Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 26-12-2017 Exécuté par Enzo (administrateur) sur DESKTOP-4V85566 (27-12-2017 14:51:09) Exécuté depuis D:\Users\Enzo\Desktop Profils chargés: Enzo (Profils disponibles: Enzo) Platform: Windows 10 Pro Version 1709 16299.125 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: Edge) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\kit118644.inf_amd64_e2e633ead73a4ccf\igfxCUIService.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Conexant Systems, Inc) C:\Windows\CxSvc\CxMonSvc.exe (Conexant Systems, Inc.) C:\Windows\CxSvc\CxUtilSvc.exe (Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\kit118644.inf_amd64_e2e633ead73a4ccf\IntelCpHDCPSvc.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe (Intel Corporation) C:\Windows\System32\ibtsiva.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Conexant Systems, Inc.) C:\Windows\SysWOW64\UIUSrv.exe (Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\kit118644.inf_amd64_e2e633ead73a4ccf\IntelCpHeciSvc.exe (Conexant) C:\Windows\System32\MicTray64.exe (Conexant Systems, Inc) C:\Program Files\CONEXANT\Flow\Flow.exe (Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\kit118644.inf_amd64_e2e633ead73a4ccf\igfxEM.exe (Conexant Systems, Inc.) C:\Program Files\CONEXANT\SA3\HP-NB-AIO\SmartAudio3.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDTouch.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\SystemApps\InputApp_cw5n1h2txyewy\WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Google) C:\Users\Enzo\AppData\Local\Google\Chrome\User Data\SwReporter\24.137.203\software_reporter_tool.exe (Google) C:\Users\Enzo\AppData\Local\Google\Chrome\User Data\SwReporter\24.137.203\software_reporter_tool.exe (Google) C:\Users\Enzo\AppData\Local\Google\Chrome\User Data\SwReporter\24.137.203\software_reporter_tool.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3349216 2017-07-02] (ELAN Microelectronics Corp.) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [246120 2017-12-22] (AVAST Software) GroupPolicy: Restriction - Chrome <==== ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{95dfa7ac-13f2-4b3a-9c93-8fd038f3e11f}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2015-07-31] (Microsoft Corporation) BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2015-07-31] (Microsoft Corporation) Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation) FireFox: ======== FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-12-27] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-12-27] (Google Inc.) Chrome: ======= CHR Profile: C:\Users\Enzo\AppData\Local\Google\Chrome\User Data\Default [2017-12-27] CHR Extension: (Docs) - C:\Users\Enzo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-12-27] CHR Extension: (Google Drive) - C:\Users\Enzo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-12-27] CHR Extension: (YouTube) - C:\Users\Enzo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-12-27] CHR Extension: (Chrome Cleaner Pro) - C:\Users\Enzo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccjleegmemocfpghkhpjmiccjcacackp [2017-12-27] CHR Extension: (Avast SafePrice) - C:\Users\Enzo\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2017-12-27] CHR Extension: (Google Docs hors connexion) - C:\Users\Enzo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-12-27] CHR Extension: (Avast Online Security) - C:\Users\Enzo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2017-12-27] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Enzo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-12-27] CHR Extension: (Gmail) - C:\Users\Enzo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-12-27] CHR Extension: (Chrome Media Router) - C:\Users\Enzo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-12-27] CHR HKLM-x32\...\Chrome\Extension: [ccjleegmemocfpghkhpjmiccjcacackp] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7538536 2017-12-22] (AVAST Software) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [301168 2017-12-22] (AVAST Software) R2 CxMonSvc; C:\WINDOWS\CxSvc\CxMonSvc.exe [25088 2017-05-04] (Conexant Systems, Inc) [Fichier non signé] R2 CxUtilSvc; C:\WINDOWS\CxSvc\CxUtilSvc.exe [148600 2017-04-13] (Conexant Systems, Inc.) R2 esifsvc; C:\WINDOWS\system32\Intel\DPTF\esif_uf.exe [2210936 2017-02-10] (Intel Corporation) R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144608 2017-07-02] (ELAN Microelectronics Corp.) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6234056 2017-11-01] (Malwarebytes) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4329952 2017-12-08] (Microsoft Corporation) R2 UIUService; C:\WINDOWS\SysWOW64\UIUSrv.exe [105984 2017-12-10] (Conexant Systems, Inc.) [Fichier non signé] S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [355304 2017-09-29] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [105944 2017-09-29] (Microsoft Corporation) R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X] S2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [X] ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [185096 2017-12-22] (AVAST Software) R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdrivera.sys [321512 2017-12-22] (AVAST Software) R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsha.sys [199448 2017-12-22] (AVAST Software) R0 aswblog; C:\WINDOWS\System32\drivers\aswbloga.sys [343768 2017-12-22] (AVAST Software) R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniva.sys [57696 2017-12-22] (AVAST Software) R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [149344 2017-12-22] (AVAST Software) S3 aswHwid; C:\WINDOWS\System32\drivers\aswHwid.sys [46976 2017-12-22] (AVAST Software) R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [146664 2017-12-22] (AVAST Software) R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [110336 2017-12-22] (AVAST Software) R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [84384 2017-12-22] (AVAST Software) R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [1025176 2017-12-22] (AVAST Software) R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [457400 2017-12-22] (AVAST Software) R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [204456 2017-12-22] (AVAST Software) R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [358672 2017-12-22] (AVAST Software) R3 dptf_acpi; C:\WINDOWS\System32\drivers\dptf_acpi.sys [72584 2017-02-10] (Intel Corporation) R3 dptf_cpu; C:\WINDOWS\System32\drivers\dptf_cpu.sys [67976 2017-02-10] (Intel Corporation) R3 esif_lf; C:\WINDOWS\system32\DRIVERS\esif_lf.sys [355208 2017-02-10] (Intel Corporation) R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [77432 2017-11-29] () R3 ETDSMBus; C:\WINDOWS\System32\drivers\ETDSMBus.sys [32848 2017-04-19] (ELAN Microelectronic Corp.) R3 HID_PCI; C:\WINDOWS\System32\drivers\HID_PCI.sys [31328 2016-08-10] (Intel) S3 hitmanpro37; C:\WINDOWS\system32\drivers\hitmanpro37.sys [55232 2017-12-15] () S3 iaLPSS2_GPIO2; C:\WINDOWS\System32\drivers\iaLPSS2_GPIO2.sys [104248 2016-08-03] (Intel Corporation) S0 iaStorB; C:\WINDOWS\System32\drivers\iaStorB.sys [559576 2015-05-21] (Intel Corporation) S0 iaStorS; C:\WINDOWS\System32\drivers\iaStorS.sys [665592 2015-06-04] (Intel Corporation) R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [244744 2017-04-13] (Intel Corporation) R3 ISH; C:\WINDOWS\System32\drivers\ISH.sys [143984 2016-09-19] (Intel) R3 ISH_BusDriver; C:\WINDOWS\System32\drivers\ISH_BusDriver.sys [80496 2016-08-18] (Intel) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [193968 2017-12-15] (Malwarebytes) R3 MBAMFarflt; C:\WINDOWS\system32\DRIVERS\farflt.sys [110016 2017-12-27] (Malwarebytes) R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [46008 2017-12-27] (Malwarebytes) R0 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [253880 2017-12-15] (Malwarebytes) R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [94144 2017-12-27] (Malwarebytes) R3 Netwtw04; C:\WINDOWS\system32\DRIVERS\Netwtw04.sys [7643648 2017-07-13] (Intel Corporation) S3 rccfg; C:\WINDOWS\System32\drivers\rccfg.sys [30608 2016-07-22] (AMD, Inc.) S0 rcraid; C:\WINDOWS\System32\drivers\rcraid.sys [547216 2016-07-22] (AMD, Inc.) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [954368 2017-03-31] (Realtek ) R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [778720 2016-12-09] (Realsil Semiconductor Corporation) S3 smbdirect; C:\WINDOWS\System32\DRIVERS\smbdirect.sys [151552 2017-09-30] (Microsoft Corporation) S3 SPDx64; C:\WINDOWS\System32\drivers\SPDx64.sys [60496 2016-06-28] (Intel Corporation) R3 VirtualButtons; C:\WINDOWS\System32\drivers\VirtualButtons.sys [42000 2017-03-03] (Intel Corporation) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44608 2017-09-29] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [309144 2017-09-29] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [119192 2017-09-29] (Microsoft Corporation) R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [30368 2017-06-21] (HP) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-12-27 14:50 - 2017-12-27 14:51 - 000000000 ____D C:\FRST 2017-12-27 14:35 - 2017-12-27 14:35 - 000002349 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-12-27 14:35 - 2017-12-27 14:35 - 000002337 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2017-12-27 14:34 - 2017-12-27 14:34 - 000003586 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2017-12-27 14:34 - 2017-12-27 14:34 - 000003462 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2017-12-27 14:08 - 2017-12-27 14:08 - 000000000 ____D C:\ProgramData\SWCUTemp 2017-12-27 14:07 - 2017-12-27 14:07 - 000000000 ____D C:\Users\Enzo\AppData\Local\PeerDistRepub 2017-12-27 12:32 - 2017-12-27 14:08 - 000000000 ____D C:\AdwCleaner 2017-12-27 11:28 - 2017-12-27 11:28 - 000001119 _____ C:\Users\Public\Desktop\ArchiFacile.lnk 2017-12-27 11:28 - 2017-12-27 11:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArchiFacile 2017-12-27 11:28 - 2017-12-27 11:28 - 000000000 ____D C:\Program Files (x86)\ArchiFacile 2017-12-27 11:26 - 2017-12-27 11:26 - 000001716 __RSH C:\ProgramData\ntuser.pol 2017-12-25 22:59 - 2017-12-25 22:59 - 000000000 ____D C:\Users\Enzo\AppData\Roaming\Macromedia 2017-12-25 22:59 - 2017-12-25 22:59 - 000000000 ____D C:\Users\Enzo\AppData\Roaming\edu.media.mit.Scratch2Editor 2017-12-25 22:54 - 2017-12-27 11:44 - 000000079 _____ C:\Users\Enzo\AppData\Roaming\ArchiFacile.json 2017-12-25 22:45 - 2017-12-27 12:00 - 000000000 ____D C:\Users\Enzo\AppData\Local\ArchiFacile 2017-12-25 22:45 - 2017-12-25 22:45 - 000000000 ____D C:\Users\Enzo\AppData\Roaming\ArchiFacile 2017-12-22 13:32 - 2017-12-22 13:30 - 000149344 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHdsKe.sys 2017-12-22 13:31 - 2017-12-22 13:31 - 000365680 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2017-12-21 18:32 - 2017-12-21 18:32 - 000000000 ____D C:\Users\Enzo\AppData\Roaming\JetBrains 2017-12-21 18:31 - 2017-12-21 18:32 - 000000000 ____D C:\Users\Enzo\.PyCharmCE2017.3 2017-12-21 18:28 - 2017-12-21 18:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JetBrains 2017-12-21 18:28 - 2017-12-21 18:28 - 000000000 ____D C:\Program Files\JetBrains 2017-12-21 18:19 - 2017-12-21 18:19 - 000000662 _____ C:\Users\Public\Desktop\EduPython.lnk 2017-12-21 18:19 - 2017-12-21 18:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EduPython 2017-12-21 18:08 - 2017-12-21 18:08 - 000000000 ____D C:\EduPython 2017-12-21 18:06 - 2017-12-21 18:06 - 000000000 ____D C:\Users\Enzo\AppData\Roaming\PyScripter 2017-12-15 14:47 - 2017-12-27 14:09 - 000094144 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2017-12-15 14:47 - 2017-12-27 14:09 - 000046008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2017-12-15 14:47 - 2017-12-27 14:08 - 000110016 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys 2017-12-15 14:47 - 2017-12-15 14:47 - 000253880 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2017-12-15 14:47 - 2017-12-15 14:47 - 000193968 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2017-12-15 14:47 - 2017-12-15 14:47 - 000001919 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2017-12-15 14:46 - 2017-12-15 14:46 - 000000000 ____D C:\ProgramData\Malwarebytes 2017-12-15 14:46 - 2017-12-15 14:46 - 000000000 ____D C:\Program Files\Malwarebytes 2017-12-15 14:46 - 2017-11-29 09:11 - 000077432 _____ C:\WINDOWS\system32\Drivers\mbae64.sys 2017-12-15 14:43 - 2017-12-15 14:43 - 000001238 _____ C:\WINDOWS\system32\.crusader 2017-12-15 14:38 - 2017-12-15 14:44 - 000055232 _____ C:\WINDOWS\system32\Drivers\hitmanpro37.sys 2017-12-15 14:37 - 2017-12-15 14:43 - 000000000 ____D C:\ProgramData\HitmanPro 2017-12-15 14:05 - 2017-12-15 14:05 - 000000000 ____D C:\Users\Enzo\AppData\Local\ElevatedDiagnostics 2017-12-14 13:50 - 2017-12-14 13:50 - 000000375 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics 2017-12-14 13:11 - 2017-12-14 13:11 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2017-12-13 12:46 - 2017-12-13 12:46 - 000003864 _____ C:\Users\Enzo\.ganttproject 2017-12-13 09:34 - 2017-12-08 00:31 - 008590744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2017-12-13 09:34 - 2017-12-08 00:27 - 003903784 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2017-12-13 09:34 - 2017-12-08 00:26 - 007385088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2017-12-13 09:34 - 2017-12-08 00:23 - 005905752 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll 2017-12-13 09:34 - 2017-12-08 00:21 - 007676296 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2017-12-13 09:34 - 2017-12-08 00:19 - 021352136 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2017-12-13 09:34 - 2017-12-07 23:39 - 006092664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2017-12-13 09:34 - 2017-12-07 23:32 - 020286120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2017-12-13 09:34 - 2017-12-07 23:23 - 006478528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2017-12-13 09:34 - 2017-12-07 23:22 - 025245696 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2017-12-13 09:34 - 2017-12-07 23:11 - 003669504 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2017-12-13 09:34 - 2017-12-07 23:10 - 018916352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2017-12-13 09:34 - 2017-12-07 23:10 - 006466048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2017-12-13 09:34 - 2017-12-07 23:08 - 019336192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2017-12-13 09:34 - 2017-12-07 23:06 - 023652864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2017-12-13 09:34 - 2017-12-07 23:05 - 006037504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2017-12-13 09:34 - 2017-12-07 23:02 - 007545344 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2017-12-13 09:34 - 2017-12-07 23:01 - 008097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2017-12-13 09:34 - 2017-12-07 23:00 - 004740608 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2017-12-13 09:34 - 2017-12-07 22:59 - 003121664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.dll 2017-12-13 09:34 - 2017-12-07 22:58 - 003211776 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2017-12-13 09:33 - 2017-12-08 07:52 - 000666112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll 2017-12-13 09:33 - 2017-12-08 00:34 - 001925296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2017-12-13 09:33 - 2017-12-08 00:34 - 001634288 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2017-12-13 09:33 - 2017-12-08 00:34 - 000059800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bam.sys 2017-12-13 09:33 - 2017-12-08 00:31 - 000779440 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2017-12-13 09:33 - 2017-12-08 00:30 - 000166296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys 2017-12-13 09:33 - 2017-12-08 00:28 - 000710912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2017-12-13 09:33 - 2017-12-08 00:28 - 000630752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcrt.dll 2017-12-13 09:33 - 2017-12-08 00:27 - 004504456 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2017-12-13 09:33 - 2017-12-08 00:27 - 000184984 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll 2017-12-13 09:33 - 2017-12-08 00:26 - 002709200 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2017-12-13 09:33 - 2017-12-08 00:26 - 000525208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe 2017-12-13 09:33 - 2017-12-08 00:25 - 000374032 _____ (Microsoft Corporation) C:\WINDOWS\system32\vac.exe 2017-12-13 09:33 - 2017-12-08 00:24 - 000705944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll 2017-12-13 09:33 - 2017-12-08 00:24 - 000437144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS 2017-12-13 09:33 - 2017-12-08 00:24 - 000246168 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2017-12-13 09:33 - 2017-12-08 00:23 - 000677272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2017-12-13 09:33 - 2017-12-08 00:22 - 001003104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll 2017-12-13 09:33 - 2017-12-08 00:22 - 000979352 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2017-12-13 09:33 - 2017-12-08 00:22 - 000137544 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll 2017-12-13 09:33 - 2017-12-08 00:22 - 000129432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvsocket.sys 2017-12-13 09:33 - 2017-12-08 00:20 - 001170000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2017-12-13 09:33 - 2017-12-08 00:16 - 001776272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2017-12-13 09:33 - 2017-12-08 00:16 - 000603920 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2017-12-13 09:33 - 2017-12-08 00:15 - 001426152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2017-12-13 09:33 - 2017-12-08 00:15 - 000721592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll 2017-12-13 09:33 - 2017-12-08 00:14 - 000571288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2017-12-13 09:33 - 2017-12-08 00:12 - 000401304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys 2017-12-13 09:33 - 2017-12-08 00:10 - 000362904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2017-12-13 09:33 - 2017-12-07 23:58 - 000123512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll 2017-12-13 09:33 - 2017-12-07 23:57 - 000649304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2017-12-13 09:33 - 2017-12-07 23:56 - 001528904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2017-12-13 09:33 - 2017-12-07 23:55 - 001490328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2017-12-13 09:33 - 2017-12-07 23:55 - 000097144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll 2017-12-13 09:33 - 2017-12-07 23:37 - 001145104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll 2017-12-13 09:33 - 2017-12-07 23:36 - 000769096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcrt.dll 2017-12-13 09:33 - 2017-12-07 23:34 - 003484840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2017-12-13 09:33 - 2017-12-07 23:34 - 002192112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2017-12-13 09:33 - 2017-12-07 23:33 - 000747416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2017-12-13 09:33 - 2017-12-07 23:33 - 000592280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll 2017-12-13 09:33 - 2017-12-07 23:31 - 001522176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2017-12-13 09:33 - 2017-12-07 23:31 - 001246432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2017-12-13 09:33 - 2017-12-07 23:31 - 000982016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2017-12-13 09:33 - 2017-12-07 23:29 - 000047000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KeyboardFilterShim.dll 2017-12-13 09:33 - 2017-12-07 23:13 - 002905600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2017-12-13 09:33 - 2017-12-07 23:13 - 001008640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll 2017-12-13 09:33 - 2017-12-07 23:12 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll 2017-12-13 09:33 - 2017-12-07 23:12 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2017-12-13 09:33 - 2017-12-07 23:12 - 000101376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscript.ocx 2017-12-13 09:33 - 2017-12-07 23:10 - 001313792 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll 2017-12-13 09:33 - 2017-12-07 23:10 - 000536064 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll 2017-12-13 09:33 - 2017-12-07 23:10 - 000250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2017-12-13 09:33 - 2017-12-07 23:10 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\itss.dll 2017-12-13 09:33 - 2017-12-07 23:10 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2017-12-13 09:33 - 2017-12-07 23:10 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll 2017-12-13 09:33 - 2017-12-07 23:09 - 001663488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\batmeter.dll 2017-12-13 09:33 - 2017-12-07 23:09 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FSClient.dll 2017-12-13 09:33 - 2017-12-07 23:09 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscript.exe 2017-12-13 09:33 - 2017-12-07 23:09 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscript.exe 2017-12-13 09:33 - 2017-12-07 23:09 - 000136704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gamingtcui.dll 2017-12-13 09:33 - 2017-12-07 23:08 - 000514560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtrmgr.dll 2017-12-13 09:33 - 2017-12-07 23:08 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll 2017-12-13 09:33 - 2017-12-07 23:08 - 000369152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll 2017-12-13 09:33 - 2017-12-07 23:08 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrobj.dll 2017-12-13 09:33 - 2017-12-07 23:08 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll 2017-12-13 09:33 - 2017-12-07 23:07 - 000365568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2017-12-13 09:33 - 2017-12-07 23:07 - 000254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\PushToInstall.dll 2017-12-13 09:33 - 2017-12-07 23:07 - 000246272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2017-12-13 09:33 - 2017-12-07 23:07 - 000192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys 2017-12-13 09:33 - 2017-12-07 23:07 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\itss.dll 2017-12-13 09:33 - 2017-12-07 23:07 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe 2017-12-13 09:33 - 2017-12-07 23:07 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2017-12-13 09:33 - 2017-12-07 23:06 - 000676352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll 2017-12-13 09:33 - 2017-12-07 23:06 - 000559104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2017-12-13 09:33 - 2017-12-07 23:06 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcui.dll 2017-12-13 09:33 - 2017-12-07 23:06 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscript.exe 2017-12-13 09:33 - 2017-12-07 23:05 - 001670656 _____ (Microsoft Corporation) C:\WINDOWS\system32\batmeter.dll 2017-12-13 09:33 - 2017-12-07 23:05 - 000664576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2017-12-13 09:33 - 2017-12-07 23:05 - 000559616 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll 2017-12-13 09:33 - 2017-12-07 23:05 - 000539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll 2017-12-13 09:33 - 2017-12-07 23:05 - 000481792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll 2017-12-13 09:33 - 2017-12-07 23:05 - 000463360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2017-12-13 09:33 - 2017-12-07 23:05 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll 2017-12-13 09:33 - 2017-12-07 23:05 - 000363008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll 2017-12-13 09:33 - 2017-12-07 23:05 - 000334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll 2017-12-13 09:33 - 2017-12-07 23:05 - 000306688 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll 2017-12-13 09:33 - 2017-12-07 23:05 - 000222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrobj.dll 2017-12-13 09:33 - 2017-12-07 23:05 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscript.exe 2017-12-13 09:33 - 2017-12-07 23:05 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll 2017-12-13 09:33 - 2017-12-07 23:04 - 003678208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2017-12-13 09:33 - 2017-12-07 23:04 - 001498112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll 2017-12-13 09:33 - 2017-12-07 23:04 - 001321472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll 2017-12-13 09:33 - 2017-12-07 23:04 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll 2017-12-13 09:33 - 2017-12-07 23:03 - 002467840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2017-12-13 09:33 - 2017-12-07 23:03 - 001559552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2017-12-13 09:33 - 2017-12-07 23:03 - 001230848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll 2017-12-13 09:33 - 2017-12-07 23:03 - 000841728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll 2017-12-13 09:33 - 2017-12-07 23:03 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll 2017-12-13 09:33 - 2017-12-07 23:03 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2017-12-13 09:33 - 2017-12-07 23:03 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2017-12-13 09:33 - 2017-12-07 23:03 - 000403968 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll 2017-12-13 09:33 - 2017-12-07 23:03 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2017-12-13 09:33 - 2017-12-07 23:03 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\hascsp.dll 2017-12-13 09:33 - 2017-12-07 23:02 - 002864640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll 2017-12-13 09:33 - 2017-12-07 23:02 - 002117632 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll 2017-12-13 09:33 - 2017-12-07 23:02 - 000815616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2017-12-13 09:33 - 2017-12-07 23:02 - 000813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2017-12-13 09:33 - 2017-12-07 23:02 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll 2017-12-13 09:33 - 2017-12-07 23:01 - 004592640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll 2017-12-13 09:33 - 2017-12-07 23:01 - 001980928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll 2017-12-13 09:33 - 2017-12-07 23:01 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll 2017-12-13 09:33 - 2017-12-07 23:01 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll 2017-12-13 09:33 - 2017-12-07 23:00 - 002862080 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2017-12-13 09:33 - 2017-12-07 23:00 - 001509888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2017-12-13 09:33 - 2017-12-07 22:59 - 002105856 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2017-12-13 09:33 - 2017-12-07 22:59 - 001666048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll 2017-12-13 09:33 - 2017-12-07 22:59 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll 2017-12-13 09:33 - 2017-12-07 22:59 - 000880640 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll 2017-12-13 09:33 - 2017-12-07 22:58 - 003478016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2017-12-13 09:33 - 2017-12-07 22:58 - 001547264 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2017-12-13 09:33 - 2017-12-07 22:58 - 001353728 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll 2017-12-13 09:33 - 2017-12-07 22:58 - 000812032 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2017-12-13 09:33 - 2017-12-07 22:57 - 001822208 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2017-12-13 09:33 - 2017-12-07 22:57 - 001487872 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2017-12-13 09:33 - 2017-12-07 22:56 - 002666496 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll 2017-12-13 09:33 - 2017-12-07 22:56 - 001739264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2017-12-13 09:33 - 2017-12-07 22:56 - 000685056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2017-12-13 09:33 - 2017-12-07 22:54 - 002510336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll 2017-12-13 09:33 - 2017-12-07 22:54 - 001570816 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe 2017-12-13 09:33 - 2017-12-07 22:54 - 001160704 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2017-12-11 15:44 - 2017-12-13 17:08 - 000000000 ____D C:\Users\Enzo\AppData\Local\PlaceholderTileLogoFolder 2017-12-11 14:08 - 2017-12-13 09:47 - 000000000 ____D C:\WINDOWS\system32\MRT 2017-12-11 14:08 - 2017-12-13 09:44 - 133326408 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe 2017-12-11 14:08 - 2017-12-13 09:44 - 133326408 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2017-12-11 13:23 - 2017-12-11 13:23 - 000000000 ____D C:\Users\Enzo\AppData\Local\DBG 2017-12-11 10:40 - 2017-12-11 10:40 - 000000000 ____D C:\Users\Enzo\AppData\Local\Help 2017-12-11 10:33 - 2017-12-11 10:35 - 000000000 ____D C:\Users\Enzo\AppData\Local\PianoFacile - Le clavier 2017-12-10 13:34 - 2017-12-22 13:33 - 000061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys 2017-12-10 13:34 - 2017-12-22 13:33 - 000003994 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update 2017-12-10 13:34 - 2017-12-10 13:34 - 000061304 _____ () C:\WINDOWS\SMSS-PFRO2078.tmp 2017-12-10 13:34 - 2017-12-10 13:34 - 000001986 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Antivirus Gratuit.lnk 2017-12-10 13:34 - 2017-12-10 13:34 - 000001974 _____ C:\Users\Public\Desktop\Avast Antivirus Gratuit.lnk 2017-12-10 13:34 - 2017-12-10 13:34 - 000000000 ____D C:\WINDOWS\System32\Tasks\Avast Software 2017-12-10 13:34 - 2017-12-10 13:34 - 000000000 ____D C:\Users\Enzo\AppData\Roaming\AVAST Software 2017-12-10 13:34 - 2017-12-10 13:34 - 000000000 ____D C:\Users\Enzo\AppData\Local\CEF 2017-12-10 13:34 - 2017-12-10 13:34 - 000000000 ____D C:\Program Files\Common Files\Avast Software 2017-12-10 13:33 - 2017-12-22 13:31 - 000457400 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys 2017-12-10 13:33 - 2017-12-22 13:31 - 000358672 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys 2017-12-10 13:33 - 2017-12-22 13:31 - 000204456 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys 2017-12-10 13:33 - 2017-12-22 13:31 - 000185096 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys 2017-12-10 13:33 - 2017-12-22 13:31 - 000146664 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2017-12-10 13:33 - 2017-12-22 13:31 - 000110336 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys 2017-12-10 13:33 - 2017-12-22 13:31 - 000084384 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys 2017-12-10 13:33 - 2017-12-22 13:31 - 000046976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys 2017-12-10 13:33 - 2017-12-22 13:30 - 001025176 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys 2017-12-10 13:33 - 2017-12-22 13:30 - 000343768 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbloga.sys 2017-12-10 13:33 - 2017-12-22 13:30 - 000321512 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdrivera.sys 2017-12-10 13:33 - 2017-12-22 13:30 - 000199448 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsha.sys 2017-12-10 13:33 - 2017-12-22 13:30 - 000057696 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniva.sys 2017-12-10 13:29 - 2017-12-10 16:19 - 000000000 ____D C:\ProgramData\AVAST Software 2017-12-10 13:29 - 2017-12-10 13:29 - 000000000 ____D C:\Program Files\AVAST Software 2017-12-10 13:28 - 2017-12-15 14:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico 2017-12-10 13:27 - 2017-12-15 14:43 - 000000000 ____D C:\Program Files\KMSpico 2017-12-10 13:27 - 2010-12-06 03:16 - 000090112 _____ (Vestris Inc.) C:\WINDOWS\system32\Vestris.ResourceLib.dll 2017-12-10 13:23 - 2017-12-10 13:23 - 000000000 ____D C:\Users\Enzo\AppData\Roaming\LauncherMCNL 2017-12-10 13:19 - 2017-12-10 13:19 - 000000000 ____D C:\WINDOWS\PCHEALTH 2017-12-10 13:19 - 2017-12-10 13:19 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2017-12-10 13:14 - 2017-12-10 13:15 - 000000000 ____D C:\Users\Enzo\AppData\Local\Conexant 2017-12-10 13:13 - 2017-12-10 13:13 - 000000000 __RHD C:\MSOCache 2017-12-10 13:01 - 2017-12-10 13:20 - 000000000 ____D C:\WINDOWS\SHELLNEW 2017-12-10 13:01 - 2017-12-10 13:19 - 000000000 ____D C:\Program Files\Microsoft Office 2017-12-10 13:01 - 2017-12-10 13:01 - 000000000 ____D C:\Users\Enzo\AppData\Local\Microsoft Help 2017-12-10 13:01 - 2017-12-10 13:01 - 000000000 ____D C:\Program Files\Microsoft Analysis Services 2017-12-10 13:01 - 2017-12-10 13:01 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2017-12-10 13:01 - 2017-12-10 13:01 - 000000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2017-12-10 12:58 - 2017-12-27 14:34 - 000000000 ____D C:\Program Files (x86)\Google 2017-12-10 12:58 - 2017-12-10 12:58 - 000000000 ____D C:\Users\Enzo\AppData\Roaming\WinRAR 2017-12-10 12:57 - 2017-12-27 14:35 - 000000000 ____D C:\Users\Enzo\AppData\Local\Google 2017-12-10 12:57 - 2017-12-10 12:57 - 000000000 ____D C:\Program Files (x86)\WinRAR 2017-12-10 12:53 - 2017-12-10 12:55 - 000002411 _____ C:\Users\Enzo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-12-10 12:53 - 2017-12-10 12:53 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2017-12-10 12:52 - 2017-12-27 14:14 - 002241182 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-12-10 12:52 - 2017-12-19 18:22 - 000000000 ____D C:\Users\Enzo\AppData\Local\Comms 2017-12-10 12:52 - 2017-12-10 12:52 - 000000000 ____D C:\Users\Enzo\AppData\Local\MicrosoftEdge 2017-12-10 12:52 - 2017-12-10 12:52 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2017-12-10 12:51 - 2017-12-10 12:51 - 000000000 ____D C:\Users\Enzo\AppData\Local\Publishers 2017-12-10 12:50 - 2017-12-19 18:57 - 000000000 ____D C:\Users\Enzo\AppData\Local\Packages 2017-12-10 12:50 - 2017-12-10 12:50 - 000000020 ___SH C:\Users\Enzo\ntuser.ini 2017-12-10 12:50 - 2017-12-10 12:50 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historique 2017-12-10 12:50 - 2017-12-10 12:50 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Historique 2017-12-10 12:50 - 2017-12-10 12:50 - 000000000 _SHDL C:\Users\Default User 2017-12-10 12:50 - 2017-12-10 12:50 - 000000000 _SHDL C:\Users\All Users 2017-12-10 12:50 - 2017-12-10 12:50 - 000000000 _SHDL C:\ProgramData\Modèles 2017-12-10 12:50 - 2017-12-10 12:50 - 000000000 _SHDL C:\ProgramData\Menu Démarrer 2017-12-10 12:50 - 2017-12-10 12:50 - 000000000 _SHDL C:\ProgramData\Bureau 2017-12-10 12:50 - 2017-12-10 12:50 - 000000000 _SHDL C:\Program Files\Fichiers communs 2017-12-10 12:50 - 2017-12-10 12:50 - 000000000 ____D C:\Users\Enzo\AppData\Roaming\Adobe 2017-12-10 12:50 - 2017-12-10 12:50 - 000000000 ____D C:\Users\Enzo\AppData\Local\VirtualStore 2017-12-10 12:50 - 2017-12-10 12:50 - 000000000 ____D C:\Users\Enzo\AppData\Local\ConnectedDevicesPlatform 2017-12-10 12:50 - 2017-12-10 12:50 - 000000000 ____D C:\ProgramData\USOShared 2017-12-10 12:49 - 2017-12-27 14:08 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-12-10 12:48 - 2017-12-10 12:48 - 000017826 _____ C:\Users\DefaultAppPool\Desktop\Applications supprimées.html 2017-12-10 12:46 - 2017-12-25 21:10 - 000000000 ____D C:\Users\Enzo 2017-12-10 12:46 - 2017-12-10 12:48 - 000000000 ____D C:\Users\DefaultAppPool 2017-12-10 12:46 - 2017-12-10 12:46 - 000000000 _SHDL C:\Users\Enzo\Voisinage réseau 2017-12-10 12:46 - 2017-12-10 12:46 - 000000000 _SHDL C:\Users\Enzo\Voisinage d'impression 2017-12-10 12:46 - 2017-12-10 12:46 - 000000000 _SHDL C:\Users\Enzo\Modèles 2017-12-10 12:46 - 2017-12-10 12:46 - 000000000 _SHDL C:\Users\Enzo\Mes documents 2017-12-10 12:46 - 2017-12-10 12:46 - 000000000 _SHDL C:\Users\Enzo\Menu Démarrer 2017-12-10 12:46 - 2017-12-10 12:46 - 000000000 _SHDL C:\Users\Enzo\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2017-12-10 12:46 - 2017-12-10 12:46 - 000000000 _SHDL C:\Users\Enzo\AppData\Local\Historique 2017-12-10 12:46 - 2017-12-10 12:46 - 000000000 _SHDL C:\Users\DefaultAppPool\Voisinage réseau 2017-12-10 12:46 - 2017-12-10 12:46 - 000000000 _SHDL C:\Users\DefaultAppPool\Voisinage d'impression 2017-12-10 12:46 - 2017-12-10 12:46 - 000000000 _SHDL C:\Users\DefaultAppPool\Modèles 2017-12-10 12:46 - 2017-12-10 12:46 - 000000000 _SHDL C:\Users\DefaultAppPool\Mes documents 2017-12-10 12:46 - 2017-12-10 12:46 - 000000000 _SHDL C:\Users\DefaultAppPool\Menu Démarrer 2017-12-10 12:46 - 2017-12-10 12:46 - 000000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2017-12-10 12:46 - 2017-12-10 12:46 - 000000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Historique 2017-12-10 12:41 - 2017-12-10 12:41 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_ETD_01011.Wdf 2017-12-10 12:41 - 2017-12-10 12:41 - 000000000 ____D C:\WINDOWS\UCI 2017-12-10 12:41 - 2017-12-10 12:41 - 000000000 ____D C:\WINDOWS\SysWOW64\sda 2017-12-10 12:41 - 2017-12-10 12:41 - 000000000 ____D C:\WINDOWS\CxSvc 2017-12-10 12:39 - 2017-12-10 12:39 - 000000000 ____D C:\ProgramData\SoundResearch 2017-12-10 12:39 - 2017-12-10 12:39 - 000000000 ____D C:\ProgramData\Conexant 2017-12-10 12:39 - 2017-05-14 09:15 - 002771032 _____ (Conexant) C:\WINDOWS\system32\MicTray64.exe 2017-12-10 12:39 - 2017-02-23 11:22 - 000007748 _____ C:\WINDOWS\system32\cxapo.prop 2017-12-10 12:39 - 2016-07-21 09:47 - 000002988 _____ C:\WINDOWS\system32\MicTray64.xml 2017-12-10 12:38 - 2017-12-10 12:41 - 001705080 _____ (TODO: ) C:\WINDOWS\SysWOW64\RebootPrompt.exe 2017-12-10 12:38 - 2017-12-10 12:41 - 000105984 _____ (Conexant Systems, Inc.) C:\WINDOWS\SysWOW64\UIUSrv.exe 2017-12-10 12:38 - 2017-12-10 12:41 - 000000000 ____D C:\Program Files\CONEXANT 2017-12-10 12:38 - 2017-12-10 12:39 - 000000000 ____D C:\ProgramData\UIU 2017-12-10 12:38 - 2017-12-10 12:38 - 000000000 ____D C:\Program Files (x86)\Intel 2017-12-10 12:38 - 2017-12-10 12:38 - 000000000 _____ C:\WINDOWS\system32\GfxValDisplayLog.bin 2017-12-10 12:38 - 2017-09-29 14:41 - 002241024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2017-12-10 12:38 - 2016-10-14 12:16 - 000113680 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL 2017-12-10 12:38 - 2016-09-20 13:51 - 000004664 _____ C:\WINDOWS\system32\Drivers\CxSfPt.dat 2017-12-10 12:37 - 2017-12-27 14:07 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2017-12-10 12:37 - 2017-12-10 12:37 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_esif_umdf2_02_00_00.Wdf 2017-12-10 12:37 - 2017-12-10 12:37 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_esif_lf_01011.Wdf 2017-12-10 12:37 - 2017-12-10 12:37 - 000000000 ____D C:\WINDOWS\system32\Intel 2017-12-10 12:37 - 2017-12-10 12:37 - 000000000 ____D C:\Program Files\Intel 2017-12-10 12:36 - 2017-12-14 11:07 - 000470056 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2017-12-10 12:36 - 2017-12-10 12:36 - 000000000 ____D C:\WINDOWS\InfusedApps 2017-12-10 12:36 - 2017-12-10 12:36 - 000000000 ____D C:\Windows.old 2017-12-10 12:35 - 2017-12-10 12:37 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2017-12-10 12:35 - 2017-12-10 12:35 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2017-12-10 12:32 - 2017-12-10 12:41 - 000000000 ____D C:\Program Files\Elantech 2017-12-10 12:31 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\Setup 2017-12-10 12:30 - 2017-12-10 12:30 - 000000000 ____D C:\WINDOWS\containers 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\zu-ZA 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\yo-NG 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\xh-ZA 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\wo-SN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\uz-Latn-UZ 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\tn-ZA 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\tk-TM 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\ti-ET 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\tg-Cyrl-TJ 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\sw-KE 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-RS 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-BA 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\si-LK 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\sd-Arab-PK 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\rw-RW 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\quc-Latn-GT 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\prs-AF 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-Arab-PK 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\nso-ZA 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\mn-MN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\ky-KG 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\ku-Arab-IQ 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\ig-NG 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\ha-Latn-NG 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\chr-CHER-US 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES-valencia 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\bs-Latn-BA 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-BD 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\az-Latn-AZ 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\zu-ZA 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\yo-NG 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\xh-ZA 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\wo-SN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\vi-VN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\uz-Latn-UZ 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\ur-PK 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\ug-CN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\tt-RU 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\tn-ZA 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\tk-TM 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\ti-ET 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\tg-Cyrl-TJ 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\te-IN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\ta-IN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\sw-KE 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-RS 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-BA 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\sq-AL 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\si-LK 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\sd-Arab-PK 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\rw-RW 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\quz-PE 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\quc-Latn-GT 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\prs-AF 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\pa-IN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\pa-Arab-PK 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\or-IN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\nso-ZA 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\nn-NO 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\ne-NP 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\mt-MT 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\mr-IN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\mn-MN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\ml-IN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\mk-MK 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\mi-NZ 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\lo-LA 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\lb-LU 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\ky-KG 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\ku-Arab-IQ 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\kok-IN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\kn-IN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\km-KH 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\kk-KZ 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\ka-GE 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\is-IS 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\ig-NG 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\id-ID 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\hy-AM 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\ha-Latn-NG 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\gu-IN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\gd-GB 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\ga-IE 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\fil-PH 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\fa-IR 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\cy-GB 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\chr-CHER-US 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\ca-ES-valencia 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\bs-Latn-BA 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\bn-IN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\bn-BD 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\be-BY 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\az-Latn-AZ 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\as-IN 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\am-ET 2017-12-10 12:29 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\af-ZA 2017-12-10 12:29 - 2017-12-10 12:29 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2017-12-10 12:29 - 2017-12-10 12:29 - 000000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync 2017-12-10 12:29 - 2017-12-10 12:29 - 000000000 ____D C:\WINDOWS\SysWOW64\hi-IN 2017-12-10 12:29 - 2017-12-10 12:29 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES 2017-12-10 12:29 - 2017-12-10 12:29 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES 2017-12-10 12:29 - 2017-12-10 12:29 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES 2017-12-10 12:29 - 2017-12-10 12:29 - 000000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync 2017-12-10 12:29 - 2017-12-10 12:29 - 000000000 ____D C:\WINDOWS\system32\hi-IN 2017-12-10 12:29 - 2017-12-10 12:29 - 000000000 ____D C:\WINDOWS\system32\gl-ES 2017-12-10 12:29 - 2017-12-10 12:29 - 000000000 ____D C:\WINDOWS\system32\eu-ES 2017-12-10 12:29 - 2017-12-10 12:29 - 000000000 ____D C:\WINDOWS\system32\ca-ES 2017-12-10 12:29 - 2017-12-10 12:29 - 000000000 ____D C:\WINDOWS\OCR 2017-12-10 12:29 - 2017-12-10 12:29 - 000000000 ____D C:\Program Files\Reference Assemblies 2017-12-10 12:29 - 2017-12-10 12:29 - 000000000 ____D C:\Program Files\MSBuild 2017-12-10 12:29 - 2017-12-10 12:29 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2017-12-10 12:29 - 2017-12-10 12:29 - 000000000 ____D C:\Program Files (x86)\MSBuild 2017-12-10 12:28 - 2017-12-27 14:14 - 001029880 _____ C:\WINDOWS\system32\perfh00C.dat 2017-12-10 12:28 - 2017-12-27 14:14 - 000215058 _____ C:\WINDOWS\system32\perfc00C.dat 2017-12-10 12:28 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm 2017-12-10 12:28 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN 2017-12-10 12:28 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\SysWOW64\sysprep 2017-12-10 12:28 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr 2017-12-10 12:28 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts 2017-12-10 12:28 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\SysWOW64\fr 2017-12-10 12:28 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\SysWOW64\0409 2017-12-10 12:28 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\system32\winrm 2017-12-10 12:28 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\system32\WCN 2017-12-10 12:28 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\system32\slmgr 2017-12-10 12:28 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts 2017-12-10 12:28 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\system32\fr 2017-12-10 12:28 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\system32\0409 2017-12-10 12:28 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\DigitalLocker 2017-12-10 12:28 - 2017-12-10 12:27 - 000351124 _____ C:\WINDOWS\system32\perfi00C.dat 2017-12-10 12:28 - 2017-12-10 12:27 - 000040694 _____ C:\WINDOWS\system32\perfd00C.dat 2017-12-10 12:25 - 2017-12-03 23:38 - 000835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2017-12-10 12:25 - 2017-12-03 23:38 - 000177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2017-12-10 12:22 - 2017-12-27 14:35 - 000000000 ___RD C:\Program Files (x86) 2017-12-10 12:22 - 2017-12-27 11:26 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2017-12-10 12:22 - 2017-12-27 11:26 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2017-12-10 12:22 - 2017-12-25 10:55 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2017-12-10 12:22 - 2017-12-22 14:09 - 000000000 ____D C:\WINDOWS\DeliveryOptimization 2017-12-10 12:22 - 2017-12-22 13:35 - 000000000 ___HD C:\Program Files\WindowsApps 2017-12-10 12:22 - 2017-12-22 13:35 - 000000000 ____D C:\WINDOWS\AppReadiness 2017-12-10 12:22 - 2017-12-15 14:06 - 000000000 ____D C:\WINDOWS\system32\NDF 2017-12-10 12:22 - 2017-12-14 11:05 - 000000000 ____D C:\WINDOWS\TextInput 2017-12-10 12:22 - 2017-12-14 11:05 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2017-12-10 12:22 - 2017-12-14 11:05 - 000000000 ____D C:\WINDOWS\system32\oobe 2017-12-10 12:22 - 2017-12-14 11:05 - 000000000 ____D C:\WINDOWS\system32\Dism 2017-12-10 12:22 - 2017-12-14 11:05 - 000000000 ____D C:\WINDOWS\system32\appraiser 2017-12-10 12:22 - 2017-12-10 13:20 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2017-12-10 12:22 - 2017-12-10 13:20 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2017-12-10 12:22 - 2017-12-10 13:15 - 000000167 _____ C:\WINDOWS\win.ini 2017-12-10 12:22 - 2017-12-10 13:15 - 000000000 ____D C:\Program Files\Common Files\system 2017-12-10 12:22 - 2017-12-10 12:50 - 000000000 ____D C:\ProgramData\USOPrivate 2017-12-10 12:22 - 2017-12-10 12:50 - 000000000 ____D C:\Program Files\windows nt 2017-12-10 12:22 - 2017-12-10 12:49 - 000000000 ____D C:\WINDOWS\system32\spool 2017-12-10 12:22 - 2017-12-10 12:49 - 000000000 ____D C:\WINDOWS\system32\FxsTmp 2017-12-10 12:22 - 2017-12-10 12:45 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2017-12-10 12:22 - 2017-12-10 12:42 - 000000000 ___RD C:\WINDOWS\PrintDialog 2017-12-10 12:22 - 2017-12-10 12:42 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2017-12-10 12:22 - 2017-12-10 12:36 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2017-12-10 12:22 - 2017-12-10 12:36 - 000000000 __RHD C:\Users\Public\Libraries 2017-12-10 12:22 - 2017-12-10 12:36 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2017-12-10 12:22 - 2017-12-10 12:36 - 000000000 ____D C:\WINDOWS\system32\config\RegBack 2017-12-10 12:22 - 2017-12-10 12:36 - 000000000 ____D C:\WINDOWS\CSC 2017-12-10 12:22 - 2017-12-10 12:31 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2017-12-10 12:22 - 2017-12-10 12:31 - 000000000 ___SD C:\WINDOWS\system32\F12 2017-12-10 12:22 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2017-12-10 12:22 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2017-12-10 12:22 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2017-12-10 12:22 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\ShellExperiences 2017-12-10 12:22 - 2017-12-10 12:31 - 000000000 ____D C:\WINDOWS\Provisioning 2017-12-10 12:22 - 2017-12-10 12:30 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2017-12-10 12:22 - 2017-12-10 12:30 - 000000000 ____D C:\Program Files\Windows Defender 2017-12-10 12:22 - 2017-12-10 12:29 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2017-12-10 12:22 - 2017-12-10 12:29 - 000000000 ____D C:\WINDOWS\system32\MUI 2017-12-10 12:22 - 2017-12-10 12:29 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2017-12-10 12:22 - 2017-12-10 12:28 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2017-12-10 12:22 - 2017-12-10 12:28 - 000000000 ___SD C:\WINDOWS\system32\dsc 2017-12-10 12:22 - 2017-12-10 12:28 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2017-12-10 12:22 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2017-12-10 12:22 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2017-12-10 12:22 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\SysWOW64\com 2017-12-10 12:22 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2017-12-10 12:22 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\system32\setup 2017-12-10 12:22 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\system32\migwiz 2017-12-10 12:22 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\system32\com 2017-12-10 12:22 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\IME 2017-12-10 12:22 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\Help 2017-12-10 12:22 - 2017-12-10 12:28 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2017-12-10 12:22 - 2017-12-10 12:28 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2017-12-10 12:22 - 2017-12-10 12:28 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 __SHD C:\WINDOWS\BitLockerDiscoveryVolumeContents 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 __SHD C:\Program Files\Windows Sidebar 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 __RSD C:\WINDOWS\media 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ___SD C:\WINDOWS\SysWOW64\Nui 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ___SD C:\WINDOWS\SysWOW64\Configuration 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ___SD C:\WINDOWS\system32\UNP 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ___SD C:\WINDOWS\system32\Nui 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ___SD C:\WINDOWS\system32\Configuration 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ___SD C:\WINDOWS\system32\AppV 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ___RD C:\WINDOWS\Offline Web Pages 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\Web 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\Vss 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\tracing 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\TAPI 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\SysWOW64\SMI 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\SysWOW64\ras 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\SysWOW64\NDF 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\SysWOW64\Msdtc 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\SysWOW64\Ipmi 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\SysWOW64\InputMethod 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\SysWOW64\IME 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\SysWOW64\icsxml 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicyUsers 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\SysWOW64\FxsTmp 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\SysWOW64\downlevel 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\SysWOW64\Bthprops 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\SysWOW64\AppLocker 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\SystemResources 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\SystemApps 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\winevt 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\ras 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\ProximityToast 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\PointOfService 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\MsDtc 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\Macromed 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\Ipmi 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\InputMethod 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\inetsrv 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\IME 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\icsxml 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\ias 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\hydrogen 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\GroupPolicyUsers 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\downlevel 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\DDFs 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\config\TxR 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\config\systemprofile 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\config\Journal 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\Bthprops 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\AppLocker 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\System 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\SKB 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\security 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\schemas 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\SchCache 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\Resources 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\rescache 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\RemotePackages 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\Registration 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\PLA 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\Performance 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\ModemLogs 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\L2Schemas 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\InputMethod 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\Globalization 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\GameBarPresenceWriter 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\Cursors 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\Branding 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\bcastdvr 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\appcompat 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\addins 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\ProgramData\WindowsHolographicDevices 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\Program Files\Windows Security 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\Program Files\Windows Portable Devices 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\Program Files\Windows Multimedia Platform 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\Program Files\Common Files\Services 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\Program Files (x86)\Windows Portable Devices 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\Program Files (x86)\windows nt 2017-12-10 12:22 - 2017-12-10 12:22 - 000000000 ____D C:\Program Files (x86)\Windows Multimedia Platform 2017-12-10 12:22 - 2017-12-10 12:19 - 000229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll 2017-12-10 12:22 - 2017-12-10 12:19 - 000215943 _____ C:\WINDOWS\SysWOW64\dssec.dat 2017-12-10 12:22 - 2017-12-10 12:19 - 000215943 _____ C:\WINDOWS\system32\dssec.dat 2017-12-10 12:22 - 2017-12-10 12:19 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll 2017-12-10 12:22 - 2017-12-10 12:19 - 000017635 _____ C:\WINDOWS\system32\Drivers\etc\services 2017-12-10 12:22 - 2017-12-10 12:19 - 000017572 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml 2017-12-10 12:22 - 2017-12-10 12:19 - 000004096 _____ C:\WINDOWS\system32\config\VSMIDK 2017-12-10 12:22 - 2017-12-10 12:19 - 000003683 _____ C:\WINDOWS\system32\Drivers\etc\lmhosts.sam 2017-12-10 12:22 - 2017-12-10 12:19 - 000001358 _____ C:\WINDOWS\system32\Drivers\etc\protocol 2017-12-10 12:22 - 2017-12-10 12:19 - 000000858 _____ C:\WINDOWS\system32\DefaultQuestions.json 2017-12-10 12:22 - 2017-12-10 12:19 - 000000741 _____ C:\WINDOWS\SysWOW64\NOISE.DAT 2017-12-10 12:22 - 2017-12-10 12:19 - 000000741 _____ C:\WINDOWS\system32\NOISE.DAT 2017-12-10 12:22 - 2017-12-10 12:19 - 000000407 _____ C:\WINDOWS\system32\Drivers\etc\networks 2017-12-10 12:22 - 2017-12-10 12:19 - 000000219 _____ C:\WINDOWS\system.ini 2017-12-10 12:22 - 2016-10-14 12:16 - 000104464 _____ (Khronos Group) C:\WINDOWS\SysWOW64\opencl.dll 2017-12-10 12:19 - 2017-12-14 13:11 - 000000000 ____D C:\WINDOWS\INF 2017-12-10 12:15 - 2017-12-16 22:07 - 000000000 ____D C:\WINDOWS\CbsTemp 2017-12-10 12:13 - 2017-12-27 14:08 - 079429632 _____ C:\WINDOWS\system32\config\SOFTWARE 2017-12-10 12:13 - 2017-12-27 14:08 - 015728640 _____ C:\WINDOWS\system32\config\SYSTEM 2017-12-10 12:13 - 2017-12-27 14:08 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2017-12-10 12:13 - 2017-12-27 14:08 - 000524288 _____ C:\WINDOWS\system32\config\DEFAULT 2017-12-10 12:13 - 2017-12-27 14:08 - 000032768 _____ C:\WINDOWS\system32\config\SECURITY 2017-12-10 12:13 - 2017-12-10 12:50 - 000000000 ____D C:\WINDOWS\Panther 2017-12-10 12:13 - 2017-12-10 12:49 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2017-12-10 12:13 - 2017-12-10 12:36 - 000069632 _____ C:\WINDOWS\system32\config\SAM 2017-12-10 12:13 - 2017-12-10 12:28 - 000000000 ____D C:\WINDOWS\servicing 2017-12-10 12:13 - 2017-12-10 12:22 - 000000000 ____D C:\WINDOWS\system32\SMI 2017-12-10 12:06 - 2017-12-10 12:36 - 000000000 ___HD C:\$SysReset 2017-12-10 11:17 - 2017-12-10 11:17 - 000000000 ___HD C:\$AV_ASW 2017-12-10 09:03 - 2017-08-30 16:03 - 000000000 __SHD C:\Users\DefaultAppPool\IntelGraphicsProfiles 2017-12-10 09:03 - 2017-08-29 11:52 - 000000000 ____D C:\Users\DefaultAppPool\AppData\LocalLow\Mozilla 2017-12-10 09:03 - 2017-08-29 11:24 - 000000000 ___RD C:\Users\DefaultAppPool\OneDrive 2017-12-10 08:55 - 2017-12-15 14:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2017-12-08 21:20 - 2017-12-10 12:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Andy 2017-12-08 21:12 - 2017-12-08 21:12 - 000000000 ____D C:\Users\Enzo\Andy 2017-12-08 16:20 - 2017-12-08 16:20 - 000000000 ____D C:\Users\Enzo\MathGraph32 2017-12-08 16:10 - 2017-12-08 16:10 - 000000000 ___HD C:\Users\Enzo\MicrosoftEdgeBackups 2017-12-08 02:16 - 2017-12-14 11:07 - 000000000 ___RD C:\Users\Enzo\3D Objects 2017-12-08 02:15 - 2017-12-08 02:15 - 000000000 _SHDL C:\Users\Default\Mes documents 2017-12-08 01:49 - 2017-12-08 01:49 - 004814848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2017-12-08 01:49 - 2017-12-08 01:49 - 004249600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2017-12-08 01:49 - 2017-12-08 01:49 - 001558856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2017-12-08 01:49 - 2017-12-08 01:49 - 001259344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2017-12-08 01:49 - 2017-12-08 01:49 - 001148216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2017-12-08 01:49 - 2017-12-08 01:49 - 001057824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll 2017-12-08 01:49 - 2017-12-08 01:49 - 001054280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 021754368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 017159680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 017084416 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 013703168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 012829696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 011923456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 004772352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 004385280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 003578368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 003331520 _____ C:\WINDOWS\system32\Windows.Mirage.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 003186688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 003163648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 003010720 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 002890240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 002869760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 002859520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 002783744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 002596352 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe 2017-12-08 01:48 - 2017-12-08 01:48 - 002573208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2017-12-08 01:48 - 2017-12-08 01:48 - 002491112 _____ C:\WINDOWS\SysWOW64\Windows.Mirage.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 002446744 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 002412168 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 002395032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2017-12-08 01:48 - 2017-12-08 01:48 - 002393600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 002339296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 002220952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 002208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001990160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001778584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001694224 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001664000 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001642520 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001636376 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001628056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001585376 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001495040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001490840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001488792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001474680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001470976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001432816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001425408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001420696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001413760 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2017-12-08 01:48 - 2017-12-08 01:48 - 001289216 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001277848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2017-12-08 01:48 - 2017-12-08 01:48 - 001208184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2017-12-08 01:48 - 2017-12-08 01:48 - 001200536 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2017-12-08 01:48 - 2017-12-08 01:48 - 001167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001124760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContentDeliveryManager.Utilities.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001090440 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2017-12-08 01:48 - 2017-12-08 01:48 - 001054720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001053592 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2017-12-08 01:48 - 2017-12-08 01:48 - 001012120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Services.TargetedContent.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000924136 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2017-12-08 01:48 - 2017-12-08 01:48 - 000902416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000899584 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000891800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2017-12-08 01:48 - 2017-12-08 01:48 - 000887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000840440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Perception.Stub.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000831384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000830464 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9on12.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000823808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000819096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVClient.exe 2017-12-08 01:48 - 2017-12-08 01:48 - 000813976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000791960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2017-12-08 01:48 - 2017-12-08 01:48 - 000770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys 2017-12-08 01:48 - 2017-12-08 01:48 - 000754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000749976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2017-12-08 01:48 - 2017-12-08 01:48 - 000746904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Services.TargetedContent.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000744856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000726016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2017-12-08 01:48 - 2017-12-08 01:48 - 000720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000713624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys 2017-12-08 01:48 - 2017-12-08 01:48 - 000703568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000703536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000669592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000661664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000660480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000654048 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000645528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000618496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000615768 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2017-12-08 01:48 - 2017-12-08 01:48 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000590944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000588288 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000557056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9on12.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000534528 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2017-12-08 01:48 - 2017-12-08 01:48 - 000519152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe 2017-12-08 01:48 - 2017-12-08 01:48 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000506256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Perception.Stub.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000495000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2017-12-08 01:48 - 2017-12-08 01:48 - 000474112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DictationManager.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000471960 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000464408 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000456704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000444928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000436120 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000428952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys 2017-12-08 01:48 - 2017-12-08 01:48 - 000424960 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000404888 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000398744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys 2017-12-08 01:48 - 2017-12-08 01:48 - 000394752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys 2017-12-08 01:48 - 2017-12-08 01:48 - 000373656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2017-12-08 01:48 - 2017-12-08 01:48 - 000372224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000361984 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatializerApo.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000354304 _____ (Microsoft Corporation) C:\WINDOWS\system32\WwaApi.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000354200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000353848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000351232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DictationManager.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2017-12-08 01:48 - 2017-12-08 01:48 - 000319352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000293888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WwaApi.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExecModelClient.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000285080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2017-12-08 01:48 - 2017-12-08 01:48 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatializerApo.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe 2017-12-08 01:48 - 2017-12-08 01:48 - 000264040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe 2017-12-08 01:48 - 2017-12-08 01:48 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2017-12-08 01:48 - 2017-12-08 01:48 - 000242176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExecModelClient.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupManager.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000230296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2017-12-08 01:48 - 2017-12-08 01:48 - 000211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2017-12-08 01:48 - 2017-12-08 01:48 - 000204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000198888 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000187288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys 2017-12-08 01:48 - 2017-12-08 01:48 - 000175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ContentDeliveryManager.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SIUF.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000160256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smartscreenps.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000149400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys 2017-12-08 01:48 - 2017-12-08 01:48 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceUpdateAgent.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000082840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys 2017-12-08 01:48 - 2017-12-08 01:48 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\acppage.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe 2017-12-08 01:48 - 2017-12-08 01:48 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\acppage.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadjcsp.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000048112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2017-12-08 01:48 - 2017-12-08 01:48 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwifimp.sys 2017-12-08 01:42 - 2017-09-28 15:50 - 001166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2017-12-08 01:42 - 2017-09-28 15:50 - 000124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2017-12-08 01:42 - 2017-09-28 15:50 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2017-12-08 01:42 - 2017-09-22 18:19 - 000778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2017-12-08 01:42 - 2017-09-22 18:19 - 000103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2017-12-08 01:42 - 2017-09-22 18:19 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2017-12-08 01:34 - 2017-12-08 01:34 - 000000000 ____H C:\$WINRE_BACKUP_PARTITION.MARKER 2017-12-07 22:43 - 2017-12-08 02:16 - 000000000 ____D C:\Windows10Upgrade 2017-12-07 22:43 - 2017-12-08 02:15 - 000000000 ___HD C:\$GetCurrent 2017-12-07 22:43 - 2017-12-07 22:43 - 000000814 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Assistant Mise à jour de Windows 10.lnk 2017-12-07 19:22 - 2017-12-08 01:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud 2017-12-07 19:22 - 2017-12-07 19:22 - 000002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk 2017-12-07 18:18 - 2017-12-10 13:21 - 000002729 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk 2017-12-07 18:18 - 2017-12-10 13:21 - 000002662 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive Entreprise.lnk 2017-12-07 18:18 - 2017-12-10 13:21 - 000002656 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk 2017-12-07 18:18 - 2017-12-10 13:21 - 000002648 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk 2017-12-07 18:18 - 2017-12-10 13:21 - 000002648 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk 2017-12-07 18:18 - 2017-12-10 13:21 - 000002642 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk 2017-12-07 18:18 - 2017-12-10 13:21 - 000002628 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk 2017-12-07 18:18 - 2017-12-10 13:21 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016 2017-12-07 18:11 - 2017-12-10 12:57 - 000000000 ____D C:\Users\Enzo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2017-12-07 18:11 - 2017-12-10 12:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2017-12-07 16:55 - 2017-12-07 16:55 - 000000000 ____D C:\Users\Enzo\.oracle_jre_usage 2017-12-07 16:48 - 2017-12-07 16:48 - 000000000 ____D C:\Users\Enzo\OrdiRegion 2017-12-07 16:46 - 2017-12-27 14:08 - 000000000 __SHD C:\Users\Enzo\IntelGraphicsProfiles 2017-12-07 16:46 - 2017-12-10 12:55 - 000000000 ___RD C:\Users\Enzo\OneDrive 2017-12-07 16:46 - 2017-12-10 11:52 - 000000000 ____D C:\Users\Enzo\AppData\LocalLow\Mozilla 2017-12-07 15:40 - 2017-12-07 15:40 - 000000000 _SHDL C:\Users\Default\Voisinage réseau 2017-12-07 15:40 - 2017-12-07 15:40 - 000000000 _SHDL C:\Users\Default\Voisinage d'impression 2017-12-07 15:40 - 2017-12-07 15:40 - 000000000 _SHDL C:\Users\Default\Modèles 2017-12-07 15:40 - 2017-12-07 15:40 - 000000000 _SHDL C:\Users\Default\Menu Démarrer 2017-12-07 15:40 - 2017-12-07 15:40 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2017-12-07 15:40 - 2017-12-07 15:40 - 000000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2017-12-07 15:40 - 2017-12-07 15:40 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programmes 2017-12-07 15:40 - 2017-12-07 15:40 - 000000000 _SHDL C:\Documents and Settings 2017-12-07 15:39 - 2017-08-30 16:03 - 000000000 __SHD C:\Users\Default\IntelGraphicsProfiles 2017-12-07 15:39 - 2017-08-29 11:52 - 000000000 ____D C:\Users\Default\AppData\LocalLow\Mozilla 2017-12-07 15:39 - 2017-08-29 11:52 - 000000000 ____D C:\Users\Default User\AppData\LocalLow\Mozilla 2017-12-07 15:39 - 2017-08-29 11:24 - 000000000 ___RD C:\Users\Default\OneDrive ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2017-12-14 11:07 - 2017-03-03 15:22 - 000000000 __RHD C:\Users\Public\AccountPictures 2017-12-10 12:48 - 2017-03-03 17:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2017-12-10 12:41 - 2017-08-26 09:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos 2017-12-10 12:41 - 2017-03-03 17:43 - 000000000 ____D C:\Intel 2017-12-10 12:36 - 2017-08-25 12:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MCNL 2017-12-10 12:36 - 2017-08-25 12:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aide et Support 2017-12-10 12:36 - 2017-03-03 17:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Liens Internet 2017-12-10 12:18 - 2017-09-29 14:40 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthmodem.sys 2017-12-10 09:18 - 2017-08-25 12:51 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2017-12-08 01:58 - 2017-08-25 12:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\doPDF 8 2017-12-08 01:58 - 2017-08-25 12:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2017-12-08 01:58 - 2017-08-25 12:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2017-12-08 01:58 - 2017-08-25 12:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 5.2 2017-12-08 01:58 - 2017-03-03 17:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Experience Index 2017-12-08 01:48 - 2017-09-29 14:42 - 001587200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2017-12-08 01:48 - 2017-09-29 14:41 - 001856000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2017-12-08 01:48 - 2017-09-29 14:41 - 000139672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys 2017-12-08 01:48 - 2017-09-29 14:41 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll ==================== Fichiers à la racine de certains dossiers ======= 2017-12-25 22:54 - 2017-12-27 11:44 - 000000079 _____ () C:\Users\Enzo\AppData\Roaming\ArchiFacile.json Certains fichiers dans TEMP: ==================== 2017-12-27 14:45 - 2017-12-27 14:45 - 000695808 ____N () C:\Users\Enzo\AppData\Local\Temp\sqlite-3.8.11.2-00424201-f0e9-4921-9769-091d4fb07d90-sqlitejdbc.dll 2017-12-13 12:43 - 2017-12-13 12:43 - 000695808 ____N () C:\Users\Enzo\AppData\Local\Temp\sqlite-3.8.11.2-1c0ac611-b37c-42a2-99bd-aef55e2fe414-sqlitejdbc.dll 2017-12-25 22:44 - 2017-12-25 22:44 - 000695808 ____N () C:\Users\Enzo\AppData\Local\Temp\sqlite-3.8.11.2-53255eea-65f5-4e1c-aa93-c3582a1ecb10-sqlitejdbc.dll 2017-12-26 12:16 - 2017-12-26 12:16 - 000695808 ____N () C:\Users\Enzo\AppData\Local\Temp\sqlite-3.8.11.2-560a82c0-79e9-4dc1-b5ad-9718d50cec39-sqlitejdbc.dll 2017-12-10 13:23 - 2017-12-10 13:23 - 000695808 ____N () C:\Users\Enzo\AppData\Local\Temp\sqlite-3.8.11.2-9ea411f2-c4b8-4076-bd76-770fc789de28-sqlitejdbc.dll 2017-12-15 15:51 - 2017-12-15 15:51 - 000695808 ____N () C:\Users\Enzo\AppData\Local\Temp\sqlite-3.8.11.2-9edcbf0c-a40e-477c-8a23-1421e1fa6afb-sqlitejdbc.dll 2017-12-11 10:31 - 2017-12-11 10:31 - 000695808 ____N () C:\Users\Enzo\AppData\Local\Temp\sqlite-3.8.11.2-a6533fbb-d6fa-48ff-a15a-a3bfe1c66bf7-sqlitejdbc.dll 2017-12-21 18:00 - 2017-12-21 18:00 - 000695808 ____N () C:\Users\Enzo\AppData\Local\Temp\sqlite-3.8.11.2-bacd7f4b-59ee-4392-a757-49065277ffb8-sqlitejdbc.dll 2017-12-21 18:00 - 2017-12-21 18:00 - 000695808 ____N () C:\Users\Enzo\AppData\Local\Temp\sqlite-3.8.11.2-c89de185-5efe-4584-803c-5a5e0339d2fc-sqlitejdbc.dll 2017-12-21 18:05 - 2017-12-21 18:05 - 000695808 ____N () C:\Users\Enzo\AppData\Local\Temp\sqlite-3.8.11.2-cf7b7f9a-7874-4de4-b865-56e3906a52a8-sqlitejdbc.dll 2017-12-25 23:01 - 2017-12-25 23:01 - 000695808 ____N () C:\Users\Enzo\AppData\Local\Temp\sqlite-3.8.11.2-f7cf82a6-b01c-482a-b29f-a5d075afd318-sqlitejdbc.dll ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2017-12-10 12:36 ==================== Fin de FRST.txt ============================