Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x86) Version: 13-07-2017 Exécuté par Emma (administrateur) sur EMMA-PC (15-07-2017 07:12:10) Exécuté depuis C:\Users\Emma\Desktop Profils chargés: Emma (Profils disponibles: Emma) Platform: Microsoft Windows 7 Édition Starter Service Pack 1 (X86) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: Chrome) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Dritek System Inc.) C:\Program Files\Launch Manager\dsiwmis.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe (Acer Incorporated) C:\Program Files\Acer\Registration\GREGsvc.exe (Acer Incorporated) C:\Program Files\Acer\Acer Updater\UpdaterService.exe (Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe (Acer Incorporated) C:\Program Files\Acer\Acer VCM\RS_Service.exe (Microsoft Corporation) C:\Program Files\Microsoft Application Virtualization Client\sftvsa.exe (TechSmith Corporation) C:\Program Files\Common Files\TechSmith Shared\Uploader\UploaderService.exe (Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (Egis Technology Inc.) C:\Program Files\EgisTec MyWinLockerSuite\x86\SuiteTray.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\PmmUpdate.exe (Dritek System Inc.) C:\Program Files\Launch Manager\LManager.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Dritek System Inc.) C:\Program Files\Launch Manager\LMworker.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\EgisUpdate.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe (Acer Incorporated) C:\Program Files\Acer\Acer VCM\AcerVCM.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MpCmdRun.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MpCmdRun.exe (Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Registre (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SuiteTray] => C:\Program Files\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [340336 2010-09-28] (Egis Technology Inc.) HKLM\...\Run: [EgisTecPMMUpdate] => C:\Program Files\EgisTec IPS\PmmUpdate.exe [407920 2010-09-18] (Egis Technology Inc.) HKLM\...\Run: [EgisUpdate] => C:\Program Files\EgisTec IPS\EgisUpdate.exe [201584 2010-09-18] (Egis Technology Inc.) HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [41056 2013-05-08] (Adobe Systems Incorporated) HKLM\...\Run: [LManager] => C:\Program Files\Launch Manager\LManager.exe [1029200 2010-12-31] (Dritek System Inc.) HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-01-11] (Advanced Micro Devices, Inc.) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1934632 2010-10-08] (Synaptics Incorporated) HKLM\...\Run: [Power Management] => C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [715368 2011-02-23] (Acer Incorporated) HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1002984 2016-11-14] (Microsoft Corporation) HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [587288 2017-03-15] (Oracle Corporation) HKU\S-1-5-19\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid} HKU\S-1-5-19\Control Panel\Desktop\\SCRNSAVE.EXE -> HKU\S-1-5-20\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid} HKU\S-1-5-20\Control Panel\Desktop\\SCRNSAVE.EXE -> HKU\S-1-5-21-515238101-109490641-1715876383-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\System32\Acer.scr [456224 2010-07-29] () HKU\S-1-5-18\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid} HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Acer VCM.lnk [2011-04-07] ShortcutTarget: Acer VCM.lnk -> C:\Program Files\Acer\Acer VCM\AcerVCM.exe (Acer Incorporated) CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{8B45A8DD-A4B0-43C9-BCB8-352871D04795}: [DhcpNameServer] 192.168.1.250 Tcpip\..\Interfaces\{8B5B02E5-30F7-4E1A-B670-F6EB78598C22}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKU\S-1-5-21-515238101-109490641-1715876383-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.be/ SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2013-05-08] (Adobe Systems Incorporated) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_131\bin\ssv.dll [2017-07-11] (Oracle Corporation) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corp.) BHO: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files\Windows Live\Companion\companioncore.dll [2012-03-08] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_131\bin\jp2ssv.dll [2017-07-11] (Oracle Corporation) Toolbar: HKLM - Pas de nom - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - Pas de fichier Toolbar: HKU\S-1-5-21-515238101-109490641-1715876383-1000 -> Pas de nom - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Pas de fichier DPF: {4A85DBE0-BFB2-4119-8401-186A7C6EB653} hxxp://messenger.zone.msn.com/MessengerGamesContent/GameContent/fr/mjss/MJSS.cab109791.cab DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} hxxp://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab DPF: {5D6F45B3-9043-443D-A792-115447494D24} hxxp://messenger.zone.msn.com/MessengerGamesContent/GameContent/fr/uno1/GAME_UNO1.cab DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} hxxp://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - Pas de fichier Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - Pas de fichier Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - Pas de fichier Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - Pas de fichier FireFox: ======== FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-07-11] (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-07-11] (Google Inc.) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Emma\AppData\Local\Google\Chrome\User Data\Default [2017-07-14] CHR Extension: (Google Slides) - C:\Users\Emma\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-09-10] CHR Extension: (Google Docs) - C:\Users\Emma\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-09-10] CHR Extension: (Google Drive) - C:\Users\Emma\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-02-11] CHR Extension: (YouTube) - C:\Users\Emma\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-02-11] CHR Extension: (Recherche Google) - C:\Users\Emma\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-02-11] CHR Extension: (Google Sheets) - C:\Users\Emma\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-09-10] CHR Extension: (Google Docs hors connexion) - C:\Users\Emma\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-02-11] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Emma\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-09-10] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Emma\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-09-10] CHR Extension: (Gmail) - C:\Users\Emma\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-09-10] CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files\McAfee\SiteAdvisor\McChPlg.crx ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 EgisTec Ticket Service; C:\Program Files\Common Files\EgisTec\Services\EgisTicketService.exe [172912 2010-09-28] (Egis Technology Inc. ) R2 ePowerSvc; C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [739944 2011-02-23] (Acer Incorporated) R2 GREGService; C:\Program Files\Acer\Registration\GREGsvc.exe [23584 2010-01-08] (Acer Incorporated) R2 Live Updater Service; C:\Program Files\Acer\Acer Updater\UpdaterService.exe [255376 2012-04-05] (Acer Incorporated) R2 MBAMScheduler; C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [103696 2016-11-14] (Microsoft Corporation) R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [280864 2016-11-14] (Microsoft Corporation) R2 RS_Service; C:\Program Files\Acer\Acer VCM\RS_Service.exe [260640 2010-01-30] (Acer Incorporated) R2 TechSmith Uploader Service; C:\Program Files\Common Files\TechSmith Shared\Uploader\UploaderService.exe [3408384 2015-01-26] (TechSmith Corporation) [Fichier non signé] S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation) ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 EUCR; C:\Windows\system32\drivers\EUCR6SK.SYS [82768 2010-08-09] (ENE Technology Inc.) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [252808 2016-08-25] (Microsoft Corporation) R1 mwlPSDFilter; C:\Windows\System32\DRIVERS\mwlPSDFilter.sys [19304 2011-04-07] (Egis Technology Inc.) R1 mwlPSDNServ; C:\Windows\System32\DRIVERS\mwlPSDNServ.sys [16744 2011-04-07] (Egis Technology Inc.) R1 mwlPSDVDisk; C:\Windows\System32\DRIVERS\mwlPSDVDisk.sys [62048 2011-04-07] (Egis Technology Inc.) S3 RTL8187B; C:\Windows\System32\DRIVERS\wg111v3.sys [376832 2009-11-18] (NETGEAR Inc. ) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-07-15 07:12 - 2017-07-15 07:17 - 00013884 _____ C:\Users\Emma\Desktop\FRST.txt 2017-07-15 07:10 - 2017-07-15 07:12 - 00000000 ____D C:\FRST 2017-07-15 07:07 - 2017-07-15 07:07 - 01780736 _____ (Farbar) C:\Users\Emma\Desktop\FRST.exe 2017-07-14 21:14 - 2017-07-14 21:24 - 00003061 _____ C:\Users\Emma\Desktop\ZHPCleaner.txt 2017-07-14 20:43 - 2017-07-14 20:43 - 00000795 _____ C:\Users\Emma\Desktop\ZHPCleaner.lnk 2017-07-14 12:09 - 2017-07-14 12:09 - 00043658 _____ C:\Users\Emma\Desktop\ZHPFixReport.txt 2017-07-14 11:57 - 2017-07-14 11:57 - 03061760 _____ (Nicolas Coolman) C:\Users\Emma\Desktop\ZHPFix.exe 2017-07-14 11:57 - 2017-07-14 11:57 - 00000000 ____D C:\Users\Emma\Downloads\Quarantine 2017-07-13 21:36 - 2017-07-13 21:36 - 00151649 _____ C:\Users\Emma\Desktop\ZHPDiag.txt 2017-07-13 21:00 - 2017-07-14 21:24 - 00000000 ____D C:\Users\Emma\AppData\Roaming\ZHP 2017-07-13 21:00 - 2017-07-13 21:04 - 00000785 _____ C:\Users\Emma\Desktop\ZHPDiag.lnk 2017-07-13 20:59 - 2017-07-13 20:59 - 02782592 _____ C:\Users\Emma\Downloads\ZHPDiag3 (1).exe 2017-07-13 20:38 - 2017-07-13 20:39 - 02782592 _____ C:\Users\Emma\Downloads\ZHPDiag3.exe 2017-07-12 10:29 - 2017-07-12 10:29 - 00000000 _____ C:\Windows\system32\sho8CD4.tmp 2017-07-11 21:07 - 2017-06-30 05:32 - 00346312 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2017-07-11 21:07 - 2017-06-30 04:39 - 01549312 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll 2017-07-11 21:07 - 2017-06-30 04:38 - 01400320 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll 2017-07-11 21:07 - 2017-06-30 04:38 - 01363968 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll 2017-07-11 21:07 - 2017-06-30 04:38 - 00666624 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll 2017-07-11 21:07 - 2017-06-30 04:38 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll 2017-07-11 21:07 - 2017-06-30 04:38 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll 2017-07-11 21:07 - 2017-06-29 07:35 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2017-07-11 21:07 - 2017-06-29 07:35 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2017-07-11 21:07 - 2017-06-29 07:23 - 20270592 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2017-07-11 21:07 - 2017-06-29 07:23 - 00499200 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2017-07-11 21:07 - 2017-06-29 07:23 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2017-07-11 21:07 - 2017-06-29 07:23 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2017-07-11 21:07 - 2017-06-29 07:22 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2017-07-11 21:07 - 2017-06-29 07:22 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2017-07-11 21:07 - 2017-06-29 07:19 - 02290176 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2017-07-11 21:07 - 2017-06-29 07:17 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2017-07-11 21:07 - 2017-06-29 07:16 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2017-07-11 21:07 - 2017-06-29 07:14 - 00476160 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2017-07-11 21:07 - 2017-06-29 07:13 - 00663552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2017-07-11 21:07 - 2017-06-29 07:13 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2017-07-11 21:07 - 2017-06-29 07:13 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2017-07-11 21:07 - 2017-06-29 07:13 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2017-07-11 21:07 - 2017-06-29 07:08 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2017-07-11 21:07 - 2017-06-29 07:05 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2017-07-11 21:07 - 2017-06-29 07:01 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2017-07-11 21:07 - 2017-06-29 07:00 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2017-07-11 21:07 - 2017-06-29 07:00 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2017-07-11 21:07 - 2017-06-29 06:58 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2017-07-11 21:07 - 2017-06-29 06:56 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2017-07-11 21:07 - 2017-06-29 06:56 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2017-07-11 21:07 - 2017-06-29 06:54 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2017-07-11 21:07 - 2017-06-29 06:52 - 04549632 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2017-07-11 21:07 - 2017-06-29 06:48 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2017-07-11 21:07 - 2017-06-29 06:47 - 00693248 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2017-07-11 21:07 - 2017-06-29 06:47 - 00689664 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2017-07-11 21:07 - 2017-06-29 06:46 - 02057216 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2017-07-11 21:07 - 2017-06-29 06:46 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2017-07-11 21:07 - 2017-06-29 06:43 - 13663744 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2017-07-11 21:07 - 2017-06-29 06:28 - 02767872 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2017-07-11 21:07 - 2017-06-29 06:24 - 01314816 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2017-07-11 21:07 - 2017-06-29 06:23 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2017-07-11 21:07 - 2017-06-22 16:50 - 02402304 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2017-07-11 21:07 - 2017-06-15 22:18 - 00514048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys 2017-07-11 21:07 - 2017-06-13 00:32 - 00250600 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys 2017-07-11 21:07 - 2017-06-13 00:32 - 00137960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2017-07-11 21:07 - 2017-06-13 00:32 - 00067304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2017-07-11 21:07 - 2017-06-13 00:29 - 01227264 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll 2017-07-11 21:07 - 2017-06-13 00:29 - 00444928 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll 2017-07-11 21:07 - 2017-06-13 00:29 - 00390144 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx 2017-07-11 21:07 - 2017-06-13 00:29 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2017-07-11 21:07 - 2017-06-13 00:28 - 01062912 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2017-07-11 21:07 - 2017-06-13 00:28 - 00655360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2017-07-11 21:07 - 2017-06-13 00:28 - 00554496 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2017-07-11 21:07 - 2017-06-13 00:28 - 00261120 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2017-07-11 21:07 - 2017-06-13 00:28 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2017-07-11 21:07 - 2017-06-13 00:28 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\pdhui.dll 2017-07-11 21:07 - 2017-06-13 00:06 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe 2017-07-11 21:07 - 2017-06-13 00:06 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\perfmon.exe 2017-07-11 21:07 - 2017-06-13 00:06 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\resmon.exe 2017-07-11 21:07 - 2017-06-13 00:05 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2017-07-11 21:07 - 2017-06-13 00:05 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2017-07-11 21:07 - 2017-06-13 00:05 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2017-07-11 21:07 - 2017-06-10 17:39 - 00271360 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll 2017-07-11 21:07 - 2017-06-09 17:17 - 01213672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2017-07-11 21:07 - 2017-06-06 17:12 - 01499648 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll 2017-07-11 21:07 - 2017-05-30 06:39 - 01309928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2017-07-11 21:07 - 2017-05-30 06:39 - 00240872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2017-07-11 21:07 - 2017-05-30 06:39 - 00187624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2017-07-11 21:07 - 2017-05-16 17:16 - 00730856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2017-07-11 21:07 - 2017-05-16 17:16 - 00218856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2017-07-11 21:06 - 2017-06-30 04:38 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll 2017-07-11 21:06 - 2017-06-30 04:38 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll 2017-07-11 21:06 - 2017-06-30 04:38 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll 2017-07-11 21:06 - 2017-06-30 04:27 - 00427520 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe 2017-07-11 21:06 - 2017-06-30 04:27 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe 2017-07-11 21:06 - 2017-06-30 04:26 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe 2017-07-11 21:06 - 2017-06-30 04:26 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\msshooks.dll 2017-07-11 21:06 - 2017-06-13 00:29 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2017-07-11 21:06 - 2017-06-13 00:29 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2017-07-11 21:06 - 2017-06-13 00:28 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2017-07-11 21:06 - 2017-06-13 00:28 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2017-07-11 21:06 - 2017-06-13 00:28 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2017-07-11 21:06 - 2017-06-13 00:28 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2017-07-11 21:06 - 2017-06-13 00:28 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll 2017-07-11 21:06 - 2017-06-13 00:28 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2017-07-11 21:06 - 2017-06-13 00:28 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2017-07-11 21:06 - 2017-06-13 00:28 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2017-07-11 21:06 - 2017-06-13 00:09 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2017-07-11 21:06 - 2017-06-13 00:05 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2017-07-11 21:06 - 2017-06-13 00:05 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2017-07-11 21:06 - 2017-06-13 00:05 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2017-07-11 21:06 - 2017-05-21 06:06 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2017-07-11 21:06 - 2017-05-16 17:12 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2017-07-11 20:24 - 2017-05-03 17:15 - 00081640 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2017-07-11 20:24 - 2017-05-03 17:10 - 00987648 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2017-07-11 20:24 - 2017-05-03 15:05 - 01327616 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2017-07-11 20:24 - 2017-05-03 15:05 - 00505856 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2017-07-11 20:24 - 2017-05-03 15:05 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2017-07-11 20:24 - 2017-05-03 15:05 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2017-07-11 20:24 - 2017-05-03 15:05 - 00236032 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll 2017-07-11 20:24 - 2017-05-03 15:05 - 00182784 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2017-07-11 20:24 - 2017-05-03 15:05 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2017-07-11 20:24 - 2017-03-23 04:06 - 01602048 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe 2017-07-11 19:34 - 2017-07-11 19:35 - 01130328 _____ (Google Inc.) C:\Users\Emma\Downloads\ChromeSetup.exe 2017-07-11 10:56 - 2017-07-11 10:56 - 00000000 _____ C:\Windows\system32\sho10B6.tmp 2017-07-11 09:50 - 2017-07-11 09:50 - 00000000 ____D C:\Windows\Sun 2017-07-11 09:45 - 2017-07-11 09:45 - 00000000 ____D C:\Program Files\Common Files\Java 2017-07-11 02:01 - 2016-08-29 16:55 - 02972672 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2017-07-11 02:00 - 2016-05-11 17:19 - 00363520 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll 2017-07-11 02:00 - 2016-02-05 20:44 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\fveapibase.dll 2017-07-11 02:00 - 2016-02-05 19:33 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\tbs.dll 2017-07-11 02:00 - 2016-02-03 19:59 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2017-07-11 02:00 - 2015-06-03 22:22 - 00355456 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll 2017-07-11 01:59 - 2016-04-14 15:49 - 00603648 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2017-07-11 01:59 - 2016-04-09 06:20 - 01230848 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2017-07-11 01:59 - 2016-03-16 20:28 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\msorcl32.dll 2017-07-11 01:59 - 2016-03-16 20:28 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll 2017-07-11 01:59 - 2016-02-09 11:50 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll 2017-07-11 01:58 - 2016-06-25 21:53 - 00297472 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll 2017-07-11 01:58 - 2016-06-25 21:41 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.exe 2017-07-11 01:58 - 2016-03-09 20:40 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll 2017-07-11 01:58 - 2016-02-04 20:41 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll 2017-07-11 01:57 - 2016-05-12 17:18 - 00606720 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll 2017-07-11 01:57 - 2016-05-12 17:18 - 00351744 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL 2017-07-11 01:57 - 2016-05-12 17:18 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\polstore.dll 2017-07-11 01:57 - 2016-05-12 17:18 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll 2017-07-11 01:57 - 2016-05-12 17:18 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\winipsec.dll 2017-07-11 01:57 - 2016-05-12 17:18 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\FwRemoteSvr.dll 2017-07-11 01:56 - 2016-07-22 16:51 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2017-07-11 01:56 - 2016-07-07 16:57 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2017-07-11 01:56 - 2016-03-09 20:34 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll 2017-07-11 01:56 - 2016-01-21 02:51 - 00057280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\disk.sys 2017-07-11 01:55 - 2017-04-28 00:50 - 03550208 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll 2017-07-11 01:55 - 2016-09-15 16:51 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll 2017-07-11 01:55 - 2016-08-21 15:05 - 00935424 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll 2017-07-11 01:54 - 2017-05-12 18:25 - 01251328 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2017-07-11 01:54 - 2017-05-12 18:25 - 00909824 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2017-07-11 01:54 - 2017-05-10 17:12 - 02953216 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2017-07-11 01:54 - 2017-05-10 17:12 - 00174080 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2017-07-11 01:54 - 2017-05-10 17:01 - 02092032 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2017-07-11 01:54 - 2017-05-10 17:00 - 00573440 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2017-07-11 01:54 - 2017-05-10 17:00 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2017-07-11 01:54 - 2017-05-10 17:00 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2017-07-11 01:54 - 2017-05-10 17:00 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2017-07-11 01:54 - 2017-01-18 17:35 - 00922432 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll 2017-07-11 01:54 - 2017-01-18 17:35 - 00066400 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll 2017-07-11 01:54 - 2017-01-18 17:35 - 00022368 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll 2017-07-11 01:54 - 2017-01-18 17:35 - 00019808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll 2017-07-11 01:54 - 2017-01-18 17:35 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll 2017-07-11 01:54 - 2017-01-18 17:35 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll 2017-07-11 01:54 - 2017-01-18 17:35 - 00016224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll 2017-07-11 01:54 - 2017-01-18 17:35 - 00015712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll 2017-07-11 01:54 - 2017-01-18 17:35 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll 2017-07-11 01:54 - 2017-01-18 17:35 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll 2017-07-11 01:54 - 2017-01-18 17:35 - 00013664 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll 2017-07-11 01:54 - 2017-01-18 17:35 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll 2017-07-11 01:54 - 2017-01-18 17:35 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll 2017-07-11 01:54 - 2017-01-18 17:35 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll 2017-07-11 01:54 - 2017-01-18 17:35 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll 2017-07-11 01:54 - 2017-01-18 17:35 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll 2017-07-11 01:54 - 2017-01-18 17:35 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll 2017-07-11 01:54 - 2017-01-18 17:35 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll 2017-07-11 01:54 - 2017-01-18 17:35 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll 2017-07-11 01:54 - 2017-01-18 17:35 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll 2017-07-11 01:54 - 2017-01-18 17:35 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll 2017-07-11 01:54 - 2017-01-18 17:35 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll 2017-07-11 01:54 - 2017-01-18 17:35 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll 2017-07-11 01:54 - 2016-11-09 18:17 - 02365440 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2017-07-11 01:54 - 2016-08-12 18:47 - 11410432 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2017-07-11 01:54 - 2016-06-14 17:21 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll 2017-07-11 01:54 - 2016-06-14 17:21 - 00988160 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll 2017-07-11 01:54 - 2016-06-14 17:21 - 00744960 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll 2017-07-11 01:53 - 2017-05-12 20:07 - 04001000 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe 2017-07-11 01:53 - 2017-05-12 20:07 - 03945704 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2017-07-11 01:53 - 2017-05-12 20:07 - 00308456 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2017-07-11 01:53 - 2017-05-12 20:04 - 01310528 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2017-07-11 01:53 - 2017-05-12 20:03 - 00644096 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2017-07-11 01:53 - 2017-05-12 20:03 - 00629760 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2017-07-11 01:53 - 2017-05-10 17:12 - 12880896 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2017-07-11 01:53 - 2017-05-10 17:10 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2017-07-11 01:53 - 2017-05-10 17:00 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2017-07-11 01:53 - 2017-05-10 17:00 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2017-07-11 01:53 - 2017-05-09 17:11 - 00779776 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2017-07-11 01:53 - 2017-05-09 17:11 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2017-07-11 01:53 - 2017-04-21 17:15 - 00805376 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll 2017-07-11 01:53 - 2017-04-17 17:12 - 01417728 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2017-07-11 01:53 - 2017-04-17 17:12 - 00872448 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2017-07-11 01:53 - 2017-04-17 17:12 - 00581632 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2017-07-11 01:53 - 2017-04-17 17:12 - 00377344 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll 2017-07-11 01:53 - 2017-04-17 17:12 - 00294400 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2017-07-11 01:53 - 2017-04-17 17:12 - 00171008 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2017-07-11 01:53 - 2017-04-17 16:51 - 00271360 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2017-07-11 01:53 - 2017-04-12 17:26 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2017-07-11 01:53 - 2017-04-12 17:25 - 01176064 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2017-07-11 01:53 - 2017-04-12 17:25 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2017-07-11 01:53 - 2017-04-12 17:25 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2017-07-11 01:53 - 2017-04-05 17:00 - 00313856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2017-07-11 01:53 - 2017-04-05 17:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2017-07-11 01:53 - 2017-04-05 17:00 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2017-07-11 01:53 - 2017-04-04 16:52 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2017-07-11 01:53 - 2017-03-10 18:20 - 01508352 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll 2017-07-11 01:53 - 2017-03-04 03:14 - 01329664 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll 2017-07-11 01:53 - 2017-02-09 18:14 - 00575488 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll 2017-07-11 01:53 - 2017-01-13 19:45 - 00741888 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2017-07-11 01:53 - 2017-01-11 19:43 - 01241088 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2017-07-11 01:53 - 2016-11-20 16:07 - 00373896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2017-07-11 01:53 - 2016-11-10 18:19 - 00811520 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll 2017-07-11 01:53 - 2016-11-09 18:24 - 00105192 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2017-07-11 01:53 - 2016-11-09 18:17 - 01806848 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2017-07-11 01:53 - 2016-11-09 18:17 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2017-07-11 01:53 - 2016-10-11 17:18 - 01027584 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME 2017-07-11 01:53 - 2016-10-11 17:18 - 00829952 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll 2017-07-11 01:53 - 2016-10-11 17:18 - 00701440 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL 2017-07-11 01:53 - 2016-10-11 17:18 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\input.dll 2017-07-11 01:53 - 2016-10-11 17:18 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\tintlgnt.ime 2017-07-11 01:53 - 2016-10-11 17:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\quick.ime 2017-07-11 01:53 - 2016-10-11 17:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\qintlgnt.ime 2017-07-11 01:53 - 2016-10-11 17:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\phon.ime 2017-07-11 01:53 - 2016-10-11 17:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\cintlgnt.ime 2017-07-11 01:53 - 2016-10-11 17:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\chajei.ime 2017-07-11 01:53 - 2016-10-11 15:33 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2017-07-11 01:53 - 2016-10-11 15:18 - 00419648 _____ C:\Windows\system32\locale.nls 2017-07-11 01:53 - 2016-10-08 15:05 - 00534600 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2017-07-11 01:53 - 2016-10-07 17:12 - 02291712 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll 2017-07-11 01:53 - 2016-09-08 22:34 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2017-07-11 01:53 - 2016-09-08 22:34 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2017-07-11 01:53 - 2016-09-08 16:49 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2017-07-11 01:53 - 2016-09-08 16:49 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys 2017-07-11 01:53 - 2016-08-12 18:47 - 12574208 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2017-07-11 01:53 - 2016-08-12 18:21 - 00437248 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll 2017-07-11 01:53 - 2016-08-06 17:15 - 01178112 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll 2017-07-11 01:53 - 2016-08-06 17:15 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll 2017-07-11 01:53 - 2016-08-06 17:15 - 00214016 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll 2017-07-11 01:53 - 2016-08-06 17:15 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll 2017-07-11 01:53 - 2016-08-06 16:53 - 00199168 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe 2017-07-11 01:53 - 2016-06-14 17:21 - 01005056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll 2017-07-11 01:53 - 2016-06-14 17:21 - 00617984 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll 2017-07-11 01:53 - 2016-06-14 17:21 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2017-07-11 01:53 - 2016-06-14 17:21 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll 2017-07-11 01:53 - 2016-06-14 17:21 - 00474624 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2017-07-11 01:53 - 2016-06-14 17:21 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll 2017-07-11 01:53 - 2016-06-14 17:21 - 00406016 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll 2017-07-11 01:53 - 2016-06-14 17:21 - 00374784 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll 2017-07-11 01:53 - 2016-06-14 17:21 - 00354816 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll 2017-07-11 01:53 - 2016-06-14 17:21 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll 2017-07-11 01:53 - 2016-06-14 17:21 - 00195072 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll 2017-07-11 01:53 - 2016-06-14 17:21 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll 2017-07-11 01:53 - 2016-06-14 17:17 - 00593920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys 2017-07-11 01:52 - 2017-06-02 09:57 - 00497152 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe 2017-07-11 01:52 - 2017-05-12 20:03 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2017-07-11 01:52 - 2017-05-12 20:03 - 00306688 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2017-07-11 01:52 - 2017-05-12 20:03 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2017-07-11 01:52 - 2017-05-12 20:03 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll 2017-07-11 01:52 - 2017-05-12 20:03 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll 2017-07-11 01:52 - 2017-05-12 20:03 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2017-07-11 01:52 - 2017-05-12 20:03 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2017-07-11 01:52 - 2017-05-12 20:03 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2017-07-11 01:52 - 2017-05-12 20:03 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2017-07-11 01:52 - 2017-05-12 20:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2017-07-11 01:52 - 2017-05-12 19:45 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe 2017-07-11 01:52 - 2017-05-12 19:45 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys 2017-07-11 01:52 - 2017-05-12 19:45 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll 2017-07-11 01:52 - 2017-05-12 19:45 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe 2017-07-11 01:52 - 2017-05-12 19:43 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2017-07-11 01:52 - 2017-05-12 19:43 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2017-07-11 01:52 - 2017-05-12 19:41 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2017-07-11 01:52 - 2017-05-10 17:16 - 00091368 _____ (Microsoft Corporation) C:\Windows\system32\MigAutoPlay.exe 2017-07-11 01:52 - 2017-05-10 17:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2017-07-11 01:52 - 2017-05-10 16:47 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys 2017-07-11 01:52 - 2017-05-07 17:14 - 00078568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys 2017-07-11 01:52 - 2017-05-07 16:53 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\oleres.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 17:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 16:54 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\comcat.dll 2017-07-11 01:52 - 2017-04-17 16:48 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 16:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 16:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2017-07-11 01:52 - 2017-04-17 16:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2017-07-11 01:52 - 2017-03-30 16:58 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\rundll32.exe 2017-07-11 01:52 - 2017-03-10 18:20 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll 2017-07-11 01:52 - 2017-03-10 17:52 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\plasrv.exe 2017-07-11 01:52 - 2017-03-10 17:51 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys 2017-07-11 01:52 - 2017-03-10 17:51 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys 2017-07-11 01:52 - 2017-03-07 18:17 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll 2017-07-11 01:52 - 2017-03-04 03:14 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\mfmjpegdec.dll 2017-07-11 01:52 - 2017-02-09 18:14 - 00481792 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll 2017-07-11 01:52 - 2017-02-09 18:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\icm32.dll 2017-07-11 01:52 - 2017-02-09 18:14 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll 2017-07-11 01:52 - 2017-02-09 17:51 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\WcsPlugInService.dll 2017-07-11 01:52 - 2017-01-13 19:45 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll 2017-07-11 01:52 - 2017-01-11 19:43 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2017-07-11 01:52 - 2016-11-20 18:19 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll 2017-07-11 01:52 - 2016-11-09 18:17 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2017-07-11 01:52 - 2016-11-09 18:17 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll 2017-07-11 01:52 - 2016-11-09 17:55 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe 2017-07-11 01:52 - 2016-10-11 17:18 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime 2017-07-11 01:52 - 2016-10-11 17:18 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\pintlgnt.ime 2017-07-11 01:52 - 2016-10-11 17:18 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll 2017-07-11 01:52 - 2016-10-11 16:51 - 00295936 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe 2017-07-11 01:52 - 2016-10-07 17:12 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\olepro32.dll 2017-07-11 01:52 - 2016-10-05 16:50 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys 2017-07-11 01:52 - 2016-09-12 22:49 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\adsmsext.dll 2017-07-11 01:52 - 2016-08-12 18:31 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll 2017-07-11 01:52 - 2016-08-12 18:31 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx 2017-07-11 01:52 - 2016-08-12 18:31 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll 2017-07-11 01:52 - 2016-08-06 17:15 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\WsmRes.dll 2017-07-11 01:52 - 2016-08-06 16:53 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wsmprovhost.exe 2017-07-11 01:52 - 2016-08-06 16:53 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\wsmplpxy.dll 2017-07-11 01:52 - 2016-06-14 17:21 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll 2017-07-11 01:52 - 2016-06-14 17:21 - 00265216 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll 2017-07-11 01:52 - 2016-06-14 17:21 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2017-07-11 01:52 - 2016-06-14 17:21 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll 2017-07-11 01:52 - 2016-06-14 17:21 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll 2017-07-11 01:52 - 2016-06-14 17:21 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll 2017-07-11 01:52 - 2016-06-14 17:05 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe 2017-07-11 01:52 - 2016-06-14 17:05 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe 2017-07-11 01:52 - 2016-06-14 17:05 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe 2017-07-11 01:52 - 2016-06-14 16:55 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe 2017-07-11 01:52 - 2016-06-14 16:55 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe 2017-07-11 01:52 - 2016-06-14 16:54 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll 2017-07-11 01:46 - 2016-05-12 15:04 - 00249352 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll 2017-07-11 01:44 - 2016-08-16 22:27 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2017-07-11 01:44 - 2016-08-16 22:27 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2017-07-11 01:44 - 2016-08-16 22:26 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2017-07-11 01:44 - 2016-08-16 22:26 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2017-07-11 01:44 - 2016-08-16 22:26 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2017-07-11 01:44 - 2016-08-16 22:26 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2017-07-11 01:44 - 2016-08-16 22:26 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2017-07-11 01:43 - 2016-05-11 17:19 - 00351744 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll 2017-07-11 01:43 - 2016-05-11 17:19 - 00231424 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2017-07-11 01:43 - 2016-05-11 17:19 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll 2017-07-11 01:43 - 2016-05-11 17:01 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe 2017-07-11 01:43 - 2016-05-11 16:52 - 00188928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys 2017-07-10 21:59 - 2015-12-08 23:54 - 01620992 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2017-07-10 21:59 - 2015-12-08 23:54 - 01568768 _____ (Microsoft Corporation) C:\Windows\system32\WMVENCOD.DLL 2017-07-10 21:59 - 2015-12-08 23:54 - 00902144 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL 2017-07-10 21:59 - 2015-12-08 23:54 - 00815616 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOE.DLL 2017-07-10 21:59 - 2015-12-08 23:54 - 00740352 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll 2017-07-10 21:59 - 2015-12-08 23:54 - 00739328 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL 2017-07-10 21:59 - 2015-12-08 23:54 - 00541184 _____ (Microsoft Corporation) C:\Windows\system32\WMVSDECD.DLL 2017-07-10 21:59 - 2015-12-08 23:53 - 00970240 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2adec.dll 2017-07-10 21:59 - 2015-12-08 23:53 - 00829952 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL 2017-07-10 21:59 - 2015-12-08 23:53 - 00153600 _____ (Microsoft Corporation) C:\Windows\system32\COLORCNV.DLL 2017-07-10 21:58 - 2016-01-22 08:04 - 00642048 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll 2017-07-10 21:58 - 2016-01-22 08:04 - 00535040 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll 2017-07-10 21:58 - 2015-12-08 23:54 - 02285056 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2017-07-10 21:58 - 2015-12-08 23:54 - 01325056 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOE.DLL 2017-07-10 21:58 - 2015-12-08 23:54 - 01202688 _____ (Microsoft Corporation) C:\Windows\system32\WMALFXGFXDSP.dll 2017-07-10 21:58 - 2015-12-08 23:54 - 00665088 _____ (Microsoft Corporation) C:\Windows\system32\WMVXENCD.DLL 2017-07-10 21:58 - 2015-12-08 23:54 - 00358400 _____ (Microsoft Corporation) C:\Windows\system32\WMVSENCD.DLL 2017-07-10 21:58 - 2015-12-08 23:54 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\VIDRESZR.DLL 2017-07-10 21:58 - 2015-12-08 23:53 - 00609280 _____ (Microsoft Corporation) C:\Windows\system32\MFWMAAEC.DLL 2017-07-10 21:58 - 2015-12-08 23:53 - 00415744 _____ (Microsoft Corporation) C:\Windows\system32\MP4SDECD.DLL 2017-07-10 21:58 - 2015-12-08 23:53 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\SysFxUI.dll 2017-07-10 21:58 - 2015-12-08 23:53 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\MPG4DECD.DLL 2017-07-10 21:58 - 2015-12-08 23:53 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\MP43DECD.DLL 2017-07-10 21:58 - 2015-12-08 23:53 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\RESAMPLEDMO.DLL 2017-07-10 21:58 - 2015-12-08 23:53 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\qasf.dll 2017-07-10 21:58 - 2015-12-08 23:53 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax 2017-07-10 21:58 - 2015-12-08 23:53 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\MP3DMOD.DLL 2017-07-10 21:58 - 2015-12-08 23:53 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\devenum.dll 2017-07-10 21:58 - 2015-12-08 23:53 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\mfvdsp.dll 2017-07-10 21:58 - 2015-12-08 23:53 - 00004608 _____ (Microsoft Corporation) C:\Windows\system32\ksuser.dll 2017-07-10 21:58 - 2015-12-08 23:43 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2017-07-10 21:58 - 2015-12-08 23:11 - 00177152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2017-07-10 21:58 - 2015-12-08 23:11 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmkaud.sys 2017-07-10 21:50 - 2015-11-11 20:39 - 01242624 _____ (Microsoft Corporation) C:\Windows\system32\comsvcs.dll 2017-07-10 21:50 - 2015-11-11 20:39 - 00487936 _____ (Microsoft Corporation) C:\Windows\system32\catsrvut.dll 2017-07-10 21:45 - 2015-10-29 19:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\shimeng.dll 2017-07-10 21:45 - 2015-10-29 19:49 - 00295936 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll 2017-07-10 21:45 - 2015-10-29 19:49 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\aelupsvc.dll 2017-07-10 21:45 - 2015-10-29 19:49 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe 2017-07-10 21:41 - 2015-11-03 20:55 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\els.dll 2017-07-10 21:41 - 2015-10-13 06:50 - 00712640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2017-07-10 21:26 - 2015-12-08 23:53 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2017-07-10 21:26 - 2015-11-14 00:50 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\mapistub.dll 2017-07-10 21:26 - 2015-11-14 00:50 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\mapi32.dll 2017-07-10 21:26 - 2015-11-14 00:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\fixmapi.exe 2017-07-10 21:26 - 2015-11-05 21:02 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\wshrm.dll 2017-07-10 21:26 - 2015-11-05 11:48 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys 2017-07-10 20:59 - 2017-07-10 20:59 - 00000537 _____ C:\Windows\system32\nativelog.txt 2017-07-10 20:13 - 2017-07-10 20:13 - 00000000 _____ C:\Windows\system32\sho5B03.tmp 2017-07-10 19:59 - 2017-07-10 19:59 - 00001191 _____ C:\Users\Public\Desktop\Revo Uninstaller.lnk 2017-07-10 19:59 - 2017-07-10 19:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller 2017-07-10 19:58 - 2017-07-10 19:58 - 00000000 ____D C:\Program Files\VS Revo Group 2017-07-10 19:51 - 2017-07-10 19:52 - 07178424 _____ (VS Revo Group ) C:\Users\Emma\Downloads\revosetup.exe ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-07-15 07:08 - 2012-04-07 15:53 - 00001092 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-515238101-109490641-1715876383-1000UA.job 2017-07-15 07:04 - 2009-07-14 06:34 - 00016480 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2017-07-15 07:04 - 2009-07-14 06:34 - 00016480 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2017-07-15 06:56 - 2011-05-31 17:49 - 00000000 ____D C:\ProgramData\boost_interprocess 2017-07-15 06:55 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2017-07-14 21:38 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\inf 2017-07-14 19:19 - 2012-04-07 15:53 - 00001070 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-515238101-109490641-1715876383-1000Core.job 2017-07-12 15:51 - 2016-02-11 17:54 - 00000000 ____D C:\Users\Emma\.oracle_jre_usage 2017-07-12 15:47 - 2011-09-29 13:58 - 00000000 ____D C:\Users\Emma 2017-07-12 10:31 - 2009-07-14 06:33 - 00267168 _____ C:\Windows\system32\FNTCACHE.DAT 2017-07-12 10:27 - 2015-09-06 10:28 - 00000000 ____D C:\Windows\system32\appraiser 2017-07-12 10:27 - 2015-09-05 11:12 - 00000000 ___SD C:\Windows\system32\CompatTel 2017-07-12 09:44 - 2011-05-31 18:06 - 00748014 _____ C:\Windows\system32\perfh00C.dat 2017-07-12 09:44 - 2011-05-31 18:06 - 00150248 _____ C:\Windows\system32\perfc00C.dat 2017-07-12 09:44 - 2010-11-20 23:01 - 01644836 _____ C:\Windows\system32\PerfStringBackup.INI 2017-07-12 09:39 - 2013-08-01 22:05 - 00000000 ____D C:\Windows\system32\MRT 2017-07-12 09:29 - 2011-10-06 11:05 - 132532600 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2017-07-12 09:28 - 2013-08-18 18:30 - 00002155 _____ C:\Windows\epplauncher.mif 2017-07-12 09:27 - 2013-08-18 18:29 - 00002121 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk 2017-07-12 09:27 - 2013-08-18 18:29 - 00000000 ____D C:\Program Files\Microsoft Security Client 2017-07-11 22:12 - 2012-06-15 19:06 - 00803328 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2017-07-11 22:12 - 2011-10-22 15:31 - 00144896 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2017-07-11 22:11 - 2011-04-07 12:56 - 00000000 ____D C:\Windows\system32\Macromed 2017-07-11 19:40 - 2015-09-10 16:29 - 00002215 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-07-11 19:40 - 2015-09-10 16:29 - 00002203 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2017-07-11 10:58 - 2011-04-07 12:13 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2017-07-11 10:53 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\system32\migwiz 2017-07-11 10:53 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\system32\Dism 2017-07-11 10:53 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\PolicyDefinitions 2017-07-11 10:23 - 2011-12-25 21:22 - 00000000 ____D C:\Users\Emma\AppData\Roaming\SoftGrid Client 2017-07-11 10:14 - 2012-08-07 21:00 - 00000000 ____D C:\Users\Emma\AppData\Roaming\vlc 2017-07-11 10:08 - 2012-08-06 20:04 - 00000000 ____D C:\Users\Emma\Documents\PHOTOS 2017-07-11 10:07 - 2011-04-07 12:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2017-07-11 09:48 - 2016-02-11 17:51 - 00000000 ____D C:\ProgramData\Oracle 2017-07-11 09:47 - 2016-02-11 17:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2017-07-11 09:47 - 2016-02-11 17:50 - 00000000 ____D C:\Program Files\Java 2017-07-11 09:41 - 2016-02-11 17:53 - 00095808 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll 2017-07-10 21:39 - 2011-04-07 11:56 - 00000000 ____D C:\Program Files\Acer GameZone 2017-07-10 21:38 - 2011-04-07 11:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer GameZone 2017-07-10 20:55 - 2016-02-12 00:03 - 00000000 ____D C:\Users\Emma\AppData\Roaming\.minecraft 2017-07-10 19:37 - 2015-09-07 09:41 - 00000000 ____D C:\Windows\system32\%LOCALAPPDATA% ==================== Fichiers à la racine de certains dossiers ======= 2012-08-07 20:33 - 2012-08-07 20:33 - 0003584 _____ () C:\Users\Emma\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2011-04-07 11:57 - 2010-03-02 23:59 - 0131984 _____ () C:\ProgramData\FullRemove.exe ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\Windows\explorer.exe => Le fichier est signé numériquement C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement C:\Windows\system32\wininit.exe => Le fichier est signé numériquement C:\Windows\system32\svchost.exe => Le fichier est signé numériquement C:\Windows\system32\services.exe => Le fichier est signé numériquement C:\Windows\system32\User32.dll => Le fichier est signé numériquement C:\Windows\system32\userinit.exe => Le fichier est signé numériquement C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2017-07-14 12:40 ==================== Fin de FRST.txt ============================