Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 31-07-2017 Exécuté par jean- (administrateur) sur DESKTOP-37KC94K (04-08-2017 12:20:03) Exécuté depuis C:\Users\jean-\Desktop Profils chargés: jean- (Profils disponibles: jean- & MSSQL$ADK) Platform: Windows 10 Home Version 1607 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: Opera) Mode d'amorçage: Safe Mode (with Networking) Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Microsoft Corporation) C:\Windows\System32\InstallAgent.exe (Malwarebytes) C:\Users\jean-\AppData\Local\Temp\scoped_dir3500_18116\adwcleaner_7.0.2.0.exe () C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EaseUSEverySyncCache.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registre (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [AdAwareTray] => C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.12.945.9202\AdAwareTray.exe [9571552 2016-07-18] () HKLM\...\Run: [] => [X] HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16408320 2015-12-14] (Realtek Semiconductor) HKLM-x32\...\RunOnce: [] => [X] HKLM\...\Policies\Explorer: [NoDriveTypeAutoRun]  HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION HKU\S-1-5-21-4265624635-2019933758-61733912-1001\...\Run: [COS] => C:\Program Files\COMODO\cCloud\cCloud.exe [7195824 2014-09-03] (COMODO Security Solutions) HKU\S-1-5-21-4265624635-2019933758-61733912-1001\...\Run: [USB Safely Remove] => C:\Program Files (x86)\USB Safely Remove\USBSafelyRemove.exe [6528096 2017-06-03] (Crystal Rich Ltd) HKU\S-1-5-21-4265624635-2019933758-61733912-1001\...\RunOnce: [mb-runtask] => [X] HKU\S-1-5-21-4265624635-2019933758-61733912-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1 AppInit_DLLs: C:\PROGRA~2\KeyCryptSDK\KeyCrypt64(2).dll => C:\Program Files (x86)\KeyCryptSDK\KeyCrypt64(2).dll [94568 2017-01-19] (Zemana Ltd.) AppInit_DLLs-x32: C:\PROGRA~2\KeyCryptSDK\KeyCrypt32(2).dll => C:\Program Files (x86)\KeyCryptSDK\KeyCrypt32(2).dll [85864 2017-01-19] (Zemana Ltd.) BootExecute: autocheck autochk /p \??\N:autocheck autochk /p \??\H:autocheck autochk * GroupPolicy: Restriction <==== ATTENTION ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: 127.0.0.1 localhost Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{a778058e-ddb3-4e56-a8fe-5582c6425c94}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Internet Explorer: ================== HKU\S-1-5-21-4265624635-2019933758-61733912-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.fr/ BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2017-03-28] (IObit) BHO: Pas de nom -> {27DD0F8B-3E0E-4ADC-A78A-66047E71ADC5} -> C:\skinpack\OldNewExplorer64.dll [2016-07-25] (www.startisback.com) BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2015-07-31] (Seiko Epson Corporation) BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2016-09-02] (Adobe Systems Incorporated) BHO-x32: E-Web Print -> {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} -> C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION) BHO-x32: Pas de nom -> {27DD0F8B-3E0E-4ADC-A78A-66047E71ADC5} -> C:\skinpack\OldNewExplorer32.dll [2016-07-25] (www.startisback.com) BHO-x32: Wondershare Video Converter Ultimate -> {65DEE40A-3E93-4cae-9F98-B8E06DCEE2BF} -> C:\Program Files (x86)\Wondershare\VideoConverterFree\SVRIEPlugin.dll [2012-09-28] (Wondershare Software Co., Ltd.) BHO-x32: Programme d'aide de l'Assistant de connexion Windows Live -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2016-09-02] (Microsoft Corporation) BHO-x32: iSkysoft iMedia Converter Deluxe 5.1.0 -> {AEAF002F-E6D8-4A21-ABD3-2B309B79A6CE} -> C:\ProgramData\iSkysoft\Video Converter Ultimate\WSBrowserAppMgr.dll [2016-08-18] (Wondershare) BHO-x32: IObit Ads Removal -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\Adblock\Adblock.dll => Pas de fichier Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2015-07-31] (Seiko Epson Corporation) Toolbar: HKLM-x32 - E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION) Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2016-09-02] (Microsoft Corporation) Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2016-09-02] (Microsoft Corporation) Handler: WSISVCUchrome - Pas de valeur CLSID FireFox: ======== FF HKLM-x32\...\Firefox\Extensions: [e-webprint@epson.com] - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on FF Extension: (E-Web Print) - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on [2016-08-29] [non signé] FF HKLM-x32\...\Firefox\Extensions: [ISVCU@iSkysoft.com] - C:\ProgramData\iSkysoft\Video Converter Ultimate\ISVCU@iSkysoft.com_xpi FF Extension: (iSkysoft iMedia Converter Deluxe) - C:\ProgramData\iSkysoft\Video Converter Ultimate\ISVCU@iSkysoft.com_xpi [2016-09-07] FF HKLM-x32\...\Firefox\Extensions: [{8D150B8F-EFE8-45a3-A4A3-053020F48FAC}] - C:\Program Files (x86)\Wondershare\VideoConverterFree\SVRFirefoxExt FF Extension: (Wondershare Video Converter Ultimate) - C:\Program Files (x86)\Wondershare\VideoConverterFree\SVRFirefoxExt [2017-07-29] [non signé] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8117.0416 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2016-09-02] (Microsoft Corporation) Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [cfmjkokphadmhbenfjjecfbhbbonbjcb] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [chgdeabpmphfhkoemjjglmilajldekbp] - C:\Program Files (x86)\Wondershare\VideoConverterFree\SVRChromePlugin.crx [2017-07-29] ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 AbAdminService; C:\Program Files (x86)\ToolbarTerminator\AbAdminService.exe [37912 2017-07-18] (Ascora GmbH) S2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-08-21] (Advanced Micro Devices, Inc.) [Fichier non signé] S4 BingDesktopUpdate; C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe [173248 2014-11-26] (Microsoft Corp.) S2 COSService.exe; C:\Program Files\COMODO\COMMON\COSService.exe [3550400 2014-10-07] (COMODO Security Solutions) S3 EaseUS Agent; C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe [39616 2016-06-03] (CHENGDU YIWO Tech Development Co., Ltd) S3 FolderSize; C:\Program Files\FolderSize\FolderSizeSvc.exe [163840 2013-02-13] (Brio) [Fichier non signé] S3 GsServer; C:\Program Files\Siber Systems\GoodSync\gs-server.exe [7184608 2017-05-19] () S2 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [360736 2017-03-28] (IObit) S2 LavasoftAdAwareService11; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.12.945.9202\AdAwareService.exe [732056 2016-07-18] () S2 MSSQL$ADK; C:\Program Files (x86)\Microsoft SQL Server\MSSQL11.ADK\MSSQL\Binn\sqlservr.exe [163008 2016-09-24] (Microsoft Corporation) S3 NeroBackItUpBackgroundService; C:\Program Files (x86)\Nero\Nero BackItUp\NBService.exe [287088 2016-04-01] (Nero AG) S3 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [614664 2016-05-20] (CyberLink) S3 rscp; C:\Program Files (x86)\Reason\Security\Protection\rscp\bin\rscp_svc.exe [303896 2017-07-28] () S3 rsEngineSvc; C:\Program Files (x86)\Reason\Security\rsEngineSvc.exe [82680 2016-09-02] (Reason Software Company Inc.) S3 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [307456 2015-12-14] (Realtek Semiconductor) S4 SQLAgent$ADK; C:\Program Files (x86)\Microsoft SQL Server\MSSQL11.ADK\MSSQL\Binn\SQLAGENT.EXE [448704 2016-09-24] (Microsoft Corporation) S3 SyncBackTouch; C:\Program Files (x86)\2BrightSparks\SyncBackTouch\SyncBackTouchSvc.exe [4715576 2016-09-30] (2BrightSparks Pte. Ltd.) S2 SynchronizationService.exe; C:\Program Files\COMODO\COMMON\SynchronizationService.exe [2575552 2014-10-07] (COMODO Security Solutions) S3 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7534864 2016-08-25] (TeamViewer GmbH) S2 TeraCopyService; C:\Program Files\TeraCopy\TeraCopyService.exe [110416 2017-01-31] (Code Sector) S3 USBSafelyRemoveService; C:\Program Files (x86)\USB Safely Remove\USBSRService.exe [1731168 2017-06-03] (Crystal Rich Ltd) S3 wdcservice; C:\Program Files (x86)\Wise\Wise Driver Care\wdcservice.exe [367272 2017-07-19] (WiseCleaner.com) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation) S3 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.224\WsAppService.exe [473824 2017-04-20] (Wondershare) S3 WsDrvInst; C:\Program Files (x86)\Wondershare\MirrorGo\DriverInstall.exe [111328 2017-05-05] (Wondershare) S3 ZAMSvc; C:\Program Files (x86)\Zemana AntiLogger\ZAM.exe [15546512 2017-06-19] (Copyright 2017.) S3 Zoolz 2 Service; C:\Program Files\Genie9\Zoolz2\ZoolzService.exe [475280 2017-03-22] (Genie9) S2 AnviStartupTime; C:\Program Files\PC Optimizer Pro\Anvisoft\StartupBooster\StartupTimeSrv.exe [X] S2 AnviCsbSvc; C:\Program Files (x86)\Anvisoft\Cloud System Booster\CSBSvc.exe [X] S2 AnviStartupTime; C:\Program Files\PC Optimizer Pro\Anvisoft\StartupBooster\StartupTimeSrv.exe [X] S3 Diskeeper; "C:\Program Files\Condusiv Technologies\Diskeeper\DKService.exe" [X] ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S2 amwrtdrv; C:\WINDOWS\System32\amwrtdrv.sys [18392 2016-07-28] () S3 avc3; C:\WINDOWS\System32\DRIVERS\avc3.sys [1600512 2016-01-05] (BitDefender) R3 avchv; C:\WINDOWS\system32\DRIVERS\avchv.sys [282000 2016-01-05] (BitDefender) S3 avckf; C:\WINDOWS\System32\DRIVERS\avckf.sys [775424 2016-01-05] (BitDefender) R1 BdfNdisf; C:\WINDOWS\system32\DRIVERS\bdfndisf6.sys [107496 2016-02-16] (BitDefender LLC) R1 bdfwfpf; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Firewall Engine\1.6.1.0\Drivers\bdfwfpf.sys [115800 2016-02-16] (BitDefender LLC) R0 bdisk; C:\WINDOWS\System32\DRIVERS\bdisk.sys [85488 2014-10-07] (COMODO Security Solutions Inc.) R0 CBUFS; C:\WINDOWS\System32\DRIVERS\CBUFS.sys [230712 2014-10-07] (COMODO Security Solutions Inc.) R0 cbvd; C:\WINDOWS\System32\DRIVERS\cbvd.sys [677744 2014-10-07] (COMODO Security Solutions Inc.) S3 CisUtMonitor; C:\WINDOWS\System32\DRIVERS\CisUtMonitor.sys [54192 2017-01-13] (CrystalIdea Software) S3 clvad; C:\WINDOWS\system32\drivers\clvad.sys [40384 2016-05-27] (CyberLink) R3 CLVirtualBus01; C:\WINDOWS\System32\drivers\CLVirtualBus01.sys [103176 2014-11-05] (CyberLink) S3 clwvd7; C:\WINDOWS\system32\DRIVERS\clwvd7.sys [49944 2016-06-02] (CyberLink Corporation) S3 clwvdVM; C:\WINDOWS\system32\DRIVERS\clwvdVM.sys [55240 2016-05-27] (CyberLink Corporation) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd.) R0 DKDFM; C:\WINDOWS\System32\drivers\DKDFM.sys [41744 2013-05-06] (Condusiv Technologies) S3 DKRtWrt; C:\WINDOWS\system32\drivers\DKRtWrt.sys [53520 2014-10-24] (Condusiv Technologies) R0 DKTLFSMF; C:\WINDOWS\System32\drivers\DKTLFSMF.sys [119536 2014-04-14] (Condusiv Technologies) R3 dtproscsibus; C:\WINDOWS\System32\drivers\dtproscsibus.sys [30264 2016-08-28] (Disc Soft Ltd) S1 ElRawDisk; C:\WINDOWS\system32\drivers\rsdrvx64.sys [26024 2009-02-12] (EldoS Corporation) R0 EUBKMON; C:\WINDOWS\System32\drivers\EUBKMON.sys [48168 2015-12-10] () S1 GUSBootStartup; C:\WINDOWS\System32\drivers\GUSBootStartup.sys [20160 2016-09-03] (Glarysoft Ltd) S3 gzflt; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Antimalware Engine\3.0.129.0\gzflt.sys [161592 2016-04-28] (BitDefender LLC) S1 IMFMBRProtect; C:\Program Files (x86)\IObit\IObit MBR Guard\drivers\win10_amd64\IMFMBRProtect.sys [38904 2017-06-29] (IObit.com) R3 keycrypt; C:\WINDOWS\System32\DRIVERS\KeyCrypt64.sys [161408 2017-03-22] (Zemana Ltd.) S3 MDA_NTDRV; C:\Windows\system32\MDA_NTDRV.sys [47104 2016-05-20] () S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] () R0 Reparse; C:\WINDOWS\System32\DRIVERS\CBReparse.sys [674160 2014-10-07] (COMODO Security Solutions Inc.) R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [416472 2016-05-17] (Realsil Semiconductor Corporation) U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [28272 2017-07-29] () S3 Trufos; C:\WINDOWS\System32\DRIVERS\Trufos.sys [485512 2016-04-28] (BitDefender S.R.L.) U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] () R3 vdbus; C:\WINDOWS\System32\drivers\vdbus.sys [826040 2014-10-07] (COMODO Security Solutions Inc.) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation) S3 WIMMount; C:\Program Files (x86)\Windows Kits\10\Assessment and Deployment Kit\Deployment Tools\amd64\DISM\wimmount.sys [42688 2016-07-16] (Microsoft Corporation) S3 WofAdk; C:\Program Files (x86)\Windows Kits\10\Assessment and Deployment Kit\Deployment Tools\amd64\DISM\wofadk.sys [221376 2016-07-16] (Microsoft Corporation) S1 xlkfs; C:\WINDOWS\System32\DRIVERS\xlkfs.sys [44272 2016-05-26] (XOSLAB.COM) S1 ZAM; C:\WINDOWS\System32\drivers\zam64.sys [203680 2016-09-07] (Zemana Ltd.) S1 ZAM_Guard; C:\WINDOWS\System32\drivers\zamguard64.sys [203680 2016-09-07] (Zemana Ltd.) ========================== MD5 Pilotes ======================= C:\WINDOWS\System32\drivers\1394ohci.sys A7901875F89D011C38CF52C98ACF5B29 C:\WINDOWS\System32\drivers\3ware.sys EE1CCC54F75C24727A218F98FC5349DA C:\WINDOWS\System32\drivers\ACPI.sys 73C73E1AA0D4D727A04AAAB120B7F56A C:\WINDOWS\System32\drivers\AcpiDev.sys 0935496EF9624B46B935CB35ECE1F205 C:\WINDOWS\System32\Drivers\acpiex.sys D6794C31F4077B71433988787BAA926E C:\WINDOWS\System32\drivers\acpipagr.sys FE5F656D6B35089DA39112E74EC6A85A C:\WINDOWS\System32\drivers\acpipmi.sys 2F242941E4DFF69B883D77A16F039557 C:\WINDOWS\System32\drivers\acpitime.sys C247E35A21682DA8D0DC3AF9F025FCC5 C:\WINDOWS\System32\drivers\ADP80XX.SYS 49B9DB97AFC85DCCBDACDAB2E90085B7 C:\WINDOWS\system32\drivers\afd.sys 983266DA83FFF73DBDDD3730A4712228 C:\WINDOWS\System32\DRIVERS\ahcache.sys E44DB3F7225EC3E119560738B3619972 C:\WINDOWS\System32\drivers\amdk8.sys DF21E05E41E5AC3F13F304D91457649A C:\WINDOWS\system32\DRIVERS\atikmdag.sys D1F059A530620DCF71303B525D52CA97 C:\WINDOWS\system32\DRIVERS\atikmpag.sys AD96CC96B6A0CEE8910A13679426C970 C:\WINDOWS\System32\drivers\amdppm.sys 45D0AA4BB90B821DF92E8F19ABED0C5E C:\WINDOWS\System32\drivers\amdsata.sys 74FFBC43B4B899C9A8CA06A892F2CE73 C:\WINDOWS\System32\drivers\amdsbs.sys AAB0F1D8D7E54761ABAB13AF161F1680 C:\WINDOWS\System32\drivers\amdxata.sys F91BAAC4237C40352A807000F3B716F9 C:\WINDOWS\System32\amwrtdrv.sys 609C2E5B69EB5D4F7131F7DF1107396B C:\WINDOWS\System32\drivers\appid.sys BC121C099C6C659126AD2102AFDFF8CF C:\WINDOWS\System32\drivers\applockerfltr.sys 68190E2BADF23BD782344970E5B5DE9E C:\WINDOWS\System32\drivers\arcsas.sys E6AB1F0B4C3D4E0D2A88332D76FECD03 C:\WINDOWS\System32\drivers\asyncmac.sys 61C5A480C43E7E8E49C42869F49D0D3E C:\WINDOWS\System32\drivers\atapi.sys A10F989A812B57B9695F6C305907C9C6 C:\WINDOWS\System32\DRIVERS\avc3.sys CCF9DED019BAD2701F39A140FC4D6C44 C:\WINDOWS\system32\DRIVERS\avchv.sys 3FC014DABD685F8958C89EAA35D77368 C:\WINDOWS\System32\DRIVERS\avckf.sys 4D3ADB9A6B623D332F0D0ED39613BB04 C:\WINDOWS\System32\drivers\bxvbda.sys 61BAC67048CA5C1D08C48FCC8012B613 C:\WINDOWS\System32\drivers\BasicDisplay.sys 68F72B05EBC6D1779C0D60A147C7CA0B C:\WINDOWS\System32\drivers\BasicRender.sys 23156E7EDAF613D839E2839746B168D3 C:\WINDOWS\System32\drivers\bcmfn.sys 3F5523DCEFE42B385659C5CB46A6B810 C:\WINDOWS\System32\drivers\bcmfn2.sys 0B750A6A6D847E73CA48ADD7A0F5A393 C:\WINDOWS\system32\DRIVERS\bdfndisf6.sys AF3E1ABAB951FC9064267ED76268F41B C:\Program Files\Lavasoft\Ad-Aware Antivirus\Firewall Engine\1.6.1.0\Drivers\bdfwfpf.sys 0B3BADC084AB1592D6E2D4CFA3AA2461 C:\WINDOWS\System32\DRIVERS\bdisk.sys C7C6393C540A1EE534BCEE74626DE987 C:\Windows\System32\Drivers\Beep.sys 0A508274355745EEF01C6BE3198D02C4 C:\WINDOWS\System32\DRIVERS\bowser.sys EEBFAEB4702E1049ECD44B10485E6C0C C:\WINDOWS\System32\drivers\BthAvrcpTg.sys 722036C26D2C4E50EC2A2EC5FD678846 C:\WINDOWS\System32\drivers\bthhfenum.sys C2E31BE025D46D189E38DD1EDF07837A C:\WINDOWS\System32\drivers\BthHFHid.sys F7CD605FC0B0B22F3F6F247595E3A655 C:\WINDOWS\System32\drivers\bthmodem.sys 535DC41A33630AE4C262406F9E981C03 C:\WINDOWS\System32\drivers\buttonconverter.sys 23F9EF739F685E07482116425E7879AA C:\WINDOWS\System32\drivers\capimg.sys 4C61113687EB66035A70A55EE9B7DB4A C:\WINDOWS\System32\DRIVERS\CBUFS.sys 10CDB598B555D2A06DA52A6C2D5F7DFE C:\WINDOWS\System32\DRIVERS\cbvd.sys 8D73FFFD9762EECF7680C4368A38B653 C:\WINDOWS\System32\DRIVERS\cdfs.sys F8FB51B9EF6372610E9B31A1D86B62FC C:\WINDOWS\System32\drivers\cdrom.sys 613D0137C269187FA298A157E3D14A18 C:\WINDOWS\System32\drivers\cht4sx64.sys 0AED948DA8D5F08B3D6F12E4E2089736 C:\WINDOWS\System32\drivers\cht4vx64.sys 0002A0FDE087C1657AB31CE73077539C C:\WINDOWS\System32\drivers\circlass.sys 6B4F90A287D75CCD78694F6790C911B2 C:\WINDOWS\System32\DRIVERS\CisUtMonitor.sys CE7F6AEF1B27D41E7365700E74AFC969 C:\WINDOWS\System32\drivers\CLFS.sys 09D0B94D3A06EFD1EB70189EC4B26DF7 C:\WINDOWS\System32\drivers\registry.sys EEC3A4A98AE1A337E3CD1483AD6F2E15 C:\WINDOWS\system32\drivers\clvad.sys EFC50A6C4C6B6F9AA09AFAC5C15881B6 C:\WINDOWS\System32\drivers\CLVirtualBus01.sys 0C7626AFB2419207B2ABCB6F8AEA334F C:\WINDOWS\system32\DRIVERS\clwvd7.sys 30EAA7468E7721A99ED8221A7CEE7A80 C:\WINDOWS\system32\DRIVERS\clwvdVM.sys 0FBA6EDE873360E0AD44BB74A8B1ED85 C:\WINDOWS\System32\drivers\CmBatt.sys 429623E266EF067A44E8CF148E9DFB9B C:\WINDOWS\System32\Drivers\cng.sys 3E502EB1701CF54CF237B6250FBE38EA C:\WINDOWS\System32\DRIVERS\cnghwassist.sys 3DB10C59405931E2C72EFB82C1AF97D1 C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_a140581a8f8b58b7\CompositeBus.sys 34C935AF2A414572B412B3556586D783 C:\WINDOWS\System32\drivers\condrv.sys 44EEEB2382F566999287E13F2067693C C:\WINDOWS\System32\drivers\dam.sys 68B1E0DA1BB1680494227E88CE821E2F C:\WINDOWS\System32\Drivers\dfsc.sys 7EAFDEF51136E8F2452CEBD8D084F108 C:\WINDOWS\system32\DRIVERS\ssudbus.sys 5F78930AAB3900102EA8ACDD38F97324 C:\WINDOWS\System32\drivers\disk.sys 35B9D46560339A5A7F0CAC6ED702C817 C:\WINDOWS\System32\drivers\DKDFM.sys 209C1E29E9558D80A246E219C25754F1 C:\WINDOWS\system32\drivers\DKRtWrt.sys 2FAA591ACD663B45E5685340312B7D7A C:\WINDOWS\System32\drivers\DKTLFSMF.sys 25558ECF737490235264FC5FA013D9EB C:\WINDOWS\System32\drivers\dmvsc.sys 815F45161A4571C2C44491564F3D5968 C:\WINDOWS\system32\DRIVERS\drmkaud.sys AE6BD4C879A8C849E53947C92DF3B3A0 C:\WINDOWS\System32\drivers\dtproscsibus.sys 726E40B11612664486BB6C6105283C95 C:\WINDOWS\System32\drivers\dxgkrnl.sys A39F5D1A0BB032DDDBAD3A0C050B1049 C:\WINDOWS\System32\drivers\evbda.sys 7EC6FC0266D74BD47ABB130A328B70EC C:\WINDOWS\System32\drivers\EhStorClass.sys 8D74B8B5D6F7C5BC4C525BAF2B083FF1 C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys 4D49B99DCACA1FC782A94DB596246504 C:\WINDOWS\system32\drivers\rsdrvx64.sys 4778EEECB75C6FB419745BEED3530B9D C:\WINDOWS\System32\drivers\errdev.sys 77B60DEC7DCB4233E4A69D3F52E5DB24 C:\WINDOWS\System32\drivers\eubakup.sys 83EF0C33B56360761AE2DDB86E47B2E8 C:\WINDOWS\System32\drivers\EUBKMON.sys CCF2072C27B5F84447A0829014C43760 C:\WINDOWS\system32\drivers\eudskacs.sys 44A0838432C8A31A5D6CBE0BF348CED6 C:\WINDOWS\system32\drivers\EuFdDisk.sys D05585505CB20235E7C665158464551D C:\Windows\System32\Drivers\exfat.sys FCD2C63754C2E739A8EEAD9BC63F9DDC C:\Windows\System32\Drivers\fastfat.sys C077AA74EDDAF69985EB27597BCB342A C:\WINDOWS\System32\drivers\fdc.sys 99598ECA5E41996E005D5B9D9FF1EFA2 C:\WINDOWS\System32\drivers\filecrypt.sys F44F666B0EACC3181544FFCF8CA0FFC7 C:\WINDOWS\System32\drivers\fileinfo.sys 78A210DDFDF2C9EC884631D2DAA573F0 C:\WINDOWS\System32\drivers\filetrace.sys 1A97DB5E701A186989F3795223C3BE39 C:\WINDOWS\System32\drivers\flpydisk.sys 46626665F0E5906E45619B4EFD6186B8 C:\WINDOWS\System32\drivers\fltmgr.sys FDA72ACA14D516D18C33AFCD0FD9260F C:\WINDOWS\System32\drivers\FsDepends.sys D152CCBFC8251670BF0AAFE00D6BC782 C:\Windows\System32\Drivers\Fs_Rec.sys 6D6BB5C7363CD35FA715E826F3D029EE C:\WINDOWS\System32\DRIVERS\fvevol.sys B719EAA1EC93586955B013BD7DD61356 C:\WINDOWS\System32\drivers\vmgencounter.sys EF78034773CE506323655A868C949144 C:\WINDOWS\System32\drivers\genericusbfn.sys B55FEBC6A00DAA1FE074F020B6907516 C:\WINDOWS\System32\Drivers\msgpioclx.sys DDD8A8CDDC7F13EF57D1DAAE71865936 C:\WINDOWS\System32\drivers\gpuenergydrv.sys 7ACD8F69B5D6EC97E6D2C006E19BED88 C:\WINDOWS\System32\drivers\GUSBootStartup.sys E4626B663B94E5FEB90F497395B5C059 C:\Program Files\Lavasoft\Ad-Aware Antivirus\Antimalware Engine\3.0.129.0\gzflt.sys 41918B5F0BF35DB5DF47ACEA42048F9F C:\WINDOWS\system32\DRIVERS\HdAudio.sys 217230B984AB2954E2FA5E36578D7B08 C:\WINDOWS\System32\drivers\HDAudBus.sys 10E3515FE5DBA6656FA62C29342EC4A1 C:\WINDOWS\System32\drivers\HidBatt.sys B90D284B97CD4CA9DE7430AAAD887A56 C:\WINDOWS\System32\drivers\hidbth.sys B2FE11643CC6ACDEE6C247DD36018FDB C:\WINDOWS\System32\drivers\hidi2c.sys D24355488A2D4D2323518EC1AC7A6D9E C:\WINDOWS\System32\drivers\hidinterrupt.sys 0AF9ABBA4F3F55C6C803890D64BC3C29 C:\WINDOWS\System32\drivers\hidir.sys CDBCF8E9AB06D88A1E1191D32F320C5D C:\WINDOWS\System32\drivers\hidusb.sys D8536CB438CC4CCDAE047B768EED22B2 C:\WINDOWS\System32\drivers\HpSAMD.sys F5CA18197B4646E04DB9EB2D6642CC4D C:\WINDOWS\System32\drivers\HTTP.sys 65E358D604267CBAACB74A2598BBE22B C:\WINDOWS\System32\drivers\hvservice.sys 9B6C35343348CC1B5E9D81F0702A3271 C:\WINDOWS\System32\drivers\hwpolicy.sys 771EDDA9830A3079F996F34D681FB6E5 C:\WINDOWS\System32\drivers\hyperkbd.sys 3B9F315E7FA72CC25228EB097DD9C694 C:\WINDOWS\System32\drivers\i8042prt.sys B54B30992620C97230013A74461C8517 C:\WINDOWS\System32\drivers\iagpio.sys C6B8743B213F06AA60943D8366FE968F C:\WINDOWS\System32\drivers\iai2c.sys 9A2A2F3C69B9A30B6E78536F6D258BAD C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys 5A0E850F8CD17791A3E6A3CF81D0CA28 C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys 7508F1096803385D6376BFD0BD473AC4 C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys 16A10CCEDCF5AC4CAAE43DC9FC40392F C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys EB82A11613326691508D9ED9A4FE29E7 C:\WINDOWS\System32\drivers\iaStorAV.sys 97E553D03219D3D51705C7235D9EAEBD C:\WINDOWS\System32\drivers\iaStorV.sys 8350FE3BCDE3428BC040877BB7E9EAEB C:\WINDOWS\System32\drivers\ibbus.sys 3BA03F7C7700DDF4C383DDE9252F5817 C:\Program Files (x86)\IObit\IObit MBR Guard\drivers\win10_amd64\IMFMBRProtect.sys 680A9672BC43B7A00C07B35B32E57140 C:\WINDOWS\System32\drivers\IndirectKmd.sys 2A01C96DF5802D3434634E55C91232D8 C:\WINDOWS\system32\drivers\RTKVHD64.sys 39200ECEFB50612B13B5D16545BEB201 C:\WINDOWS\System32\drivers\intelide.sys 9F7E87F6595D065A8A200A291043045E C:\WINDOWS\System32\drivers\intelpep.sys A6BD2E20AE1BC5CB2776C87C28E4F4CA C:\WINDOWS\System32\drivers\intelppm.sys 2A48DA39542636DB0FA3BA915385D1B3 C:\WINDOWS\System32\drivers\iorate.sys 4A922CAB4AB5F29F1BECC9D95B4B7F05 C:\WINDOWS\System32\DRIVERS\ipfltdrv.sys FE85D0A86CA7A5A99CF8CD04DE7F80AE C:\WINDOWS\System32\drivers\IPMIDrv.sys 450DBDD716C7911F83E05F78EE18BFA2 C:\WINDOWS\System32\drivers\ipnat.sys F1DAECC3B3D6399875D4F10529D6A77C C:\WINDOWS\system32\drivers\irda.sys 7475A2903BB704B446AA6309E34D3362 C:\WINDOWS\System32\drivers\irenum.sys 9725E7F0C64CE9916A5CDABE8D6E13C3 C:\WINDOWS\System32\drivers\isapnp.sys 58040898883A96160D41739C80328BBF C:\WINDOWS\System32\drivers\msiscsi.sys C9FD02D62E09337B67B0C61EC8CA38CC C:\WINDOWS\System32\drivers\kbdclass.sys 210808437570BDDEE71A43535E3A2D30 C:\WINDOWS\System32\drivers\kbdhid.sys 2D05785B0C58D90A34EA15032EADBBA9 C:\WINDOWS\System32\drivers\kdnic.sys 813BA3EB2CE038F2A5382DDD75CAD60B C:\WINDOWS\System32\DRIVERS\KeyCrypt64.sys BF0E0B7DE4E9BC8E0515779F66ACA853 C:\WINDOWS\System32\Drivers\ksecdd.sys 9FA1B5D84F596F0664F0465F302044DC C:\WINDOWS\System32\Drivers\ksecpkg.sys 55AD13E2BAFC5AB53A10F8C271F5D242 C:\WINDOWS\system32\drivers\ksthunk.sys 4ED115CD1A1099705F56B5E0FFF97CC6 C:\WINDOWS\System32\drivers\L1C63x64.sys 4E444F41E69BBE2E0BAE34D5DFCB5732 C:\WINDOWS\System32\drivers\lltdio.sys 5933A6673F00D8255C52957E40C2D601 C:\WINDOWS\System32\drivers\lsi_sas.sys 8E1B0946948CCC0BC1FA3CB70374A795 C:\WINDOWS\System32\drivers\lsi_sas2i.sys 4F68163FC04C973500DC4DA0946917B0 C:\WINDOWS\System32\drivers\lsi_sas3i.sys E5AC5F2815938651CDCC27F425474673 C:\WINDOWS\System32\drivers\lsi_sss.sys CCF6EC9FB9B8F18E05B4253E81013E48 C:\WINDOWS\system32\drivers\luafv.sys C9579D32219E5B936AC3A48D470117EC C:\WINDOWS\system32\DRIVERS\lvrs64.sys A0A527569856B9814E8920F52EBB67F5 C:\WINDOWS\system32\DRIVERS\lvuvc64.sys 415E344294D1C0D04627B29146F68481 C:\Windows\system32\MDA_NTDRV.sys 39DFF42E57C53A58C162F4760A75EA84 C:\WINDOWS\System32\drivers\megasas.sys C3CDCCF07486BD2616A7B82946E07AC0 C:\WINDOWS\System32\drivers\megasr.sys FADB2FE017E69EECE0E1BA78661C2E8C C:\WINDOWS\System32\drivers\mlx4_bus.sys FD60818B66B2E8A5415EA840E99A9D8F C:\WINDOWS\system32\drivers\mmcss.sys 68F6977F1CFBAAC770D940A8C0326FA1 C:\WINDOWS\System32\drivers\modem.sys D842ADDB5911945D51F61A0B1C8F36E3 C:\WINDOWS\System32\drivers\monitor.sys 9CCCB7FC3EDADEBA461D78615A6011A6 C:\WINDOWS\System32\drivers\mouclass.sys 27A07B2FB2E3057DA8DAEA4F25D843C7 C:\WINDOWS\System32\drivers\mouhid.sys 7BD6E7F7C9001AB21B8362CFFEE80B25 C:\WINDOWS\System32\drivers\mountmgr.sys F5BDAEE4B7D369D4C74668DCFBA3FF10 C:\WINDOWS\System32\drivers\mpsdrv.sys 30844BD376F9D01E62C820BEF446F1F8 C:\WINDOWS\system32\drivers\mrxdav.sys 50C2389CD04C5B8632E3DC2D733EF15D C:\WINDOWS\System32\DRIVERS\mrxsmb.sys 4D5F17C23D25B5BDF7EB35A54F483C9B C:\WINDOWS\System32\DRIVERS\mrxsmb10.sys 8F58AEAE00B39AC9AD93755E777B19D8 C:\WINDOWS\System32\DRIVERS\mrxsmb20.sys FC501F50E6214AF38D4B22220537187A C:\WINDOWS\System32\drivers\bridge.sys 74C9D21523DAE0C18F413C196DF0058A C:\Windows\System32\Drivers\Msfs.sys F01B849D9D4A8CEAF32D4FDBD0B83C92 C:\WINDOWS\System32\drivers\msgpiowin32.sys 22ECD8F5D1DFADF2011BBB1700CB871D C:\WINDOWS\System32\drivers\mshidkmdf.sys FD870F6968A145E4D2BA8A8842686B03 C:\WINDOWS\System32\drivers\mshidumdf.sys 30364757963A028CE5DF0FBAAC270173 C:\WINDOWS\System32\drivers\msisadrv.sys 6BB0FEDDAE7135FA37FFAFF4D9E0E876 C:\WINDOWS\system32\DRIVERS\MSKSSRV.sys 13D614E6B51ECF36746C48CE829FA7F6 C:\WINDOWS\System32\drivers\mslldp.sys 642CDE46351D5D2D90311E77072AB46D C:\WINDOWS\system32\DRIVERS\MSPCLOCK.sys F2302A5CE63CA7673200FAFCEEEDB6AF C:\WINDOWS\system32\DRIVERS\MSPQM.sys 6114512EA26E835BA522C63635429DB5 C:\Windows\System32\Drivers\MsRPC.sys AA538E16E644D00E3BA5349BBA9598EC C:\WINDOWS\System32\drivers\mssmbios.sys 0543BEFD41EC4D25C7F7CF36409CEC7D C:\WINDOWS\system32\DRIVERS\MSTEE.sys C1569E4DB8EFE3617847BF041A3C842F C:\WINDOWS\System32\drivers\MTConfig.sys 130B16970154BA9876B09E5C4BAC63BE C:\WINDOWS\System32\Drivers\mup.sys 15D987C8F6CCD4AC94E070C5986762CB C:\WINDOWS\System32\drivers\mvumis.sys 3D2C5B4995CA0751D32DEA0DE9FDFE44 C:\WINDOWS\System32\DRIVERS\nwifi.sys DB31EBB04C871F422C36A0962DA7D38B C:\WINDOWS\System32\drivers\ndfltr.sys 629CB21AC49C8867E0F29DF1C16DB7B4 C:\WINDOWS\System32\drivers\ndis.sys 36DD2C614720EC2970CB5E870BA69D8D C:\WINDOWS\System32\drivers\ndiscap.sys 6DD605338FAAF6BA17662AA874E0D162 C:\WINDOWS\System32\drivers\NdisImPlatform.sys E34196F285F8B8879E1FF36C31F7179E C:\WINDOWS\System32\DRIVERS\ndistapi.sys 1FAD2398673F30CEC616B89C46B7DCBA C:\WINDOWS\System32\drivers\ndisuio.sys AEB8ECBE66CC46854066CB1F5623E179 C:\WINDOWS\System32\drivers\NdisVirtualBus.sys 7340104C2BF2F126714F7CDE85E63610 C:\WINDOWS\System32\drivers\ndiswan.sys 07ADC1F8DCBEB8104D75129B11584B8C C:\WINDOWS\System32\DRIVERS\ndiswan.sys 07ADC1F8DCBEB8104D75129B11584B8C C:\WINDOWS\System32\DRIVERS\NDProxy.sys 78A12E3DF035B5D054986949B19BE43C C:\WINDOWS\System32\drivers\Ndu.sys 04C8859355C1DC9C0FA198D1894D71C2 C:\WINDOWS\System32\drivers\NetAdapterCx.sys 6C76780A01FC2B885BD6E957B5C36B02 C:\WINDOWS\System32\drivers\netbios.sys 5D1513BD6430307C9DB86C6E351372ED C:\WINDOWS\System32\DRIVERS\netbt.sys 6FEBB0A847FFD5F057B9AC8889F1B9A7 C:\Windows\System32\Drivers\Npfs.sys 001CBD7A2CD45C4EB39C01C3C677EF73 C:\WINDOWS\System32\drivers\npsvctrig.sys 90F5DC9802AAA00CD0B6E2AD9E7FFADC C:\WINDOWS\System32\drivers\nsiproxy.sys 0C6218321A09A7B51BA7FFAFBA4CCB21 C:\Windows\System32\Drivers\NTFS.sys BE43EC0D5AD467CFC5C9770F2F8EBCC2 C:\Windows\System32\Drivers\Null.sys 6E6DD6F9DD2A034CF85E94047DBDB992 C:\WINDOWS\System32\drivers\nvraid.sys D261DF41F0840F734856A2B4F5E072C7 C:\WINDOWS\System32\drivers\nvstor.sys 23B702B555EB0436B9DAA0BC63DA65CE C:\WINDOWS\System32\drivers\parport.sys 6B81BF7853D161DB8AC62CD8B9C2DE6B C:\WINDOWS\System32\drivers\partmgr.sys 64E0AA114871B2A37908E44A18F35A73 C:\WINDOWS\System32\drivers\pci.sys 55E45E0A89429AE9C62D728B9C4891C0 C:\WINDOWS\System32\drivers\pciide.sys 214DCC87E3898F738075D1341252A552 C:\WINDOWS\System32\drivers\pcmcia.sys AED76A3333B3A31536E430020E0226FC C:\WINDOWS\System32\drivers\pcw.sys E63FB38B6E75B39467492FBAD2CD512A C:\WINDOWS\System32\drivers\pdc.sys 9EA203A07EFA6D74F07F32EF0DAB5CA6 C:\WINDOWS\System32\drivers\peauth.sys 1509A77F840AA9E72CF8247D0CF2FBDE C:\WINDOWS\System32\drivers\percsas2i.sys 540116170E2135FCD5DDE77702166B67 C:\WINDOWS\System32\drivers\percsas3i.sys 8356F87553BF49C703CF382033815898 C:\WINDOWS\System32\drivers\raspptp.sys 5645B9D9788CCA2C88B9534996ED2D6D C:\WINDOWS\System32\drivers\processr.sys 372913E12677A8CBBBABDD8311894F9D C:\WINDOWS\System32\drivers\pacer.sys FC98407B85A31161851FDE245517574F C:\WINDOWS\system32\drivers\qwavedrv.sys 819602BBBFDB0BD46DEA3715BF0DD452 C:\WINDOWS\System32\DRIVERS\rasacd.sys CDF47037A0939F56D11F699629C276AD C:\WINDOWS\System32\drivers\AgileVpn.sys 28C2EA278070EE12701D0EDF8CB0EC36 C:\WINDOWS\System32\drivers\rasl2tp.sys 17E565710172ED71B8531D8822E1C5D1 C:\WINDOWS\System32\DRIVERS\raspppoe.sys 9387DF155233D45D4E010F4F2FB52A57 C:\WINDOWS\System32\drivers\rassstp.sys F0F4EEDEEBEE7A4244FAFB96A16B5712 C:\WINDOWS\System32\DRIVERS\rdbss.sys 392CD98739F4A8F188A3CB34F6AB193E C:\WINDOWS\System32\drivers\rdpbus.sys 79A415E6FA915EFC00297DAB16EC2635 C:\WINDOWS\System32\drivers\rdpdr.sys 7135785C21CA79D270D11037C43D3F19 C:\WINDOWS\System32\drivers\rdpvideominiport.sys 97A61A3CB2B5CB4FC32B3224EF333448 C:\WINDOWS\System32\drivers\rdyboost.sys 69BB204AE07EE84ECFAB1BF13C4BD04B C:\Windows\System32\Drivers\ReFSv1.sys 940D6F5A2B0A61EE4170DF84F6C95C20 C:\WINDOWS\System32\DRIVERS\CBReparse.sys D7F279E28D757821232E7AF1DFDC57BA C:\WINDOWS\System32\drivers\rspndr.sys 5FF28F097C9699097B473F8FC7C1AA7D C:\WINDOWS\system32\Drivers\RtsUer.sys 9B78249A7866242755C866CE3CA9CA72 C:\WINDOWS\System32\drivers\vms3cap.sys B5DAEE69BACA64D2BB004568E22D8756 C:\WINDOWS\System32\drivers\sbp2port.sys 5E73FB63E2DBC75FE0C17DEB0010CE0E C:\WINDOWS\System32\DRIVERS\scfilter.sys 3D9A82B03C92D1FEC42CB171D6F57778 C:\WINDOWS\System32\drivers\scmbus.sys 9055ADDFBA4C8B914C914CE693B55C0A C:\WINDOWS\System32\drivers\scmdisk0101.sys B6F2363584E62960846F7C3F00124A4F C:\WINDOWS\System32\drivers\sdbus.sys FCBB8A17B4437B2CA8CC8DA8CB1D306E C:\WINDOWS\System32\drivers\sdstor.sys 120DFCB71D6C502613A9E2D50E16850C C:\WINDOWS\System32\drivers\SerCx.sys 401D706DDC0A7AF18C3DD228ADF74551 C:\WINDOWS\System32\drivers\SerCx2.sys 7084D11083F0CDCA8B5C76F9846ABF5D C:\WINDOWS\System32\drivers\serenum.sys 3FF478A8ED32A83C36581425F6282B6C C:\WINDOWS\System32\drivers\serial.sys 92509187AA171A80521528B36F753E1D C:\WINDOWS\System32\drivers\sermouse.sys 433D38FF6D08B993847EA2A10EB8CB52 C:\WINDOWS\System32\drivers\sfloppy.sys 697D3EE0740AEAB62B66ABCA1C83D13B C:\WINDOWS\System32\drivers\SiSRaid2.sys A34CE1830E45DA98932295FDE4B7908A C:\WINDOWS\System32\drivers\sisraid4.sys A7B5C670770E908DA5FEF5BF1136E933 C:\WINDOWS\System32\drivers\spaceport.sys 3DB9C2950439B61A038BF83E697C7A14 C:\WINDOWS\System32\drivers\SpbCx.sys E03264C4C25B568F92ED1656AD541E64 C:\WINDOWS\System32\DRIVERS\srv.sys EDCDCD95B916DB156A903AC6256F0CCF C:\WINDOWS\System32\DRIVERS\srv2.sys DF7147DE10921DBAAE9F9EEF94590E10 C:\WINDOWS\System32\DRIVERS\srvnet.sys 416D224AF7481A4179F018FB1F9A5B6B C:\WINDOWS\System32\drivers\stexstor.sys 29D26E1347AE1BBD4201014E19880B2C C:\WINDOWS\System32\drivers\storahci.sys 0FE3B9A9E40DE1029B0AC2368A3F765D C:\WINDOWS\System32\drivers\vmstorfl.sys C5E0ACE4771F5575D9D5B457ABF3AD03 C:\WINDOWS\System32\drivers\stornvme.sys B739FF1C1FAF9D0ADFBFB0FD59A5AB37 C:\WINDOWS\System32\drivers\storqosflt.sys BEBF85EB4D90E6996047DA027D0ED26E C:\WINDOWS\System32\drivers\storufs.sys 8E73037A6F8938475692FFCC26EBF385 C:\WINDOWS\System32\drivers\storvsc.sys 9D9DED47DA10E845EFF2DD57C94C809B C:\WINDOWS\System32\drivers\swenum.sys 505E0C40B5D0ADDCBB414640F59BD2E0 C:\WINDOWS\System32\drivers\Synth3dVsc.sys 32F46FB0F290D16DAA452B289C985795 C:\WINDOWS\System32\drivers\tcpip.sys E93C3AB8B29AB4905541B5AB87963906 C:\WINDOWS\System32\drivers\tcpip.sys E93C3AB8B29AB4905541B5AB87963906 C:\WINDOWS\System32\drivers\tcpipreg.sys 8DBB1BE20C36E6D19BCC89EEA00B953C C:\WINDOWS\system32\DRIVERS\tdx.sys 9D2DD64A0B51C56285512DC9454340F6 C:\WINDOWS\System32\drivers\terminpt.sys 06130AFFECEB94525FC2352936576B70 C:\WINDOWS\System32\drivers\tpm.sys 798C8CB861EB09C5AFB77468E5449BBB C:\Windows\System32\drivers\TrueSight.sys 0D5A09B08568760AE85A801FCBC0F83D C:\WINDOWS\System32\DRIVERS\Trufos.sys 40A8AB90F3CB342F037B493A8EADE4B9 C:\WINDOWS\System32\drivers\TsUsbFlt.sys A6F4025664C9D4BC2A9EDAB4092706D7 C:\WINDOWS\System32\drivers\TsUsbGD.sys 37A96AD493E110C0BF1EE0AC0F9E7DBD C:\WINDOWS\System32\drivers\tunnel.sys 79E264287F17D56D768440B0270466DE C:\WINDOWS\System32\drivers\uaspstor.sys AA65954F512BA097DD190790876DD991 C:\WINDOWS\System32\Drivers\UcmCx.sys AB6268022C3A5B529075A39C33904DA6 C:\WINDOWS\System32\Drivers\UcmTcpciCx.sys 7ED2EDA43D21C7A5F589A7960E265C52 C:\WINDOWS\System32\drivers\UcmUcsi.sys 169351463039B45F5CDED9768879F712 C:\WINDOWS\System32\drivers\ucx01000.sys 08A9E3AD29B215484FBB68CDC175DF3A C:\WINDOWS\System32\drivers\udecx.sys DA70AEE267491AA56BC63AA0C0C96CA2 C:\WINDOWS\System32\DRIVERS\udfs.sys FBC5ECF6D5A868D0B116C2DBB02B8168 C:\WINDOWS\System32\drivers\UEFI.sys B918E40FAA9CD118CCA4AD388B748C98 C:\WINDOWS\System32\drivers\ufx01000.sys 0FD75222C1AD2687AB365BEBEA400DD4 C:\WINDOWS\System32\drivers\UfxChipidea.sys C1A78C53E01C641AE41BFA65797819F5 C:\WINDOWS\System32\drivers\ufxsynopsys.sys 767307212110EBEFB93EC9A5BE9E85B9 C:\WINDOWS\System32\drivers\umbus.sys DC460AAA18CA2342FBBFB2DF9B044472 C:\WINDOWS\System32\drivers\umpass.sys C3CF0377917ECE6D65D7623E1E61568F C:\WINDOWS\System32\drivers\urschipidea.sys 6B46FC140C9AF68E6E7697D66D59CB4D C:\WINDOWS\System32\drivers\urscx01000.sys B4402E7F0923F660270442CE76877ABE C:\WINDOWS\System32\drivers\urssynopsys.sys 9DD431F1B94789CFB527E5D19261F124 C:\WINDOWS\system32\drivers\usbaudio.sys 93F169DE94DBAC5DAF4755AFF10193DD C:\WINDOWS\System32\drivers\usbccgp.sys C87E32B90F085970D9637FBAD45EF6FE C:\WINDOWS\System32\drivers\usbcir.sys 0B663856474AC41924D9E9112203858F C:\WINDOWS\System32\drivers\usbehci.sys F83D2250256203AC5DA5E8601C1AFDD7 C:\WINDOWS\System32\drivers\usbhub.sys 7FFD26742321919590ED77FCA556D65F C:\WINDOWS\System32\drivers\UsbHub3.sys 7A749B2863B5561BE34B39E8E249AD8F C:\WINDOWS\System32\drivers\usbohci.sys D2109F1F4FEBF1DAC415CDC5DE876479 C:\WINDOWS\System32\drivers\usbprint.sys 29C9572F2D061CFC3C0BD48A3163E343 C:\WINDOWS\System32\drivers\usbser.sys 429477D6DEF3321FF7D3EF23CAAADA00 C:\WINDOWS\System32\drivers\USBSTOR.SYS 0CC16F7B91C57AE9A4E44425A295FDAA C:\WINDOWS\System32\drivers\usbuhci.sys C917D09064CDBD18F75ADC9B2C48F847 C:\WINDOWS\System32\drivers\USBXHCI.SYS 95BCCEFBC40D06484CF16144FE79B8A5 C:\WINDOWS\System32\drivers\vdbus.sys 7181DACBD6699770F027A049594A3DCF C:\WINDOWS\System32\drivers\vdrvroot.sys 0CBDE344FB48E42D78E29469F202ADBC C:\WINDOWS\System32\drivers\VerifierExt.sys 723195568C8755CAD57F7933C5F2C5C2 C:\WINDOWS\System32\drivers\vhdmp.sys C12B4859FC255AA6B3021CF8BB14A11F C:\WINDOWS\System32\drivers\vhf.sys 7929228F0E8B0C2FA0495A17A4FC27F6 C:\WINDOWS\System32\drivers\vmbus.sys AEE432ED868831B1F068E373598F6D93 C:\WINDOWS\System32\drivers\VMBusHID.sys 9444B23FC694B5F90F21B0FC7F10D8DD C:\WINDOWS\System32\drivers\vmgid.sys 4D0287F566B36536DD812A54C015FC4A C:\WINDOWS\System32\drivers\volmgr.sys 29075915F9BDC3437F8BED71C067D399 C:\WINDOWS\System32\drivers\volmgrx.sys 6BDB6CE6D2D9E3D3F28F1C97E12B62E2 C:\WINDOWS\System32\drivers\volsnap.sys BF2546583BB75F01DDA60A7921DFB230 C:\WINDOWS\System32\drivers\volume.sys AC2E20A74D09D24485BE8396CE04F07B C:\WINDOWS\System32\drivers\vpci.sys 04BEC879AD7B3FDDD0339B19FECB0160 C:\WINDOWS\System32\drivers\vsmraid.sys FD9BCB8920973CEAD4D49DC7A6D8A618 C:\WINDOWS\System32\drivers\vstxraid.sys 0C111F220798CCE80484026E06822379 C:\WINDOWS\System32\drivers\vwifibus.sys 607639716E9DB1CEF4E18B5B229293B4 C:\WINDOWS\System32\drivers\vwififlt.sys B1ED64E628763148BF84FBE23F2AD711 C:\WINDOWS\System32\drivers\wacompen.sys 55D00B785A7587F4263D125817871283 C:\WINDOWS\System32\DRIVERS\wanarp.sys CEF3D306C09BEC1A800E9B4A06F859F6 C:\WINDOWS\System32\DRIVERS\wanarp.sys CEF3D306C09BEC1A800E9B4A06F859F6 C:\WINDOWS\system32\drivers\wcifs.sys CD24DEEA22152524CCFE859591D12A57 C:\WINDOWS\system32\drivers\wcnfs.sys AEA1093B751339267D8C8C1EF3D669CF C:\WINDOWS\system32\drivers\WdBoot.sys D520B1B849B6D4D707AB31722B952C2D C:\WINDOWS\System32\drivers\wdcsam64.sys A556768CC1FA4F36022BEE2F0EDE2566 C:\WINDOWS\System32\drivers\Wdf01000.sys 5030C76047D756263093A47B82970868 C:\WINDOWS\system32\drivers\WdFilter.sys 29FF9199EDEB4F5470BB134D1A2563D2 C:\WINDOWS\System32\DRIVERS\wdiwifi.sys 373DF27CD5D5E50FFA2A90FEE0C0D994 C:\WINDOWS\System32\Drivers\WdNisDrv.sys 17CF416CFF408190F5A4CBD79AB12E55 C:\WINDOWS\System32\drivers\wfplwfs.sys E1785942AC51FEE6826CDF02075C5AA9 C:\Program Files (x86)\Windows Kits\10\Assessment and Deployment Kit\Deployment Tools\amd64\DISM\wimmount.sys 47E0F7D312FC38BB7A001A3DBA781A08 C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys 0DE131733317EB4BE67028366B0CAAC6 C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys 92EB5D38BDF10C790450F3E46BF93A0E C:\WINDOWS\System32\drivers\winmad.sys F95DE20312ACCA7761446DE152BD1F7C C:\WINDOWS\System32\drivers\WinUSB.SYS 4EFB346BFDAEEB29316AA52BBB9852B1 C:\WINDOWS\System32\drivers\winverbs.sys 8B9AFF5F08E66A6F1F1063DEC9457FB6 C:\WINDOWS\System32\drivers\wmiacpi.sys 6F4F4F5A007D1710BD76FB311DA97C07 C:\Windows\System32\Drivers\Wof.sys 43C8D087B31C592163B33A4BDA540E40 C:\Program Files (x86)\Windows Kits\10\Assessment and Deployment Kit\Deployment Tools\amd64\DISM\wofadk.sys FBA28D5AC166714737D1D8CDF0AEF078 C:\WINDOWS\System32\drivers\WpdUpFltr.sys 75A9284F01FE7CB1A7D5EAE5C1EB4F33 C:\WINDOWS\system32\drivers\ws2ifsl.sys 36D7B73ADC3E10607ED6EC874AFB5D1E C:\WINDOWS\System32\drivers\WSDPrint.sys 696EC2EAA2A42A137CCBB9A84D6917C0 C:\WINDOWS\system32\DRIVERS\WSDScan.sys 46E4A69825A7554A5DB784A55F8AD203 C:\WINDOWS\System32\drivers\WudfPf.sys AED7FE551E8672B824A56324076183EB C:\WINDOWS\System32\drivers\WudfRd.sys CEFAB17FD7DFCFA515626C306262E89D C:\WINDOWS\system32\DRIVERS\WUDFRd.sys CEFAB17FD7DFCFA515626C306262E89D C:\WINDOWS\system32\DRIVERS\WUDFRd.sys CEFAB17FD7DFCFA515626C306262E89D C:\WINDOWS\System32\drivers\xboxgip.sys 59335CEA021FB89E07AD5DB5D17F09D0 C:\WINDOWS\System32\drivers\xinputhid.sys 63088A3361D9A308F328F11E9099DD87 C:\WINDOWS\System32\DRIVERS\xlkfs.sys 8B888F4663A25EC5D0A3448F29815B00 C:\WINDOWS\System32\drivers\zam64.sys 21E13F2CB269DEFEAE5E1D09887D47BB C:\WINDOWS\System32\drivers\zamguard64.sys 21E13F2CB269DEFEAE5E1D09887D47BB ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Trois mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-08-04 12:20 - 2017-08-04 12:20 - 000042441 _____ C:\Users\jean-\Desktop\FRST.txt 2017-08-04 12:19 - 2017-08-04 12:20 - 000000000 ____D C:\FRST 2017-08-04 12:14 - 2017-08-04 12:14 - 002381312 _____ (Farbar) C:\Users\jean-\Desktop\FRST64.exe 2017-08-04 12:13 - 2017-08-04 12:20 - 000000000 ____D C:\AdwCleaner 2017-08-04 12:05 - 2017-08-04 12:05 - 000267986 _____ C:\Users\jean-\Desktop\ZHPDiag.txt 2017-08-04 11:53 - 2017-08-04 11:53 - 008186312 _____ (Malwarebytes) C:\Users\jean-\Desktop\adwcleaner_7.0.2.0.exe 2017-08-04 11:51 - 2017-08-04 11:51 - 002806144 _____ C:\Users\jean-\Desktop\ZHPDiag3.exe 2017-08-04 11:48 - 2017-08-04 11:48 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2017-08-04 10:46 - 2017-08-04 10:47 - 000032583 _____ C:\Users\jean-\Desktop\mb-clean-results.txt 2017-08-04 10:36 - 2017-08-04 10:36 - 000000221 _____ C:\ServiceLog.txt 2017-08-04 10:16 - 2017-08-04 10:16 - 000000000 ____D C:\WINDOWS\System32\Tasks\Abelssoft 2017-08-04 09:06 - 2017-08-04 12:19 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Moo0 2017-08-04 09:06 - 2017-08-04 12:19 - 000000000 ____D C:\Program Files (x86)\Moo0 2017-08-04 07:32 - 2017-08-04 07:32 - 000001876 _____ C:\Users\jean-\Desktop\UsbFix.lnk 2017-08-04 07:31 - 2017-08-04 07:31 - 003923783 _____ C:\Users\jean-\Downloads\UsbFix_Basic.zip 2017-08-04 01:27 - 2017-08-04 01:40 - 000000000 ____D C:\WINDOWS\rescache 2017-08-03 19:49 - 2017-08-03 19:49 - 000000000 ____D C:\WINDOWS\ERUNT 2017-08-03 19:37 - 2017-08-03 20:02 - 000001583 _____ C:\DelFix.txt 2017-08-03 19:23 - 2017-08-03 19:23 - 000000000 ____D C:\Users\jean-\AppData\Local\UNP 2017-08-03 18:42 - 2017-08-04 10:23 - 000000000 ____D C:\Users\jean-\AppData\Local\Smart_PC_Utilities,_Ltd 2017-08-03 18:28 - 2017-08-03 18:28 - 000000310 _____ C:\WINDOWS\Tasks\Uninstaller_SkipUac_jean-.job 2017-08-03 18:27 - 2017-08-03 18:27 - 000001429 _____ C:\Users\Public\Desktop\IObit Uninstaller.lnk 2017-08-03 18:27 - 2017-08-03 18:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller 2017-08-03 18:18 - 2017-08-03 18:18 - 000000000 ____D C:\WINDOWS\OEMTemp 2017-08-03 18:17 - 2017-08-04 09:37 - 000000000 ____D C:\WINDOWS\acerePowerTemp 2017-08-03 18:01 - 2017-08-03 18:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Leawo 2017-08-03 18:00 - 2016-10-18 17:33 - 000139264 _____ (hxxp://www.xvid.org) C:\WINDOWS\SysWOW64\xvid.ax 2017-08-03 18:00 - 2016-10-18 17:33 - 000066944 _____ (TOSHIBA Corporation) C:\WINDOWS\SysWOW64\thdudf.sys 2017-08-03 18:00 - 2016-10-18 17:33 - 000066944 _____ (TOSHIBA Corporation) C:\WINDOWS\SysWOW64\Drivers\thdudf.sys 2017-08-03 17:59 - 2017-08-03 18:01 - 000000000 ____D C:\Users\Public\Anvisoft 2017-08-03 17:58 - 2017-08-03 18:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvisoft 2017-08-03 17:56 - 2017-02-19 21:15 - 000233248 _____ (QFX Software Corporation) C:\WINDOWS\system32\Drivers\keyscrambler.sys 2017-08-03 17:17 - 2017-08-03 17:17 - 000000000 ____D C:\CCE_Quarantine 2017-08-03 17:06 - 2017-08-03 17:06 - 000000000 ____D C:\Users\jean-\AppData\Local\Chromium 2017-08-03 16:41 - 2017-08-03 16:41 - 000000000 ____D C:\Users\jean-\AppData\Local\ElevatedDiagnostics 2017-08-03 15:42 - 2017-08-03 15:42 - 000001775 _____ C:\PrinterPlusPlus_CP_Installer.txt 2017-08-03 15:39 - 2017-08-04 10:15 - 000003136 _____ C:\PrinterPlusPlus_Installer.txt 2017-08-03 15:36 - 2017-08-03 15:39 - 066383352 _____ (Abelssoft ) C:\Users\jean-\Downloads\cleverprintsetup.exe 2017-08-03 15:35 - 2017-08-03 15:43 - 011004096 _____ (Abelssoft ) C:\Users\jean-\Downloads\pdfcompressor_free.exe 2017-08-03 15:34 - 2017-08-03 15:37 - 046997552 _____ (Abelssoft ) C:\Users\jean-\Downloads\everdoc.exe 2017-08-03 15:33 - 2017-08-04 10:14 - 000000000 ____D C:\Program Files (x86)\FolderVisualizer 2017-08-03 15:33 - 2017-08-03 15:43 - 003061776 _____ (Abelssoft ) C:\Users\jean-\Downloads\syncmanager (1).exe 2017-08-03 15:33 - 2017-08-03 15:33 - 002692968 _____ (Abelssoft ) C:\Users\jean-\Downloads\FolderVisualizer (1).exe 2017-08-03 15:32 - 2017-08-03 15:32 - 003061776 _____ (Abelssoft ) C:\Users\jean-\Downloads\syncmanager.exe 2017-08-03 15:32 - 2017-08-03 15:32 - 002692968 _____ (Abelssoft ) C:\Users\jean-\Downloads\FolderVisualizer.exe 2017-08-03 15:31 - 2017-08-03 15:31 - 005519664 _____ (Abelssoft ) C:\Users\jean-\Downloads\mykeyfinder.exe 2017-08-03 15:30 - 2017-08-03 15:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoCompressor 2017-08-03 15:30 - 2017-08-03 15:30 - 000000000 ____D C:\Program Files (x86)\VideoCompressor 2017-08-03 15:28 - 2017-08-03 15:29 - 011621624 _____ (Abelssoft ) C:\Users\jean-\Downloads\videocompressor.exe 2017-08-03 15:27 - 2017-08-03 15:29 - 011585080 _____ (Abelssoft ) C:\Users\jean-\Downloads\converter4video.exe 2017-08-03 15:26 - 2017-08-03 15:31 - 062088232 _____ (Abelssoft ) C:\Users\jean-\Downloads\moviecut.exe 2017-08-03 15:25 - 2017-08-03 15:29 - 038458864 _____ (Abelssoft ) C:\Users\jean-\Downloads\priweb.exe 2017-08-03 15:25 - 2017-08-03 15:25 - 001844600 _____ (Abelssoft ) C:\Users\jean-\Downloads\Win10PrivacyFix.exe 2017-08-03 15:24 - 2017-08-04 10:37 - 000000000 ____D C:\ProgramData\XDMessagingv4 2017-08-03 15:24 - 2017-08-04 10:29 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Abelssoft 2017-08-03 15:24 - 2017-08-04 10:28 - 000000000 ____D C:\Users\jean-\AppData\Local\Abelssoft 2017-08-03 15:22 - 2017-08-04 10:38 - 000000000 ____D C:\Program Files (x86)\ToolbarTerminator 2017-08-03 15:21 - 2017-08-03 15:24 - 031589344 _____ (Abelssoft ) C:\Users\jean-\Downloads\antiransomware.exe 2017-08-03 15:21 - 2017-08-03 15:22 - 009870976 _____ (Abelssoft ) C:\Users\jean-\Downloads\gc.exe 2017-08-03 15:20 - 2017-08-03 15:20 - 003549160 _____ (Abelssoft ) C:\Users\jean-\Downloads\antilogger.exe 2017-08-03 15:20 - 2017-08-03 15:20 - 003525880 _____ (Abelssoft ) C:\Users\jean-\Downloads\toolbarterminator.exe 2017-08-03 15:19 - 2017-08-03 15:20 - 005453336 _____ (Abelssoft ) C:\Users\jean-\Downloads\startupstar.exe 2017-08-03 15:18 - 2017-08-04 10:41 - 000000000 ____D C:\ProgramData\Abelssoft 2017-08-03 15:18 - 2017-08-03 15:24 - 068682432 _____ (Abelssoft ) C:\Users\jean-\Downloads\ysd (1).exe 2017-08-03 15:18 - 2017-08-03 15:20 - 010234688 _____ (Abelssoft ) C:\Users\jean-\Downloads\abs.exe 2017-08-03 15:16 - 2017-08-03 15:16 - 003216928 _____ (Abelssoft ) C:\Users\jean-\Downloads\checkdrive.exe 2017-08-03 15:14 - 2017-08-03 15:18 - 068682432 _____ (Abelssoft ) C:\Users\jean-\Downloads\ysd.exe 2017-08-03 15:14 - 2017-08-03 15:16 - 026503472 _____ (Abelssoft ) C:\Users\jean-\Downloads\washandgo.exe 2017-08-03 15:08 - 2017-08-03 15:08 - 004893968 _____ (Smart PC Utilities) C:\Users\jean-\Downloads\tasksoptimizer.exe 2017-08-03 15:07 - 2017-08-03 15:07 - 005844064 _____ (Smart PC Utilities) C:\Users\jean-\Downloads\servicesoptimizer.exe 2017-08-03 15:06 - 2017-08-04 10:25 - 000000000 ____D C:\Program Files\Smart PC Utilities 2017-08-03 15:06 - 2017-08-04 10:24 - 000000000 ____D C:\Users\jean-\Documents\Smart PC Utilities 2017-08-03 15:04 - 2017-08-03 15:04 - 007784934 _____ (Smart PC Utilities) C:\Users\jean-\Downloads\startupmaster.exe 2017-08-03 15:01 - 2017-08-04 10:15 - 000000000 ____D C:\Program Files (x86)\DLL Care 2017-08-03 15:01 - 2017-08-04 10:14 - 000000000 ____D C:\Program Files (x86)\DLL Suite 2017-08-03 14:58 - 2017-08-03 14:59 - 021286936 _____ ( ) C:\Users\jean-\Downloads\DLLSuite_Setup.exe 2017-08-03 14:56 - 2017-08-03 14:58 - 021340306 _____ ( ) C:\Users\jean-\Downloads\DLLCare_Setup.exe 2017-08-03 07:13 - 2017-08-03 07:13 - 000253856 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\51FA3D57.sys 2017-08-02 08:29 - 2017-08-02 08:29 - 000000000 ____D C:\ProgramData\Doctor Web 2017-08-02 08:28 - 2017-08-02 09:01 - 000000000 ____D C:\Users\jean-\Doctor Web 2017-08-02 08:17 - 2017-08-02 08:17 - 000000000 ____D C:\WINDOWS\SmartFix 2017-08-02 08:12 - 2017-08-02 08:12 - 090566656 _____ C:\WINDOWS\system32\config\SOFTWARE.iobit 2017-08-02 08:12 - 2017-08-02 08:12 - 000335872 _____ C:\WINDOWS\system32\config\DEFAULT.iobit 2017-08-02 08:12 - 2017-08-02 08:12 - 000032768 _____ C:\WINDOWS\system32\config\SECURITY.iobit 2017-08-02 08:12 - 2017-08-02 08:12 - 000032768 _____ C:\WINDOWS\system32\config\SAM.iobit 2017-08-02 08:07 - 2017-08-02 08:16 - 040507312 _____ (simplix) C:\Users\jean-\Downloads\SmartFix.exe 2017-08-02 07:35 - 2017-08-02 07:35 - 000000000 ____D C:\Users\jean-\Downloads\cce_1.6.183539.73_x64 2017-08-02 07:31 - 2017-08-02 07:34 - 029077833 _____ C:\Users\jean-\Downloads\cce_public_x64.zip 2017-08-02 07:31 - 2017-08-02 07:33 - 025308861 _____ C:\Users\jean-\Downloads\cce_1.6.183539.73_x64.zip 2017-07-31 18:34 - 2017-07-31 18:36 - 064025992 _____ (Malwarebytes ) C:\Users\jean-\Downloads\mb3-setup-35891.35891-3.1.2.1733-1.0.139-1.0.2060 (1).exe 2017-07-31 14:11 - 2017-07-31 14:12 - 000000000 ____D C:\Program Files\UNP 2017-07-31 14:11 - 2017-07-31 14:11 - 000000000 ____D C:\WINDOWS\system32\UNP 2017-07-31 14:02 - 2017-04-21 23:53 - 000029376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aspnet_counters.dll 2017-07-31 14:02 - 2017-04-21 23:50 - 000030912 _____ (Microsoft Corporation) C:\WINDOWS\system32\aspnet_counters.dll 2017-07-31 14:01 - 2017-04-21 23:53 - 000018600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr100_clr0400.dll 2017-07-31 14:01 - 2017-04-21 23:50 - 000018592 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr100_clr0400.dll 2017-07-31 14:01 - 2017-04-11 20:27 - 000993632 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr120_clr0400.dll 2017-07-31 14:01 - 2017-04-11 20:27 - 000690008 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp120_clr0400.dll 2017-07-31 14:01 - 2017-03-15 20:15 - 000987840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll 2017-07-31 14:01 - 2017-03-15 20:15 - 000485576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp120_clr0400.dll 2017-07-31 10:36 - 2017-07-31 10:37 - 000414524 _____ C:\WINDOWS\Minidump\073117-33250-01.dmp 2017-07-31 10:35 - 2017-07-31 10:35 - 692127616 _____ C:\WINDOWS\MEMORY.DMP 2017-07-31 10:20 - 2017-07-31 10:31 - 000000000 ____D C:\Program Files\rempl 2017-07-31 10:18 - 2017-06-03 12:50 - 000192856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll 2017-07-31 10:18 - 2017-06-03 12:14 - 001564512 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2017-07-31 10:18 - 2017-06-03 12:14 - 001214816 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2017-07-31 10:18 - 2017-06-03 12:14 - 000629088 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2017-07-31 10:18 - 2017-06-03 12:14 - 000544096 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2017-07-31 10:18 - 2017-06-03 12:14 - 000335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll 2017-07-31 10:18 - 2017-06-03 12:14 - 000334176 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2017-07-31 10:18 - 2017-06-03 12:14 - 000233824 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2017-07-31 10:18 - 2017-06-03 12:14 - 000136032 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2017-07-31 10:18 - 2017-06-03 12:14 - 000096608 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2017-07-31 10:18 - 2017-06-03 12:14 - 000034648 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2017-07-31 08:30 - 2017-08-03 19:21 - 000000000 ____D C:\Users\jean-\AppData\Local\ESET 2017-07-31 08:29 - 2017-07-31 08:30 - 006754944 _____ (ESET spol. s r.o.) C:\Users\jean-\Downloads\esetonlinescanner_enu.exe 2017-07-31 08:16 - 2017-07-31 08:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BCUninstaller 2017-07-31 08:16 - 2017-07-31 08:16 - 000000000 ____D C:\Program Files\BCUninstaller 2017-07-31 08:15 - 2017-07-31 08:15 - 002683160 _____ (Marcin Szeniak ) C:\Users\jean-\Downloads\BCUninstaller_3.12_setup.exe 2017-07-31 07:48 - 2016-12-21 06:44 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe 2017-07-31 07:47 - 2016-12-21 09:08 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe 2017-07-30 16:40 - 2017-07-30 16:40 - 002800512 _____ C:\Users\jean-\ZHPDiag3.exe 2017-07-30 13:22 - 2017-07-30 13:23 - 064025992 _____ (Malwarebytes ) C:\Users\jean-\Downloads\mb3-setup-35891.35891-3.1.2.1733-1.0.139-1.0.2060.exe 2017-07-30 12:19 - 2017-07-30 12:19 - 001721576 _____ (Microsoft Corporation) C:\WINDOWS\system32\WdfCoInstaller01009.dll 2017-07-30 12:19 - 2017-07-30 12:19 - 001002728 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinUSBCoInstaller2.dll 2017-07-30 12:14 - 2017-07-30 12:14 - 000000000 ____D C:\Users\jean-\Documents\CyberLink 2017-07-30 11:07 - 2017-08-04 11:18 - 000047893 _____ C:\WINDOWS\ZAM.krnl.trace 2017-07-30 11:07 - 2017-08-04 11:18 - 000010212 _____ C:\WINDOWS\ZAM_Guard.krnl.trace 2017-07-30 10:23 - 2017-07-30 10:23 - 000000000 ____D C:\Users\jean-\AppData\LocalLow\ADSRemoval 2017-07-30 09:45 - 2017-07-30 09:45 - 000000000 ___HD C:\OneDriveTemp 2017-07-30 09:12 - 2017-08-03 18:28 - 000000000 ____D C:\ProgramData\ProductData 2017-07-30 09:07 - 2017-07-30 09:07 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2017-07-29 20:24 - 2017-07-29 20:25 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Geek Uninstaller 2017-07-29 20:24 - 2017-07-29 20:24 - 003000643 _____ C:\Users\jean-\Downloads\geek.zip 2017-07-29 20:23 - 2017-07-29 20:23 - 003952496 _____ (CrystalIdea Software ) C:\Users\jean-\Downloads\uninstalltool_setup.exe 2017-07-29 20:23 - 2017-07-29 20:23 - 000000942 _____ C:\Users\jean-\Desktop\Uninstall Tool.lnk 2017-07-29 20:23 - 2017-07-29 20:23 - 000000252 _____ C:\WINDOWS\Tasks\RunUninstallTool_SkipUac.job 2017-07-29 20:23 - 2017-07-29 20:23 - 000000000 ____D C:\Users\jean-\AppData\Roaming\CrystalIdea Software 2017-07-29 20:23 - 2017-07-29 20:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uninstall Tool 2017-07-29 20:23 - 2017-07-29 20:23 - 000000000 ____D C:\Program Files\Uninstall Tool 2017-07-29 20:23 - 2017-01-13 12:54 - 000054192 _____ (CrystalIdea Software) C:\WINDOWS\system32\Drivers\CisUtMonitor.sys 2017-07-29 18:51 - 2017-08-04 11:54 - 000000000 ____D C:\Users\jean-\AppData\Roaming\ZHP 2017-07-29 18:51 - 2017-08-04 11:54 - 000000000 ____D C:\Users\jean-\AppData\Local\ZHP 2017-07-29 17:19 - 2017-07-29 17:19 - 000000000 ____D C:\Users\jean-\AppData\Roaming\MultiCommander 2017-07-29 17:17 - 2017-07-29 17:20 - 000000000 ____D C:\mydrivers 2017-07-29 16:50 - 2017-07-29 16:50 - 000000000 ____D C:\ProgramData\Kingsoft 2017-07-29 16:49 - 2017-07-29 16:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Driver Care 2017-07-29 16:42 - 2017-07-29 16:49 - 007510176 _____ (WiseCleaner.com ) C:\Users\jean-\Downloads\WiseDriverCareSetup.exe 2017-07-29 16:17 - 2017-07-29 16:17 - 000000224 _____ C:\WINDOWS\Tasks\ACD.exe_20170729_161719_0698.job 2017-07-29 16:07 - 2017-07-29 16:07 - 000002067 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink ActionDirector 2 (64-bit).lnk 2017-07-29 16:03 - 2017-07-29 16:07 - 000000000 ____D C:\Program Files\CyberLink 2017-07-29 15:46 - 2017-07-29 15:46 - 000000000 ____D C:\ProgramData\install_backup 2017-07-29 15:35 - 2017-08-03 18:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remo Duplicate Photos Remover 2017-07-29 15:35 - 2017-08-02 20:48 - 000000000 ____D C:\Program Files\Remo Duplicate Photos Remover 1.0 2017-07-29 15:34 - 2017-07-29 15:45 - 556887696 _____ C:\Users\jean-\Downloads\ActionDirector_1216_GM2_Trial_Trial_ACD161103-02.exe 2017-07-29 15:03 - 2017-07-29 15:03 - 000000000 ____D C:\ProgramData\2BrightSparks 2017-07-29 13:31 - 2017-07-29 21:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip 2017-07-29 13:30 - 2017-07-29 21:07 - 000000000 ____D C:\ProgramData\WinZip 2017-07-29 13:29 - 2017-07-29 13:29 - 000001244 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Booking.lnk 2017-07-29 13:29 - 2017-07-29 13:29 - 000001232 _____ C:\Users\Public\Desktop\Booking.lnk 2017-07-29 13:28 - 2017-07-29 13:29 - 000000000 ____D C:\Program Files (x86)\Booking 2017-07-29 13:24 - 2017-07-29 13:24 - 006178186 _____ (Media Play Air ) C:\Users\jean-\Downloads\JavaPlugin.exe 2017-07-29 13:19 - 2017-07-29 13:19 - 001548583 _____ ( ) C:\Users\jean-\Downloads\JavaPlugin_0562582603.exe 2017-07-29 13:17 - 2017-07-29 13:17 - 000000000 ___HD C:\Users\jean-\AppData\Roaming\Obsidium 2017-07-29 13:17 - 2017-07-29 13:17 - 000000000 ___HD C:\Users\jean-\.obs32 2017-07-29 13:13 - 2017-07-29 13:13 - 000028272 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys 2017-07-29 13:11 - 2017-08-03 18:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SkinPack 2017-07-29 13:08 - 2017-07-29 14:54 - 000000000 ____D C:\Program Files (x86)\YP6XHVzWgC 2017-07-29 13:06 - 2017-07-29 14:53 - 000000000 ____D C:\Users\jean-\AppData\Roaming\a3bf6b7a34b746398d95f6d9d8c7bb49 2017-07-29 13:06 - 2017-07-29 14:53 - 000000000 ____D C:\Users\jean-\AppData\Roaming\456151808c11472195a5ec81eae4d2e9 2017-07-29 12:45 - 2017-07-30 09:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 10 - Codec Pack 2017-07-29 12:44 - 2017-07-29 12:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Codecs 2017-07-29 12:44 - 2017-07-29 12:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 7 - Codec Pack 2017-07-29 12:43 - 2017-07-29 12:43 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\trolCommander 2017-07-29 12:43 - 2017-07-29 12:43 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iGetting Audio 2017-07-29 12:43 - 2017-07-29 12:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\2BrightSparks 2017-07-29 12:43 - 2017-07-29 12:43 - 000000000 ____D C:\Program Files (x86)\trolCommander 2017-07-29 12:43 - 2017-07-29 12:43 - 000000000 ____D C:\Program Files (x86)\iGetting Audio 2017-07-29 12:43 - 2017-07-29 12:43 - 000000000 ____D C:\Program Files (x86)\2BrightSparks 2017-07-29 12:42 - 2017-07-29 12:43 - 000000000 ____D C:\Users\jean-\Documents\Speed Install 2017-07-29 12:42 - 2017-07-29 12:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speed Install 2017-07-29 12:41 - 2017-08-03 18:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remo Repair ZIP 2017-07-29 12:41 - 2017-08-03 18:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remo Repair Word 2017-07-29 12:41 - 2017-08-03 18:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remo Repair Registry 2017-07-29 12:41 - 2017-08-03 18:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remo Recover FREE Edition 2017-07-29 12:41 - 2017-08-03 18:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remo File Eraser 2.0 2017-07-29 12:41 - 2017-08-02 15:28 - 000000000 ____D C:\Program Files (x86)\Remo File Eraser 2.0 2017-07-29 12:40 - 2017-08-03 18:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remo Repair RAR 2017-07-29 12:40 - 2017-08-03 18:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remo Repair PowerPoint 2017-07-29 12:40 - 2017-08-03 18:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remo Repair MOV 2017-07-29 12:40 - 2017-08-03 18:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remo Recover for Android 2017-07-29 12:40 - 2017-08-03 18:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remo Outlook Backup & Migrate 2017-07-29 12:40 - 2017-08-03 18:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remo Drive Wipe 2017-07-29 12:40 - 2017-08-02 20:52 - 000000000 ____D C:\Program Files\Remo Repair Registry 2017-07-29 12:40 - 2017-08-02 20:51 - 000000000 ____D C:\Program Files\Remo Repair MOV 2.0 2017-07-29 12:40 - 2017-08-02 20:49 - 000000000 ____D C:\Program Files\Remo Recover for Android 2.0 2017-07-29 12:40 - 2017-08-02 20:48 - 000000000 ____D C:\Program Files\Remo Recover FREE Edition 2017-07-29 12:40 - 2017-08-02 15:34 - 000000000 ____D C:\Program Files (x86)\Remo Repair ZIP 2.0 2017-07-29 12:40 - 2017-08-02 15:33 - 000000000 ____D C:\Program Files (x86)\Remo Repair Word 2.0 2017-07-29 12:40 - 2017-08-02 15:31 - 000000000 ____D C:\Program Files (x86)\Remo Repair RAR 2.0 2017-07-29 12:40 - 2017-08-02 15:30 - 000000000 ____D C:\Program Files (x86)\Remo Repair PowerPoint 2.0 2017-07-29 12:40 - 2017-08-02 15:29 - 000000000 ____D C:\Program Files (x86)\Remo Outlook Backup & Migrate 2017-07-29 12:40 - 2017-08-02 15:26 - 000000000 ____D C:\Program Files (x86)\Remo Drive Wipe 2017-07-29 12:40 - 2017-07-29 12:40 - 000000000 ____D C:\Users\Public\Documents\EFL 2017-07-29 12:39 - 2017-08-03 18:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Remo Drive Defrag 2017-07-29 12:39 - 2017-08-02 15:25 - 000000000 ____D C:\Program Files (x86)\Remo Drive Defrag 2017-07-29 12:39 - 2017-07-29 15:35 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Remo 2017-07-29 12:39 - 2017-07-29 12:40 - 000000000 ____D C:\Program Files\Easy File Locker 2017-07-29 12:39 - 2017-07-29 12:39 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\muCommander 2017-07-29 12:39 - 2017-07-29 12:39 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Easy File Locker 2017-07-29 12:39 - 2017-07-29 12:39 - 000000000 ____D C:\Unreal Commander 2017-07-29 12:39 - 2017-07-29 12:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MultiCommander 2017-07-29 12:39 - 2017-07-29 12:39 - 000000000 ____D C:\Program Files\MultiCommander (x64) 2017-07-29 12:39 - 2017-07-29 12:39 - 000000000 ____D C:\Program Files (x86)\muCommander 2017-07-29 12:39 - 2009-02-12 15:11 - 000026024 _____ (EldoS Corporation) C:\WINDOWS\system32\Drivers\rsdrvx64.sys 2017-07-29 12:30 - 2017-07-29 12:31 - 000000000 ____D C:\ProgramData\regid.2003-04.com.caphyon 2017-07-29 12:30 - 2017-07-29 12:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced Installer 13.8.1 2017-07-29 12:30 - 2017-07-29 12:30 - 000000000 ____D C:\Program Files (x86)\MSBuild 2017-07-29 12:30 - 2017-07-29 12:30 - 000000000 ____D C:\Program Files (x86)\Caphyon 2017-07-29 12:29 - 2017-07-29 12:29 - 000000000 ____D C:\ProgramData\Caphyon 2017-07-29 12:05 - 2017-07-29 12:05 - 001847296 _____ C:\Users\jean-\AppData\Local\po.db 2017-07-29 12:05 - 2017-07-29 12:05 - 000140800 _____ C:\Users\jean-\AppData\Local\installer.dat 2017-07-29 12:05 - 2017-07-29 12:05 - 000001516 _____ C:\WINDOWS\Tasks\PowerMaster.job 2017-07-29 12:04 - 2017-07-29 12:04 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Opera Software 2017-07-29 12:04 - 2017-07-29 12:04 - 000000000 ____D C:\Users\jean-\AppData\Local\Opera Software 2017-07-29 12:03 - 2017-07-29 14:54 - 000000000 ____D C:\Users\jean-\AppData\Local\e66923851c834945ab5bdb4feca9ec87 2017-07-29 12:03 - 2017-07-29 14:54 - 000000000 ____D C:\Program Files (x86)\tefpOLC7oN 2017-07-29 12:03 - 2017-07-29 14:53 - 000000000 ____D C:\Users\jean-\AppData\Roaming\d6fd9e2d07604c7aa289e71501fd36fa 2017-07-29 12:03 - 2017-07-29 14:53 - 000000000 ____D C:\Users\jean-\AppData\Roaming\a551db79fa4f40878e49536c9f415fad 2017-07-29 12:02 - 2017-07-29 12:02 - 000001350 _____ C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk 2017-07-29 12:01 - 2017-08-03 18:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IconPack 2017-07-29 12:01 - 2017-07-29 12:01 - 000000000 ____D C:\ProgramData\AVAST Software 2017-07-29 12:00 - 2017-08-02 09:42 - 000000000 ____D C:\IconPack 2017-07-29 12:00 - 2017-07-29 13:07 - 000000000 ___HD C:\W7P_Backups 2017-07-29 12:00 - 2017-07-29 12:00 - 001167128 _____ (CyberLink) C:\Users\jean-\Downloads\cyberlink-power2go_Essential-11.0.exe 2017-07-29 11:59 - 2017-08-03 18:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Clear ThemePack 2017-07-29 11:59 - 2017-08-03 15:38 - 000000000 ____D C:\skinpack 2017-07-29 11:59 - 2017-08-02 09:41 - 000000000 ____D C:\Clear ThemePack 2017-07-29 11:57 - 2017-07-29 11:57 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Viv 2017-07-29 11:57 - 2017-07-29 11:57 - 000000000 ____D C:\Users\jean-\AppData\Roaming\PhrozenWinja 2017-07-29 11:57 - 2017-07-29 11:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winja 2017-07-29 11:56 - 2017-07-29 11:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VivPDF Editor 2017-07-29 11:56 - 2017-07-29 11:56 - 000000000 ____D C:\Program Files (x86)\VivPDF Editor 2017-07-29 11:50 - 2017-07-29 11:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LopeSoft 2017-07-29 11:50 - 2017-07-29 11:50 - 000000000 ____D C:\ProgramData\LopeSoft 2017-07-29 11:50 - 2017-07-29 11:50 - 000000000 ____D C:\Program Files\LopeSoft 2017-07-29 11:23 - 2017-08-03 18:43 - 000000000 ___RD C:\Users\jean-\Desktop\cadeaux jes-jes m-moulu st-j conr (jessica 2x de brugnon u h) 17_9_2016, 17_3_2017 & 17_9_2017 & lfsu100%sf 2017-07-29 11:08 - 2017-07-29 11:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Morae 2017-07-29 11:08 - 2017-07-29 11:08 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Xilisoft 2017-07-29 11:06 - 2017-07-29 11:08 - 000000000 ____D C:\Program Files (x86)\TechSmith 2017-07-29 11:06 - 2017-07-29 11:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith 2017-07-29 11:05 - 2017-08-03 18:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Unlocker 2017-07-29 11:04 - 2017-07-29 11:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xilisoft 2017-07-29 11:04 - 2017-07-29 11:04 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PerigeeCopy 2017-07-29 11:04 - 2017-07-29 11:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniCopier 2017-07-29 11:04 - 2017-07-29 11:04 - 000000000 ____D C:\Program Files\PerigeeCopy 2017-07-29 11:03 - 2017-07-29 11:03 - 000000000 ____D C:\Users\jean-\AppData\Local\Copy Handler 2017-07-29 11:03 - 2017-07-29 11:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fast File Copy by Daanav.com 2017-07-29 11:03 - 2017-07-29 11:03 - 000000000 ____D C:\Program Files (x86)\MiniCopier 2017-07-29 11:03 - 2017-07-29 11:03 - 000000000 ____D C:\Program Files (x86)\Fast File Copy by Daanav.com 2017-07-29 11:02 - 2017-07-29 11:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Copy Handler 2017-07-29 11:02 - 2017-07-29 11:02 - 000000000 ____D C:\Program Files\Copy Handler 2017-07-29 11:01 - 2017-07-29 11:07 - 000000000 ____D C:\ProgramData\Xilisoft 2017-07-29 11:01 - 2017-07-29 11:07 - 000000000 ____D C:\Program Files (x86)\Xilisoft 2017-07-29 11:01 - 2017-07-29 11:01 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Genie9 2017-07-29 11:00 - 2017-07-29 11:00 - 000000000 ___RD C:\Users\jean-\Desktop\Non-Zoolz Zone 2017-07-29 11:00 - 2017-07-29 11:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zoolz 2017-07-29 11:00 - 2017-07-29 11:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xiph.Org 2017-07-29 10:59 - 2017-07-29 10:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Icecream Screen Recorder 2017-07-29 10:59 - 2017-07-29 10:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\free-video-splitter 2017-07-29 10:59 - 2017-07-29 10:59 - 000000000 ____D C:\Program Files\Genie9 2017-07-29 10:59 - 2017-07-29 10:59 - 000000000 ____D C:\Program Files (x86)\Xiph.Org 2017-07-29 10:59 - 2017-07-29 10:59 - 000000000 ____D C:\Program Files (x86)\free-video-splitter 2017-07-29 10:58 - 2017-07-29 10:59 - 000000000 ____D C:\Program Files (x86)\Icecream Screen Recorder 2017-07-29 10:57 - 2017-07-29 10:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GiliSoft 2017-07-29 10:57 - 2017-07-29 10:57 - 000000000 ____D C:\Program Files (x86)\GiliSoft 2017-07-29 10:56 - 2017-07-29 10:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GoodSync 2017-07-29 10:55 - 2017-07-29 10:56 - 000000000 ____D C:\ProgramData\GoodSync 2017-07-29 10:54 - 2017-07-29 10:54 - 000000000 ____D C:\Program Files\Siber Systems 2017-07-29 10:51 - 2017-07-29 10:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hasleo Data Recovery 2017-07-29 10:51 - 2017-07-29 10:51 - 000000000 ____D C:\Program Files\Hasleo 2017-07-29 10:50 - 2017-07-29 11:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roadkil.Net 2017-07-29 10:50 - 2017-07-29 11:05 - 000000000 ____D C:\Program Files (x86)\Roadkil.Net 2017-07-29 10:49 - 2017-07-29 10:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Runtime Software 2017-07-29 10:49 - 2017-07-29 10:49 - 000001727 _____ C:\ProgramData\Microsoft\Windows\Start Menu\TeraCopy.lnk 2017-07-29 10:49 - 2017-07-29 10:49 - 000000000 ____D C:\Users\jean-\AppData\Local\Xenocode 2017-07-29 10:49 - 2017-07-29 10:49 - 000000000 ____D C:\Program Files (x86)\Runtime Software 2017-07-29 10:45 - 2017-08-04 09:52 - 000000000 ____D C:\Program Files\Bandizip 2017-07-29 10:44 - 2017-07-29 10:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Folderico 2017-07-29 10:44 - 2017-07-29 10:44 - 000000000 ____D C:\ProgramData\Folderico 2017-07-29 10:44 - 2017-07-29 10:44 - 000000000 ____D C:\Program Files (x86)\Folderico 2017-07-29 10:43 - 2017-07-29 10:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Transcend 2017-07-29 10:43 - 2017-07-29 10:43 - 000000000 ____D C:\Program Files (x86)\Transcend 2017-07-29 10:43 - 2013-05-23 09:52 - 000386560 _____ (Dart Communications) C:\WINDOWS\SysWOW64\DartSecure2.dll 2017-07-29 10:43 - 2013-05-23 09:52 - 000234496 _____ (Dart Communications) C:\WINDOWS\SysWOW64\DartCertificate.dll 2017-07-29 10:43 - 2013-05-06 13:17 - 000425472 _____ (Dart Communications) C:\WINDOWS\SysWOW64\DartSock.dll 2017-07-29 10:43 - 2008-08-18 19:18 - 000077824 _____ (Fox Magic Software) C:\WINDOWS\SysWOW64\fmcodec.DLL 2017-07-29 10:39 - 2015-02-27 10:35 - 000000232 _____ C:\WINDOWS\SysWOW64\dllhost.exe.config 2017-07-29 10:36 - 2012-09-21 10:25 - 000727952 _____ () C:\WINDOWS\SysWOW64\WSCM64.dll 2017-07-29 10:36 - 2012-09-21 10:25 - 000159120 _____ () C:\WINDOWS\SysWOW64\WSCM32.dll 2017-07-29 10:34 - 2017-07-29 10:34 - 000000000 ____D C:\ProgramData\ProductFeatures 2017-07-29 10:33 - 2017-07-29 10:33 - 000000000 ____D C:\Users\jean-\.swt 2017-07-29 10:20 - 2017-07-29 10:33 - 000000000 ____D C:\Users\jean-\AppData\Local\Degoo 2017-07-29 10:19 - 2017-07-29 10:19 - 000000000 ____D C:\Users\jean-\Documents\Wondershare MediaServer 2017-07-29 10:19 - 2017-07-29 10:19 - 000000000 ____D C:\ProgramData\Wondershare Video Converter Free 2017-07-29 10:17 - 2017-07-29 10:21 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Degoo 2017-07-29 10:08 - 2017-07-29 10:08 - 000000000 ____D C:\ProgramData\Wondershare Video Converter Pro 2017-07-29 10:05 - 2017-07-29 10:33 - 000000000 ____D C:\Users\jean-\AppData\Roaming\iSkysoft 2017-07-29 09:25 - 2017-07-29 10:55 - 000000000 ____D C:\Users\jean-\AppData\Roaming\GoodSync 2017-07-29 09:20 - 2017-07-29 10:13 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Wondershare 2017-07-29 09:19 - 2017-07-30 09:56 - 000000000 ____D C:\Users\jean-\.android 2017-07-29 08:53 - 2017-08-03 18:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit MBR Guard 2017-07-29 08:53 - 2017-07-29 08:53 - 000000000 _____ C:\WINDOWS\1 2017-07-29 08:42 - 2017-08-03 19:23 - 000000000 ____D C:\Users\jean-\AppData\Roaming\USBSafelyRemove 2017-07-29 08:31 - 2017-07-29 10:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher 2017-07-29 08:31 - 2017-07-29 08:31 - 000000000 ____D C:\Program Files (x86)\DsNET Corp 2017-07-29 08:30 - 2017-07-29 08:30 - 000000000 ____D C:\Users\jean-\AppData\Roaming\ProtectStar 2017-07-29 08:30 - 2017-07-29 08:30 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ProtectStar 2017-07-29 08:30 - 2017-07-29 08:30 - 000000000 ____D C:\Program Files (x86)\ProtectStar 2017-07-29 08:29 - 2017-07-29 08:29 - 000000000 ____D C:\zemana_logs 2017-07-29 08:28 - 2017-07-29 08:29 - 000000000 ____D C:\Program Files\Zemana Control Center 2017-07-29 08:27 - 2017-07-29 08:28 - 000000000 ____D C:\Program Files\Rebit 5 2017-07-29 08:20 - 2017-07-29 08:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ISO to USB 2017-07-29 08:20 - 2017-07-29 08:20 - 000000000 ____D C:\Program Files (x86)\ISO to USB 2017-07-29 08:18 - 2017-07-29 08:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Silent Install Builder 5 2017-07-29 08:18 - 2017-07-29 08:19 - 000000000 ____D C:\Program Files (x86)\Silent Install Builder 5 2017-07-29 08:14 - 2017-07-29 08:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Start Menu X 2017-07-29 08:13 - 2017-07-29 08:40 - 000000000 ____D C:\Users\jean-\AppData\Roaming\StartMenuX 2017-07-29 08:13 - 2017-07-29 08:14 - 000000000 ____D C:\Program Files\Start Menu X 2017-07-29 08:13 - 2017-07-29 08:13 - 000000000 ____D C:\ProgramData\StartMenuX 2017-07-29 08:11 - 2017-08-03 19:06 - 000000000 ____D C:\Users\jean-\AppData\LocalLow\IObit 2017-07-29 08:09 - 2017-07-29 08:09 - 000000000 ____D C:\WINDOWS\Tasks\ImCleanDisabled 2017-07-29 08:07 - 2017-07-29 10:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Degoo 2017-07-29 08:06 - 2017-07-29 08:06 - 000000000 ____D C:\ProgramData\MindGems 2017-07-29 08:06 - 2017-07-29 08:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LiteManager Pro - Viewer 2017-07-29 08:06 - 2017-07-29 08:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Folder Size 2017-07-29 08:06 - 2017-07-29 08:06 - 000000000 ____D C:\Program Files\FolderSize 2017-07-29 08:06 - 2017-07-29 08:06 - 000000000 ____D C:\Program Files (x86)\LiteManager Pro - Viewer 2017-07-29 08:06 - 2017-07-29 08:06 - 000000000 ____D C:\Program Files (x86)\Folder Size 2017-07-29 08:05 - 2017-08-03 18:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LiteManager Pro - Server 2017-07-29 08:05 - 2017-07-31 16:22 - 000000000 ____D C:\Program Files (x86)\LiteManager Pro - Server 2017-07-29 08:05 - 2017-07-29 08:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kotobee Publisher 2017-07-29 08:04 - 2017-07-29 08:05 - 000000000 ____D C:\Program Files (x86)\Kotobee Publisher 2017-07-29 08:03 - 2017-07-29 08:03 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\USB Safely Remove 2017-07-29 08:03 - 2017-07-29 08:03 - 000000000 ____D C:\ProgramData\USBSRService 2017-07-29 08:03 - 2017-07-29 08:03 - 000000000 ____D C:\Program Files (x86)\USB Safely Remove 2017-07-29 06:28 - 2017-08-04 07:43 - 000003656 _____ C:\WINDOWS\System32\Tasks\CreateExplorerShellUnelevatedTask 2017-07-29 06:24 - 2017-08-04 07:32 - 000000000 ____D C:\Users\jean-\AppData\Roaming\UsbFix 2017-07-29 06:24 - 2017-07-29 06:24 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Modules 2017-07-29 06:19 - 2017-07-29 06:19 - 000002409 _____ C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-07-29 06:14 - 2017-08-02 10:10 - 000000000 ____D C:\Program Files (x86)\Avanquest update 2017-07-29 06:14 - 2017-07-29 06:14 - 000000000 ____D C:\ProgramData\Avanquest 2017-07-29 06:11 - 2017-07-29 06:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zemana AntiLogger 2017-07-29 06:11 - 2017-07-29 06:11 - 000000000 ____D C:\ProgramData\BVRP Software 2017-07-29 06:11 - 2017-03-22 12:44 - 000161408 _____ (Zemana Ltd.) C:\WINDOWS\system32\Drivers\KeyCrypt64.sys 2017-07-28 15:01 - 2017-07-28 15:01 - 000528896 _____ C:\WINDOWS\c69fd46f34b502ccef5b6a80d3c08909.exe 2017-07-28 15:01 - 2017-07-28 15:01 - 000051618 _____ C:\WINDOWS\uninstaller.dat 2017-05-20 00:39 - 2017-05-20 00:39 - 000087904 _____ (Microsoft Corporation) C:\WINDOWS\system32\UNPUXWorker.exe 2017-05-18 22:17 - 2017-05-18 22:17 - 000131984 _____ (Samsung Electronics Co., Ltd.) C:\WINDOWS\system32\Drivers\ssudbus.sys ==================== Trois mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-08-04 11:48 - 2016-08-31 15:57 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2017-08-04 11:30 - 2016-08-28 12:36 - 002708620 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-08-04 11:30 - 2016-07-17 00:40 - 001142260 _____ C:\WINDOWS\system32\perfh00C.dat 2017-08-04 11:30 - 2016-07-17 00:40 - 000280116 _____ C:\WINDOWS\system32\perfc00C.dat 2017-08-04 11:19 - 2016-07-16 08:04 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2017-08-04 11:18 - 2016-08-31 16:16 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-08-04 10:48 - 2016-08-31 16:04 - 000000000 ____D C:\Users\jean- 2017-08-04 10:37 - 2016-09-03 09:08 - 000000000 ____D C:\Users\jean-\AppData\Local\CrashDumps 2017-08-04 09:50 - 2016-08-29 06:52 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2017-08-04 09:49 - 2016-09-02 16:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer 2017-08-04 09:49 - 2016-08-31 12:54 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Mozilla 2017-08-04 09:49 - 2016-08-28 13:47 - 000000000 ____D C:\Users\jean-\AppData\Local\Mozilla 2017-08-04 08:42 - 2016-09-06 16:18 - 000004174 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{3EF053DA-9088-495B-9E19-1A7664ABB844} 2017-08-04 08:24 - 2016-09-06 20:58 - 000000000 ____D C:\Users\jean-\AppData\Roaming\TeraCopy 2017-08-04 07:55 - 2016-07-16 13:47 - 000000000 ____D C:\WINDOWS\AppReadiness 2017-08-04 07:33 - 2016-08-28 12:50 - 000000000 ___RD C:\Users\jean-\OneDrive 2017-08-04 07:20 - 2016-07-16 13:36 - 000000000 ____D C:\WINDOWS\CbsTemp 2017-08-04 04:17 - 2016-07-16 13:47 - 000000000 ___HD C:\Program Files\WindowsApps 2017-08-04 04:14 - 2016-08-28 12:43 - 000000000 ____D C:\Users\jean-\AppData\Local\Packages 2017-08-03 19:21 - 2016-08-31 15:57 - 000225464 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2017-08-03 19:09 - 2016-09-07 13:09 - 000000000 ____D C:\ProgramData\IObit 2017-08-03 19:06 - 2016-09-08 08:25 - 000000000 ____D C:\Users\jean-\AppData\Roaming\IObit 2017-08-03 19:06 - 2016-09-07 13:09 - 000000000 ____D C:\Program Files (x86)\IObit 2017-08-03 18:43 - 2016-09-09 07:08 - 000000000 ____D C:\Users\jean-\Desktop\others applications 2017-08-03 18:43 - 2016-09-07 13:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Protected Folder 2017-08-03 18:43 - 2016-09-07 12:53 - 000000000 ___RD C:\Users\jean-\Desktop\LFS Ultra Suite v5.6, lfsu100%sfpzs++sfce, part 6 & sfcec-barrow 2 à 4-widen apps, & tools for manage youcam 8 & photodirector 9 2017-08-03 18:43 - 2016-09-02 16:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Programmes de graphisme 2017-08-03 18:43 - 2016-09-02 15:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Condusiv Technologies 2017-08-03 18:17 - 2016-09-02 16:16 - 000000000 ____D C:\Program Files (x86)\Acer 2017-08-03 18:01 - 2016-07-16 13:45 - 000000000 ____D C:\WINDOWS\INF 2017-08-03 15:27 - 2016-08-31 16:00 - 000000000 ____D C:\ProgramData\Package Cache 2017-08-02 07:35 - 2016-09-09 16:13 - 000000000 ____D C:\Users\jean-\AppData\Local\Turbo View & Convert 2017-08-01 08:15 - 2016-09-09 16:27 - 000000000 ____D C:\Users\jean-\Desktop\cadeaux muscade moulue jessica jessica franprix temptations, franprix & syrtos (16 octobre) 2017-07-31 14:46 - 2016-07-16 13:47 - 000000000 ____D C:\WINDOWS\system32\appraiser 2017-07-31 14:40 - 2016-09-03 08:59 - 000000000 ____D C:\Program Files\Microsoft Silverlight 2017-07-31 14:40 - 2016-09-02 16:23 - 000000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2017-07-31 14:11 - 2016-08-31 13:06 - 135225752 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2017-07-31 14:00 - 2016-09-02 16:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2017-07-31 13:54 - 2016-09-07 01:54 - 002529856 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2017-07-31 13:49 - 2016-09-07 01:56 - 000000000 ____D C:\Users\MSSQL$ADK 2017-07-31 13:48 - 2016-09-07 01:46 - 000000000 ____D C:\Program Files\Microsoft SQL Server 2017-07-31 13:48 - 2016-09-07 01:39 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server 2017-07-31 10:36 - 2016-09-08 14:35 - 000000000 ____D C:\WINDOWS\Minidump 2017-07-31 08:14 - 2016-07-16 08:04 - 000000000 ____D C:\Program Files\PowerMaster 2017-07-30 12:14 - 2016-09-06 23:43 - 000000000 ____D C:\Users\jean-\AppData\Roaming\CyberLink 2017-07-30 12:14 - 2016-09-06 23:42 - 000000000 ____D C:\Users\jean-\AppData\Local\CyberLink 2017-07-30 10:40 - 2016-08-28 16:25 - 000000000 ____D C:\Users\jean-\Downloads\UsbFix 2017-07-30 09:39 - 2016-08-28 19:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Pro 2017-07-30 09:39 - 2016-08-28 16:54 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\KillCopy 2017-07-30 09:39 - 2016-08-28 14:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rebit 5 2017-07-30 09:38 - 2016-08-31 16:56 - 000000000 ___DC C:\WINDOWS\Panther 2017-07-29 16:49 - 2016-09-07 13:20 - 000000000 ____D C:\Program Files (x86)\Wise 2017-07-29 16:17 - 2016-09-06 23:12 - 000000000 ____D C:\ProgramData\SUPPORTDIR 2017-07-29 16:07 - 2016-09-06 23:32 - 000000000 ____D C:\Program Files (x86)\NSIS Uninstall Information 2017-07-29 15:46 - 2016-09-06 23:12 - 000000000 ____D C:\ProgramData\install_clap 2017-07-29 13:11 - 2016-09-07 20:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller 2017-07-29 13:11 - 2016-09-07 20:38 - 000000000 ____D C:\Program Files\RogueKiller 2017-07-29 13:09 - 2016-07-16 13:47 - 000000000 ____D C:\WINDOWS\Cursors 2017-07-29 13:07 - 2016-07-16 13:43 - 046823424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imageres.dll 2017-07-29 13:07 - 2016-07-16 13:43 - 001752576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagesp1.dll 2017-07-29 13:07 - 2016-07-16 13:42 - 046823424 _____ (Microsoft Corporation) C:\WINDOWS\system32\imageres.dll 2017-07-29 13:07 - 2016-07-16 13:42 - 001752576 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagesp1.dll 2017-07-29 13:07 - 2016-07-16 13:42 - 000598016 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll 2017-07-29 13:07 - 2016-07-16 13:42 - 000558080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\zipfldr.dll 2017-07-29 13:06 - 2016-07-16 13:47 - 000000000 __SHD C:\Program Files\Windows Sidebar 2017-07-29 12:58 - 2016-09-07 20:38 - 000000000 ____D C:\ProgramData\RogueKiller 2017-07-29 11:17 - 2016-09-06 20:50 - 000000000 ____D C:\Program Files\TeraCopy 2017-07-29 10:40 - 2016-08-28 14:33 - 000000000 ____D C:\Users\Public\Documents\Wondershare 2017-07-29 10:38 - 2016-08-28 19:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare 2017-07-29 10:36 - 2016-08-28 19:46 - 000000000 ____D C:\Program Files (x86)\Wondershare 2017-07-29 10:34 - 2016-09-07 13:26 - 000000000 ____D C:\Users\jean-\AppData\Local\iSkysoft 2017-07-29 10:34 - 2016-09-07 13:24 - 000000000 ____D C:\ProgramData\iSkysoft iMedia Converter Deluxe 2017-07-29 10:21 - 2016-09-07 13:22 - 000000000 ____D C:\Users\Public\Documents\iSkysoft 2017-07-29 10:18 - 2016-08-28 19:43 - 000000000 ____D C:\ProgramData\Wondershare 2017-07-29 10:09 - 2016-09-07 13:24 - 000000000 ____D C:\ProgramData\iSkysoft 2017-07-29 10:05 - 2016-09-07 13:24 - 000000000 ____D C:\Program Files (x86)\iSkysoft 2017-07-29 08:58 - 2016-09-07 14:41 - 000000000 ____D C:\Program Files (x86)\Zemana AntiLogger 2017-07-29 08:58 - 2016-09-07 14:41 - 000000000 ____D C:\Program Files (x86)\KeyCryptSDK 2017-07-29 08:41 - 2016-09-04 15:23 - 000000000 ____D C:\Users\jean-\AppData\Roaming\eufsc 2017-07-29 08:25 - 2016-09-03 15:37 - 000003554 _____ C:\WINDOWS\System32\Tasks\SoftwareUpdate Pro 2017-07-29 07:52 - 2016-07-16 13:47 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2017-07-29 07:52 - 2015-10-30 09:24 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2017-07-29 06:04 - 2016-09-07 13:37 - 000000000 ____D C:\Program Files\Common Files\logishrd 2017-07-28 22:11 - 2016-08-28 17:04 - 000565416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2017-07-28 21:51 - 2016-09-06 16:06 - 000000000 ____D C:\WINDOWS\System32\Tasks\NCH Software ==================== Fichiers à la racine de certains dossiers ======= 2017-07-29 12:05 - 2017-07-29 12:05 - 000140800 _____ () C:\Users\jean-\AppData\Local\installer.dat 2017-07-29 12:05 - 2017-07-29 12:05 - 001847296 _____ () C:\Users\jean-\AppData\Local\po.db Fichiers à déplacer ou supprimer: ==================== C:\Users\jean-\ZHPDiag3.exe Certains fichiers dans TEMP: ==================== 2017-08-04 09:52 - 2017-08-02 07:35 - 000753144 _____ (Bandisoft) C:\Users\jean-\AppData\Local\Temp\Bandizip~xinst~temp~.exe ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement ==================== BCD ================================ Gestionnaire de d‚marrage du microprogramme ------------------------------------------- identificateur {fwbootmgr} displayorder {bootmgr} {7901a9d0-6d56-11e6-85ee-f83324fa3d7b} {7901a9b7-6d56-11e6-85ee-f83324fa3d7b} {7901a9bc-6d56-11e6-85ee-f83324fa3d7b} {7901a9cd-6d56-11e6-85ee-f83324fa3d7b} {7901a9ce-6d56-11e6-85ee-f83324fa3d7b} {7901a9bd-6d56-11e6-85ee-f83324fa3d7b} {7901a9be-6d56-11e6-85ee-f83324fa3d7b} {c4f7f609-78f1-11e7-b917-806e6f6e6963} {c4f7f60a-78f1-11e7-b917-806e6f6e6963} {7901a9d1-6d56-11e6-85ee-f83324fa3d7b} {7901a9d3-6d56-11e6-85ee-f83324fa3d7b} {7901a9cf-6d56-11e6-85ee-f83324fa3d7b} {7901a9b9-6d56-11e6-85ee-f83324fa3d7b} timeout 2 Gestionnaire de d‚marrage Windows --------------------------------- identificateur {bootmgr} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\bootmgfw.efi description Windows Boot Manager locale fr-FR inherit {globalsettings} default {current} resumeobject {7901a9c9-6d56-11e6-85ee-f83324fa3d7b} displayorder {current} {b17757e5-b185-4a19-8fa5-98850aca85b6} {051e00a4-7609-42f5-a041-3792cd5917ad} toolsdisplayorder {memdiag} timeout 3 Application logicielle (101fffff) -------------------------------- identificateur {7901a9b7-6d56-11e6-85ee-f83324fa3d7b} description USB Floppy/CD Application logicielle (101fffff) -------------------------------- identificateur {7901a9b9-6d56-11e6-85ee-f83324fa3d7b} description CD/DVD Drive Application logicielle (101fffff) -------------------------------- identificateur {7901a9bc-6d56-11e6-85ee-f83324fa3d7b} path \EFI\ubuntu\shimx64.efi description USB Hard Drive Application logicielle (101fffff) -------------------------------- identificateur {7901a9bd-6d56-11e6-85ee-f83324fa3d7b} device partition=E: description UEFI: TOSHIBA TransMemory 1.00 Application logicielle (101fffff) -------------------------------- identificateur {7901a9be-6d56-11e6-85ee-f83324fa3d7b} description UEFI: KingstonDataTraveler 2.01.00 Application logicielle (101fffff) -------------------------------- identificateur {7901a9cd-6d56-11e6-85ee-f83324fa3d7b} device partition=\Device\HarddiskVolume6 description UEFI: ZALMAN ZM-VE350 1060 Application logicielle (101fffff) -------------------------------- identificateur {7901a9ce-6d56-11e6-85ee-f83324fa3d7b} description UEFI: SanDisk Application logicielle (101fffff) -------------------------------- identificateur {7901a9cf-6d56-11e6-85ee-f83324fa3d7b} description Atheros Boot Agent Application logicielle (101fffff) -------------------------------- identificateur {7901a9d0-6d56-11e6-85ee-f83324fa3d7b} path \EFI\ubuntu\shimx64.efi description ubuntu Application logicielle (101fffff) -------------------------------- identificateur {7901a9d1-6d56-11e6-85ee-f83324fa3d7b} description USB Floppy/CD Application logicielle (101fffff) -------------------------------- identificateur {7901a9d3-6d56-11e6-85ee-f83324fa3d7b} description Hard Drive Application logicielle (101fffff) -------------------------------- identificateur {c4f7f609-78f1-11e7-b917-806e6f6e6963} device partition=\Device\HarddiskVolume6 description UEFI: ZALMAN ZM-VE350 1060 Application logicielle (101fffff) -------------------------------- identificateur {c4f7f60a-78f1-11e7-b917-806e6f6e6963} description UEFI: SanDisk Chargeur de d‚marrage Windows ----------------------------- identificateur {051e00a4-7609-42f5-a041-3792cd5917ad} device ramdisk=[\Device\HarddiskVolume4]\sources\boot.wim,{e3824afe-2482-4392-8329-ef406fb9ce98} description Enter into AOMEI OneKey Recovery osdevice ramdisk=[\Device\HarddiskVolume4]\sources\boot.wim,{e3824afe-2482-4392-8329-ef406fb9ce98} systemroot \Windows detecthal Yes winpe Yes Chargeur de d‚marrage Windows ----------------------------- identificateur {7901a9c2-6d56-11e6-85ee-f83324fa3d7b} device ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{7901a9c3-6d56-11e6-85ee-f83324fa3d7b} path \windows\system32\winload.efi description Windows Recovery Environment locale en-us inherit {bootloadersettings} displaymessage Recovery displaymessageoverride Recovery osdevice ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{7901a9c3-6d56-11e6-85ee-f83324fa3d7b} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Chargeur de d‚marrage Windows ----------------------------- identificateur {7901a9c6-6d56-11e6-85ee-f83324fa3d7b} device ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{7901a9c7-6d56-11e6-85ee-f83324fa3d7b} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery displaymessageoverride Recovery osdevice ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{7901a9c7-6d56-11e6-85ee-f83324fa3d7b} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Chargeur de d‚marrage Windows ----------------------------- identificateur {current} device partition=C: path \WINDOWS\system32\winload.efi description Windows 10 locale fr-FR inherit {bootloadersettings} recoverysequence {7901a9cb-6d56-11e6-85ee-f83324fa3d7b} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {7901a9c9-6d56-11e6-85ee-f83324fa3d7b} nx OptIn bootmenupolicy Standard Chargeur de d‚marrage Windows ----------------------------- identificateur {7901a9cb-6d56-11e6-85ee-f83324fa3d7b} device ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{7901a9cc-6d56-11e6-85ee-f83324fa3d7b} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery displaymessageoverride Recovery osdevice ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{7901a9cc-6d56-11e6-85ee-f83324fa3d7b} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Chargeur de d‚marrage Windows ----------------------------- identificateur {81618445-6d22-4807-8eb3-63a1e2c171ce} device ramdisk=[unknown]\Aomei\AomeiBoot.wim,{0ada04be-df6b-452a-942f-43ecbd31c8ac} description Aomei PE osdevice ramdisk=[unknown]\Aomei\AomeiBoot.wim,{0ada04be-df6b-452a-942f-43ecbd31c8ac} systemroot \Windows detecthal Yes winpe Yes Reprendre … partir de la mise en veille prolong‚e ------------------------------------------------- identificateur {7901a9c4-6d56-11e6-85ee-f83324fa3d7b} device unknown path \Windows\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {7901a9c6-6d56-11e6-85ee-f83324fa3d7b} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice unknown filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Reprendre … partir de la mise en veille prolong‚e ------------------------------------------------- identificateur {7901a9c9-6d56-11e6-85ee-f83324fa3d7b} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {7901a9cb-6d56-11e6-85ee-f83324fa3d7b} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Testeur de m‚moire Windows -------------------------- identificateur {memdiag} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\memtest.efi description Diagnostics m‚moire Windows locale fr-FR inherit {globalsettings} badmemoryaccess Yes ParamŠtres EMS -------------- identificateur {emssettings} bootems No ParamŠtres du d‚bogueur ----------------------- identificateur {dbgsettings} debugtype Serial debugport 1 baudrate 115200 Erreurs de m‚moire RAM ---------------------- identificateur {badmemory} ParamŠtres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} ParamŠtres du chargeur de d‚marrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} ParamŠtres de l'hyperviseur ------------------- identificateur {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 ParamŠtres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} Options de p‚riph‚rique ----------------------- identificateur {0ada04be-df6b-452a-942f-43ecbd31c8ac} ramdisksdidevice unknown ramdisksdipath \Aomei\AomeiBoot.sdi Options de p‚riph‚rique ----------------------- identificateur {7901a9c3-6d56-11e6-85ee-f83324fa3d7b} description Windows Recovery ramdisksdidevice unknown ramdisksdipath \Recovery\WindowsRE\boot.sdi Options de p‚riph‚rique ----------------------- identificateur {7901a9c7-6d56-11e6-85ee-f83324fa3d7b} description Windows Recovery ramdisksdidevice unknown ramdisksdipath \Recovery\WindowsRE\boot.sdi Options de p‚riph‚rique ----------------------- identificateur {7901a9c8-6d56-11e6-85ee-f83324fa3d7b} description Windows Setup ramdisksdidevice unknown ramdisksdipath \$WINDOWS.~BT\Sources\SafeOS\boot.sdi Options de p‚riph‚rique ----------------------- identificateur {7901a9cc-6d56-11e6-85ee-f83324fa3d7b} description Windows Recovery ramdisksdidevice unknown ramdisksdipath \Recovery\WindowsRE\boot.sdi Options de p‚riph‚rique ----------------------- identificateur {e3824afe-2482-4392-8329-ef406fb9ce98} ramdisksdidevice partition=\Device\HarddiskVolume4 ramdisksdipath \boot\boot.sdi LastRegBack: 2017-07-28 22:26 ==================== Fin de FRST.txt ============================