Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 02-11-2017 Exécuté par Gaetan (administrateur) sur GAETAN-PC (05-11-2017 17:32:52) Exécuté depuis C:\Users\Gaetan\Desktop Profils chargés: Gaetan & Mcx1-GAETAN-PC & Mcx2-GAETAN-PC & Mcx3-GAETAN-PC & DefaultAppPool (Profils disponibles: Gaetan & Mcx1-GAETAN-PC & Mcx2-GAETAN-PC & Mcx3-GAETAN-PC & DefaultAppPool) Platform: Windows 10 Home Version 1607 14393.1770 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: Chrome) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Microsoft Corporation) C:\Windows\System32\mqsvc.exe (pdfforge GmbH) C:\Program Files\PDF Architect 5\creator-ws.exe (© pdfforge GmbH.) C:\ProgramData\pdfforge\PDF Architect 5 Manager\PDF Architect 5\Architect Manager.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe (Vodafone) C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\VmbService.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (AVAST Software s.r.o.) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATIIXE.EXE () C:\Program Files (x86)\Packard Bell\Hotkey Utility\HotkeyUtility.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\SkypeHost.exe (Microsoft Corporation) C:\Windows\System32\InstallAgent.exe (Microsoft Corporation) C:\Windows\System32\InstallAgentUserBroker.exe (Google Inc.) C:\Users\Gaetan\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Gaetan\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Gaetan\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Gaetan\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Gaetan\AppData\Local\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.14393.1561_none_7ef6e89821f9a6be\TiWorker.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe (Google Inc.) C:\Users\Gaetan\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Gaetan\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Gaetan\AppData\Local\Google\Chrome\Application\chrome.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13885696 2015-06-24] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2754704 2015-06-03] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [239856 2017-09-19] (AVAST Software) HKLM-x32\...\Run: [Hotkey Utility] => C:\Program Files (x86)\Packard Bell\Hotkey Utility\HotkeyUtility.exe [627304 2011-08-11] () HKLM-x32\...\Run: [MobileBroadband] => C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\MobileBroadband.exe [272384 2010-09-27] (Vodafone) HKLM-x32\...\Run: [APSDaemon] => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-03-15] (Oracle Corporation) HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION HKU\S-1-5-21-3110527880-2508061373-66296585-1000\...\Run: [Google Update] => C:\Users\Gaetan\AppData\Local\Google\Update\1.3.33.5\GoogleUpdateCore.exe [601168 2017-05-08] (Google Inc.) HKU\S-1-5-21-3110527880-2508061373-66296585-1000\...\Run: [Facebook Update] => C:\Users\Gaetan\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-01-15] (Facebook Inc.) HKU\S-1-5-21-3110527880-2508061373-66296585-1000\...\Run: [iCloudPhotos] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe HKU\S-1-5-21-3110527880-2508061373-66296585-1000\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIIXE.EXE [283232 2012-02-28] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-3110527880-2508061373-66296585-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [10021040 2017-10-18] (Piriform Ltd) HKU\S-1-5-21-3110527880-2508061373-66296585-1000\...\RunOnce: [Uninstall C:\Users\Gaetan\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Gaetan\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\amd64" HKU\S-1-5-21-3110527880-2508061373-66296585-1000\...\MountPoints2: {a29524eb-a6bb-11e7-9d12-c89cdcd3967b} - "F:\AutoRun.exe" HKU\S-1-5-21-3110527880-2508061373-66296585-1003\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2016-07-16] (Microsoft Corporation) HKU\S-1-5-21-3110527880-2508061373-66296585-1003\...\Winlogon: [Shell] C:\Windows\eHome\McrMgr.exe <==== ATTENTION HKU\S-1-5-21-3110527880-2508061373-66296585-1003\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Packard Bell.scr [456224 2010-07-29] () HKU\S-1-5-21-3110527880-2508061373-66296585-1006\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2016-07-16] (Microsoft Corporation) HKU\S-1-5-21-3110527880-2508061373-66296585-1006\...\Winlogon: [Shell] C:\Windows\eHome\McrMgr.exe <==== ATTENTION HKU\S-1-5-21-3110527880-2508061373-66296585-1006\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Packard Bell.scr [456224 2010-07-29] () HKU\S-1-5-21-3110527880-2508061373-66296585-1007\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2016-07-16] (Microsoft Corporation) HKU\S-1-5-21-3110527880-2508061373-66296585-1007\...\Winlogon: [Shell] C:\Windows\eHome\McrMgr.exe <==== ATTENTION HKU\S-1-5-21-3110527880-2508061373-66296585-1007\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Packard Bell.scr [456224 2010-07-29] () HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2016-07-16] (Microsoft Corporation) HKU\S-1-5-18\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIIXE.EXE [283232 2012-02-28] (SEIKO EPSON CORPORATION) GroupPolicy: Restriction - Chrome <==== ATTENTION CHR HKU\S-1-5-21-3110527880-2508061373-66296585-1000\SOFTWARE\Policies\Google: Restriction <==== ATTENTION ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt Tcpip\Parameters: [DhcpNameServer] 89.2.0.1 89.2.0.2 Tcpip\..\Interfaces\{0bd9bff1-cd4e-4aa5-98a5-1dd844e4c051}: [DhcpNameServer] 89.2.0.1 89.2.0.2 Tcpip\..\Interfaces\{10996846-e67b-4a56-96bf-f55b54e373e1}: [DhcpNameServer] 89.2.0.1 89.2.0.2 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3110527880-2508061373-66296585-1000 -> {67B7889C-5615-4FA2-B563-B835C56E5C74} URL = hxxps://fr.search.yahoo.com/search?p={searchTerms}&fr=yset_ie_syc_oracle&type=orcl_default BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2017-09-12] (Microsoft Corporation) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2017-08-24] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\ssv.dll [2017-04-24] (Oracle Corporation) BHO-x32: PDF Architect 5 Helper -> {AEA429F3-D2D4-4BD7-A03E-5357DA017733} -> C:\Program Files (x86)\PDF Architect 5\creator-ie-helper.dll [2017-02-10] (pdfforge GmbH) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\jp2ssv.dll [2017-04-24] (Oracle Corporation) Toolbar: HKLM-x32 - PDF Architect 5 Toolbar - {84F23192-A475-4038-B5C0-8584777F2DF4} - C:\Program Files (x86)\PDF Architect 5\creator-ie-plugin.dll [2017-02-10] (pdfforge GmbH) Toolbar: HKU\S-1-5-21-3110527880-2508061373-66296585-1000 -> Pas de nom - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Pas de fichier Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2017-08-15] (Microsoft Corporation) FireFox: ======== FF Plugin: @java.com/DTPlugin,version=10.5.0 -> C:\Windows\system32\npDeployJava1.dll [2012-08-16] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation) FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [Pas de fichier] FF Plugin-x32: @esn/esnlaunch,version=2.1.4 -> C:\Program Files (x86)\Battlelog Web Plugins\2.1.4\npesnlaunch.dll [Pas de fichier] FF Plugin-x32: @java.com/DTPlugin,version=11.131.2 -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\dtplugin\npDeployJava1.dll [2017-04-24] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.131.2 -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\plugin2\npjp2.dll [2017-04-24] (Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-07-19] (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-13] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-13] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-12-29] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-12-29] (NVIDIA Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.0.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\2\NP_wtapp.dll [2012-07-16] () FF Plugin-x32: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll [Pas de fichier] FF Plugin-x32: PDF Architect 5 -> C:\Program Files (x86)\PDF Architect 5\np-previewer.dll [2017-02-10] (pdfforge GmbH) FF Plugin HKU\S-1-5-21-3110527880-2508061373-66296585-1000: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Gaetan\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [Pas de fichier] FF Plugin HKU\S-1-5-21-3110527880-2508061373-66296585-1000: @tools.google.com/Google Update;version=3 -> C:\Users\Gaetan\AppData\Local\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-05-08] (Google Inc.) FF Plugin HKU\S-1-5-21-3110527880-2508061373-66296585-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Gaetan\AppData\Local\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-05-08] (Google Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2016-07-19] (Microsoft Corporation) Chrome: ======= CHR DefaultProfile: Default CHR HomePage: Default -> hxxp://www.search.ask.com/?gct=hp CHR StartupUrls: Default -> "hxxp://www.google.fr/" CHR DefaultSearchURL: Default -> hxxp://www.search.ask.com/web?q={searchTerms} CHR DefaultSearchKeyword: Default -> ask.com CHR DefaultSuggestURL: Default -> hxxp://ssmsp.ask.com/query?sstype=prefix&li=ff&q={searchTerms} CHR Profile: C:\Users\Gaetan\AppData\Local\Google\Chrome\User Data\Default [2017-11-05] CHR Extension: (YouTube) - C:\Users\Gaetan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-05] CHR Extension: (Adblock Plus) - C:\Users\Gaetan\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2017-10-30] CHR Extension: (Recherche Google) - C:\Users\Gaetan\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-07] CHR Extension: (Crash Bandicoot Online) - C:\Users\Gaetan\AppData\Local\Google\Chrome\User Data\Default\Extensions\copoaaffjmndhhefnhlaehnhjkdjaecm [2013-01-30] CHR Extension: (AdBlock) - C:\Users\Gaetan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-10-31] CHR Extension: (Avast Online Security) - C:\Users\Gaetan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2017-10-31] CHR Extension: (American Racing) - C:\Users\Gaetan\AppData\Local\Google\Chrome\User Data\Default\Extensions\klfneahoibjkdlonilmnkkncopeiomoc [2013-01-30] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Gaetan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-28] CHR Extension: (Gmail) - C:\Users\Gaetan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-09] CHR Extension: (Chrome Media Router) - C:\Users\Gaetan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-10-31] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-05-25] CHR HKLM-x32\...\Chrome\Extension: [nagnmfhgkjkplbhplkbicmpkfopmnefp] - hxxps://clients2.google.com/service/update2/crx StartMenuInternet: Google Chrome - C:\Users\Gaetan\AppData\Local\Google\Chrome\Application\chrome.exe ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2257016 2017-08-23] (Adobe Systems, Incorporated) S2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-09-22] (Apple Inc.) R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7452288 2017-09-19] (AVAST Software s.r.o.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [275208 2017-09-19] (AVAST Software) R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [135824 2011-12-12] (Seiko Epson Corporation) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-06-03] (NVIDIA Corporation) R2 Intel(R) PROSet Monitoring Service; C:\WINDOWS\system32\IProsetMonitor.exe [505856 2017-08-21] (Intel Corporation) [Fichier non signé] R2 Live Updater Service; C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [244624 2011-04-22] (Acer Incorporated) R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [458176 2016-12-29] (NVIDIA Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1893008 2015-06-03] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [23007376 2015-06-03] (NVIDIA Corporation) S3 PDF Architect 5; C:\Program Files\PDF Architect 5\ws.exe [2706824 2017-02-10] (pdfforge GmbH) S3 PDF Architect 5 CrashHandler; C:\Program Files\PDF Architect 5\crash-handler-ws.exe [1048976 2017-02-10] (pdfforge GmbH) R2 PDF Architect 5 Creator; C:\Program Files\PDF Architect 5\creator-ws.exe [856976 2017-02-10] (pdfforge GmbH) R2 PDF Architect 5 Manager; C:\ProgramData\pdfforge\PDF Architect 5 Manager\PDF Architect 5\Architect Manager.exe [985904 2017-02-28] (© pdfforge GmbH.) R2 VmbService; C:\Program Files (x86)\Vodafone\Vodafone Mobile Broadband\Bin\VmbService.exe [8704 2010-09-27] (Vodafone) [Fichier non signé] S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347320 2017-04-28] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2017-08-08] (Microsoft Corporation) S3 WsDrvInst; C:\Program Files (x86)\Wondershare\SafeEraser\DriverInstall.exe [X] ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R1 aswbidsdriver; C:\WINDOWS\system32\drivers\aswbidsdrivera.sys [321032 2017-11-05] (AVAST Software s.r.o.) R0 aswbidsh; C:\WINDOWS\system32\drivers\aswbidsha.sys [198976 2017-11-05] (AVAST Software s.r.o.) R0 aswblog; C:\WINDOWS\system32\drivers\aswbloga.sys [343288 2017-11-05] (AVAST Software s.r.o.) R0 aswbuniv; C:\WINDOWS\system32\drivers\aswbuniva.sys [57736 2017-11-05] (AVAST Software s.r.o.) S3 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [47008 2017-11-05] (AVAST Software) R1 aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [41832 2017-09-19] (AVAST Software) R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [147776 2017-11-05] (AVAST Software) R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [110376 2017-11-05] (AVAST Software) R0 aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys [84416 2017-11-05] (AVAST Software) R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [1029872 2017-11-05] (AVAST Software) R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [587168 2017-11-05] (AVAST Software) R2 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [201352 2017-11-05] (AVAST Software) R0 aswVmm; C:\WINDOWS\system32\drivers\aswVmm.sys [363440 2017-11-05] (AVAST Software) R3 e1cexpress; C:\WINDOWS\system32\DRIVERS\e1c64x64.sys [468752 2014-09-26] (Intel Corporation) U1 lpsport; C:\Windows\System32\Drivers\lpsport.sys [61304 2017-09-19] () S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] () R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvaewu.inf_amd64_8baa9d083edacf87\nvlddmkm.sys [14190520 2017-01-17] (NVIDIA Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-06-03] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [46768 2015-05-19] (NVIDIA Corporation) S3 RtlWlanu; C:\WINDOWS\System32\drivers\rtwlanu.sys [5195776 2016-07-16] (Realtek Semiconductor Corporation ) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation) S3 XSplit_Dummy; C:\WINDOWS\system32\drivers\xspltspk.sys [26200 2016-06-15] (SplitmediaLabs Limited) U3 idsvc; pas de ImagePath S3 LVPr2M64; system32\DRIVERS\LVPr2M64.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-11-05 17:32 - 2017-11-05 17:33 - 000023756 _____ C:\Users\Gaetan\Desktop\FRST.txt 2017-11-05 17:32 - 2017-11-05 17:32 - 002403328 _____ (Farbar) C:\Users\Gaetan\Desktop\FRST64.exe 2017-11-05 17:32 - 2017-11-05 17:32 - 000000000 ____D C:\FRST 2017-11-05 17:31 - 2017-11-05 17:31 - 002403328 _____ (Farbar) C:\Users\Gaetan\Downloads\FRST64.exe 2017-11-05 17:31 - 2017-11-05 17:31 - 000061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.150989946703102 2017-11-05 17:31 - 2017-11-05 17:31 - 000000000 ____D C:\ProgramData\SWCUTemp 2017-11-05 17:30 - 2017-11-05 17:30 - 000401488 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2017-11-05 17:17 - 2017-11-05 17:17 - 004963432 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2017-11-05 17:15 - 2017-11-05 17:15 - 000467072 _____ (Bleeping Computer, LLC) C:\Users\Gaetan\Downloads\sc-cleaner.exe 2017-11-05 17:15 - 2017-11-05 17:15 - 000001842 _____ C:\Users\Gaetan\Desktop\sc-cleaner.txt 2017-11-05 17:14 - 2017-11-05 17:14 - 002953520 _____ (AVAST Software) C:\Users\Gaetan\Downloads\avast-browser-cleanup.exe 2017-11-05 17:09 - 2017-11-05 17:10 - 000000764 _____ C:\DelFix.txt 2017-11-05 16:54 - 2017-11-05 16:57 - 000000140 _____ C:\WINDOWS\Reimage.ini 2017-11-05 16:53 - 2017-11-05 16:53 - 000605424 _____ (Reimage) C:\Users\Gaetan\Downloads\ReimageRepair.exe 2017-11-05 16:49 - 2017-11-05 16:49 - 000000000 ____D C:\Users\Gaetan\AppData\Local\ZHP 2017-11-05 16:38 - 2017-11-05 16:38 - 000003938 _____ C:\WINDOWS\System32\Tasks\CCleaner Update 2017-11-05 16:38 - 2017-11-05 16:38 - 000002860 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2017-11-05 16:38 - 2017-11-05 16:38 - 000000000 ____D C:\Program Files\CCleaner 2017-11-05 16:35 - 2017-11-05 16:37 - 010427120 _____ (Piriform Ltd) C:\Users\Gaetan\Downloads\ccleaner_5-36-6278_fr_14492.exe 2017-10-31 22:06 - 2017-10-31 22:06 - 126925120 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe 2017-10-31 21:57 - 2017-09-18 04:27 - 000218976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll 2017-10-31 21:57 - 2017-09-18 04:09 - 002213760 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2017-10-31 21:57 - 2017-09-18 04:09 - 000133984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys 2017-10-31 21:57 - 2017-09-18 04:08 - 000998920 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll 2017-10-31 21:57 - 2017-09-18 04:05 - 001177688 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2017-10-31 21:57 - 2017-09-18 04:05 - 000497424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2017-10-31 21:57 - 2017-09-18 04:04 - 001706488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2017-10-31 21:57 - 2017-09-18 04:04 - 000918304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll 2017-10-31 21:57 - 2017-09-18 04:03 - 000791272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2017-10-31 21:57 - 2017-09-18 04:02 - 007213464 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2017-10-31 21:57 - 2017-09-18 04:02 - 001860288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2017-10-31 21:57 - 2017-09-18 04:00 - 001072248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll 2017-10-31 21:57 - 2017-09-18 03:59 - 022220864 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2017-10-31 21:57 - 2017-09-18 03:59 - 008173672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2017-10-31 21:57 - 2017-09-18 03:59 - 004260072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2017-10-31 21:57 - 2017-09-18 03:59 - 001983408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2017-10-31 21:57 - 2017-09-18 03:59 - 001702392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll 2017-10-31 21:57 - 2017-09-18 03:59 - 000341344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2017-10-31 21:57 - 2017-09-18 03:55 - 005722320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2017-10-31 21:57 - 2017-09-18 03:55 - 001431240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2017-10-31 21:57 - 2017-09-18 03:54 - 001980768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2017-10-31 21:57 - 2017-09-18 03:52 - 020967840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2017-10-31 21:57 - 2017-09-18 03:52 - 006672680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2017-10-31 21:57 - 2017-09-18 03:52 - 004023560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2017-10-31 21:57 - 2017-09-18 03:52 - 001845512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2017-10-31 21:57 - 2017-09-18 03:52 - 001360464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll 2017-10-31 21:57 - 2017-09-18 03:52 - 001277856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll 2017-10-31 21:57 - 2017-09-18 03:52 - 000981888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll 2017-10-31 21:57 - 2017-09-18 03:51 - 000178016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\basecsp.dll 2017-10-31 21:57 - 2017-09-18 03:49 - 001435896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2017-10-31 21:57 - 2017-09-18 03:49 - 001412128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2017-10-31 21:57 - 2017-09-18 03:49 - 001260784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2017-10-31 21:57 - 2017-09-18 03:48 - 000117792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll 2017-10-31 21:57 - 2017-09-18 03:34 - 000095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll 2017-10-31 21:57 - 2017-09-18 03:33 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll 2017-10-31 21:57 - 2017-09-18 03:33 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll 2017-10-31 21:57 - 2017-09-18 03:32 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys 2017-10-31 21:57 - 2017-09-18 03:31 - 006288384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2017-10-31 21:57 - 2017-09-18 03:31 - 000519168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll 2017-10-31 21:57 - 2017-09-18 03:31 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2017-10-31 21:57 - 2017-09-18 03:31 - 000156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll 2017-10-31 21:57 - 2017-09-18 03:31 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2017-10-31 21:57 - 2017-09-18 03:30 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scksp.dll 2017-10-31 21:57 - 2017-09-18 03:30 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll 2017-10-31 21:57 - 2017-09-18 03:29 - 000187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll 2017-10-31 21:57 - 2017-09-18 03:29 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll 2017-10-31 21:57 - 2017-09-18 03:28 - 000406016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll 2017-10-31 21:57 - 2017-09-18 03:28 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncSettings.dll 2017-10-31 21:57 - 2017-09-18 03:27 - 004615168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2017-10-31 21:57 - 2017-09-18 03:27 - 000719872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys 2017-10-31 21:57 - 2017-09-18 03:27 - 000590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\efswrt.dll 2017-10-31 21:57 - 2017-09-18 03:27 - 000349184 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2017-10-31 21:57 - 2017-09-18 03:27 - 000295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll 2017-10-31 21:57 - 2017-09-18 03:26 - 000538112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPTpm12.dll 2017-10-31 21:57 - 2017-09-18 03:26 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efswrt.dll 2017-10-31 21:57 - 2017-09-18 03:26 - 000384000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll 2017-10-31 21:57 - 2017-09-18 03:26 - 000367104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll 2017-10-31 21:57 - 2017-09-18 03:26 - 000298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2017-10-31 21:57 - 2017-09-18 03:26 - 000284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll 2017-10-31 21:57 - 2017-09-18 03:26 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2017-10-31 21:57 - 2017-09-18 03:26 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll 2017-10-31 21:57 - 2017-09-18 03:25 - 002333184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll 2017-10-31 21:57 - 2017-09-18 03:25 - 000461824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll 2017-10-31 21:57 - 2017-09-18 03:24 - 007626240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2017-10-31 21:57 - 2017-09-18 03:24 - 000819200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll 2017-10-31 21:57 - 2017-09-18 03:24 - 000755200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2017-10-31 21:57 - 2017-09-18 03:24 - 000713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2017-10-31 21:57 - 2017-09-18 03:24 - 000409600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys 2017-10-31 21:57 - 2017-09-18 03:23 - 000857600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll 2017-10-31 21:57 - 2017-09-18 03:23 - 000816640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NaturalLanguage6.dll 2017-10-31 21:57 - 2017-09-18 03:23 - 000636928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2017-10-31 21:57 - 2017-09-18 03:23 - 000297472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2017-10-31 21:57 - 2017-09-18 03:23 - 000287744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll 2017-10-31 21:57 - 2017-09-18 03:23 - 000238080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll 2017-10-31 21:57 - 2017-09-18 03:22 - 001323008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll 2017-10-31 21:57 - 2017-09-18 03:22 - 001137664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll 2017-10-31 21:57 - 2017-09-18 03:20 - 002641920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2017-10-31 21:57 - 2017-09-18 03:20 - 000343040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll 2017-10-31 21:57 - 2017-09-18 03:20 - 000284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll 2017-10-31 21:57 - 2017-09-18 03:19 - 002750976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll 2017-10-31 21:57 - 2017-09-18 03:19 - 000549376 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2017-10-31 21:57 - 2017-09-18 03:19 - 000303616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcbuilder.exe 2017-10-31 21:57 - 2017-09-18 03:19 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll 2017-10-31 21:57 - 2017-09-18 03:18 - 008077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2017-10-31 21:57 - 2017-09-18 03:18 - 007470592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2017-10-31 21:57 - 2017-09-18 03:18 - 001145344 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll 2017-10-31 21:57 - 2017-09-18 03:18 - 000330752 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll 2017-10-31 21:57 - 2017-09-18 03:17 - 003401216 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2017-10-31 21:57 - 2017-09-18 03:17 - 000641024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll 2017-10-31 21:57 - 2017-09-18 03:16 - 004596224 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe 2017-10-31 21:57 - 2017-09-18 03:16 - 003520512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe 2017-10-31 21:57 - 2017-09-18 03:15 - 002538496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2017-10-31 21:57 - 2017-09-18 03:15 - 002370048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2017-10-31 21:57 - 2017-09-18 03:14 - 006474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe 2017-10-31 21:57 - 2017-09-18 03:14 - 002997760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2017-10-31 21:57 - 2017-09-18 03:14 - 002740224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2017-10-31 21:57 - 2017-09-18 03:14 - 002682880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netshell.dll 2017-10-31 21:57 - 2017-09-18 03:14 - 002649600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll 2017-10-31 21:57 - 2017-09-18 03:14 - 002483712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2017-10-31 21:57 - 2017-09-18 03:14 - 001988096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2017-10-31 21:57 - 2017-09-18 03:14 - 001599488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2017-10-31 21:57 - 2017-09-18 03:14 - 001556992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2017-10-31 21:57 - 2017-09-18 03:14 - 001170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2017-10-31 21:57 - 2017-09-18 03:14 - 000983552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2017-10-31 21:57 - 2017-09-18 03:14 - 000903680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2017-10-31 21:57 - 2017-09-18 03:14 - 000827904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2017-10-31 21:57 - 2017-09-18 03:14 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2017-10-31 21:57 - 2017-09-18 03:14 - 000675840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll 2017-10-31 21:57 - 2017-09-18 03:14 - 000657408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2017-10-31 21:57 - 2017-09-18 03:14 - 000542208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll 2017-10-31 21:57 - 2017-09-18 03:14 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2017-10-31 21:57 - 2017-09-18 03:13 - 001013248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll 2017-10-31 21:57 - 2017-09-18 03:13 - 000886272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll 2017-10-31 21:57 - 2017-09-18 03:13 - 000773120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2017-10-31 21:57 - 2017-09-18 03:13 - 000751104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2017-10-31 21:57 - 2017-09-18 03:13 - 000598528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll 2017-10-31 21:57 - 2017-09-18 03:13 - 000589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll 2017-10-31 21:57 - 2017-09-18 03:13 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netprofm.dll 2017-10-31 21:57 - 2017-09-18 03:12 - 000998912 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll 2017-10-31 21:57 - 2017-09-18 03:12 - 000532992 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll 2017-10-31 21:57 - 2017-09-18 03:11 - 000783360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll 2017-10-31 21:57 - 2017-09-18 03:11 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll 2017-10-31 21:57 - 2017-09-15 00:05 - 001302136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2017-10-31 21:57 - 2017-09-14 23:59 - 000096064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll 2017-10-31 21:57 - 2017-09-14 23:52 - 000136032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostUser.dll 2017-10-31 21:57 - 2017-09-14 23:49 - 001202936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2017-10-31 21:57 - 2017-09-14 23:34 - 000108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys 2017-10-31 21:57 - 2017-09-14 23:32 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollUI.dll 2017-10-31 21:57 - 2017-09-14 23:32 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Credentials.UI.UserConsentVerifier.dll 2017-10-31 21:57 - 2017-09-14 23:31 - 000328192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2017-10-31 21:57 - 2017-09-14 23:30 - 000291840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnrollUI.dll 2017-10-31 21:57 - 2017-09-14 23:30 - 000194560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSWB7.dll 2017-10-31 21:57 - 2017-09-14 23:30 - 000185344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authz.dll 2017-10-31 21:57 - 2017-09-14 23:30 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dinput8.dll 2017-10-31 21:57 - 2017-09-14 23:30 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Credentials.UI.UserConsentVerifier.dll 2017-10-31 21:57 - 2017-09-14 23:28 - 000311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll 2017-10-31 21:57 - 2017-09-14 23:28 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dinput.dll 2017-10-31 21:57 - 2017-09-14 23:27 - 000662528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2017-10-31 21:57 - 2017-09-14 23:26 - 001167360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certutil.exe 2017-10-31 21:57 - 2017-09-14 23:26 - 000636928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll 2017-10-31 21:57 - 2017-09-14 23:26 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certreq.exe 2017-10-31 21:57 - 2017-09-14 23:25 - 000529920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll 2017-10-31 21:57 - 2017-09-14 23:18 - 003299840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe 2017-10-31 21:57 - 2017-09-14 23:15 - 003106304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe 2017-10-31 21:57 - 2017-09-14 03:04 - 000640512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswstr10.dll 2017-10-31 21:57 - 2017-09-14 03:04 - 000345088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll 2017-10-31 21:57 - 2017-09-14 03:04 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjint40.dll 2017-10-31 21:57 - 2017-03-04 07:28 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll 2017-10-31 21:57 - 2017-03-04 07:25 - 000748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll 2017-10-31 21:57 - 2017-03-04 07:24 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.Ngc.dll 2017-10-31 21:57 - 2017-03-04 07:23 - 001184256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2017-10-31 21:57 - 2017-03-04 07:23 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll 2017-10-31 21:57 - 2017-03-04 07:18 - 000567808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll 2017-10-31 21:57 - 2017-03-04 07:16 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll 2017-10-31 21:57 - 2017-03-04 07:00 - 000862208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2017-10-31 21:57 - 2017-03-04 07:00 - 000711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2017-10-31 21:57 - 2016-08-27 06:12 - 000244816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2017-10-31 21:56 - 2017-09-18 04:17 - 001564512 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2017-10-31 21:56 - 2017-09-18 04:17 - 000245600 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll 2017-10-31 21:56 - 2017-09-18 04:17 - 000136032 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2017-10-31 21:56 - 2017-09-18 04:09 - 007780192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2017-10-31 21:56 - 2017-09-18 04:09 - 000646688 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2017-10-31 21:56 - 2017-09-18 04:08 - 002253664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2017-10-31 21:56 - 2017-09-18 04:05 - 000172536 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll 2017-10-31 21:56 - 2017-09-18 04:05 - 000168800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2017-10-31 21:56 - 2017-09-18 04:04 - 000404832 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2017-10-31 21:56 - 2017-09-18 04:01 - 002446704 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2017-10-31 21:56 - 2017-09-18 04:01 - 000624048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2017-10-31 21:56 - 2017-09-18 04:01 - 000431456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys 2017-10-31 21:56 - 2017-09-18 04:01 - 000223072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2017-10-31 21:56 - 2017-09-18 03:59 - 000241504 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll 2017-10-31 21:56 - 2017-09-18 03:58 - 001600632 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2017-10-31 21:56 - 2017-09-18 03:58 - 000206688 _____ (Microsoft Corporation) C:\WINDOWS\system32\basecsp.dll 2017-10-31 21:56 - 2017-09-18 03:57 - 001566552 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2017-10-31 21:56 - 2017-09-18 03:57 - 001460696 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2017-10-31 21:56 - 2017-09-18 03:57 - 001415712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2017-10-31 21:56 - 2017-09-18 03:56 - 000057408 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe 2017-10-31 21:56 - 2017-09-18 03:36 - 022570496 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2017-10-31 21:56 - 2017-09-18 03:35 - 000372736 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2017-10-31 21:56 - 2017-09-18 03:33 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\TransliterationRanker.dll 2017-10-31 21:56 - 2017-09-18 03:32 - 000177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll 2017-10-31 21:56 - 2017-09-18 03:32 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\jpninputrouter.dll 2017-10-31 21:56 - 2017-09-18 03:32 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmojiDS.dll 2017-10-31 21:56 - 2017-09-18 03:32 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll 2017-10-31 21:56 - 2017-09-18 03:31 - 000069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\RuleBasedDS.dll 2017-10-31 21:56 - 2017-09-18 03:30 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\jpnranker.dll 2017-10-31 21:56 - 2017-09-18 03:30 - 000257536 _____ (Microsoft Corporation) C:\WINDOWS\system32\scksp.dll 2017-10-31 21:56 - 2017-09-18 03:30 - 000196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll 2017-10-31 21:56 - 2017-09-18 03:30 - 000174592 _____ C:\WINDOWS\system32\IHDS.dll 2017-10-31 21:56 - 2017-09-18 03:30 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\VocabRoamingHandler.dll 2017-10-31 21:56 - 2017-09-18 03:30 - 000117760 _____ (Microsoft Corporation) C:\WINDOWS\system32\StaticDictDS.dll 2017-10-31 21:56 - 2017-09-18 03:30 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll 2017-10-31 21:56 - 2017-09-18 03:30 - 000095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\chxranker.dll 2017-10-31 21:56 - 2017-09-18 03:29 - 009129984 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2017-10-31 21:56 - 2017-09-18 03:29 - 000414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChsStrokeDS.dll 2017-10-31 21:56 - 2017-09-18 03:29 - 000411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll 2017-10-31 21:56 - 2017-09-18 03:29 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll 2017-10-31 21:56 - 2017-09-18 03:28 - 000536064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2017-10-31 21:56 - 2017-09-18 03:28 - 000414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtHkStrokeDS.dll 2017-10-31 21:56 - 2017-09-18 03:28 - 000335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChsPinyinRanker.dll 2017-10-31 21:56 - 2017-09-18 03:28 - 000290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\MtfDecoder.dll 2017-10-31 21:56 - 2017-09-18 03:28 - 000289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll 2017-10-31 21:56 - 2017-09-18 03:28 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll 2017-10-31 21:56 - 2017-09-18 03:28 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll 2017-10-31 21:56 - 2017-09-18 03:28 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll 2017-10-31 21:56 - 2017-09-18 03:27 - 000641024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll 2017-10-31 21:56 - 2017-09-18 03:27 - 000626176 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPTpm12.dll 2017-10-31 21:56 - 2017-09-18 03:27 - 000525824 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll 2017-10-31 21:56 - 2017-09-18 03:27 - 000497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChxAPDS.dll 2017-10-31 21:56 - 2017-09-18 03:27 - 000480768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimeChsPinyinMainDS.dll 2017-10-31 21:56 - 2017-09-18 03:27 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChxHAPDS.dll 2017-10-31 21:56 - 2017-09-18 03:27 - 000463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll 2017-10-31 21:56 - 2017-09-18 03:27 - 000422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtCangjieDS.dll 2017-10-31 21:56 - 2017-09-18 03:27 - 000410624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtQuickDS.dll 2017-10-31 21:56 - 2017-09-18 03:27 - 000407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2017-10-31 21:56 - 2017-09-18 03:27 - 000379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll 2017-10-31 21:56 - 2017-09-18 03:27 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\system32\jpndecoder.dll 2017-10-31 21:56 - 2017-09-18 03:27 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\chxinputrouter.dll 2017-10-31 21:56 - 2017-09-18 03:27 - 000326656 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll 2017-10-31 21:56 - 2017-09-18 03:27 - 000310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncSettings.dll 2017-10-31 21:56 - 2017-09-18 03:27 - 000268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll 2017-10-31 21:56 - 2017-09-18 03:27 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll 2017-10-31 21:56 - 2017-09-18 03:26 - 002716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2017-10-31 21:56 - 2017-09-18 03:26 - 000805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2017-10-31 21:56 - 2017-09-18 03:26 - 000686592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregcmd.exe 2017-10-31 21:56 - 2017-09-18 03:26 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll 2017-10-31 21:56 - 2017-09-18 03:26 - 000481792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll 2017-10-31 21:56 - 2017-09-18 03:26 - 000396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\tpmvsc.dll 2017-10-31 21:56 - 2017-09-18 03:26 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2017-10-31 21:56 - 2017-09-18 03:26 - 000176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll 2017-10-31 21:56 - 2017-09-18 03:25 - 001914368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll 2017-10-31 21:56 - 2017-09-18 03:25 - 000425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll 2017-10-31 21:56 - 2017-09-18 03:25 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll 2017-10-31 21:56 - 2017-09-18 03:25 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\RjvMDMConfig.dll 2017-10-31 21:56 - 2017-09-18 03:24 - 013107712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2017-10-31 21:56 - 2017-09-18 03:24 - 002103808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll 2017-10-31 21:56 - 2017-09-18 03:24 - 001589760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll 2017-10-31 21:56 - 2017-09-18 03:24 - 001584640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll 2017-10-31 21:56 - 2017-09-18 03:23 - 000442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll 2017-10-31 21:56 - 2017-09-18 03:22 - 004749824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2017-10-31 21:56 - 2017-09-18 03:22 - 003291648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2017-10-31 21:56 - 2017-09-18 03:22 - 000883712 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll 2017-10-31 21:56 - 2017-09-18 03:22 - 000352256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe 2017-10-31 21:56 - 2017-09-18 03:22 - 000198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll 2017-10-31 21:56 - 2017-09-18 03:21 - 018364928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2017-10-31 21:56 - 2017-09-18 03:20 - 023677952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2017-10-31 21:56 - 2017-09-18 03:20 - 019414016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2017-10-31 21:56 - 2017-09-18 03:20 - 000937984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll 2017-10-31 21:56 - 2017-09-18 03:19 - 001060352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll 2017-10-31 21:56 - 2017-09-18 03:19 - 000519168 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll 2017-10-31 21:56 - 2017-09-18 03:18 - 012204032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2017-10-31 21:56 - 2017-09-18 03:18 - 008114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2017-10-31 21:56 - 2017-09-18 03:18 - 001010176 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2017-10-31 21:56 - 2017-09-18 03:18 - 000956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2017-10-31 21:56 - 2017-09-18 03:18 - 000932864 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2017-10-31 21:56 - 2017-09-18 03:17 - 002279424 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2017-10-31 21:56 - 2017-09-18 03:17 - 001783296 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2017-10-31 21:56 - 2017-09-18 03:16 - 004743168 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2017-10-31 21:56 - 2017-09-18 03:16 - 001484800 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2017-10-31 21:56 - 2017-09-18 03:15 - 006065152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2017-10-31 21:56 - 2017-09-18 03:15 - 003202048 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2017-10-31 21:56 - 2017-09-18 03:15 - 002919936 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll 2017-10-31 21:56 - 2017-09-18 03:15 - 002800128 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll 2017-10-31 21:56 - 2017-09-18 03:15 - 001692160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2017-10-31 21:56 - 2017-09-18 03:15 - 001282048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2017-10-31 21:56 - 2017-09-18 03:15 - 001231360 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2017-10-31 21:56 - 2017-09-18 03:15 - 000893952 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2017-10-31 21:56 - 2017-09-18 03:15 - 000701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll 2017-10-31 21:56 - 2017-09-18 03:14 - 003663360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2017-10-31 21:56 - 2017-09-18 03:14 - 003615744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2017-10-31 21:56 - 2017-09-18 03:14 - 002897408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2017-10-31 21:56 - 2017-09-18 03:14 - 002321408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2017-10-31 21:56 - 2017-09-18 03:14 - 001518080 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2017-10-31 21:56 - 2017-09-18 03:14 - 001328640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll 2017-10-31 21:56 - 2017-09-18 03:14 - 001040896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalLanguage6.dll 2017-10-31 21:56 - 2017-09-18 03:14 - 000971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2017-10-31 21:56 - 2017-09-18 03:14 - 000913920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll 2017-10-31 21:56 - 2017-09-18 03:14 - 000908800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2017-10-31 21:56 - 2017-09-18 03:14 - 000817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2017-10-31 21:56 - 2017-09-18 03:14 - 000799744 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2017-10-31 21:56 - 2017-09-18 03:14 - 000774656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll 2017-10-31 21:56 - 2017-09-18 03:14 - 000650752 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2017-10-31 21:56 - 2017-09-18 03:13 - 001726976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2017-10-31 21:56 - 2017-09-18 03:13 - 001121280 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll 2017-10-31 21:56 - 2017-09-18 03:13 - 000924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll 2017-10-31 21:56 - 2017-09-18 03:13 - 000203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll 2017-10-31 21:56 - 2017-09-18 03:12 - 000439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wksprt.exe 2017-10-31 21:56 - 2017-09-18 03:11 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\trie.dll 2017-10-31 21:56 - 2017-09-18 03:11 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTFFuzzyDS.dll 2017-10-31 21:56 - 2017-09-18 03:11 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTFSpellcheckDS.dll 2017-10-31 21:56 - 2017-09-15 00:14 - 000119328 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll 2017-10-31 21:56 - 2017-09-14 23:32 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB7.dll 2017-10-31 21:56 - 2017-09-14 23:32 - 000210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\dinput8.dll 2017-10-31 21:56 - 2017-09-14 23:32 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dinput.dll 2017-10-31 21:56 - 2017-09-14 23:31 - 000463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2017-10-31 21:56 - 2017-09-14 23:31 - 000280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\authz.dll 2017-10-31 21:56 - 2017-09-14 23:30 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll 2017-10-31 21:56 - 2017-09-14 23:29 - 000352256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll 2017-10-31 21:56 - 2017-09-14 23:25 - 000821248 _____ (Microsoft Corporation) C:\WINDOWS\system32\comuid.dll 2017-10-31 21:56 - 2017-09-14 23:24 - 000981504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll 2017-10-31 21:56 - 2017-09-14 23:24 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\system32\certreq.exe 2017-10-31 21:56 - 2017-09-14 23:23 - 000560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll 2017-10-31 21:56 - 2017-09-14 23:22 - 000987648 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll 2017-10-31 21:56 - 2017-09-14 23:22 - 000820736 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2017-10-31 21:56 - 2017-09-14 23:22 - 000634368 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll 2017-10-31 21:56 - 2017-09-14 23:20 - 002852864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll 2017-10-31 21:56 - 2017-09-14 23:19 - 001421824 _____ (Microsoft Corporation) C:\WINDOWS\system32\certutil.exe 2017-10-31 21:56 - 2017-09-14 23:19 - 000928256 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll 2017-10-31 21:56 - 2017-09-14 23:18 - 000273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\umrdp.dll 2017-10-31 21:56 - 2017-09-14 23:16 - 000068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\npfs.sys 2017-10-31 21:56 - 2017-03-04 08:10 - 000360040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2017-10-31 21:56 - 2017-03-04 07:11 - 001643008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2017-10-31 21:56 - 2017-03-04 07:07 - 001064448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2017-10-31 21:56 - 2016-08-06 05:16 - 000026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2017-10-31 21:56 - 2016-08-02 09:13 - 001081856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-11-05 17:31 - 2017-03-23 18:28 - 000003994 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update 2017-11-05 17:31 - 2013-02-16 11:17 - 001029872 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys 2017-11-05 17:30 - 2017-03-23 18:28 - 000343288 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbloga.sys 2017-11-05 17:30 - 2017-03-23 18:28 - 000321032 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsdrivera.sys 2017-11-05 17:30 - 2017-03-23 18:28 - 000198976 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsha.sys 2017-11-05 17:30 - 2017-03-23 18:28 - 000057736 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbuniva.sys 2017-11-05 17:30 - 2014-07-31 15:22 - 000201352 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys 2017-11-05 17:30 - 2014-07-31 15:22 - 000047008 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys 2017-11-05 17:30 - 2013-04-06 15:25 - 000363440 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys 2017-11-05 17:30 - 2013-04-06 15:25 - 000084416 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys 2017-11-05 17:30 - 2013-02-16 11:17 - 001020536 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys.150989946865608 2017-11-05 17:30 - 2013-02-16 11:17 - 000587168 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys 2017-11-05 17:30 - 2013-02-16 11:17 - 000147776 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2017-11-05 17:30 - 2013-02-16 11:17 - 000110376 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys 2017-11-05 17:30 - 2012-07-16 20:03 - 000000000 ____D C:\ProgramData\AVAST Software 2017-11-05 17:28 - 2016-08-11 13:15 - 006173740 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-11-05 17:28 - 2016-07-16 23:40 - 002964566 _____ C:\WINDOWS\system32\perfh00C.dat 2017-11-05 17:28 - 2016-07-16 23:40 - 000830358 _____ C:\WINDOWS\system32\perfc00C.dat 2017-11-05 17:26 - 2016-07-16 12:47 - 000000000 ___HD C:\Program Files\WindowsApps 2017-11-05 17:26 - 2016-07-16 12:47 - 000000000 ____D C:\WINDOWS\AppReadiness 2017-11-05 17:22 - 2016-08-11 13:37 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-11-05 17:22 - 2016-08-11 13:12 - 000000000 ____D C:\ProgramData\NVIDIA 2017-11-05 17:19 - 2016-07-16 07:04 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2017-11-05 17:17 - 2016-07-16 12:45 - 000000000 ____D C:\WINDOWS\INF 2017-11-05 16:42 - 2017-03-06 19:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio 2017-11-05 16:40 - 2017-03-23 19:52 - 000000000 ____D C:\Program Files\PDFCreator 2017-11-05 16:40 - 2016-08-11 13:16 - 000000000 ____D C:\Users\Gaetan 2017-11-05 16:40 - 2012-08-31 13:34 - 000000000 ____D C:\Users\Gaetan\AppData\Roaming\TeamViewer 2017-11-05 16:40 - 2012-07-16 19:09 - 000000000 ____D C:\Users\Gaetan\AppData\Roaming\uTorrent 2017-11-05 16:39 - 2016-08-11 14:09 - 000000000 ___DC C:\WINDOWS\Panther 2017-11-05 16:31 - 2017-08-06 15:47 - 000003364 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3110527880-2508061373-66296585-1000 2017-11-05 16:31 - 2015-08-05 16:54 - 000002461 _____ C:\Users\Gaetan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-11-05 16:31 - 2015-08-05 16:54 - 000000000 ___RD C:\Users\Gaetan\OneDrive 2017-11-05 16:24 - 2016-07-16 12:47 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2017-11-05 16:24 - 2012-08-04 17:19 - 000000290 __RSH C:\ProgramData\ntuser.pol 2017-11-05 16:18 - 2016-07-16 12:47 - 000000000 ____D C:\WINDOWS\system32\FxsTmp 2017-11-02 22:43 - 2016-08-11 13:10 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2017-10-31 23:13 - 2015-08-05 16:51 - 000000000 __RHD C:\Users\Public\AccountPictures 2017-10-31 23:13 - 2012-07-16 14:44 - 000000000 ___RD C:\Users\Gaetan\Musique 2017-10-31 23:07 - 2016-07-16 12:47 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2017-10-31 23:07 - 2016-07-16 12:47 - 000000000 ____D C:\WINDOWS\system32\oobe 2017-10-31 23:07 - 2016-07-16 12:47 - 000000000 ____D C:\WINDOWS\ShellExperiences 2017-10-31 22:19 - 2017-10-01 16:30 - 000000000 ____D C:\Program Files\rempl 2017-10-31 22:19 - 2016-07-16 12:36 - 000000000 ____D C:\WINDOWS\CbsTemp 2017-10-31 22:19 - 2016-04-07 20:25 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2017-10-31 22:11 - 2013-07-27 02:00 - 000000000 ____D C:\WINDOWS\system32\MRT 2017-10-31 22:06 - 2012-10-27 19:09 - 126925120 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2017-10-31 22:04 - 2009-07-14 03:34 - 000000590 _____ C:\WINDOWS\win.ini 2017-10-31 22:03 - 2016-07-16 12:47 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2017-10-31 20:52 - 2016-12-05 16:59 - 000000000 ____D C:\WINDOWS\Minidump 2017-10-31 20:52 - 2012-07-16 16:12 - 000000000 ____D C:\Users\Gaetan\AppData\Local\CrashDumps 2017-10-31 18:49 - 2012-08-20 21:38 - 000000000 ____D C:\Users\Gaetan\AppData\Local\Downloaded Installations 2017-10-29 21:46 - 2017-03-23 19:52 - 000000000 ____D C:\Users\Gaetan\AppData\Roaming\PDF Architect 5 2017-10-12 23:27 - 2016-07-16 12:49 - 000835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2017-10-12 23:27 - 2016-07-16 12:49 - 000177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl ==================== Fichiers à la racine de certains dossiers ======= 2012-08-04 19:50 - 2012-08-04 20:04 - 000006656 _____ () C:\Users\Gaetan\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2017-07-08 22:35 - 2017-07-08 22:35 - 000000838 _____ () C:\Users\Gaetan\AppData\Local\recently-used.xbel 2017-08-13 20:53 - 2017-08-13 20:53 - 000007406 _____ () C:\Users\Gaetan\AppData\Local\SquareClock.Production_Home_ConforamaIcon.ico 2010-09-27 18:55 - 2010-09-27 18:55 - 000164416 ____R () C:\ProgramData\DeviceManager.xml.rc4 2016-08-11 13:11 - 2016-08-11 13:11 - 000000000 ____H () C:\ProgramData\DP45977C.lfl 2012-10-26 17:35 - 2012-10-26 17:35 - 000000252 _____ () C:\ProgramData\FastPics.log 2012-09-10 17:47 - 2012-09-10 17:55 - 000000783 _____ () C:\ProgramData\hpzinstall.log 2014-01-26 03:17 - 2014-01-26 03:17 - 003299782 _____ () C:\ProgramData\SPL2972.tmp 2014-01-26 03:19 - 2014-01-26 03:19 - 003299782 _____ () C:\ProgramData\SPLD538.tmp Certains fichiers dans TEMP: ==================== 2017-11-05 16:54 - 2017-11-05 16:54 - 014287024 _____ (Reimage) C:\Users\Gaetan\AppData\Local\Temp\ReimagePackage.exe ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2017-10-31 19:16 ==================== Fin de FRST.txt ============================