Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 15-07-2017 Exécuté par lvlaz (administrateur) sur PC-LAURENT (17-07-2017 22:31:08) Exécuté depuis C:\Users\lvlaz\Desktop Profils chargés: lvlaz (Profils disponibles: lvlaz) Platform: Windows 10 Pro Version 1703 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: Chrome) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avp.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Advanced Micro Devices) C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe (VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe (UltraVNC) E:\winvnc.exe (VMware, Inc.) E:\installation programmes\vmware-authd.exe (Transaction Software, D 81829 Munich) D:\installation jeux\EPC_WIS_ASRA_mercedes\EWA net\database\TransBase EPC\tbmux32.exe (UltraVNC) E:\winvnc.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avpui.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.16.595.0_x64__kzf8qxf38zg5c\SkypeHost.exe (Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe () C:\Program Files (x86)\Lexmark Pro710 Series\LMADImon.exe (Greenshot) C:\Program Files\Greenshot\Greenshot.exe (Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMan.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 8.0.6\kpm.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeC2RClient.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registre (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13885696 2015-07-29] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1402624 2015-07-29] (Realtek Semiconductor) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508104 2015-07-29] (Adobe Systems Incorporated) HKLM\...\Run: [LMADImon] => C:\Program Files (x86)\Lexmark Pro710 Series\LMADImon.exe [952496 2012-09-07] () HKLM\...\Run: [Greenshot] => C:\Program Files\Greenshot\Greenshot.exe [528384 2016-11-03] (Greenshot) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [303928 2017-05-09] (Apple Inc.) HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files (x86)\PowerISO\PWRISOVM.EXE [336992 2012-07-19] (Power Software Ltd) HKLM-x32\...\Run: [LMADImon] => C:\Program Files (x86)\Lexmark Pro710 Series\LMADImon.exe [952496 2012-09-07] () HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [937920 2011-09-05] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [36760 2011-09-05] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [2904984 2011-09-05] (Adobe Systems Inc.) HKU\S-1-5-21-4060881021-3980863240-4163755831-1001\...\Run: [IDMan] => C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3907152 2015-08-24] (Tonec Inc.) HKU\S-1-5-21-4060881021-3980863240-4163755831-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3062048 2017-07-14] (Valve Corporation) HKU\S-1-5-21-4060881021-3980863240-4163755831-1001\...\Run: [LMab1err] => C:\Program Files\Lexmark\ErrorApp\LMab1err.exe [645296 2012-08-07] () HKU\S-1-5-21-4060881021-3980863240-4163755831-1001\...\Run: [LMADImon] => C:\Program Files (x86)\Lexmark Pro710 Series\LMADImon.exe [952496 2012-09-07] () HKU\S-1-5-21-4060881021-3980863240-4163755831-1001\...\Run: [kpm.exe] => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 8.0.6\kpm.exe [411912 2016-12-22] () HKU\S-1-5-21-4060881021-3980863240-4163755831-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2017-05-09] (Apple Inc.) HKU\S-1-5-21-4060881021-3980863240-4163755831-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9818328 2017-06-30] (Piriform Ltd) HKU\S-1-5-21-4060881021-3980863240-4163755831-1001\...\MountPoints2: H - "H:\autorun.exe" ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: Fichier hosts non détecté dans le dossier par défaut Tcpip\Parameters: [DhcpNameServer] 212.27.40.241 212.27.40.240 Tcpip\..\Interfaces\{13c69c5e-e544-49d5-a4b5-975313c0c051}: [NameServer] 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1 Tcpip\..\Interfaces\{36dd2e30-8249-49cc-9cab-1f249e3d5e24}: [DhcpNameServer] 212.27.40.241 212.27.40.240 Tcpip\..\Interfaces\{c7f01a45-148b-4d58-8519-9946cdee6479}: [NameServer] 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1 Tcpip\..\Interfaces\{f7c53983-2585-4aaa-8f98-ff3a5ea96a63}: [NameServer] 192.168.0.4,8.8.8.8 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.fr/ HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.fr/ HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.fr/?q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.fr/?q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.fr/ HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.fr/ HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.fr/ HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.fr/ HKU\S-1-5-21-4060881021-3980863240-4163755831-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.fr/ SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Kaspersky Protection -> {03993315-5CE9-4F00-8790-D14A94F1D91A} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\x64\IEExt\ie_plugin.dll [2016-12-02] (AO Kaspersky Lab) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL [2017-07-06] (Microsoft Corporation) BHO-x32: Kaspersky Protection -> {03993315-5CE9-4F00-8790-D14A94F1D91A} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\IEExt\ie_plugin.dll [2016-12-02] (AO Kaspersky Lab) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2017-07-06] (Microsoft Corporation) BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\GROOVEEX.DLL [2017-07-06] (Microsoft Corporation) BHO-x32: Kaspersky Password Manager -> {F710F7E5-A520-471D-989C-F653AC328FB2} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 8.0.6\ie_engine.dll [2016-12-22] (AO Kaspersky Lab) Toolbar: HKLM - Kaspersky Protection Toolbar - {001032CB-B0AC-4F2C-A650-AD4B2B26E5DA} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\x64\IEExt\ie_plugin.dll [2016-12-02] (AO Kaspersky Lab) Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2011-09-05] (Adobe Systems Incorporated) Toolbar: HKLM-x32 - Kaspersky Protection Toolbar - {001032CB-B0AC-4F2C-A650-AD4B2B26E5DA} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\IEExt\ie_plugin.dll [2016-12-02] (AO Kaspersky Lab) Toolbar: HKU\S-1-5-21-4060881021-3980863240-4163755831-1001 -> Pas de nom - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - Pas de fichier Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2017-07-06] (Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2017-07-06] (Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2017-07-06] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2017-07-06] (Microsoft Corporation) Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2017-05-16] (Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2017-07-06] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2017-07-06] (Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2017-07-06] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2017-07-06] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\lvlaz\AppData\Roaming\Mozilla\Firefox\Profiles\76elcvri.default [2017-07-17] FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2016-02-03] [non signé] FF HKLM-x32\...\Firefox\Extensions: [light_plugin_ACF0E80077C511E59DED005056C00008@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\FFExt\light_plugin_firefox\addon.xpi FF Extension: (Kaspersky Protection) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\FFExt\light_plugin_firefox\addon.xpi [2016-12-02] FF HKU\S-1-5-21-4060881021-3980863240-4163755831-1001\...\Firefox\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Users\lvlaz\AppData\Roaming\IDM\idmmzcc7 FF Extension: (IDM integration) - C:\Users\lvlaz\AppData\Roaming\IDM\idmmzcc7 [2017-07-16] FF HKU\S-1-5-21-4060881021-3980863240-4163755831-1001\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\lvlaz\AppData\Roaming\IDM\idmmzcc5 FF Extension: (IDM CC) - C:\Users\lvlaz\AppData\Roaming\IDM\idmmzcc5 [2017-07-15] [non signé] FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_26_0_0_137.dll [2017-07-11] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50906.0\npctrl.dll [2017-03-09] ( Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~3\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_26_0_0_137.dll [2017-07-11] () FF Plugin-x32: @Diginext.fr/VirtualGeoGP -> C:\Program Files (x86)\VirtualGeo3-GP\WebPlugin\Win32\npQtAPI3DPlugin.dll [2015-05-07] (DIGINEXT) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2017-07-06] (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50906.0\npctrl.dll [2017-03-09] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2017-07-06] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-29] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-29] (Google Inc.) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll [2011-09-05] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-4060881021-3980863240-4163755831-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\lvlaz\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-06-08] (Unity Technologies ApS) FF Plugin HKU\S-1-5-21-4060881021-3980863240-4163755831-1001: kaspersky.com/KPMPlugin -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 8.0.4\npKPMPlugin.dll [Pas de fichier] FF Plugin HKU\S-1-5-21-4060881021-3980863240-4163755831-1001: kpm_win_add_on@kaspersky -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 8.0.4\kpm_win_add_on@kaspersky [Pas de fichier] Chrome: ======= CHR Profile: C:\Users\lvlaz\AppData\Local\Google\Chrome\User Data\Default [2017-07-17] CHR Extension: (Google Slides) - C:\Users\lvlaz\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-07-17] CHR Extension: (Google Docs) - C:\Users\lvlaz\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-07-17] CHR Extension: (Google Drive) - C:\Users\lvlaz\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-07-17] CHR Extension: (YouTube) - C:\Users\lvlaz\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-07-17] CHR Extension: (Google Sheets) - C:\Users\lvlaz\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-07-17] CHR Extension: (Google Docs hors connexion) - C:\Users\lvlaz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-07-17] CHR Extension: (Kaspersky Protection) - C:\Users\lvlaz\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpeeaghdjmhlakojjcgfdhgcejdaefmi [2017-07-17] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\lvlaz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-07-17] CHR Extension: (Gmail) - C:\Users\lvlaz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-07-17] CHR Extension: (Chrome Media Router) - C:\Users\lvlaz\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-07-17] CHR HKLM\...\Chrome\Extension: [lpeeaghdjmhlakojjcgfdhgcejdaefmi] - hxxps://chrome.google.com/webstore/detail/lpeeaghdjmhlakojjcgfdhgcejdaefmi CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2015-08-21] CHR HKLM-x32\...\Chrome\Extension: [lpeeaghdjmhlakojjcgfdhgcejdaefmi] - hxxps://chrome.google.com/webstore/detail/lpeeaghdjmhlakojjcgfdhgcejdaefmi ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 amdacpusrsvc; C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [121856 2016-08-04] (Advanced Micro Devices) [Fichier non signé] R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2017-04-03] (Apple Inc.) R2 AVP16.0.1; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\avp.exe [236928 2015-12-22] (AO Kaspersky Lab) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [3697352 2017-01-29] (Microsoft Corporation) R2 EWA net DB EPC; D:\installation jeux\EPC_WIS_ASRA_mercedes\EWA net\database\TransBase EPC\tbmux32.exe [417792 2007-11-27] (Transaction Software, D 81829 Munich) [Fichier non signé] S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [Fichier non signé] S3 klvssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.1\x64\vssbridge64.exe [152488 2015-12-22] (AO Kaspersky Lab) S3 LxssManager; C:\Windows\system32\lxss\LxssManager.dll [357888 2017-07-11] (Microsoft Corporation) R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [50688 2014-11-17] (Hewlett-Packard) [Fichier non signé] S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2099720 2015-11-13] (Electronic Arts) R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [66048 2014-11-17] (Hewlett-Packard) [Fichier non signé] S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [3913064 2017-03-20] (Microsoft Corporation) S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Fichier non signé] R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10885360 2017-05-31] (TeamViewer GmbH) R2 uvnc_service; E:\winvnc.exe [1519168 2008-08-30] (UltraVNC) R2 VMAuthdService; E:\installation programmes\vmware-authd.exe [99816 2017-06-19] (VMware, Inc.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342264 2017-03-18] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102816 2017-03-18] (Microsoft Corporation) ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 amdacpksd; C:\WINDOWS\system32\drivers\amdacpksd.sys [305032 2016-08-05] (Advanced Micro Devices) S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [49448 2016-08-18] (Advanced Micro Devices, Inc.) R3 amdkmdag; C:\Windows\System32\DriverStore\FileRepository\c0313676.inf_amd64_96bbc33bec5c7fae\atikmdag.sys [36558208 2017-05-16] (Advanced Micro Devices, Inc.) R3 amdkmdap; C:\Windows\System32\DriverStore\FileRepository\c0313676.inf_amd64_96bbc33bec5c7fae\atikmpag.sys [528760 2017-05-16] (Advanced Micro Devices, Inc.) R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [101376 2016-07-24] (Advanced Micro Devices) R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [389816 2015-07-06] (Kaspersky Lab ZAO) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.) S3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2016-05-19] (Disc Soft Ltd) S3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [47672 2016-05-19] (Disc Soft Ltd) S3 GenericMount; C:\Windows\System32\drivers\GenericMount.sys [54320 2009-09-21] (Symantec Corporation) S3 HtcVCom32; C:\Windows\system32\DRIVERS\HtcVComV64.sys [121800 2010-03-09] (QUALCOMM Incorporated) [Fichier non signé] R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [478392 2015-09-11] (Kaspersky Lab ZAO) R0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [53432 2015-06-06] (Kaspersky Lab ZAO) R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [79752 2015-12-01] (AO Kaspersky Lab) R2 kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [78200 2015-12-02] (AO Kaspersky Lab) S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [30328 2015-06-24] (Kaspersky Lab) R3 klflt; C:\Windows\system32\DRIVERS\klflt.sys [186352 2017-04-18] (AO Kaspersky Lab) R1 klhk; C:\Windows\System32\drivers\klhk.sys [244720 2017-04-18] (AO Kaspersky Lab) R3 klids; C:\ProgramData\Kaspersky Lab\AVP16.0.1\Bases\klids.sys [187336 2017-07-13] (AO Kaspersky Lab) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [1001968 2017-04-18] (AO Kaspersky Lab) R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [51288 2016-04-29] (AO Kaspersky Lab) R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [52608 2015-11-11] (AO Kaspersky Lab) R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [41656 2015-06-07] (Kaspersky Lab ZAO) R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [45960 2015-12-07] (AO Kaspersky Lab) R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [87984 2016-10-07] (AO Kaspersky Lab) R1 Klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [116448 2017-03-14] (AO Kaspersky Lab) R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [194440 2015-12-03] (AO Kaspersky Lab) R3 KoneFltr; C:\Windows\system32\drivers\Kone.sys [15488 2015-07-29] (ROCCAT Ltd) R3 Lycosa; C:\Windows\system32\drivers\Lycosa.sys [18816 2015-07-29] (Razer USA Ltd.) R0 PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [56336 2013-07-19] (Corel Corporation) S3 qcusbser; C:\Windows\system32\DRIVERS\qcusbser.sys [254520 2017-03-15] (QUALCOMM Incorporated) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [604160 2017-03-18] (Realtek ) S3 SDFRd; C:\Windows\System32\drivers\SDFRd.sys [31128 2017-03-18] () R3 SNPSTD3; C:\Windows\system32\DRIVERS\snpstd3.sys [10550272 2015-07-29] (Sonix Co. Ltd.) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.) S3 usbser; C:\Windows\SysWOW64\drivers\usbser.sys [25600 2014-04-11] (Microsoft Corporation) [Fichier non signé] R1 VBoxNetAdp; C:\Windows\System32\drivers\VBoxNetAdp6.sys [121248 2016-09-12] (Oracle Corporation) R1 VBoxNetLwf; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [195936 2016-09-12] (Oracle Corporation) U5 VBoxUSB; C:\Windows\System32\Drivers\VBoxUSB.sys [125008 2015-12-18] (Oracle Corporation) R0 vsock; C:\Windows\system32\DRIVERS\vsock.sys [91712 2016-09-30] (VMware, Inc.) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44632 2017-03-18] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [294816 2017-03-18] (Microsoft Corporation) S3 wdm_usb; C:\Windows\system32\DRIVERS\usb2ser.sys [159936 2016-08-16] (MBB) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [121248 2017-03-18] (Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-07-17 22:26 - 2017-07-17 22:31 - 00000000 ____D C:\Users\lvlaz\Desktop\Nouveau dossier 2017-07-17 19:31 - 2017-07-17 19:31 - 00002270 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-07-17 19:31 - 2017-07-17 19:31 - 00002258 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2017-07-17 19:30 - 2017-07-17 19:30 - 00001232 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2017-07-17 19:30 - 2017-07-17 19:30 - 00001220 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2017-07-17 19:30 - 2017-07-17 19:30 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2017-07-17 19:30 - 2017-07-17 19:30 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2017-07-17 17:00 - 2017-07-17 17:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud 2017-07-17 12:22 - 2017-07-17 22:31 - 00026058 _____ C:\Users\lvlaz\Desktop\FRST.txt 2017-07-17 12:21 - 2017-07-17 22:31 - 00000000 ____D C:\FRST 2017-07-17 12:20 - 2017-07-17 12:20 - 02435584 _____ (Farbar) C:\Users\lvlaz\Desktop\FRST64.exe 2017-07-17 08:23 - 2017-07-17 08:23 - 00000000 ____D C:\Users\lvlaz\AppData\Roaming\Google 2017-07-16 22:13 - 2017-07-14 23:59 - 04110280 _____ C:\Users\lvlaz\Desktop\adwcleaner_6.047.exe 2017-07-16 19:07 - 2017-07-16 19:07 - 00000000 ____D C:\Users\lvlaz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome 2017-07-15 17:07 - 2017-07-16 09:24 - 00000000 ____D C:\Users\lvlaz\Desktop\2017-07-15 2017-07-15 08:09 - 2017-07-15 08:09 - 00000000 _____ C:\autoexec.bat 2017-07-15 00:30 - 2017-07-15 00:29 - 02825088 _____ C:\Users\lvlaz\Desktop\ZHPCleaner.exe 2017-07-15 00:29 - 2017-07-15 00:29 - 00000000 ____D C:\Users\lvlaz\AppData\Local\ZHP 2017-07-15 00:28 - 2017-07-15 00:28 - 00331473 _____ C:\Users\lvlaz\ZHPCleaner.exe 2017-07-14 19:16 - 2017-07-17 19:25 - 00000008 __RSH C:\ProgramData\ntuser.pol 2017-07-13 00:41 - 2017-07-13 00:42 - 00000000 ____D C:\Program Files\iTunes 2017-07-13 00:41 - 2017-07-13 00:41 - 00000000 ____D C:\Program Files\iPod 2017-07-13 00:37 - 2017-07-14 23:59 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk 2017-07-13 00:37 - 2017-07-13 00:37 - 00000000 ____D C:\Windows\System32\Tasks\Apple 2017-07-13 00:37 - 2017-07-13 00:37 - 00000000 ____D C:\Users\lvlaz\AppData\Local\Apple 2017-07-13 00:37 - 2017-07-13 00:37 - 00000000 ____D C:\Program Files\Bonjour 2017-07-13 00:37 - 2017-07-13 00:37 - 00000000 ____D C:\Program Files (x86)\Bonjour 2017-07-13 00:37 - 2017-07-13 00:37 - 00000000 ____D C:\Program Files (x86)\Apple Software Update 2017-07-12 09:10 - 2017-07-12 09:10 - 00000000 ____D C:\Program Files\Common Files\DESIGNER 2017-07-12 09:08 - 2017-07-14 23:59 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk 2017-07-12 09:08 - 2017-07-14 23:58 - 00002060 _____ C:\Users\lvlaz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OUTLOOK.EXE - Raccourci.lnk 2017-07-12 09:07 - 2017-07-14 23:58 - 00001804 _____ C:\Users\lvlaz\Desktop\OUTLOOK.EXE - Raccourci.lnk 2017-07-11 23:52 - 2017-07-14 23:58 - 00001840 _____ C:\Users\lvlaz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bash on Ubuntu on Windows.lnk 2017-07-11 23:44 - 2017-07-13 00:25 - 00000000 __SHD C:\Users\lvlaz\AppData\Local\lxss 2017-07-11 23:36 - 2017-07-11 23:36 - 00000000 ___SD C:\Windows\system32\lxss 2017-07-11 10:03 - 2017-07-11 10:04 - 00000000 ____D C:\Users\lvlaz\AppData\Local\FileZilla 2017-07-10 12:40 - 2017-07-14 23:58 - 00000907 _____ C:\Users\Public\Desktop\CCleaner.lnk 2017-07-10 12:40 - 2017-07-10 12:40 - 00002860 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2017-07-10 12:40 - 2017-07-10 12:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2017-07-10 12:40 - 2017-07-10 12:40 - 00000000 ____D C:\Program Files\CCleaner 2017-07-10 12:34 - 2017-07-14 23:58 - 00002036 _____ C:\Users\lvlaz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EXCEL.EXE - Raccourci.lnk 2017-07-09 19:36 - 2017-07-09 19:36 - 00000000 ___HD C:\$Windows.~WS 2017-07-07 15:15 - 2017-07-07 15:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VMware 2017-07-07 15:15 - 2017-07-07 15:15 - 00000000 ____D C:\Program Files\Common Files\VMware 2017-07-07 15:15 - 2017-06-19 20:04 - 01149416 _____ (VMware, Inc.) C:\Windows\system32\vnetlib64.dll 2017-07-07 15:15 - 2017-06-19 20:03 - 00400872 _____ (VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe 2017-07-07 15:15 - 2017-06-19 20:03 - 00366568 _____ (VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe 2017-07-07 15:15 - 2017-06-19 19:58 - 00088504 _____ (VMware, Inc.) C:\Windows\system32\Drivers\vmx86.sys 2017-07-07 15:15 - 2017-06-19 19:46 - 00066520 _____ (VMware, Inc.) C:\Windows\system32\vnetinst.dll 2017-07-07 15:15 - 2017-06-19 19:46 - 00043992 _____ (VMware, Inc.) C:\Windows\system32\Drivers\vmnetuserif.sys 2017-07-06 14:09 - 2017-07-14 23:59 - 00002455 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk 2017-07-06 14:08 - 2017-07-14 23:58 - 00001819 _____ C:\Users\lvlaz\Desktop\POWERPNT.EXE - Raccourci.lnk 2017-07-06 14:08 - 2017-07-14 23:58 - 00001804 _____ C:\Users\lvlaz\Desktop\WINWORD.EXE - Raccourci.lnk 2017-07-06 14:07 - 2017-07-14 23:58 - 00001784 _____ C:\Users\lvlaz\Desktop\MSPUB.EXE - Raccourci.lnk 2017-07-06 14:07 - 2017-07-14 23:58 - 00001784 _____ C:\Users\lvlaz\Desktop\EXCEL.EXE - Raccourci.lnk 2017-07-06 14:01 - 2017-07-16 21:37 - 00000000 ____D C:\Program Files\Microsoft Office 2017-07-06 11:52 - 2017-07-06 13:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016 2017-07-06 11:50 - 2017-07-06 11:50 - 00000000 ____D C:\Program Files\Microsoft Office 15 2017-07-04 09:25 - 2017-07-11 08:18 - 00000000 ____D C:\Users\lvlaz\Desktop\divers 2017-07-01 08:20 - 2017-06-03 12:15 - 01596600 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll 2017-07-01 08:20 - 2017-06-03 12:15 - 00750560 _____ (Microsoft Corporation) C:\Windows\system32\fontdrvhost.exe 2017-07-01 08:20 - 2017-06-03 12:15 - 00382368 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2017-07-01 08:20 - 2017-06-03 12:14 - 01147296 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe 2017-07-01 08:20 - 2017-06-03 12:14 - 01024928 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe 2017-07-01 08:20 - 2017-06-03 12:10 - 00130464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tm.sys 2017-07-01 08:20 - 2017-06-03 12:09 - 08318880 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2017-07-01 08:20 - 2017-06-03 12:09 - 01003624 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll 2017-07-01 08:20 - 2017-06-03 12:08 - 02969880 _____ (Microsoft Corporation) C:\Windows\system32\CoreUIComponents.dll 2017-07-01 08:20 - 2017-06-03 12:07 - 00923048 _____ (Microsoft Corporation) C:\Windows\system32\CoreMessaging.dll 2017-07-01 08:20 - 2017-06-03 12:07 - 00119712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys 2017-07-01 08:20 - 2017-06-03 12:02 - 02444192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2017-07-01 08:20 - 2017-06-03 12:01 - 05477096 _____ (Microsoft Corporation) C:\Windows\system32\OneCoreUAPCommonProxyStub.dll 2017-07-01 08:20 - 2017-06-03 12:00 - 00872472 _____ (Microsoft Corporation) C:\Windows\system32\ClipSVC.dll 2017-07-01 08:20 - 2017-06-03 12:00 - 00321376 _____ (Microsoft Corporation) C:\Windows\system32\capauthz.dll 2017-07-01 08:20 - 2017-06-03 12:00 - 00219040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tpm.sys 2017-07-01 08:20 - 2017-06-03 11:59 - 01409048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll 2017-07-01 08:20 - 2017-06-03 11:59 - 00626528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontdrvhost.exe 2017-07-01 08:20 - 2017-06-03 11:59 - 00311200 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2017-07-01 08:20 - 2017-06-03 11:59 - 00259400 _____ (Microsoft Corporation) C:\Windows\system32\MusNotifyIcon.exe 2017-07-01 08:20 - 2017-06-03 11:58 - 21352696 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2017-07-01 08:20 - 2017-06-03 11:58 - 07904784 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll 2017-07-01 08:20 - 2017-06-03 11:58 - 00660384 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2017-07-01 08:20 - 2017-06-03 11:58 - 00254176 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2017-07-01 08:20 - 2017-06-03 11:57 - 00371616 _____ (Microsoft Corporation) C:\Windows\system32\CloudExperienceHost.dll 2017-07-01 08:20 - 2017-06-03 11:56 - 02228120 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystems64.dll 2017-07-01 08:20 - 2017-06-03 11:56 - 01854880 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntVirtualization.dll 2017-07-01 08:20 - 2017-06-03 11:56 - 01693600 _____ (Microsoft Corporation) C:\Windows\system32\AppVIntegration.dll 2017-07-01 08:20 - 2017-06-03 11:56 - 01458592 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystemController.dll 2017-07-01 08:20 - 2017-06-03 11:56 - 00848288 _____ (Microsoft Corporation) C:\Windows\system32\AppVOrchestration.dll 2017-07-01 08:20 - 2017-06-03 11:56 - 00846752 _____ (Microsoft Corporation) C:\Windows\system32\AppVClient.exe 2017-07-01 08:20 - 2017-06-03 11:56 - 00844696 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntStreamingManager.dll 2017-07-01 08:20 - 2017-06-03 11:56 - 00697760 _____ (Microsoft Corporation) C:\Windows\system32\AppVCatalog.dll 2017-07-01 08:20 - 2017-06-03 11:56 - 00672672 _____ (Microsoft Corporation) C:\Windows\system32\AppVPublishing.dll 2017-07-01 08:20 - 2017-06-03 11:56 - 00399264 _____ (Microsoft Corporation) C:\Windows\system32\AppVScripting.dll 2017-07-01 08:20 - 2017-06-03 11:55 - 02681760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2017-07-01 08:20 - 2017-06-03 11:36 - 01150784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll 2017-07-01 08:20 - 2017-06-03 11:35 - 02259768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreUIComponents.dll 2017-07-01 08:20 - 2017-06-03 11:28 - 23677440 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll 2017-07-01 08:20 - 2017-06-03 11:26 - 00266640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capauthz.dll 2017-07-01 08:20 - 2017-06-03 11:23 - 20373920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2017-07-01 08:20 - 2017-06-03 11:23 - 06760024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll 2017-07-01 08:20 - 2017-06-03 11:23 - 00573856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll 2017-07-01 08:20 - 2017-06-03 11:21 - 01516448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppVEntSubsystems32.dll 2017-07-01 08:20 - 2017-06-03 11:20 - 00583160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreMessaging.dll 2017-07-01 08:20 - 2017-06-03 11:14 - 03673088 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys 2017-07-01 08:20 - 2017-06-03 11:14 - 00443392 _____ (Microsoft Corporation) C:\Windows\system32\PerceptionSimulationExtensions.dll 2017-07-01 08:20 - 2017-06-03 11:14 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll 2017-07-01 08:20 - 2017-06-03 11:14 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\utcutil.dll 2017-07-01 08:20 - 2017-06-03 11:14 - 00047104 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2017-07-01 08:20 - 2017-06-03 11:12 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\UserDataTimeUtil.dll 2017-07-01 08:20 - 2017-06-03 11:11 - 02958848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys 2017-07-01 08:20 - 2017-06-03 11:11 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll 2017-07-01 08:20 - 2017-06-03 11:11 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\musdialoghandlers.dll 2017-07-01 08:20 - 2017-06-03 11:11 - 00038912 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2017-07-01 08:20 - 2017-06-03 11:11 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BasicRender.sys 2017-07-01 08:20 - 2017-06-03 11:11 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2017-07-01 08:20 - 2017-06-03 11:10 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe 2017-07-01 08:20 - 2017-06-03 11:10 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe 2017-07-01 08:20 - 2017-06-03 11:10 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCredentialDeployment.exe 2017-07-01 08:20 - 2017-06-03 11:09 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.Identity.Provider.dll 2017-07-01 08:20 - 2017-06-03 11:09 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\devicengccredprov.dll 2017-07-01 08:20 - 2017-06-03 11:09 - 00094720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserDataTimeUtil.dll 2017-07-01 08:20 - 2017-06-03 11:09 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2017-07-01 08:20 - 2017-06-03 11:07 - 23682048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2017-07-01 08:20 - 2017-06-03 11:07 - 00778240 _____ C:\Windows\system32\MBR2GPT.EXE 2017-07-01 08:20 - 2017-06-03 11:07 - 00721920 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll 2017-07-01 08:20 - 2017-06-03 11:07 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\bcdboot.exe 2017-07-01 08:20 - 2017-06-03 11:07 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2017-07-01 08:20 - 2017-06-03 11:06 - 00551936 _____ (Microsoft Corporation) C:\Windows\system32\TpmCoreProvisioning.dll 2017-07-01 08:20 - 2017-06-03 11:05 - 20506624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll 2017-07-01 08:20 - 2017-06-03 11:05 - 07336448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll 2017-07-01 08:20 - 2017-06-03 11:05 - 01878016 _____ (Microsoft Corporation) C:\Windows\system32\AzureSettingSyncProvider.dll 2017-07-01 08:20 - 2017-06-03 11:05 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll 2017-07-01 08:20 - 2017-06-03 11:05 - 00169984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devicengccredprov.dll 2017-07-01 08:20 - 2017-06-03 11:04 - 12787200 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2017-07-01 08:20 - 2017-06-03 11:04 - 00925696 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebFilter.dll 2017-07-01 08:20 - 2017-06-03 11:04 - 00805888 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll 2017-07-01 08:20 - 2017-06-03 11:03 - 19336192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2017-07-01 08:20 - 2017-06-03 11:03 - 01260544 _____ (Microsoft Corporation) C:\Windows\system32\GamePanel.exe 2017-07-01 08:20 - 2017-06-03 11:03 - 00467456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TpmCoreProvisioning.dll 2017-07-01 08:20 - 2017-06-03 11:02 - 08245760 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll 2017-07-01 08:20 - 2017-06-03 11:01 - 06726656 _____ (Microsoft Corporation) C:\Windows\system32\mspaint.exe 2017-07-01 08:20 - 2017-06-03 11:01 - 02804736 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll 2017-07-01 08:20 - 2017-06-03 11:00 - 03379200 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll 2017-07-01 08:20 - 2017-06-03 11:00 - 00933376 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe 2017-07-01 08:20 - 2017-06-03 11:00 - 00358400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll 2017-07-01 08:20 - 2017-06-03 10:59 - 04730368 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2017-07-01 08:20 - 2017-06-03 10:59 - 02672128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll 2017-07-01 08:20 - 2017-06-03 10:59 - 02625024 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Logon.dll 2017-07-01 08:20 - 2017-06-03 10:59 - 02597376 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll 2017-07-01 08:20 - 2017-06-03 10:59 - 02056192 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys 2017-07-01 08:20 - 2017-06-03 10:59 - 01293824 _____ (Microsoft Corporation) C:\Windows\system32\aadtb.dll 2017-07-01 08:20 - 2017-06-03 10:59 - 01142784 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2017-07-01 08:20 - 2017-06-03 10:59 - 00975360 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe 2017-07-01 08:20 - 2017-06-03 10:59 - 00636416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WpcWebFilter.dll 2017-07-01 08:20 - 2017-06-03 10:58 - 05961216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll 2017-07-01 08:20 - 2017-06-03 10:58 - 02650112 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2017-07-01 08:20 - 2017-06-03 10:58 - 02516480 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll 2017-07-01 08:20 - 2017-06-03 10:58 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2017-07-01 08:20 - 2017-06-03 10:58 - 01046016 _____ (Microsoft Corporation) C:\Windows\system32\ngcsvc.dll 2017-07-01 08:20 - 2017-06-03 10:58 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2017-07-01 08:20 - 2017-06-03 10:57 - 11870720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2017-07-01 08:20 - 2017-06-03 10:57 - 06535168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspaint.exe 2017-07-01 08:20 - 2017-06-03 10:57 - 05557760 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll 2017-07-01 08:20 - 2017-06-03 10:57 - 02829824 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2017-07-01 08:20 - 2017-06-03 10:57 - 01675264 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll 2017-07-01 08:20 - 2017-06-03 10:57 - 01248768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AzureSettingSyncProvider.dll 2017-07-01 08:20 - 2017-06-03 10:57 - 00797184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe 2017-07-01 08:20 - 2017-06-03 10:56 - 06292992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll 2017-07-01 08:20 - 2017-06-03 10:55 - 03656192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2017-07-01 08:20 - 2017-06-03 10:55 - 02132480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll 2017-07-01 08:20 - 2017-06-03 10:55 - 01019904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aadtb.dll 2017-07-01 08:20 - 2017-06-03 10:54 - 02341376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2017-07-01 08:20 - 2017-06-03 10:54 - 02298368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll 2017-07-01 08:20 - 2017-06-03 10:54 - 00794112 _____ (Microsoft Corporation) C:\Windows\system32\pwcreator.exe 2017-07-01 08:20 - 2017-06-03 10:53 - 04559360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll 2017-07-01 08:20 - 2017-06-03 10:51 - 00064512 _____ (Microsoft Corporation) C:\Windows\bfsvc.exe 2017-07-01 08:20 - 2017-05-20 11:13 - 01333136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll 2017-07-01 08:20 - 2017-05-20 10:55 - 00606960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2017-07-01 08:20 - 2017-05-20 10:48 - 04469832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2017-07-01 08:20 - 2017-05-20 10:47 - 01474800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.dll 2017-07-01 08:20 - 2017-05-20 10:46 - 05821496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll 2017-07-01 08:20 - 2017-05-20 10:46 - 01266544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll 2017-07-01 08:20 - 2017-05-20 10:46 - 00754080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LicenseManager.dll 2017-07-01 08:20 - 2017-05-20 10:45 - 00349600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2017-07-01 08:20 - 2017-05-20 10:44 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll 2017-07-01 08:20 - 2017-05-20 10:44 - 00181664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll 2017-07-01 08:20 - 2017-05-20 10:43 - 05802968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll 2017-07-01 08:20 - 2017-05-20 10:43 - 04672848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2017-07-01 08:20 - 2017-05-20 10:43 - 02424016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll 2017-07-01 08:20 - 2017-05-20 10:43 - 01529384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll 2017-07-01 08:20 - 2017-05-20 10:43 - 01455592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll 2017-07-01 08:20 - 2017-05-20 10:43 - 01120864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll 2017-07-01 08:20 - 2017-05-20 10:43 - 00354400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MMDevAPI.dll 2017-07-01 08:20 - 2017-05-20 10:29 - 13840384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2017-07-01 08:20 - 2017-05-20 10:29 - 00584192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbonRes.dll 2017-07-01 08:20 - 2017-05-20 10:27 - 02199552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.Resources.dll 2017-07-01 08:20 - 2017-05-20 10:27 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\smartscreenps.dll 2017-07-01 08:20 - 2017-05-20 10:26 - 00059904 _____ C:\Windows\SysWOW64\xboxgipsynthetic.dll 2017-07-01 08:20 - 2017-05-20 10:26 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcconf.dll 2017-07-01 08:20 - 2017-05-20 10:25 - 00826368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NPSMDesktopProvider.dll 2017-07-01 08:20 - 2017-05-20 10:25 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.Diagnostics.dll 2017-07-01 08:20 - 2017-05-20 10:24 - 00362496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\daxexec.dll 2017-07-01 08:20 - 2017-05-20 10:23 - 06728192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll 2017-07-01 08:20 - 2017-05-20 10:22 - 01292288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVPXENC.dll 2017-07-01 08:20 - 2017-05-20 10:22 - 00754176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MessagingDataModel2.dll 2017-07-01 08:20 - 2017-05-20 10:22 - 00394240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DictationManager.dll 2017-07-01 08:20 - 2017-05-20 10:21 - 01984000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceFlows.DataModel.dll 2017-07-01 08:20 - 2017-05-20 10:21 - 00476672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OneDriveSettingSyncProvider.dll 2017-07-01 08:20 - 2017-05-20 10:21 - 00444928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.System.Launcher.dll 2017-07-01 08:20 - 2017-05-20 10:20 - 00807424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StoreAgent.dll 2017-07-01 08:20 - 2017-05-20 10:20 - 00507392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2017-07-01 08:20 - 2017-05-20 10:20 - 00368128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgentUserBroker.exe 2017-07-01 08:20 - 2017-05-20 10:20 - 00354304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActivationManager.dll 2017-07-01 08:20 - 2017-05-20 10:19 - 05719040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BingMaps.dll 2017-07-01 08:20 - 2017-05-20 10:18 - 01450496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll 2017-07-01 08:20 - 2017-05-20 10:17 - 00952832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll 2017-07-01 08:20 - 2017-05-20 10:17 - 00909312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll 2017-07-01 08:20 - 2017-05-20 10:17 - 00329728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallAgent.exe 2017-07-01 08:20 - 2017-05-20 10:17 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cldapi.dll 2017-07-01 08:20 - 2017-05-20 10:16 - 05225984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2017-07-01 08:20 - 2017-05-20 10:16 - 03667456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll 2017-07-01 08:20 - 2017-05-20 10:16 - 02588160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapRouter.dll 2017-07-01 08:20 - 2017-05-20 10:16 - 00899584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll 2017-07-01 08:20 - 2017-05-20 10:15 - 02088960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MapGeocoder.dll 2017-07-01 08:20 - 2017-05-20 10:14 - 04417024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll 2017-07-01 08:20 - 2017-05-20 10:14 - 04056576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll 2017-07-01 08:20 - 2017-05-20 10:14 - 02679296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll 2017-07-01 08:20 - 2017-05-20 10:14 - 02211328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputService.dll 2017-07-01 08:20 - 2017-05-20 10:14 - 01035264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ShareHost.dll 2017-07-01 08:20 - 2017-05-20 10:11 - 01536512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll 2017-07-01 08:20 - 2017-05-20 10:10 - 00332800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Midi.dll 2017-07-01 08:20 - 2017-05-20 10:10 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NPSM.dll 2017-07-01 08:20 - 2017-05-20 10:10 - 00089088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll 2017-07-01 08:20 - 2017-05-20 10:08 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RstrtMgr.dll 2017-07-01 08:20 - 2017-05-20 09:08 - 01459728 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll 2017-07-01 08:20 - 2017-05-20 09:08 - 00543648 _____ (Microsoft Corporation) C:\Windows\system32\securekernel.exe 2017-07-01 08:20 - 2017-05-20 09:07 - 00287648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2017-07-01 08:20 - 2017-05-20 09:03 - 00777400 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2017-07-01 08:20 - 2017-05-20 08:59 - 00112544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys 2017-07-01 08:20 - 2017-05-20 08:58 - 00188824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2017-07-01 08:20 - 2017-05-20 08:56 - 04847928 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2017-07-01 08:20 - 2017-05-20 08:56 - 00712608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys 2017-07-01 08:20 - 2017-05-20 08:56 - 00370928 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe 2017-07-01 08:20 - 2017-05-20 08:55 - 07325584 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll 2017-07-01 08:20 - 2017-05-20 08:55 - 01911752 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.dll 2017-07-01 08:20 - 2017-05-20 08:55 - 01506712 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll 2017-07-01 08:20 - 2017-05-20 08:55 - 01055648 _____ (Microsoft Corporation) C:\Windows\system32\LicenseManager.dll 2017-07-01 08:20 - 2017-05-20 08:55 - 00961952 _____ (Microsoft Corporation) C:\Windows\system32\efscore.dll 2017-07-01 08:20 - 2017-05-20 08:55 - 00211872 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll 2017-07-01 08:20 - 2017-05-20 08:54 - 00730016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys 2017-07-01 08:20 - 2017-05-20 08:54 - 00546208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2017-07-01 08:20 - 2017-05-20 08:54 - 00144288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storahci.sys 2017-07-01 08:20 - 2017-05-20 08:53 - 00654976 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll 2017-07-01 08:20 - 2017-05-20 08:53 - 00411040 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2017-07-01 08:20 - 2017-05-20 08:53 - 00363424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys 2017-07-01 08:20 - 2017-05-20 08:53 - 00335808 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthService.exe 2017-07-01 08:20 - 2017-05-20 08:53 - 00255904 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll 2017-07-01 08:20 - 2017-05-20 08:52 - 04709528 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2017-07-01 08:20 - 2017-05-20 08:52 - 01700408 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll 2017-07-01 08:20 - 2017-05-20 08:51 - 06551856 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll 2017-07-01 08:20 - 2017-05-20 08:51 - 02604256 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll 2017-07-01 08:20 - 2017-05-20 08:51 - 01670496 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll 2017-07-01 08:20 - 2017-05-20 08:51 - 01219560 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll 2017-07-01 08:20 - 2017-05-20 08:51 - 00406064 _____ (Microsoft Corporation) C:\Windows\system32\MMDevAPI.dll 2017-07-01 08:20 - 2017-05-20 08:48 - 00387928 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll 2017-07-01 08:20 - 2017-05-20 08:10 - 00809472 _____ (Microsoft Corporation) C:\Windows\system32\SecurityHealthSSO.dll 2017-07-01 08:20 - 2017-05-20 08:10 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll 2017-07-01 08:20 - 2017-05-20 08:10 - 00361472 _____ (Microsoft Corporation) C:\Windows\system32\ConhostV2.dll 2017-07-01 08:20 - 2017-05-20 08:10 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\winsrvext.dll 2017-07-01 08:20 - 2017-05-20 08:10 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksthunk.sys 2017-07-01 08:20 - 2017-05-20 08:09 - 17365504 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2017-07-01 08:20 - 2017-05-20 08:09 - 02199552 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.Resources.dll 2017-07-01 08:20 - 2017-05-20 08:09 - 00209408 _____ (Microsoft Corporation) C:\Windows\system32\smartscreenps.dll 2017-07-01 08:20 - 2017-05-20 08:08 - 00086016 _____ C:\Windows\system32\xboxgipsynthetic.dll 2017-07-01 08:20 - 2017-05-20 08:08 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.dll 2017-07-01 08:20 - 2017-05-20 08:08 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rootmdm.sys 2017-07-01 08:20 - 2017-05-20 08:07 - 00277504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\xboxgip.sys 2017-07-01 08:20 - 2017-05-20 08:07 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\XblGameSaveExt.dll 2017-07-01 08:20 - 2017-05-20 08:07 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\snmptrap.exe 2017-07-01 08:20 - 2017-05-20 08:06 - 00866816 _____ (Microsoft Corporation) C:\Windows\system32\NPSMDesktopProvider.dll 2017-07-01 08:20 - 2017-05-20 08:06 - 00232448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Diagnostics.dll 2017-07-01 08:20 - 2017-05-20 08:06 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\Windows.SharedPC.AccountManager.dll 2017-07-01 08:20 - 2017-05-20 08:05 - 07931392 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll 2017-07-01 08:20 - 2017-05-20 08:05 - 00518144 _____ (Microsoft Corporation) C:\Windows\system32\daxexec.dll 2017-07-01 08:20 - 2017-05-20 08:03 - 08331264 _____ (Microsoft Corporation) C:\Windows\system32\BingMaps.dll 2017-07-01 08:20 - 2017-05-20 08:03 - 00892416 _____ (Microsoft Corporation) C:\Windows\system32\MessagingDataModel2.dll 2017-07-01 08:20 - 2017-05-20 08:03 - 00549888 _____ (Microsoft Corporation) C:\Windows\system32\DictationManager.dll 2017-07-01 08:20 - 2017-05-20 08:03 - 00527360 _____ (Microsoft Corporation) C:\Windows\system32\aadcloudap.dll 2017-07-01 08:20 - 2017-05-20 08:03 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_Display.dll 2017-07-01 08:20 - 2017-05-20 08:03 - 00427008 _____ (Microsoft Corporation) C:\Windows\system32\provengine.dll 2017-07-01 08:20 - 2017-05-20 08:02 - 00616960 _____ (Microsoft Corporation) C:\Windows\system32\WindowManagement.dll 2017-07-01 08:20 - 2017-05-20 08:02 - 00601088 _____ (Microsoft Corporation) C:\Windows\system32\Windows.System.Launcher.dll 2017-07-01 08:20 - 2017-05-20 08:01 - 02347520 _____ (Microsoft Corporation) C:\Windows\system32\DeviceFlows.DataModel.dll 2017-07-01 08:20 - 2017-05-20 08:01 - 00970240 _____ (Microsoft Corporation) C:\Windows\system32\cdpsvc.dll 2017-07-01 08:20 - 2017-05-20 08:01 - 00590848 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2017-07-01 08:20 - 2017-05-20 08:01 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\OneDriveSettingSyncProvider.dll 2017-07-01 08:20 - 2017-05-20 08:01 - 00409600 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll 2017-07-01 08:20 - 2017-05-20 08:01 - 00408064 _____ (Microsoft Corporation) C:\Windows\system32\ActivationManager.dll 2017-07-01 08:20 - 2017-05-20 08:01 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\AboveLockAppHost.dll 2017-07-01 08:20 - 2017-05-20 08:01 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\embeddedmodesvc.dll 2017-07-01 08:20 - 2017-05-20 08:00 - 01078272 _____ (Microsoft Corporation) C:\Windows\system32\StoreAgent.dll 2017-07-01 08:20 - 2017-05-20 08:00 - 01067008 _____ (Microsoft Corporation) C:\Windows\system32\XboxNetApiSvc.dll 2017-07-01 08:20 - 2017-05-20 08:00 - 00846848 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll 2017-07-01 08:20 - 2017-05-20 08:00 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgentUserBroker.exe 2017-07-01 08:20 - 2017-05-20 08:00 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\cldapi.dll 2017-07-01 08:20 - 2017-05-20 07:59 - 01818624 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll 2017-07-01 08:20 - 2017-05-20 07:59 - 01468416 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll 2017-07-01 08:20 - 2017-05-20 07:59 - 01141760 _____ (Microsoft Corporation) C:\Windows\system32\MapsStore.dll 2017-07-01 08:20 - 2017-05-20 07:59 - 01028608 _____ (Microsoft Corporation) C:\Windows\system32\modernexecserver.dll 2017-07-01 08:20 - 2017-05-20 07:59 - 00972800 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll 2017-07-01 08:20 - 2017-05-20 07:59 - 00687104 _____ (Microsoft Corporation) C:\Windows\system32\LogonController.dll 2017-07-01 08:20 - 2017-05-20 07:59 - 00585216 _____ (Microsoft Corporation) C:\Windows\system32\AppReadiness.dll 2017-07-01 08:20 - 2017-05-20 07:58 - 03784704 _____ (Microsoft Corporation) C:\Windows\system32\MapRouter.dll 2017-07-01 08:20 - 2017-05-20 07:58 - 03135488 _____ (Microsoft Corporation) C:\Windows\system32\MapGeocoder.dll 2017-07-01 08:20 - 2017-05-20 07:58 - 01886208 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll 2017-07-01 08:20 - 2017-05-20 07:58 - 01046016 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll 2017-07-01 08:20 - 2017-05-20 07:58 - 00909824 _____ (Microsoft Corporation) C:\Windows\system32\ISM.dll 2017-07-01 08:20 - 2017-05-20 07:58 - 00374784 _____ (Microsoft Corporation) C:\Windows\system32\InstallAgent.exe 2017-07-01 08:20 - 2017-05-20 07:57 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll 2017-07-01 08:20 - 2017-05-20 07:56 - 02730496 _____ (Microsoft Corporation) C:\Windows\system32\smartscreen.exe 2017-07-01 08:20 - 2017-05-20 07:56 - 01076736 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll 2017-07-01 08:20 - 2017-05-20 07:55 - 04396032 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll 2017-07-01 08:20 - 2017-05-20 07:55 - 03332096 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll 2017-07-01 08:20 - 2017-05-20 07:55 - 02499584 _____ (Microsoft Corporation) C:\Windows\system32\twinui.pcshell.dll 2017-07-01 08:20 - 2017-05-20 07:55 - 01102848 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll 2017-07-01 08:20 - 2017-05-20 07:54 - 04707840 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll 2017-07-01 08:20 - 2017-05-20 07:54 - 04537344 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll 2017-07-01 08:20 - 2017-05-20 07:54 - 03803136 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsThresholdAdminFlowUI.dll 2017-07-01 08:20 - 2017-05-20 07:54 - 02938880 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll 2017-07-01 08:20 - 2017-05-20 07:54 - 01275904 _____ (Microsoft Corporation) C:\Windows\system32\ShareHost.dll 2017-07-01 08:20 - 2017-05-20 07:52 - 01356800 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2017-07-01 08:20 - 2017-05-20 07:52 - 00624640 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll 2017-07-01 08:20 - 2017-05-20 07:52 - 00557568 _____ (Microsoft Corporation) C:\Windows\system32\wpnprv.dll 2017-07-01 08:20 - 2017-05-20 07:52 - 00476160 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Core.TextInput.dll 2017-07-01 08:20 - 2017-05-20 07:51 - 01706496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll 2017-07-01 08:20 - 2017-05-20 07:51 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\umpo.dll 2017-07-01 08:20 - 2017-05-20 07:50 - 00439808 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Midi.dll 2017-07-01 08:20 - 2017-05-20 07:50 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\NPSM.dll 2017-07-01 08:20 - 2017-05-20 07:48 - 02438656 _____ (Microsoft Corporation) C:\Windows\system32\ResetEngine.dll 2017-07-01 08:20 - 2017-05-20 07:48 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\vss_ps.dll 2017-07-01 08:20 - 2017-05-20 07:47 - 00641536 _____ (Microsoft Corporation) C:\Windows\system32\rdbui.dll 2017-07-01 08:20 - 2017-05-20 07:47 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\RstrtMgr.dll 2017-06-19 19:46 - 2017-06-19 19:46 - 00098264 _____ (VMware, Inc.) C:\Windows\system32\vmnetbridge.dll 2017-06-19 19:46 - 2017-06-19 19:46 - 00066520 _____ (VMware, Inc.) C:\Windows\system32\Drivers\vmnetbridge.sys 2017-06-19 19:46 - 2017-06-19 19:46 - 00046040 _____ (VMware, Inc.) C:\Windows\system32\Drivers\vmnetadapter.sys 2017-06-19 19:46 - 2017-06-19 19:46 - 00046032 _____ (VMware, Inc.) C:\Windows\system32\Drivers\vmnet.sys 2017-06-19 18:05 - 2017-07-09 23:31 - 00000000 __RHD C:\ESD 2017-06-19 18:05 - 2017-06-19 18:05 - 00000000 ____D C:\$WINDOWS.~BT ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-07-17 22:30 - 2015-07-29 16:51 - 00000000 ____D C:\Users\lvlaz\Documents\Fichiers Outlook 2017-07-17 22:25 - 2017-04-18 06:04 - 00004168 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{F2344093-0AE1-47CB-9B86-D3695387269D} 2017-07-17 22:25 - 2015-10-18 20:37 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2017-07-17 21:43 - 2016-01-13 14:31 - 00000000 ____D C:\Users\lvlaz\AppData\Local\VMware 2017-07-17 20:54 - 2016-01-13 14:28 - 00000000 ____D C:\ProgramData\VMware 2017-07-17 20:53 - 2017-03-13 16:28 - 00000000 ____D C:\Users\Default\AppData\Roaming\VMware 2017-07-17 20:53 - 2017-03-13 16:28 - 00000000 ____D C:\Users\Default User\AppData\Roaming\VMware 2017-07-17 20:53 - 2016-01-13 14:30 - 00000000 ____D C:\Users\lvlaz\AppData\Roaming\VMware 2017-07-17 20:25 - 2017-04-18 05:31 - 00000000 ____D C:\Windows\system32\SleepStudy 2017-07-17 19:32 - 2016-05-03 00:02 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2017-07-17 19:31 - 2015-07-29 14:15 - 00000000 ____D C:\Program Files (x86)\Google 2017-07-17 19:30 - 2015-08-03 18:46 - 00000000 ____D C:\Users\lvlaz\AppData\Roaming\Mozilla 2017-07-17 19:27 - 2015-08-01 20:50 - 00000000 ____D C:\Users\lvlaz\AppData\Local\Greenshot 2017-07-17 19:27 - 2015-07-29 17:36 - 00000000 ____D C:\Program Files (x86)\Steam 2017-07-17 19:25 - 2017-04-18 06:04 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2017-07-17 19:25 - 2017-04-18 05:36 - 00065536 _____ C:\Windows\system32\spu_storage.bin 2017-07-17 19:25 - 2017-03-18 13:40 - 00524288 _____ C:\Windows\system32\config\BBI 2017-07-17 19:25 - 2015-10-20 21:02 - 00000000 ____D C:\Users\lvlaz\AppData\LocalLow\Temp 2017-07-17 19:24 - 2015-07-10 13:04 - 00000000 ___HD C:\Windows\system32\GroupPolicy 2017-07-17 02:00 - 2016-01-18 14:21 - 00000000 ____D C:\Users\lvlaz\AppData\Local\Adobe 2017-07-16 23:05 - 2015-07-29 14:15 - 00000000 ____D C:\Users\lvlaz\AppData\Local\Google 2017-07-16 23:04 - 2016-05-19 15:06 - 00000000 ____D C:\AdwCleaner 2017-07-16 22:14 - 2017-03-18 23:01 - 00000000 ____D C:\Windows\INF 2017-07-16 22:14 - 2015-07-31 13:39 - 00000000 ____D C:\Users\lvlaz\AppData\Roaming\uTorrent 2017-07-16 22:14 - 2015-07-29 16:40 - 00000000 ____D C:\Users\lvlaz\AppData\Roaming\IDM 2017-07-16 21:37 - 2015-07-29 14:06 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2017-07-16 21:37 - 2015-07-29 14:00 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2017-07-16 21:36 - 2017-03-18 23:03 - 00000000 ___HD C:\Program Files\WindowsApps 2017-07-16 21:36 - 2017-03-18 23:03 - 00000000 ____D C:\Windows\AppReadiness 2017-07-16 21:36 - 2015-07-29 13:09 - 00000000 ____D C:\Users\lvlaz\AppData\Local\Packages 2017-07-16 19:08 - 2015-07-29 16:40 - 00000000 ____D C:\Users\lvlaz\AppData\Roaming\DMCache 2017-07-16 08:45 - 2016-11-01 18:01 - 00000000 ____D C:\Users\lvlaz\Desktop\temp 2017-07-15 23:12 - 2017-04-16 16:30 - 00000000 ____D C:\Users\lvlaz\AppData\LocalLow\uTorrent 2017-07-15 12:39 - 2015-08-19 20:59 - 00000000 ____D C:\Windows\system32\MRT 2017-07-15 12:38 - 2015-08-19 20:59 - 135225752 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2017-07-15 12:37 - 2017-03-18 22:51 - 00000000 ____D C:\Windows\CbsTemp 2017-07-15 09:19 - 2017-03-18 23:03 - 00000000 ____D C:\Windows\SysWOW64\GroupPolicy 2017-07-15 08:09 - 2017-04-18 05:40 - 00000000 ____D C:\Users\lvlaz 2017-07-15 08:01 - 2015-10-14 16:59 - 00000000 ____D C:\Users\lvlaz\AppData\Roaming\ZHP 2017-07-15 00:27 - 2016-09-07 12:15 - 120329688 _____ (Kaspersky Lab ZAO) C:\Users\lvlaz\Desktop\KVRT.exe 2017-07-15 00:23 - 2016-07-02 11:16 - 00028272 _____ C:\Windows\system32\Drivers\TrueSight.sys 2017-07-14 23:59 - 2017-06-16 00:58 - 00001014 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk 2017-07-14 23:59 - 2017-05-01 10:16 - 00001040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 12.lnk 2017-07-14 23:59 - 2017-04-18 05:51 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2017-07-14 23:59 - 2017-04-18 00:30 - 00000731 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Assistant Mise à niveau de Windows 10.lnk 2017-07-14 23:59 - 2016-06-16 11:26 - 00002523 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Movie Maker 2.6.lnk 2017-07-14 23:59 - 2016-02-03 00:37 - 00002481 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller X.lnk 2017-07-14 23:59 - 2016-02-03 00:37 - 00002469 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat X Pro.lnk 2017-07-14 23:58 - 2017-06-16 00:58 - 00001052 _____ C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk 2017-07-14 23:58 - 2017-04-09 23:56 - 00000815 _____ C:\Users\Public\Desktop\VMware Workstation 12 Player.lnk 2017-07-14 23:58 - 2017-02-13 23:54 - 00001369 _____ C:\Users\Public\Desktop\Kaspersky Password Manager.lnk 2017-07-14 23:58 - 2017-02-05 22:18 - 00002221 _____ C:\Users\Public\Desktop\Google Earth.lnk 2017-07-14 23:58 - 2017-01-08 17:54 - 00001815 _____ C:\Users\lvlaz\Desktop\Adobe Premiere Pro.exe - Raccourci.lnk 2017-07-14 23:58 - 2016-12-06 19:41 - 00002170 _____ C:\Users\Public\Desktop\e-Carte Bleue La Banque Postale.lnk 2017-07-14 23:58 - 2016-10-10 20:34 - 00001149 _____ C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk 2017-07-14 23:58 - 2016-10-07 17:48 - 00002421 _____ C:\Users\Public\Desktop\Protection bancaire.lnk 2017-07-14 23:58 - 2016-10-07 17:48 - 00002355 _____ C:\Users\Public\Desktop\Kaspersky Internet Security.lnk 2017-07-14 23:58 - 2016-08-23 23:09 - 00001123 _____ C:\Users\Public\Desktop\Revo Uninstaller.lnk 2017-07-14 23:58 - 2016-07-02 11:16 - 00000943 _____ C:\Users\Public\Desktop\RogueKiller.lnk 2017-07-14 23:58 - 2016-06-24 00:45 - 00000976 _____ C:\Users\lvlaz\Desktop\MKV TO AVI CONVERTER.lnk 2017-07-14 23:58 - 2016-06-23 17:30 - 00000960 _____ C:\Users\Public\Desktop\VLC media player.lnk 2017-07-14 23:58 - 2016-05-23 00:13 - 00000772 _____ C:\Users\lvlaz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinSetupFromUSB.lnk 2017-07-14 23:58 - 2016-05-03 00:01 - 00001135 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2017-07-14 23:58 - 2016-02-21 13:16 - 00001734 _____ C:\Users\lvlaz\Desktop\Bridge.exe - Raccourci.lnk 2017-07-14 23:58 - 2016-02-12 16:46 - 00001275 _____ C:\Users\lvlaz\Desktop\Adobe After Effects CS6.lnk 2017-07-14 23:58 - 2016-02-03 20:13 - 00002067 _____ C:\Users\lvlaz\Desktop\Adobe Photoshop CS6 (64 Bit).lnk 2017-07-14 23:58 - 2016-02-03 00:37 - 00002103 _____ C:\Users\lvlaz\Desktop\Adobe Acrobat X Pro.lnk 2017-07-14 23:58 - 2016-01-18 13:18 - 00002138 _____ C:\Users\Public\Desktop\Lightroom 5.7.1 64 bits.lnk 2017-07-14 23:58 - 2015-12-05 11:24 - 00001790 _____ C:\Users\lvlaz\Desktop\ScreenCapture.exe - Raccourci.lnk 2017-07-14 23:58 - 2015-11-21 11:45 - 00001958 _____ C:\Users\lvlaz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk 2017-07-14 23:58 - 2015-08-31 16:38 - 00000405 _____ C:\Users\lvlaz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Périphériques et imprimantes.lnk 2017-07-14 23:58 - 2015-08-15 12:32 - 00000704 _____ C:\Users\lvlaz\Desktop\Téléchargements - Raccourci.lnk 2017-07-14 23:58 - 2015-08-15 12:31 - 00000517 _____ C:\Users\lvlaz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Téléchargements.lnk 2017-07-14 23:58 - 2015-08-05 17:35 - 00000714 _____ C:\Users\lvlaz\Desktop\perso - Raccourci.lnk 2017-07-14 23:58 - 2015-07-31 13:52 - 00000896 _____ C:\Users\lvlaz\Desktop\µTorrent.lnk 2017-07-14 23:58 - 2015-07-31 13:52 - 00000876 _____ C:\Users\lvlaz\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2017-07-14 23:58 - 2015-07-30 12:59 - 00001663 _____ C:\Users\lvlaz\Desktop\IDMan.exe - Raccourci.lnk 2017-07-14 23:58 - 2015-07-29 13:11 - 00002411 _____ C:\Users\lvlaz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-07-14 23:58 - 2015-07-29 13:09 - 00001051 _____ C:\Users\lvlaz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fonctionnalités optionnelles.lnk 2017-07-14 23:51 - 2015-07-29 14:17 - 00000000 ____D C:\Program Files (x86)\TeamViewer 2017-07-14 19:17 - 2017-03-18 13:40 - 00008192 _____ C:\Windows\system32\config\ELAM 2017-07-14 17:31 - 2015-08-15 12:33 - 00000000 ____D C:\Users\lvlaz\AppData\Roaming\vlc 2017-07-14 12:47 - 2017-03-18 23:03 - 00000000 ____D C:\Windows\rescache 2017-07-13 01:18 - 2017-04-18 06:04 - 00003494 _____ C:\Windows\System32\Tasks\Apple Diagnostics 2017-07-13 00:42 - 2016-04-21 19:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2017-07-13 00:37 - 2015-10-18 00:15 - 00000000 ____D C:\Program Files\Common Files\Apple 2017-07-13 00:36 - 2015-10-18 00:15 - 00000000 ____D C:\ProgramData\Apple 2017-07-12 09:10 - 2017-03-18 23:03 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2017-07-12 09:10 - 2017-03-18 23:03 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2017-07-11 23:36 - 2015-09-11 16:16 - 00000000 ____D C:\Users\lvlaz\AppData\Roaming\FileZilla 2017-07-11 23:35 - 2017-03-18 22:56 - 00864160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\lxcore.sys 2017-07-11 23:35 - 2017-03-18 22:56 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\LxRun.exe 2017-07-11 23:35 - 2017-03-18 22:56 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\bash.exe 2017-07-11 23:35 - 2017-03-18 22:56 - 00017312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\lxss.sys 2017-07-11 13:12 - 2017-03-18 23:03 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2017-07-11 13:12 - 2017-03-18 23:03 - 00000000 ____D C:\Windows\system32\Macromed 2017-07-11 10:03 - 2015-09-11 16:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client 2017-07-11 10:03 - 2015-09-11 16:10 - 00000000 ____D C:\Program Files\FileZilla FTP Client 2017-07-11 08:42 - 2017-06-15 10:56 - 00019780 _____ C:\Users\lvlaz\Desktop\prod solaire.xlsx 2017-07-10 19:53 - 2017-04-18 05:31 - 06801304 _____ C:\Windows\system32\FNTCACHE.DAT 2017-07-10 12:42 - 2017-06-16 00:58 - 00000000 ____D C:\Users\lvlaz\AppData\Roaming\TS3Client 2017-07-10 12:42 - 2017-03-18 23:03 - 00000000 ____D C:\Windows\LiveKernelReports 2017-07-10 12:42 - 2015-09-20 15:33 - 00000000 ____D C:\Users\lvlaz\AppData\Local\CrashDumps 2017-07-10 12:42 - 2015-07-29 14:17 - 00000000 ____D C:\Users\lvlaz\AppData\Roaming\TeamViewer 2017-07-09 23:31 - 2017-04-19 09:30 - 00000000 ____D C:\Windows\Panther 2017-07-07 15:15 - 2017-03-20 07:10 - 00944532 _____ C:\Windows\system32\perfh00C.dat 2017-07-07 15:15 - 2017-03-20 07:10 - 00191738 _____ C:\Windows\system32\perfc00C.dat 2017-07-07 15:15 - 2016-01-13 14:29 - 02104858 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2017-07-06 11:03 - 2015-10-30 21:03 - 00000000 ____D C:\Windows\ShellNew 2017-07-06 11:00 - 2015-07-10 13:04 - 00000076 _____ C:\Windows\win.ini 2017-07-01 13:14 - 2015-07-29 13:09 - 00000000 __RHD C:\Users\Public\AccountPictures 2017-07-01 13:11 - 2017-03-18 23:03 - 00000000 ___SD C:\Windows\SysWOW64\F12 2017-07-01 13:11 - 2017-03-18 23:03 - 00000000 ___SD C:\Windows\system32\F12 2017-07-01 13:11 - 2017-03-18 23:03 - 00000000 ___RD C:\Program Files\Windows Defender 2017-07-01 13:11 - 2017-03-18 23:03 - 00000000 ____D C:\Windows\system32\WinBioPlugIns 2017-07-01 13:11 - 2017-03-18 23:03 - 00000000 ____D C:\Windows\system32\oobe 2017-07-01 13:11 - 2017-03-18 23:03 - 00000000 ____D C:\Windows\system32\appraiser 2017-07-01 13:11 - 2017-03-18 23:03 - 00000000 ____D C:\Windows\ShellExperiences 2017-07-01 13:11 - 2017-03-18 23:03 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2017-07-01 13:11 - 2017-03-18 23:03 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2017-07-01 08:34 - 2015-09-08 00:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2017-07-01 08:33 - 2015-09-08 00:11 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2017-07-01 08:33 - 2015-09-08 00:11 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2017-06-30 16:47 - 2017-03-18 23:06 - 00835576 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2017-06-30 16:47 - 2017-03-18 23:06 - 00177656 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2017-06-29 12:40 - 2017-03-18 23:03 - 00000000 ____D C:\Windows\system32\NDF 2017-06-23 22:40 - 2017-04-18 06:04 - 00003280 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task v2 2017-06-23 22:40 - 2015-07-29 13:11 - 00000000 ___RD C:\Users\lvlaz\OneDrive ==================== Fichiers à la racine de certains dossiers ======= 2015-12-07 19:59 - 2016-08-17 22:49 - 0000132 _____ () C:\Users\lvlaz\AppData\Roaming\Préfs Format PNG Adobe CS6 2017-04-18 05:35 - 2017-04-18 05:35 - 0000000 ____H () C:\ProgramData\DP45977C.lfl 2015-08-28 19:29 - 2017-06-08 16:25 - 0033282 _____ () C:\ProgramData\LMADIscan.log Fichiers à déplacer ou supprimer: ==================== C:\Users\lvlaz\ZHPCleaner.exe ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement C:\Windows\system32\wininit.exe => Le fichier est signé numériquement C:\Windows\explorer.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\Windows\system32\svchost.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\Windows\system32\services.exe => Le fichier est signé numériquement C:\Windows\system32\User32.dll => Le fichier est signé numériquement C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement C:\Windows\system32\userinit.exe => Le fichier est signé numériquement C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2017-07-16 09:36 ==================== Fin de FRST.txt ============================