF9DFBD49E343AF5D5FA7D17024E] () C_10079.NLS -> C:\WINDOWS\SysWow64\C_10079.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 29B5AF5B12D955C316821F277C5B4D7D] () C_10079.NLS -> C:\WINDOWS\SysNative\C_10079.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 29B5AF5B12D955C316821F277C5B4D7D] () C_1140.NLS -> C:\WINDOWS\SysWow64\C_1140.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 27E1CBE7F0DF21CA0892D16FD1961F29] () C_1140.NLS -> C:\WINDOWS\SysNative\C_1140.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 27E1CBE7F0DF21CA0892D16FD1961F29] () C_20105.NLS -> C:\WINDOWS\SysWow64\C_20105.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 1F55C295A71290992C95CF1F41CDB0E4] () C_20105.NLS -> C:\WINDOWS\SysNative\C_20105.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 1F55C295A71290992C95CF1F41CDB0E4] () C_10004.NLS -> C:\WINDOWS\SysWow64\C_10004.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 1DBBCC1B712C2674BDF29A05A5DD366E] () C_10004.NLS -> C:\WINDOWS\SysNative\C_10004.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 1DBBCC1B712C2674BDF29A05A5DD366E] () C_20905.NLS -> C:\WINDOWS\SysWow64\C_20905.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 1ADCE2879B486ACB126750EF18B2E658] () C_20905.NLS -> C:\WINDOWS\SysNative\C_20905.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 1ADCE2879B486ACB126750EF18B2E658] () C_1145.NLS -> C:\WINDOWS\SysWow64\C_1145.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 123B711FF0BF69B4462C279D342380AF] () C_1145.NLS -> C:\WINDOWS\SysNative\C_1145.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 123B711FF0BF69B4462C279D342380AF] () C_037.NLS -> C:\WINDOWS\SysWow64\C_037.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 0D143112394173967A3647096F74E743] () C_037.NLS -> C:\WINDOWS\SysNative\C_037.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 0D143112394173967A3647096F74E743] () C_10006.NLS -> C:\WINDOWS\SysWow64\C_10006.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 0A206B5CACD3CA70D2044DA691304765] () C_10006.NLS -> C:\WINDOWS\SysNative\C_10006.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 0A206B5CACD3CA70D2044DA691304765] () C_21027.NLS -> C:\WINDOWS\SysWow64\C_21027.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 07CD5D103AEB4AD2B624EE1ADBFAA456] () C_21027.NLS -> C:\WINDOWS\SysNative\C_21027.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 07CD5D103AEB4AD2B624EE1ADBFAA456] () C_20106.NLS -> C:\WINDOWS\SysWow64\C_20106.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 00E11B5E8C252190DEC893FD84D3B06D] () C_20106.NLS -> C:\WINDOWS\SysNative\C_20106.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | M | MD5 = 00E11B5E8C252190DEC893FD84D3B06D] () onlinesetup.cmd -> C:\WINDOWS\SysNative\onlinesetup.cmd -> [2017/03/18 22:57:12 | 000,000,843 | ---- | M | MD5 = 2901049544FDF863362FABA2363EB647] () devmgmt.msc -> C:\WINDOWS\SysNative\devmgmt.msc -> [2017/03/18 22:57:08 | 000,145,622 | ---- | M | MD5 = 383A3B36999FABD8DCA7691B38713C40] () tpm.msc -> C:\WINDOWS\SysNative\tpm.msc -> [2017/03/18 22:57:08 | 000,144,862 | ---- | M | MD5 = 9359341F78E00134B527814B4868ECD5] () RestartManager.mof -> C:\WINDOWS\SysNative\RestartManager.mof -> [2017/03/18 22:57:08 | 000,000,714 | ---- | M | MD5 = 43E7D0AB6A8564F5BF375FBF0934FAD1] () RestartManagerUninstall.mof -> C:\WINDOWS\SysNative\RestartManagerUninstall.mof -> [2017/03/18 22:57:08 | 000,000,176 | ---- | M | MD5 = 3F75A221A01F68D6CE67FE99A868BD8F] () DefaultHrtfs.bin -> C:\WINDOWS\SysNative\DefaultHrtfs.bin -> [2017/03/18 22:57:05 | 004,227,116 | ---- | M | MD5 = 618BA9E529EAB7E11DBA43469481835F] () gm.dls -> C:\WINDOWS\SysNative\drivers\gm.dls -> [2017/03/18 22:57:05 | 003,440,660 | ---- | M | MD5 = 7F29903CB8F5590D52DB0C9F97049A25] () Windows.Mirage.dll -> C:\WINDOWS\SysNative\Windows.Mirage.dll -> [2017/03/18 22:57:05 | 002,447,360 | ---- | M | MD5 = C10804CE8AFEA61D41F18E0B8DC25DE2] () ssdm.dll -> C:\WINDOWS\SysNative\ssdm.dll -> [2017/03/18 22:57:05 | 000,377,344 | ---- | M | MD5 = E042A078EDE878E1F489D08F045D2205] () LargeRoom.bin -> C:\WINDOWS\SysNative\LargeRoom.bin -> [2017/03/18 22:57:05 | 000,149,044 | ---- | M | MD5 = 050BC9351A3386458B696F8BCA78B27B] () fsmgmt.msc -> C:\WINDOWS\SysNative\fsmgmt.msc -> [2017/03/18 22:57:05 | 000,144,909 | ---- | M | MD5 = 97AED7FC6C2B38F34CA1A3C10D2F5A60] () WmiMgmt.msc -> C:\WINDOWS\SysNative\WmiMgmt.msc -> [2017/03/18 22:57:05 | 000,144,673 | ---- | M | MD5 = E0ADDCE97EE521C9AC4F53EE17A05BD5] () compmgmt.msc -> C:\WINDOWS\SysNative\compmgmt.msc -> [2017/03/18 22:57:05 | 000,113,256 | ---- | M | MD5 = F04C119C159670C9271623454BEC3254] () MediumRoom.bin -> C:\WINDOWS\SysNative\MediumRoom.bin -> [2017/03/18 22:57:05 | 000,110,024 | ---- | M | MD5 = BC74BDA8DC53F722C2CA686071600AE2] () services.msc -> C:\WINDOWS\SysNative\services.msc -> [2017/03/18 22:57:05 | 000,092,746 | ---- | M | MD5 = 2D8D95469EC26AAA986AAD1CE424E631] () AverageRoom.bin -> C:\WINDOWS\SysNative\AverageRoom.bin -> [2017/03/18 22:57:05 | 000,079,516 | ---- | M | MD5 = EFFD0ABB4DDD2CCDD511F903D042AD5B] () SmallRoom.bin -> C:\WINDOWS\SysNative\SmallRoom.bin -> [2017/03/18 22:57:05 | 000,069,776 | ---- | M | MD5 = 1C6F12AA3D178A0A953E8005B3CD4CDE] () certlm.msc -> C:\WINDOWS\SysNative\certlm.msc -> [2017/03/18 22:57:05 | 000,063,081 | ---- | M | MD5 = DCCA682FEA47192106EC4F2001EAE182] () certmgr.msc -> C:\WINDOWS\SysNative\certmgr.msc -> [2017/03/18 22:57:05 | 000,063,070 | ---- | M | MD5 = 4C7390A1FF613FBBF59141CA0BE8AE89] () OutdoorAudioEnvironment.bin -> C:\WINDOWS\SysNative\OutdoorAudioEnvironment.bin -> [2017/03/18 22:57:05 | 000,046,908 | ---- | M | MD5 = 42D2360079B1DF3230024AE920737367] () SpectrumSyncClient.dll -> C:\WINDOWS\SysNative\SpectrumSyncClient.dll -> [2017/03/18 22:57:05 | 000,037,376 | ---- | M | MD5 = 76F8BDA4D4AA4AA4C4D84C2E2660E6FF] () eventvwr.msc -> C:\WINDOWS\SysNative\eventvwr.msc -> [2017/03/18 22:57:03 | 000,145,127 | ---- | M | MD5 = 9BDCCC1A87CCA27ADEACE8144F385165] () taskschd.msc -> C:\WINDOWS\SysNative\taskschd.msc -> [2017/03/18 22:57:03 | 000,145,059 | ---- | M | MD5 = AB2A58839814D2EA5EE621B5DBF944FF] () BthpanContextHandler.dll -> C:\WINDOWS\SysNative\BthpanContextHandler.dll -> [2017/03/18 22:57:03 | 000,092,672 | ---- | M | MD5 = B13766AFE48C3CF775F53CE90488F7DE] () mib.bin -> C:\WINDOWS\mib.bin -> [2017/03/18 22:57:03 | 000,043,131 | ---- | M | MD5 = 23AF90D2355D8C83AA4567EF1763B467] () azman.msc -> C:\WINDOWS\SysNative\azman.msc -> [2017/03/18 22:57:03 | 000,041,587 | ---- | M | MD5 = C5B3E109B3B88B0CC420304EA7BF6B70] () EventViewer_EventDetails.xsl -> C:\WINDOWS\SysNative\EventViewer_EventDetails.xsl -> [2017/03/18 22:57:03 | 000,017,935 | ---- | M | MD5 = 93E76CF7B04EC33A1E9E0FD7546D3603] () NdfEventView.xml -> C:\WINDOWS\SysNative\NdfEventView.xml -> [2017/03/18 22:57:03 | 000,000,565 | ---- | M | MD5 = 86166DAA04A6C154826508304CC6D4AC] () WF.msc -> C:\WINDOWS\SysNative\WF.msc -> [2017/03/18 22:57:02 | 000,115,091 | ---- | M | MD5 = 9ED84D86676B79DFC7A9DD1B537E1883] () gatherNetworkInfo.vbs -> C:\WINDOWS\SysNative\gatherNetworkInfo.vbs -> [2017/03/18 22:57:02 | 000,091,132 | ---- | M | MD5 = D07F2281427BD098356EE74B6CB26B86] () NetTrace.PLA.Diagnostics.xml -> C:\WINDOWS\SysNative\NetTrace.PLA.Diagnostics.xml -> [2017/03/18 22:57:02 | 000,021,656 | ---- | M | MD5 = C146E873B22C3B300B21A859FE66C27A] () rasctrnm.h -> C:\WINDOWS\SysNative\rasctrnm.h -> [2017/03/18 22:57:02 | 000,001,820 | ---- | M | MD5 = 3A77C18665A4C8428768CE186A5BC1EF] () xwizard.dtd -> C:\WINDOWS\SysNative\xwizard.dtd -> [2017/03/18 22:57:01 | 000,004,014 | ---- | M | MD5 = 684DDBD6ED4066B10660A3A06655B59A] () ApnDatabase.xml -> C:\WINDOWS\SysNative\ApnDatabase.xml -> [2017/03/18 22:57:00 | 000,446,124 | ---- | M | MD5 = E21E74D118E16FF9BA42A6F87F34E9B0] () WMSysPr9.prx -> C:\WINDOWS\WMSysPr9.prx -> [2017/03/18 22:56:51 | 000,316,640 | ---- | M | MD5 = E7E4D8D7340DA6934B9EA81CBB21374C] () ieuinit.inf -> C:\WINDOWS\SysNative\ieuinit.inf -> [2017/03/18 22:56:50 | 000,003,458 | ---- | M | MD5 = 6B31D08801D3A3F51B59FB1DB14E4A01] () @WindowsUpdateToastIcon.png -> C:\WINDOWS\SysNative\@WindowsUpdateToastIcon.png -> [2017/03/18 22:56:40 | 000,000,518 | ---- | M | MD5 = F553B252FEC3134D4F5303D9B25298B3] () SDFRd.sys -> C:\WINDOWS\SysNative\drivers\SDFRd.sys -> [2017/03/18 22:56:26 | 000,031,128 | ---- | M | MD5 = 464B615872981015AC4FEEBDEA83A063] () cht4vx64.sys -> C:\WINDOWS\SysNative\drivers\cht4vx64.sys -> [2017/03/18 22:56:25 | 002,104,224 | ---- | M | MD5 = 863E1C9F6750446DFB9EDCAEC3531367] (Chelsio Communications) adp80xx.sys -> C:\WINDOWS\SysNative\drivers\adp80xx.sys -> [2017/03/18 22:56:25 | 001,135,512 | ---- | M | MD5 = FBDA59118E59B3722248C66BAD89CAA9] (PMC-Sierra) mlx4_bus.sys -> C:\WINDOWS\SysNative\drivers\mlx4_bus.sys -> [2017/03/18 22:56:25 | 000,842,656 | ---- | M | MD5 = 89257B8D3826B5629CF7F73F97DA44F9] (Mellanox) megasr.sys -> C:\WINDOWS\SysNative\drivers\megasr.sys -> [2017/03/18 22:56:25 | 000,575,904 | ---- | M | MD5 = 2B7D3B206833D769218A1F4BE2D73B97] (LSI Corporation, Inc.) ibbus.sys -> C:\WINDOWS\SysNative\drivers\ibbus.sys -> [2017/03/18 22:56:25 | 000,526,240 | ---- | M | MD5 = E16E4FC9F250E48CB2CAD93E59D010E2] (Mellanox) cht4sx64.sys -> C:\WINDOWS\SysNative\drivers\cht4sx64.sys -> [2017/03/18 22:56:25 | 000,347,032 | ---- | M | MD5 = 05EA22CFC40EDE05BF6E3BC782E5204C] (Chelsio Communications) VSTXRAID.SYS -> C:\WINDOWS\SysNative\drivers\VSTXRAID.SYS -> [2017/03/18 22:56:25 | 000,305,568 | ---- | M | MD5 = 98BB6C9AD39D8F2E883093F28282FAEC] (VIA Corporation) amdsbs.sys -> C:\WINDOWS\SysNative\drivers\amdsbs.sys -> [2017/03/18 22:56:25 | 000,259,488 | ---- | M | MD5 = 3B5C5C696F33FE61F1922533B03B9316] (AMD Technologies Inc.) arcsas.sys -> C:\WINDOWS\SysNative\drivers\arcsas.sys -> [2017/03/18 22:56:25 | 000,132,000 | ---- | M | MD5 = 6E456A94B9BD7F6B4758729BCEDE40C3] (PMC-Sierra, Inc.) lsi_sas2i.sys -> C:\WINDOWS\SysNative\drivers\lsi_sas2i.sys -> [2017/03/18 22:56:25 | 000,123,808 | ---- | M | MD5 = 920F0CFCED5F28A31B79F1C470649D11] (LSI Corporation) lsi_sas.sys -> C:\WINDOWS\SysNative\drivers\lsi_sas.sys -> [2017/03/18 22:56:25 | 000,108,960 | ---- | M | MD5 = 16C9D4D822CCA795A72DC88B25A577CC] (LSI Corporation) ndfltr.sys -> C:\WINDOWS\SysNative\drivers\ndfltr.sys -> [2017/03/18 22:56:25 | 000,108,960 | ---- | M | MD5 = 0FFE8AF1B94C5FD54E6ACC6DAE990D31] (Mellanox) 3ware.sys -> C:\WINDOWS\SysNative\drivers\3ware.sys -> [2017/03/18 22:56:25 | 000,107,424 | ---- | M | MD5 = 4140B14929C555E9513D59A2EEB5C471] (LSI) lsi_sas3i.sys -> C:\WINDOWS\SysNative\drivers\lsi_sas3i.sys -> [2017/03/18 22:56:25 | 000,103,328 | ---- | M | MD5 = 0FE63316F1C70A0F759A449FAC64C24B] (Avago Technologies) cht4dx64.sys -> C:\WINDOWS\SysNative\drivers\cht4dx64.sys -> [2017/03/18 22:56:25 | 000,102,816 | ---- | M | MD5 = 76BDC115C94B5BA25940013D2BDD5F65] (Chelsio Communications) lsi_sss.sys -> C:\WINDOWS\SysNative\drivers\lsi_sss.sys -> [2017/03/18 22:56:25 | 000,082,848 | ---- | M | MD5 = 80E82C46B27A923A3744531069B63857] (LSI Corporation) sisraid4.sys -> C:\WINDOWS\SysNative\drivers\sisraid4.sys -> [2017/03/18 22:56:25 | 000,081,824 | ---- | M | MD5 = F520D50AD7266ED31D25DF4C8EA6BC2D] (Silicon Integrated Systems) winverbs.sys -> C:\WINDOWS\SysNative\drivers\winverbs.sys -> [2017/03/18 22:56:25 | 000,064,920 | ---- | M | MD5 = 0BF4A43CF1F3A4D50AFA4561C3B4628D] (Mellanox) MegaSas2i.sys -> C:\WINDOWS\SysNative\drivers\MegaSas2i.sys -> [2017/03/18 22:56:25 | 000,064,416 | ---- | M | MD5 = EEC64C8D498D121607C7615FDFBEE4D0] (Avago Technologies) mvumis.sys -> C:\WINDOWS\SysNative\drivers\mvumis.sys -> [2017/03/18 22:56:25 | 000,063,904 | ---- | M | MD5 = 74BD1149BF50F1E24934042A3BD17C90] (Marvell Semiconductor, Inc.) percsas3i.sys -> C:\WINDOWS\SysNative\drivers\percsas3i.sys -> [2017/03/18 22:56:25 | 000,061,848 | ---- | M | MD5 = FCA143274792F12383C35902E801E83A] (Avago Technologies) megasas.sys -> C:\WINDOWS\SysNative\drivers\megasas.sys -> [2017/03/18 22:56:25 | 000,059,808 | ---- | M | MD5 = 0609BF877A2F4DEECC62EEE220AB6242] (Avago Technologies) percsas2i.sys -> C:\WINDOWS\SysNative\drivers\percsas2i.sys -> [2017/03/18 22:56:25 | 000,058,784 | ---- | M | MD5 = FE52FF97A094609429FEF098EDC6FB08] (Avago Technologies) winmad.sys -> C:\WINDOWS\SysNative\drivers\winmad.sys -> [2017/03/18 22:56:25 | 000,032,160 | ---- | M | MD5 = 31DDF1D001336B2DCE7DF24E99EF1D04] (Mellanox) bcmfn2.sys -> C:\WINDOWS\SysNative\drivers\bcmfn2.sys -> [2017/03/18 22:56:25 | 000,009,728 | ---- | M | MD5 = 739D089777D2B66DBE7201E5EA4BA2D7] (Windows (R) Win 7 DDK provider) DXCpl.exe -> C:\WINDOWS\SysNative\DXCpl.exe -> [2017/03/17 23:02:10 | 000,393,216 | ---- | M | MD5 = 4F17B3F6BD4253E30FAA8E28961B55E2] (Windows (R) Win 7 DDK provider) DXCpl.exe -> C:\WINDOWS\SysWow64\DXCpl.exe -> [2017/03/17 22:46:30 | 000,370,176 | ---- | M | MD5 = 806562190B84D33BD3C98B3CE2EE5E57] (Windows (R) Win 7 DDK provider) CFDecode64.ax -> C:\WINDOWS\SysNative\CFDecode64.ax -> [2017/03/17 11:43:36 | 001,250,304 | ---- | M | MD5 = F18E1F295EBB5FDD7E6D93571113E5A8] (CineForm Inc.) im-fre.exe -> C:\WINDOWS\SysNative\im-fre.exe -> [2017/03/10 03:36:06 | 000,713,632 | ---- | M | MD5 = FC70C3475E474302DC500F735442BCD2] () SmartDefragDriver.sys -> C:\WINDOWS\SysNative\drivers\SmartDefragDriver.sys -> [2017/03/09 13:53:28 | 000,030,744 | ---- | M | MD5 = D2DDE8F0BD39F90E43146DB0B3B5DA57] (IObit) license.rtf -> C:\WINDOWS\SysWow64\license.rtf -> [2017/03/07 06:31:52 | 000,052,763 | ---- | M | MD5 = 5C0E6C26A95DC898E4C959B5AF9CD42B] () license.rtf -> C:\WINDOWS\SysNative\license.rtf -> [2017/03/07 06:31:52 | 000,052,763 | ---- | M | MD5 = 5C0E6C26A95DC898E4C959B5AF9CD42B] () gsinspect.sys -> C:\WINDOWS\SysNative\drivers\gsinspect.sys -> [2017/03/02 19:16:20 | 000,038,160 | ---- | M | MD5 = 3E0CD5BF6679CB4D709CFAD21EC326FA] () Trufos.sys -> C:\WINDOWS\SysNative\drivers\Trufos.sys -> [2017/02/08 13:52:24 | 000,442,848 | ---- | M | MD5 = B9E5E3CFD096A5D60F2F7061A6FBB67B] (BitDefender S.R.L.) gzflt.sys -> C:\WINDOWS\SysNative\drivers\gzflt.sys -> [2017/02/08 13:52:24 | 000,178,384 | ---- | M | MD5 = 058FAB3147ACFF026A7DA55CEFCF7485] (BitDefender LLC) prodad-codec.dll -> C:\WINDOWS\SysNative\prodad-codec.dll -> [2017/01/13 18:02:25 | 000,607,256 | ---- | M | MD5 = 0225FC6F0D91F84B44CE252487D8D725] (proDAD GmbH) proDAD-PA-Support.dll -> C:\WINDOWS\SysNative\proDAD-PA-Support.dll -> [2017/01/13 18:02:25 | 000,376,344 | ---- | M | MD5 = E5FCE41A5114E40EE573AB8631925BF3] (proDAD GmbH) GSCoinst.dll -> C:\WINDOWS\SysNative\GSCoinst.dll -> [2017/01/12 15:32:08 | 000,153,752 | ---- | M | MD5 = D5544599CAE052FEE4B9B186CE781309] (Genesys Logic) GeneStor.sys -> C:\WINDOWS\SysNative\drivers\GeneStor.sys -> [2017/01/12 15:32:06 | 000,131,664 | ---- | M | MD5 = 7C66A2C6D7514F4D37DFE1F16EF00AD0] (GenesysLogic) GeneIcon.dll -> C:\WINDOWS\SysNative\GeneIcon.dll -> [2017/01/12 15:32:02 | 005,636,288 | ---- | M | MD5 = FF54AB639C24A165375B1890F27249FF] (Genesys) vssMgr.exe -> C:\WINDOWS\vssMgr.exe -> [2016/12/29 10:21:02 | 000,097,784 | ---- | M | MD5 = 3135B6A59B0BDAD940AF864F9917E4E2] () suite.vssMgr.exe -> C:\WINDOWS\suite.vssMgr.exe -> [2016/12/29 10:21:02 | 000,097,784 | ---- | M | MD5 = 3135B6A59B0BDAD940AF864F9917E4E2] () epmntdrv.sys -> C:\WINDOWS\SysNative\epmntdrv.sys -> [2016/12/07 13:26:06 | 000,033,448 | ---- | M | MD5 = D1186D11D7FF6191CBC4BE68C8ADEAD2] () fbnative.exe -> C:\WINDOWS\SysNative\fbnative.exe -> [2016/12/06 02:46:20 | 000,026,304 | ---- | M | MD5 = DFBDC24417B2EDE6513F5570E6CD24C8] (CHENGDU YIWO Tech Development Co., Ltd) EUBKMON0.sys -> C:\WINDOWS\SysNative\drivers\EUBKMON0.sys -> [2016/11/28 14:13:58 | 000,052,392 | ---- | M | MD5 = 5061B571167E1EE26E8D549CCDBE9CC6] () EUBKMON.sys -> C:\WINDOWS\SysNative\drivers\EUBKMON.sys -> [2016/11/28 14:13:58 | 000,052,392 | ---- | M | MD5 = 5061B571167E1EE26E8D549CCDBE9CC6] () EUFDDISK0.sys -> C:\WINDOWS\SysNative\drivers\EUFDDISK0.sys -> [2016/11/28 14:13:56 | 000,196,776 | ---- | M | MD5 = 6B133EE401475A72D252D49F8736936E] (CHENGDU YIWO Tech Development Co., Ltd) EUBAKUP0.sys -> C:\WINDOWS\SysNative\drivers\EUBAKUP0.sys -> [2016/11/28 14:13:56 | 000,065,192 | ---- | M | MD5 = C5713A2B4C9D9150041FB70C4A2ADE07] (CHENGDU YIWO Tech Development Co., Ltd) eubakup.sys -> C:\WINDOWS\SysNative\drivers\eubakup.sys -> [2016/11/28 14:13:56 | 000,065,192 | ---- | M | MD5 = C5713A2B4C9D9150041FB70C4A2ADE07] (CHENGDU YIWO Tech Development Co., Ltd) teamviewervpn.sys -> C:\WINDOWS\SysNative\drivers\teamviewervpn.sys -> [2016/11/28 12:55:21 | 000,035,112 | ---- | M | MD5 = F5520DBB47C60EE83024B38720ABDA24] (TeamViewer GmbH) APMBoot.exe -> C:\WINDOWS\SysNative\APMBoot.exe -> [2016/11/23 20:29:32 | 003,192,320 | ---- | M | MD5 = C0F1FF923616DEDEAA7655F7FA03FD06] () avc3.sys -> C:\WINDOWS\SysNative\drivers\avc3.sys -> [2016/11/23 14:52:40 | 001,605,376 | ---- | M | MD5 = DA978AB6E0AAEA82235C943DEED3484C] (BitDefender) avckf.sys -> C:\WINDOWS\SysNative\drivers\avckf.sys -> [2016/11/23 14:52:40 | 000,878,072 | ---- | M | MD5 = 09A3015AEA14CF9A4ECDE1CEA6AFE0AA] (BitDefender) pimou.sys -> C:\WINDOWS\SysNative\drivers\pimou.sys -> [2016/11/17 18:21:34 | 000,042,392 | ---- | M | MD5 = 8E4CB6A8862188DC4D23586B853DB9B0] (Christian Gulden) pikbd.sys -> C:\WINDOWS\SysNative\drivers\pikbd.sys -> [2016/11/17 18:21:34 | 000,041,368 | ---- | M | MD5 = C54551CC28214130EA4A356FC12B09EB] () drbl-live-xfce-2.4.7-7-amd64.iso.part -> C:\Users\Jean-Marie\Documents\drbl-live-xfce-2.4.7-7-amd64.iso.part -> [2016/11/15 18:43:38 | 135,619,414 | ---- | M | MD5 = C5AFE7D196F1B17B32B9BCDE4CF97E38] () drbl-live-xfce-2.4.7-7-i686.iso -> C:\Users\Jean-Marie\Documents\drbl-live-xfce-2.4.7-7-i686.iso -> [2016/11/15 18:42:36 | 610,271,232 | ---- | M | MD5 = EF7248ACB65F634456205FB6B64E6DB8] () isotousb_setup.exe -> C:\Users\Jean-Marie\Documents\isotousb_setup.exe -> [2016/11/15 18:19:21 | 001,733,751 | ---- | M | MD5 = C881589E86F0EFFC8611AAE0C52CB9C6] (isotousb.com ) 100% sécurisé finalis (lfs ultra aussi) menthe glaciale mbj dar w dar ph dar.zip -> C:\Users\Jean-Marie\Documents\100% sécurisé finalis (lfs ultra aussi) menthe glaciale mbj dar w dar ph dar.zip -> [2016/11/15 07:40:34 | 2943,413,541 | ---- | M | MD5 = 19CFDAB4FE156B2B8198351512CCBBE7] () VideoMeetingPlus_1.0.1711.0_Beta_VMX160226-03.exe -> C:\Users\Jean-Marie\Documents\VideoMeetingPlus_1.0.1711.0_Beta_VMX160226-03.exe -> [2016/11/14 11:05:52 | 089,589,712 | ---- | M | MD5 = E27773383A547E2115427E53001C79BB] () CyberLink_VideoMeetingPlus_Downloader.exe -> C:\Users\Jean-Marie\Documents\CyberLink_VideoMeetingPlus_Downloader.exe -> [2016/11/14 11:04:03 | 001,040,152 | ---- | M | MD5 = 6038D5C90AF8B85D4F97FB1FBA0B8825] (CyberLink) PresenterLinkPlus_160527_Beta_PLX160107-01.exe -> C:\Users\Jean-Marie\Documents\PresenterLinkPlus_160527_Beta_PLX160107-01.exe -> [2016/11/14 10:54:26 | 037,141,960 | ---- | M | MD5 = 6CEA7B13EF1ADA6AA2AA21AE584256E8] () CyberLink_PresenterLinkPlus_Downloader.exe -> C:\Users\Jean-Marie\Documents\CyberLink_PresenterLinkPlus_Downloader.exe -> [2016/11/14 10:53:18 | 001,040,152 | ---- | M | MD5 = 6AD45F2D6D995E33A927E3D09AFD1F40] (CyberLink) BD_3DAdvisor_7510_Generic_BD_CDT140213-01.exe -> C:\Users\Jean-Marie\Documents\BD_3DAdvisor_7510_Generic_BD_CDT140213-01.exe -> [2016/11/14 10:49:40 | 042,827,912 | ---- | M | MD5 = EAB53916F32014D6F05043B5E384E970] ( ) ReflectDL.exe -> C:\Users\Jean-Marie\Documents\ReflectDL.exe -> [2016/11/14 10:30:40 | 003,545,552 | ---- | M | MD5 = 44EC7B3F7BFA980AC3F79CFD0B46CAA1] (Paramount Software UK Ltd) dtproscsibus.sys -> C:\WINDOWS\SysNative\drivers\dtproscsibus.sys -> [2016/11/14 10:27:16 | 000,030,264 | ---- | M | MD5 = 726E40B11612664486BB6C6105283C95] (Disc Soft Ltd) DTPro800-0634.exe -> C:\Users\Jean-Marie\Documents\DTPro800-0634.exe -> [2016/11/14 10:25:13 | 030,417,640 | ---- | M | MD5 = F4D4E8B2988970F1F56899241CC5161B] (Disc Soft Ltd) zam64.sys -> C:\WINDOWS\SysNative\drivers\zam64.sys -> [2016/11/14 10:15:25 | 000,203,680 | ---- | M | MD5 = 21E13F2CB269DEFEAE5E1D09887D47BB] (Zemana Ltd.) zamguard64.sys -> C:\WINDOWS\SysNative\drivers\zamguard64.sys -> [2016/11/14 10:15:19 | 000,203,680 | ---- | M | MD5 = 21E13F2CB269DEFEAE5E1D09887D47BB] (Zemana Ltd.) tuxboot-0.8.2.exe -> C:\Users\Jean-Marie\Documents\tuxboot-0.8.2.exe -> [2016/11/14 07:49:51 | 005,111,808 | ---- | M | MD5 = 05C16DE9E243B288D60261E107103C01] (Thomas Tsai) barrow 2 & widen 100% sécurisé.zip -> C:\Users\Jean-Marie\Documents\barrow 2 & widen 100% sécurisé.zip -> [2016/11/13 22:17:53 | 2106,661,068 | ---- | M | MD5 = 82175C8D00F4D9B78E4410F3262AE4AD] () services -> C:\WINDOWS\SysNative\drivers\etc\services -> [2016/11/12 09:16:25 | 000,017,463 | ---- | M | MD5 = D9E1A01B480D961B7CF0509D597A92D6] () protocol -> C:\WINDOWS\SysNative\drivers\etc\protocol -> [2016/11/12 09:16:25 | 000,001,358 | ---- | M | MD5 = 7700D22FA108234E623D65FA72D9E29C] () networks -> C:\WINDOWS\SysNative\drivers\etc\networks -> [2016/11/12 09:16:25 | 000,000,407 | ---- | M | MD5 = B65A1232FB4B35827CE7C5E2F8EC8947] () system.ini -> C:\WINDOWS\system.ini -> [2016/11/12 09:16:10 | 000,000,219 | ---- | M | MD5 = 286A9EDB379DC3423A528B0864A0F111] () gsars.sys -> C:\WINDOWS\SysNative\drivers\gsars.sys -> [2016/10/13 18:05:46 | 000,019,560 | ---- | M | MD5 = 94203B31B0618221780611608C8875DE] () dllhost.exe.config -> C:\WINDOWS\SysWow64\dllhost.exe.config -> [2016/09/27 16:28:32 | 000,000,232 | ---- | M | MD5 = 0902754B4F3041FD31673CB63B34012D] () L1C63x64.sys -> C:\WINDOWS\SysNative\drivers\L1C63x64.sys -> [2016/09/19 10:16:46 | 000,161,096 | ---- | M | MD5 = A4FD20E038BEA02ECF62EA20C535CC9E] (Qualcomm Atheros, Inc.) DiscHandler.exe -> C:\WINDOWS\SysWow64\DiscHandler.exe -> [2016/08/20 02:29:42 | 000,055,488 | ---- | M | MD5 = 950DB8A6DC83C503DEF7EA3AF282CFC8] () vsscanner.sys -> C:\WINDOWS\SysNative\drivers\vsscanner.sys -> [2016/08/18 18:17:00 | 000,029,808 | ---- | M | MD5 = 88457246BE3C9DE59DDAA36305C013F4] (VoodooSoft, LLC) ignis.sys -> C:\WINDOWS\SysNative\drivers\ignis.sys -> [2016/08/15 10:41:02 | 000,300,840 | ---- | M | MD5 = 2C3928A343E2F29A7770BD429331DDCF] (Bitdefender) 38848DF6-A9ED-4330-BC-9A-92-33-7E-5B-AD-6E.sys -> C:\WINDOWS\SysNative\drivers\38848DF6-A9ED-4330-BC-9A-92-33-7E-5B-AD-6E.sys -> [2016/08/11 00:11:12 | 000,159,360 | ---- | M | MD5 = 8E6E3C6D32042055F918C457B3CB683C] (Zemana Ltd.) nitrolocalmon10.dll -> C:\WINDOWS\SysNative\nitrolocalmon10.dll -> [2016/08/02 19:09:34 | 000,031,904 | ---- | M | MD5 = 827101D25486B90E7F9467A5125EFBBC] (Nitro Software, Inc.) nitrolocalui10.dll -> C:\WINDOWS\SysNative\nitrolocalui10.dll -> [2016/08/02 19:09:34 | 000,020,128 | ---- | M | MD5 = 428957AA3ABFD26D93B4551408C51DA1] (Nitro Software, Inc.) StartMenuHelper64.dll -> C:\WINDOWS\SysNative\StartMenuHelper64.dll -> [2016/07/30 09:05:16 | 000,289,240 | ---- | M | MD5 = 643BC8D0DD30E19D542D8EA97A2D81CF] (IvoSoft) StartMenuHelper32.dll -> C:\WINDOWS\SysWow64\StartMenuHelper32.dll -> [2016/07/30 09:05:16 | 000,247,768 | ---- | M | MD5 = 2723F8B0470F79AA3C33EF4DA9764E8F] (IvoSoft) MsftWdf_Kernel_01019_Inbox_Critical.Wdf -> C:\WINDOWS\SysNative\drivers\MsftWdf_Kernel_01019_Inbox_Critical.Wdf -> [2016/07/16 13:42:35 | 000,000,003 | ---- | M | MD5 = 933222B19FF3E7EA5F65517EA1F7D57E] () setupempdrvx64.exe -> C:\WINDOWS\SysNative\setupempdrvx64.exe -> [2016/07/11 10:01:24 | 000,101,984 | ---- | M | MD5 = 4B91350942AA13F7566277CC6899E142] () setupempdrv03.exe -> C:\WINDOWS\SysWow64\setupempdrv03.exe -> [2016/07/11 10:01:24 | 000,088,160 | ---- | M | MD5 = 0CA49026F2DA1F2D3BEE9CD779AA806D] () EuGdiDrv.sys -> C:\WINDOWS\SysNative\EuGdiDrv.sys -> [2016/07/11 10:01:24 | 000,010,848 | ---- | M | MD5 = 08C997734B2CECE882656BB2855E6E76] () EuGdiDrv.sys -> C:\WINDOWS\SysWow64\EuGdiDrv.sys -> [2016/07/11 10:01:24 | 000,010,208 | ---- | M | MD5 = 886CDC85E0B6C9AC2547F919E5B224A3] () epmntdrv.pdb -> C:\WINDOWS\SysWow64\epmntdrv.pdb -> [2016/07/08 15:28:26 | 000,248,832 | ---- | M | MD5 = 3EE5337BCC0027FDBEE0150FB8EDBF17] () PCmover_EN.exe -> C:\Users\Jean-Marie\Documents\PCmover_EN.exe -> [2016/06/13 22:54:00 | 146,379,680 | ---- | M | MD5 = 0FECFFF72F3E8C2C867775A1846F5DA0] (Laplink Software, Inc. ) clvad.sys -> C:\WINDOWS\SysNative\drivers\clvad.sys -> [2016/05/27 12:07:24 | 000,040,384 | ---- | M | MD5 = EFC50A6C4C6B6F9AA09AFAC5C15881B6] (CyberLink) xlkfs.sys -> C:\WINDOWS\SysNative\drivers\xlkfs.sys -> [2016/05/26 13:12:26 | 000,044,272 | ---- | M | MD5 = 8B888F4663A25EC5D0A3448F29815B00] (XOSLAB.COM) tap0901.sys -> C:\WINDOWS\SysNative\drivers\tap0901.sys -> [2016/04/21 11:10:04 | 000,027,136 | ---- | M | MD5 = D765F43CBEA72D14C04AF3D2B9C8E54B] (The OpenVPN Project) 9E53D577-781A-41E2-BF-BF-68-62-E6-DD-26-7D.sys -> C:\WINDOWS\SysNative\drivers\9E53D577-781A-41E2-BF-BF-68-62-E6-DD-26-7D.sys -> [2016/04/13 20:15:38 | 000,159,360 | ---- | M | MD5 = 8E6E3C6D32042055F918C457B3CB683C] (Zemana Ltd.) IObitSmartDefragExtension.dll -> C:\WINDOWS\SysNative\IObitSmartDefragExtension.dll -> [2016/03/25 14:33:20 | 000,128,288 | ---- | M | MD5 = D506921989872994B9C5615D4761882C] (IObit) SmartDefragBootTime.exe -> C:\WINDOWS\SysNative\SmartDefragBootTime.exe -> [2016/03/22 11:02:16 | 000,036,824 | ---- | M | MD5 = D57880A3F9F22D67974EF0EB8B67021C] (IObit) IcarosUICore.dll.new -> C:\WINDOWS\SysNative\IcarosUICore.dll.new -> [2016/03/20 18:17:50 | 000,314,368 | ---- | M | MD5 = D0DC98FB55A2F601FE896CB019B7D21C] (Tabibito Technology) IcarosUICore.dll -> C:\WINDOWS\SysWow64\IcarosUICore.dll -> [2016/03/20 18:17:50 | 000,314,368 | ---- | M | MD5 = D0DC98FB55A2F601FE896CB019B7D21C] (Tabibito Technology) IcarosUICore.dll -> C:\WINDOWS\SysNative\IcarosUICore.dll -> [2016/03/20 18:17:50 | 000,314,368 | ---- | M | MD5 = D0DC98FB55A2F601FE896CB019B7D21C] (Tabibito Technology) IcarosConfig.exe.new -> C:\WINDOWS\SysNative\IcarosConfig.exe.new -> [2016/03/20 18:17:50 | 000,265,216 | ---- | M | MD5 = E34E18DBB5834973FB90D3A0DD7AC7C1] (Tabibito Technology) IcarosConfig.exe -> C:\WINDOWS\SysWow64\IcarosConfig.exe -> [2016/03/20 18:17:50 | 000,265,216 | ---- | M | MD5 = E34E18DBB5834973FB90D3A0DD7AC7C1] (Tabibito Technology) IcarosConfig.exe -> C:\WINDOWS\SysNative\IcarosConfig.exe -> [2016/03/20 18:17:50 | 000,265,216 | ---- | M | MD5 = E34E18DBB5834973FB90D3A0DD7AC7C1] (Tabibito Technology) IcarosPropertyHandler.dll.new -> C:\WINDOWS\SysNative\IcarosPropertyHandler.dll.new -> [2016/03/20 18:17:42 | 000,716,288 | ---- | M | MD5 = 33EF0ABFB943680ABB3D442748DF6ECB] (Tabibito Technology) IcarosPropertyHandler.dll -> C:\WINDOWS\SysNative\IcarosPropertyHandler.dll -> [2016/03/20 18:17:42 | 000,716,288 | ---- | M | MD5 = 33EF0ABFB943680ABB3D442748DF6ECB] (Tabibito Technology) IcarosThumbnailProvider.dll.new -> C:\WINDOWS\SysNative\IcarosThumbnailProvider.dll.new -> [2016/03/20 18:17:40 | 000,418,816 | ---- | M | MD5 = 3E8A57CB7D6260692C3759C5D0E142C3] (Tabibito Technology) IcarosThumbnailProvider.dll -> C:\WINDOWS\SysNative\IcarosThumbnailProvider.dll -> [2016/03/20 18:17:40 | 000,418,816 | ---- | M | MD5 = 3E8A57CB7D6260692C3759C5D0E142C3] (Tabibito Technology) IcarosCache.dll.new -> C:\WINDOWS\SysNative\IcarosCache.dll.new -> [2016/03/20 18:17:34 | 000,317,440 | ---- | M | MD5 = 52C4FCFF3FC3BD071514A1351C6C3ABD] (Tabibito Technology) IcarosCache.dll -> C:\WINDOWS\SysNative\IcarosCache.dll -> [2016/03/20 18:17:34 | 000,317,440 | ---- | M | MD5 = 52C4FCFF3FC3BD071514A1351C6C3ABD] (Tabibito Technology) IcarosPropertyHandler.dll.new -> C:\WINDOWS\SysWow64\IcarosPropertyHandler.dll.new -> [2016/03/20 18:17:28 | 000,599,040 | ---- | M | MD5 = E3395EF7AD4188DC52C766C4D51A7EE6] (Tabibito Technology) IcarosPropertyHandler.dll -> C:\WINDOWS\SysWow64\IcarosPropertyHandler.dll -> [2016/03/20 18:17:28 | 000,599,040 | ---- | M | MD5 = E3395EF7AD4188DC52C766C4D51A7EE6] (Tabibito Technology) IcarosThumbnailProvider.dll.new -> C:\WINDOWS\SysWow64\IcarosThumbnailProvider.dll.new -> [2016/03/20 18:17:26 | 000,356,352 | ---- | M | MD5 = BB551782B8BA73CE43CE68F0CBC9EA5F] (Tabibito Technology) IcarosThumbnailProvider.dll -> C:\WINDOWS\SysWow64\IcarosThumbnailProvider.dll -> [2016/03/20 18:17:26 | 000,356,352 | ---- | M | MD5 = BB551782B8BA73CE43CE68F0CBC9EA5F] (Tabibito Technology) IcarosCache.dll.new -> C:\WINDOWS\SysWow64\IcarosCache.dll.new -> [2016/03/20 18:17:20 | 000,259,584 | ---- | M | MD5 = 673D062061DA02017C6213E211123BA8] (Tabibito Technology) IcarosCache.dll -> C:\WINDOWS\SysWow64\IcarosCache.dll -> [2016/03/20 18:17:20 | 000,259,584 | ---- | M | MD5 = 673D062061DA02017C6213E211123BA8] (Tabibito Technology) avcodec-ics-57.dll.new -> C:\WINDOWS\SysNative\avcodec-ics-57.dll.new -> [2016/03/20 16:49:00 | 007,858,176 | ---- | M | MD5 = CF77ACCB98A041D7818164B824FDF9BA] (FFmpeg Project) avcodec-ics-57.dll -> C:\WINDOWS\SysNative\avcodec-ics-57.dll -> [2016/03/20 16:49:00 | 007,858,176 | ---- | M | MD5 = CF77ACCB98A041D7818164B824FDF9BA] (FFmpeg Project) avformat-ics-57.dll.new -> C:\WINDOWS\SysNative\avformat-ics-57.dll.new -> [2016/03/20 16:49:00 | 001,126,400 | ---- | M | MD5 = 36F1E27A26D178790E114B33C77E50E3] (FFmpeg Project) avformat-ics-57.dll -> C:\WINDOWS\SysNative\avformat-ics-57.dll -> [2016/03/20 16:49:00 | 001,126,400 | ---- | M | MD5 = 36F1E27A26D178790E114B33C77E50E3] (FFmpeg Project) swscale-ics-4.dll.new -> C:\WINDOWS\SysNative\swscale-ics-4.dll.new -> [2016/03/20 16:49:00 | 000,532,480 | ---- | M | MD5 = 312E654D0912B42FAFB67FA5143CF08F] (FFmpeg Project) swscale-ics-4.dll -> C:\WINDOWS\SysNative\swscale-ics-4.dll -> [2016/03/20 16:49:00 | 000,532,480 | ---- | M | MD5 = 312E654D0912B42FAFB67FA5143CF08F] (FFmpeg Project) avutil-ics-55.dll.new -> C:\WINDOWS\SysNative\avutil-ics-55.dll.new -> [2016/03/20 16:49:00 | 000,510,976 | ---- | M | MD5 = 2BF05D9264B57465B631BB928C72C84C] (FFmpeg Project) avutil-ics-55.dll -> C:\WINDOWS\SysNative\avutil-ics-55.dll -> [2016/03/20 16:49:00 | 000,510,976 | ---- | M | MD5 = 2BF05D9264B57465B631BB928C72C84C] (FFmpeg Project) avcodec-ics-57.dll.new -> C:\WINDOWS\SysWow64\avcodec-ics-57.dll.new -> [2016/03/20 16:45:26 | 007,568,384 | ---- | M | MD5 = 9719D5F0381C6A04AEDA98F8EDBF1A59] (FFmpeg Project) avcodec-ics-57.dll -> C:\WINDOWS\SysWow64\avcodec-ics-57.dll -> [2016/03/20 16:45:26 | 007,568,384 | ---- | M | MD5 = 9719D5F0381C6A04AEDA98F8EDBF1A59] (FFmpeg Project) avformat-ics-57.dll.new -> C:\WINDOWS\SysWow64\avformat-ics-57.dll.new -> [2016/03/20 16:45:26 | 001,199,104 | ---- | M | MD5 = 00F3CD06651AF0FE5CAB66F7AC571044] (FFmpeg Project) avformat-ics-57.dll -> C:\WINDOWS\SysWow64\avformat-ics-57.dll -> [2016/03/20 16:45:26 | 001,199,104 | ---- | M | MD5 = 00F3CD06651AF0FE5CAB66F7AC571044] (FFmpeg Project) avutil-ics-55.dll.new -> C:\WINDOWS\SysWow64\avutil-ics-55.dll.new -> [2016/03/20 16:45:26 | 000,556,544 | ---- | M | MD5 = 599E8FC95BC2B30EBABB527AF9DD45EA] (FFmpeg Project) avutil-ics-55.dll -> C:\WINDOWS\SysWow64\avutil-ics-55.dll -> [2016/03/20 16:45:26 | 000,556,544 | ---- | M | MD5 = 599E8FC95BC2B30EBABB527AF9DD45EA] (FFmpeg Project) swscale-ics-4.dll.new -> C:\WINDOWS\SysWow64\swscale-ics-4.dll.new -> [2016/03/20 16:45:26 | 000,537,088 | ---- | M | MD5 = EEF46D99121F174FA0C76D14700BD873] (FFmpeg Project) swscale-ics-4.dll -> C:\WINDOWS\SysWow64\swscale-ics-4.dll -> [2016/03/20 16:45:26 | 000,537,088 | ---- | M | MD5 = EEF46D99121F174FA0C76D14700BD873] (FFmpeg Project) libbluray.dll -> C:\WINDOWS\SysNative\libbluray.dll -> [2016/03/08 14:33:02 | 000,327,864 | ---- | M | MD5 = 1652608CB628D124924691D9A6C2A90F] () LAVVideo.ax.new -> C:\WINDOWS\SysNative\LAVVideo.ax.new -> [2016/03/08 14:32:56 | 001,306,296 | ---- | M | MD5 = 7D88F47D1CBF764FC9F2C916F32280C0] (1f0.de - Hendrik Leppkes) LAVVideo.ax -> C:\WINDOWS\SysNative\LAVVideo.ax -> [2016/03/08 14:32:56 | 001,306,296 | ---- | M | MD5 = 7D88F47D1CBF764FC9F2C916F32280C0] (1f0.de - Hendrik Leppkes) LAVSplitter.ax.new -> C:\WINDOWS\SysNative\LAVSplitter.ax.new -> [2016/03/08 14:32:54 | 000,660,152 | ---- | M | MD5 = 6638795D65E04C6DEBE47C6C92E370F0] (1f0.de - Hendrik Leppkes) LAVSplitter.ax -> C:\WINDOWS\SysNative\LAVSplitter.ax -> [2016/03/08 14:32:54 | 000,660,152 | ---- | M | MD5 = 6638795D65E04C6DEBE47C6C92E370F0] (1f0.de - Hendrik Leppkes) LAVAudio.ax.new -> C:\WINDOWS\SysNative\LAVAudio.ax.new -> [2016/03/08 14:32:50 | 000,306,360 | ---- | M | MD5 = FA22C12A575ECB497E646799022FD125] (1f0.de - Hendrik Leppkes) LAVAudio.ax -> C:\WINDOWS\SysNative\LAVAudio.ax -> [2016/03/08 14:32:50 | 000,306,360 | ---- | M | MD5 = FA22C12A575ECB497E646799022FD125] (1f0.de - Hendrik Leppkes) swscale-lav-4.dll -> C:\WINDOWS\SysNative\swscale-lav-4.dll -> [2016/03/08 14:32:48 | 000,532,664 | ---- | M | MD5 = A428AAC066824A1A62851B82BDB60C10] (FFmpeg Project) avutil-lav-55.dll -> C:\WINDOWS\SysNative\avutil-lav-55.dll -> [2016/03/08 14:32:44 | 000,510,648 | ---- | M | MD5 = EA975F24513B2A6E4492D147F1F6DDA8] (FFmpeg Project) avresample-lav-3.dll -> C:\WINDOWS\SysNative\avresample-lav-3.dll -> [2016/03/08 14:32:42 | 000,168,120 | ---- | M | MD5 = 840184A748942ADAF2D8A6D34DBB5488] (FFmpeg Project) avformat-lav-57.dll -> C:\WINDOWS\SysNative\avformat-lav-57.dll -> [2016/03/08 14:32:38 | 001,587,896 | ---- | M | MD5 = 35FAA3911CF0D1012A9B6C0CCC3537EB] (FFmpeg Project) avfilter-lav-6.dll -> C:\WINDOWS\SysNative\avfilter-lav-6.dll -> [2016/03/08 14:32:36 | 000,193,720 | ---- | M | MD5 = 60FECAEB32B86FF0451C6C2CD29751E6] (FFmpeg Project) avcodec-lav-57.dll -> C:\WINDOWS\SysNative\avcodec-lav-57.dll -> [2016/03/08 14:32:32 | 011,095,736 | ---- | M | MD5 = 2D73F14806925F1F3C6DE5534362AA62] (FFmpeg Project) libbluray.dll -> C:\WINDOWS\SysWow64\libbluray.dll -> [2016/03/08 14:32:30 | 000,271,544 | ---- | M | MD5 = 438A9E27DB0FD013D916A3EFD2DC4A49] () LAVVideo.ax -> C:\WINDOWS\SysWow64\LAVVideo.ax -> [2016/03/08 14:32:24 | 001,083,064 | ---- | M | MD5 = 1A91F1CBF0C40B551DECE883C45EE917] (1f0.de - Hendrik Leppkes) LAVSplitter.ax -> C:\WINDOWS\SysWow64\LAVSplitter.ax -> [2016/03/08 14:32:20 | 000,542,392 | ---- | M | MD5 = 0A2BCB86422F8555DA6819F103177E03] (1f0.de - Hendrik Leppkes) LAVAudio.ax -> C:\WINDOWS\SysWow64\LAVAudio.ax -> [2016/03/08 14:32:18 | 000,258,744 | ---- | M | MD5 = 60E14F61138F3259C3462C735F50814C] (1f0.de - Hendrik Leppkes) swscale-lav-4.dll -> C:\WINDOWS\SysWow64\swscale-lav-4.dll -> [2016/03/08 14:32:14 | 000,537,784 | ---- | M | MD5 = BE21BB79AAA9763EEDECCA9BA1CCF33A] (FFmpeg Project) avutil-lav-55.dll -> C:\WINDOWS\SysWow64\avutil-lav-55.dll -> [2016/03/08 14:32:10 | 000,556,216 | ---- | M | MD5 = 996592C287935D37284C0C0005EBB68E] (FFmpeg Project) avresample-lav-3.dll -> C:\WINDOWS\SysWow64\avresample-lav-3.dll -> [2016/03/08 14:32:08 | 000,160,440 | ---- | M | MD5 = EFF6BF79B5D0BB35CC2EBC79BD3C8A21] (FFmpeg Project) avformat-lav-57.dll -> C:\WINDOWS\SysWow64\avformat-lav-57.dll -> [2016/03/08 14:32:04 | 001,697,976 | ---- | M | MD5 = 656B8CC7651C7BABDE151F694376DC7B] (FFmpeg Project) avfilter-lav-6.dll -> C:\WINDOWS\SysWow64\avfilter-lav-6.dll -> [2016/03/08 14:32:02 | 000,188,088 | ---- | M | MD5 = C5AA99D288FC08BBA7346522DF587643] (FFmpeg Project) avcodec-lav-57.dll -> C:\WINDOWS\SysWow64\avcodec-lav-57.dll -> [2016/03/08 14:31:58 | 010,766,520 | ---- | M | MD5 = 787DFF22586F0D4B518656F96A63079B] (FFmpeg Project) bdfndisf6.sys -> C:\WINDOWS\SysNative\drivers\bdfndisf6.sys -> [2016/02/16 17:52:38 | 000,107,496 | ---- | M | MD5 = AF3E1ABAB951FC9064267ED76268F41B] (BitDefender LLC) mp4mux.dll -> C:\WINDOWS\SysWow64\mp4mux.dll -> [2016/02/16 08:56:02 | 000,229,376 | ---- | M | MD5 = 259BAEE26B709FB8D5A9FF7EF01EEE08] (GDCL (www.gdcl.co.uk)) mp4demux.dll -> C:\WINDOWS\SysWow64\mp4demux.dll -> [2016/02/16 08:56:02 | 000,189,952 | ---- | M | MD5 = AAC1EF6E2747F5919CF0391B4B0365C8] (GDCL (www.gdcl.co.uk)) EasyHook32.dll -> C:\WINDOWS\SysWow64\EasyHook32.dll -> [2016/01/29 15:21:58 | 000,229,184 | ---- | M | MD5 = 623A8CB497DF298E78091B6D48BA046A] (easyhook.codeplex.com) D3DX8Wrapper.dll -> C:\WINDOWS\SysWow64\D3DX8Wrapper.dll -> [2016/01/29 15:21:06 | 000,276,800 | ---- | M | MD5 = 9851F89665C9B2F7FCB7DB07CAE7CF9A] () PEChecksum.x64 -> C:\WINDOWS\SysWow64\PEChecksum.x64 -> [2016/01/15 05:03:28 | 000,015,872 | ---- | M | MD5 = 82B36D39067C90E20114AE1F87C2BEBB] () PEChecksum.exe -> C:\WINDOWS\SysWow64\PEChecksum.exe -> [2016/01/15 05:03:26 | 000,007,680 | ---- | M | MD5 = 0C100E0085F62A51E3202EB8F5997687] () epmntdrv.sys -> C:\WINDOWS\SysWow64\epmntdrv.sys -> [2016/01/14 10:05:18 | 000,021,496 | ---- | M | MD5 = 5F2D1F871FF277EDE5FAEB971D8335ED] () avchv.sys -> C:\WINDOWS\SysNative\drivers\avchv.sys -> [2016/01/05 14:45:28 | 000,282,000 | ---- | M | MD5 = 3FC014DABD685F8958C89EAA35D77368] (BitDefender) rsrorx64.dll -> C:\WINDOWS\SysNative\rsrorx64.dll -> [2016/01/05 10:29:40 | 003,884,136 | ---- | M | MD5 = F7BAB6656AA3851FB90D3E1699F9B946] (Advanced Messaging Systems LLC) rsror64.dll -> C:\WINDOWS\SysNative\rsror64.dll -> [2016/01/05 10:29:38 | 012,800,104 | ---- | M | MD5 = 166CDCF1CA92579C051BCA8C5C13C3FB] (Advanced Messaging Systems LLC) rsror32.dll -> C:\WINDOWS\SysWow64\rsror32.dll -> [2016/01/05 10:29:36 | 007,963,240 | ---- | M | MD5 = F5C5B3A75783BEFF7257EABA026783CA] (Advanced Messaging Systems LLC) rsrorx32.dll -> C:\WINDOWS\SysWow64\rsrorx32.dll -> [2016/01/05 10:29:36 | 002,451,048 | ---- | M | MD5 = 3FE1177C731A499D875FFD2555C0EED1] (Advanced Messaging Systems LLC) LAVFilters.Dependencies.manifest -> C:\WINDOWS\SysWow64\LAVFilters.Dependencies.manifest -> [2015/11/15 15:50:12 | 000,000,493 | ---- | M | MD5 = 933A8ABCA9941128A80B6401B5A04B9E] () LAVFilters.Dependencies.manifest -> C:\WINDOWS\SysNative\LAVFilters.Dependencies.manifest -> [2015/11/15 15:50:12 | 000,000,493 | ---- | M | MD5 = 933A8ABCA9941128A80B6401B5A04B9E] () cdxareader.ax.new -> C:\WINDOWS\SysNative\cdxareader.ax.new -> [2015/11/14 19:28:38 | 000,428,272 | ---- | M | MD5 = 6A8C883EDB087B05CC9A4E8DF54B1433] (MPC-HC Team) cdxareader.ax -> C:\WINDOWS\SysNative\cdxareader.ax -> [2015/11/14 19:28:38 | 000,428,272 | ---- | M | MD5 = 6A8C883EDB087B05CC9A4E8DF54B1433] (MPC-HC Team) cdxareader.ax -> C:\WINDOWS\SysWow64\cdxareader.ax -> [2015/11/14 19:21:28 | 000,368,368 | ---- | M | MD5 = 8145029CEFFBB1C6F196A0DB37A27231] (MPC-HC Team) wdcsam64.sys -> C:\WINDOWS\SysNative\drivers\wdcsam64.sys -> [2015/11/12 23:50:10 | 000,026,880 | ---- | M | MD5 = A556768CC1FA4F36022BEE2F0EDE2566] (Western Digital Technologies, Inc.) amdmiracast.dll -> C:\WINDOWS\SysNative\amdmiracast.dll -> [2015/10/21 03:14:54 | 000,471,312 | ---- | M | MD5 = 3960C946E67311C9831550AEDC649C3A] () amdhdl64.dll -> C:\WINDOWS\SysNative\amdhdl64.dll -> [2015/10/21 03:14:42 | 000,143,344 | ---- | M | MD5 = AF1928F5E15921A29877C2E18626F80E] () amdhdl32.dll -> C:\WINDOWS\SysWow64\amdhdl32.dll -> [2015/10/21 03:14:42 | 000,132,080 | ---- | M | MD5 = F12467373381C72FAE9CA7C08ED6C919] () psmounterex.sys -> C:\WINDOWS\SysNative\drivers\psmounterex.sys -> [2015/10/12 14:39:20 | 000,168,968 | ---- | M | MD5 = D06C8A05ABD8B3D0EDCEC1B632396143] (Windows (R) Win 7 DDK provider) hsa-thunk64.dll -> C:\WINDOWS\SysNative\hsa-thunk64.dll -> [2015/10/09 21:27:16 | 000,161,304 | ---- | M | MD5 = 61B75AE606919D50AA595E810A45FF6A] () hsa-thunk.dll -> C:\WINDOWS\SysWow64\hsa-thunk.dll -> [2015/10/09 21:27:16 | 000,151,576 | ---- | M | MD5 = C305B4FE78CB20F88B647A29D061F679] () coinst_15.20.dll -> C:\WINDOWS\SysNative\coinst_15.20.dll -> [2015/10/09 21:26:50 | 000,873,488 | ---- | M | MD5 = EF89F5666867ED5E8C0B192CE6833AB6] (AMD) clinfo.exe -> C:\WINDOWS\SysNative\clinfo.exe -> [2015/10/09 21:26:48 | 000,243,728 | ---- | M | MD5 = BACC2299CE687891861D284925C11A9A] () atitmm64.dll -> C:\WINDOWS\SysNative\atitmm64.dll -> [2015/10/09 21:25:44 | 000,199,696 | ---- | M | MD5 = 0B71612AB262DF3C791881B8ED5B6DEE] (AMD) atimuixx.dll -> C:\WINDOWS\SysNative\atimuixx.dll -> [2015/10/09 21:24:58 | 000,038,416 | ---- | M | MD5 = B2E57907B57F47AD942FDB0F97CB0606] (AMD) atiesrxx.exe -> C:\WINDOWS\SysNative\atiesrxx.exe -> [2015/10/09 21:24:28 | 000,305,168 | ---- | M | MD5 = 3F4E2D6E947BF0C81D4F10907151B312] (AMD) atieclxx.exe -> C:\WINDOWS\SysNative\atieclxx.exe -> [2015/10/09 21:24:26 | 000,704,528 | ---- | M | MD5 = 13FACFCFF374FD2D9BC7C5596EEE0F90] (AMD) atieah64.exe -> C:\WINDOWS\SysNative\atieah64.exe -> [2015/10/09 21:24:24 | 000,219,160 | ---- | M | MD5 = 49CE830A90C843FD99B9A5CF24D4FC8C] () atieah32.exe -> C:\WINDOWS\SysWow64\atieah32.exe -> [2015/10/09 21:24:22 | 000,198,168 | ---- | M | MD5 = D3AA5B31E1BB417E7205DAB28B063493] () amdverag.dll -> C:\WINDOWS\SysNative\amdverag.dll -> [2015/10/09 21:23:18 | 000,061,976 | ---- | M | MD5 = 03DF915F3B5F1248586782A80335AEF4] () amdocl_ld64.exe -> C:\WINDOWS\SysNative\amdocl_ld64.exe -> [2015/10/09 21:21:56 | 001,070,632 | ---- | M | MD5 = 01EDFAD837F095476F56799DE21DEAA1] () amdocl_ld32.exe -> C:\WINDOWS\SysWow64\amdocl_ld32.exe -> [2015/10/09 21:21:54 | 000,807,464 | ---- | M | MD5 = 49928B3E470183C2238B645AD069ACFA] () amdocl_as64.exe -> C:\WINDOWS\SysNative\amdocl_as64.exe -> [2015/10/09 21:21:50 | 001,196,072 | ---- | M | MD5 = 80AC526F3B98368586FF260DE58EF186] () amdocl_as32.exe -> C:\WINDOWS\SysWow64\amdocl_as32.exe -> [2015/10/09 21:21:48 | 001,004,072 | ---- | M | MD5 = 8EF355B942E2F843E44EF639A8E544A7] () amdgfxinfo64.dll -> C:\WINDOWS\SysNative\amdgfxinfo64.dll -> [2015/10/09 21:20:40 | 000,237,584 | ---- | M | MD5 = 7204A5C7C55E08A75688E7D16E1AE2D0] () amdgfxinfo32.dll -> C:\WINDOWS\SysWow64\amdgfxinfo32.dll -> [2015/10/09 21:20:40 | 000,209,936 | ---- | M | MD5 = 63160A7271F23CFE31ADBA764E933D16] () OpenCL.dll -> C:\WINDOWS\SysNative\OpenCL.dll -> [2015/10/09 21:20:36 | 000,073,752 | ---- | M | MD5 = B0B0F74726737877E5F5FC87CE38C9B1] (Khronos Group) OpenCL.dll -> C:\WINDOWS\SysWow64\OpenCL.dll -> [2015/10/09 21:20:36 | 000,068,112 | ---- | M | MD5 = A8CBA68F0147BF474710ACE2165096A2] (Khronos Group) ativvsny.dat -> C:\WINDOWS\SysWow64\ativvsny.dat -> [2015/10/09 18:27:40 | 000,000,025 | ---- | M | MD5 = CFBA17101E04BBCDA5E50CC8A92CEBB0] () ativvsny.dat -> C:\WINDOWS\SysNative\ativvsny.dat -> [2015/10/09 18:27:40 | 000,000,025 | ---- | M | MD5 = CFBA17101E04BBCDA5E50CC8A92CEBB0] () ativvsnl.dat -> C:\WINDOWS\SysWow64\ativvsnl.dat -> [2015/10/09 18:27:38 | 000,020,790 | ---- | M | MD5 = 4F1F22EF604DE04ED2BCA4C5916BF9E0] () ativvsnl.dat -> C:\WINDOWS\SysNative\ativvsnl.dat -> [2015/10/09 18:27:38 | 000,020,790 | ---- | M | MD5 = 4F1F22EF604DE04ED2BCA4C5916BF9E0] () atiumdva.cap -> C:\WINDOWS\SysWow64\atiumdva.cap -> [2015/10/09 18:27:34 | 003,471,376 | ---- | M | MD5 = EA52BB38197E835B09E43F0EDABDC37B] () atiumd6a.cap -> C:\WINDOWS\SysNative\atiumd6a.cap -> [2015/10/09 18:27:32 | 003,437,632 | ---- | M | MD5 = C4A6FACBB9D28D1B65D638C7516E936B] () atiapfxx.blb -> C:\WINDOWS\SysWow64\atiapfxx.blb -> [2015/10/09 18:27:06 | 000,662,480 | ---- | M | MD5 = E3D9A7DC6F817410BAA69A4831406AD2] () atiapfxx.blb -> C:\WINDOWS\SysNative\atiapfxx.blb -> [2015/10/09 18:27:06 | 000,662,480 | ---- | M | MD5 = E3D9A7DC6F817410BAA69A4831406AD2] () amdicdxx.dat -> C:\WINDOWS\SysNative\amdicdxx.dat -> [2015/10/09 18:26:36 | 000,842,001 | ---- | M | MD5 = 3138CAE93E07531AED348AA5E0F44E59] () FirefoxCaptureBridge.dll -> C:\WINDOWS\SysWow64\FirefoxCaptureBridge.dll -> [2015/09/29 22:31:00 | 000,075,584 | ---- | M | MD5 = 1892A823ACF268C7177B285294B03138] (TechSmith Corporation) ativvsvl.dat -> C:\WINDOWS\SysWow64\ativvsvl.dat -> [2015/08/22 02:54:10 | 000,204,952 | ---- | M | MD5 = 219D7091DD1D93728392337FE9C7ADD6] () ativvsvl.dat -> C:\WINDOWS\SysNative\ativvsvl.dat -> [2015/08/22 02:54:10 | 000,204,952 | ---- | M | MD5 = 219D7091DD1D93728392337FE9C7ADD6] () ativvsva.dat -> C:\WINDOWS\SysWow64\ativvsva.dat -> [2015/08/22 02:54:10 | 000,157,144 | ---- | M | MD5 = 7C163EDE63854539828F5B2C1BC529FD] () ativvsva.dat -> C:\WINDOWS\SysNative\ativvsva.dat -> [2015/08/22 02:54:10 | 000,157,144 | ---- | M | MD5 = 7C163EDE63854539828F5B2C1BC529FD] () secrevnative64.exe -> C:\WINDOWS\SysNative\secrevnative64.exe -> [2015/08/03 13:45:34 | 000,026,584 | ---- | M | MD5 = 086525365080CBF2EA8CCABFC66D5E77] () ativce03.dat -> C:\WINDOWS\SysNative\ativce03.dat -> [2015/07/30 23:00:06 | 000,177,344 | ---- | M | MD5 = B974290EEE645249EE212FF62DD0824A] () amde31a.dat -> C:\WINDOWS\SysNative\amde31a.dat -> [2015/07/30 22:58:04 | 000,175,648 | ---- | M | MD5 = 4B10D8998C824DD84AD597F9E058F6F0] () ativce02.dat -> C:\WINDOWS\SysNative\ativce02.dat -> [2015/07/24 22:44:06 | 000,100,816 | ---- | M | MD5 = EFA5E3D55F1CC185BC690B7D79D015A9] () AQFileRestore.sys -> C:\WINDOWS\SysNative\drivers\AQFileRestore.sys -> [2015/07/20 20:18:02 | 000,022,096 | ---- | M | MD5 = 691275C85EF3FCD230A2CA1BD6B9BBAE] () ativvaxy_cz_nd.dat -> C:\WINDOWS\SysNative\ativvaxy_cz_nd.dat -> [2015/05/29 02:21:32 | 000,255,808 | ---- | M | MD5 = 0770A5AB5218E6D3134A7A7239B9A216] () ativvaxy_FJ.dat -> C:\WINDOWS\SysNative\ativvaxy_FJ.dat -> [2015/05/29 02:17:24 | 000,250,884 | ---- | M | MD5 = A81F68A0D3387A06182EFA3880D3F0BD] () ativvaxy_FJ_nd.dat -> C:\WINDOWS\SysNative\ativvaxy_FJ_nd.dat -> [2015/05/29 02:15:12 | 000,249,088 | ---- | M | MD5 = 7EE8F6853798F7A900DB15F3054A0277] () ativvaxy_vi.dat -> C:\WINDOWS\SysNative\ativvaxy_vi.dat -> [2015/05/29 02:10:58 | 000,322,868 | ---- | M | MD5 = 11355CAC5334C8999211C09CAAE194EF] () ativvaxy_vi_nd.dat -> C:\WINDOWS\SysNative\ativvaxy_vi_nd.dat -> [2015/05/29 02:08:18 | 000,321,200 | ---- | M | MD5 = 3544D6AF6E0C9783C2CF6FA9CE42D520] () ativvaxy_cik.dat -> C:\WINDOWS\SysNative\ativvaxy_cik.dat -> [2015/05/29 02:00:42 | 000,234,420 | ---- | M | MD5 = 5EBC73A78E5903E7CE6F6B25E4A6BE8F] () ativvaxy_cik_nd.dat -> C:\WINDOWS\SysNative\ativvaxy_cik_nd.dat -> [2015/05/29 01:58:32 | 000,232,752 | ---- | M | MD5 = C55D2CBC17AAE1FBAC9135E7C31A4D31] () libeay32.dll -> C:\WINDOWS\SysWow64\libeay32.dll -> [2015/04/06 16:05:04 | 001,006,416 | ---- | M | MD5 = 30D04FCB2C198BA6C5A23BC912DC0D7D] (The OpenSSL Project, http://www.openssl.org/) elytsxu.sys -> C:\WINDOWS\SysNative\drivers\elytsxu.sys -> [2015/03/01 00:22:52 | 000,032,424 | ---- | M | MD5 = 4736C69400D1FD0B7D36A30771675E13] (The Within Network, LLC) unsignedthemes.exe -> C:\WINDOWS\unsignedthemes.exe -> [2015/03/01 00:22:50 | 000,022,184 | ---- | M | MD5 = 5D5FC880C46C1F08D72464250C8B0D70] (The Within Network, LLC) ISCM64.dll -> C:\WINDOWS\SysWow64\ISCM64.dll -> [2015/02/27 14:38:16 | 000,721,263 | ---- | M | MD5 = ED5D4435EC628F9EBB6AEC8A1D3FA41D] () ISCM32.dll -> C:\WINDOWS\SysWow64\ISCM32.dll -> [2015/02/27 14:38:12 | 000,214,528 | ---- | M | MD5 = CADC1F6669EC3F9143A33D1342C2410E] () EuFdDisk.sys -> C:\WINDOWS\SysNative\drivers\EuFdDisk.sys -> [2014/12/15 01:59:40 | 000,192,040 | ---- | M | MD5 = 1D866B50C9B1BA3FE90CC81E0DBC0E15] (CHENGDU YIWO Tech Development Co., Ltd) eudskacs.sys -> C:\WINDOWS\SysNative\drivers\eudskacs.sys -> [2014/12/15 01:59:40 | 000,018,472 | ---- | M | MD5 = FCFD172899D0A026E5BD29F4775BFA76] (CHENGDU YIWO Tech Development Co., Ltd) ffmpeg.dll.new -> C:\WINDOWS\SysNative\ffmpeg.dll.new -> [2014/12/05 13:50:00 | 004,013,056 | ---- | M | MD5 = D26DD19E6A50C73C9FC250756558A5AE] () ffmpeg.dll -> C:\WINDOWS\SysNative\ffmpeg.dll -> [2014/12/05 13:50:00 | 004,013,056 | ---- | M | MD5 = D26DD19E6A50C73C9FC250756558A5AE] () ff_vfw.dll.new -> C:\WINDOWS\SysNative\ff_vfw.dll.new -> [2014/12/05 13:49:40 | 000,127,488 | ---- | M | MD5 = DB5D11885E0DE0F166DE33467CB075B2] () ff_vfw.dll -> C:\WINDOWS\SysNative\ff_vfw.dll -> [2014/12/05 13:49:40 | 000,127,488 | ---- | M | MD5 = DB5D11885E0DE0F166DE33467CB075B2] () ffdshow.ax.new -> C:\WINDOWS\SysNative\ffdshow.ax.new -> [2014/12/05 13:49:36 | 004,374,016 | ---- | M | MD5 = 25DFF6C52D8AE230358478C9EC708990] () ffdshow.ax -> C:\WINDOWS\SysNative\ffdshow.ax -> [2014/12/05 13:49:36 | 004,374,016 | ---- | M | MD5 = 25DFF6C52D8AE230358478C9EC708990] () ff_kernelDeint.dll.new -> C:\WINDOWS\SysNative\ff_kernelDeint.dll.new -> [2014/12/05 13:49:04 | 000,474,624 | ---- | M | MD5 = 7695FCB44106A2FC415CDB29A15EDBB1] () ff_kernelDeint.dll -> C:\WINDOWS\SysNative\ff_kernelDeint.dll -> [2014/12/05 13:49:04 | 000,474,624 | ---- | M | MD5 = 7695FCB44106A2FC415CDB29A15EDBB1] () ff_wmv9.dll.new -> C:\WINDOWS\SysNative\ff_wmv9.dll.new -> [2014/12/05 13:48:00 | 000,114,688 | ---- | M | MD5 = 732A10AD77B4649B696AE4DE6406F1FE] () ff_wmv9.dll -> C:\WINDOWS\SysNative\ff_wmv9.dll -> [2014/12/05 13:48:00 | 000,114,688 | ---- | M | MD5 = 732A10AD77B4649B696AE4DE6406F1FE] () TomsMoComp_ff.dll.new -> C:\WINDOWS\SysNative\TomsMoComp_ff.dll.new -> [2014/12/05 13:47:42 | 000,631,296 | ---- | M | MD5 = 87AAD7A429BE0C1A0061A417F9509B3E] () TomsMoComp_ff.dll -> C:\WINDOWS\SysNative\TomsMoComp_ff.dll -> [2014/12/05 13:47:42 | 000,631,296 | ---- | M | MD5 = 87AAD7A429BE0C1A0061A417F9509B3E] () ff_libmad.dll.new -> C:\WINDOWS\SysNative\ff_libmad.dll.new -> [2014/12/05 13:47:42 | 000,156,672 | ---- | M | MD5 = EEC093E5C1FF21154F3E212288F9AB16] () ff_libmad.dll -> C:\WINDOWS\SysNative\ff_libmad.dll -> [2014/12/05 13:47:42 | 000,156,672 | ---- | M | MD5 = EEC093E5C1FF21154F3E212288F9AB16] () ff_liba52.dll.new -> C:\WINDOWS\SysNative\ff_liba52.dll.new -> [2014/12/05 13:47:34 | 000,116,224 | ---- | M | MD5 = 7D8DE431C970D1D389740497D7AEE9A3] () ff_liba52.dll -> C:\WINDOWS\SysNative\ff_liba52.dll -> [2014/12/05 13:47:34 | 000,116,224 | ---- | M | MD5 = 7D8DE431C970D1D389740497D7AEE9A3] () ff_samplerate.dll.new -> C:\WINDOWS\SysNative\ff_samplerate.dll.new -> [2014/12/05 13:47:26 | 001,532,928 | ---- | M | MD5 = ABD4B81F27C6E52C83D497119D78930E] () ff_samplerate.dll -> C:\WINDOWS\SysNative\ff_samplerate.dll -> [2014/12/05 13:47:26 | 001,532,928 | ---- | M | MD5 = ABD4B81F27C6E52C83D497119D78930E] () ff_libdts.dll.new -> C:\WINDOWS\SysNative\ff_libdts.dll.new -> [2014/12/05 13:47:26 | 000,222,720 | ---- | M | MD5 = B189D92ACFD552FDEA4790F0C334AFEA] () ff_libdts.dll -> C:\WINDOWS\SysNative\ff_libdts.dll -> [2014/12/05 13:47:26 | 000,222,720 | ---- | M | MD5 = B189D92ACFD552FDEA4790F0C334AFEA] () ff_unrar.dll.new -> C:\WINDOWS\SysNative\ff_unrar.dll.new -> [2014/12/05 13:47:22 | 000,183,296 | ---- | M | MD5 = 06A6A5E9AD5C473FC8319A544A1F7957] () ff_unrar.dll -> C:\WINDOWS\SysNative\ff_unrar.dll -> [2014/12/05 13:47:22 | 000,183,296 | ---- | M | MD5 = 06A6A5E9AD5C473FC8319A544A1F7957] () libmpeg2_ff.dll.new -> C:\WINDOWS\SysNative\libmpeg2_ff.dll.new -> [2014/12/05 13:47:14 | 000,190,464 | ---- | M | MD5 = 675989446ED6D6D440F94E2C50E37627] () libmpeg2_ff.dll -> C:\WINDOWS\SysNative\libmpeg2_ff.dll -> [2014/12/05 13:47:14 | 000,190,464 | ---- | M | MD5 = 675989446ED6D6D440F94E2C50E37627] () ffmpeg.dll -> C:\WINDOWS\SysWow64\ffmpeg.dll -> [2014/12/05 13:42:00 | 004,015,616 | ---- | M | MD5 = 77111DB34ED97B65DDA340A254E2D2E2] () ff_vfw.dll -> C:\WINDOWS\SysWow64\ff_vfw.dll -> [2014/12/05 13:40:50 | 000,112,640 | ---- | M | MD5 = FB8CFD94DD15318B4955349AEDD38E3E] () ffdshow.ax -> C:\WINDOWS\SysWow64\ffdshow.ax -> [2014/12/05 13:40:46 | 003,502,080 | ---- | M | MD5 = 3009BF65973061DAE1119AE55ACF9E3B] () ff_wmv9.dll -> C:\WINDOWS\SysWow64\ff_wmv9.dll -> [2014/12/05 13:39:22 | 000,099,840 | ---- | M | MD5 = BA79094FD67F5D6EFFAA725C7B060172] () TomsMoComp_ff.dll -> C:\WINDOWS\SysWow64\TomsMoComp_ff.dll -> [2014/12/05 13:39:20 | 000,271,360 | ---- | M | MD5 = 0F1CF99647189C26EF477AEF1406FDD1] () ff_libmad.dll -> C:\WINDOWS\SysWow64\ff_libmad.dll -> [2014/12/05 13:39:10 | 000,147,456 | ---- | M | MD5 = 199E9A58B73D58119895DF2EA4EB2577] () ff_samplerate.dll -> C:\WINDOWS\SysWow64\ff_samplerate.dll -> [2014/12/05 13:39:08 | 001,525,760 | ---- | M | MD5 = 5EC46C094533E62A6A51623870664E3D] () ff_unrar.dll -> C:\WINDOWS\SysWow64\ff_unrar.dll -> [2014/12/05 13:39:08 | 000,157,184 | ---- | M | MD5 = F5B38682F3AED60D449BEC29AEF98FBF] () ff_libdts.dll -> C:\WINDOWS\SysWow64\ff_libdts.dll -> [2014/12/05 13:39:06 | 000,211,968 | ---- | M | MD5 = F59C657190E356174F58544ACC28B8D3] () ff_liba52.dll -> C:\WINDOWS\SysWow64\ff_liba52.dll -> [2014/12/05 13:39:06 | 000,114,688 | ---- | M | MD5 = 3EDE9725711638AC4FBCE5DD0E350853] () ff_libfaad2.dll -> C:\WINDOWS\SysWow64\ff_libfaad2.dll -> [2014/12/05 13:38:56 | 000,330,240 | ---- | M | MD5 = 877E177DD609422E5FB415CD527C34EF] () libmpeg2_ff.dll -> C:\WINDOWS\SysWow64\libmpeg2_ff.dll -> [2014/12/05 13:38:56 | 000,136,704 | ---- | M | MD5 = 6721A8662B47509EA0D3CA10402E8F8F] () EuEpmGdi.dll -> C:\WINDOWS\SysWow64\EuEpmGdi.dll -> [2014/11/18 14:46:56 | 000,021,088 | ---- | M | MD5 = 980F2EEDACFEBD6C371A165046FD6237] () EuEpmGdi.dll -> C:\WINDOWS\SysNative\EuEpmGdi.dll -> [2014/11/18 14:46:54 | 000,017,504 | ---- | M | MD5 = B69A265AD9328E2027C18D84C3D49959] () x264vfw.dll -> C:\WINDOWS\SysWow64\x264vfw.dll -> [2014/11/16 14:15:28 | 003,525,120 | ---- | M | MD5 = 79CD1ABAFDAEF7CC2DC5B535B9B0A7A5] (x264vfw project) tsccvid64.dll -> C:\WINDOWS\SysWow64\tsccvid64.dll -> [2014/11/11 08:40:34 | 000,619,008 | ---- | M | MD5 = 90E3BF3FCB2D4BF37A3A494158663D06] (TechSmith Corporation) tsccvid.dll -> C:\WINDOWS\SysWow64\tsccvid.dll -> [2014/11/11 08:40:34 | 000,592,384 | ---- | M | MD5 = CAF488402B61822C0DAB5FC0D9C96926] (TechSmith Corporation) atiicdxx.dat -> C:\WINDOWS\SysNative\atiicdxx.dat -> [2014/11/06 11:53:26 | 000,737,410 | ---- | M | MD5 = 079EFFD5BECB418FE6596229B28D7324] () CLVirtualBus01.sys -> C:\WINDOWS\SysNative\drivers\CLVirtualBus01.sys -> [2014/11/05 11:21:09 | 000,103,176 | ---- | M | MD5 = 0C7626AFB2419207B2ABCB6F8AEA334F] (CyberLink) ff_kernelDeint.dll -> C:\WINDOWS\SysWow64\ff_kernelDeint.dll -> [2014/09/29 17:19:50 | 000,316,416 | ---- | M | MD5 = E52C34C23CC2A663ADE59D59F47C0F2B] () tsc2_codec64.dll -> C:\WINDOWS\SysWow64\tsc2_codec64.dll -> [2014/08/27 20:16:54 | 000,270,848 | ---- | M | MD5 = 70B417222BCE4FF041FADA751FEEB996] (TechSmith Corporation) tsc2_codec32.dll -> C:\WINDOWS\SysWow64\tsc2_codec32.dll -> [2014/08/27 20:16:54 | 000,234,496 | ---- | M | MD5 = 034743B1C443E7199F619C6E9F6D45D4] (TechSmith Corporation) AQFileRestore.inf -> C:\WINDOWS\SysNative\drivers\AQFileRestore.inf -> [2014/07/29 15:41:56 | 000,001,984 | ---- | M | MD5 = CD1F4FDAE9C1D5118EBB2C8A40AC4829] () PSVolAcc.sys -> C:\WINDOWS\SysNative\drivers\PSVolAcc.sys -> [2014/07/21 11:36:48 | 000,012,760 | ---- | M | MD5 = 436E1F795F0495B2715116A4EC176803] (Paramount Software UK Ltd) UimFIO.sys -> C:\WINDOWS\SysNative\drivers\UimFIO.sys -> [2014/07/09 13:04:16 | 000,556,296 | ---- | M | MD5 = 36F9292701C757659705B69C748B2E55] () uim_devim.sys -> C:\WINDOWS\SysNative\drivers\uim_devim.sys -> [2014/07/09 13:04:16 | 000,025,992 | ---- | M | MD5 = 9C05A6BE2E0D7A9412D5728C5AEA2C91] () UimBus.sys -> C:\WINDOWS\SysNative\drivers\UimBus.sys -> [2014/07/09 13:04:14 | 000,102,664 | ---- | M | MD5 = 121D10ADF79144F2A0130A4A4ABFDC86] () uim_im.sys -> C:\WINDOWS\SysNative\drivers\uim_im.sys -> [2014/07/09 13:04:12 | 000,700,296 | ---- | M | MD5 = 48F252C0022B14164199D071E5F9C860] () hotcore3.sys -> C:\WINDOWS\SysNative\drivers\hotcore3.sys -> [2014/07/09 13:03:48 | 000,034,056 | ---- | M | MD5 = 735982D69324230856793BB4D3770350] (Paragon Software Group) vimsdk.dll -> C:\WINDOWS\SysNative\vimsdk.dll -> [2014/07/09 13:03:36 | 001,720,072 | ---- | M | MD5 = 7311FE234248B8E4307811B03B20E616] (Paragon Software Group) Vim.RWBlock.dll -> C:\WINDOWS\SysNative\Vim.RWBlock.dll -> [2014/07/09 13:03:34 | 000,937,224 | ---- | M | MD5 = 8D80B4DDA80E156262FEB1544CA9D08C] (Paragon Software Group) blockmounter.dll -> C:\WINDOWS\SysNative\drivers\UMDF\blockmounter.dll -> [2014/07/09 13:03:34 | 000,401,672 | ---- | M | MD5 = 59301A73B625CAB45C98C5E4F34FF11F] (Paragon Software Group) vimbase.dll -> C:\WINDOWS\SysNative\vimbase.dll -> [2014/07/09 13:03:34 | 000,079,112 | ---- | M | MD5 = 4ECF5C1ABA1DFC397A1AF3C43CEF54A8] (Paragon Software Group) UxStyle_Core_Jul13_x86.msi -> C:\WINDOWS\UxStyle_Core_Jul13_x86.msi -> [2014/05/22 05:01:52 | 002,413,056 | ---- | M | MD5 = 7255732B7ED89086BEA8DD5C4014E57B] () xvidvfw.dll -> C:\WINDOWS\SysWow64\xvidvfw.dll -> [2014/04/08 22:50:26 | 000,235,520 | ---- | M | MD5 = 34018C9698B4302D110887CD64FAE96D] () xvidcore.dll -> C:\WINDOWS\SysWow64\xvidcore.dll -> [2014/04/08 22:50:16 | 000,632,320 | ---- | M | MD5 = 5BBE09E863EC2B846F125F8F1730CBA9] () VSFilter.dll.new -> C:\WINDOWS\SysNative\VSFilter.dll.new -> [2013/12/17 04:38:56 | 001,929,216 | ---- | M | MD5 = EA9A0B745B6D4C7AFC797C9C577E1F4F] (xy-VSFilter Team) VSFilter.dll -> C:\WINDOWS\SysNative\VSFilter.dll -> [2013/12/17 04:38:56 | 001,929,216 | ---- | M | MD5 = EA9A0B745B6D4C7AFC797C9C577E1F4F] (xy-VSFilter Team) VSFilter.dll -> C:\WINDOWS\SysWow64\VSFilter.dll -> [2013/12/17 04:38:54 | 001,573,376 | ---- | M | MD5 = A065F69A2AA291D6E93113C5968361DC] (xy-VSFilter Team) Lagarith.dll -> C:\WINDOWS\SysWow64\Lagarith.dll -> [2013/12/17 04:19:30 | 000,216,064 | ---- | M | MD5 = FA425C74CE2EB719B2A77A7A2ADDAE32] ( ) DivXa32.acm -> C:\WINDOWS\SysWow64\DivXa32.acm -> [2013/12/17 03:30:18 | 000,291,408 | ---- | M | MD5 = 765EAA222E1F6C7122EB22EE66D88CE1] (Packed With Joy !) WebUpdateSvc4.exe -> C:\WINDOWS\SysWow64\WebUpdateSvc4.exe -> [2013/11/25 21:33:58 | 000,412,776 | ---- | M | MD5 = 6690FAFC9F2C0DF23DD88953C010CFEB] (Data Perceptions / PowerProgrammer) WuWUI.exe -> C:\WINDOWS\WuWUI.exe -> [2013/11/25 21:33:58 | 000,404,584 | ---- | M | MD5 = 3EF02E9ED4EFA56B2DFD34E5032B2DA8] () SyncBackPro.dll -> C:\WINDOWS\SysWow64\SyncBackPro.dll -> [2013/10/04 12:54:40 | 000,692,224 | ---- | M | MD5 = B71EDD2C82F513AACCD3059635F483EA] () CLBStor.sys -> C:\WINDOWS\SysNative\drivers\CLBStor.sys -> [2013/09/24 17:12:16 | 000,025,864 | ---- | M | MD5 = 19863788DFFBE37CB63BF19D1FD5C247] (Cyberlink Co.,Ltd.) sdnclean64.exe -> C:\WINDOWS\SysNative\sdnclean64.exe -> [2013/09/20 10:49:34 | 000,021,040 | ---- | M | MD5 = 82446D358A9FB51CB9DA32A5C901D7A0] (Safer Networking Limited) FMAPO64.dll -> C:\WINDOWS\SysNative\FMAPO64.dll -> [2013/08/01 14:12:30 | 002,743,328 | ---- | M | MD5 = 46D901798362F966BA1EA3FACB7F8450] (Fortemedia Corporation) GSService.exe -> C:\WINDOWS\SysWow64\GSService.exe -> [2013/05/15 18:34:04 | 000,490,208 | ---- | M | MD5 = CC8206C9288EA409781DE1D7FC754A39] () openIE.js -> C:\WINDOWS\SysWow64\openIE.js -> [2013/04/16 17:32:20 | 000,001,695 | ---- | M | MD5 = EE78D1504FDF63B76D81D53358C17AD9] () DivXControlPanelApplet.cpl -> C:\WINDOWS\SysWow64\DivXControlPanelApplet.cpl -> [2013/03/23 03:09:28 | 000,354,656 | ---- | M | MD5 = 8A917DFB8115382CE129F1F140F268A9] (DivX, Inc.) OS -> C:\OS -> [2013/03/05 09:30:46 | 000,000,000 | R-S- | M | MD5 = D41D8CD98F00B204E9800998ECF8427E] () MDA_NTDRV.sys -> C:\WINDOWS\SysNative\MDA_NTDRV.sys -> [2013/02/25 11:10:02 | 000,021,208 | ---- | M | MD5 = CF17A39BA7D1D1E386FD0C1303642B91] () DCBassSourceMod.ax -> C:\WINDOWS\SysWow64\DCBassSourceMod.ax -> [2013/02/24 21:40:38 | 000,233,984 | ---- | M | MD5 = 6DE33A351A1D77FA22C60FCD1746D65E] (http://www.dsp-worx.de) Formats.ini -> C:\WINDOWS\SysWow64\Formats.ini -> [2013/02/24 18:51:26 | 000,000,236 | ---- | M | MD5 = 64546FE93B5977CE25E0F0607C3F5F80] () bass.dll -> C:\WINDOWS\SysWow64\bass.dll -> [2013/02/16 15:02:00 | 000,107,584 | ---- | M | MD5 = 9586E7BE6AE8016932038932D1417241] (Un4seen Developments) bass_alac.dll -> C:\WINDOWS\SysWow64\bass_alac.dll -> [2013/01/31 18:02:38 | 000,009,416 | ---- | M | MD5 = 6B6344CD7EFC4916F58D177045674FC9] (MaresWEB) basswv.dll -> C:\WINDOWS\SysWow64\basswv.dll -> [2012/12/05 19:27:06 | 000,025,664 | ---- | M | MD5 = 400858642C08E623E8024CB4D65408CE] (Un4seen Developments) DevManagerCore.dll -> C:\WINDOWS\SysWow64\DevManagerCore.dll -> [2012/10/26 17:42:24 | 000,336,232 | ---- | M | MD5 = B227DF8720C51EE0A80CB23CCCEF1EC6] () DevManagerCore.dll -> C:\WINDOWS\SysNative\DevManagerCore.dll -> [2012/10/26 17:42:24 | 000,336,232 | ---- | M | MD5 = B227DF8720C51EE0A80CB23CCCEF1EC6] () LVAFT.cfg -> C:\WINDOWS\SysNative\drivers\LVAFT.cfg -> [2012/10/26 17:42:24 | 000,266,828 | ---- | M | MD5 = 835C775A6871D2A2EA6FC343B6B4C9A2] () lvcoin64.ini -> C:\WINDOWS\SysNative\lvcoin64.ini -> [2012/10/26 17:42:24 | 000,029,494 | ---- | M | MD5 = 1A8AE8A66B6C289046276453768EF270] () LogiDPP.dll -> C:\WINDOWS\SysWow64\LogiDPP.dll -> [2012/10/26 17:42:22 | 010,919,784 | ---- | M | MD5 = B65E8E52916A527F88486875EE291AA8] () LogiDPP.dll -> C:\WINDOWS\SysNative\LogiDPP.dll -> [2012/10/26 17:42:22 | 010,919,784 | ---- | M | MD5 = B65E8E52916A527F88486875EE291AA8] () LogiDPPApp.exe -> C:\WINDOWS\SysWow64\LogiDPPApp.exe -> [2012/10/26 17:42:22 | 000,103,272 | ---- | M | MD5 = 24764C249F769991079F6D4B14B822AF] () LogiDPPApp.exe -> C:\WINDOWS\SysNative\LogiDPPApp.exe -> [2012/10/26 17:42:22 | 000,103,272 | ---- | M | MD5 = 24764C249F769991079F6D4B14B822AF] () Repository.reg -> C:\WINDOWS\SysNative\Repository.reg -> [2012/10/26 17:42:22 | 000,040,398 | ---- | M | MD5 = C6CA43573C21CA6392F57F238C8391FC] () bass_aac.dll -> C:\WINDOWS\SysWow64\bass_aac.dll -> [2012/10/16 15:17:58 | 000,149,720 | ---- | M | MD5 = C6AA10109D7BE3395E3A312C5453DA2C] (MaresWEB) MMPDrv.sys -> C:\WINDOWS\SysNative\drivers\MMPDrv.sys -> [2012/09/03 23:44:28 | 000,021,752 | ---- | M | MD5 = 650D69D771F2B511DE7E9369DF1F90DE] () bassopus.dll -> C:\WINDOWS\SysWow64\bassopus.dll -> [2012/08/23 15:43:14 | 000,054,328 | ---- | M | MD5 = 39275510E10E8B748583313B2155426E] (Un4seen Developments) bootmgr -> C:\bootmgr -> [2012/07/26 05:44:30 | 000,398,156 | RHS- | M | MD5 = 21BF183C15AFE62A8D1137BB9007B2A3] () BOOTNXT -> C:\BOOTNXT -> [2012/06/02 16:30:55 | 000,000,001 | -HS- | M | MD5 = 93B885ADFE0DA089CDF634904FD59F71] () bass_mpc.dll -> C:\WINDOWS\SysWow64\bass_mpc.dll -> [2012/05/09 14:26:08 | 000,021,112 | ---- | M | MD5 = 76F123C199319616760B9C0470C7997B] (MaresWEB) SQLServerManager11.msc -> C:\WINDOWS\SysWow64\SQLServerManager11.msc -> [2012/02/10 19:02:46 | 000,026,289 | ---- | M | MD5 = 8EAC52095B00CAAD9E1040AAC0243617] () mxntdfg.exe -> C:\WINDOWS\SysNative\mxntdfg.exe -> [2012/02/09 12:58:56 | 000,035,000 | ---- | M | MD5 = FEF9EC9C9B538E61C9981FD5C3ADC66C] () wuw4.dll -> C:\WINDOWS\wuw4.dll -> [2012/02/08 17:47:14 | 000,037,136 | ---- | M | MD5 = 98065BAD585B78CD7A42A6666975AD85] (Data Perceptions) dpl100.dll -> C:\WINDOWS\SysWow64\dpl100.dll -> [2011/10/21 01:26:22 | 000,094,208 | ---- | M | MD5 = 90C7F5E71EEFE13F762CFE7B42C7157A] (DivX, Inc.) expstart.exe -> C:\WINDOWS\expstart.exe -> [2011/09/29 12:41:06 | 000,925,184 | ---- | M | MD5 = 4A17C4DB57A0813AC646798A71C2AF74] () moveex.exe -> C:\WINDOWS\SysWow64\moveex.exe -> [2011/08/11 12:47:46 | 000,076,288 | ---- | M | MD5 = B83967E8E83318C36A2D4EF76EBD1D3B] () bass_ape.dll -> C:\WINDOWS\SysWow64\bass_ape.dll -> [2011/08/03 17:48:34 | 000,033,456 | ---- | M | MD5 = 13BEB78A9FCE8106C43C21FB705F9D5D] (MaresWEB) tak_deco_lib.dll -> C:\WINDOWS\SysWow64\tak_deco_lib.dll -> [2011/07/08 16:45:26 | 000,112,640 | ---- | M | MD5 = BDB65DCE335AC29ECCBC2CA7A7AD36B7] (Thomas Becker, Osnabrueck) basscd.dll -> C:\WINDOWS\SysWow64\basscd.dll -> [2011/05/12 15:16:12 | 000,019,008 | ---- | M | MD5 = C0C3FA022F605FD04C867CD7B2F5F2A5] (Un4seen Developments) wpcap.dll -> C:\WINDOWS\SysWow64\wpcap.dll -> [2011/02/11 23:23:34 | 000,281,104 | ---- | M | MD5 = 190FB481D293D85B507D071E75BCB05C] (CACE Technologies, Inc.) Packet.dll -> C:\WINDOWS\SysWow64\Packet.dll -> [2011/02/11 23:23:34 | 000,096,784 | ---- | M | MD5 = 1250BEF11BFA086F772CD2A273BC036E] (CACE Technologies, Inc.) npf.sys -> C:\WINDOWS\SysNative\drivers\npf.sys -> [2011/02/11 23:23:34 | 000,035,344 | ---- | M | MD5 = 351533ACC2A069B94E80BBFC177E8FDF] (CACE Technologies, Inc.) OptimFROG.dll -> C:\WINDOWS\SysWow64\OptimFROG.dll -> [2011/02/11 12:26:20 | 000,237,568 | ---- | M | MD5 = 301A5609907605013D7ED94B5B49AAB9] () madFlac.ax -> C:\WINDOWS\SysWow64\madFlac.ax -> [2011/01/03 13:07:08 | 000,490,496 | ---- | M | MD5 = A6549E3D8196829311BCA50DA7C2699B] (www.madshi.net) Packet.dll -> C:\WINDOWS\SysNative\Packet.dll -> [2010/07/16 02:45:44 | 000,106,000 | ---- | M | MD5 = 652F1F54E573AF4D59E0AE658376D077] (CACE Technologies, Inc.) pthreadVC.dll -> C:\WINDOWS\SysWow64\pthreadVC.dll -> [2010/07/16 02:45:44 | 000,053,299 | ---- | M | MD5 = F04A90F917BA10AE2DCBE859870F4DEA] () wpcap.dll -> C:\WINDOWS\SysNative\wpcap.dll -> [2010/07/16 02:45:42 | 000,369,168 | ---- | M | MD5 = A2473CC88ABA67391CE7929E5C69E767] (CACE Technologies, Inc.) Launcher.exe -> C:\Launcher.exe -> [2010/04/22 20:53:22 | 001,065,984 | ---- | M | MD5 = 4BEA053A5B4FB3EB31BA2103012B61DD] (Codyssey) EULA.rtf -> C:\EULA.rtf -> [2010/04/17 19:45:22 | 000,004,338 | ---- | M | MD5 = 02FFB7C68C002EAD916709700E930814] () bass_tak.dll -> C:\WINDOWS\SysWow64\bass_tak.dll -> [2010/03/24 13:15:10 | 000,047,104 | ---- | M | MD5 = EAFC368E75339308AA018663B305E138] () unrar.dll -> C:\WINDOWS\SysWow64\unrar.dll -> [2010/03/15 12:31:50 | 000,165,376 | ---- | M | MD5 = 0087F6F680BEFDA997B357BD55BE991C] () pdvcodec.dll -> C:\WINDOWS\SysWow64\pdvcodec.dll -> [2010/03/12 11:14:04 | 000,265,797 | ---- | M | MD5 = C998E69D8884F49D0A6316DF96BA3DF2] (Matsushita Electric Industrial Co., Ltd.) DivX.dll -> C:\WINDOWS\SysWow64\DivX.dll -> [2010/02/19 21:27:36 | 000,720,384 | ---- | M | MD5 = F42E95BFB193754E9148DB6434D2E88E] (DivX, Inc.) divx_xx07.dll -> C:\WINDOWS\SysWow64\divx_xx07.dll -> [2010/02/19 21:27:16 | 000,856,064 | ---- | M | MD5 = A266D3E430E9FF97E9D659E5F087EF99] (DivX, Inc.) divx_xx0c.dll -> C:\WINDOWS\SysWow64\divx_xx0c.dll -> [2010/02/19 21:27:16 | 000,856,064 | ---- | M | MD5 = 725C556795DFC534660E784F9324515C] (DivX, Inc.) divx_xx0a.dll -> C:\WINDOWS\SysWow64\divx_xx0a.dll -> [2010/02/19 21:27:16 | 000,847,872 | ---- | M | MD5 = 0DADCB1C15AB04A655F7B386FE625B35] (DivX, Inc.) divx_xx16.dll -> C:\WINDOWS\SysWow64\divx_xx16.dll -> [2010/02/19 21:27:16 | 000,843,776 | ---- | M | MD5 = AD8E4393EAD5A8A71378BEEE95C59FDA] (DivX, Inc.) divx_xx11.dll -> C:\WINDOWS\SysWow64\divx_xx11.dll -> [2010/02/19 21:27:16 | 000,839,680 | ---- | M | MD5 = E1F94DFDC350BB8CE14655F5DB567149] (DivX, Inc.) StartCodySafe.exe -> C:\StartCodySafe.exe -> [2010/02/14 00:18:58 | 000,182,756 | ---- | M | MD5 = 7FEA5C981C720D6A89CE65D95AE13E38] (by Codyssey.com) Eject.exe -> C:\Eject.exe -> [2010/02/14 00:18:58 | 000,120,378 | ---- | M | MD5 = 2F8EDB4D8630BB45BF851BE757F56E55] (Codyssey.com) DriveDoctor.exe -> C:\DriveDoctor.exe -> [2010/02/14 00:18:58 | 000,093,685 | ---- | M | MD5 = 6E320162A672A902710E26762FD4F58D] (Codyssey.com) bassflac.dll -> C:\WINDOWS\SysWow64\bassflac.dll -> [2009/12/09 13:40:04 | 000,025,152 | ---- | M | MD5 = 50AF8A7D49E83A723ED0F70FB682DCFB] (Un4seen Developments) DfSdkBt.exe -> C:\WINDOWS\SysNative\DfSdkBt.exe -> [2009/08/24 22:13:46 | 000,034,304 | ---- | M | MD5 = 2322AC4F74D5033E8AF0EBD85DFC677B] (mst software GmbH, Germany) bass_ofr.dll -> C:\WINDOWS\SysWow64\bass_ofr.dll -> [2009/04/24 12:20:48 | 000,005,960 | ---- | M | MD5 = B3CC560AC7A5D1D266CB54E9A5A4767E] (MaresWEB) rsdrvx64.sys -> C:\WINDOWS\SysNative\drivers\rsdrvx64.sys -> [2009/02/12 15:11:26 | 000,026,024 | ---- | M | MD5 = 4778EEECB75C6FB419745BEED3530B9D] (EldoS Corporation) NMSAccessU.exe -> C:\WINDOWS\SysWow64\NMSAccessU.exe -> [2009/01/12 08:15:52 | 000,071,096 | ---- | M | MD5 = 7AEA4DF1CA68FD45DD4BBE1F0243CE7F] () bass_tta.dll -> C:\WINDOWS\SysWow64\bass_tta.dll -> [2008/02/27 22:49:50 | 000,008,536 | ---- | M | MD5 = 4AD2D66E10AAA0FFE4C7A4F46EADBB56] (MaresWEB) FLVSplitter.ax -> C:\WINDOWS\SysWow64\FLVSplitter.ax -> [2008/01/27 15:59:58 | 000,413,696 | ---- | M | MD5 = B9F4C71AD277616C012A59C943C07442] (Gabest) libFLAC.dll -> C:\WINDOWS\SysWow64\libFLAC.dll -> [2007/10/07 16:36:32 | 000,258,048 | ---- | M | MD5 = 5C3739F97D09CAF8ABCC0A1F14C82A49] () DSDVideoOutFilter.ax -> C:\WINDOWS\SysWow64\DSDVideoOutFilter.ax -> [2006/12/19 17:08:58 | 000,045,056 | ---- | M | MD5 = 963F6DB8105891010CFCC7A4884D5343] () killcopy.exe -> C:\WINDOWS\SysWow64\killcopy.exe -> [2006/10/29 17:36:54 | 001,185,792 | ---- | M | MD5 = 6315AB54B0156C7B5B1B6E499601C171] (Killer{R}) mpeg4ax.cat -> C:\WINDOWS\SysWow64\mpeg4ax.cat -> [2006/10/11 11:03:12 | 000,008,608 | ---- | M | MD5 = FE064158FE5B98B5C542ACAA619DFFEA] () msaudio.cat -> C:\WINDOWS\SysWow64\msaudio.cat -> [2006/10/11 11:03:12 | 000,008,587 | ---- | M | MD5 = 2F193DB7F01692DAD429B9AD8DC17F2F] () PCMOUT_VIDEO_1644.bmp -> C:\WINDOWS\SysWow64\PCMOUT_VIDEO_1644.bmp -> [2006/07/11 14:46:18 | 000,921,656 | ---- | M | MD5 = D0549FEC1218102C93962E9E0797F4B1] () PCMOUT_VIDEO_2496.bmp -> C:\WINDOWS\SysWow64\PCMOUT_VIDEO_2496.bmp -> [2006/07/11 14:45:54 | 000,921,656 | ---- | M | MD5 = 3AD19E79C8E1B64A82F9A8AEF978C4B0] () DSDOUT_VIDEO.bmp.new -> C:\WINDOWS\SysWow64\DSDOUT_VIDEO.bmp.new -> [2006/07/11 14:45:24 | 000,921,656 | ---- | M | MD5 = C43E7CB9C25E8943682290303669EE7B] () kc.exe -> C:\WINDOWS\SysWow64\kc.exe -> [2005/11/13 20:07:12 | 000,006,656 | ---- | M | MD5 = 5ACD11DF2AA5F3E3F30F785589B70347] () VzCsDsAudioDevice.vzcs.classinfo -> C:\WINDOWS\SysWow64\VzCsDsAudioDevice.vzcs.classinfo -> [2004/09/15 03:50:18 | 000,000,409 | ---- | M | MD5 = 6A2205CBC09EF0D92F8E1AB870A56FD2] () pdftotext.exe -> C:\WINDOWS\SysNative\pdftotext.exe -> [2003/10/14 21:41:58 | 000,552,448 | ---- | M | MD5 = 1FEFCBFFE96D2C5EE074AAE27846C30E] (Glyph & Cog, LLC ) pdfinfo.exe -> C:\WINDOWS\SysNative\pdfinfo.exe -> [2003/10/14 21:41:58 | 000,514,560 | ---- | M | MD5 = 1BD31AF098E9E4A4A48D2ECFF0A12F30] (Glyph & Cog, LLC ) Flurry.scr -> C:\WINDOWS\Flurry.scr -> [2003/08/19 01:44:52 | 000,118,845 | ---- | M | MD5 = 04810EC57CBBDD1F047C8217B9F6C092] (Matt Ginzton) PI4_setup.ini -> C:\WINDOWS\PI4_setup.ini -> [2002/03/25 10:12:30 | 000,000,021 | ---- | M | MD5 = 1B2C7EFB196140F81412A308E7F507FA] () PhotoImpression Screen Saver.scr -> C:\WINDOWS\SysWow64\PhotoImpression Screen Saver.scr -> [2001/11/02 15:10:18 | 000,163,840 | ---- | M | MD5 = C7A1F603619B96503674D15BF4FFE637] (ArcSoft Inc.) VI_setup.ini -> C:\WINDOWS\VI_setup.ini -> [2001/06/20 10:04:12 | 000,000,021 | ---- | M | MD5 = 1B2C7EFB196140F81412A308E7F507FA] () pcdlib32.dll -> C:\WINDOWS\pcdlib32.dll -> [1999/05/26 09:46:50 | 000,212,480 | ---- | M | MD5 = F007C4273BA24B52A56387E899311DB7] (Eastman Kodak) tm20dec.ax -> C:\WINDOWS\SysWow64\tm20dec.ax -> [1998/08/20 13:02:06 | 000,140,800 | ---- | M | MD5 = 89112689A307A65769CA942079CACE9B] (The Duck Corporation) vidx16.dll -> C:\WINDOWS\SysWow64\vidx16.dll -> [1998/08/17 11:21:56 | 000,010,240 | ---- | M | MD5 = 550BA20DF6C08E628CA9ABD0F6E917B8] () quartz.vxd -> C:\WINDOWS\SysWow64\quartz.vxd -> [1998/08/17 11:21:56 | 000,005,672 | ---- | M | MD5 = F318E151801F7EB505894718E03BC438] () 15 C:\WINDOWS\SysNative\drivers\*.tmp files -> C:\WINDOWS\SysNative\drivers\*.tmp -> [Files - No Company Name] CodecPackTrayMenu.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CodecPackTrayMenu.lnk -> [2017/06/11 22:41:46 | 000,001,957 | ---- | C | MD5 = 591B1EE9F38D3A70530FBFD4CBE52997] () gsars.sys -> C:\WINDOWS\SysNative\drivers\gsars.sys -> [2017/06/11 21:30:45 | 000,019,560 | ---- | C | MD5 = 94203B31B0618221780611608C8875DE] () Your Software Deals.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Your Software Deals.lnk -> [2017/06/11 21:27:43 | 000,001,904 | ---- | C | MD5 = E9C0BC46E724534433026B945768B7EC] () Software Informer.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Software Informer.lnk -> [2017/06/11 20:54:24 | 000,000,950 | ---- | C | MD5 = 55C5776553630F71FFCE0AD715FD9C9F] () CreateExplorerShellUnelevatedTask.job -> C:\WINDOWS\tasks\CreateExplorerShellUnelevatedTask.job -> [2017/06/11 17:24:46 | 000,000,214 | ---- | C | MD5 = 9615D55FF5565744B297BEA6D300B59A] () FNTCACHE.DAT -> C:\WINDOWS\SysNative\FNTCACHE.DAT -> [2017/06/11 17:23:13 | 000,489,656 | ---- | C | MD5 = 05129B0E4647C7344462683D39A15FF5] () msaudio.cat -> C:\WINDOWS\SysWow64\msaudio.cat -> [2017/06/11 10:24:05 | 000,008,587 | ---- | C | MD5 = 2F193DB7F01692DAD429B9AD8DC17F2F] () mpeg4ax.cat -> C:\WINDOWS\SysWow64\mpeg4ax.cat -> [2017/06/11 10:24:04 | 000,008,608 | ---- | C | MD5 = FE064158FE5B98B5C542ACAA619DFFEA] () libmpeg2_ff.dll -> C:\WINDOWS\SysWow64\libmpeg2_ff.dll -> [2017/06/11 10:23:40 | 000,136,704 | ---- | C | MD5 = B26BA4DC7C8AB30353029B4D358140D3] () ffmpeg.dll -> C:\WINDOWS\SysWow64\ffmpeg.dll -> [2017/06/11 10:23:38 | 004,013,568 | ---- | C | MD5 = 3640DBC84F33F1EA537E901752640F23] () ff_wmv9.dll -> C:\WINDOWS\SysWow64\ff_wmv9.dll -> [2017/06/11 10:23:38 | 000,099,840 | ---- | C | MD5 = 33217B82C0D837DA62968C3F83BF3717] () ff_unrar.dll -> C:\WINDOWS\SysWow64\ff_unrar.dll -> [2017/06/11 10:23:37 | 000,157,184 | ---- | C | MD5 = F3A472EBAD6BD819B561F9C729956686] () ff_samplerate.dll -> C:\WINDOWS\SysWow64\ff_samplerate.dll -> [2017/06/11 10:23:36 | 001,525,760 | ---- | C | MD5 = CB911FF02D11AE871B4329F43ED49859] () ff_libfaad2.dll -> C:\WINDOWS\SysWow64\ff_libfaad2.dll -> [2017/06/11 10:23:36 | 000,330,240 | ---- | C | MD5 = B87769DF9F0B2230BBD2D83D33EBF8A7] () ff_libdts.dll -> C:\WINDOWS\SysWow64\ff_libdts.dll -> [2017/06/11 10:23:36 | 000,211,968 | ---- | C | MD5 = C1FB6CB8B696DF1B65E7F71BAE0A7FA0] () ff_libmad.dll -> C:\WINDOWS\SysWow64\ff_libmad.dll -> [2017/06/11 10:23:36 | 000,147,456 | ---- | C | MD5 = 46C0284DCE47742D0694ED69D11FC2DE] () ff_liba52.dll -> C:\WINDOWS\SysWow64\ff_liba52.dll -> [2017/06/11 10:23:36 | 000,114,688 | ---- | C | MD5 = 51A9A3107193866E795950CCCEE4C07A] () ff_kernelDeint.dll -> C:\WINDOWS\SysWow64\ff_kernelDeint.dll -> [2017/06/11 10:23:35 | 000,316,416 | ---- | C | MD5 = E52C34C23CC2A663ADE59D59F47C0F2B] () ImmersiveExplorer.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ImmersiveExplorer.lnk -> [2017/06/10 10:49:16 | 000,000,893 | ---- | C | MD5 = 74D0CE4D659BF2FABA1A36B6CB76EA49] () MetroSidebar.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\MetroSidebar.lnk -> [2017/06/10 10:49:09 | 000,000,828 | ---- | C | MD5 = 41A8E4EF29BA057CBB2705A98EF3B907] () openIE.js -> C:\WINDOWS\SysWow64\openIE.js -> [2017/06/10 09:59:14 | 000,001,695 | ---- | C | MD5 = EE78D1504FDF63B76D81D53358C17AD9] () ff_vfw.dll -> C:\WINDOWS\SysWow64\ff_vfw.dll -> [2017/06/10 09:59:13 | 000,112,640 | ---- | C | MD5 = C1A6A3705FAFD0A564DECDD336BBBBA9] () ffdshow.ax -> C:\WINDOWS\SysWow64\ffdshow.ax -> [2017/06/10 09:59:12 | 003,502,080 | ---- | C | MD5 = E05DA682A5D1CDFF7DB61ED6F8236D51] () TomsMoComp_ff.dll -> C:\WINDOWS\SysWow64\TomsMoComp_ff.dll -> [2017/06/10 09:59:12 | 000,271,360 | ---- | C | MD5 = FFB7AE34754C25CB09713ACFEBC1B76E] () unins000.exe -> C:\WINDOWS\SysWow64\unins000.exe -> [2017/06/10 09:59:10 | 001,203,537 | ---- | C | MD5 = C7009F7BF63B768CE41AE4E5BF231AC3] () unins000.dat -> C:\WINDOWS\SysWow64\unins000.dat -> [2017/06/10 09:59:10 | 000,043,581 | ---- | C | MD5 = 19DA76E72460CFB57B1CBF64DEDA8A4F] () Webroot SecureAnywhere .lnk -> C:\Users\Public\Desktop\Webroot SecureAnywhere .lnk -> [2017/06/10 09:17:00 | 000,000,821 | ---- | C | MD5 = 9D0CB66544DBF9D5A27E1F605DAE3335] () ZAM_Guard.krnl.trace -> C:\WINDOWS\ZAM_Guard.krnl.trace -> [2017/06/10 09:16:05 | 005,721,692 | ---- | C | MD5 = 778A394AE9F52D72D06A42BBAF8552D7] () ZAM.krnl.trace -> C:\WINDOWS\ZAM.krnl.trace -> [2017/06/10 09:16:05 | 005,485,918 | ---- | C | MD5 = 91A9B13572C6A7D39FF4820EAA81406E] () icofx 3.lnk -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\icofx 3.lnk -> [2017/06/09 08:53:08 | 000,001,154 | ---- | C | MD5 = B2C9E920331F36293CE7E6D2A95CAE00] () KeepVid Pro.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\KeepVid Pro.lnk -> [2017/06/09 08:41:48 | 000,001,428 | ---- | C | MD5 = 80E2D32C71198A0E72B773247C667968] () Google Chrome.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> [2017/06/09 08:29:00 | 000,002,274 | ---- | C | MD5 = 2C43A093EEABFDC3423E67657F86A1E4] () Mozilla Firefox.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> [2017/06/09 08:24:37 | 000,001,240 | ---- | C | MD5 = 01EAAA8511AB3C3E6953ED23F0442D28] () mxntdfg.exe -> C:\WINDOWS\SysNative\mxntdfg.exe -> [2017/06/09 07:56:19 | 000,035,000 | ---- | C | MD5 = FEF9EC9C9B538E61C9981FD5C3ADC66C] () AQFileRestore.sys -> C:\WINDOWS\SysNative\drivers\AQFileRestore.sys -> [2017/06/09 07:56:17 | 000,022,096 | ---- | C | MD5 = 691275C85EF3FCD230A2CA1BD6B9BBAE] () AQFileRestore.inf -> C:\WINDOWS\SysNative\drivers\AQFileRestore.inf -> [2017/06/09 07:56:17 | 000,001,984 | ---- | C | MD5 = CD1F4FDAE9C1D5118EBB2C8A40AC4829] () EasyDuplicateFinder.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\EasyDuplicateFinder.lnk -> [2017/06/09 06:23:54 | 000,001,047 | ---- | C | MD5 = BCC172B973A18ADA98CFE8A8EA4752C4] () muvee Wedding Studio.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\muvee Wedding Studio.lnk -> [2017/06/08 20:23:00 | 000,001,544 | ---- | C | MD5 = 8542C228ACB07754E2CFDEFBB3F2CA08] () muvee Wedding Studio.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\muvee Wedding Studio.lnk -> [2017/06/08 20:22:55 | 000,001,532 | ---- | C | MD5 = C9DF22FBC85FDFA2B753A00BF49837F3] () FreeFileSync.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeFileSync.lnk -> [2017/06/08 17:44:06 | 000,001,005 | ---- | C | MD5 = A49341C1561F720DD6DA7113241B0D01] () RealTimeSync.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealTimeSync.lnk -> [2017/06/08 17:44:06 | 000,000,975 | ---- | C | MD5 = 3B856DF1212CC262E337731E847CA36C] () Heimdal Security Service Monitor.job -> C:\WINDOWS\tasks\Heimdal Security Service Monitor.job -> [2017/06/08 17:42:51 | 000,000,562 | ---- | C | MD5 = 25350175E6914799ED39D2C3EEAA9D6F] () Launch 1509.job -> C:\WINDOWS\tasks\Launch 1509.job -> [2017/06/08 17:40:22 | 000,000,280 | ---- | C | MD5 = 8B898DF11DAE4314E186F97BC74A727E] () Launch 1395.job -> C:\WINDOWS\tasks\Launch 1395.job -> [2017/06/08 17:39:47 | 000,000,280 | ---- | C | MD5 = AE1280AEF458256DACBDC29969A0D5A0] () clé de license giveawayclub heimdal 8 juin 2017.rtf -> C:\Users\Jean-Marie\Documents\clé de license giveawayclub heimdal 8 juin 2017.rtf -> [2017/06/08 17:27:10 | 000,000,298 | ---- | C | MD5 = AD80FB740DAC40CE5DE64FC01183176E] () Heimdal.DeliveryLauncher.msi -> C:\Users\Jean-Marie\Documents\Heimdal.DeliveryLauncher.msi -> [2017/06/08 17:23:55 | 000,774,656 | ---- | C | MD5 = 3F886DF9E1B0BDA28DFBDD9CB5063479] () TrueSight.sys -> C:\WINDOWS\SysNative\drivers\TrueSight.sys -> [2017/06/06 18:20:05 | 000,028,272 | ---- | C | MD5 = 0D5A09B08568760AE85A801FCBC0F83D] () WinX HD Video Converter Deluxe.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\WinX HD Video Converter Deluxe.lnk -> [2017/06/06 16:24:29 | 000,001,549 | ---- | C | MD5 = 4446CF6607BAD2E37814AF36B8C8313D] () WebUpdateSvc4.INI -> C:\WINDOWS\WebUpdateSvc4.INI -> [2017/06/06 14:16:22 | 000,000,031 | ---- | C | MD5 = 285B3D67359BCE18E3CD1438267498D6] () Animated Wallpaper Maker Uninstaller.exe -> C:\WINDOWS\Animated Wallpaper Maker Uninstaller.exe -> [2017/06/06 14:15:16 | 000,163,294 | ---- | C | MD5 = 08D4DC03D798AC981C29337AC96F381A] () wuwuninst.exe -> C:\WINDOWS\SysWow64\wuwuninst.exe -> [2017/06/06 14:15:16 | 000,049,165 | ---- | C | MD5 = 3BBDA84E3492AED50C748015F246A348] () AVG Secure VPN.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AVG Secure VPN.lnk -> [2017/06/06 09:06:30 | 000,001,193 | ---- | C | MD5 = D7DD1A510E206C54BBD3478D8ABDBB86] () ntuser.pol -> C:\ProgramData\ntuser.pol -> [2017/06/05 18:19:02 | 000,000,008 | RHS- | C | MD5 = 8E1B08222F20E45A3E8DB04C569F9CB7] () Spybot-S&D Start Center.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk -> [2017/06/02 14:00:20 | 000,001,484 | ---- | C | MD5 = EFF59F6864029ED32BD0AFDB9F871369] () CDBurnerXP.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CDBurnerXP.lnk -> [2017/06/02 13:55:56 | 000,001,737 | ---- | C | MD5 = 32F3E637E2674802492DE7E4DE042477] () Apple Software Update.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk -> [2017/06/02 13:37:18 | 000,002,579 | ---- | C | MD5 = 1245D1BC06820615A2844AB23B440624] () GIMP 2.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk -> [2017/06/02 12:49:16 | 000,000,941 | ---- | C | MD5 = EA9052A8C7D77AD492643879AE9A38DB] () Spotify.lnk -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk -> [2017/06/02 12:28:07 | 000,001,863 | ---- | C | MD5 = 25536AC6A1E73B0696293EB61E9DE711] () Audacity.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk -> [2017/06/02 12:14:53 | 000,001,094 | ---- | C | MD5 = 22E0FD3C5E27B2A09B94B7CB954846FB] () Winamp.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Winamp.lnk -> [2017/06/02 12:10:26 | 000,001,078 | ---- | C | MD5 = B508E4E0215ECAB3033DCC132BA0AC03] () SumatraPDF.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SumatraPDF.lnk -> [2017/06/02 11:59:13 | 000,001,954 | ---- | C | MD5 = C916C27BD00F05B95FEF42E1BC862A33] () ImgBurn.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn.lnk -> [2017/06/02 11:57:36 | 000,001,952 | ---- | C | MD5 = 2D9FA1B8E1BC105EC92AB74CFA9243F8] () Opera.lnk -> C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Opera.lnk -> [2017/06/02 11:56:13 | 000,001,437 | ---- | C | MD5 = A1CBDCCA3935CB9B32F8658F4316BD79] () secrevnative64.exe -> C:\WINDOWS\SysNative\secrevnative64.exe -> [2017/06/02 11:50:24 | 000,026,584 | ---- | C | MD5 = 086525365080CBF2EA8CCABFC66D5E77] () uts.ini -> C:\Users\Jean-Marie\AppData\Local\uts.ini -> [2017/06/02 11:45:37 | 000,000,126 | ---- | C | MD5 = 884DE7F3B9E261E1F1B2380FED24856C] () NMSAccessU.exe -> C:\WINDOWS\SysWow64\NMSAccessU.exe -> [2017/06/02 09:06:40 | 000,071,096 | ---- | C | MD5 = 7AEA4DF1CA68FD45DD4BBE1F0243CE7F] () SyncBackPro.dll -> C:\WINDOWS\SysWow64\SyncBackPro.dll -> [2017/06/02 09:06:39 | 000,692,224 | ---- | C | MD5 = B71EDD2C82F513AACCD3059635F483EA] () gsinspect.sys -> C:\WINDOWS\SysNative\drivers\gsinspect.sys -> [2017/06/02 09:03:06 | 000,038,160 | ---- | C | MD5 = 3E0CD5BF6679CB4D709CFAD21EC326FA] () AnyMedia Player.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\AnyMedia Player.lnk -> [2017/06/01 23:07:36 | 000,001,191 | ---- | C | MD5 = F0D941B6C287FD9B9E7BDF32A606CBC9] () Online Video Recorder.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Online Video Recorder.lnk -> [2017/06/01 23:05:57 | 000,001,262 | ---- | C | MD5 = C05CD2875F6CBE1DB45657A52DF05820] () Xilisoft HTML en EPUB Convertisseur.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Xilisoft HTML en EPUB Convertisseur.lnk -> [2017/06/01 18:25:53 | 000,002,309 | ---- | C | MD5 = CDF1299E223AD7CFA6234FB38B58043B] () Xilisoft PDF en EPUB Convertisseur.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Xilisoft PDF en EPUB Convertisseur.lnk -> [2017/06/01 18:25:03 | 000,002,266 | ---- | C | MD5 = B5ECC6F1B2B5F8AAAA361E488DD3CE44] () Xilisoft CHM en EPUB Convertisseur.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Xilisoft CHM en EPUB Convertisseur.lnk -> [2017/06/01 18:24:55 | 000,002,298 | ---- | C | MD5 = 8B57788C67E9B17C8D2687A144BE25F7] () Advanced Disk Cleaner.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Advanced Disk Cleaner.lnk -> [2017/06/01 13:22:31 | 000,001,397 | ---- | C | MD5 = B308FD17A19EB7ED34E9E14F7B1306CB] () GoodSync Explorer.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\GoodSync Explorer.lnk -> [2017/06/01 07:33:37 | 000,002,230 | ---- | C | MD5 = 2ABD18117EB1D45284E1EC779EB0BA33] () GoodSync.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\GoodSync.lnk -> [2017/06/01 07:33:37 | 000,002,138 | ---- | C | MD5 = 66A2D67F53E6D90DB918E9B036EBB18C] () TeamViewer 12.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 12.lnk -> [2017/05/31 22:00:12 | 000,001,120 | ---- | C | MD5 = D07D58E588B7A34D2D9D1CA31CAFAB4B] () Nitro Reader 5.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nitro Reader 5.lnk -> [2017/05/31 20:56:35 | 000,002,533 | ---- | C | MD5 = 855344EE75D1903C1BBB6593EE612F40] () UsbFix_Standard.zip -> C:\Users\Jean-Marie\Documents\UsbFix_Standard.zip -> [2017/05/31 18:30:03 | 003,923,789 | ---- | C | MD5 = 721FE9C6C5355D687109B83943E935E4] () UsbFix_Standard(3).zip -> C:\Users\Jean-Marie\Documents\UsbFix_Standard(3).zip -> [2017/05/31 18:30:03 | 003,923,789 | ---- | C | MD5 = 721FE9C6C5355D687109B83943E935E4] () UsbFix_Maintenance.zip -> C:\Users\Jean-Marie\Documents\UsbFix_Maintenance.zip -> [2017/05/31 18:30:03 | 002,754,406 | ---- | C | MD5 = DAC0785C68DB4EFF1D7A487E33DBF966] () UsbFix_Standard(2).zip -> C:\Users\Jean-Marie\Documents\UsbFix_Standard(2).zip -> [2017/05/31 18:30:02 | 003,923,789 | ---- | C | MD5 = 721FE9C6C5355D687109B83943E935E4] () mfc45.dat -> C:\WINDOWS\SysWow64\mfc45.dat -> [2017/05/30 20:33:41 | 000,074,703 | ---- | C | MD5 = 71ABC8BBBCE405F72B0C4C0DDE2E2D56] () mbae64.sys -> C:\WINDOWS\SysNative\drivers\mbae64.sys -> [2017/05/30 17:26:21 | 000,077,440 | ---- | C | MD5 = 233DB99476B8D1CF61AC1177D0137036] () Adobe Digital Editions 4.5.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Adobe Digital Editions 4.5.lnk -> [2017/05/30 17:05:50 | 000,002,303 | ---- | C | MD5 = A1915A1E09A430BEC6D07FD2B4BA3C6F] () Adobe Digital Editions 4.5.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Digital Editions 4.5.lnk -> [2017/05/30 17:05:50 | 000,002,291 | ---- | C | MD5 = 8E3BA34A08A7FEC8BA20B0CC849A1F22] () pikbd.sys -> C:\WINDOWS\SysNative\drivers\pikbd.sys -> [2017/05/30 06:40:59 | 000,041,368 | ---- | C | MD5 = C54551CC28214130EA4A356FC12B09EB] () DP45977C.lfl -> C:\ProgramData\DP45977C.lfl -> [2017/05/30 06:33:50 | 000,000,000 | -H-- | C | MD5 = D41D8CD98F00B204E9800998ECF8427E] () rtvienna.dat -> C:\WINDOWS\SysNative\drivers\rtvienna.dat -> [2017/05/30 06:23:19 | 005,804,772 | ---- | C | MD5 = 7D7FBC9504575D97885A858EA93684F5] () RTAIODAT.DAT -> C:\WINDOWS\SysNative\drivers\RTAIODAT.DAT -> [2017/05/30 06:22:59 | 012,977,976 | ---- | C | MD5 = 696D1F3D6531A89AB576DE0F72A44947] () audioLibVc.dll -> C:\WINDOWS\SysNative\audioLibVc.dll -> [2017/05/30 06:21:47 | 000,105,272 | ---- | C | MD5 = A8AC627B6EC902D3E0108E25B0AB31FA] () AcpiServiceVnA64.dll -> C:\WINDOWS\SysNative\AcpiServiceVnA64.dll -> [2017/05/30 06:21:46 | 000,118,560 | ---- | C | MD5 = 51C56B638DAF5642C67F2E8CE730C5C5] () hsa-thunk64.dll -> C:\WINDOWS\SysNative\hsa-thunk64.dll -> [2017/05/30 06:03:24 | 000,161,304 | ---- | C | MD5 = 61B75AE606919D50AA595E810A45FF6A] () hsa-thunk.dll -> C:\WINDOWS\SysWow64\hsa-thunk.dll -> [2017/05/30 06:03:24 | 000,151,576 | ---- | C | MD5 = C305B4FE78CB20F88B647A29D061F679] () clinfo.exe -> C:\WINDOWS\SysNative\clinfo.exe -> [2017/05/30 06:03:20 | 000,243,728 | ---- | C | MD5 = BACC2299CE687891861D284925C11A9A] () ativvsnl.dat -> C:\WINDOWS\SysWow64\ativvsnl.dat -> [2017/05/30 06:03:20 | 000,020,790 | ---- | C | MD5 = 4F1F22EF604DE04ED2BCA4C5916BF9E0] () ativvsnl.dat -> C:\WINDOWS\SysNative\ativvsnl.dat -> [2017/05/30 06:03:20 | 000,020,790 | ---- | C | MD5 = 4F1F22EF604DE04ED2BCA4C5916BF9E0] () ativvsny.dat -> C:\WINDOWS\SysWow64\ativvsny.dat -> [2017/05/30 06:03:20 | 000,000,025 | ---- | C | MD5 = CFBA17101E04BBCDA5E50CC8A92CEBB0] () ativvsny.dat -> C:\WINDOWS\SysNative\ativvsny.dat -> [2017/05/30 06:03:20 | 000,000,025 | ---- | C | MD5 = CFBA17101E04BBCDA5E50CC8A92CEBB0] () atiumdva.cap -> C:\WINDOWS\SysWow64\atiumdva.cap -> [2017/05/30 06:03:16 | 003,471,376 | ---- | C | MD5 = EA52BB38197E835B09E43F0EDABDC37B] () atiumd6a.cap -> C:\WINDOWS\SysNative\atiumd6a.cap -> [2017/05/30 06:03:12 | 003,437,632 | ---- | C | MD5 = C4A6FACBB9D28D1B65D638C7516E936B] () atieah64.exe -> C:\WINDOWS\SysNative\atieah64.exe -> [2017/05/30 06:02:54 | 000,219,160 | ---- | C | MD5 = 49CE830A90C843FD99B9A5CF24D4FC8C] () atieah32.exe -> C:\WINDOWS\SysWow64\atieah32.exe -> [2017/05/30 06:02:54 | 000,198,168 | ---- | C | MD5 = D3AA5B31E1BB417E7205DAB28B063493] () atiapfxx.blb -> C:\WINDOWS\SysWow64\atiapfxx.blb -> [2017/05/30 06:02:44 | 000,662,480 | ---- | C | MD5 = E3D9A7DC6F817410BAA69A4831406AD2] () atiapfxx.blb -> C:\WINDOWS\SysNative\atiapfxx.blb -> [2017/05/30 06:02:44 | 000,662,480 | ---- | C | MD5 = E3D9A7DC6F817410BAA69A4831406AD2] () amdocl_as64.exe -> C:\WINDOWS\SysNative\amdocl_as64.exe -> [2017/05/30 06:02:41 | 001,196,072 | ---- | C | MD5 = 80AC526F3B98368586FF260DE58EF186] () amdocl_ld64.exe -> C:\WINDOWS\SysNative\amdocl_ld64.exe -> [2017/05/30 06:02:41 | 001,070,632 | ---- | C | MD5 = 01EDFAD837F095476F56799DE21DEAA1] () amdocl_ld32.exe -> C:\WINDOWS\SysWow64\amdocl_ld32.exe -> [2017/05/30 06:02:41 | 000,807,464 | ---- | C | MD5 = 49928B3E470183C2238B645AD069ACFA] () amdverag.dll -> C:\WINDOWS\SysNative\amdverag.dll -> [2017/05/30 06:02:41 | 000,061,976 | ---- | C | MD5 = 03DF915F3B5F1248586782A80335AEF4] () amdocl_as32.exe -> C:\WINDOWS\SysWow64\amdocl_as32.exe -> [2017/05/30 06:02:40 | 001,004,072 | ---- | C | MD5 = 8EF355B942E2F843E44EF639A8E544A7] () amdicdxx.dat -> C:\WINDOWS\SysNative\amdicdxx.dat -> [2017/05/30 06:02:11 | 000,842,001 | ---- | C | MD5 = 3138CAE93E07531AED348AA5E0F44E59] () amdgfxinfo64.dll -> C:\WINDOWS\SysNative\amdgfxinfo64.dll -> [2017/05/30 06:02:09 | 000,237,584 | ---- | C | MD5 = 7204A5C7C55E08A75688E7D16E1AE2D0] () amdgfxinfo32.dll -> C:\WINDOWS\SysWow64\amdgfxinfo32.dll -> [2017/05/30 06:02:09 | 000,209,936 | ---- | C | MD5 = 63160A7271F23CFE31ADBA764E933D16] () Error.ini -> C:\WINDOWS\SysWow64\Error.ini -> [2017/05/29 15:27:46 | 000,000,036 | ---- | C | MD5 = 2AA1C4DF2E3E3D5AEEDAD4A27859BB3A] () Quick Search.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Quick Search.lnk -> [2017/05/28 17:40:24 | 000,001,313 | ---- | C | MD5 = D64E5EF5B75440C72C2E65B7FDE7DF34] () Quick Search.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quick Search.lnk -> [2017/05/28 17:40:23 | 000,001,301 | ---- | C | MD5 = 29CD2B33E5457C00B6B19C7857F0FE64] () SRWare Iron.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\SRWare Iron.lnk -> [2017/05/28 17:35:48 | 000,001,117 | ---- | C | MD5 = 682345B01304553B95098A08BCAFFAAE] () Software Update Pro.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Software Update Pro.lnk -> [2017/05/28 14:43:17 | 000,001,388 | ---- | C | MD5 = 1950A8E8663FC6C003AAE31B24E76D84] () Software Update Pro.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Software Update Pro.lnk -> [2017/05/28 14:43:17 | 000,001,376 | ---- | C | MD5 = 367E2026EB5F46CBE7C3BDF8684BE5CC] () GooPatient.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GooPatient.lnk -> [2017/05/28 14:11:43 | 000,002,655 | ---- | C | MD5 = CAE27D4B5FC8C7A6F702F2D078E10CF4] () Free Tube To Mp3.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Free Tube To Mp3.lnk -> [2017/05/26 18:14:44 | 000,001,181 | ---- | C | MD5 = E353D053B87F4B3560661A297B65E5CD] () Free Screen Recorder 7.3.0.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Free Screen Recorder 7.3.0.lnk -> [2017/05/26 17:17:49 | 000,001,421 | ---- | C | MD5 = BB5ADA4CE95679938DF6CC2D380FFC14] () CamShapes.ini -> C:\Users\Jean-Marie\AppData\Roaming\CamShapes.ini -> [2017/05/26 17:13:13 | 000,000,408 | ---- | C | MD5 = 9744A4A984980C7B030CB46E42D4AC97] () Capture_1_mp4.mrk -> C:\Users\Jean-Marie\Documents\Capture_1_mp4.mrk -> [2017/05/26 15:16:14 | 000,000,216 | ---- | C | MD5 = B72B26CADA88C78C3C1A9E3D5A357709] () Capture_1.mp4 -> C:\Users\Jean-Marie\Documents\Capture_1.mp4 -> [2017/05/26 14:51:36 | 145,480,367 | ---- | C | MD5 = 5E158702CB335F487140D3627770FC58] () Capture_mp4.mrk -> C:\Users\Jean-Marie\Documents\Capture_mp4.mrk -> [2017/05/26 14:50:53 | 000,000,129 | ---- | C | MD5 = 114BACFA55C6DDF55D71CAE6AFFC7F15] () Capture.mp4 -> C:\Users\Jean-Marie\Documents\Capture.mp4 -> [2017/05/26 14:50:46 | 000,358,813 | ---- | C | MD5 = F3AF771EEB472FCC2C7228B53511A6E7] () dllhost.exe.config -> C:\WINDOWS\SysWow64\dllhost.exe.config -> [2017/05/26 14:11:55 | 000,000,232 | ---- | C | MD5 = 0902754B4F3041FD31673CB63B34012D] () Wondershare MobileGo.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Wondershare MobileGo.lnk -> [2017/05/26 14:10:40 | 000,001,262 | ---- | C | MD5 = 229C1C7BE682F978934DADF6DD52752C] () mobilego_setup_full818.exe -> C:\Users\Jean-Marie\Documents\mobilego_setup_full818.exe -> [2017/05/26 14:07:50 | 001,183,888 | ---- | C | MD5 = C3ACC53FBD74DDA02543A2BF1CD416FB] () WORDPAD.INI -> C:\WINDOWS\WORDPAD.INI -> [2017/05/26 09:37:58 | 000,000,193 | ---- | C | MD5 = 72F2D357120F95C1E725C22915FE95E1] () Mozilla Thunderbird.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk -> [2017/05/26 09:24:58 | 000,001,296 | ---- | C | MD5 = 9CE07A28CB2DE6FF801205E25968877A] () Malware Hunter.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Malware Hunter.lnk -> [2017/05/26 06:33:24 | 000,001,327 | ---- | C | MD5 = 9438CFF6C3E1A4404ADED946C8EC77BD] () Malware Hunter.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malware Hunter.lnk -> [2017/05/26 06:33:23 | 000,001,315 | ---- | C | MD5 = 15B89FB8A4679B951152AFC0626662F4] () Glary Utilities 5.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Glary Utilities 5.lnk -> [2017/05/26 06:26:51 | 000,001,189 | ---- | C | MD5 = 989A82E46814840D92AB65BC3B2D2ACB] () Glary Utilities 5.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5.lnk -> [2017/05/26 06:26:51 | 000,001,177 | ---- | C | MD5 = 27559D2078E38FFD0A8E3F25BE975364] () EUBKMON0.sys -> C:\WINDOWS\SysNative\drivers\EUBKMON0.sys -> [2017/05/26 06:20:43 | 000,052,392 | ---- | C | MD5 = 5061B571167E1EE26E8D549CCDBE9CC6] () EUBKMON.sys -> C:\WINDOWS\SysNative\drivers\EUBKMON.sys -> [2017/05/26 06:20:43 | 000,052,392 | ---- | C | MD5 = 5061B571167E1EE26E8D549CCDBE9CC6] () Msft_User_WpdMtpDr_01_11_00.Wdf -> C:\WINDOWS\SysNative\drivers\Msft_User_WpdMtpDr_01_11_00.Wdf -> [2017/05/25 16:54:49 | 000,000,000 | -H-- | C | MD5 = D41D8CD98F00B204E9800998ECF8427E] () dm.dmap -> C:\WINDOWS\dm.dmap -> [2017/05/25 14:21:50 | 000,000,064 | ---- | C | MD5 = C676F5F0FCF6EC261629813C282D7CFF] () EaseUS Partition Master 12.0.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\EaseUS Partition Master 12.0.lnk -> [2017/05/25 14:17:46 | 000,001,455 | ---- | C | MD5 = 5563401C60066A085165E6633997CAF0] () BootMan.exe -> C:\WINDOWS\SysNative\BootMan.exe -> [2017/05/25 14:16:53 | 003,885,248 | ---- | C | MD5 = 4F2711EAABDCCEE069ED7E12B74D8558] () epmntdrv.pdb -> C:\WINDOWS\SysWow64\epmntdrv.pdb -> [2017/05/25 14:16:53 | 000,248,832 | ---- | C | MD5 = 3EE5337BCC0027FDBEE0150FB8EDBF17] () setupempdrvx64.exe -> C:\WINDOWS\SysNative\setupempdrvx64.exe -> [2017/05/25 14:16:53 | 000,101,984 | ---- | C | MD5 = 4B91350942AA13F7566277CC6899E142] () setupempdrv03.exe -> C:\WINDOWS\SysWow64\setupempdrv03.exe -> [2017/05/25 14:16:53 | 000,088,160 | ---- | C | MD5 = 0CA49026F2DA1F2D3BEE9CD779AA806D] () epmntdrv.sys -> C:\WINDOWS\SysNative\epmntdrv.sys -> [2017/05/25 14:16:53 | 000,033,448 | ---- | C | MD5 = D1186D11D7FF6191CBC4BE68C8ADEAD2] () epmntdrv.sys -> C:\WINDOWS\SysWow64\epmntdrv.sys -> [2017/05/25 14:16:53 | 000,021,496 | ---- | C | MD5 = 5F2D1F871FF277EDE5FAEB971D8335ED] () EuEpmGdi.dll -> C:\WINDOWS\SysWow64\EuEpmGdi.dll -> [2017/05/25 14:16:53 | 000,021,088 | ---- | C | MD5 = 980F2EEDACFEBD6C371A165046FD6237] () EuEpmGdi.dll -> C:\WINDOWS\SysNative\EuEpmGdi.dll -> [2017/05/25 14:16:53 | 000,017,504 | ---- | C | MD5 = B69A265AD9328E2027C18D84C3D49959] () EuGdiDrv.sys -> C:\WINDOWS\SysNative\EuGdiDrv.sys -> [2017/05/25 14:16:53 | 000,010,848 | ---- | C | MD5 = 08C997734B2CECE882656BB2855E6E76] () EuGdiDrv.sys -> C:\WINDOWS\SysWow64\EuGdiDrv.sys -> [2017/05/25 14:16:53 | 000,010,208 | ---- | C | MD5 = 886CDC85E0B6C9AC2547F919E5B224A3] () BootMan.exe -> C:\WINDOWS\SysWow64\BootMan.exe -> [2017/05/25 14:16:52 | 002,953,920 | ---- | C | MD5 = B4D8A81F2BD16301E192667665EC4804] () Avast Internet Security.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Internet Security.lnk -> [2017/05/25 14:06:52 | 000,001,981 | ---- | C | MD5 = A270C72AB2C4E9A42073485ACAB480A6] () GiliSoft Audio Recorder Pro 7.1.0.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\GiliSoft Audio Recorder Pro 7.1.0.lnk -> [2017/05/23 19:29:01 | 000,001,350 | ---- | C | MD5 = 07E813F208D4A4CE36F9ED719C54B7AB] () Google Chrome.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> [2017/05/23 15:44:22 | 000,002,360 | ---- | C | MD5 = BA6DFA262F0E716E753C58420AD80084] () GiliSoft Video Splitter 7.0.0.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\GiliSoft Video Splitter 7.0.0.lnk -> [2017/05/23 12:24:22 | 000,001,312 | ---- | C | MD5 = 852A72ED4AC4028D61443B44C2DD8BE8] () Launcher.ini -> C:\Launcher.ini -> [2017/05/23 12:10:43 | 000,000,043 | ---- | C | MD5 = FABF8A9DE5FB87CAB72D12B90996E8D5] () iMyFone D-Port.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\iMyFone D-Port.lnk -> [2017/05/23 11:59:34 | 000,001,268 | ---- | C | MD5 = F9CDAEFC0DBB93103A438ADC45BA4499] () iMyFone D-Port.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iMyFone D-Port.lnk -> [2017/05/23 11:59:33 | 000,001,256 | ---- | C | MD5 = 441AA914B363A9DADFCC18A21AF667E9] () Mindomo.lnk -> C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mindomo.lnk -> [2017/05/23 11:58:00 | 000,002,202 | ---- | C | MD5 = 09A5664DCDFAE4748C21CB9FA17F6E62] () wininit.ini -> C:\WINDOWS\wininit.ini -> [2017/05/23 00:21:30 | 000,000,494 | ---- | C | MD5 = 821D025ED064845D5DF73CFAF7D80C5A] () zlib.dll -> C:\WINDOWS\SysWow64\zlib.dll -> [2017/05/22 22:35:06 | 000,053,248 | ---- | C | MD5 = 4965107D112666D3835308A831A29274] () D3DX8Wrapper.dll -> C:\WINDOWS\SysWow64\D3DX8Wrapper.dll -> [2017/05/22 21:33:01 | 000,276,800 | ---- | C | MD5 = 9851F89665C9B2F7FCB7DB07CAE7CF9A] () GiliSoft Youtube Video Downloader.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\GiliSoft Youtube Video Downloader.lnk -> [2017/05/21 16:29:53 | 000,001,388 | ---- | C | MD5 = CDA9D01C53CC1661EF6CBBCAD4B7AF25] () uninstaller.dat -> C:\WINDOWS\uninstaller.dat -> [2017/05/21 11:07:52 | 000,051,617 | ---- | C | MD5 = 4F9DB054BE3DBDE9731D57753CC15F94] () Sothink Media Toolkit.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Sothink Media Toolkit.lnk -> [2017/05/19 13:22:41 | 000,001,262 | ---- | C | MD5 = F6DA71771D2663B55B5D3453525B5ABA] () PEChecksum.x64 -> C:\WINDOWS\SysWow64\PEChecksum.x64 -> [2017/05/19 13:11:16 | 000,015,872 | ---- | C | MD5 = 82B36D39067C90E20114AE1F87C2BEBB] () PEChecksum.exe -> C:\WINDOWS\SysWow64\PEChecksum.exe -> [2017/05/19 13:11:16 | 000,007,680 | ---- | C | MD5 = 0C100E0085F62A51E3202EB8F5997687] () moveex.exe -> C:\WINDOWS\SysWow64\moveex.exe -> [2017/05/19 13:11:14 | 000,076,288 | ---- | C | MD5 = B83967E8E83318C36A2D4EF76EBD1D3B] () UxStyle_Core_Jul13_x86.msi -> C:\WINDOWS\UxStyle_Core_Jul13_x86.msi -> [2017/05/19 13:11:05 | 002,413,056 | ---- | C | MD5 = 7255732B7ED89086BEA8DD5C4014E57B] () expstart.exe -> C:\WINDOWS\expstart.exe -> [2017/05/19 13:11:03 | 000,925,184 | ---- | C | MD5 = 4A17C4DB57A0813AC646798A71C2AF74] () NTUSER.DAT{1f0dc2b2-3c32-11e7-bcbe-4c72b9f956a2}.TMContainer00000000000000000002.regtrans-ms -> C:\Users\Jean-Marie\NTUSER.DAT{1f0dc2b2-3c32-11e7-bcbe-4c72b9f956a2}.TMContainer00000000000000000002.regtrans-ms -> [2017/05/19 03:51:57 | 000,524,288 | -HS- | C | Unable to obtain MD5] () NTUSER.DAT{1f0dc2b2-3c32-11e7-bcbe-4c72b9f956a2}.TMContainer00000000000000000001.regtrans-ms -> C:\Users\Jean-Marie\NTUSER.DAT{1f0dc2b2-3c32-11e7-bcbe-4c72b9f956a2}.TMContainer00000000000000000001.regtrans-ms -> [2017/05/19 03:51:57 | 000,524,288 | -HS- | C | Unable to obtain MD5] () NTUSER.DAT{1f0dc2b2-3c32-11e7-bcbe-4c72b9f956a2}.TM.blf -> C:\Users\Jean-Marie\NTUSER.DAT{1f0dc2b2-3c32-11e7-bcbe-4c72b9f956a2}.TM.blf -> [2017/05/19 03:51:57 | 000,065,536 | -HS- | C | Unable to obtain MD5] () swapfile.sys -> C:\swapfile.sys -> [2017/05/19 03:26:28 | 268,435,456 | -HS- | C | Unable to obtain MD5] () Flip HTML5.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Flip HTML5.lnk -> [2017/05/12 07:21:40 | 000,001,155 | ---- | C | MD5 = 68C479FEDEFF0A0FC9047FF51EE685C1] () ISO Workshop.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\ISO Workshop.lnk -> [2017/05/12 07:09:24 | 000,001,298 | ---- | C | MD5 = 82830724EA1E215DAC60E1EC4EE79A05] () Ashampoo StartUp Tuner 2.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Ashampoo StartUp Tuner 2.lnk -> [2017/05/12 07:07:54 | 000,001,215 | ---- | C | MD5 = 7F21FED1C2729C54A1AE7466137CAD40] () Unreal Commander.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Unreal Commander.lnk -> [2017/05/12 06:12:03 | 000,000,706 | ---- | C | MD5 = 03A71DDDCD7071B2C74EB98853078077] () muCommander.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\muCommander.lnk -> [2017/05/05 13:27:54 | 000,001,142 | ---- | C | MD5 = 9C872C330934A1EC2C1FE7D66F4C3625] () trolCommander.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\trolCommander.lnk -> [2017/05/05 13:26:53 | 000,001,166 | ---- | C | MD5 = 2FF5892EE3B39E93C04E95DF8D9F877E] () DriveImage XML.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\DriveImage XML.lnk -> [2017/05/05 13:26:46 | 000,001,210 | ---- | C | MD5 = 968D71A2CDCE6319B3E04452684FA89B] () Foxit Reader.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Foxit Reader.lnk -> [2017/05/04 18:07:46 | 000,001,454 | ---- | C | MD5 = 292323CC13038756CDCEE540035F039F] () WinMend File Copy.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\WinMend File Copy.lnk -> [2017/05/02 17:37:28 | 000,001,157 | ---- | C | MD5 = AE3F6550918EC78480B584000C68330A] () Windows 10 UX Pack 7.0.rar -> C:\Users\Jean-Marie\Documents\Windows 10 UX Pack 7.0.rar -> [2017/05/02 13:31:49 | 101,622,425 | ---- | C | MD5 = 79A0783A80D77567183B26BB2028F13E] () Windows 10 Transformation Pack 7.0.rar -> C:\Users\Jean-Marie\Documents\Windows 10 Transformation Pack 7.0.rar -> [2017/05/02 13:31:17 | 140,034,974 | ---- | C | MD5 = 4531C93D3012F5434E1EA554D0D01CAE] () CamStudio.cfg -> C:\Users\Jean-Marie\AppData\Roaming\CamStudio.cfg -> [2017/05/02 11:32:29 | 000,004,547 | ---- | C | MD5 = B64AE5C7EAE216FF58C17B0F6F1F7185] () CamLayout.ini -> C:\Users\Jean-Marie\AppData\Roaming\CamLayout.ini -> [2017/05/02 11:32:29 | 000,000,408 | ---- | C | MD5 = 7C8DA0B9D6FA4F36ED8334A1980E05CF] () Camdata.ini -> C:\Users\Jean-Marie\AppData\Roaming\Camdata.ini -> [2017/05/02 11:32:29 | 000,000,174 | ---- | C | MD5 = B860C937AA5A2386555462BC14E8DE5C] () version2.xml -> C:\Users\Jean-Marie\AppData\Roaming\version2.xml -> [2017/05/02 10:10:23 | 000,000,096 | ---- | C | MD5 = 9E3D46FEA2CB93CF7CBA1E216DC5E68A] () unrar.dll -> C:\WINDOWS\SysWow64\unrar.dll -> [2017/05/01 17:03:37 | 000,165,376 | ---- | C | MD5 = 0087F6F680BEFDA997B357BD55BE991C] () GSService.exe -> C:\WINDOWS\SysWow64\GSService.exe -> [2017/04/29 21:39:17 | 000,490,208 | ---- | C | MD5 = CC8206C9288EA409781DE1D7FC754A39] () diskptex.dat -> C:\WINDOWS\diskptex.dat -> [2017/04/29 20:57:52 | 000,000,000 | ---- | C | MD5 = D41D8CD98F00B204E9800998ECF8427E] () diskpt.dat -> C:\WINDOWS\diskpt.dat -> [2017/04/29 20:57:52 | 000,000,000 | ---- | C | MD5 = D41D8CD98F00B204E9800998ECF8427E] () Flip PDF Professional.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Flip PDF Professional.lnk -> [2017/04/29 11:38:13 | 000,001,252 | ---- | C | MD5 = 5A22DDF7CA4859625E0D5632D1B3D73D] () Kastor Free Video Converter.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Kastor Free Video Converter.lnk -> [2017/04/29 11:31:17 | 000,001,269 | ---- | C | MD5 = F82ECD5F469823B0BEA8EBC28EAE55BE] () Free Video to GIF Converter.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Free Video to GIF Converter.lnk -> [2017/04/29 11:25:36 | 000,001,365 | ---- | C | MD5 = B99DB72EF2393D0DD51DDDE04284D90C] () Copy Handler.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Copy Handler.lnk -> [2017/04/29 09:46:57 | 000,000,883 | ---- | C | MD5 = 1732718CCF2FFB792346AC28A0772231] () Xilisoft Découpeur Vidéo 2.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Xilisoft Découpeur Vidéo 2.lnk -> [2017/04/29 09:38:11 | 000,002,237 | ---- | C | MD5 = BD10D131EC3796204C7AA71C79DCDFCF] () Xilisoft Éditeur Vidéo 2.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Xilisoft Éditeur Vidéo 2.lnk -> [2017/04/29 09:36:50 | 000,002,212 | ---- | C | MD5 = E776BB19F5B10046C4BAF7DA2375A213] () Shadow Defender.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Shadow Defender.lnk -> [2017/04/29 09:21:10 | 000,001,113 | ---- | C | MD5 = 3AA21078CEB183109F26D82C3B4446C2] () diskpt.crt -> C:\WINDOWS\diskpt.crt -> [2017/04/29 09:20:55 | 000,000,064 | ---- | C | MD5 = 57F716609A45CBC5B15C65981F6B4E89] () iSkysoft iMedia Converter Deluxe.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\iSkysoft iMedia Converter Deluxe.lnk -> [2017/04/28 14:55:36 | 000,001,270 | ---- | C | MD5 = 0B557BB3BD92CC336424942648620B27] () ISCM64.dll -> C:\WINDOWS\SysWow64\ISCM64.dll -> [2017/04/28 14:48:56 | 000,721,263 | ---- | C | MD5 = ED5D4435EC628F9EBB6AEC8A1D3FA41D] () ISCM32.dll -> C:\WINDOWS\SysWow64\ISCM32.dll -> [2017/04/28 14:48:55 | 000,214,528 | ---- | C | MD5 = CADC1F6669EC3F9143A33D1342C2410E] () MultiCommander (x64).lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\MultiCommander (x64).lnk -> [2017/04/28 14:14:12 | 000,001,895 | ---- | C | MD5 = DC21ADE9FF81DF6479259653ABC56963] () ShadowCopy.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\ShadowCopy.lnk -> [2017/04/28 14:09:06 | 000,001,219 | ---- | C | MD5 = 74AB00F9E2A0016D0F8765A6F7CA8624] () Wondershare TidyMyMusic.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Wondershare TidyMyMusic.lnk -> [2017/04/28 13:07:15 | 000,001,298 | ---- | C | MD5 = 2894B59F17808A4A3699E1A315899728] () Aiseesoft Video Enhancer.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Aiseesoft Video Enhancer.lnk -> [2017/04/28 12:23:00 | 000,001,629 | ---- | C | MD5 = D1E52038A5B545BCF75C14705F71D5A9] () diagwrn.xml -> C:\WINDOWS\diagwrn.xml -> [2017/04/26 20:15:35 | 000,011,433 | ---- | C | MD5 = 0E359EF178B73AAAE2C6D6AC11B4FE15] () diagerr.xml -> C:\WINDOWS\diagerr.xml -> [2017/04/26 20:15:35 | 000,011,433 | ---- | C | MD5 = 0E359EF178B73AAAE2C6D6AC11B4FE15] () emptyregdb.dat -> C:\WINDOWS\SysNative\emptyregdb.dat -> [2017/04/26 20:07:12 | 000,023,108 | ---- | C | MD5 = 45753B2B17E144450F611AE8C5AEB447] () SA.DAT -> C:\WINDOWS\tasks\SA.DAT -> [2017/04/26 20:06:59 | 000,000,006 | -H-- | C | MD5 = 708EA029F398E51E2AEBBD0AD5E5CA73] () license.rtf -> C:\WINDOWS\SysWow64\license.rtf -> [2017/04/26 19:45:02 | 000,052,763 | ---- | C | MD5 = 5C0E6C26A95DC898E4C959B5AF9CD42B] () license.rtf -> C:\WINDOWS\SysNative\license.rtf -> [2017/04/26 19:45:02 | 000,052,763 | ---- | C | MD5 = 5C0E6C26A95DC898E4C959B5AF9CD42B] () edgehtmlpluginpolicy.bin -> C:\WINDOWS\SysNative\edgehtmlpluginpolicy.bin -> [2017/04/26 19:34:20 | 000,032,004 | ---- | C | MD5 = B0A3B85B6A2605A26B8C44B9A9C5F9B1] () Shows Desktop.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> [2017/04/26 18:53:29 | 000,000,352 | ---- | C | MD5 = 325B790BC93AD8D27655C44365B485C0] () Window Switcher.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> [2017/04/26 18:53:29 | 000,000,334 | ---- | C | MD5 = DD26C664F5264C672B6C4C260ED79C73] () PerfStringBackup.INI -> C:\WINDOWS\SysNative\PerfStringBackup.INI -> [2017/04/26 18:52:14 | 003,414,920 | ---- | C | MD5 = E0723987980D9C1D46A3CC4AE39FFC3F] () PerfStringBackup.INI -> C:\WINDOWS\SysWow64\PerfStringBackup.INI -> [2017/04/26 18:52:03 | 001,978,024 | ---- | C | MD5 = A03878583E9A9CD28C418B3E37CE0021] () ativpsrm.bin -> C:\WINDOWS\ativpsrm.bin -> [2017/04/26 18:50:25 | 000,000,000 | ---- | C | MD5 = D41D8CD98F00B204E9800998ECF8427E] () Msft_Kernel_avchv_01009.Wdf -> C:\WINDOWS\SysNative\drivers\Msft_Kernel_avchv_01009.Wdf -> [2017/04/26 18:49:26 | 000,000,000 | -H-- | C | MD5 = D41D8CD98F00B204E9800998ECF8427E] () bootstat.dat -> C:\WINDOWS\bootstat.dat -> [2017/04/26 18:49:14 | 000,067,584 | --S- | C | MD5 = F982EE1B5E8F56125DAB04902B7CF2B0] () Msft_User_WpdFs_01_11_00.Wdf -> C:\WINDOWS\SysNative\drivers\Msft_User_WpdFs_01_11_00.Wdf -> [2017/04/26 18:49:00 | 000,000,000 | -H-- | C | MD5 = D41D8CD98F00B204E9800998ECF8427E] () progress.ini -> C:\WINDOWS\progress.ini -> [2017/04/26 16:24:33 | 000,000,036 | ---- | C | MD5 = 09394999ADB19901C665454EE964B13C] () APMBoot.exe -> C:\WINDOWS\SysNative\APMBoot.exe -> [2017/04/24 15:30:37 | 003,192,320 | ---- | C | MD5 = C0F1FF923616DEDEAA7655F7FA03FD06] () PI4_setup.ini -> C:\WINDOWS\PI4_setup.ini -> [2017/04/24 10:24:44 | 000,000,021 | ---- | C | MD5 = 1B2C7EFB196140F81412A308E7F507FA] () videoimp.ini -> C:\WINDOWS\videoimp.ini -> [2017/04/24 09:40:59 | 000,000,433 | ---- | C | MD5 = E6E7ED3CEEBFC47D7C23F71665110432] () vidx16.dll -> C:\WINDOWS\SysWow64\vidx16.dll -> [2017/04/24 09:27:31 | 000,010,240 | ---- | C | MD5 = 550BA20DF6C08E628CA9ABD0F6E917B8] () quartz.vxd -> C:\WINDOWS\SysWow64\quartz.vxd -> [2017/04/24 09:27:30 | 000,005,672 | ---- | C | MD5 = F318E151801F7EB505894718E03BC438] () VI_setup.ini -> C:\WINDOWS\VI_setup.ini -> [2017/04/24 09:23:20 | 000,000,021 | ---- | C | MD5 = 1B2C7EFB196140F81412A308E7F507FA] () Kastor Free Vimeo Downloader.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Kastor Free Vimeo Downloader.lnk -> [2017/04/23 11:29:59 | 000,001,301 | ---- | C | MD5 = DC0CE472AC2D28D7E5DB681AAE8A4928] () Kastor Stream Recorder.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\Kastor Stream Recorder.lnk -> [2017/04/23 11:27:18 | 000,001,234 | ---- | C | MD5 = AAB97940B90BBA33E71AF49E74F2B377] () CyberGhost 6.lnk -> C:\Users\Jean-Marie\Application Data\Microsoft\Internet Explorer\Quick Launch\CyberGhost 6.lnk -> [2017/04/23 11:14:43 | 000,000,917 | ---- | C | MD5 = 3B3123FEA9A76150398927BB9B4CF879] () npe-fre.exe -> C:\WINDOWS\SysNative\npe-fre.exe -> [2017/04/12 05:38:36 | 000,713,632 | ---- | C | MD5 = DABD3C78809D580EBCF04B4D183ECFC9] () Core.xml -> C:\WINDOWS\Core.xml -> [2017/03/20 07:12:07 | 000,034,390 | ---- | C | MD5 = F471CF70EE6D49C5650A4D5295531435] () perfh00C.dat -> C:\WINDOWS\SysNative\perfh00C.dat -> [2017/03/20 07:10:29 | 001,575,128 | ---- | C | MD5 = E8125941118F1890CE09C748C6ADC553] () perfc00C.dat -> C:\WINDOWS\SysNative\perfc00C.dat -> [2017/03/20 07:10:29 | 000,399,928 | ---- | C | MD5 = 187F4CE2F90974F16B990C8B122C6BA9] () perfi00C.dat -> C:\WINDOWS\SysNative\perfi00C.dat -> [2017/03/20 07:10:29 | 000,351,124 | ---- | C | MD5 = 9A780B14EEAFA8B9A2409F02BF9D9AF0] () perfd00C.dat -> C:\WINDOWS\SysNative\perfd00C.dat -> [2017/03/20 07:10:29 | 000,040,694 | ---- | C | MD5 = 9F9AF8517189B0D61B2615007E071084] () perfh009.dat -> C:\WINDOWS\SysNative\perfh009.dat -> [2017/03/18 23:05:34 | 001,054,800 | ---- | C | MD5 = 1BD3119404448F91755CFAA581CEEA61] () perfc009.dat -> C:\WINDOWS\SysNative\perfc009.dat -> [2017/03/18 23:05:34 | 000,354,844 | ---- | C | MD5 = D8BA85DC1A355599B27EAD0CB21E4387] () perfi009.dat -> C:\WINDOWS\SysNative\perfi009.dat -> [2017/03/18 23:05:34 | 000,297,062 | ---- | C | MD5 = 56C3B96DD714B0DA77C0B9FB0D392C86] () perfd009.dat -> C:\WINDOWS\SysNative\perfd009.dat -> [2017/03/18 23:05:34 | 000,033,424 | ---- | C | MD5 = 1E60BC5E525063B96078DF17FBD3C4E1] () NOISE.DAT -> C:\WINDOWS\SysWow64\NOISE.DAT -> [2017/03/18 23:03:42 | 000,000,741 | ---- | C | MD5 = DE78E0C57BC478D47CC2F470B68E1A45] () dssec.dat -> C:\WINDOWS\SysWow64\dssec.dat -> [2017/03/18 23:03:41 | 000,215,943 | ---- | C | MD5 = 8C6F56F4CDDE6A1FD01F4FCF2773298E] () lmhosts.sam -> C:\WINDOWS\SysNative\drivers\etc\lmhosts.sam -> [2017/03/18 23:03:39 | 000,003,683 | ---- | C | MD5 = 18413B90E1B291EC3E777A845C37CFEE] () OEMDefaultAssociations.xml -> C:\WINDOWS\SysNative\OEMDefaultAssociations.xml -> [2017/03/18 23:03:38 | 000,015,940 | ---- | C | MD5 = C9246EF96F14CB2F0C393F73A20590D8] () NOISE.DAT -> C:\WINDOWS\SysNative\NOISE.DAT -> [2017/03/18 23:03:38 | 000,000,741 | ---- | C | MD5 = DE78E0C57BC478D47CC2F470B68E1A45] () dssec.dat -> C:\WINDOWS\SysNative\dssec.dat -> [2017/03/18 23:03:37 | 000,215,943 | ---- | C | MD5 = 8C6F56F4CDDE6A1FD01F4FCF2773298E] () DefaultQuestions.json -> C:\WINDOWS\SysNative\DefaultQuestions.json -> [2017/03/18 23:03:37 | 000,000,858 | ---- | C | MD5 = 664AA698FC0106A2B075A641E8DC6302] () xpsrchvw.xml -> C:\WINDOWS\SysWow64\xpsrchvw.xml -> [2017/03/18 22:59:52 | 000,076,060 | ---- | C | MD5 = 9D6B8FC71167D22849424084F0F3D9E9] () xpsrchvw.xml -> C:\WINDOWS\SysNative\xpsrchvw.xml -> [2017/03/18 22:59:52 | 000,076,060 | ---- | C | MD5 = 9D6B8FC71167D22849424084F0F3D9E9] () ScavengeSpace.xml -> C:\WINDOWS\SysNative\ScavengeSpace.xml -> [2017/03/18 22:59:52 | 000,010,429 | ---- | C | MD5 = 5C18CD22BE4628865FCB63337A6E5EF6] () ieuinit.inf -> C:\WINDOWS\SysWow64\ieuinit.inf -> [2017/03/18 22:59:49 | 000,003,458 | ---- | C | MD5 = 6B31D08801D3A3F51B59FB1DB14E4A01] () CaptureCountdown.hcp -> C:\WINDOWS\SysNative\CaptureCountdown.hcp -> [2017/03/18 22:59:10 | 000,125,015 | R--- | C | MD5 = DC112F4CFDF23AAF5CB0F46BE92CB1CE] () CaptureBrackets.hcp -> C:\WINDOWS\SysNative\CaptureBrackets.hcp -> [2017/03/18 22:59:10 | 000,119,017 | R--- | C | MD5 = 4B307488C9D3D1030DEC61FA4DAC7EE0] () CaptureToast.hcp -> C:\WINDOWS\SysNative\CaptureToast.hcp -> [2017/03/18 22:59:10 | 000,017,806 | R--- | C | MD5 = F80C2CB1D5A28528D662B0DDF440F0F3] () HolographicShareInterop.ProxyStub.dll -> C:\WINDOWS\SysNative\HolographicShareInterop.ProxyStub.dll -> [2017/03/18 22:59:09 | 000,014,336 | ---- | C | MD5 = 7B7859030FF4D38A912A7BCC4A1B3B5E] () lcphrase.tbl -> C:\WINDOWS\SysWow64\lcphrase.tbl -> [2017/03/18 22:58:59 | 000,211,938 | ---- | C | MD5 = 531FE5A2634D87A078017259F21D9736] () lcptr.tbl -> C:\WINDOWS\SysWow64\lcptr.tbl -> [2017/03/18 22:58:59 | 000,024,114 | ---- | C | MD5 = D3C85593F8C4576FCF9B42AC48CA4368] () SecurityAndMaintenance_Error.png -> C:\WINDOWS\SysWow64\SecurityAndMaintenance_Error.png -> [2017/03/18 22:58:58 | 000,006,886 | ---- | C | MD5 = 099BA37F81C044F6B2609537FDB7D872] () SecurityAndMaintenance.png -> C:\WINDOWS\SysWow64\SecurityAndMaintenance.png -> [2017/03/18 22:58:58 | 000,005,796 | ---- | C | MD5 = 00E5FCFD833151F7CBDE607E2F7AFEB4] () SecurityAndMaintenance_Alert.png -> C:\WINDOWS\SysWow64\SecurityAndMaintenance_Alert.png -> [2017/03/18 22:58:58 | 000,002,626 | ---- | C | MD5 = 5719BFC9CFDA7A9C059A71A47A0E6383] () lusrmgr.msc -> C:\WINDOWS\SysWow64\lusrmgr.msc -> [2017/03/18 22:58:56 | 000,144,998 | ---- | C | MD5 = 3279476E39DE235B426D69CFE8DEBF55] () SubRange.uce -> C:\WINDOWS\SysWow64\SubRange.uce -> [2017/03/18 22:58:56 | 000,093,702 | ---- | C | MD5 = 30F5568679A54042F99CA9EC1102EBCD] () ideograf.uce -> C:\WINDOWS\SysWow64\ideograf.uce -> [2017/03/18 22:58:56 | 000,060,458 | ---- | C | MD5 = 038F6AD6CEE43585D814CDBC7CDFD3EC] () BWContextHandler.dll -> C:\WINDOWS\SysWow64\BWContextHandler.dll -> [2017/03/18 22:58:56 | 000,054,272 | ---- | C | MD5 = 693DE46346815A50B595529FF6F0F958] () gb2312.uce -> C:\WINDOWS\SysWow64\gb2312.uce -> [2017/03/18 22:58:56 | 000,024,006 | ---- | C | MD5 = 4FDED87068052EEB9B72A97FDBC141DB] () bopomofo.uce -> C:\WINDOWS\SysWow64\bopomofo.uce -> [2017/03/18 22:58:56 | 000,022,984 | ---- | C | MD5 = 405E1EF8E3C88E9BCD2853382BB12430] () ShiftJIS.uce -> C:\WINDOWS\SysWow64\ShiftJIS.uce -> [2017/03/18 22:58:56 | 000,016,740 | ---- | C | MD5 = 8CA32E9D986FA76F60EFBCFCD9D80A58] () korean.uce -> C:\WINDOWS\SysWow64\korean.uce -> [2017/03/18 22:58:56 | 000,012,876 | ---- | C | MD5 = 7A7A04370A6030B9B0E8178DAD4A6E41] () kanji_2.uce -> C:\WINDOWS\SysWow64\kanji_2.uce -> [2017/03/18 22:58:56 | 000,008,484 | ---- | C | MD5 = 529BBD63519BBD654EF328454019693F] () kanji_1.uce -> C:\WINDOWS\SysWow64\kanji_1.uce -> [2017/03/18 22:58:56 | 000,006,948 | ---- | C | MD5 = 7C0C25F4BA1084C4ABBEEA2C74194C5F] () InputHost.dll -> C:\WINDOWS\SysWow64\InputHost.dll -> [2017/03/18 22:58:54 | 000,116,824 | ---- | C | MD5 = 24E1434E899B3EC4E3CD4CA56AA63BC6] () HeatCore.dll -> C:\WINDOWS\SysWow64\HeatCore.dll -> [2017/03/18 22:58:54 | 000,112,128 | ---- | C | MD5 = 2927ADFC93821B344BA524BCF9889A51] () WindowsDefaultHeatProcessor.dll -> C:\WINDOWS\SysWow64\WindowsDefaultHeatProcessor.dll -> [2017/03/18 22:58:54 | 000,086,528 | ---- | C | MD5 = D676BC75BD566BC91BFEC3D4EDA42655] () sysprtj.sep -> C:\WINDOWS\SysWow64\sysprtj.sep -> [2017/03/18 22:58:54 | 000,003,666 | ---- | C | MD5 = 58A67EC6B00A54A69DC364194CA171E0] () sysprint.sep -> C:\WINDOWS\SysWow64\sysprint.sep -> [2017/03/18 22:58:54 | 000,003,317 | ---- | C | MD5 = 81B14F1AD906AC1CF9102796C97A54FE] () tcpbidi.xml -> C:\WINDOWS\SysWow64\tcpbidi.xml -> [2017/03/18 22:58:54 | 000,001,673 | ---- | C | MD5 = 31B010EF50D54D548B4B8B211F421318] () @EnrollmentToastIcon.png -> C:\WINDOWS\SysWow64\@EnrollmentToastIcon.png -> [2017/03/18 22:58:54 | 000,000,330 | ---- | C | MD5 = 495C1F072039B434827A5FE0D9761E4D] () pcl.sep -> C:\WINDOWS\SysWow64\pcl.sep -> [2017/03/18 22:58:54 | 000,000,150 | ---- | C | MD5 = 66D58077CC739E4B8166E33AB0BA4639] () pscript.sep -> C:\WINDOWS\SysWow64\pscript.sep -> [2017/03/18 22:58:54 | 000,000,051 | ---- | C | MD5 = C09741B9886EF0D15EC3B1443352FB62] () Windows.UI.Input.Inking.Analysis.dll -> C:\WINDOWS\SysWow64\Windows.UI.Input.Inking.Analysis.dll -> [2017/03/18 22:58:52 | 003,200,000 | ---- | C | MD5 = 9F5C9217F39B2FFFC42DD41B70AFBC84] () xboxgipsynthetic.dll -> C:\WINDOWS\SysWow64\xboxgipsynthetic.dll -> [2017/03/18 22:58:52 | 000,059,904 | ---- | C | MD5 = 0EE8797A5CBE1C3FC90960992217FBB9] () chs_singlechar_pinyin.dat -> C:\WINDOWS\SysWow64\chs_singlechar_pinyin.dat -> [2017/03/18 22:58:51 | 000,167,640 | ---- | C | MD5 = CCEAEFAA4DF2F399E9A179D942FEB23C] () @VpnToastIcon.png -> C:\WINDOWS\SysWow64\@VpnToastIcon.png -> [2017/03/18 22:58:51 | 000,000,404 | ---- | C | MD5 = 1622DE67156496C78D6B7BE9B471645B] () AppxProvisioning.xml -> C:\WINDOWS\SysWow64\AppxProvisioning.xml -> [2017/03/18 22:58:48 | 000,002,778 | ---- | C | MD5 = 331C418378E2F0B02E0EBC968006986C] () WimBootCompress.ini -> C:\WINDOWS\SysWow64\WimBootCompress.ini -> [2017/03/18 22:58:48 | 000,002,307 | ---- | C | MD5 = BB2D1DF427C9284DE64DC66A6F1CC2AD] () winrm.vbs -> C:\WINDOWS\SysWow64\winrm.vbs -> [2017/03/18 22:58:46 | 000,204,105 | ---- | C | MD5 = 9D7684F978EBD77E6A3EA7EF1330B946] () wsmanconfig_schema.xml -> C:\WINDOWS\SysWow64\wsmanconfig_schema.xml -> [2017/03/18 22:58:46 | 000,004,675 | ---- | C | MD5 = 930423065AB3F5DB52D5726C7FC66385] () WsmTxt.xsl -> C:\WINDOWS\SysWow64\WsmTxt.xsl -> [2017/03/18 22:58:46 | 000,002,426 | ---- | C | MD5 = B2EDF82825D979928AE07CBE9C7A2160] () WsmPty.xsl -> C:\WINDOWS\SysWow64\WsmPty.xsl -> [2017/03/18 22:58:46 | 000,001,559 | ---- | C | MD5 = D6CBFA113B69C491DE370E85EBAC80E9] () winrm.cmd -> C:\WINDOWS\SysWow64\winrm.cmd -> [2017/03/18 22:58:46 | 000,000,033 | ---- | C | MD5 = F80EEF72983614DB418A0C1FAE21EBC1] () WF.msc -> C:\WINDOWS\SysWow64\WF.msc -> [2017/03/18 22:58:45 | 000,115,091 | ---- | C | MD5 = 9ED84D86676B79DFC7A9DD1B537E1883] () xwizard.dtd -> C:\WINDOWS\SysWow64\xwizard.dtd -> [2017/03/18 22:58:45 | 000,004,014 | ---- | C | MD5 = 684DDBD6ED4066B10660A3A06655B59A] () rasctrnm.h -> C:\WINDOWS\SysWow64\rasctrnm.h -> [2017/03/18 22:58:45 | 000,001,820 | ---- | C | MD5 = 3A77C18665A4C8428768CE186A5BC1EF] () NdfEventView.xml -> C:\WINDOWS\SysWow64\NdfEventView.xml -> [2017/03/18 22:58:45 | 000,000,565 | ---- | C | MD5 = 86166DAA04A6C154826508304CC6D4AC] () @AudioToastIcon.png -> C:\WINDOWS\SysWow64\@AudioToastIcon.png -> [2017/03/18 22:58:44 | 000,000,308 | ---- | C | MD5 = 82C37C3E27020AF6C2E018E944284676] () msjetoledb40.dll -> C:\WINDOWS\SysWow64\msjetoledb40.dll -> [2017/03/18 22:58:42 | 000,364,544 | ---- | C | MD5 = F13CEF6A36B555AC2390D8A5501AA137] () slmgr.vbs -> C:\WINDOWS\SysWow64\slmgr.vbs -> [2017/03/18 22:58:42 | 000,142,904 | ---- | C | MD5 = 3903BCAB32A4A853DFA54962112D4D02] () odbcconf.rsp -> C:\WINDOWS\SysWow64\odbcconf.rsp -> [2017/03/18 22:58:42 | 000,004,453 | ---- | C | MD5 = CE8AC7BCA89A2789235669DAEB1E0A5B] () 12520850.cpx -> C:\WINDOWS\SysWow64\12520850.cpx -> [2017/03/18 22:58:42 | 000,002,233 | ---- | C | MD5 = D69AE057CD82D04EE7D311809ABEFB2A] () 12520437.cpx -> C:\WINDOWS\SysWow64\12520437.cpx -> [2017/03/18 22:58:42 | 000,002,151 | ---- | C | MD5 = 0A0FEB9EB28BDE8CD835716343B03B14] () boot.sdi -> C:\WINDOWS\SysWow64\boot.sdi -> [2017/03/18 22:58:41 | 003,170,304 | ---- | C | MD5 = 22D9945B4AAE36DD59620A918F2E65F4] () comexp.msc -> C:\WINDOWS\SysWow64\comexp.msc -> [2017/03/18 22:58:41 | 000,124,118 | ---- | C | MD5 = AC27746CE65F3A7A1329BEBA7A64E08F] () diskmgmt.msc -> C:\WINDOWS\SysWow64\diskmgmt.msc -> [2017/03/18 22:58:41 | 000,047,682 | ---- | C | MD5 = E343F7FD42210043208A295CBD6E251C] () gm.dls -> C:\WINDOWS\SysWow64\drivers\gm.dls -> [2017/03/18 22:58:39 | 003,440,660 | ---- | C | MD5 = 7F29903CB8F5590D52DB0C9F97049A25] () ssdm.dll -> C:\WINDOWS\SysWow64\ssdm.dll -> [2017/03/18 22:58:39 | 000,307,200 | ---- | C | MD5 = 1291A61F0F4A49E5F4C869E677F67C57] () devmgmt.msc -> C:\WINDOWS\SysWow64\devmgmt.msc -> [2017/03/18 22:58:39 | 000,145,622 | ---- | C | MD5 = 383A3B36999FABD8DCA7691B38713C40] () perfmon.msc -> C:\WINDOWS\SysWow64\perfmon.msc -> [2017/03/18 22:58:39 | 000,145,519 | ---- | C | MD5 = 9BE46DD971FBA66D84567679D3D414EC] () tpm.msc -> C:\WINDOWS\SysWow64\tpm.msc -> [2017/03/18 22:58:39 | 000,144,862 | ---- | C | MD5 = 9359341F78E00134B527814B4868ECD5] () RestartManager.mof -> C:\WINDOWS\SysWow64\RestartManager.mof -> [2017/03/18 22:58:39 | 000,000,714 | ---- | C | MD5 = 43E7D0AB6A8564F5BF375FBF0934FAD1] () RestartManagerUninstall.mof -> C:\WINDOWS\SysWow64\RestartManagerUninstall.mof -> [2017/03/18 22:58:39 | 000,000,176 | ---- | C | MD5 = 3F75A221A01F68D6CE67FE99A868BD8F] () Windows.Mirage.dll -> C:\WINDOWS\SysWow64\Windows.Mirage.dll -> [2017/03/18 22:58:37 | 001,859,072 | ---- | C | MD5 = F1C530B1027E878C4C00282FA194CE6E] () eventvwr.msc -> C:\WINDOWS\SysWow64\eventvwr.msc -> [2017/03/18 22:58:37 | 000,145,127 | ---- | C | MD5 = 9BDCCC1A87CCA27ADEACE8144F385165] () taskschd.msc -> C:\WINDOWS\SysWow64\taskschd.msc -> [2017/03/18 22:58:37 | 000,145,059 | ---- | C | MD5 = AB2A58839814D2EA5EE621B5DBF944FF] () fsmgmt.msc -> C:\WINDOWS\SysWow64\fsmgmt.msc -> [2017/03/18 22:58:37 | 000,144,909 | ---- | C | MD5 = 97AED7FC6C2B38F34CA1A3C10D2F5A60] () compmgmt.msc -> C:\WINDOWS\SysWow64\compmgmt.msc -> [2017/03/18 22:58:37 | 000,113,256 | ---- | C | MD5 = F04C119C159670C9271623454BEC3254] () services.msc -> C:\WINDOWS\SysWow64\services.msc -> [2017/03/18 22:58:37 | 000,092,746 | ---- | C | MD5 = 2D8D95469EC26AAA986AAD1CE424E631] () certlm.msc -> C:\WINDOWS\SysWow64\certlm.msc -> [2017/03/18 22:58:37 | 000,063,081 | ---- | C | MD5 = DCCA682FEA47192106EC4F2001EAE182] () certmgr.msc -> C:\WINDOWS\SysWow64\certmgr.msc -> [2017/03/18 22:58:37 | 000,063,070 | ---- | C | MD5 = 4C7390A1FF613FBBF59141CA0BE8AE89] () azman.msc -> C:\WINDOWS\SysWow64\azman.msc -> [2017/03/18 22:58:37 | 000,041,587 | ---- | C | MD5 = C5B3E109B3B88B0CC420304EA7BF6B70] () EventViewer_EventDetails.xsl -> C:\WINDOWS\SysWow64\EventViewer_EventDetails.xsl -> [2017/03/18 22:58:37 | 000,017,935 | ---- | C | MD5 = 93E76CF7B04EC33A1E9E0FD7546D3603] () lcphrase.tbl -> C:\WINDOWS\SysNative\lcphrase.tbl -> [2017/03/18 22:58:35 | 000,211,938 | ---- | C | MD5 = 531FE5A2634D87A078017259F21D9736] () lcptr.tbl -> C:\WINDOWS\SysNative\lcptr.tbl -> [2017/03/18 22:58:35 | 000,024,114 | ---- | C | MD5 = D3C85593F8C4576FCF9B42AC48CA4368] () lusrmgr.msc -> C:\WINDOWS\SysNative\lusrmgr.msc -> [2017/03/18 22:58:29 | 000,144,998 | ---- | C | MD5 = 3279476E39DE235B426D69CFE8DEBF55] () SubRange.uce -> C:\WINDOWS\SysNative\SubRange.uce -> [2017/03/18 22:58:29 | 000,093,702 | ---- | C | MD5 = 30F5568679A54042F99CA9EC1102EBCD] () DataStoreCacheDumpTool.exe -> C:\WINDOWS\SysNative\DataStoreCacheDumpTool.exe -> [2017/03/18 22:58:29 | 000,086,016 | ---- | C | MD5 = 75BC227ACD70C906785DB11F853165E4] () BWContextHandler.dll -> C:\WINDOWS\SysNative\BWContextHandler.dll -> [2017/03/18 22:58:29 | 000,064,000 | ---- | C | MD5 = BCAA2EF98D1B25165B680357AAA7F5FA] () ideograf.uce -> C:\WINDOWS\SysNative\ideograf.uce -> [2017/03/18 22:58:29 | 000,060,458 | ---- | C | MD5 = 038F6AD6CEE43585D814CDBC7CDFD3EC] () gb2312.uce -> C:\WINDOWS\SysNative\gb2312.uce -> [2017/03/18 22:58:29 | 000,024,006 | ---- | C | MD5 = 4FDED87068052EEB9B72A97FDBC141DB] () bopomofo.uce -> C:\WINDOWS\SysNative\bopomofo.uce -> [2017/03/18 22:58:29 | 000,022,984 | ---- | C | MD5 = 405E1EF8E3C88E9BCD2853382BB12430] () ShiftJIS.uce -> C:\WINDOWS\SysNative\ShiftJIS.uce -> [2017/03/18 22:58:29 | 000,016,740 | ---- | C | MD5 = 8CA32E9D986FA76F60EFBCFCD9D80A58] () DevModeRunAsUserConfig.msc -> C:\WINDOWS\SysNative\DevModeRunAsUserConfig.msc -> [2017/03/18 22:58:29 | 000,013,091 | ---- | C | MD5 = A99DE223E49E2253426D3DF4746437EC] () korean.uce -> C:\WINDOWS\SysNative\korean.uce -> [2017/03/18 22:58:29 | 000,012,876 | ---- | C | MD5 = 7A7A04370A6030B9B0E8178DAD4A6E41] () kanji_2.uce -> C:\WINDOWS\SysNative\kanji_2.uce -> [2017/03/18 22:58:29 | 000,008,484 | ---- | C | MD5 = 529BBD63519BBD654EF328454019693F] () kanji_1.uce -> C:\WINDOWS\SysNative\kanji_1.uce -> [2017/03/18 22:58:29 | 000,006,948 | ---- | C | MD5 = 7C0C25F4BA1084C4ABBEEA2C74194C5F] () @language_notification_icon.png -> C:\WINDOWS\SysNative\@language_notification_icon.png -> [2017/03/18 22:58:29 | 000,000,600 | ---- | C | MD5 = 373CF57FF3DAAEEB629F90CE7226B30D] () @optionalfeatures.png -> C:\WINDOWS\SysNative\@optionalfeatures.png -> [2017/03/18 22:58:29 | 000,000,520 | ---- | C | MD5 = 46DACDA5036EBECEDF08427407E3017C] () SecurityAndMaintenance_Error.png -> C:\WINDOWS\SysNative\SecurityAndMaintenance_Error.png -> [2017/03/18 22:58:27 | 000,006,886 | ---- | C | MD5 = 099BA37F81C044F6B2609537FDB7D872] () SecurityAndMaintenance.png -> C:\WINDOWS\SysNative\SecurityAndMaintenance.png -> [2017/03/18 22:58:27 | 000,005,796 | ---- | C | MD5 = 00E5FCFD833151F7CBDE607E2F7AFEB4] () SecurityAndMaintenance_Alert.png -> C:\WINDOWS\SysNative\SecurityAndMaintenance_Alert.png -> [2017/03/18 22:58:27 | 000,002,626 | ---- | C | MD5 = 5719BFC9CFDA7A9C059A71A47A0E6383] () WindowsShell.Manifest -> C:\WINDOWS\WindowsShell.Manifest -> [2017/03/18 22:58:27 | 000,000,670 | RH-- | C | MD5 = C844CA459F3B209329984772269B6E56] () tcpmon.ini -> C:\WINDOWS\SysNative\tcpmon.ini -> [2017/03/18 22:58:24 | 000,060,124 | ---- | C | MD5 = D602CA245CC6774A0981B607F0675609] () sysprtj.sep -> C:\WINDOWS\SysNative\sysprtj.sep -> [2017/03/18 22:58:24 | 000,003,666 | ---- | C | MD5 = 58A67EC6B00A54A69DC364194CA171E0] () sysprint.sep -> C:\WINDOWS\SysNative\sysprint.sep -> [2017/03/18 22:58:24 | 000,003,317 | ---- | C | MD5 = 81B14F1AD906AC1CF9102796C97A54FE] () pcl.sep -> C:\WINDOWS\SysNative\pcl.sep -> [2017/03/18 22:58:24 | 000,000,150 | ---- | C | MD5 = 66D58077CC739E4B8166E33AB0BA4639] () pscript.sep -> C:\WINDOWS\SysNative\pscript.sep -> [2017/03/18 22:58:24 | 000,000,051 | ---- | C | MD5 = C09741B9886EF0D15EC3B1443352FB62] () tcpbidi.xml -> C:\WINDOWS\SysNative\tcpbidi.xml -> [2017/03/18 22:58:23 | 000,001,673 | ---- | C | MD5 = 31B010EF50D54D548B4B8B211F421318] () locale.nls -> C:\WINDOWS\SysWow64\locale.nls -> [2017/03/18 22:58:22 | 000,804,312 | ---- | C | MD5 = 2DB71E6DBE64FA74AEDCE71F81F01B64] () locale.nls -> C:\WINDOWS\SysNative\locale.nls -> [2017/03/18 22:58:22 | 000,804,312 | ---- | C | MD5 = 2DB71E6DBE64FA74AEDCE71F81F01B64] () chs_singlechar_pinyin.dat -> C:\WINDOWS\SysNative\chs_singlechar_pinyin.dat -> [2017/03/18 22:58:21 | 000,167,640 | ---- | C | MD5 = CCEAEFAA4DF2F399E9A179D942FEB23C] () @VpnToastIcon.png -> C:\WINDOWS\SysNative\@VpnToastIcon.png -> [2017/03/18 22:58:21 | 000,000,404 | ---- | C | MD5 = 1622DE67156496C78D6B7BE9B471645B] () HeatCore.dll -> C:\WINDOWS\SysNative\HeatCore.dll -> [2017/03/18 22:58:18 | 000,125,440 | ---- | C | MD5 = 762F865F75F21FCB260E7C95404B5110] () WindowsDefaultHeatProcessor.dll -> C:\WINDOWS\SysNative\WindowsDefaultHeatProcessor.dll -> [2017/03/18 22:58:18 | 000,098,304 | ---- | C | MD5 = 558D9282D5CEA82B2253B88017552F33] () @WiFiNotificationIcon.png -> C:\WINDOWS\SysNative\@WiFiNotificationIcon.png -> [2017/03/18 22:58:18 | 000,015,106 | ---- | C | MD5 = 7AC3EA1A5175106ED6467FF0C5315541] () TransformPPSToWlan.xslt -> C:\WINDOWS\SysNative\TransformPPSToWlan.xslt -> [2017/03/18 22:58:18 | 000,010,576 | ---- | C | MD5 = B88B8D017386A00D7724519F475317A0] () TransformPPSToWlanCredentials.xslt -> C:\WINDOWS\SysNative\TransformPPSToWlanCredentials.xslt -> [2017/03/18 22:58:18 | 000,001,688 | ---- | C | MD5 = 2F05390B798363D51EBE65D6320CD45E] () @BackgroundAccessToastIcon.png -> C:\WINDOWS\SysNative\@BackgroundAccessToastIcon.png -> [2017/03/18 22:58:18 | 000,000,450 | ---- | C | MD5 = 8E4B25CC8E98F63DBD54176DFAB539E0] () wpcmon.png -> C:\WINDOWS\SysNative\wpcmon.png -> [2017/03/18 22:58:17 | 000,004,687 | ---- | C | MD5 = C30C621748C66CE751B19B2788559A3E] () @EnrollmentToastIcon.png -> C:\WINDOWS\SysNative\@EnrollmentToastIcon.png -> [2017/03/18 22:58:17 | 000,000,330 | ---- | C | MD5 = 495C1F072039B434827A5FE0D9761E4D] () @WwanSimLockIcon.png -> C:\WINDOWS\SysNative\@WwanSimLockIcon.png -> [2017/03/18 22:58:13 | 000,000,352 | ---- | C | MD5 = 85D91E478AF18125007C531227FF6E59] () @WwanNotificationIcon.png -> C:\WINDOWS\SysNative\@WwanNotificationIcon.png -> [2017/03/18 22:58:13 | 000,000,155 | ---- | C | MD5 = D0FCF781D0801ABF5F74B54E98076A5B] () InputHost.dll -> C:\WINDOWS\SysNative\InputHost.dll -> [2017/03/18 22:58:10 | 000,138,000 | ---- | C | MD5 = 479B7966309A411BF4FC34898AC96557] () Windows.UI.Input.Inking.Analysis.dll -> C:\WINDOWS\SysNative\Windows.UI.Input.Inking.Analysis.dll -> [2017/03/18 22:58:07 | 003,826,176 | ---- | C | MD5 = BBE571D62392563AD426A8BEFB35C527] () xboxgipsynthetic.dll -> C:\WINDOWS\SysNative\xboxgipsynthetic.dll -> [2017/03/18 22:58:04 | 000,086,016 | ---- | C | MD5 = F1D3B38E1E93729388D0EABB37A09C99] () settings.dat -> C:\WINDOWS\SysNative\settings.dat -> [2017/03/18 22:58:03 | 000,008,192 | ---- | C | MD5 = A8308D2F3DDE0745E8B678BF69A2ECD0] () winrm.vbs -> C:\WINDOWS\SysNative\winrm.vbs -> [2017/03/18 22:58:01 | 000,204,105 | ---- | C | MD5 = 9D7684F978EBD77E6A3EA7EF1330B946] () hypervisor.mof -> C:\WINDOWS\SysNative\hypervisor.mof -> [2017/03/18 22:58:01 | 000,045,461 | ---- | C | MD5 = A565537F1580872AE5B95D0CA457D780] () wsmanconfig_schema.xml -> C:\WINDOWS\SysNative\wsmanconfig_schema.xml -> [2017/03/18 22:58:01 | 000,004,675 | ---- | C | MD5 = 930423065AB3F5DB52D5726C7FC66385] () WsmTxt.xsl -> C:\WINDOWS\SysNative\WsmTxt.xsl -> [2017/03/18 22:58:01 | 000,002,426 | ---- | C | MD5 = B2EDF82825D979928AE07CBE9C7A2160] () WsmPty.xsl -> C:\WINDOWS\SysNative\WsmPty.xsl -> [2017/03/18 22:58:01 | 000,001,559 | ---- | C | MD5 = D6CBFA113B69C491DE370E85EBAC80E9] () wpr.config.xml -> C:\WINDOWS\SysNative\wpr.config.xml -> [2017/03/18 22:58:01 | 000,000,726 | ---- | C | MD5 = B6B479B04C64AF5EF36C24EBDF278302] () removehypervisor.mof -> C:\WINDOWS\SysNative\removehypervisor.mof -> [2017/03/18 22:58:01 | 000,000,167 | ---- | C | MD5 = 692DC6EF573FFCDD9DFB55D1C783DB93] () winrm.cmd -> C:\WINDOWS\SysNative\winrm.cmd -> [2017/03/18 22:58:01 | 000,000,033 | ---- | C | MD5 = F80EEF72983614DB418A0C1FAE21EBC1] () DiskSnapshot.conf -> C:\WINDOWS\SysNative\DiskSnapshot.conf -> [2017/03/18 22:57:58 | 000,092,186 | ---- | C | MD5 = E82380D30048D73E4D4CB8C925F6E721] () psmodulediscoveryprovider.mof -> C:\WINDOWS\SysNative\psmodulediscoveryprovider.mof -> [2017/03/18 22:57:54 | 000,004,148 | ---- | C | MD5 = 007893E8374C766471239EB291BA8C17] () @WindowsHelloFaceToastIcon.png -> C:\WINDOWS\SysNative\@WindowsHelloFaceToastIcon.png -> [2017/03/18 22:57:53 | 000,000,714 | ---- | C | MD5 = 13EF2C8D799F7B6E9D8E3D6BACB9C779] () C_949.NLS -> C:\WINDOWS\SysNative\C_949.NLS -> [2017/03/18 22:57:50 | 000,196,642 | ---- | C | MD5 = D2558C26CDBF05740348451DB6A5B955] () C_950.NLS -> C:\WINDOWS\SysNative\C_950.NLS -> [2017/03/18 22:57:50 | 000,196,642 | ---- | C | MD5 = 8557D3EDA30586685DAD701ABA69D0DD] () C_936.NLS -> C:\WINDOWS\SysNative\C_936.NLS -> [2017/03/18 22:57:50 | 000,196,642 | ---- | C | MD5 = 17028718996FCBCEEE59F38F2D944281] () C_1361.NLS -> C:\WINDOWS\SysNative\C_1361.NLS -> [2017/03/18 22:57:50 | 000,189,986 | ---- | C | MD5 = A337491EA01F4BE0779A981CB7ACB999] () C_20005.NLS -> C:\WINDOWS\SysNative\C_20005.NLS -> [2017/03/18 22:57:50 | 000,187,938 | ---- | C | MD5 = 9C78D8BC06315FE97936167F5063F924] () C_20001.NLS -> C:\WINDOWS\SysNative\C_20001.NLS -> [2017/03/18 22:57:50 | 000,186,402 | ---- | C | MD5 = 48699E0B2F0B56E132D8200BA23E7176] () C_20003.NLS -> C:\WINDOWS\SysNative\C_20003.NLS -> [2017/03/18 22:57:50 | 000,185,378 | ---- | C | MD5 = 971E382CB790C07536F380C172848C92] () C_20932.NLS -> C:\WINDOWS\SysNative\C_20932.NLS -> [2017/03/18 22:57:50 | 000,180,770 | ---- | C | MD5 = 3FEF4EEFC8827A03B19124575B17205E] () C_20000.NLS -> C:\WINDOWS\SysNative\C_20000.NLS -> [2017/03/18 22:57:50 | 000,180,258 | ---- | C | MD5 = AAB0740BCBDCE107E0BABEE466905EB4] () C_20004.NLS -> C:\WINDOWS\SysNative\C_20004.NLS -> [2017/03/18 22:57:50 | 000,180,258 | ---- | C | MD5 = A47DBDBAEA690F4713185EBB5790BBFF] () C_20949.NLS -> C:\WINDOWS\SysNative\C_20949.NLS -> [2017/03/18 22:57:50 | 000,177,698 | ---- | C | MD5 = 232094E602642181A5A508975665D11B] () C_20002.NLS -> C:\WINDOWS\SysNative\C_20002.NLS -> [2017/03/18 22:57:50 | 000,173,602 | ---- | C | MD5 = A5D79E78E4412AC3C79DED42CD95C3EA] () C_20936.NLS -> C:\WINDOWS\SysNative\C_20936.NLS -> [2017/03/18 22:57:50 | 000,173,602 | ---- | C | MD5 = 32919D0DA9A834E8197203C4858ABCF6] () C_932.NLS -> C:\WINDOWS\SysNative\C_932.NLS -> [2017/03/18 22:57:50 | 000,162,850 | ---- | C | MD5 = 1955F78D9E7E16099DBABAB36FE3CC3C] () C_20261.NLS -> C:\WINDOWS\SysNative\C_20261.NLS -> [2017/03/18 22:57:50 | 000,139,810 | ---- | C | MD5 = 7D07126E0ED768C04B245A43AF2F94ED] () C_861.NLS -> C:\WINDOWS\SysNative\C_861.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | C | MD5 = DDE3D4D8C117B5A67F7898DA547F0E4E] () C_850.NLS -> C:\WINDOWS\SysNative\C_850.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | C | MD5 = CAAF621DC0936CCAC5106EA62F350E80] () C_864.NLS -> C:\WINDOWS\SysNative\C_864.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | C | MD5 = C58563DF50115E935BC811FFBCE1FC89] () C_720.NLS -> C:\WINDOWS\SysNative\C_720.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | C | MD5 = C050215D8D21DF5658E94187973FB89C] () C_737.NLS -> C:\WINDOWS\SysNative\C_737.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | C | MD5 = BAC7072B365F9648CA318154BA7E03EC] () C_860.NLS -> C:\WINDOWS\SysNative\C_860.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | C | MD5 = B124A84735113A699F0413F1D6875975] () C_862.NLS -> C:\WINDOWS\SysNative\C_862.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | C | MD5 = A99203A3397A9DB352C5D8DFBDA230A8] () C_857.NLS -> C:\WINDOWS\SysNative\C_857.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | C | MD5 = A8764750B22B528D85A691A52CB21856] () C_874.NLS -> C:\WINDOWS\SysNative\C_874.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | C | MD5 = 7A0EE54F89FFE0F038660BA580FB4440] () C_869.NLS -> C:\WINDOWS\SysNative\C_869.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | C | MD5 = 780C444EB16B65E6DE96F794A732DA12] () C_866.NLS -> C:\WINDOWS\SysNative\C_866.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | C | MD5 = 5CD475CA7B87844DE1E0483B536F9AAE] () C_858.NLS -> C:\WINDOWS\SysNative\C_858.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | C | MD5 = 42518F84AA761C84B4F5F366C6E424F1] () C_865.NLS -> C:\WINDOWS\SysNative\C_865.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | C | MD5 = 4091021638E2591CFAED8E1CF9D54E1F] () C_855.NLS -> C:\WINDOWS\SysNative\C_855.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | C | MD5 = 3E969213F35127D83DAB48FF1283E8E4] () C_852.NLS -> C:\WINDOWS\SysNative\C_852.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | C | MD5 = 21E928C8E6ED8EEAB0D1AAEE82ACDD76] () C_775.NLS -> C:\WINDOWS\SysNative\C_775.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | C | MD5 = 0E61D6CD6391CE9BF007BAF0DC905320] () C_863.NLS -> C:\WINDOWS\SysNative\C_863.NLS -> [2017/03/18 22:57:50 | 000,066,594 | ---- | C | MD5 = 0220888BDD435156DE91C5D390FE0166] () C_28591.NLS -> C:\WINDOWS\SysNative\C_28591.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = E45ECA3F540E09C039710EF00219A61B] () C_28595.NLS -> C:\WINDOWS\SysNative\C_28595.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = E22D1B9AC7854C0A654E4C4232074E49] () C_1253.NLS -> C:\WINDOWS\SysNative\C_1253.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = E1858EDF032363E84922CDB91E75797A] () C_20866.NLS -> C:\WINDOWS\SysNative\C_20866.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = DD7F9900C070890C59417B5271581ED3] () C_28605.NLS -> C:\WINDOWS\SysNative\C_28605.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = DA11C0F72C41A6B3CA24FB83E52D7043] () C_1255.NLS -> C:\WINDOWS\SysNative\C_1255.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = C386BDB1A653A4390313AE192EFF2732] () C_28599.NLS -> C:\WINDOWS\SysNative\C_28599.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = C37A21EE1ADFDC13FC707D97073148ED] () C_28598.NLS -> C:\WINDOWS\SysNative\C_28598.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = BDD5D78F5DB2204A9247C53861357FAF] () C_28597.NLS -> C:\WINDOWS\SysNative\C_28597.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = B537ACFAB9E70F0EF48DB696A08ADC81] () C_1257.NLS -> C:\WINDOWS\SysNative\C_1257.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = AF381A5B093736A3A28EFDC1BB4F5FCB] () C_1254.NLS -> C:\WINDOWS\SysNative\C_1254.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = 808CCC573F51DC7AB3D5151A2D2AF1BF] () C_708.NLS -> C:\WINDOWS\SysNative\C_708.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = 77F127766D758EB2C6451E221A0C7F7D] () C_1256.NLS -> C:\WINDOWS\SysNative\C_1256.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = 6F42B3E7ED97C9EAC38615B907F08721] () C_20127.NLS -> C:\WINDOWS\SysNative\C_20127.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = 6CB26848BCDAA361B6EE21264FB362C3] () C_28594.NLS -> C:\WINDOWS\SysNative\C_28594.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = 5D038EEABA8EA438F6B5ABD5E91BC851] () C_28596.NLS -> C:\WINDOWS\SysNative\C_28596.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = 4D4C7CED88E5621F21A4911A44CADACC] () C_1258.NLS -> C:\WINDOWS\SysNative\C_1258.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = 43B0D0C38C885CCF742740FFC1F00535] () C_21866.NLS -> C:\WINDOWS\SysNative\C_21866.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = 41034D46626ECC2CC635FD884E878D6D] () c_28603.nls -> C:\WINDOWS\SysNative\c_28603.nls -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = 35448F3A71EBBECF8E997FAD3A99327D] () C_1250.NLS -> C:\WINDOWS\SysNative\C_1250.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = 2E0B152ED60DE2431DFC0C436363385E] () C_28592.NLS -> C:\WINDOWS\SysNative\C_28592.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = 0F8F998263E4C090C9C9B31D84C41654] () C_1251.NLS -> C:\WINDOWS\SysNative\C_1251.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = 0E91B896B81CF0B7DF62C824224B891A] () C_28593.NLS -> C:\WINDOWS\SysNative\C_28593.NLS -> [2017/03/18 22:57:50 | 000,066,082 | ---- | C | MD5 = 082453B28A3F457FFF330DBDDB32FF45] () AppxProvisioning.xml -> C:\WINDOWS\SysNative\AppxProvisioning.xml -> [2017/03/18 22:57:50 | 000,002,778 | ---- | C | MD5 = 331C418378E2F0B02E0EBC968006986C] () WimBootCompress.ini -> C:\WINDOWS\SysNative\WimBootCompress.ini -> [2017/03/18 22:57:50 | 000,002,307 | ---- | C | MD5 = BB2D1DF427C9284DE64DC66A6F1CC2AD] () mlang.dat -> C:\WINDOWS\SysWow64\mlang.dat -> [2017/03/18 22:57:47 | 000,673,088 | ---- | C | MD5 = ED434A3EBE29070A7E0138C42482EB93] () mlang.dat -> C:\WINDOWS\SysNative\mlang.dat -> [2017/03/18 22:57:47 | 000,673,088 | ---- | C | MD5 = ED434A3EBE29070A7E0138C42482EB93] () ResPriHMImageList -> C:\WINDOWS\SysNative\ResPriHMImageList -> [2017/03/18 22:57:47 | 000,009,055 | ---- | C | MD5 = D9DF00023703568AE6B4303E3C5C90BB] () ResPriImageList -> C:\WINDOWS\SysNative\ResPriImageList -> [2017/03/18 22:57:47 | 000,008,483 | ---- | C | MD5 = 99C7924C7268BABB5C4E3CFD2EE03331] () normidna.nls -> C:\WINDOWS\SysNative\normidna.nls -> [2017/03/18 22:57:46 | 000,080,078 | ---- | C | MD5 = 597C96281C55868CDBB06E22ADAEDCA9] () normnfkc.nls -> C:\WINDOWS\SysNative\normnfkc.nls -> [2017/03/18 22:57:46 | 000,071,824 | ---- | C | MD5 = BBD02FA36D24E43EF5FF51266D1B71A4] () normnfkd.nls -> C:\WINDOWS\SysNative\normnfkd.nls -> [2017/03/18 22:57:46 | 000,065,698 | ---- | C | MD5 = A492147939DE74E189BB270144CDA7FB] () normnfc.nls -> C:\WINDOWS\SysNative\normnfc.nls -> [2017/03/18 22:57:46 | 000,050,112 | ---- | C | MD5 = 9814F3AA6D4992B2C063D01B1D45E526] () normnfd.nls -> C:\WINDOWS\SysNative\normnfd.nls -> [2017/03/18 22:57:46 | 000,043,566 | ---- | C | MD5 = 2288FE4F6518F8A836E1FE31E808C401] () @AudioToastIcon.png -> C:\WINDOWS\SysNative\@AudioToastIcon.png -> [2017/03/18 22:57:42 | 000,000,308 | ---- | C | MD5 = 82C37C3E27020AF6C2E018E944284676] () C_437.NLS -> C:\WINDOWS\SysWow64\C_437.NLS -> [2017/03/18 22:57:39 | 000,066,594 | ---- | C | MD5 = 0BD539284D746E022BDA27C1F85A525A] () C_437.NLS -> C:\WINDOWS\SysNative\C_437.NLS -> [2017/03/18 22:57:39 | 000,066,594 | ---- | C | MD5 = 0BD539284D746E022BDA27C1F85A525A] () C_1252.NLS -> C:\WINDOWS\SysWow64\C_1252.NLS -> [2017/03/18 22:57:39 | 000,066,082 | ---- | C | MD5 = ACB769EC498FB62316EAB45ADB680F22] () C_1252.NLS -> C:\WINDOWS\SysNative\C_1252.NLS -> [2017/03/18 22:57:39 | 000,066,082 | ---- | C | MD5 = ACB769EC498FB62316EAB45ADB680F22] () l_intl.nls -> C:\WINDOWS\SysWow64\l_intl.nls -> [2017/03/18 22:57:39 | 000,009,926 | ---- | C | MD5 = 3EC1A12B4841F7CCD65B12D792FC8FDA] () l_intl.nls -> C:\WINDOWS\SysNative\l_intl.nls -> [2017/03/18 22:57:39 | 000,009,926 | ---- | C | MD5 = 3EC1A12B4841F7CCD65B12D792FC8FDA] () IHDS.dll -> C:\WINDOWS\SysNative\IHDS.dll -> [2017/03/18 22:57:35 | 000,193,024 | ---- | C | MD5 = 6DF9BA3AD0CD866EE939C4C49CEA7B30] () odbcconf.rsp -> C:\WINDOWS\SysNative\odbcconf.rsp -> [2017/03/18 22:57:30 | 000,000,263 | ---- | C | MD5 = 5D27362AF3BCAA75A418F5416A35934E] () slmgr.vbs -> C:\WINDOWS\SysNative\slmgr.vbs -> [2017/03/18 22:57:29 | 000,142,904 | ---- | C | MD5 = 3903BCAB32A4A853DFA54962112D4D02] () @edptoastimage.png -> C:\WINDOWS\SysNative\@edptoastimage.png -> [2017/03/18 22:57:25 | 000,014,791 | ---- | C | MD5 = 2E04FA797218711D9ED5958CD2B656AB] () @bitlockertoastimage.png -> C:\WINDOWS\SysNative\@bitlockertoastimage.png -> [2017/03/18 22:57:25 | 000,000,199 | ---- | C | MD5 = 3937359E324E15F6A7A7092D4DAEBD64] () MBR2GPT.EXE -> C:\WINDOWS\SysNative\MBR2GPT.EXE -> [2017/03/18 22:57:20 | 000,777,728 | ---- | C | MD5 = A8A402B0C566B1AF97F35DD492C4A6B6] () comexp.msc -> C:\WINDOWS\SysNative\comexp.msc -> [2017/03/18 22:57:20 | 000,124,118 | ---- | C | MD5 = AC27746CE65F3A7A1329BEBA7A64E08F] () perfmon.msc -> C:\WINDOWS\SysNative\perfmon.msc -> [2017/03/18 22:57:19 | 000,145,519 | ---- | C | MD5 = 9BE46DD971FBA66D84567679D3D414EC] () WdsUnattendTemplate.xml -> C:\WINDOWS\SysNative\WdsUnattendTemplate.xml -> [2017/03/18 22:57:19 | 000,000,614 | ---- | C | MD5 = 6EDD021A8B6457DDE09DE7B7FA4E8C8B] () boot.sdi -> C:\WINDOWS\SysNative\boot.sdi -> [2017/03/18 22:57:16 | 003,170,304 | ---- | C | MD5 = 22D9945B4AAE36DD59620A918F2E65F4] () srms.dat -> C:\WINDOWS\SysNative\srms.dat -> [2017/03/18 22:57:16 | 000,057,987 | ---- | C | MD5 = 5128BC123224124D67397A1BE698431C] () diskmgmt.msc -> C:\WINDOWS\SysNative\diskmgmt.msc -> [2017/03/18 22:57:15 | 000,047,682 | ---- | C | MD5 = E343F7FD42210043208A295CBD6E251C] () C_10002.NLS -> C:\WINDOWS\SysWow64\C_10002.NLS -> [2017/03/18 22:57:12 | 000,195,618 | ---- | C | MD5 = 05C0B7F8FA403E6DA75671685A58A940] () C_10002.NLS -> C:\WINDOWS\SysNative\C_10002.NLS -> [2017/03/18 22:57:12 | 000,195,618 | ---- | C | MD5 = 05C0B7F8FA403E6DA75671685A58A940] () C_10003.NLS -> C:\WINDOWS\SysWow64\C_10003.NLS -> [2017/03/18 22:57:12 | 000,177,698 | ---- | C | MD5 = 1855E6398A2E937E47809FD8B83647E4] () C_10003.NLS -> C:\WINDOWS\SysNative\C_10003.NLS -> [2017/03/18 22:57:12 | 000,177,698 | ---- | C | MD5 = 1855E6398A2E937E47809FD8B83647E4] () C_10008.NLS -> C:\WINDOWS\SysWow64\C_10008.NLS -> [2017/03/18 22:57:12 | 000,173,602 | ---- | C | MD5 = 23C1E8F026FB81824388E8EC457CF75E] () C_10008.NLS -> C:\WINDOWS\SysNative\C_10008.NLS -> [2017/03/18 22:57:12 | 000,173,602 | ---- | C | MD5 = 23C1E8F026FB81824388E8EC457CF75E] () C_10001.NLS -> C:\WINDOWS\SysWow64\C_10001.NLS -> [2017/03/18 22:57:12 | 000,162,850 | ---- | C | MD5 = 157A2706E78D7B581642F6F787EC37E5] () C_10001.NLS -> C:\WINDOWS\SysNative\C_10001.NLS -> [2017/03/18 22:57:12 | 000,162,850 | ---- | C | MD5 = 157A2706E78D7B581642F6F787EC37E5] () C_1144.NLS -> C:\WINDOWS\SysWow64\C_1144.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = FD2D28063FB4FD12BC6EF18A6D10769E] () C_1144.NLS -> C:\WINDOWS\SysNative\C_1144.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = FD2D28063FB4FD12BC6EF18A6D10769E] () C_10021.NLS -> C:\WINDOWS\SysWow64\C_10021.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = F3C139AD492C4F73353057442E6995CE] () C_10021.NLS -> C:\WINDOWS\SysNative\C_10021.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = F3C139AD492C4F73353057442E6995CE] () C_1141.NLS -> C:\WINDOWS\SysWow64\C_1141.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = F0C0509A9A633332B99F009D1DAA7612] () C_1141.NLS -> C:\WINDOWS\SysNative\C_1141.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = F0C0509A9A633332B99F009D1DAA7612] () C_10081.NLS -> C:\WINDOWS\SysWow64\C_10081.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = EFFDFF60A38CF648811BBCDD722ECF5E] () C_10081.NLS -> C:\WINDOWS\SysNative\C_10081.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = EFFDFF60A38CF648811BBCDD722ECF5E] () C_20107.NLS -> C:\WINDOWS\SysWow64\C_20107.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = EB7AD61171B280F1CA90CF3AC0F43717] () C_20107.NLS -> C:\WINDOWS\SysNative\C_20107.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = EB7AD61171B280F1CA90CF3AC0F43717] () C_20924.NLS -> C:\WINDOWS\SysWow64\C_20924.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = E4642396D2098F65C7E88C0AC1EE7379] () C_20924.NLS -> C:\WINDOWS\SysNative\C_20924.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = E4642396D2098F65C7E88C0AC1EE7379] () C_20423.NLS -> C:\WINDOWS\SysWow64\C_20423.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = E3AAE11859C598FB936017816567FD96] () C_20423.NLS -> C:\WINDOWS\SysNative\C_20423.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = E3AAE11859C598FB936017816567FD96] () C_20284.NLS -> C:\WINDOWS\SysWow64\C_20284.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = E37E1766C1D7C21C5EFAD0F20D923039] () C_20284.NLS -> C:\WINDOWS\SysNative\C_20284.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = E37E1766C1D7C21C5EFAD0F20D923039] () C_20833.NLS -> C:\WINDOWS\SysWow64\C_20833.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = E27DCCEEFABD04FC7D81BE65B233C653] () C_20833.NLS -> C:\WINDOWS\SysNative\C_20833.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = E27DCCEEFABD04FC7D81BE65B233C653] () C_10029.NLS -> C:\WINDOWS\SysWow64\C_10029.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = D2CA471D36A69D17F82D5C1B64FAEE39] () C_10029.NLS -> C:\WINDOWS\SysNative\C_10029.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = D2CA471D36A69D17F82D5C1B64FAEE39] () C_1146.NLS -> C:\WINDOWS\SysWow64\C_1146.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = D288777605A2F4E12A9C6E360CE44987] () C_1146.NLS -> C:\WINDOWS\SysNative\C_1146.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = D288777605A2F4E12A9C6E360CE44987] () C_20108.NLS -> C:\WINDOWS\SysWow64\C_20108.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = C8FBDF3805D2F229DE3CA2EF5A248CCC] () C_20108.NLS -> C:\WINDOWS\SysNative\C_20108.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = C8FBDF3805D2F229DE3CA2EF5A248CCC] () C_20297.NLS -> C:\WINDOWS\SysWow64\C_20297.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = C3581190325F812CB7F5F928E722F132] () C_20297.NLS -> C:\WINDOWS\SysNative\C_20297.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = C3581190325F812CB7F5F928E722F132] () C_20285.NLS -> C:\WINDOWS\SysWow64\C_20285.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = BCD8AC4CE06E227A2FBA81862B5F0D42] () C_20285.NLS -> C:\WINDOWS\SysNative\C_20285.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = BCD8AC4CE06E227A2FBA81862B5F0D42] () C_20269.NLS -> C:\WINDOWS\SysWow64\C_20269.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = BA660D994876755C9E90871B919BB5EC] () C_20269.NLS -> C:\WINDOWS\SysNative\C_20269.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = BA660D994876755C9E90871B919BB5EC] () C_20290.NLS -> C:\WINDOWS\SysWow64\C_20290.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = B2B3B6A63D9A1837673A2B2C44455A20] () C_20290.NLS -> C:\WINDOWS\SysNative\C_20290.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = B2B3B6A63D9A1837673A2B2C44455A20] () C_20278.NLS -> C:\WINDOWS\SysWow64\C_20278.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = AF4F8AEC071515D6FC6E8203A0DBF655] () C_20278.NLS -> C:\WINDOWS\SysNative\C_20278.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = AF4F8AEC071515D6FC6E8203A0DBF655] () C_10007.NLS -> C:\WINDOWS\SysWow64\C_10007.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = AF4A866226BD04ACF06135088D75BB63] () C_10007.NLS -> C:\WINDOWS\SysNative\C_10007.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = AF4A866226BD04ACF06135088D75BB63] () C_10000.NLS -> C:\WINDOWS\SysWow64\C_10000.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = A716B23BA6632B7F0DABB5B8AC078F27] () C_10000.NLS -> C:\WINDOWS\SysNative\C_10000.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = A716B23BA6632B7F0DABB5B8AC078F27] () C_20838.NLS -> C:\WINDOWS\SysWow64\C_20838.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = A124CAA7470CCF0354A57AB30808293F] () C_20838.NLS -> C:\WINDOWS\SysNative\C_20838.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = A124CAA7470CCF0354A57AB30808293F] () C_10082.NLS -> C:\WINDOWS\SysWow64\C_10082.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 9CA501D2A8E6909C5B2E8C9274682BF1] () C_10082.NLS -> C:\WINDOWS\SysNative\C_10082.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 9CA501D2A8E6909C5B2E8C9274682BF1] () C_20277.NLS -> C:\WINDOWS\SysWow64\C_20277.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 947B06BC793BFF9A4808C8CF57B0E273] () C_20277.NLS -> C:\WINDOWS\SysNative\C_20277.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 947B06BC793BFF9A4808C8CF57B0E273] () C_20273.NLS -> C:\WINDOWS\SysWow64\C_20273.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 947813F75A56A20EF65DC9E479EBEA4D] () C_20273.NLS -> C:\WINDOWS\SysNative\C_20273.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 947813F75A56A20EF65DC9E479EBEA4D] () C_500.NLS -> C:\WINDOWS\SysWow64\C_500.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 90F5232D99D17AA1BBA3CE2228CF1B2A] () C_500.NLS -> C:\WINDOWS\SysNative\C_500.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 90F5232D99D17AA1BBA3CE2228CF1B2A] () C_875.NLS -> C:\WINDOWS\SysWow64\C_875.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 8BE0D77A873730B4EB1DAB7C6622CD46] () C_875.NLS -> C:\WINDOWS\SysNative\C_875.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 8BE0D77A873730B4EB1DAB7C6622CD46] () C_21025.NLS -> C:\WINDOWS\SysWow64\C_21025.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 85D74656F26B33F21B5129252B1578D0] () C_21025.NLS -> C:\WINDOWS\SysNative\C_21025.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 85D74656F26B33F21B5129252B1578D0] () C_20880.NLS -> C:\WINDOWS\SysWow64\C_20880.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 8464E9CAB0DA3F209320D782631DD5A2] () C_20880.NLS -> C:\WINDOWS\SysNative\C_20880.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 8464E9CAB0DA3F209320D782631DD5A2] () C_1047.NLS -> C:\WINDOWS\SysWow64\C_1047.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 7CB90B3604A45355218E6A20BD7B7A0B] () C_1047.NLS -> C:\WINDOWS\SysNative\C_1047.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 7CB90B3604A45355218E6A20BD7B7A0B] () C_1147.NLS -> C:\WINDOWS\SysWow64\C_1147.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 7623492F4FCB5E317578F897A7476E16] () C_1147.NLS -> C:\WINDOWS\SysNative\C_1147.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 7623492F4FCB5E317578F897A7476E16] () C_10005.NLS -> C:\WINDOWS\SysWow64\C_10005.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 72233F1A1D788A84D4687A258CC97CBF] () C_10005.NLS -> C:\WINDOWS\SysNative\C_10005.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 72233F1A1D788A84D4687A258CC97CBF] () C_1026.NLS -> C:\WINDOWS\SysWow64\C_1026.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 71E7F8B0F28585439E95B3D3B296984B] () C_1026.NLS -> C:\WINDOWS\SysNative\C_1026.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 71E7F8B0F28585439E95B3D3B296984B] () C_10010.NLS -> C:\WINDOWS\SysWow64\C_10010.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 6F8A509550FE8C92D07EE0143BF29BA1] () C_10010.NLS -> C:\WINDOWS\SysNative\C_10010.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 6F8A509550FE8C92D07EE0143BF29BA1] () C_1142.NLS -> C:\WINDOWS\SysWow64\C_1142.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 69316F1B309BA5AC371EFD09267BD670] () C_1142.NLS -> C:\WINDOWS\SysNative\C_1142.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 69316F1B309BA5AC371EFD09267BD670] () C_20871.NLS -> C:\WINDOWS\SysWow64\C_20871.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 61FBE3736279973CBA71EE0CDEAAAA6C] () C_20871.NLS -> C:\WINDOWS\SysNative\C_20871.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 61FBE3736279973CBA71EE0CDEAAAA6C] () C_20420.NLS -> C:\WINDOWS\SysWow64\C_20420.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 4FEA99284FA34D8E69C8D865D9426D2B] () C_20420.NLS -> C:\WINDOWS\SysNative\C_20420.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 4FEA99284FA34D8E69C8D865D9426D2B] () C_870.NLS -> C:\WINDOWS\SysWow64\C_870.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 48841546AC3B8698C93991E99851F0CF] () C_870.NLS -> C:\WINDOWS\SysNative\C_870.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 48841546AC3B8698C93991E99851F0CF] () C_1149.NLS -> C:\WINDOWS\SysWow64\C_1149.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 484A1C398A16DD464E8468046526985C] () C_1149.NLS -> C:\WINDOWS\SysNative\C_1149.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 484A1C398A16DD464E8468046526985C] () C_1143.NLS -> C:\WINDOWS\SysWow64\C_1143.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 3EA8E21340AF59C80CB35A6A53FE52D7] () C_1143.NLS -> C:\WINDOWS\SysNative\C_1143.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 3EA8E21340AF59C80CB35A6A53FE52D7] () C_20424.NLS -> C:\WINDOWS\SysWow64\C_20424.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 3A0FA5F25C5FF909766347627B446511] () C_20424.NLS -> C:\WINDOWS\SysNative\C_20424.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 3A0FA5F25C5FF909766347627B446511] () C_1148.NLS -> C:\WINDOWS\SysWow64\C_1148.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 32CA3320D8C8F37770764BDFF1C2FE15] () C_1148.NLS -> C:\WINDOWS\SysNative\C_1148.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 32CA3320D8C8F37770764BDFF1C2FE15] () C_10017.NLS -> C:\WINDOWS\SysWow64\C_10017.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 314E85390BEBDAE5D1E11DB2D8CBC6E9] () C_10017.NLS -> C:\WINDOWS\SysNative\C_10017.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 314E85390BEBDAE5D1E11DB2D8CBC6E9] () C_20280.NLS -> C:\WINDOWS\SysWow64\C_20280.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 2AB1DF9DFBD49E343AF5D5FA7D17024E] () C_20280.NLS -> C:\WINDOWS\SysNative\C_20280.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 2AB1DF9DFBD49E343AF5D5FA7D17024E] () C_10079.NLS -> C:\WINDOWS\SysWow64\C_10079.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 29B5AF5B12D955C316821F277C5B4D7D] () C_10079.NLS -> C:\WINDOWS\SysNative\C_10079.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 29B5AF5B12D955C316821F277C5B4D7D] () C_1140.NLS -> C:\WINDOWS\SysWow64\C_1140.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 27E1CBE7F0DF21CA0892D16FD1961F29] () C_1140.NLS -> C:\WINDOWS\SysNative\C_1140.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 27E1CBE7F0DF21CA0892D16FD1961F29] () C_20105.NLS -> C:\WINDOWS\SysWow64\C_20105.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 1F55C295A71290992C95CF1F41CDB0E4] () C_20105.NLS -> C:\WINDOWS\SysNative\C_20105.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 1F55C295A71290992C95CF1F41CDB0E4] () C_10004.NLS -> C:\WINDOWS\SysWow64\C_10004.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 1DBBCC1B712C2674BDF29A05A5DD366E] () C_10004.NLS -> C:\WINDOWS\SysNative\C_10004.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 1DBBCC1B712C2674BDF29A05A5DD366E] () C_20905.NLS -> C:\WINDOWS\SysWow64\C_20905.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 1ADCE2879B486ACB126750EF18B2E658] () C_20905.NLS -> C:\WINDOWS\SysNative\C_20905.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 1ADCE2879B486ACB126750EF18B2E658] () C_1145.NLS -> C:\WINDOWS\SysWow64\C_1145.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 123B711FF0BF69B4462C279D342380AF] () C_1145.NLS -> C:\WINDOWS\SysNative\C_1145.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 123B711FF0BF69B4462C279D342380AF] () C_037.NLS -> C:\WINDOWS\SysWow64\C_037.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 0D143112394173967A3647096F74E743] () C_037.NLS -> C:\WINDOWS\SysNative\C_037.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 0D143112394173967A3647096F74E743] () C_10006.NLS -> C:\WINDOWS\SysWow64\C_10006.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 0A206B5CACD3CA70D2044DA691304765] () C_10006.NLS -> C:\WINDOWS\SysNative\C_10006.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 0A206B5CACD3CA70D2044DA691304765] () C_21027.NLS -> C:\WINDOWS\SysWow64\C_21027.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 07CD5D103AEB4AD2B624EE1ADBFAA456] () C_21027.NLS -> C:\WINDOWS\SysNative\C_21027.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 07CD5D103AEB4AD2B624EE1ADBFAA456] () C_20106.NLS -> C:\WINDOWS\SysWow64\C_20106.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 00E11B5E8C252190DEC893FD84D3B06D] () C_20106.NLS -> C:\WINDOWS\SysNative\C_20106.NLS -> [2017/03/18 22:57:12 | 000,066,082 | ---- | C | MD5 = 00E11B5E8C252190DEC893FD84D3B06D] () onlinesetup.cmd -> C:\WINDOWS\SysNative\onlinesetup.cmd -> [2017/03/18 22:57:12 | 000,000,843 | ---- | C | MD5 = 2901049544FDF863362FABA2363EB647] () devmgmt.msc -> C:\WINDOWS\SysNative\devmgmt.msc -> [2017/03/18 22:57:08 | 000,145,622 | ---- | C | MD5 = 383A3B36999FABD8DCA7691B38713C40] () tpm.msc -> C:\WINDOWS\SysNative\tpm.msc -> [2017/03/18 22:57:08 | 000,144,862 | ---- | C | MD5 = 9359341F78E00134B527814B4868ECD5] () RestartManager.mof -> C:\WINDOWS\SysNative\RestartManager.mof -> [2017/03/18 22:57:08 | 000,000,714 | ---- | C | MD5 = 43E7D0AB6A8564F5BF375FBF0934FAD1] () RestartManagerUninstall.mof -> C:\WINDOWS\SysNative\RestartManagerUninstall.mof -> [2017/03/18 22:57:08 | 000,000,176 | ---- | C | MD5 = 3F75A221A01F68D6CE67FE99A868BD8F] () DefaultHrtfs.bin -> C:\WINDOWS\SysNative\DefaultHrtfs.bin -> [2017/03/18 22:57:05 | 004,227,116 | ---- | C | MD5 = 618BA9E529EAB7E11DBA43469481835F] () gm.dls -> C:\WINDOWS\SysNative\drivers\gm.dls -> [2017/03/18 22:57:05 | 003,440,660 | ---- | C | MD5 = 7F29903CB8F5590D52DB0C9F97049A25] () Windows.Mirage.dll -> C:\WINDOWS\SysNative\Windows.Mirage.dll -> [2017/03/18 22:57:05 | 002,447,360 | ---- | C | MD5 = C10804CE8AFEA61D41F18E0B8DC25DE2] () ssdm.dll -> C:\WINDOWS\SysNative\ssdm.dll -> [2017/03/18 22:57:05 | 000,377,344 | ---- | C | MD5 = E042A078EDE878E1F489D08F045D2205] () LargeRoom.bin -> C:\WINDOWS\SysNative\LargeRoom.bin -> [2017/03/18 22:57:05 | 000,149,044 | ---- | C | MD5 = 050BC9351A3386458B696F8BCA78B27B] () fsmgmt.msc -> C:\WINDOWS\SysNative\fsmgmt.msc -> [2017/03/18 22:57:05 | 000,144,909 | ---- | C | MD5 = 97AED7FC6C2B38F34CA1A3C10D2F5A60] () WmiMgmt.msc -> C:\WINDOWS\SysNative\WmiMgmt.msc -> [2017/03/18 22:57:05 | 000,144,673 | ---- | C | MD5 = E0ADDCE97EE521C9AC4F53EE17A05BD5] () compmgmt.msc -> C:\WINDOWS\SysNative\compmgmt.msc -> [2017/03/18 22:57:05 | 000,113,256 | ---- | C | MD5 = F04C119C159670C9271623454BEC3254] () MediumRoom.bin -> C:\WINDOWS\SysNative\MediumRoom.bin -> [2017/03/18 22:57:05 | 000,110,024 | ---- | C | MD5 = BC74BDA8DC53F722C2CA686071600AE2] () services.msc -> C:\WINDOWS\SysNative\services.msc -> [2017/03/18 22:57:05 | 000,092,746 | ---- | C | MD5 = 2D8D95469EC26AAA986AAD1CE424E631] () AverageRoom.bin -> C:\WINDOWS\SysNative\AverageRoom.bin -> [2017/03/18 22:57:05 | 000,079,516 | ---- | C | MD5 = EFFD0ABB4DDD2CCDD511F903D042AD5B] () SmallRoom.bin -> C:\WINDOWS\SysNative\SmallRoom.bin -> [2017/03/18 22:57:05 | 000,069,776 | ---- | C | MD5 = 1C6F12AA3D178A0A953E8005B3CD4CDE] () certlm.msc -> C:\WINDOWS\SysNative\certlm.msc -> [2017/03/18 22:57:05 | 000,063,081 | ---- | C | MD5 = DCCA682FEA47192106EC4F2001EAE182] () certmgr.msc -> C:\WINDOWS\SysNative\certmgr.msc -> [2017/03/18 22:57:05 | 000,063,070 | ---- | C | MD5 = 4C7390A1FF613FBBF59141CA0BE8AE89] () OutdoorAudioEnvironment.bin -> C:\WINDOWS\SysNative\OutdoorAudioEnvironment.bin -> [2017/03/18 22:57:05 | 000,046,908 | ---- | C | MD5 = 42D2360079B1DF3230024AE920737367] () SpectrumSyncClient.dll -> C:\WINDOWS\SysNative\SpectrumSyncClient.dll -> [2017/03/18 22:57:05 | 000,037,376 | ---- | C | MD5 = 76F8BDA4D4AA4AA4C4D84C2E2660E6FF] () eventvwr.msc -> C:\WINDOWS\SysNative\eventvwr.msc -> [2017/03/18 22:57:03 | 000,145,127 | ---- | C | MD5 = 9BDCCC1A87CCA27ADEACE8144F385165] () taskschd.msc -> C:\WINDOWS\SysNative\taskschd.msc -> [2017/03/18 22:57:03 | 000,145,059 | ---- | C | MD5 = AB2A58839814D2EA5EE621B5DBF944FF] () BthpanContextHandler.dll -> C:\WINDOWS\SysNative\BthpanContextHandler.dll -> [2017/03/18 22:57:03 | 000,092,672 | ---- | C | MD5 = B13766AFE48C3CF775F53CE90488F7DE] () mib.bin -> C:\WINDOWS\mib.bin -> [2017/03/18 22:57:03 | 000,043,131 | ---- | C | MD5 = 23AF90D2355D8C83AA4567EF1763B467] () azman.msc -> C:\WINDOWS\SysNative\azman.msc -> [2017/03/18 22:57:03 | 000,041,587 | ---- | C | MD5 = C5B3E109B3B88B0CC420304EA7BF6B70] () EventViewer_EventDetails.xsl -> C:\WINDOWS\SysNative\EventViewer_EventDetails.xsl -> [2017/03/18 22:57:03 | 000,017,935 | ---- | C | MD5 = 93E76CF7B04EC33A1E9E0FD7546D3603] () NdfEventView.xml -> C:\WINDOWS\SysNative\NdfEventView.xml -> [2017/03/18 22:57:03 | 000,000,565 | ---- | C | MD5 = 86166DAA04A6C154826508304CC6D4AC] () WF.msc -> C:\WINDOWS\SysNative\WF.msc -> [2017/03/18 22:57:02 | 000,115,091 | ---- | C | MD5 = 9ED84D86676B79DFC7A9DD1B537E1883] () gatherNetworkInfo.vbs -> C:\WINDOWS\SysNative\gatherNetworkInfo.vbs -> [2017/03/18 22:57:02 | 000,091,132 | ---- | C | MD5 = D07F2281427BD098356EE74B6CB26B86] () NetTrace.PLA.Diagnostics.xml -> C:\WINDOWS\SysNative\NetTrace.PLA.Diagnostics.xml -> [2017/03/18 22:57:02 | 000,021,656 | ---- | C | MD5 = C146E873B22C3B300B21A859FE66C27A] () rasctrnm.h -> C:\WINDOWS\SysNative\rasctrnm.h -> [2017/03/18 22:57:02 | 000,001,820 | ---- | C | MD5 = 3A77C18665A4C8428768CE186A5BC1EF] () xwizard.dtd -> C:\WINDOWS\SysNative\xwizard.dtd -> [2017/03/18 22:57:01 | 000,004,014 | ---- | C | MD5 = 684DDBD6ED4066B10660A3A06655B59A] () ApnDatabase.xml -> C:\WINDOWS\SysNative\ApnDatabase.xml -> [2017/03/18 22:57:00 | 000,446,124 | ---- | C | MD5 = E21E74D118E16FF9BA42A6F87F34E9B0] () WMSysPr9.prx -> C:\WINDOWS\WMSysPr9.prx -> [2017/03/18 22:56:51 | 000,316,640 | ---- | C | MD5 = E7E4D8D7340DA6934B9EA81CBB21374C] () ieuinit.inf -> C:\WINDOWS\SysNative\ieuinit.inf -> [2017/03/18 22:56:50 | 000,003,458 | ---- | C | MD5 = 6B31D08801D3A3F51B59FB1DB14E4A01] () @WindowsUpdateToastIcon.png -> C:\WINDOWS\SysNative\@WindowsUpdateToastIcon.png -> [2017/03/18 22:56:40 | 000,000,518 | ---- | C | MD5 = F553B252FEC3134D4F5303D9B25298B3] () SDFRd.sys -> C:\WINDOWS\SysNative\drivers\SDFRd.sys -> [2017/03/18 22:56:26 | 000,031,128 | ---- | C | MD5 = 464B615872981015AC4FEEBDEA83A063] () im-fre.exe -> C:\WINDOWS\SysNative\im-fre.exe -> [2017/03/10 03:36:06 | 000,713,632 | ---- | C | MD5 = FC70C3475E474302DC500F735442BCD2] () vssMgr.exe -> C:\WINDOWS\vssMgr.exe -> [2016/12/29 10:21:02 | 000,097,784 | ---- | C | MD5 = 3135B6A59B0BDAD940AF864F9917E4E2] () suite.vssMgr.exe -> C:\WINDOWS\suite.vssMgr.exe -> [2016/12/29 10:21:02 | 000,097,784 | ---- | C | MD5 = 3135B6A59B0BDAD940AF864F9917E4E2] () drbl-live-xfce-2.4.7-7-i686.iso -> C:\Users\Jean-Marie\Documents\drbl-live-xfce-2.4.7-7-i686.iso -> [2016/11/15 18:27:56 | 610,271,232 | ---- | C | MD5 = EF7248ACB65F634456205FB6B64E6DB8] () drbl-live-xfce-2.4.7-7-amd64.iso.part -> C:\Users\Jean-Marie\Documents\drbl-live-xfce-2.4.7-7-amd64.iso.part -> [2016/11/15 18:24:37 | 135,619,414 | ---- | C | MD5 = C5AFE7D196F1B17B32B9BCDE4CF97E38] () power2go 10 & 11 setups.zip -> C:\Users\Jean-Marie\Documents\power2go 10 & 11 setups.zip -> [2016/11/15 08:21:16 | 882,621,505 | ---- | C | MD5 = 46D81931C3D4CB82133C74D5F81D8538] () 100% sécurisé finalis (lfs ultra aussi) menthe glaciale mbj dar w dar ph dar.zip -> C:\Users\Jean-Marie\Documents\100% sécurisé finalis (lfs ultra aussi) menthe glaciale mbj dar w dar ph dar.zip -> [2016/11/15 06:59:49 | 2943,413,541 | ---- | C | MD5 = 19CFDAB4FE156B2B8198351512CCBBE7] () VideoMeetingPlus_1.0.1711.0_Beta_VMX160226-03.exe -> C:\Users\Jean-Marie\Documents\VideoMeetingPlus_1.0.1711.0_Beta_VMX160226-03.exe -> [2016/11/14 11:04:51 | 089,589,712 | ---- | C | MD5 = E27773383A547E2115427E53001C79BB] () PresenterLinkPlus_160527_Beta_PLX160107-01.exe -> C:\Users\Jean-Marie\Documents\PresenterLinkPlus_160527_Beta_PLX160107-01.exe -> [2016/11/14 10:54:03 | 037,141,960 | ---- | C | MD5 = 6CEA7B13EF1ADA6AA2AA21AE584256E8] () BD_3DAdvisor_7510_Generic_BD_CDT140213-01.exe -> C:\Users\Jean-Marie\Documents\BD_3DAdvisor_7510_Generic_BD_CDT140213-01.exe -> [2016/11/14 10:46:44 | 042,827,912 | ---- | C | MD5 = EAB53916F32014D6F05043B5E384E970] ( ) barrow 2 & widen 100% sécurisé.zip -> C:\Users\Jean-Marie\Documents\barrow 2 & widen 100% sécurisé.zip -> [2016/11/14 08:43:58 | 2106,661,068 | ---- | C | MD5 = 82175C8D00F4D9B78E4410F3262AE4AD] () services -> C:\WINDOWS\SysNative\drivers\etc\services -> [2016/11/12 09:22:59 | 000,017,463 | ---- | C | MD5 = D9E1A01B480D961B7CF0509D597A92D6] () protocol -> C:\WINDOWS\SysNative\drivers\etc\protocol -> [2016/11/12 09:22:59 | 000,001,358 | ---- | C | MD5 = 7700D22FA108234E623D65FA72D9E29C] () networks -> C:\WINDOWS\SysNative\drivers\etc\networks -> [2016/11/12 09:22:59 | 000,000,407 | ---- | C | MD5 = B65A1232FB4B35827CE7C5E2F8EC8947] () system.ini -> C:\WINDOWS\system.ini -> [2016/11/12 09:22:43 | 000,000,219 | ---- | C | MD5 = 286A9EDB379DC3423A528B0864A0F111] () win.ini -> C:\WINDOWS\win.ini -> [2016/11/12 09:22:43 | 000,000,204 | ---- | C | MD5 = 39A09DB18CA86C636E6284A8E6996A4F] () DiscHandler.exe -> C:\WINDOWS\SysWow64\DiscHandler.exe -> [2016/08/20 02:29:42 | 000,055,488 | ---- | C | MD5 = 950DB8A6DC83C503DEF7EA3AF282CFC8] () MsftWdf_Kernel_01019_Inbox_Critical.Wdf -> C:\WINDOWS\SysNative\drivers\MsftWdf_Kernel_01019_Inbox_Critical.Wdf -> [2016/07/16 13:42:35 | 000,000,003 | ---- | C | MD5 = 933222B19FF3E7EA5F65517EA1F7D57E] () hosts -> C:\WINDOWS\SysNative\drivers\etc\hosts -> [2016/06/28 17:31:42 | 000,002,830 | ---- | C | Unable to obtain MD5] () libbluray.dll -> C:\WINDOWS\SysNative\libbluray.dll -> [2016/03/08 14:33:02 | 000,327,864 | ---- | C | MD5 = 1652608CB628D124924691D9A6C2A90F] () libbluray.dll -> C:\WINDOWS\SysWow64\libbluray.dll -> [2016/03/08 14:32:30 | 000,271,544 | ---- | C | MD5 = 438A9E27DB0FD013D916A3EFD2DC4A49] () LAVFilters.Dependencies.manifest -> C:\WINDOWS\SysWow64\LAVFilters.Dependencies.manifest -> [2015/11/15 15:50:12 | 000,000,493 | ---- | C | MD5 = 933A8ABCA9941128A80B6401B5A04B9E] () LAVFilters.Dependencies.manifest -> C:\WINDOWS\SysNative\LAVFilters.Dependencies.manifest -> [2015/11/15 15:50:12 | 000,000,493 | ---- | C | MD5 = 933A8ABCA9941128A80B6401B5A04B9E] () amdmiracast.dll -> C:\WINDOWS\SysNative\amdmiracast.dll -> [2015/10/21 03:14:54 | 000,471,312 | ---- | C | MD5 = 3960C946E67311C9831550AEDC649C3A] () amdhdl64.dll -> C:\WINDOWS\SysNative\amdhdl64.dll -> [2015/10/21 03:14:42 | 000,143,344 | ---- | C | MD5 = AF1928F5E15921A29877C2E18626F80E] () amdhdl32.dll -> C:\WINDOWS\SysWow64\amdhdl32.dll -> [2015/10/21 03:14:42 | 000,132,080 | ---- | C | MD5 = F12467373381C72FAE9CA7C08ED6C919] () ativvsvl.dat -> C:\WINDOWS\SysWow64\ativvsvl.dat -> [2015/08/22 02:54:10 | 000,204,952 | ---- | C | MD5 = 219D7091DD1D93728392337FE9C7ADD6] () ativvsvl.dat -> C:\WINDOWS\SysNative\ativvsvl.dat -> [2015/08/22 02:54:10 | 000,204,952 | ---- | C | MD5 = 219D7091DD1D93728392337FE9C7ADD6] () ativvsva.dat -> C:\WINDOWS\SysWow64\ativvsva.dat -> [2015/08/22 02:54:10 | 000,157,144 | ---- | C | MD5 = 7C163EDE63854539828F5B2C1BC529FD] () ativvsva.dat -> C:\WINDOWS\SysNative\ativvsva.dat -> [2015/08/22 02:54:10 | 000,157,144 | ---- | C | MD5 = 7C163EDE63854539828F5B2C1BC529FD] () ativce03.dat -> C:\WINDOWS\SysNative\ativce03.dat -> [2015/07/30 23:00:06 | 000,177,344 | ---- | C | MD5 = B974290EEE645249EE212FF62DD0824A] () amde31a.dat -> C:\WINDOWS\SysNative\amde31a.dat -> [2015/07/30 22:58:04 | 000,175,648 | ---- | C | MD5 = 4B10D8998C824DD84AD597F9E058F6F0] () ativce02.dat -> C:\WINDOWS\SysNative\ativce02.dat -> [2015/07/24 22:44:06 | 000,100,816 | ---- | C | MD5 = EFA5E3D55F1CC185BC690B7D79D015A9] () ativvaxy_cz_nd.dat -> C:\WINDOWS\SysNative\ativvaxy_cz_nd.dat -> [2015/05/29 02:21:32 | 000,255,808 | ---- | C | MD5 = 0770A5AB5218E6D3134A7A7239B9A216] () ativvaxy_FJ.dat -> C:\WINDOWS\SysNative\ativvaxy_FJ.dat -> [2015/05/29 02:17:24 | 000,250,884 | ---- | C | MD5 = A81F68A0D3387A06182EFA3880D3F0BD] () ativvaxy_FJ_nd.dat -> C:\WINDOWS\SysNative\ativvaxy_FJ_nd.dat -> [2015/05/29 02:15:12 | 000,249,088 | ---- | C | MD5 = 7EE8F6853798F7A900DB15F3054A0277] () ativvaxy_vi.dat -> C:\WINDOWS\SysNative\ativvaxy_vi.dat -> [2015/05/29 02:10:58 | 000,322,868 | ---- | C | MD5 = 11355CAC5334C8999211C09CAAE194EF] () ativvaxy_vi_nd.dat -> C:\WINDOWS\SysNative\ativvaxy_vi_nd.dat -> [2015/05/29 02:08:18 | 000,321,200 | ---- | C | MD5 = 3544D6AF6E0C9783C2CF6FA9CE42D520] () ativvaxy_cik.dat -> C:\WINDOWS\SysNative\ativvaxy_cik.dat -> [2015/05/29 02:00:42 | 000,234,420 | ---- | C | MD5 = 5EBC73A78E5903E7CE6F6B25E4A6BE8F] () ativvaxy_cik_nd.dat -> C:\WINDOWS\SysNative\ativvaxy_cik_nd.dat -> [2015/05/29 01:58:32 | 000,232,752 | ---- | C | MD5 = C55D2CBC17AAE1FBAC9135E7C31A4D31] () ffmpeg.dll.new -> C:\WINDOWS\SysNative\ffmpeg.dll.new -> [2014/12/05 13:50:00 | 004,013,056 | ---- | C | MD5 = D26DD19E6A50C73C9FC250756558A5AE] () ffmpeg.dll -> C:\WINDOWS\SysNative\ffmpeg.dll -> [2014/12/05 13:50:00 | 004,013,056 | ---- | C | MD5 = D26DD19E6A50C73C9FC250756558A5AE] () ff_vfw.dll.new -> C:\WINDOWS\SysNative\ff_vfw.dll.new -> [2014/12/05 13:49:40 | 000,127,488 | ---- | C | MD5 = DB5D11885E0DE0F166DE33467CB075B2] () ff_vfw.dll -> C:\WINDOWS\SysNative\ff_vfw.dll -> [2014/12/05 13:49:40 | 000,127,488 | ---- | C | MD5 = DB5D11885E0DE0F166DE33467CB075B2] () ffdshow.ax.new -> C:\WINDOWS\SysNative\ffdshow.ax.new -> [2014/12/05 13:49:36 | 004,374,016 | ---- | C | MD5 = 25DFF6C52D8AE230358478C9EC708990] () ffdshow.ax -> C:\WINDOWS\SysNative\ffdshow.ax -> [2014/12/05 13:49:36 | 004,374,016 | ---- | C | MD5 = 25DFF6C52D8AE230358478C9EC708990] () ff_kernelDeint.dll.new -> C:\WINDOWS\SysNative\ff_kernelDeint.dll.new -> [2014/12/05 13:49:04 | 000,474,624 | ---- | C | MD5 = 7695FCB44106A2FC415CDB29A15EDBB1] () ff_kernelDeint.dll -> C:\WINDOWS\SysNative\ff_kernelDeint.dll -> [2014/12/05 13:49:04 | 000,474,624 | ---- | C | MD5 = 7695FCB44106A2FC415CDB29A15EDBB1] () ff_wmv9.dll.new -> C:\WINDOWS\SysNative\ff_wmv9.dll.new -> [2014/12/05 13:48:00 | 000,114,688 | ---- | C | MD5 = 732A10AD77B4649B696AE4DE6406F1FE] () ff_wmv9.dll -> C:\WINDOWS\SysNative\ff_wmv9.dll -> [2014/12/05 13:48:00 | 000,114,688 | ---- | C | MD5 = 732A10AD77B4649B696AE4DE6406F1FE] () TomsMoComp_ff.dll.new -> C:\WINDOWS\SysNative\TomsMoComp_ff.dll.new -> [2014/12/05 13:47:42 | 000,631,296 | ---- | C | MD5 = 87AAD7A429BE0C1A0061A417F9509B3E] () TomsMoComp_ff.dll -> C:\WINDOWS\SysNative\TomsMoComp_ff.dll -> [2014/12/05 13:47:42 | 000,631,296 | ---- | C | MD5 = 87AAD7A429BE0C1A0061A417F9509B3E] () ff_libmad.dll.new -> C:\WINDOWS\SysNative\ff_libmad.dll.new -> [2014/12/05 13:47:42 | 000,156,672 | ---- | C | MD5 = EEC093E5C1FF21154F3E212288F9AB16] () ff_libmad.dll -> C:\WINDOWS\SysNative\ff_libmad.dll -> [2014/12/05 13:47:42 | 000,156,672 | ---- | C | MD5 = EEC093E5C1FF21154F3E212288F9AB16] () ff_liba52.dll.new -> C:\WINDOWS\SysNative\ff_liba52.dll.new -> [2014/12/05 13:47:34 | 000,116,224 | ---- | C | MD5 = 7D8DE431C970D1D389740497D7AEE9A3] () ff_liba52.dll -> C:\WINDOWS\SysNative\ff_liba52.dll -> [2014/12/05 13:47:34 | 000,116,224 | ---- | C | MD5 = 7D8DE431C970D1D389740497D7AEE9A3] () ff_samplerate.dll.new -> C:\WINDOWS\SysNative\ff_samplerate.dll.new -> [2014/12/05 13:47:26 | 001,532,928 | ---- | C | MD5 = ABD4B81F27C6E52C83D497119D78930E] () ff_samplerate.dll -> C:\WINDOWS\SysNative\ff_samplerate.dll -> [2014/12/05 13:47:26 | 001,532,928 | ---- | C | MD5 = ABD4B81F27C6E52C83D497119D78930E] () ff_libdts.dll.new -> C:\WINDOWS\SysNative\ff_libdts.dll.new -> [2014/12/05 13:47:26 | 000,222,720 | ---- | C | MD5 = B189D92ACFD552FDEA4790F0C334AFEA] () ff_libdts.dll -> C:\WINDOWS\SysNative\ff_libdts.dll -> [2014/12/05 13:47:26 | 000,222,720 | ---- | C | MD5 = B189D92ACFD552FDEA4790F0C334AFEA] () ff_unrar.dll.new -> C:\WINDOWS\SysNative\ff_unrar.dll.new -> [2014/12/05 13:47:22 | 000,183,296 | ---- | C | MD5 = 06A6A5E9AD5C473FC8319A544A1F7957] () ff_unrar.dll -> C:\WINDOWS\SysNative\ff_unrar.dll -> [2014/12/05 13:47:22 | 000,183,296 | ---- | C | MD5 = 06A6A5E9AD5C473FC8319A544A1F7957] () libmpeg2_ff.dll.new -> C:\WINDOWS\SysNative\libmpeg2_ff.dll.new -> [2014/12/05 13:47:14 | 000,190,464 | ---- | C | MD5 = 675989446ED6D6D440F94E2C50E37627] () libmpeg2_ff.dll -> C:\WINDOWS\SysNative\libmpeg2_ff.dll -> [2014/12/05 13:47:14 | 000,190,464 | ---- | C | MD5 = 675989446ED6D6D440F94E2C50E37627] () atiicdxx.dat -> C:\WINDOWS\SysNative\atiicdxx.dat -> [2014/11/06 11:53:26 | 000,737,410 | ---- | C | MD5 = 079EFFD5BECB418FE6596229B28D7324] () UimFIO.sys -> C:\WINDOWS\SysNative\drivers\UimFIO.sys -> [2014/07/09 13:04:16 | 000,556,296 | ---- | C | MD5 = 36F9292701C757659705B69C748B2E55] () uim_devim.sys -> C:\WINDOWS\SysNative\drivers\uim_devim.sys -> [2014/07/09 13:04:16 | 000,025,992 | ---- | C | MD5 = 9C05A6BE2E0D7A9412D5728C5AEA2C91] () UimBus.sys -> C:\WINDOWS\SysNative\drivers\UimBus.sys -> [2014/07/09 13:04:14 | 000,102,664 | ---- | C | MD5 = 121D10ADF79144F2A0130A4A4ABFDC86] () uim_im.sys -> C:\WINDOWS\SysNative\drivers\uim_im.sys -> [2014/07/09 13:04:12 | 000,700,296 | ---- | C | MD5 = 48F252C0022B14164199D071E5F9C860] () xvidvfw.dll -> C:\WINDOWS\SysWow64\xvidvfw.dll -> [2014/04/08 22:50:26 | 000,235,520 | ---- | C | MD5 = 34018C9698B4302D110887CD64FAE96D] () Lagarith.dll -> C:\WINDOWS\SysWow64\Lagarith.dll -> [2013/12/17 04:19:30 | 000,216,064 | ---- | C | MD5 = FA425C74CE2EB719B2A77A7A2ADDAE32] ( ) WuWUI.exe -> C:\WINDOWS\WuWUI.exe -> [2013/11/25 21:33:58 | 000,404,584 | ---- | C | MD5 = 3EF02E9ED4EFA56B2DFD34E5032B2DA8] () OS -> C:\OS -> [2013/03/05 09:30:46 | 000,000,000 | R-S- | C | MD5 = D41D8CD98F00B204E9800998ECF8427E] () MDA_NTDRV.sys -> C:\WINDOWS\SysNative\MDA_NTDRV.sys -> [2013/02/25 11:10:02 | 000,021,208 | ---- | C | MD5 = CF17A39BA7D1D1E386FD0C1303642B91] () Formats.ini -> C:\WINDOWS\SysWow64\Formats.ini -> [2013/02/24 18:51:26 | 000,000,236 | ---- | C | MD5 = 64546FE93B5977CE25E0F0607C3F5F80] () DevManagerCore.dll -> C:\WINDOWS\SysWow64\DevManagerCore.dll -> [2012/10/26 17:42:24 | 000,336,232 | ---- | C | MD5 = B227DF8720C51EE0A80CB23CCCEF1EC6] () DevManagerCore.dll -> C:\WINDOWS\SysNative\DevManagerCore.dll -> [2012/10/26 17:42:24 | 000,336,232 | ---- | C | MD5 = B227DF8720C51EE0A80CB23CCCEF1EC6] () LVAFT.cfg -> C:\WINDOWS\SysNative\drivers\LVAFT.cfg -> [2012/10/26 17:42:24 | 000,266,828 | ---- | C | MD5 = 835C775A6871D2A2EA6FC343B6B4C9A2] () lvcoin64.ini -> C:\WINDOWS\SysNative\lvcoin64.ini -> [2012/10/26 17:42:24 | 000,029,494 | ---- | C | MD5 = 1A8AE8A66B6C289046276453768EF270] () LogiDPP.dll -> C:\WINDOWS\SysWow64\LogiDPP.dll -> [2012/10/26 17:42:22 | 010,919,784 | ---- | C | MD5 = B65E8E52916A527F88486875EE291AA8] () LogiDPP.dll -> C:\WINDOWS\SysNative\LogiDPP.dll -> [2012/10/26 17:42:22 | 010,919,784 | ---- | C | MD5 = B65E8E52916A527F88486875EE291AA8] () LogiDPPApp.exe -> C:\WINDOWS\SysWow64\LogiDPPApp.exe -> [2012/10/26 17:42:22 | 000,103,272 | ---- | C | MD5 = 24764C249F769991079F6D4B14B822AF] () LogiDPPApp.exe -> C:\WINDOWS\SysNative\LogiDPPApp.exe -> [2012/10/26 17:42:22 | 000,103,272 | ---- | C | MD5 = 24764C249F769991079F6D4B14B822AF] () Repository.reg -> C:\WINDOWS\SysNative\Repository.reg -> [2012/10/26 17:42:22 | 000,040,398 | ---- | C | MD5 = C6CA43573C21CA6392F57F238C8391FC] () bootmgr -> C:\bootmgr -> [2012/07/26 10:18:43 | 000,398,156 | RHS- | C | MD5 = 21BF183C15AFE62A8D1137BB9007B2A3] () BOOTNXT -> C:\BOOTNXT -> [2012/07/26 10:18:43 | 000,000,001 | -HS- | C | MD5 = 93B885ADFE0DA089CDF634904FD59F71] () SQLServerManager11.msc -> C:\WINDOWS\SysWow64\SQLServerManager11.msc -> [2012/02/10 19:02:46 | 000,026,289 | ---- | C | MD5 = 8EAC52095B00CAAD9E1040AAC0243617] () OptimFROG.dll -> C:\WINDOWS\SysWow64\OptimFROG.dll -> [2011/02/11 12:26:20 | 000,237,568 | ---- | C | MD5 = 301A5609907605013D7ED94B5B49AAB9] () pthreadVC.dll -> C:\WINDOWS\SysWow64\pthreadVC.dll -> [2010/07/16 02:45:44 | 000,053,299 | ---- | C | MD5 = F04A90F917BA10AE2DCBE859870F4DEA] () EULA.rtf -> C:\EULA.rtf -> [2010/04/17 19:45:22 | 000,004,338 | ---- | C | MD5 = 02FFB7C68C002EAD916709700E930814] () bass_tak.dll -> C:\WINDOWS\SysWow64\bass_tak.dll -> [2010/03/24 13:15:10 | 000,047,104 | ---- | C | MD5 = EAFC368E75339308AA018663B305E138] () libFLAC.dll -> C:\WINDOWS\SysWow64\libFLAC.dll -> [2007/10/07 16:36:32 | 000,258,048 | ---- | C | MD5 = 5C3739F97D09CAF8ABCC0A1F14C82A49] () DSDVideoOutFilter.ax -> C:\WINDOWS\SysWow64\DSDVideoOutFilter.ax -> [2006/12/19 17:08:58 | 000,045,056 | ---- | C | MD5 = 963F6DB8105891010CFCC7A4884D5343] () PCMOUT_VIDEO_1644.bmp -> C:\WINDOWS\SysWow64\PCMOUT_VIDEO_1644.bmp -> [2006/07/11 14:46:18 | 000,921,656 | ---- | C | MD5 = D0549FEC1218102C93962E9E0797F4B1] () PCMOUT_VIDEO_2496.bmp -> C:\WINDOWS\SysWow64\PCMOUT_VIDEO_2496.bmp -> [2006/07/11 14:45:54 | 000,921,656 | ---- | C | MD5 = 3AD19E79C8E1B64A82F9A8AEF978C4B0] () DSDOUT_VIDEO.bmp.new -> C:\WINDOWS\SysWow64\DSDOUT_VIDEO.bmp.new -> [2006/07/11 14:45:24 | 000,921,656 | ---- | C | MD5 = C43E7CB9C25E8943682290303669EE7B] () kc.exe -> C:\WINDOWS\SysWow64\kc.exe -> [2005/11/13 20:07:12 | 000,006,656 | ---- | C | MD5 = 5ACD11DF2AA5F3E3F30F785589B70347] () VzCsDsAudioDevice.vzcs.classinfo -> C:\WINDOWS\SysWow64\VzCsDsAudioDevice.vzcs.classinfo -> [2004/09/15 03:50:18 | 000,000,409 | ---- | C | MD5 = 6A2205CBC09EF0D92F8E1AB870A56FD2] () [HardLinks - Junction Points - Mount Points - Symbolic Links] StorageHealthModel.dat -> C:\ProgramData\Microsoft\Storage Health\StorageHealthModel.dat -> HardLink [Alternate Data Streams] @Alternate Data Stream - 135 bytes -> C:\ProgramData\Temp:56E2E879 @Alternate Data Stream - 175 bytes -> C:\ProgramData\Temp:CD060F93 < End of report > [/code]