Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 27.01.2018 Exécuté par hp (administrateur) sur ICORE5 (02-02-2018 22:43:39) Exécuté depuis C:\Users\hp\Desktop Profils chargés: hp (Profils disponibles: hp) Platform: Windows 10 Home Version 1709 16299.192 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: FF) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (Softex Inc.) C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe (Lexmark International, Inc.) C:\Windows\System32\spool\drivers\x64\3\lxduserv.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Rene.E Laboratory) C:\Program Files (x86)\Rene.E Laboratory\Becca\x64\bcservice.exe () C:\Program Files (x86)\Synology\CloudStation\bin\vss-service-x64.exe (Performix LLC) C:\Program Files (x86)\Adguard\AdguardSvc.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe ( ) C:\Windows\System32\lxducoms.exe () C:\Program Files\CyberLink\Shared files\RichVideo64.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe () C:\Program Files (x86)\Synology\CloudStationBackup\bin\vss-service-x64.exe (DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe () C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe (Reason Software Company Inc.) C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe () C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe (Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.12.17007.18011-0\MsMpEng.exe (CyberGhost S.R.L) C:\Program Files\CyberGhost 6\CyberGhost.Service.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe (Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.12.17007.18011-0\NisSrv.exe (wyDay) C:\Program Files\CyberGhost 6\wyUpdate.exe () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe (WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe (HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (HP Inc.) C:\Program Files\HP\HP Touchpoint Analytics Client\TouchpointAnalyticsClientService.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (Reason Software Company Inc.) C:\Program Files (x86)\Unchecky\bin\unchecky_bg.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Hewlett-Packard) C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe (Hewlett-Packard) C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe (Hewlett-Packard) C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe () C:\Program Files (x86)\Lexmark 5600-6600 Series\lxdumon.exe (Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.) C:\Program Files\Logitech\LogiOptions\LogiOptions.exe (Dashlane, Inc.) C:\Users\hp\AppData\Roaming\Dashlane\Dashlane.exe (Dashlane, Inc.) C:\Users\hp\AppData\Roaming\Dashlane\DashlanePlugin.exe (Logitech, Inc.) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.exe (Logitech) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOverlay.exe (Spotify Ltd) C:\Users\hp\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Logitech, Inc.) C:\Program Files\Common Files\logishrd\KHAL3\KHALMNPR.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Logitech, Inc.) C:\ProgramData\Logishrd\LogiOptions\Software\Current\laclient\laclient.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Gigatribe) C:\Program Files (x86)\GigaTribe\gigatribe.exe () C:\Program Files (x86)\PdaNet for Android\PdaNetPC.exe (Synology Inc.) C:\Users\hp\AppData\Local\CloudStation\CloudStation.app\bin\cloud-drive-ui.exe (Synology Inc.) C:\Users\hp\AppData\Local\CloudStation\CloudStation.app\bin\cloud-drive-connect.exe (Synology Inc.) C:\Users\hp\AppData\Local\CloudStation\CloudStation.app\bin\cloud-drive-daemon.exe () C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe () C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [14040792 2015-07-07] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1794904 2014-05-18] (NVIDIA Corporation) HKLM\...\Run: [SimplePass] => C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe [3962936 2014-03-28] (Hewlett-Packard) HKLM\...\Run: [OPBHOBroker] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe [415288 2014-03-28] (Hewlett-Packard) HKLM\...\Run: [OPBHOBrokerDesktop] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe [415288 2014-03-28] (Hewlett-Packard) HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [571000 2014-08-14] (Acronis) HKLM\...\Run: [lxdumon.exe] => C:\Program Files (x86)\Lexmark 5600-6600 Series\lxdumon.exe [676520 2010-02-04] () HKLM\...\Run: [EzPrint] => C:\Program Files (x86)\Lexmark 5600-6600 Series\ezprint.exe [131752 2010-02-04] (Lexmark International Inc.) HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3113592 2015-08-26] (Logitech, Inc.) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch HKLM\...\Run: [LogiOptions] => C:\Program Files\Logitech\LogiOptions\LogiOptions.exe [2142328 2017-12-18] (Logitech, Inc.) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [297272 2017-12-11] (Apple Inc.) HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [5354760 2015-07-23] (Acronis) HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [693152 2015-07-19] (Acronis International GmbH) HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2137744 2016-10-08] (Wondershare) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [67896 2017-12-08] (Apple Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-12-19] (Oracle Corporation) Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.) HKU\S-1-5-21-2340712917-288545405-3420014623-1001\...\Run: [PrtScr by FireStarter] => C:\Program Files (x86)\PrtScr\PrtScr.exe [2766336 2013-07-14] () HKU\S-1-5-21-2340712917-288545405-3420014623-1001\...\Run: [Dashlane] => C:\Users\hp\AppData\Roaming\Dashlane\Dashlane.exe [456656 2018-01-16] (Dashlane, Inc.) HKU\S-1-5-21-2340712917-288545405-3420014623-1001\...\Run: [DashlanePlugin] => C:\Users\hp\AppData\Roaming\Dashlane\DashlanePlugin.exe [504784 2018-01-16] (Dashlane, Inc.) HKU\S-1-5-21-2340712917-288545405-3420014623-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [10257872 2018-01-09] (Piriform Ltd) HKU\S-1-5-21-2340712917-288545405-3420014623-1001\...\Run: [Gyazo] => C:\Program Files (x86)\Gyazo\GyStation.exe [5345672 2017-12-21] (Nota Inc.) HKU\S-1-5-21-2340712917-288545405-3420014623-1001\...\Run: [CyberGhost] => C:\Program Files\CyberGhost 6\CyberGhost.exe [1223728 2017-02-06] (CyberGhost S.R.L.) HKU\S-1-5-21-2340712917-288545405-3420014623-1001\...\Run: [Discord] => C:\Users\hp\AppData\Local\Discord\app-0.0.300\Discord.exe [57821176 2018-01-08] (Discord Inc.) HKU\S-1-5-21-2340712917-288545405-3420014623-1001\...\Run: [SynchronossPC] => C:\Program Files\SFR\SFR Cloud\SFRCloud.exe [2626496 2017-02-16] () HKU\S-1-5-21-2340712917-288545405-3420014623-1001\...\Run: [Adguard] => C:\Program Files (x86)\Adguard\Adguard.exe [5715728 2017-11-21] (Performix LLC) HKU\S-1-5-21-2340712917-288545405-3420014623-1001\...\Run: [Spotify] => C:\Users\hp\AppData\Roaming\Spotify\Spotify.exe [21099408 2018-01-24] (Spotify Ltd) HKU\S-1-5-21-2340712917-288545405-3420014623-1001\...\Run: [com.deezer.deezer-desktop] => C:\Users\hp\AppData\Local\Programs\deezer-desktop\Deezer.exe [56505152 2017-12-11] (Deezer) HKU\S-1-5-21-2340712917-288545405-3420014623-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2017-12-08] (Apple Inc.) HKU\S-1-5-21-2340712917-288545405-3420014623-1001\...\Run: [iCloudDrive] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [110392 2017-12-08] (Apple Inc.) HKU\S-1-5-21-2340712917-288545405-3420014623-1001\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [67896 2017-12-08] (Apple Inc.) HKU\S-1-5-21-2340712917-288545405-3420014623-1001\...\Run: [iCloudPhotos] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe [356664 2017-12-08] (Apple Inc.) HKU\S-1-5-21-2340712917-288545405-3420014623-1001\...\Run: [f.lux] => C:\Users\hp\AppData\Local\FluxSoftware\Flux\flux.exe [1679864 2018-01-08] (f.lux Software LLC) HKU\S-1-5-21-2340712917-288545405-3420014623-1001\...\Run: [Spotify Web Helper] => C:\Users\hp\AppData\Roaming\Spotify\SpotifyWebHelper.exe [780688 2018-01-24] (Spotify Ltd) HKU\S-1-5-21-2340712917-288545405-3420014623-1001\...\MountPoints2: {15ab02f8-ed7b-11e7-82fd-fcaa14c9bf3a} - "F:\SETUP.EXE" HKU\S-1-5-21-2340712917-288545405-3420014623-1001\...\MountPoints2: {5c5ef5cf-ca3d-11e7-82f5-fcaa14c9bf3a} - "F:\startme.exe" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2017-02-01] ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.500\SSScheduler.exe (McAfee, Inc.) Startup: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Envoyer à OneNote.lnk [2017-12-29] ShortcutTarget: Envoyer à OneNote.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation) Startup: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Gameroom.lnk [2018-01-07] ShortcutTarget: Facebook Gameroom.lnk -> C:\Users\hp\AppData\Local\Facebook\Games\FacebookGameroom.exe (Facebook) Startup: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GigaTribe.lnk [2017-05-15] ShortcutTarget: GigaTribe.lnk -> C:\Program Files (x86)\GigaTribe\gigatribe.exe (Gigatribe) Startup: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2016-12-21] ShortcutTarget: MEGAsync.lnk -> C:\Users\hp\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited) Startup: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PdaNet Desktop.lnk [2016-12-28] ShortcutTarget: PdaNet Desktop.lnk -> C:\Program Files (x86)\PdaNet for Android\PdaNetPC.exe () Startup: C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Synology Cloud Station Drive.lnk [2018-02-02] ShortcutTarget: Synology Cloud Station Drive.lnk -> C:\Program Files (x86)\Synology\CloudStation\bin\launcher.exe (Synology Inc.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{1a41f567-43a4-444f-8385-d6e287edce73}: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{c795f6e8-4cab-47b8-87f7-3b487ccb37a7}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPDSK14/3 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPDSK14/3 HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPDSK14/3 HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPDSK14/3 HKU\S-1-5-21-2340712917-288545405-3420014623-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com/?pc=COSP&ptag=D013118-A62DE60317D204BF0B0F&form=CONMHP&conlogo=CT3332020 HKU\S-1-5-21-2340712917-288545405-3420014623-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPDSK14/3 SearchScopes: HKLM -> {7A2C5850-0802-4253-88A9-018D9FE0C105} URL = hxxp://www.amazon.fr/s/ref=azs_osd_ieafr?ie=UTF-8&tag=hp-fr1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 -> {7A2C5850-0802-4253-88A9-018D9FE0C105} URL = hxxp://www.amazon.fr/s/ref=azs_osd_ieafr?ie=UTF-8&tag=hp-fr1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKU\S-1-5-21-2340712917-288545405-3420014623-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?pc=COSP&ptag=D013118-A62DE60317D204BF0B0F&form=CONBDF&conlogo=CT3332020&q={searchTerms} SearchScopes: HKU\S-1-5-21-2340712917-288545405-3420014623-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?pc=COSP&ptag=D013118-A62DE60317D204BF0B0F&form=CONBDF&conlogo=CT3332020&q={searchTerms} SearchScopes: HKU\S-1-5-21-2340712917-288545405-3420014623-1001 -> {7A2C5850-0802-4253-88A9-018D9FE0C105} URL = hxxp://www.amazon.fr/s/ref=azs_osd_ieafr?ie=UTF-8&tag=hp-fr1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2018-01-21] (Microsoft Corporation) BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2015-08-26] (Logitech, Inc.) BHO: Pas de nom -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> Pas de fichier BHO-x32: Dashlane BHO -> {42D79B50-CC4A-4A8E-860F-BE674AF053A2} -> C:\Users\hp\AppData\Roaming\Dashlane\ie\Dashlanei.dll [2018-01-16] (Dashlane, Inc.) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\ssv.dll [2018-01-22] (Oracle Corporation) BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2014-04-04] (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2015-08-26] (Logitech, Inc.) BHO-x32: Lexmark -> {D2C5E510-BE6D-42CC-9F61-E4F939078474} -> C:\Program Files\Lexmark Printable Web\bho.dll [2010-02-04] () BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\jp2ssv.dll [2018-01-22] (Oracle Corporation) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-07-21] (HP Inc.) Toolbar: HKLM-x32 - Dashlane Toolbar - {669695BC-A811-4A9D-8CDF-BA8C795F261C} - C:\Users\hp\AppData\Roaming\Dashlane\ie\KWIEBar.dll [2018-01-16] (Dashlane, Inc.) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-01-21] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-01-21] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-01-21] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-01-21] (Microsoft Corporation) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - Pas de fichier Edge: ====== Edge Session Restore: HKU\S-1-5-21-2340712917-288545405-3420014623-1001 -> est activé. Edge Extension: (Adblock Plus) -> 10_EyeoGmbHAdblockPlus_d55gg7py3s0m0 => C:\Program Files\WindowsApps\EyeoGmbH.AdblockPlus_0.9.9.0_neutral__d55gg7py3s0m0 [2017-11-06] Edge Extension: (Tampermonkey) -> EdgeExtension_JanBiniokTampermonkey_gz80c7jhhn2hw => C:\Program Files\WindowsApps\JanBiniok.Tampermonkey_4.5.5648.0_neutral__gz80c7jhhn2hw [2018-01-28] FireFox: ======== FF DefaultProfile: acdqawbz.default-1483469415897-1510209190172 FF DefaultProfile: canto.85@sfr.fr FF ProfilePath: C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\acdqawbz.default-1483469415897-1510209190172 [2018-02-02] FF Extension: (Enhancer for YouTube™) - C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\acdqawbz.default-1483469415897-1510209190172\Extensions\enhancerforyoutube@maximerf.addons.mozilla.org.xpi [2018-02-01] FF Extension: (Tampermonkey) - C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\acdqawbz.default-1483469415897-1510209190172\Extensions\firefox@tampermonkey.net.xpi [2017-12-17] FF Extension: (Awesome Screenshot - Capture, Annotate & More) - C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\acdqawbz.default-1483469415897-1510209190172\Extensions\jid0-GXjLLfbCoAx0LcltEdFrEkQdQPI@jetpack.xpi [2017-11-15] FF Extension: (Emoji Cheatsheet for GitHub, Basecamp etc.) - C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\acdqawbz.default-1483469415897-1510209190172\Extensions\jid1-Xo5SuA6qc1DFpw@jetpack.xpi [2017-11-09] FF Extension: (Search image) - C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\acdqawbz.default-1483469415897-1510209190172\Extensions\searchimage@searchimage.fr.xpi [2017-11-09] FF Extension: (uBlock Origin) - C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\acdqawbz.default-1483469415897-1510209190172\Extensions\uBlock0@raymondhill.net.xpi [2018-02-01] FF Extension: (Lilo - Moteur de recherche) - C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\acdqawbz.default-1483469415897-1510209190172\Extensions\{3004c9c0-ac9c-4ae2-9ac8-c59948bdd021}.xpi [2018-01-11] FF Extension: (AddToAny: Share Anywhere) - C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\acdqawbz.default-1483469415897-1510209190172\Extensions\{35d49e56-0142-4a7b-82a8-6ace7d28ff92}.xpi [2017-11-15] FF Extension: (GrepolisToolkit, le script !) - C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\acdqawbz.default-1483469415897-1510209190172\Extensions\{72972838-4280-472c-8c1b-bfaf26738309}.xpi [2018-01-26] FF Extension: (Greasemonkey) - C:\Users\hp\AppData\Roaming\Mozilla\Firefox\Profiles\acdqawbz.default-1483469415897-1510209190172\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2018-01-19] FF ProfilePath: C:\Users\hp\AppData\Roaming\Moonchild Productions\Pale Moon\Profiles\ossp4u1a.default [2018-02-02] FF Extension: (Français (FR) Language Pack) - C:\Users\hp\AppData\Roaming\Moonchild Productions\Pale Moon\Profiles\ossp4u1a.default\Extensions\langpack-fr@palemoon.org.xpi [2017-05-14] [Legacy] [non signé] FF Extension: (Pale Moon Locale Switcher) - C:\Users\hp\AppData\Roaming\Moonchild Productions\Pale Moon\Profiles\ossp4u1a.default\Extensions\pm-localeswitch@palemoon.org.xpi [2017-01-03] [Legacy] [non signé] FF Extension: (uBlock Origin) - C:\Users\hp\AppData\Roaming\Moonchild Productions\Pale Moon\Profiles\ossp4u1a.default\Extensions\uBlock0@raymondhill.net.xpi [2017-05-15] [Legacy] FF Extension: (NoScript) - C:\Users\hp\AppData\Roaming\Moonchild Productions\Pale Moon\Profiles\ossp4u1a.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2017-01-04] [Legacy] FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2017-04-08] [Legacy] [non signé] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_28_0_0_137.dll [2018-01-09] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin: synology.com/SurveillancePlugin_x86_64 -> C:\Program Files (x86)\Synology\SurveillancePlugin\1.0.0.975\npSurveillancePlugin_x86_64.dll [2016-07-19] (Synology) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_28_0_0_137.dll [2018-01-09] () FF Plugin-x32: @camfrogweb.com/Camfrog Web Plugin,version=2,0 -> C:\Program Files (x86)\CFWebAdvancedU2\npcamfrogweb.dll [2011-06-03] (Camshare Inc.) FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-13] () FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2014-05-13] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [Pas de fichier] FF Plugin-x32: @java.com/DTPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\dtplugin\npDeployJava1.dll [2018-01-22] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\plugin2\npjp2.dll [2018-01-22] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-01-21] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-08-25] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-08-25] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-15] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-15] (Google Inc.) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2013-08-06] () FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-11-04] (Adobe Systems Inc.) FF Plugin-x32: synology.com/SurveillancePlugin -> C:\Program Files (x86)\Synology\SurveillancePlugin\1.0.0.975\npSurveillancePlugin.dll [2016-07-19] (Synology) Chrome: ======= CHR HomePage: Default -> hxxp://www.orange.fr/portail CHR StartupUrls: Default -> "","hxxp://r.orange.fr/r/Ohome_portail?ref=O_OI_defaultPage_CH","hxxp://www.dosearches.com/?utm_source=b&utm_medium=mp3&utm_campaign=rg&utm_content=hp&from=mp3&uid=ST3500830AS_9QG38NYBXXXX9QG38NYB&ts=1383758329","hxxp://www.google.com","hxxp://iron-start.com/" CHR Session Restore: Default -> est activé. CHR Profile: C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default [2018-02-02] CHR Extension: (Slides) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-12-11] CHR Extension: (Docs) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-12-11] CHR Extension: (Google Drive) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-12-11] CHR Extension: (WOT: Web of Trust, Évaluation de la réputation de sites Web) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp [2018-01-01] CHR Extension: (YouTube) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-12-11] CHR Extension: (Mon adresse IP) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccfphbgnmmhjfalloifioeeeokjemobf [2017-12-11] CHR Extension: (Adblock Plus) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2017-12-11] CHR Extension: (Tampermonkey) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2017-12-11] CHR Extension: (Flash Actu) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\djaoeafihpfaakkpdobmhedohgnmhpbp [2017-12-11] CHR Extension: (Logitech Smooth Scrolling) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkpejdfnpdkhifgbancbammdijojoffk [2017-12-11] CHR Extension: (Boite Mail) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlchjghldbjlgoepgdahghpjnlfglako [2017-12-11] CHR Extension: (Grepolis Report Converter Revolution Tools) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\eediamimojgbnjfaalcnlonenfdcogop [2018-01-01] CHR Extension: (Adobe Acrobat) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-12-11] CHR Extension: (GrepolisToolkit, le script !) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\fehekolnlpmcpflkgchknkboeanmhicc [2017-12-11] CHR Extension: (Sheets) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-12-11] CHR Extension: (Google Docs hors connexion) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-12-11] CHR Extension: (AdBlock) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-12-11] CHR Extension: (HP Network Check Launcher) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkfpchpiljkaemlpmpebnglgkomamfeo [2017-12-11] CHR Extension: (Itineraire - Offres shopping) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlincbpgbkpbjepghokdnhnnpphmegig [2017-12-11] CHR Extension: (PixelBlock) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmpmfcjnflbcoidlgapblgpgbilinlem [2017-12-11] CHR Extension: (Grepolis) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\kkgkognjknhcgbgbeijjondlikfkgnog [2017-12-11] CHR Extension: (User-Agent Switcher) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkmofgnohbedopheiphabfhfjgkhfcgf [2017-12-11] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-12-11] CHR Extension: (GrepoIntel's Uploading for Grepolis) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofeiogbcdolajakogdmknlnjggpmdnma [2017-12-11] CHR Extension: (Gmail) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-12-11] CHR Extension: (Chrome Media Router) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-12-11] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [jkfpchpiljkaemlpmpebnglgkomamfeo] - hxxps://clients2.google.com/service/update2/crx ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 Adguard Service; C:\Program Files (x86)\Adguard\AdguardSvc.exe [129296 2017-11-21] (Performix LLC) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2017-11-27] (Apple Inc.) R2 Becca Service; C:\Program Files (x86)\Rene.E Laboratory\Becca\x64\bcservice.exe [63984 2016-03-30] (Rene.E Laboratory) R2 CG6Service; C:\Program Files\CyberGhost 6\CyberGhost.Service.exe [76848 2017-02-06] (CyberGhost S.R.L) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [7780528 2018-01-15] (Microsoft Corporation) R2 Cloud Station Backup VSS Service x64; C:\Program Files (x86)\Synology\CloudStationBackup\bin\vss-service-x64.exe [287240 2016-05-18] () [Fichier non signé] R2 Cloud Station Drive VSS Service x64; C:\Program Files (x86)\Synology\CloudStation\bin\vss-service-x64.exe [287240 2016-06-21] () [Fichier non signé] R2 ESRV_SVC_WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [414360 2016-02-05] () R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227904 2014-04-24] (WildTangent) R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [332144 2017-11-21] (HP Inc.) R2 HPTouchpointAnalyticsService; C:\Program Files\HP\HP Touchpoint Analytics Client\TouchpointAnalyticsClientService.exe [332216 2017-11-22] (HP Inc.) R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [365040 2017-10-20] (Intel Corporation) R2 lxduCATSCustConnectService; C:\WINDOWS\system32\spool\DRIVERS\x64\3\\lxduserv.exe [29184 2009-10-16] (Lexmark International, Inc.) R2 lxdu_device; C:\WINDOWS\system32\lxducoms.exe [1039360 2009-10-16] ( ) R2 lxdu_device; C:\WINDOWS\SysWOW64\lxducoms.exe [589824 2009-10-16] ( ) S3 McAWFwk; C:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe [334608 2013-07-29] (McAfee, Inc.) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.500\McCHSvc.exe [329480 2017-01-19] (McAfee, Inc.) R2 omniserv; C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [88064 2014-03-28] (Softex Inc.) [Fichier non signé] R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [389896 2014-04-14] () S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [117264 2010-06-25] (CACE Technologies, Inc.) R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [754784 2016-07-22] (DEVGURU Co., LTD.) R2 SystemUsageReportSvc_WILLAMETTE; C:\Program Files (x86)\Intel Driver Update Utility\SUR\SurSvc.exe [115864 2016-02-05] () R2 Unchecky; C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe [294168 2017-10-04] (Reason Software Company Inc.) R2 UsbClientService; C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe [248840 2016-03-18] () [Fichier non signé] S3 USER_ESRV_SVC_WILLAMETTE; C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe [414360 2016-02-05] () R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18011-0\NisSrv.exe [356168 2018-01-19] (Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18011-0\MsMpEng.exe [105792 2018-01-19] (Microsoft Corporation) S3 WsDrvInst; C:\Program Files (x86)\Wondershare\MobileTrans\DriverInstall.exe [115856 2016-10-18] (Wondershare) R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R1 adgnetworkwfpdrv; C:\WINDOWS\System32\drivers\adgnetworkwfpdrv.sys [81000 2017-03-27] () R1 CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [91912 2013-11-12] (CyberLink) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.) R0 file_tracker; C:\WINDOWS\System32\DRIVERS\file_tracker.sys [296736 2016-06-18] (Acronis International GmbH) S3 MBAMWebProtection; C:\WINDOWS\system32\drivers\mwac.sys [91584 2017-09-15] (Malwarebytes) R1 MpKslb0fee329; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{63052B01-C7D7-4BAF-91EB-1B343DBAF840}\MpKslb0fee329.sys [58120 2018-02-02] (Microsoft Corporation) R2 NPF; C:\WINDOWS\System32\drivers\npf.sys [35344 2010-06-25] (CACE Technologies, Inc.) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvhdc.inf_amd64_261118f104023aa1\nvlddmkm.sys [15605360 2017-09-21] (NVIDIA Corporation) S3 ptun0901; C:\WINDOWS\System32\drivers\ptun0901.sys [27136 2016-06-15] (The OpenVPN Project) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [895256 2015-06-23] (Realtek ) S3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [410848 2015-08-13] (Realsil Semiconductor Corporation) R3 semav6msr64; C:\WINDOWS\system32\drivers\semav6msr64.sys [21984 2015-06-04] () S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.) R2 tib; C:\WINDOWS\system32\DRIVERS\tib.sys [1058632 2016-06-18] (Acronis International GmbH) R2 tib_mounter; C:\WINDOWS\system32\DRIVERS\tib_mounter.sys [248648 2016-06-18] (Acronis International GmbH) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46072 2018-01-19] (Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [288848 2018-01-19] (Microsoft Corporation) S3 wdm_usb; C:\WINDOWS\system32\DRIVERS\usb2ser.sys [159936 2016-08-16] (MBB) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [129616 2018-01-19] (Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2018-02-02 22:43 - 2018-02-02 22:45 - 000036858 _____ C:\Users\hp\Desktop\FRST.txt 2018-02-02 22:43 - 2018-02-02 22:43 - 000000000 ____D C:\FRST 2018-02-02 22:42 - 2018-02-02 22:42 - 002393088 _____ (Farbar) C:\Users\hp\Desktop\FRST64.exe 2018-02-01 18:54 - 2018-02-01 18:54 - 000218153 _____ C:\Users\hp\Desktop\ZHPDiag.txt 2018-02-01 18:47 - 2018-02-01 18:47 - 002968960 _____ C:\Users\hp\Downloads\ZHPDiag3(1).exe 2018-01-31 23:30 - 2018-02-02 11:33 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2018-01-31 12:58 - 2018-01-31 12:58 - 008206624 _____ (Malwarebytes) C:\Users\hp\Downloads\adwcleaner-7-0-7-0.exe 2018-01-31 12:00 - 2018-01-31 12:00 - 011205832 _____ (Piriform Ltd) C:\Users\hp\Downloads\ccsetup539.exe 2018-01-31 11:56 - 2018-01-31 11:56 - 000000000 ____D C:\Users\hp\AppData\Local\OCCT_-_Ocbase_-_Adrien_Me 2018-01-31 11:55 - 2018-01-31 11:55 - 000000000 ____D C:\Users\hp\Documents\OCCT 2018-01-31 11:52 - 2018-01-31 12:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft 2018-01-31 11:50 - 2018-01-31 11:50 - 014634624 _____ (BlueStack Systems Inc.) C:\Users\hp\Downloads\Bluestacks.exe 2018-01-31 11:49 - 2018-01-31 11:49 - 001722457 _____ ( ) C:\Users\hp\Downloads\Bluestacks_0961026601.exe 2018-01-31 11:17 - 2018-01-31 11:17 - 000001043 _____ C:\Users\hp\Desktop\OCCT.lnk 2018-01-31 11:17 - 2018-01-31 11:17 - 000000000 ____D C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OCCT 2018-01-31 11:16 - 2018-01-31 11:17 - 000000000 ____D C:\Program Files (x86)\OCCTPT 2018-01-31 11:16 - 2010-02-04 10:01 - 000530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll 2018-01-31 11:16 - 2010-02-04 10:01 - 000176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll 2018-01-31 11:16 - 2010-02-04 10:01 - 000078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll 2018-01-31 11:16 - 2008-10-27 10:04 - 000518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll 2018-01-31 11:16 - 2008-10-27 10:04 - 000514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll 2018-01-31 11:16 - 2008-10-27 10:04 - 000235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll 2018-01-31 11:16 - 2008-10-27 10:04 - 000175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll 2018-01-31 11:16 - 2008-10-27 10:04 - 000074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll 2018-01-31 11:16 - 2008-10-27 10:04 - 000070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll 2018-01-31 11:16 - 2008-10-27 10:04 - 000025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll 2018-01-31 11:16 - 2008-10-27 10:04 - 000023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll 2018-01-31 11:16 - 2008-07-31 10:41 - 000238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll 2018-01-31 11:16 - 2008-07-31 10:41 - 000177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll 2018-01-31 11:16 - 2008-07-31 10:41 - 000072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll 2018-01-31 11:16 - 2008-07-31 10:41 - 000068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll 2018-01-31 11:16 - 2008-07-31 10:40 - 000513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll 2018-01-31 11:16 - 2008-07-31 10:40 - 000509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll 2018-01-31 11:15 - 2018-01-31 11:16 - 000000000 ____D C:\WINDOWS\SysWOW64\directx 2018-01-31 11:15 - 2018-01-31 11:15 - 000000000 ___HD C:\WINDOWS\msdownld.tmp 2018-01-31 11:14 - 2018-01-31 11:14 - 008136268 _____ C:\Users\hp\Downloads\OCCTPT4.5.1.exe 2018-01-31 09:13 - 2018-01-31 09:13 - 003051392 _____ C:\Users\hp\Downloads\ZHPCleaner (1).exe 2018-01-30 23:20 - 2018-01-30 23:20 - 003051392 _____ C:\Users\hp\Downloads\ZHPCleaner.exe 2018-01-30 23:14 - 2018-01-30 23:14 - 002968960 _____ C:\Users\hp\Downloads\ZHPDiag3.exe 2018-01-30 00:34 - 2018-01-30 00:34 - 000431616 _____ (Wenovo.com) C:\Users\hp\Downloads\usbdisksaccessmanager-setup.exe 2018-01-29 12:52 - 2018-01-29 12:53 - 000000000 ____D C:\Program Files (x86)\SpeedFan 2018-01-29 12:52 - 2018-01-29 12:52 - 003086696 _____ C:\Users\hp\Downloads\instspeedfan452.exe 2018-01-29 12:52 - 2018-01-29 12:52 - 000001083 _____ C:\Users\hp\Desktop\SpeedFan.lnk 2018-01-29 12:52 - 2018-01-29 12:52 - 000000045 _____ C:\WINDOWS\SysWOW64\initdebug.nfo 2018-01-29 12:52 - 2018-01-29 12:52 - 000000000 ____D C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpeedFan 2018-01-25 16:23 - 2018-01-25 16:23 - 000001460 _____ C:\Users\Public\Desktop\Apowersoft Enregistreur Android.lnk 2018-01-25 16:23 - 2018-01-25 16:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft 2018-01-25 16:23 - 2018-01-25 16:23 - 000000000 ____D C:\Program Files (x86)\Apowersoft 2018-01-23 12:22 - 2018-01-23 12:22 - 000933378 _____ C:\Users\hp\Downloads\(1) La boutique de Nina - Accueil.html 2018-01-23 12:22 - 2018-01-23 12:22 - 000000000 ____D C:\Users\hp\Downloads\(1) La boutique de Nina - Accueil_fichiers 2018-01-22 18:00 - 2018-01-22 18:00 - 000000000 ____D C:\Users\hp\AppData\Roaming\IsolatedStorage 2018-01-22 18:00 - 2018-01-22 18:00 - 000000000 ____D C:\ProgramData\IsolatedStorage 2018-01-22 17:59 - 2018-01-22 17:59 - 000000000 ____D C:\Spacekace 2018-01-22 17:58 - 2018-01-22 17:59 - 001838144 _____ (Solvusoft) C:\Users\hp\Downloads\Setup_FileViewPro_2016.exe 2018-01-22 17:40 - 2018-01-31 13:00 - 000000000 ____D C:\Program Files (x86)\BlueStacks 2018-01-22 17:39 - 2018-01-31 11:57 - 000000000 ____D C:\Users\hp\AppData\Local\Bluestacks 2018-01-22 17:36 - 2018-01-22 17:39 - 282000664 _____ (BlueStack Systems Inc.) C:\Users\hp\Downloads\BlueStacks-Installer_BS3_native_e1804ca08d0be242fdcaad29e95a5baa.exe 2018-01-22 14:29 - 2018-01-22 14:30 - 035472312 _____ C:\Users\hp\Downloads\athome-camera-home-security-4-0-3.apk 2018-01-20 11:18 - 2018-01-20 11:18 - 000003095 _____ C:\Users\hp\Desktop\Utilitaire Courant Porteur.lnk 2018-01-20 11:18 - 2018-01-20 11:18 - 000000000 ____D C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TP-LINK 2018-01-20 11:18 - 2018-01-20 11:18 - 000000000 ____D C:\Program Files (x86)\TP-LINK 2018-01-18 16:28 - 2018-01-18 18:30 - 000000000 ____D C:\Program Files (x86)\SricamPC 2018-01-18 16:28 - 2018-01-18 16:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SricamPC 2018-01-18 16:25 - 2018-01-18 16:27 - 018783720 _____ (ShenZhen Sricctv Technology Co., Ltd. ) C:\Users\hp\Downloads\Sricam_CMS.exe 2018-01-16 17:16 - 2018-01-16 17:30 - 000000000 ____D C:\Users\hp\Downloads\Fwd__projet_d'hébergement_Madame_PIOLET_Simone 2018-01-16 17:16 - 2018-01-16 17:16 - 000102259 _____ C:\Users\hp\Downloads\Fwd__projet_d'hébergement_Madame_PIOLET_Simone.zip 2018-01-15 17:14 - 2018-01-15 17:15 - 000240690 _____ C:\Users\hp\Downloads\tarif_salle_des_fetes_2015_5056.pdf 2018-01-14 01:25 - 2018-01-14 01:25 - 000000000 ____D C:\Users\hp\AppData\Roaming\NuGet 2018-01-14 01:25 - 2018-01-14 01:25 - 000000000 ____D C:\Users\hp\AppData\Local\PackageManagement 2018-01-14 01:25 - 2018-01-14 01:25 - 000000000 ____D C:\Program Files\PackageManagement 2018-01-14 01:07 - 2018-01-28 23:35 - 000000000 ____D C:\WINDOWS\Minidump 2018-01-10 00:27 - 2018-01-10 00:27 - 000766928 _____ C:\Users\hp\Downloads\flux-setup.exe 2018-01-10 00:27 - 2018-01-10 00:27 - 000000000 ____D C:\Users\hp\AppData\Local\FluxSoftware 2018-01-09 14:50 - 2018-01-09 14:50 - 001520550 _____ C:\Users\hp\Documents\Grepolis (3) - 34. 411.html 2018-01-09 14:50 - 2018-01-09 14:50 - 000000000 ____D C:\Users\hp\Documents\Grepolis (3) - 34. 411_fichiers 2018-01-08 17:05 - 2018-01-08 17:06 - 068353597 _____ C:\Users\hp\Downloads\IMG_4542.MOV 2018-01-08 16:58 - 2018-01-08 16:58 - 000147660 ____H C:\WINDOWS\system32\mlfcache.dat 2018-01-08 16:55 - 2018-01-08 16:55 - 000001783 _____ C:\Users\Public\Desktop\iTunes.lnk 2018-01-08 16:55 - 2018-01-08 16:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2018-01-08 16:55 - 2018-01-08 16:55 - 000000000 ____D C:\Program Files\iPod 2018-01-08 16:54 - 2018-01-08 16:55 - 000000000 ____D C:\Program Files\iTunes 2018-01-08 16:52 - 2018-01-08 16:52 - 000000000 ____D C:\Program Files\Bonjour 2018-01-08 16:52 - 2018-01-08 16:52 - 000000000 ____D C:\Program Files (x86)\Bonjour 2018-01-08 16:40 - 2018-01-08 16:43 - 264339784 _____ (Apple Inc.) C:\Users\hp\Downloads\iTunes64Setup.exe 2018-01-07 13:40 - 2018-01-26 10:17 - 000000000 ___RD C:\Users\hp\iCloudDrive 2018-01-07 13:40 - 2018-01-07 13:40 - 000000000 ____D C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iCloud 2018-01-07 13:40 - 2018-01-07 13:40 - 000000000 ____D C:\Users\hp\AppData\Local\Apple Inc 2018-01-07 13:20 - 2018-01-07 13:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud 2018-01-07 13:19 - 2018-01-08 16:53 - 000000000 ____D C:\Program Files\Common Files\Apple 2018-01-07 13:19 - 2018-01-07 13:19 - 000000000 ____D C:\WINDOWS\System32\Tasks\Apple 2018-01-07 13:19 - 2018-01-07 13:19 - 000000000 ____D C:\Program Files (x86)\Apple Software Update 2018-01-07 12:58 - 2018-01-07 13:01 - 155125560 _____ (Apple Inc.) C:\Users\hp\Downloads\iCloudSetup.exe 2018-01-07 00:27 - 2018-01-07 00:27 - 000001280 _____ C:\Users\hp\Desktop\Facebook Gameroom.lnk 2018-01-07 00:27 - 2018-01-07 00:27 - 000000000 ____D C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Facebook 2018-01-07 00:26 - 2018-01-07 00:26 - 000260864 _____ (Facebook) C:\Users\hp\Downloads\FacebookGameroom.exe 2018-01-05 09:40 - 2018-01-01 13:51 - 000059800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bam.sys 2018-01-05 09:40 - 2018-01-01 13:49 - 008605080 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2018-01-05 09:40 - 2018-01-01 13:48 - 001954048 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2018-01-05 09:40 - 2018-01-01 13:47 - 000082840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys 2018-01-05 09:40 - 2018-01-01 13:46 - 002709704 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2018-01-05 09:40 - 2018-01-01 13:46 - 000471960 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2018-01-05 09:40 - 2018-01-01 13:45 - 000398744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys 2018-01-05 09:40 - 2018-01-01 13:39 - 000902416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2018-01-05 09:40 - 2018-01-01 13:39 - 000362904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2018-01-05 09:40 - 2018-01-01 13:36 - 000166296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys 2018-01-05 09:40 - 2018-01-01 13:34 - 007385088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2018-01-05 09:40 - 2018-01-01 13:33 - 000603920 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2018-01-05 09:40 - 2018-01-01 13:26 - 000428952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys 2018-01-05 09:40 - 2018-01-01 13:25 - 000147864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys 2018-01-05 09:40 - 2018-01-01 12:53 - 001615712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2018-01-05 09:40 - 2018-01-01 12:45 - 005615968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll 2018-01-05 09:40 - 2018-01-01 12:45 - 002192624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2018-01-05 09:40 - 2018-01-01 12:42 - 006479552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2018-01-05 09:40 - 2018-01-01 12:42 - 001246432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2018-01-05 09:40 - 2018-01-01 12:42 - 000982528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2018-01-05 09:40 - 2018-01-01 12:34 - 000703568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2018-01-05 09:40 - 2018-01-01 12:25 - 002905600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2018-01-05 09:40 - 2018-01-01 12:25 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll 2018-01-05 09:40 - 2018-01-01 12:24 - 003668480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2018-01-05 09:40 - 2018-01-01 12:24 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2018-01-05 09:40 - 2018-01-01 12:23 - 000536576 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll 2018-01-05 09:40 - 2018-01-01 12:20 - 019337216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2018-01-05 09:40 - 2018-01-01 12:20 - 018917888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2018-01-05 09:40 - 2018-01-01 12:19 - 000369152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll 2018-01-05 09:40 - 2018-01-01 12:19 - 000365568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2018-01-05 09:40 - 2018-01-01 12:18 - 000374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll 2018-01-05 09:40 - 2018-01-01 12:18 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2018-01-05 09:40 - 2018-01-01 12:17 - 011923968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2018-01-05 09:40 - 2018-01-01 12:17 - 000542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll 2018-01-05 09:40 - 2018-01-01 12:16 - 003676672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2018-01-05 09:40 - 2018-01-01 12:16 - 000815616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2018-01-05 09:40 - 2018-01-01 12:16 - 000664576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2018-01-05 09:40 - 2018-01-01 12:16 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2018-01-05 09:40 - 2018-01-01 12:16 - 000463360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2018-01-05 09:40 - 2018-01-01 12:15 - 006029312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2018-01-05 09:40 - 2018-01-01 12:15 - 000588800 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2018-01-05 09:40 - 2018-01-01 12:14 - 002465280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2018-01-05 09:40 - 2018-01-01 12:13 - 012830208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2018-01-05 09:40 - 2018-01-01 12:13 - 002869760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2018-01-05 09:40 - 2018-01-01 12:12 - 001547776 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2018-01-05 09:40 - 2018-01-01 12:11 - 004748288 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2018-01-05 09:40 - 2018-01-01 12:09 - 001487872 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2018-01-05 09:40 - 2018-01-01 12:08 - 000685056 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2018-01-05 09:39 - 2018-01-01 18:15 - 000956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe 2018-01-05 09:39 - 2018-01-01 13:54 - 000924648 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2018-01-05 09:39 - 2018-01-01 13:53 - 001090984 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2018-01-05 09:39 - 2018-01-01 13:52 - 000066712 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumcrypt.dll 2018-01-05 09:39 - 2018-01-01 13:51 - 001414784 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2018-01-05 09:39 - 2018-01-01 13:51 - 001209240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2018-01-05 09:39 - 2018-01-01 13:51 - 001055128 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2018-01-05 09:39 - 2018-01-01 13:51 - 000191816 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll 2018-01-05 09:39 - 2018-01-01 13:50 - 005905752 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll 2018-01-05 09:39 - 2018-01-01 13:50 - 000780464 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2018-01-05 09:39 - 2018-01-01 13:50 - 000479912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll 2018-01-05 09:39 - 2018-01-01 13:50 - 000077208 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll 2018-01-05 09:39 - 2018-01-01 13:49 - 000599448 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2018-01-05 09:39 - 2018-01-01 13:49 - 000319352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll 2018-01-05 09:39 - 2018-01-01 13:49 - 000292376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll 2018-01-05 09:39 - 2018-01-01 13:48 - 007831760 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll 2018-01-05 09:39 - 2018-01-01 13:48 - 000382360 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2018-01-05 09:39 - 2018-01-01 13:47 - 000649304 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll 2018-01-05 09:39 - 2018-01-01 13:46 - 000898216 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2018-01-05 09:39 - 2018-01-01 13:46 - 000733592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys 2018-01-05 09:39 - 2018-01-01 13:45 - 002395032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2018-01-05 09:39 - 2018-01-01 13:45 - 001277848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2018-01-05 09:39 - 2018-01-01 13:43 - 001173576 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2018-01-05 09:39 - 2018-01-01 13:43 - 000367336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll 2018-01-05 09:39 - 2018-01-01 13:43 - 000062872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fsdepends.sys 2018-01-05 09:39 - 2018-01-01 13:42 - 001029016 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll 2018-01-05 09:39 - 2018-01-01 13:42 - 000571288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2018-01-05 09:39 - 2018-01-01 13:42 - 000494488 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll 2018-01-05 09:39 - 2018-01-01 13:42 - 000184984 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll 2018-01-05 09:39 - 2018-01-01 13:42 - 000109976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys 2018-01-05 09:39 - 2018-01-01 13:41 - 007676296 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2018-01-05 09:39 - 2018-01-01 13:41 - 000559512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2018-01-05 09:39 - 2018-01-01 13:41 - 000549552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll 2018-01-05 09:39 - 2018-01-01 13:40 - 001206680 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2018-01-05 09:39 - 2018-01-01 13:39 - 000677784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2018-01-05 09:39 - 2018-01-01 13:39 - 000508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe 2018-01-05 09:39 - 2018-01-01 13:39 - 000129432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvsocket.sys 2018-01-05 09:39 - 2018-01-01 13:38 - 003904808 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2018-01-05 09:39 - 2018-01-01 13:38 - 000727448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2018-01-05 09:39 - 2018-01-01 13:38 - 000519152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe 2018-01-05 09:39 - 2018-01-01 13:38 - 000103320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys 2018-01-05 09:39 - 2018-01-01 13:38 - 000038808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Diskdump.sys 2018-01-05 09:39 - 2018-01-01 13:37 - 001426664 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2018-01-05 09:39 - 2018-01-01 13:37 - 000461720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe 2018-01-05 09:39 - 2018-01-01 13:36 - 000413888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2018-01-05 09:39 - 2018-01-01 13:36 - 000374032 _____ (Microsoft Corporation) C:\WINDOWS\system32\vac.exe 2018-01-05 09:39 - 2018-01-01 13:36 - 000113560 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll 2018-01-05 09:39 - 2018-01-01 13:36 - 000057752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbios.sys 2018-01-05 09:39 - 2018-01-01 13:35 - 001170008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2018-01-05 09:39 - 2018-01-01 13:35 - 000075160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll 2018-01-05 09:39 - 2018-01-01 13:34 - 001336344 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2018-01-05 09:39 - 2018-01-01 13:34 - 000260896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2018-01-05 09:39 - 2018-01-01 13:34 - 000087384 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll 2018-01-05 09:39 - 2018-01-01 13:33 - 002773400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2018-01-05 09:39 - 2018-01-01 13:32 - 004481240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2018-01-05 09:39 - 2018-01-01 13:32 - 000617304 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll 2018-01-05 09:39 - 2018-01-01 13:27 - 000713624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys 2018-01-05 09:39 - 2018-01-01 13:27 - 000163736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2018-01-05 09:39 - 2018-01-01 13:26 - 000081304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmcl.sys 2018-01-05 09:39 - 2018-01-01 13:25 - 000615768 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2018-01-05 09:39 - 2018-01-01 13:23 - 021352144 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2018-01-05 09:39 - 2018-01-01 13:21 - 001103768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2018-01-05 09:39 - 2018-01-01 13:21 - 000614296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2018-01-05 09:39 - 2018-01-01 13:06 - 000311192 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2018-01-05 09:39 - 2018-01-01 13:03 - 000777904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2018-01-05 09:39 - 2018-01-01 13:03 - 000650328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2018-01-05 09:39 - 2018-01-01 13:03 - 000566664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2018-01-05 09:39 - 2018-01-01 13:03 - 000123512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll 2018-01-05 09:39 - 2018-01-01 12:49 - 000481464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll 2018-01-05 09:39 - 2018-01-01 12:49 - 000258808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll 2018-01-05 09:39 - 2018-01-01 12:46 - 003485392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2018-01-05 09:39 - 2018-01-01 12:46 - 000289816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll 2018-01-05 09:39 - 2018-01-01 12:45 - 006092152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2018-01-05 09:39 - 2018-01-01 12:45 - 000450928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll 2018-01-05 09:39 - 2018-01-01 12:43 - 020286120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2018-01-05 09:39 - 2018-01-01 12:42 - 004644912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2018-01-05 09:39 - 2018-01-01 12:42 - 001003152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2018-01-05 09:39 - 2018-01-01 12:42 - 000386424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll 2018-01-05 09:39 - 2018-01-01 12:42 - 000129184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll 2018-01-05 09:39 - 2018-01-01 12:42 - 000074992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll 2018-01-05 09:39 - 2018-01-01 12:37 - 025247232 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2018-01-05 09:39 - 2018-01-01 12:25 - 001008640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll 2018-01-05 09:39 - 2018-01-01 12:25 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll 2018-01-05 09:39 - 2018-01-01 12:25 - 000097792 _____ C:\WINDOWS\system32\runexehelper.exe 2018-01-05 09:39 - 2018-01-01 12:24 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboutSettingsHandlers.dll 2018-01-05 09:39 - 2018-01-01 12:24 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll 2018-01-05 09:39 - 2018-01-01 12:24 - 000038912 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2018-01-05 09:39 - 2018-01-01 12:23 - 001313792 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll 2018-01-05 09:39 - 2018-01-01 12:23 - 000561152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll 2018-01-05 09:39 - 2018-01-01 12:23 - 000385024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys 2018-01-05 09:39 - 2018-01-01 12:23 - 000250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2018-01-05 09:39 - 2018-01-01 12:23 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\convertvhd.exe 2018-01-05 09:39 - 2018-01-01 12:23 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll 2018-01-05 09:39 - 2018-01-01 12:23 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmclr.sys 2018-01-05 09:39 - 2018-01-01 12:23 - 000047104 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2018-01-05 09:39 - 2018-01-01 12:22 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll 2018-01-05 09:39 - 2018-01-01 12:22 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Dumpstorport.sys 2018-01-05 09:39 - 2018-01-01 12:22 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\VmApplicationHealthMonitorProxy.dll 2018-01-05 09:39 - 2018-01-01 12:21 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2018-01-05 09:39 - 2018-01-01 12:21 - 000233984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppLockerCSP.dll 2018-01-05 09:39 - 2018-01-01 12:21 - 000192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys 2018-01-05 09:39 - 2018-01-01 12:21 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll 2018-01-05 09:39 - 2018-01-01 12:21 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WcnApi.dll 2018-01-05 09:39 - 2018-01-01 12:21 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\raspptp.sys 2018-01-05 09:39 - 2018-01-01 12:21 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys 2018-01-05 09:39 - 2018-01-01 12:21 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys 2018-01-05 09:39 - 2018-01-01 12:20 - 000524288 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2018-01-05 09:39 - 2018-01-01 12:20 - 000459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll 2018-01-05 09:39 - 2018-01-01 12:20 - 000397824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll 2018-01-05 09:39 - 2018-01-01 12:20 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys 2018-01-05 09:39 - 2018-01-01 12:20 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll 2018-01-05 09:39 - 2018-01-01 12:20 - 000212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll 2018-01-05 09:39 - 2018-01-01 12:20 - 000204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2018-01-05 09:39 - 2018-01-01 12:20 - 000186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll 2018-01-05 09:39 - 2018-01-01 12:20 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll 2018-01-05 09:39 - 2018-01-01 12:20 - 000134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnApi.dll 2018-01-05 09:39 - 2018-01-01 12:20 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll 2018-01-05 09:39 - 2018-01-01 12:20 - 000104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasauto.dll 2018-01-05 09:39 - 2018-01-01 12:20 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardDlg.dll 2018-01-05 09:39 - 2018-01-01 12:20 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\RfxVmt.sys 2018-01-05 09:39 - 2018-01-01 12:20 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshhttp.dll 2018-01-05 09:39 - 2018-01-01 12:19 - 008014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2018-01-05 09:39 - 2018-01-01 12:19 - 000795136 _____ (Microsoft Corporation) C:\WINDOWS\system32\NaturalAuth.dll 2018-01-05 09:39 - 2018-01-01 12:19 - 000675328 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll 2018-01-05 09:39 - 2018-01-01 12:19 - 000461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll 2018-01-05 09:39 - 2018-01-01 12:19 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll 2018-01-05 09:39 - 2018-01-01 12:19 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll 2018-01-05 09:39 - 2018-01-01 12:19 - 000416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec 2018-01-05 09:39 - 2018-01-01 12:19 - 000366080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2018-01-05 09:39 - 2018-01-01 12:19 - 000340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec 2018-01-05 09:39 - 2018-01-01 12:19 - 000334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll 2018-01-05 09:39 - 2018-01-01 12:19 - 000316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys 2018-01-05 09:39 - 2018-01-01 12:19 - 000188416 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll 2018-01-05 09:39 - 2018-01-01 12:19 - 000174592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\P2P.dll 2018-01-05 09:39 - 2018-01-01 12:19 - 000149504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll 2018-01-05 09:39 - 2018-01-01 12:19 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2018-01-05 09:39 - 2018-01-01 12:19 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msoert2.dll 2018-01-05 09:39 - 2018-01-01 12:19 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2018-01-05 09:39 - 2018-01-01 12:19 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll 2018-01-05 09:39 - 2018-01-01 12:19 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe 2018-01-05 09:39 - 2018-01-01 12:19 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlaapi.dll 2018-01-05 09:39 - 2018-01-01 12:19 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshhttp.dll 2018-01-05 09:39 - 2018-01-01 12:18 - 000748032 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll 2018-01-05 09:39 - 2018-01-01 12:18 - 000699904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll 2018-01-05 09:39 - 2018-01-01 12:18 - 000588800 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll 2018-01-05 09:39 - 2018-01-01 12:18 - 000465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcncsvc.dll 2018-01-05 09:39 - 2018-01-01 12:18 - 000436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2018-01-05 09:39 - 2018-01-01 12:18 - 000432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2018-01-05 09:39 - 2018-01-01 12:18 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll 2018-01-05 09:39 - 2018-01-01 12:18 - 000427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll 2018-01-05 09:39 - 2018-01-01 12:18 - 000425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll 2018-01-05 09:39 - 2018-01-01 12:18 - 000391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2018-01-05 09:39 - 2018-01-01 12:18 - 000380928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EncDec.dll 2018-01-05 09:39 - 2018-01-01 12:18 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\APHostService.dll 2018-01-05 09:39 - 2018-01-01 12:18 - 000343040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2018-01-05 09:39 - 2018-01-01 12:18 - 000336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll 2018-01-05 09:39 - 2018-01-01 12:18 - 000276480 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2018-01-05 09:39 - 2018-01-01 12:18 - 000259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardSvr.dll 2018-01-05 09:39 - 2018-01-01 12:18 - 000210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\P2P.dll 2018-01-05 09:39 - 2018-01-01 12:18 - 000144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll 2018-01-05 09:39 - 2018-01-01 12:18 - 000082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll 2018-01-05 09:39 - 2018-01-01 12:17 - 006564864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2018-01-05 09:39 - 2018-01-01 12:17 - 001485312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll 2018-01-05 09:39 - 2018-01-01 12:17 - 000791552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll 2018-01-05 09:39 - 2018-01-01 12:17 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2018-01-05 09:39 - 2018-01-01 12:17 - 000616960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2018-01-05 09:39 - 2018-01-01 12:17 - 000594432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll 2018-01-05 09:39 - 2018-01-01 12:17 - 000568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll 2018-01-05 09:39 - 2018-01-01 12:17 - 000559104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2018-01-05 09:39 - 2018-01-01 12:17 - 000555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll 2018-01-05 09:39 - 2018-01-01 12:17 - 000456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll 2018-01-05 09:39 - 2018-01-01 12:17 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\system32\p2psvc.dll 2018-01-05 09:39 - 2018-01-01 12:17 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnrpsvc.dll 2018-01-05 09:39 - 2018-01-01 12:17 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2018-01-05 09:39 - 2018-01-01 12:17 - 000112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msoert2.dll 2018-01-05 09:39 - 2018-01-01 12:16 - 005833216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll 2018-01-05 09:39 - 2018-01-01 12:16 - 004839424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll 2018-01-05 09:39 - 2018-01-01 12:16 - 000966656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll 2018-01-05 09:39 - 2018-01-01 12:16 - 000956928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll 2018-01-05 09:39 - 2018-01-01 12:16 - 000831488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll 2018-01-05 09:39 - 2018-01-01 12:16 - 000812544 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2018-01-05 09:39 - 2018-01-01 12:16 - 000720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2018-01-05 09:39 - 2018-01-01 12:16 - 000668160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2018-01-05 09:39 - 2018-01-01 12:16 - 000624128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll 2018-01-05 09:39 - 2018-01-01 12:16 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll 2018-01-05 09:39 - 2018-01-01 12:16 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll 2018-01-05 09:39 - 2018-01-01 12:16 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\cldapi.dll 2018-01-05 09:39 - 2018-01-01 12:16 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cldapi.dll 2018-01-05 09:39 - 2018-01-01 12:15 - 012687872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2018-01-05 09:39 - 2018-01-01 12:15 - 002349568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2018-01-05 09:39 - 2018-01-01 12:15 - 001657856 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll 2018-01-05 09:39 - 2018-01-01 12:15 - 001245184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2018-01-05 09:39 - 2018-01-01 12:15 - 000970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll 2018-01-05 09:39 - 2018-01-01 12:15 - 000951808 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll 2018-01-05 09:39 - 2018-01-01 12:15 - 000756736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2018-01-05 09:39 - 2018-01-01 12:15 - 000434176 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDec.dll 2018-01-05 09:39 - 2018-01-01 12:15 - 000366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll 2018-01-05 09:39 - 2018-01-01 12:15 - 000258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2018-01-05 09:39 - 2018-01-01 12:14 - 023655936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2018-01-05 09:39 - 2018-01-01 12:14 - 001495040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2018-01-05 09:39 - 2018-01-01 12:14 - 001097728 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll 2018-01-05 09:39 - 2018-01-01 12:14 - 001003008 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2018-01-05 09:39 - 2018-01-01 12:14 - 000985600 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2018-01-05 09:39 - 2018-01-01 12:14 - 000917504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll 2018-01-05 09:39 - 2018-01-01 12:14 - 000870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll 2018-01-05 09:39 - 2018-01-01 12:13 - 013657600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2018-01-05 09:39 - 2018-01-01 12:13 - 003121664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.dll 2018-01-05 09:39 - 2018-01-01 12:13 - 002013184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2018-01-05 09:39 - 2018-01-01 12:13 - 001559552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2018-01-05 09:39 - 2018-01-01 12:13 - 001474560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2018-01-05 09:39 - 2018-01-01 12:13 - 000897024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2018-01-05 09:39 - 2018-01-01 12:12 - 002633216 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2018-01-05 09:39 - 2018-01-01 12:12 - 002208768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2018-01-05 09:39 - 2018-01-01 12:12 - 001573376 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll 2018-01-05 09:39 - 2018-01-01 12:12 - 001424896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2018-01-05 09:39 - 2018-01-01 12:12 - 000760320 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe 2018-01-05 09:39 - 2018-01-01 12:12 - 000464384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll 2018-01-05 09:39 - 2018-01-01 12:11 - 008108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2018-01-05 09:39 - 2018-01-01 12:11 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2018-01-05 09:39 - 2018-01-01 12:11 - 003165696 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2018-01-05 09:39 - 2018-01-01 12:11 - 002859520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2018-01-05 09:39 - 2018-01-01 12:11 - 002082304 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2018-01-05 09:39 - 2018-01-01 12:11 - 001822208 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2018-01-05 09:39 - 2018-01-01 12:11 - 001816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll 2018-01-05 09:39 - 2018-01-01 12:11 - 001597952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2018-01-05 09:39 - 2018-01-01 12:11 - 001343488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2018-01-05 09:39 - 2018-01-01 12:11 - 001231872 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2018-01-05 09:39 - 2018-01-01 12:11 - 000880640 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll 2018-01-05 09:39 - 2018-01-01 12:11 - 000812032 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2018-01-05 09:39 - 2018-01-01 12:11 - 000715776 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2018-01-05 09:39 - 2018-01-01 12:10 - 003126272 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2018-01-05 09:39 - 2018-01-01 12:10 - 002528256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2018-01-05 09:39 - 2018-01-01 12:10 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscproxystub.dll 2018-01-05 09:39 - 2018-01-01 12:09 - 000925184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2018-01-05 09:39 - 2018-01-01 12:09 - 000666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\DbgModel.dll 2018-01-05 09:39 - 2018-01-01 12:09 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll 2018-01-05 09:39 - 2018-01-01 12:08 - 000963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2018-01-05 09:39 - 2018-01-01 12:08 - 000726016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2018-01-05 09:39 - 2018-01-01 12:08 - 000505344 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskcomp.dll 2018-01-05 09:39 - 2018-01-01 12:06 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscproxystub.dll 2018-01-05 09:39 - 2018-01-01 12:05 - 002510848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll 2018-01-05 09:39 - 2018-01-01 12:05 - 001160704 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2018-01-05 09:39 - 2018-01-01 12:05 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe 2018-01-04 18:53 - 2018-01-04 18:53 - 000319314 _____ C:\Users\hp\Documents\Attestation_de_carte_tiers_payant.pdf 2018-01-04 17:30 - 2018-01-04 17:32 - 131265115 _____ C:\Users\hp\Downloads\IMG_4516.MOV 2018-01-04 12:09 - 2018-01-04 12:09 - 000025667 _____ C:\Users\hp\Downloads\AIJ.pdf ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2018-02-02 22:44 - 2017-10-16 08:52 - 000000000 ____D C:\ProgramData\Adguard 2018-02-02 22:38 - 2017-11-05 13:03 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2018-02-02 19:48 - 2016-01-16 00:02 - 000000000 ____D C:\ProgramData\Logishrd 2018-02-02 19:16 - 2017-11-05 13:33 - 000004144 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{180C9D7A-344C-466C-B018-686BD5C2531B} 2018-02-02 18:06 - 2016-11-16 20:13 - 000000000 ____D C:\Users\hp\AppData\LocalLow\Mozilla 2018-02-02 06:55 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\DeliveryOptimization 2018-02-02 06:54 - 2017-09-29 14:46 - 000000000 ___HD C:\Program Files\WindowsApps 2018-02-02 06:54 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\AppReadiness 2018-02-02 06:51 - 2017-12-16 00:38 - 000000000 ____D C:\Users\hp\AppData\Local\Spotify 2018-02-02 06:49 - 2017-12-16 00:37 - 000000000 ____D C:\Users\hp\AppData\Roaming\Spotify 2018-02-02 06:49 - 2017-11-05 13:09 - 000000000 ____D C:\Users\hp 2018-02-02 06:49 - 2016-06-11 12:57 - 000000000 ___RD C:\Users\hp\CloudStation 2018-02-02 06:47 - 2017-07-16 09:00 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2018-02-02 06:47 - 2016-10-07 16:46 - 000000000 __SHD C:\Users\hp\IntelGraphicsProfiles 2018-02-02 00:00 - 2016-09-29 11:56 - 000000000 ____D C:\ProgramData\NVIDIA 2018-02-01 18:48 - 2016-03-19 12:21 - 000000000 ____D C:\Users\hp\AppData\Roaming\ZHP 2018-02-01 15:25 - 2017-11-05 13:33 - 000003214 _____ C:\WINDOWS\System32\Tasks\HPCeeScheduleForhp 2018-02-01 15:25 - 2016-10-04 18:39 - 000000334 _____ C:\WINDOWS\Tasks\HPCeeScheduleForhp.job 2018-01-31 23:30 - 2017-11-05 13:33 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2018-01-31 23:29 - 2017-09-29 09:45 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2018-01-31 12:59 - 2016-09-26 20:16 - 000000000 ____D C:\AdwCleaner 2018-01-31 12:03 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2018-01-31 12:00 - 2017-11-05 13:33 - 000003938 _____ C:\WINDOWS\System32\Tasks\CCleaner Update 2018-01-31 12:00 - 2016-10-09 21:45 - 000000830 _____ C:\Users\Public\Desktop\CCleaner.lnk 2018-01-31 11:52 - 2017-11-01 16:01 - 000000000 ____D C:\Program Files\Mozilla Firefox 2018-01-31 09:32 - 2016-06-26 20:01 - 000000916 _____ C:\Users\hp\Desktop\ZHPCleaner.lnk 2018-01-31 08:47 - 2017-11-05 13:33 - 000003352 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2340712917-288545405-3420014623-1001 2018-01-31 08:47 - 2016-01-14 07:25 - 000002442 _____ C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2018-01-31 08:47 - 2016-01-14 07:25 - 000000000 __RDL C:\Users\hp\OneDrive 2018-01-30 23:20 - 2016-12-27 09:35 - 000000906 _____ C:\Users\hp\Desktop\ZHPDiag.lnk 2018-01-30 11:55 - 2017-11-01 16:01 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2018-01-30 00:24 - 2017-11-01 16:01 - 000001012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2018-01-28 01:15 - 2017-11-06 09:50 - 000000000 ____D C:\Users\hp\AppData\Local\PlaceholderTileLogoFolder 2018-01-27 11:52 - 2017-11-05 13:10 - 000000000 ____D C:\Users\hp\AppData\Local\Packages 2018-01-26 10:17 - 2017-12-21 01:06 - 000000000 ____D C:\Users\hp\AppData\Roaming\Deezer 2018-01-25 16:23 - 2016-07-31 11:57 - 000000000 ____D C:\Users\hp\Documents\Apowersoft 2018-01-25 16:23 - 2016-07-31 11:57 - 000000000 ____D C:\Users\hp\AppData\Roaming\Apowersoft 2018-01-25 09:34 - 2017-05-02 18:28 - 000000000 ____D C:\Users\hp\AppData\Local\ZHP 2018-01-25 09:26 - 2017-11-05 13:33 - 000003978 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1484309030 2018-01-25 09:26 - 2017-06-30 19:09 - 000001127 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk 2018-01-25 09:26 - 2017-01-13 13:03 - 000000000 ____D C:\Program Files (x86)\Opera 2018-01-25 09:22 - 2017-09-29 14:44 - 000000000 ____D C:\WINDOWS\INF 2018-01-25 00:54 - 2016-04-30 22:57 - 000001991 _____ C:\Users\hp\Desktop\Dashlane.lnk 2018-01-25 00:54 - 2016-04-30 22:55 - 000000000 ____D C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dashlane 2018-01-25 00:54 - 2016-04-30 22:55 - 000000000 ____D C:\Users\hp\AppData\Roaming\Dashlane 2018-01-24 09:01 - 2017-10-18 01:03 - 000548000 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2018-01-22 09:08 - 2016-01-24 05:18 - 000000000 ____D C:\ProgramData\Oracle 2018-01-22 09:07 - 2017-11-23 20:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2018-01-22 09:07 - 2017-11-23 20:11 - 000000000 ____D C:\Program Files (x86)\Java 2018-01-22 09:05 - 2017-11-23 20:11 - 000097344 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll 2018-01-21 14:27 - 2017-10-01 22:55 - 000002262 _____ C:\Users\hp\Desktop\Discord.lnk 2018-01-21 14:27 - 2017-10-01 22:55 - 000000000 ____D C:\Users\hp\AppData\Local\Discord 2018-01-21 14:27 - 2017-09-12 22:30 - 000000000 ____D C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc 2018-01-21 14:27 - 2016-11-20 23:19 - 000000000 ____D C:\Users\hp\AppData\Roaming\discord 2018-01-21 09:11 - 2017-09-29 14:46 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2018-01-21 09:09 - 2014-11-21 02:45 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2018-01-19 15:09 - 2017-07-16 08:59 - 000000000 ____D C:\ProgramData\lx_Cats 2018-01-18 08:21 - 2016-02-13 14:01 - 000000000 ____D C:\Users\hp\AppData\Local\ElevatedDiagnostics 2018-01-17 22:58 - 2017-11-27 10:57 - 000000000 ____D C:\Users\hp\Documents\Indemnités Journalieres 2018-01-10 09:51 - 2016-01-13 23:15 - 000000000 ____D C:\WINDOWS\system32\MRT 2018-01-10 09:45 - 2017-10-18 01:00 - 129365736 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe 2018-01-10 09:45 - 2016-01-13 23:15 - 129365736 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2018-01-10 09:44 - 2017-09-29 14:37 - 000000000 ____D C:\WINDOWS\CbsTemp 2018-01-10 00:33 - 2016-06-11 12:55 - 000000000 ____D C:\Users\hp\AppData\Local\CloudStation 2018-01-09 18:25 - 2017-11-05 13:33 - 000004748 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier 2018-01-09 18:25 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2018-01-09 18:25 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\Macromed 2018-01-08 16:56 - 2017-10-01 22:53 - 000000000 ____D C:\Users\hp\AppData\Local\Apple Computer 2018-01-08 16:56 - 2017-09-26 21:49 - 000000000 ____D C:\Users\hp\AppData\Roaming\Apple Computer 2018-01-08 16:53 - 2014-11-21 02:55 - 000000000 ____D C:\ProgramData\Apple 2018-01-07 13:21 - 2017-09-26 19:29 - 000000000 ____D C:\ProgramData\Apple Computer 2018-01-07 13:19 - 2017-09-26 19:29 - 000002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk 2018-01-07 10:24 - 2017-11-05 13:08 - 002409786 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2018-01-07 10:24 - 2017-09-30 15:40 - 001087356 _____ C:\WINDOWS\system32\perfh00C.dat 2018-01-07 10:24 - 2017-09-30 15:40 - 000245094 _____ C:\WINDOWS\system32\perfc00C.dat 2018-01-06 16:36 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\rescache 2018-01-06 00:10 - 2016-01-14 21:48 - 000000000 ___RD C:\Users\hp\3D Objects 2018-01-06 00:10 - 2016-01-05 12:57 - 000000000 __RHD C:\Users\Public\AccountPictures 2018-01-06 00:08 - 2017-11-05 13:03 - 000428744 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2018-01-06 00:05 - 2017-09-29 14:46 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2018-01-06 00:05 - 2017-09-29 14:46 - 000000000 ___SD C:\WINDOWS\system32\F12 2018-01-06 00:05 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\TextInput 2018-01-06 00:05 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2018-01-06 00:05 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\oobe 2018-01-06 00:05 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\migwiz 2018-01-06 00:05 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\appraiser 2018-01-06 00:05 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\Provisioning 2018-01-06 00:05 - 2017-09-29 09:45 - 000000000 ____D C:\WINDOWS\system32\Dism 2018-01-05 09:42 - 2017-09-29 14:41 - 000403968 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll 2018-01-05 09:41 - 2017-09-29 14:41 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2018-01-05 09:41 - 2017-09-29 14:41 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2018-01-04 20:40 - 2017-12-11 14:23 - 000002277 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2018-01-04 20:40 - 2017-12-11 14:23 - 000002265 _____ C:\Users\Public\Desktop\Google Chrome.lnk ==================== Fichiers à la racine de certains dossiers ======= 2017-10-16 08:53 - 2017-11-12 15:14 - 000000302 _____ () C:\ProgramData\fontcacheev1.dat 2016-07-03 15:50 - 2016-12-16 17:54 - 002632192 _____ () C:\Users\hp\ZHPCleaner.exe 2016-06-21 19:49 - 2016-06-21 19:50 - 002219008 _____ () C:\Users\hp\ZHPDiag3.exe 2016-12-28 09:30 - 2017-01-10 22:30 - 000007605 _____ () C:\Users\hp\AppData\Local\resmon.resmoncfg Certains fichiers dans TEMP: ==================== 2018-01-31 11:54 - 2018-01-10 00:00 - 000969272 _____ (BlueStack Systems, Inc.) C:\Users\hp\AppData\Local\Temp\BlueStacksClientUninstaller.exe 2018-01-31 11:54 - 2018-01-09 23:59 - 000421400 _____ (CodeTitans) C:\Users\hp\AppData\Local\Temp\JSON.dll ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2018-01-29 09:47 ==================== Fin de FRST.txt ============================