Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 23.02.2018 Exécuté par jean- (administrateur) sur DESKTOP-37KC94K (24-02-2018 01:12:16) Exécuté depuis C:\Users\jean-\Desktop Profils chargés: jean- (Profils disponibles: jean- & MSSQL$ADK) Platform: Windows 10 Home Version 1607 14393.105 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: Opera) Mode d'amorçage: Safe Mode (with Networking) Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) Impossible d'accéder au processus -> csrss.exe Impossible d'accéder au processus -> csrss.exe Impossible d'accéder au processus -> dwm.exe (Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\platform\4.12.17007.18011-0\MsMpEng.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe () C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EaseUSEverySyncCache.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\HelpPane.exe (Opera Software) C:\Users\jean-\AppData\Local\Programs\Opera\51.0.2830.34\opera.exe (Opera Software) C:\Users\jean-\AppData\Local\Programs\Opera\51.0.2830.34\opera_crashreporter.exe (Opera Software) C:\Users\jean-\AppData\Local\Programs\Opera\51.0.2830.34\opera.exe (Opera Software) C:\Users\jean-\AppData\Local\Programs\Opera\51.0.2830.34\opera.exe (Opera Software) C:\Users\jean-\AppData\Local\Programs\Opera\51.0.2830.34\opera.exe (Opera Software) C:\Users\jean-\AppData\Local\Programs\Opera\51.0.2830.34\opera.exe (Opera Software) C:\Users\jean-\AppData\Local\Programs\Opera\51.0.2830.34\opera.exe (Opera Software) C:\Users\jean-\AppData\Local\Programs\Opera\51.0.2830.34\opera.exe (Opera Software) C:\Users\jean-\AppData\Local\Programs\Opera\51.0.2830.34\opera.exe (Opera Software) C:\Users\jean-\AppData\Local\Programs\Opera\51.0.2830.34\opera.exe (Opera Software) C:\Users\jean-\AppData\Local\Programs\Opera\51.0.2830.34\opera.exe (Opera Software) C:\Users\jean-\AppData\Local\Programs\Opera\51.0.2830.34\opera.exe (Opera Software) C:\Users\jean-\AppData\Local\Programs\Opera\51.0.2830.34\opera.exe (Opera Software) C:\Users\jean-\AppData\Local\Programs\Opera\51.0.2830.34\opera.exe (Opera Software) C:\Users\jean-\AppData\Local\Programs\Opera\51.0.2830.34\opera.exe Impossible d'accéder au processus -> WmiPrvSE.exe (Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16408320 2015-12-14] (Realtek Semiconductor) HKLM\...\Run: [AdAwareTray] => "C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.2.889.11556\AdAwareTray.exe" HKLM\...\Run: [WinZip UN] => C:\Program Files\WinZip\WZUpdateNotifier.exe HKLM\...\Run: [WinZip PreLoader] => C:\Program Files\WinZip\WzPreloader.exe HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2016-07-16] (Microsoft Corporation) HKLM-x32\...\Run: [Wondershare Helper Compact] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133216 2017-03-23] (Wondershare) HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [6813680 2016-12-15] () HKLM-x32\...\Run: [Nero BackItUp] => C:\Program Files (x86)\Nero\Nero 2018\Nero BackItup\BackItUp.exe [1162104 2017-12-15] (Nero AG) HKLM-x32\...\Run: [vspdfprsrv.exe] => C:\Program Files (x86)\Visagesoft\eXPert PDF 9\vspdfprsrv.exe [3971072 2014-02-15] (Visagesoft) HKLM-x32\...\Run: [IseUI] => C:\Program Files (x86)\COMODO\Internet Security Essentials\vkise.exe [4072656 2017-12-26] (COMODO) HKLM-x32\...\Run: [bdruninstaller] => "C:\Program Files\Common Files\CompuClever Antivirus Plus\SetupInformation\downloader\setuplauncher.exe" /run:"setupdownloader.exe" /args:"/token:av /after_restart" HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133216 2017-03-23] (Wondershare) HKLM-x32\...\Run: [UsbFixResident] => C:\Program Files (x86)\UsbFix\Modules\UsbFixMonitor.exe [1337408 2018-02-17] () HKLM-x32\...\RunOnce: [{721B85C8-B56B-4E9A-9EE4-1480F072A931}] => cmd.exe /C start /D "C:\Users\jean-\AppData\Local\Temp" /B {721B85C8-B56B-4E9A-9EE4-1480F072A931}.cmd HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION HKU\S-1-5-21-4265624635-2019933758-61733912-1001\...\Run: [CleanGeniusTray] => C:\Program Files (x86)\CleanGenius 3\CleanGeniusTray.exe [481632 2013-05-16] (Amigabit) HKU\S-1-5-21-4265624635-2019933758-61733912-1001\...\Run: [ApowersoftScreenRecorder] => C:\Program Files (x86)\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe [3146392 2017-12-14] (Apowersoft) HKU\S-1-5-21-4265624635-2019933758-61733912-1001\...\Run: [DAEMON Tools Pro Agent] => C:\Program Files\DAEMON Tools Pro\DTAgent.exe [4764864 2018-01-19] (Disc Soft Ltd) HKU\S-1-5-21-4265624635-2019933758-61733912-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [5263040 2018-01-30] (Disc Soft Ltd) HKU\S-1-5-21-4265624635-2019933758-61733912-1001\...\Run: [WallpaperHd] => C:\Users\jean-\AppData\Local\WallpaperHd\WallpaperHd.exe [1823232 2018-02-08] (WallpaperHd) HKU\S-1-5-21-4265624635-2019933758-61733912-1001\...\Run: [UCheck] => C:\Program Files\UCheck\UCheck64.exe [27668040 2017-11-27] (Adlice Software) HKU\S-1-5-21-4265624635-2019933758-61733912-1001\...\Run: [BitTorrent] => C:\Users\jean-\AppData\Roaming\BitTorrent\BitTorrent.exe [1988552 2018-02-15] (BitTorrent Inc.) HKU\S-1-5-21-4265624635-2019933758-61733912-1001\...\RunOnce: [Report] => C:\AdwCleaner\AdwCleaner[C2].tx HKU\S-1-5-21-4265624635-2019933758-61733912-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1 HKU\S-1-5-21-4265624635-2019933758-61733912-1001\...\MountPoints2: {635f67a0-16eb-11e8-b91a-4c72b9f956a2} - "P:\DTVP30_Launcher.exe" AppInit_DLLs: C:\PROGRA~2\KeyCryptSDK\KeyCrypt64(1).dll => C:\Program Files (x86)\KeyCryptSDK\KeyCrypt64(1).dll [95712 2016-08-10] (Zemana Ltd.) AppInit_DLLs-x32: C:\PROGRA~2\KeyCryptSDK\KeyCrypt32(1).dll => C:\Program Files (x86)\KeyCryptSDK\KeyCrypt32(1).dll [86936 2016-08-10] (Zemana Ltd.) Startup: C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Spamihilator.lnk [2018-02-19] ShortcutTarget: Spamihilator.lnk -> C:\Program Files\Spamihilator\spamihilator.exe (Michel Krämer) BootExecute: autocheck autochk * bootdelete ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: 127.0.0.1 localhost Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{a778058e-ddb3-4e56-a8fe-5582c6425c94}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = SearchScopes: HKLM -> DefaultScope la valeur est absente SearchScopes: HKLM-x32 -> DefaultScope la valeur est absente SearchScopes: HKU\S-1-5-21-4265624635-2019933758-61733912-1001 -> {0AA24E16-07B3-4694-8357-3C21ACC5F516} URL = hxxps://fr.search.yahoo.com/yhs/search?hspart=comodo&hsimp=yhs-com_chrome&type=33110001005_10.1.0.6476_i_ds_sp&p={searchTerms} BHO: Pas de nom -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> Pas de fichier BHO: Pas de nom -> {27DD0F8B-3E0E-4ADC-A78A-66047E71ADC5} -> C:\skinpack\OldNewExplorer64.dll [2016-07-25] (www.startisback.com) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre-9.0.4\bin\ssv.dll => Pas de fichier BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2015-07-31] (Seiko Epson Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre-9.0.4\bin\jp2ssv.dll [2018-02-23] (Oracle Corporation) BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2017-01-03] (Eyeo GmbH) BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2016-09-02] (Adobe Systems Incorporated) BHO-x32: E-Web Print -> {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} -> C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION) BHO-x32: Pas de nom -> {27DD0F8B-3E0E-4ADC-A78A-66047E71ADC5} -> C:\skinpack\OldNewExplorer32.dll [2016-07-25] (www.startisback.com) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\ssv.dll [2018-02-16] (Oracle Corporation) BHO-x32: Programme d'aide de l'Assistant de connexion Windows Live -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2016-09-02] (Microsoft Corporation) BHO-x32: iSkysoft iMedia Converter Deluxe 5.1.0 -> {AEAF002F-E6D8-4A21-ABD3-2B309B79A6CE} -> C:\ProgramData\iSkysoft\Video Converter Ultimate\WSBrowserAppMgr.dll [2016-08-18] (Wondershare) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\jp2ssv.dll [2018-02-16] (Oracle Corporation) BHO-x32: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2017-01-03] (Eyeo GmbH) Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2015-07-31] (Seiko Epson Corporation) Toolbar: HKLM-x32 - E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION) Toolbar: HKU\S-1-5-21-4265624635-2019933758-61733912-1001 -> Pas de nom - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Pas de fichier Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2016-09-02] (Microsoft Corporation) Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2016-09-02] (Microsoft Corporation) Handler: WSISVCUchrome - {78A543EB-3A61-4ED3 - Pas de fichier FireFox: ======== FF HKLM-x32\...\Firefox\Extensions: [e-webprint@epson.com] - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on FF Extension: (E-Web Print) - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on [2016-08-29] [Legacy] [non signé] FF HKLM-x32\...\Firefox\Extensions: [ISVCU@iSkysoft.com] - C:\ProgramData\iSkysoft\Video Converter Ultimate\ISVCU@iSkysoft.com_xpi FF Extension: (iSkysoft iMedia Converter Deluxe) - C:\ProgramData\iSkysoft\Video Converter Ultimate\ISVCU@iSkysoft.com_xpi [2016-09-07] [Legacy] FF HKU\S-1-5-21-4265624635-2019933758-61733912-1001\...\Firefox\Extensions: [{6EBED4D8-13D9-4270-8D44-B57DDB7A787C}] - C:\Program Files (x86)\Allavsoft\Video Downloader Converter\extensions\3.15.4.6607\BVDFirefoxExt FF Extension: (Allavsoft Video Downloader Firefox Extension) - C:\Program Files (x86)\Allavsoft\Video Downloader Converter\extensions\3.15.4.6607\BVDFirefoxExt [2018-02-23] [Legacy] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_28_0_0_161.dll [2018-02-23] () FF Plugin: @java.com/DTPlugin,version=12.0.4.0 -> C:\Program Files\Java\jre-9.0.4\bin\dtplugin\npDeployJava1.dll [2018-02-23] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=12.0.4.0 -> C:\Program Files\Java\jre-9.0.4\bin\plugin2\npjp2.dll [2018-02-23] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_28_0_0_161.dll [2018-02-23] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw.dll [2017-11-02] (Adobe Systems, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\dtplugin\npDeployJava1.dll [2018-02-16] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\plugin2\npjp2.dll [2018-02-16] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8117.0416 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2016-09-02] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2018-02-16] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2018-02-16] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-02-11] (Adobe Systems Inc.) Chrome: ======= CHR HKU\S-1-5-21-4265624635-2019933758-61733912-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [hcjjaajflhellmcfcecojihhmdbjmmlm] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [dhancbnhabhandieicagelcddkdfgoif] - C:\Program Files (x86)\Allavsoft\Video Downloader Converter\extensions\3.15.4.6607\BVDChromeExt.crx [2018-02-23] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S2 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1135600 2016-12-15] () S2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-08-21] (Advanced Micro Devices, Inc.) [Fichier non signé] S3 apmwinsrv; C:\Program Files (x86)\Paragon Software\HFS+ for Windows\apmwinsrv.exe [1879744 2017-10-11] () S4 BingDesktopUpdate; C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe [173248 2014-11-26] (Microsoft Corp.) S2 Crypkey License; C:\WINDOWS\system32\crypserv.exe [122880 2008-05-08] (CrypKey (Canada) Ltd.) [Fichier non signé] S3 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [440808 2017-09-13] (Digital Wave Ltd.) S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [3480256 2018-01-30] (Disc Soft Ltd) S3 Diskeeper; C:\Program Files\Condusiv Technologies\Diskeeper\DKService.exe [2695920 2015-03-05] (Condusiv Technologies) S2 EaseUS Agent; C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe [39616 2016-06-03] (CHENGDU YIWO Tech Development Co., Ltd) S2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [144560 2012-05-16] (Seiko Epson Corporation) S2 hmpalertsvc; C:\Program Files (x86)\HitmanPro.Alert\hmpalert.exe [4451976 2018-02-23] (SurfRight B.V.) S3 imdsksvc; C:\WINDOWS\system32\imdsksvc.exe [22024 2018-01-08] (Olof Lagerkvist) S3 imdsksvc; C:\WINDOWS\SysWOW64\imdsksvc.exe [22024 2018-01-08] (Olof Lagerkvist) S2 isesrv; C:\Program Files (x86)\COMODO\Internet Security Essentials\isesrv.exe [1199824 2017-12-26] (COMODO) S2 KvAppService; C:\Program Files (x86)\Keepvid\KAF\2.4.2.222\KvAppService.exe [474824 2017-03-10] (Keepvid) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6234056 2017-11-01] (Malwarebytes) S4 mmsminisrv; C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe [4884064 2015-08-11] (Acronis) S2 Mobizen plugin; C:\Program Files (x86)\RSUPPORT\MobizenService\MobizenService.exe [1276800 2017-11-22] ( Rsupport Corporation) S2 MSSQL$ADK; C:\Program Files (x86)\Microsoft SQL Server\MSSQL11.ADK\MSSQL\Binn\sqlservr.exe [163008 2016-09-24] (Microsoft Corporation) S3 NeroBackItUpBackgroundService; C:\Program Files (x86)\Nero\Nero BackItUp\NBService.exe [287088 2016-04-01] (Nero AG) S2 NeroBackItUpBackgroundService2018; C:\Program Files (x86)\Nero\Nero 2018\Nero BackItUp\NBService.exe [287096 2017-12-15] (Nero AG) S2 osrss; C:\WINDOWS\system32\osrss.dll [108584 2018-01-09] (Microsoft Corporation) S3 ParagonLinuxFSMounter; C:\Program Files (x86)\Paragon Software\LinuxFS for Windows\paragon_service.exe [2651328 2017-11-30] (Paragon Software) S2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [307456 2015-12-14] (Realtek Semiconductor) S4 SQLAgent$ADK; C:\Program Files (x86)\Microsoft SQL Server\MSSQL11.ADK\MSSQL\Binn\SQLAGENT.EXE [448704 2016-09-24] (Microsoft Corporation) S3 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7534864 2016-08-25] (TeamViewer GmbH) S2 TeraCopyService; C:\Program Files\TeraCopy\TeraCopyService.exe [110416 2017-05-05] (Code Sector) S2 USBSafelyRemoveService; C:\Program Files (x86)\USB Safely Remove\USBSRService.exe [1731168 2017-06-03] (Crystal Rich Ltd) S3 VoodooShieldService; C:\Program Files\VoodooShield\VoodooShieldService.exe [132944 2018-02-08] (VoodooSoft, LLC ) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.12.17007.18011-0\NisSrv.exe [356168 2018-02-16] (Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.12.17007.18011-0\MsMpEng.exe [105792 2018-02-16] (Microsoft Corporation) S3 WiseAntiMalwareService; C:\Program Files\Wise\Wise Anti Malware\WiseMalService.exe [2116776 2018-02-07] (WiseCleaner.com) S3 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.233\WsAppService.exe [493792 2017-11-07] (Wondershare) S3 WsDrvInst; C:\Program Files (x86)\Wondershare\MirrorGo\DriverInstall.exe [111328 2017-05-05] (Wondershare) S3 ZAMSvc; C:\Program Files (x86)\Zemana AntiLogger\ZAM.exe [13624048 2016-09-02] (Zemana Ltd.) S3 ZinstallBackupService; C:\Program Files (x86)\Zinstall Backup\ZinstallBackupService.exe [14858512 2017-11-21] (Zinstall.com) S3 AbAdminService; "C:\Program Files (x86)\ToolbarTerminator\AbAdminService.exe" [X] S4 adawareantivirusservice; "C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.2.889.11556\AdAwareService.exe" [X] S2 DragonUpdater; "C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe" [X] S3 rscp; "C:\Program Files (x86)\Reason\Security\Protection\rscp\bin\rscp_svc.exe" [X] S2 SMService; C:\Program Files (x86)\IObit\Classic Start\SMService.exe [X] ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S2 amwrtdrv; C:\WINDOWS\System32\amwrtdrv.sys [23224 2016-10-17] () R0 apmwin; C:\WINDOWS\System32\DRIVERS\apmwin.sys [48088 2017-10-11] (Paragon Software Group) S2 Aspi32; C:\Windows\SysWow64\Drivers\Aspi32.sys [25244 1999-09-10] (Adaptec) [Fichier non signé] S3 awealloc; C:\WINDOWS\system32\drivers\awealloc.sys [28256 2018-01-08] (Olof Lagerkvist) R0 C71BABA5; C:\WINDOWS\System32\drivers\C71BABA5.sys [478392 2018-02-23] (Kaspersky Lab ZAO) S3 clvad; C:\WINDOWS\system32\drivers\clvad.sys [40384 2016-05-27] (CyberLink) R3 CLVirtualBus01; C:\WINDOWS\System32\drivers\CLVirtualBus01.sys [103176 2014-11-05] (CyberLink) S3 clwvd7; C:\WINDOWS\system32\DRIVERS\clwvd7.sys [49944 2016-06-02] (CyberLink Corporation) S2 csvol; C:\WINDOWS\system32\DRIVERS\csvol.sys [46552 2017-10-11] (Paragon Software Group) R0 DKDFM; C:\WINDOWS\System32\drivers\DKDFM.sys [41744 2013-05-06] (Condusiv Technologies) S3 DKRtWrt; C:\WINDOWS\system32\drivers\DKRtWrt.sys [53520 2014-10-24] (Condusiv Technologies) R0 DKTLFSMF; C:\WINDOWS\System32\drivers\DKTLFSMF.sys [119536 2014-04-14] (Condusiv Technologies) S2 Dokan; C:\WINDOWS\System32\DRIVERS\dokan.sys [76608 2017-11-30] (Windows (R) Win 7 DDK provider) S3 DrvSnSht; C:\Program Files (x86)\R-Drive Image\DrvSnSht64.sys [132432 2010-06-01] (R-TT Inc.) R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2018-02-19] (Disc Soft Ltd) R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2018-02-19] (Disc Soft Ltd) S3 dtproscsibus; C:\WINDOWS\System32\drivers\dtproscsibus.sys [30264 2016-08-28] (Disc Soft Ltd) R0 EUBAKUP; C:\WINDOWS\System32\drivers\eubakup.sys [60968 2015-12-10] (CHENGDU YIWO Tech Development Co., Ltd) [Fichier non signé] R0 EUBKMON; C:\WINDOWS\System32\drivers\EUBKMON.sys [48168 2015-12-10] () [Fichier non signé] S1 EUDSKACS; C:\WINDOWS\system32\drivers\eudskacs.sys [18472 2015-12-10] (CHENGDU YIWO Tech Development Co., Ltd) [Fichier non signé] S1 EUFDDISK; C:\WINDOWS\system32\drivers\EuFdDisk.sys [192552 2015-12-10] (CHENGDU YIWO Tech Development Co., Ltd) [Fichier non signé] R0 file_tracker; C:\WINDOWS\System32\DRIVERS\file_tracker.sys [339808 2018-02-14] (Acronis International GmbH) R0 gpt_loader; C:\WINDOWS\System32\DRIVERS\gpt_loader.sys [79832 2017-10-11] () S1 GUSBootStartup; C:\WINDOWS\System32\drivers\GUSBootStartup.sys [20160 2016-09-03] (Glarysoft Ltd) S3 Hfsplus; C:\WINDOWS\System32\DRIVERS\hfsplus.sys [218072 2017-10-11] (Paragon Software Group) S3 HfsplusRec; C:\WINDOWS\System32\DRIVERS\hfsplusrec.sys [35288 2017-10-11] (Paragon Software Group) S3 hitmanpro37; C:\WINDOWS\system32\drivers\hitmanpro37.sys [55232 2018-02-23] () S1 hmpalert; C:\WINDOWS\system32\drivers\hmpalert.sys [293560 2018-02-23] (SurfRight B.V.) S3 hmpnet; C:\WINDOWS\system32\drivers\hmpnet.sys [93800 2018-02-23] (SurfRight B.V.) S3 imdisk; C:\WINDOWS\system32\drivers\imdisk.sys [64096 2018-01-08] (Olof Lagerkvist) S1 isedrv; C:\WINDOWS\system32\drivers\isedrv.sys [63200 2017-12-13] (COMODO) R3 keycrypt; C:\WINDOWS\System32\DRIVERS\KeyCrypt64.sys [159360 2016-08-10] (Zemana Ltd.) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [253880 2018-02-23] (Malwarebytes) S3 MDA_NTDRV; C:\Windows\system32\MDA_NTDRV.sys [47104 2016-05-20] () R0 mounthlp; C:\WINDOWS\System32\DRIVERS\mounthlp.sys [64472 2017-10-11] (Paragon Software Group) S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] () S1 NetworkX; C:\WINDOWS\system32\ckldrv.sys [28664 2008-03-17] () S3 R-ImageDisk; C:\Program Files (x86)\R-Drive Image\R-ImageDisk64.sys [213584 2014-10-10] (R-TT Inc.) R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [416472 2016-05-17] (Realsil Semiconductor Corporation) S3 rzc7359za; C:\WINDOWS\system32\drivers\zinstall_z77\rzc7359za.sys [255072 2018-01-08] (rzc7359za Foundation) S3 rzc7398za; C:\WINDOWS\system32\drivers\zinstall_z77\rzc7398za.sys [255080 2018-02-15] (rzc7398za Foundation) R0 tib; C:\WINDOWS\System32\DRIVERS\tib.sys [1049432 2018-02-14] (Acronis International GmbH) S2 tib_mounter; C:\WINDOWS\system32\DRIVERS\tib_mounter.sys [202592 2018-02-14] (Acronis International GmbH) S3 tnd; C:\WINDOWS\system32\DRIVERS\tnd.sys [581464 2018-02-14] (Acronis International GmbH) U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [28272 2018-02-23] () S3 Trufos; C:\WINDOWS\System32\DRIVERS\Trufos.sys [442848 2017-02-08] (BitDefender S.R.L.) S2 UI5IFS; C:\Program Files (x86)\Ashampoo\Ashampoo UnInstaller 7\IFS64.sys [30016 2017-11-17] () U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] () S2 virtual_file; C:\WINDOWS\System32\DRIVERS\virtual_file.sys [301408 2018-02-14] (Acronis International GmbH) S3 VSScanner; C:\WINDOWS\System32\DRIVERS\vsscanner.sys [29808 2016-08-18] (VoodooSoft, LLC) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46072 2018-02-16] (Microsoft Corporation) S0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [288848 2018-02-16] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [129616 2018-02-16] (Microsoft Corporation) S3 WIMMount; C:\Program Files (x86)\Windows Kits\10\Assessment and Deployment Kit\Deployment Tools\amd64\DISM\wimmount.sys [42688 2016-07-16] (Microsoft Corporation) S2 WiseAntiProcess; C:\WINDOWS\System32\DRIVERS\WiseAntiMalWareProcessMonitor.sys [39448 2018-02-06] (WiseCleaner.com) S2 WiseAntiReg; C:\WINDOWS\System32\DRIVERS\WiseAntiMalWareRegMonitor.sys [51232 2018-01-29] (WiseCleaner.com) S2 WiseProcessMonitor; C:\WINDOWS\System32\DRIVERS\WiseProcessMonitor.sys [38984 2017-10-26] (WiseCleaner.com) S3 WofAdk; C:\Program Files (x86)\Windows Kits\10\Assessment and Deployment Kit\Deployment Tools\amd64\DISM\wofadk.sys [221376 2016-07-16] (Microsoft Corporation) S3 WsAudio_Device; C:\WINDOWS\system32\drivers\VirtualAudio.sys [48424 2018-01-19] (Wondershare) S1 ZAM; C:\WINDOWS\System32\drivers\zam64.sys [203680 2016-09-07] (Zemana Ltd.) S1 ZAM_Guard; C:\WINDOWS\System32\drivers\zamguard64.sys [203680 2016-09-07] (Zemana Ltd.) U2 agp440; pas de ImagePath S3 avchv; \SystemRoot\system32\DRIVERS\avchv.sys [X] U0 Compbatt; pas de ImagePath S3 cpuz139; \??\C:\Users\jean-\AppData\Local\Temp\cpuz139\cpuz139_x64.sys [X] <==== ATTENTION U2 ERSvc; pas de ImagePath S3 GUMHFilters; \??\C:\Program Files (x86)\Glarysoft\Malware Hunter\Native\winxp_x64\GUMHFilter.sys [X] U2 IAStorDataMgrsvc; pas de ImagePath S3 IUFileFilter; \??\C:\la théorie du complot\IObit Uninstaller\drivers\win10_amd64\IUFileFilter.sys [X] S3 IURegProcessFilter; \??\C:\la théorie du complot\IObit Uninstaller\drivers\win10_amd64\IURegProcessFilter.sys [X] U2 NIHardwareService; pas de ImagePath U2 NVSvc; pas de ImagePath U2 Parvdm; pas de ImagePath U2 srService; pas de ImagePath S3 vdbus; \SystemRoot\System32\drivers\vdbus.sys [X] ========================== MD5 Pilotes ======================= C:\WINDOWS\System32\drivers\1394ohci.sys A7901875F89D011C38CF52C98ACF5B29 C:\WINDOWS\System32\drivers\3ware.sys EE1CCC54F75C24727A218F98FC5349DA C:\WINDOWS\System32\drivers\ACPI.sys 73C73E1AA0D4D727A04AAAB120B7F56A C:\WINDOWS\System32\drivers\AcpiDev.sys 0935496EF9624B46B935CB35ECE1F205 C:\WINDOWS\System32\Drivers\acpiex.sys D6794C31F4077B71433988787BAA926E C:\WINDOWS\System32\drivers\acpipagr.sys FE5F656D6B35089DA39112E74EC6A85A C:\WINDOWS\System32\drivers\acpipmi.sys 2F242941E4DFF69B883D77A16F039557 C:\WINDOWS\System32\drivers\acpitime.sys C247E35A21682DA8D0DC3AF9F025FCC5 C:\WINDOWS\System32\drivers\ADP80XX.SYS 49B9DB97AFC85DCCBDACDAB2E90085B7 C:\WINDOWS\system32\drivers\afd.sys 983266DA83FFF73DBDDD3730A4712228 C:\WINDOWS\System32\DRIVERS\ahcache.sys E44DB3F7225EC3E119560738B3619972 C:\WINDOWS\System32\drivers\amdk8.sys DF21E05E41E5AC3F13F304D91457649A C:\WINDOWS\system32\DRIVERS\atikmdag.sys D1F059A530620DCF71303B525D52CA97 C:\WINDOWS\system32\DRIVERS\atikmpag.sys AD96CC96B6A0CEE8910A13679426C970 C:\WINDOWS\System32\drivers\amdppm.sys 45D0AA4BB90B821DF92E8F19ABED0C5E C:\WINDOWS\System32\drivers\amdsata.sys 74FFBC43B4B899C9A8CA06A892F2CE73 C:\WINDOWS\System32\drivers\amdsbs.sys AAB0F1D8D7E54761ABAB13AF161F1680 C:\WINDOWS\System32\drivers\amdxata.sys F91BAAC4237C40352A807000F3B716F9 C:\WINDOWS\System32\amwrtdrv.sys D1E6165EC6510AE4784267C81B652666 C:\WINDOWS\System32\DRIVERS\apmwin.sys 44C1C3D82D02957513FB77119D925FC3 C:\WINDOWS\System32\drivers\appid.sys BC121C099C6C659126AD2102AFDFF8CF C:\WINDOWS\System32\drivers\applockerfltr.sys 68190E2BADF23BD782344970E5B5DE9E C:\WINDOWS\System32\drivers\arcsas.sys E6AB1F0B4C3D4E0D2A88332D76FECD03 C:\WINDOWS\System32\drivers\asyncmac.sys 61C5A480C43E7E8E49C42869F49D0D3E C:\WINDOWS\System32\drivers\atapi.sys A10F989A812B57B9695F6C305907C9C6 C:\WINDOWS\system32\drivers\awealloc.sys E9D390A9416107B0EACA187BB1C6ADCB C:\WINDOWS\System32\drivers\bxvbda.sys 61BAC67048CA5C1D08C48FCC8012B613 C:\WINDOWS\System32\drivers\BasicDisplay.sys 68F72B05EBC6D1779C0D60A147C7CA0B C:\WINDOWS\System32\drivers\BasicRender.sys 23156E7EDAF613D839E2839746B168D3 C:\WINDOWS\System32\drivers\bcmfn.sys 3F5523DCEFE42B385659C5CB46A6B810 C:\WINDOWS\System32\drivers\bcmfn2.sys 0B750A6A6D847E73CA48ADD7A0F5A393 C:\Windows\System32\Drivers\Beep.sys 0A508274355745EEF01C6BE3198D02C4 C:\WINDOWS\System32\DRIVERS\bowser.sys EEBFAEB4702E1049ECD44B10485E6C0C C:\WINDOWS\System32\drivers\BthAvrcpTg.sys 722036C26D2C4E50EC2A2EC5FD678846 C:\WINDOWS\System32\drivers\bthhfenum.sys C2E31BE025D46D189E38DD1EDF07837A C:\WINDOWS\System32\drivers\BthHFHid.sys F7CD605FC0B0B22F3F6F247595E3A655 C:\WINDOWS\System32\drivers\bthmodem.sys 535DC41A33630AE4C262406F9E981C03 C:\WINDOWS\System32\drivers\buttonconverter.sys 23F9EF739F685E07482116425E7879AA C:\WINDOWS\System32\drivers\C71BABA5.sys BEE1682DA217A4AD46C36896769AA580 C:\WINDOWS\System32\drivers\capimg.sys 4C61113687EB66035A70A55EE9B7DB4A C:\WINDOWS\System32\DRIVERS\cdfs.sys F8FB51B9EF6372610E9B31A1D86B62FC C:\WINDOWS\System32\drivers\cdrom.sys 613D0137C269187FA298A157E3D14A18 C:\WINDOWS\System32\drivers\cht4sx64.sys 0AED948DA8D5F08B3D6F12E4E2089736 C:\WINDOWS\System32\drivers\cht4vx64.sys 0002A0FDE087C1657AB31CE73077539C C:\WINDOWS\System32\drivers\circlass.sys 6B4F90A287D75CCD78694F6790C911B2 C:\WINDOWS\System32\drivers\CLFS.sys 09D0B94D3A06EFD1EB70189EC4B26DF7 C:\WINDOWS\System32\drivers\registry.sys EEC3A4A98AE1A337E3CD1483AD6F2E15 C:\WINDOWS\system32\drivers\clvad.sys EFC50A6C4C6B6F9AA09AFAC5C15881B6 C:\WINDOWS\System32\drivers\CLVirtualBus01.sys 0C7626AFB2419207B2ABCB6F8AEA334F C:\WINDOWS\system32\DRIVERS\clwvd7.sys 30EAA7468E7721A99ED8221A7CEE7A80 C:\WINDOWS\System32\drivers\CmBatt.sys 429623E266EF067A44E8CF148E9DFB9B C:\WINDOWS\System32\Drivers\cng.sys 3E502EB1701CF54CF237B6250FBE38EA C:\WINDOWS\System32\DRIVERS\cnghwassist.sys 3DB10C59405931E2C72EFB82C1AF97D1 C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_a140581a8f8b58b7\CompositeBus.sys 34C935AF2A414572B412B3556586D783 C:\WINDOWS\System32\drivers\condrv.sys 44EEEB2382F566999287E13F2067693C C:\WINDOWS\system32\DRIVERS\csvol.sys 941E571C6702AB6809781B3E8E114DC7 C:\WINDOWS\System32\drivers\dam.sys 68B1E0DA1BB1680494227E88CE821E2F C:\WINDOWS\System32\Drivers\dfsc.sys 7EAFDEF51136E8F2452CEBD8D084F108 C:\WINDOWS\System32\drivers\disk.sys 35B9D46560339A5A7F0CAC6ED702C817 C:\WINDOWS\System32\drivers\DKDFM.sys 209C1E29E9558D80A246E219C25754F1 C:\WINDOWS\system32\drivers\DKRtWrt.sys 2FAA591ACD663B45E5685340312B7D7A C:\WINDOWS\System32\drivers\DKTLFSMF.sys 25558ECF737490235264FC5FA013D9EB C:\WINDOWS\System32\drivers\dmvsc.sys 815F45161A4571C2C44491564F3D5968 C:\WINDOWS\System32\DRIVERS\dokan.sys 5AA448099BECCD500382A98D01348E61 C:\WINDOWS\system32\DRIVERS\drmkaud.sys AE6BD4C879A8C849E53947C92DF3B3A0 C:\Program Files (x86)\R-Drive Image\DrvSnSht64.sys 4E375548E71CE02F65D50DFF35D6B5B8 C:\WINDOWS\System32\drivers\dtlitescsibus.sys 679FF716052109392D870F6A6C4A3535 C:\WINDOWS\System32\drivers\dtliteusbbus.sys E23FDD696839A4790682CA66C48D3F2F C:\WINDOWS\System32\drivers\dtproscsibus.sys 726E40B11612664486BB6C6105283C95 C:\WINDOWS\System32\drivers\dxgkrnl.sys A39F5D1A0BB032DDDBAD3A0C050B1049 C:\WINDOWS\System32\drivers\evbda.sys 7EC6FC0266D74BD47ABB130A328B70EC C:\WINDOWS\System32\drivers\EhStorClass.sys 8D74B8B5D6F7C5BC4C525BAF2B083FF1 C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys 4D49B99DCACA1FC782A94DB596246504 C:\WINDOWS\System32\drivers\errdev.sys 77B60DEC7DCB4233E4A69D3F52E5DB24 C:\WINDOWS\System32\drivers\eubakup.sys 83EF0C33B56360761AE2DDB86E47B2E8 C:\WINDOWS\System32\drivers\EUBKMON.sys CCF2072C27B5F84447A0829014C43760 C:\WINDOWS\system32\drivers\eudskacs.sys 44A0838432C8A31A5D6CBE0BF348CED6 C:\WINDOWS\system32\drivers\EuFdDisk.sys D05585505CB20235E7C665158464551D C:\Windows\System32\Drivers\exfat.sys FCD2C63754C2E739A8EEAD9BC63F9DDC C:\Windows\System32\Drivers\fastfat.sys C077AA74EDDAF69985EB27597BCB342A C:\WINDOWS\System32\drivers\fdc.sys 99598ECA5E41996E005D5B9D9FF1EFA2 C:\WINDOWS\System32\drivers\filecrypt.sys F44F666B0EACC3181544FFCF8CA0FFC7 C:\WINDOWS\System32\drivers\fileinfo.sys 78A210DDFDF2C9EC884631D2DAA573F0 C:\WINDOWS\System32\drivers\filetrace.sys 1A97DB5E701A186989F3795223C3BE39 C:\WINDOWS\System32\DRIVERS\file_tracker.sys 3362EFB9ECE40CF85B0A729F23BAEB7D C:\WINDOWS\System32\drivers\flpydisk.sys 46626665F0E5906E45619B4EFD6186B8 C:\WINDOWS\System32\drivers\fltmgr.sys FDA72ACA14D516D18C33AFCD0FD9260F C:\WINDOWS\System32\DRIVERS\fltsrv.sys 48E43456C95CE0D73D09CE8FA3E5978A C:\WINDOWS\System32\drivers\FsDepends.sys D152CCBFC8251670BF0AAFE00D6BC782 C:\Windows\System32\Drivers\Fs_Rec.sys 6D6BB5C7363CD35FA715E826F3D029EE C:\WINDOWS\System32\DRIVERS\fvevol.sys B719EAA1EC93586955B013BD7DD61356 C:\WINDOWS\System32\drivers\vmgencounter.sys EF78034773CE506323655A868C949144 C:\WINDOWS\System32\drivers\genericusbfn.sys B55FEBC6A00DAA1FE074F020B6907516 C:\WINDOWS\System32\Drivers\msgpioclx.sys DDD8A8CDDC7F13EF57D1DAAE71865936 C:\WINDOWS\System32\DRIVERS\gpt_loader.sys 6C52AA2229EE8574CE94C3E261D258F4 C:\WINDOWS\System32\drivers\gpuenergydrv.sys 7ACD8F69B5D6EC97E6D2C006E19BED88 C:\WINDOWS\System32\drivers\GUSBootStartup.sys E4626B663B94E5FEB90F497395B5C059 C:\WINDOWS\system32\DRIVERS\HdAudio.sys 217230B984AB2954E2FA5E36578D7B08 C:\WINDOWS\System32\drivers\HDAudBus.sys 10E3515FE5DBA6656FA62C29342EC4A1 C:\WINDOWS\System32\DRIVERS\hfsplus.sys 51AAB619BDE403A0E26EFA92AE2901D6 C:\WINDOWS\System32\DRIVERS\hfsplusrec.sys E74E9F85A556518D1D15E700E619E30A C:\WINDOWS\System32\drivers\HidBatt.sys B90D284B97CD4CA9DE7430AAAD887A56 C:\WINDOWS\System32\drivers\hidbth.sys B2FE11643CC6ACDEE6C247DD36018FDB C:\WINDOWS\System32\drivers\hidi2c.sys D24355488A2D4D2323518EC1AC7A6D9E C:\WINDOWS\System32\drivers\hidinterrupt.sys 0AF9ABBA4F3F55C6C803890D64BC3C29 C:\WINDOWS\System32\drivers\hidir.sys CDBCF8E9AB06D88A1E1191D32F320C5D C:\WINDOWS\System32\drivers\hidusb.sys D8536CB438CC4CCDAE047B768EED22B2 C:\WINDOWS\system32\drivers\hitmanpro37.sys D8B279B390DCF00AA20FB599EB37AD5F C:\WINDOWS\system32\drivers\hmpalert.sys 54DDC28A73B9BE8FB416019C03251BA4 C:\WINDOWS\system32\drivers\hmpnet.sys EBC8F1DE6D078A6AED71A19D8A7A61EA C:\WINDOWS\System32\drivers\HpSAMD.sys F5CA18197B4646E04DB9EB2D6642CC4D C:\WINDOWS\System32\drivers\HTTP.sys 65E358D604267CBAACB74A2598BBE22B C:\WINDOWS\System32\drivers\hvservice.sys 9B6C35343348CC1B5E9D81F0702A3271 C:\WINDOWS\System32\drivers\hwpolicy.sys 771EDDA9830A3079F996F34D681FB6E5 C:\WINDOWS\System32\drivers\hyperkbd.sys 3B9F315E7FA72CC25228EB097DD9C694 C:\WINDOWS\System32\drivers\i8042prt.sys B54B30992620C97230013A74461C8517 C:\WINDOWS\System32\drivers\iagpio.sys C6B8743B213F06AA60943D8366FE968F C:\WINDOWS\System32\drivers\iai2c.sys 9A2A2F3C69B9A30B6E78536F6D258BAD C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys 5A0E850F8CD17791A3E6A3CF81D0CA28 C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys 7508F1096803385D6376BFD0BD473AC4 C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys 16A10CCEDCF5AC4CAAE43DC9FC40392F C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys EB82A11613326691508D9ED9A4FE29E7 C:\WINDOWS\System32\drivers\iaStorAV.sys 97E553D03219D3D51705C7235D9EAEBD C:\WINDOWS\System32\drivers\iaStorV.sys 8350FE3BCDE3428BC040877BB7E9EAEB C:\WINDOWS\System32\drivers\ibbus.sys 3BA03F7C7700DDF4C383DDE9252F5817 C:\WINDOWS\system32\drivers\imdisk.sys B0DABECD4F85D41B71BD0CCAF9B09C20 C:\WINDOWS\System32\drivers\IndirectKmd.sys 2A01C96DF5802D3434634E55C91232D8 C:\WINDOWS\system32\drivers\RTKVHD64.sys 39200ECEFB50612B13B5D16545BEB201 C:\WINDOWS\System32\drivers\intelide.sys 9F7E87F6595D065A8A200A291043045E C:\WINDOWS\System32\drivers\intelpep.sys A6BD2E20AE1BC5CB2776C87C28E4F4CA C:\WINDOWS\System32\drivers\intelppm.sys 2A48DA39542636DB0FA3BA915385D1B3 C:\WINDOWS\System32\drivers\iorate.sys 4A922CAB4AB5F29F1BECC9D95B4B7F05 C:\WINDOWS\System32\DRIVERS\ipfltdrv.sys FE85D0A86CA7A5A99CF8CD04DE7F80AE C:\WINDOWS\System32\drivers\IPMIDrv.sys 450DBDD716C7911F83E05F78EE18BFA2 C:\WINDOWS\System32\drivers\ipnat.sys F1DAECC3B3D6399875D4F10529D6A77C C:\WINDOWS\system32\drivers\irda.sys 7475A2903BB704B446AA6309E34D3362 C:\WINDOWS\System32\drivers\irenum.sys 9725E7F0C64CE9916A5CDABE8D6E13C3 C:\WINDOWS\System32\drivers\isapnp.sys 58040898883A96160D41739C80328BBF C:\WINDOWS\System32\drivers\msiscsi.sys C9FD02D62E09337B67B0C61EC8CA38CC C:\WINDOWS\system32\drivers\isedrv.sys 29AF0E51D805D9F564DD1F8C3FD365AD C:\WINDOWS\System32\drivers\kbdclass.sys 210808437570BDDEE71A43535E3A2D30 C:\WINDOWS\System32\drivers\kbdhid.sys 2D05785B0C58D90A34EA15032EADBBA9 C:\WINDOWS\System32\drivers\kdnic.sys 813BA3EB2CE038F2A5382DDD75CAD60B C:\WINDOWS\System32\DRIVERS\KeyCrypt64.sys 8E6E3C6D32042055F918C457B3CB683C C:\WINDOWS\System32\Drivers\ksecdd.sys 9FA1B5D84F596F0664F0465F302044DC C:\WINDOWS\System32\Drivers\ksecpkg.sys 55AD13E2BAFC5AB53A10F8C271F5D242 C:\WINDOWS\system32\drivers\ksthunk.sys 4ED115CD1A1099705F56B5E0FFF97CC6 C:\WINDOWS\System32\drivers\L1C63x64.sys 4E444F41E69BBE2E0BAE34D5DFCB5732 C:\WINDOWS\System32\drivers\lltdio.sys 5933A6673F00D8255C52957E40C2D601 C:\WINDOWS\System32\drivers\lsi_sas.sys 8E1B0946948CCC0BC1FA3CB70374A795 C:\WINDOWS\System32\drivers\lsi_sas2i.sys 4F68163FC04C973500DC4DA0946917B0 C:\WINDOWS\System32\drivers\lsi_sas3i.sys E5AC5F2815938651CDCC27F425474673 C:\WINDOWS\System32\drivers\lsi_sss.sys CCF6EC9FB9B8F18E05B4253E81013E48 C:\WINDOWS\system32\drivers\luafv.sys C9579D32219E5B936AC3A48D470117EC C:\WINDOWS\System32\Drivers\mbamswissarmy.sys B047B9CE5A0D800E6D713B43D0405221 C:\Windows\system32\MDA_NTDRV.sys 39DFF42E57C53A58C162F4760A75EA84 C:\WINDOWS\System32\drivers\megasas.sys C3CDCCF07486BD2616A7B82946E07AC0 C:\WINDOWS\System32\drivers\megasr.sys FADB2FE017E69EECE0E1BA78661C2E8C C:\WINDOWS\System32\drivers\mlx4_bus.sys FD60818B66B2E8A5415EA840E99A9D8F C:\WINDOWS\system32\drivers\mmcss.sys 68F6977F1CFBAAC770D940A8C0326FA1 C:\WINDOWS\System32\drivers\modem.sys D842ADDB5911945D51F61A0B1C8F36E3 C:\WINDOWS\System32\drivers\monitor.sys 9CCCB7FC3EDADEBA461D78615A6011A6 C:\WINDOWS\System32\drivers\mouclass.sys 27A07B2FB2E3057DA8DAEA4F25D843C7 C:\WINDOWS\System32\drivers\mouhid.sys 7BD6E7F7C9001AB21B8362CFFEE80B25 C:\WINDOWS\System32\DRIVERS\mounthlp.sys 7CD278AB092DE43828F7D696A8E7E6A6 C:\WINDOWS\System32\drivers\mountmgr.sys F5BDAEE4B7D369D4C74668DCFBA3FF10 C:\WINDOWS\System32\drivers\mpsdrv.sys 30844BD376F9D01E62C820BEF446F1F8 C:\WINDOWS\system32\drivers\mrxdav.sys 50C2389CD04C5B8632E3DC2D733EF15D C:\WINDOWS\System32\DRIVERS\mrxsmb.sys 4D5F17C23D25B5BDF7EB35A54F483C9B C:\WINDOWS\System32\DRIVERS\mrxsmb10.sys 8F58AEAE00B39AC9AD93755E777B19D8 C:\WINDOWS\System32\DRIVERS\mrxsmb20.sys FC501F50E6214AF38D4B22220537187A C:\WINDOWS\System32\drivers\bridge.sys 74C9D21523DAE0C18F413C196DF0058A C:\Windows\System32\Drivers\Msfs.sys F01B849D9D4A8CEAF32D4FDBD0B83C92 C:\WINDOWS\System32\drivers\msgpiowin32.sys 22ECD8F5D1DFADF2011BBB1700CB871D C:\WINDOWS\System32\drivers\mshidkmdf.sys FD870F6968A145E4D2BA8A8842686B03 C:\WINDOWS\System32\drivers\mshidumdf.sys 30364757963A028CE5DF0FBAAC270173 C:\WINDOWS\System32\drivers\msisadrv.sys 6BB0FEDDAE7135FA37FFAFF4D9E0E876 C:\WINDOWS\system32\DRIVERS\MSKSSRV.sys 13D614E6B51ECF36746C48CE829FA7F6 C:\WINDOWS\System32\drivers\mslldp.sys 642CDE46351D5D2D90311E77072AB46D C:\WINDOWS\system32\DRIVERS\MSPCLOCK.sys F2302A5CE63CA7673200FAFCEEEDB6AF C:\WINDOWS\system32\DRIVERS\MSPQM.sys 6114512EA26E835BA522C63635429DB5 C:\Windows\System32\Drivers\MsRPC.sys AA538E16E644D00E3BA5349BBA9598EC C:\WINDOWS\System32\drivers\mssmbios.sys 0543BEFD41EC4D25C7F7CF36409CEC7D C:\WINDOWS\system32\DRIVERS\MSTEE.sys C1569E4DB8EFE3617847BF041A3C842F C:\WINDOWS\System32\drivers\MTConfig.sys 130B16970154BA9876B09E5C4BAC63BE C:\WINDOWS\System32\Drivers\mup.sys 15D987C8F6CCD4AC94E070C5986762CB C:\WINDOWS\System32\drivers\mvumis.sys 3D2C5B4995CA0751D32DEA0DE9FDFE44 C:\WINDOWS\System32\DRIVERS\nwifi.sys DB31EBB04C871F422C36A0962DA7D38B C:\WINDOWS\System32\drivers\ndfltr.sys 629CB21AC49C8867E0F29DF1C16DB7B4 C:\WINDOWS\System32\drivers\ndis.sys 36DD2C614720EC2970CB5E870BA69D8D C:\WINDOWS\System32\drivers\ndiscap.sys 6DD605338FAAF6BA17662AA874E0D162 C:\WINDOWS\System32\drivers\NdisImPlatform.sys E34196F285F8B8879E1FF36C31F7179E C:\WINDOWS\System32\DRIVERS\ndistapi.sys 1FAD2398673F30CEC616B89C46B7DCBA C:\WINDOWS\System32\drivers\ndisuio.sys AEB8ECBE66CC46854066CB1F5623E179 C:\WINDOWS\System32\drivers\NdisVirtualBus.sys 7340104C2BF2F126714F7CDE85E63610 C:\WINDOWS\System32\drivers\ndiswan.sys 07ADC1F8DCBEB8104D75129B11584B8C C:\WINDOWS\System32\DRIVERS\ndiswan.sys 07ADC1F8DCBEB8104D75129B11584B8C C:\WINDOWS\System32\DRIVERS\NDProxy.sys 78A12E3DF035B5D054986949B19BE43C C:\WINDOWS\System32\drivers\Ndu.sys 04C8859355C1DC9C0FA198D1894D71C2 C:\WINDOWS\System32\drivers\NetAdapterCx.sys 6C76780A01FC2B885BD6E957B5C36B02 C:\WINDOWS\System32\drivers\netbios.sys 5D1513BD6430307C9DB86C6E351372ED C:\WINDOWS\System32\DRIVERS\netbt.sys 6FEBB0A847FFD5F057B9AC8889F1B9A7 C:\WINDOWS\system32\ckldrv.sys 2263727032E9B19231A706046B8C82D3 C:\Windows\System32\Drivers\Npfs.sys 001CBD7A2CD45C4EB39C01C3C677EF73 C:\WINDOWS\System32\drivers\npsvctrig.sys 90F5DC9802AAA00CD0B6E2AD9E7FFADC C:\WINDOWS\System32\drivers\nsiproxy.sys 0C6218321A09A7B51BA7FFAFBA4CCB21 C:\Windows\System32\Drivers\NTFS.sys BE43EC0D5AD467CFC5C9770F2F8EBCC2 C:\Windows\System32\Drivers\Null.sys 6E6DD6F9DD2A034CF85E94047DBDB992 C:\WINDOWS\System32\drivers\nvraid.sys D261DF41F0840F734856A2B4F5E072C7 C:\WINDOWS\System32\drivers\nvstor.sys 23B702B555EB0436B9DAA0BC63DA65CE C:\WINDOWS\System32\drivers\parport.sys 6B81BF7853D161DB8AC62CD8B9C2DE6B C:\WINDOWS\System32\drivers\partmgr.sys 64E0AA114871B2A37908E44A18F35A73 C:\WINDOWS\System32\drivers\pci.sys 55E45E0A89429AE9C62D728B9C4891C0 C:\WINDOWS\System32\drivers\pciide.sys 214DCC87E3898F738075D1341252A552 C:\WINDOWS\System32\drivers\pcmcia.sys AED76A3333B3A31536E430020E0226FC C:\WINDOWS\System32\drivers\pcw.sys E63FB38B6E75B39467492FBAD2CD512A C:\WINDOWS\System32\drivers\pdc.sys 9EA203A07EFA6D74F07F32EF0DAB5CA6 C:\WINDOWS\System32\drivers\peauth.sys 1509A77F840AA9E72CF8247D0CF2FBDE C:\WINDOWS\System32\drivers\percsas2i.sys 540116170E2135FCD5DDE77702166B67 C:\WINDOWS\System32\drivers\percsas3i.sys 8356F87553BF49C703CF382033815898 C:\WINDOWS\System32\drivers\raspptp.sys 5645B9D9788CCA2C88B9534996ED2D6D C:\WINDOWS\System32\drivers\processr.sys 372913E12677A8CBBBABDD8311894F9D C:\WINDOWS\System32\drivers\pacer.sys FC98407B85A31161851FDE245517574F C:\WINDOWS\system32\drivers\qwavedrv.sys 819602BBBFDB0BD46DEA3715BF0DD452 C:\Program Files (x86)\R-Drive Image\R-ImageDisk64.sys 5631BF4D3C76C684CB3674E099074B9E C:\WINDOWS\System32\DRIVERS\rasacd.sys CDF47037A0939F56D11F699629C276AD C:\WINDOWS\System32\drivers\AgileVpn.sys 28C2EA278070EE12701D0EDF8CB0EC36 C:\WINDOWS\System32\drivers\rasl2tp.sys 17E565710172ED71B8531D8822E1C5D1 C:\WINDOWS\System32\DRIVERS\raspppoe.sys 9387DF155233D45D4E010F4F2FB52A57 C:\WINDOWS\System32\drivers\rassstp.sys F0F4EEDEEBEE7A4244FAFB96A16B5712 C:\WINDOWS\System32\DRIVERS\rdbss.sys 392CD98739F4A8F188A3CB34F6AB193E C:\WINDOWS\System32\drivers\rdpbus.sys 79A415E6FA915EFC00297DAB16EC2635 C:\WINDOWS\System32\drivers\rdpdr.sys 7135785C21CA79D270D11037C43D3F19 C:\WINDOWS\System32\drivers\rdpvideominiport.sys 97A61A3CB2B5CB4FC32B3224EF333448 C:\WINDOWS\System32\drivers\rdyboost.sys 69BB204AE07EE84ECFAB1BF13C4BD04B C:\Windows\System32\Drivers\ReFSv1.sys 940D6F5A2B0A61EE4170DF84F6C95C20 C:\WINDOWS\System32\drivers\rspndr.sys 5FF28F097C9699097B473F8FC7C1AA7D C:\WINDOWS\system32\Drivers\RtsUer.sys 9B78249A7866242755C866CE3CA9CA72 C:\WINDOWS\system32\drivers\zinstall_z77\rzc7359za.sys F532041F0DEBC44A8E2F77726545687F C:\WINDOWS\system32\drivers\zinstall_z77\rzc7398za.sys 8B8169B727DAC0812D5B9A6C2263F3AF C:\WINDOWS\System32\drivers\vms3cap.sys B5DAEE69BACA64D2BB004568E22D8756 C:\WINDOWS\System32\drivers\sbp2port.sys 5E73FB63E2DBC75FE0C17DEB0010CE0E C:\WINDOWS\System32\DRIVERS\scfilter.sys 3D9A82B03C92D1FEC42CB171D6F57778 C:\WINDOWS\System32\drivers\scmbus.sys 9055ADDFBA4C8B914C914CE693B55C0A C:\WINDOWS\System32\drivers\scmdisk0101.sys B6F2363584E62960846F7C3F00124A4F C:\WINDOWS\System32\drivers\sdbus.sys FCBB8A17B4437B2CA8CC8DA8CB1D306E C:\WINDOWS\System32\drivers\sdstor.sys 120DFCB71D6C502613A9E2D50E16850C C:\WINDOWS\System32\drivers\SerCx.sys 401D706DDC0A7AF18C3DD228ADF74551 C:\WINDOWS\System32\drivers\SerCx2.sys 7084D11083F0CDCA8B5C76F9846ABF5D C:\WINDOWS\System32\drivers\serenum.sys 3FF478A8ED32A83C36581425F6282B6C C:\WINDOWS\System32\drivers\serial.sys 92509187AA171A80521528B36F753E1D C:\WINDOWS\System32\drivers\sermouse.sys 433D38FF6D08B993847EA2A10EB8CB52 C:\WINDOWS\System32\drivers\sfloppy.sys 697D3EE0740AEAB62B66ABCA1C83D13B C:\WINDOWS\System32\drivers\SiSRaid2.sys A34CE1830E45DA98932295FDE4B7908A C:\WINDOWS\System32\drivers\sisraid4.sys A7B5C670770E908DA5FEF5BF1136E933 C:\WINDOWS\System32\DRIVERS\snapman.sys 8C048728D8D4F3B204C18C5379BE7645 C:\WINDOWS\System32\drivers\spaceport.sys 3DB9C2950439B61A038BF83E697C7A14 C:\WINDOWS\System32\drivers\SpbCx.sys E03264C4C25B568F92ED1656AD541E64 C:\WINDOWS\System32\DRIVERS\srv.sys EDCDCD95B916DB156A903AC6256F0CCF C:\WINDOWS\System32\DRIVERS\srv2.sys DF7147DE10921DBAAE9F9EEF94590E10 C:\WINDOWS\System32\DRIVERS\srvnet.sys 416D224AF7481A4179F018FB1F9A5B6B C:\WINDOWS\System32\drivers\stexstor.sys 29D26E1347AE1BBD4201014E19880B2C C:\WINDOWS\System32\drivers\storahci.sys 0FE3B9A9E40DE1029B0AC2368A3F765D C:\WINDOWS\System32\drivers\vmstorfl.sys C5E0ACE4771F5575D9D5B457ABF3AD03 C:\WINDOWS\System32\drivers\stornvme.sys B739FF1C1FAF9D0ADFBFB0FD59A5AB37 C:\WINDOWS\System32\drivers\storqosflt.sys BEBF85EB4D90E6996047DA027D0ED26E C:\WINDOWS\System32\drivers\storufs.sys 8E73037A6F8938475692FFCC26EBF385 C:\WINDOWS\System32\drivers\storvsc.sys 9D9DED47DA10E845EFF2DD57C94C809B C:\WINDOWS\System32\drivers\swenum.sys 505E0C40B5D0ADDCBB414640F59BD2E0 C:\WINDOWS\System32\drivers\Synth3dVsc.sys 32F46FB0F290D16DAA452B289C985795 C:\WINDOWS\System32\drivers\tcpip.sys E93C3AB8B29AB4905541B5AB87963906 C:\WINDOWS\System32\drivers\tcpip.sys E93C3AB8B29AB4905541B5AB87963906 C:\WINDOWS\System32\drivers\tcpipreg.sys 8DBB1BE20C36E6D19BCC89EEA00B953C C:\WINDOWS\system32\DRIVERS\tdx.sys 9D2DD64A0B51C56285512DC9454340F6 C:\WINDOWS\System32\drivers\terminpt.sys 06130AFFECEB94525FC2352936576B70 C:\WINDOWS\System32\DRIVERS\tib.sys 3F656867E983E8D9E71E57354383C23A C:\WINDOWS\system32\DRIVERS\tib_mounter.sys DA3BF6E315D2FC2681CB7AE1E745DFDB C:\WINDOWS\system32\DRIVERS\tnd.sys A6C7255A6C95B05E6551538F54248A7F C:\WINDOWS\System32\drivers\tpm.sys 798C8CB861EB09C5AFB77468E5449BBB C:\Windows\System32\drivers\TrueSight.sys 0D5A09B08568760AE85A801FCBC0F83D C:\WINDOWS\System32\DRIVERS\Trufos.sys B9E5E3CFD096A5D60F2F7061A6FBB67B C:\WINDOWS\System32\drivers\TsUsbFlt.sys A6F4025664C9D4BC2A9EDAB4092706D7 C:\WINDOWS\System32\drivers\TsUsbGD.sys 37A96AD493E110C0BF1EE0AC0F9E7DBD C:\WINDOWS\System32\drivers\tunnel.sys 79E264287F17D56D768440B0270466DE C:\WINDOWS\System32\drivers\uaspstor.sys AA65954F512BA097DD190790876DD991 C:\WINDOWS\System32\Drivers\UcmCx.sys AB6268022C3A5B529075A39C33904DA6 C:\WINDOWS\System32\Drivers\UcmTcpciCx.sys 7ED2EDA43D21C7A5F589A7960E265C52 C:\WINDOWS\System32\drivers\UcmUcsi.sys 169351463039B45F5CDED9768879F712 C:\WINDOWS\System32\drivers\ucx01000.sys 08A9E3AD29B215484FBB68CDC175DF3A C:\WINDOWS\System32\drivers\udecx.sys DA70AEE267491AA56BC63AA0C0C96CA2 C:\WINDOWS\System32\DRIVERS\udfs.sys FBC5ECF6D5A868D0B116C2DBB02B8168 C:\WINDOWS\System32\drivers\UEFI.sys B918E40FAA9CD118CCA4AD388B748C98 C:\WINDOWS\System32\drivers\ufx01000.sys 0FD75222C1AD2687AB365BEBEA400DD4 C:\WINDOWS\System32\drivers\UfxChipidea.sys C1A78C53E01C641AE41BFA65797819F5 C:\WINDOWS\System32\drivers\ufxsynopsys.sys 767307212110EBEFB93EC9A5BE9E85B9 C:\Program Files (x86)\Ashampoo\Ashampoo UnInstaller 7\IFS64.sys 6498978E36944F847C1A52B20D951B70 C:\WINDOWS\System32\drivers\umbus.sys DC460AAA18CA2342FBBFB2DF9B044472 C:\WINDOWS\System32\drivers\umpass.sys C3CF0377917ECE6D65D7623E1E61568F C:\WINDOWS\System32\drivers\urschipidea.sys 6B46FC140C9AF68E6E7697D66D59CB4D C:\WINDOWS\System32\drivers\urscx01000.sys B4402E7F0923F660270442CE76877ABE C:\WINDOWS\System32\drivers\urssynopsys.sys 9DD431F1B94789CFB527E5D19261F124 C:\WINDOWS\System32\drivers\usbccgp.sys C87E32B90F085970D9637FBAD45EF6FE C:\WINDOWS\System32\drivers\usbcir.sys 0B663856474AC41924D9E9112203858F C:\WINDOWS\System32\drivers\usbehci.sys F83D2250256203AC5DA5E8601C1AFDD7 C:\WINDOWS\System32\drivers\usbhub.sys 7FFD26742321919590ED77FCA556D65F C:\WINDOWS\System32\drivers\UsbHub3.sys 7A749B2863B5561BE34B39E8E249AD8F C:\WINDOWS\System32\drivers\usbohci.sys D2109F1F4FEBF1DAC415CDC5DE876479 C:\WINDOWS\System32\drivers\usbprint.sys 29C9572F2D061CFC3C0BD48A3163E343 C:\WINDOWS\System32\drivers\usbser.sys 429477D6DEF3321FF7D3EF23CAAADA00 C:\WINDOWS\System32\drivers\USBSTOR.SYS 0CC16F7B91C57AE9A4E44425A295FDAA C:\WINDOWS\System32\drivers\usbuhci.sys C917D09064CDBD18F75ADC9B2C48F847 C:\WINDOWS\System32\drivers\USBXHCI.SYS 95BCCEFBC40D06484CF16144FE79B8A5 C:\WINDOWS\System32\drivers\vdrvroot.sys 0CBDE344FB48E42D78E29469F202ADBC C:\WINDOWS\System32\drivers\VerifierExt.sys 723195568C8755CAD57F7933C5F2C5C2 C:\WINDOWS\System32\drivers\vhdmp.sys C12B4859FC255AA6B3021CF8BB14A11F C:\WINDOWS\System32\drivers\vhf.sys 7929228F0E8B0C2FA0495A17A4FC27F6 C:\WINDOWS\System32\DRIVERS\virtual_file.sys 0C987C7C5A0B710AB2881B3F19DF72F5 C:\WINDOWS\System32\drivers\vmbus.sys AEE432ED868831B1F068E373598F6D93 C:\WINDOWS\System32\drivers\VMBusHID.sys 9444B23FC694B5F90F21B0FC7F10D8DD C:\WINDOWS\System32\drivers\vmgid.sys 4D0287F566B36536DD812A54C015FC4A C:\WINDOWS\System32\drivers\volmgr.sys 29075915F9BDC3437F8BED71C067D399 C:\WINDOWS\System32\drivers\volmgrx.sys 6BDB6CE6D2D9E3D3F28F1C97E12B62E2 C:\WINDOWS\System32\drivers\volsnap.sys BF2546583BB75F01DDA60A7921DFB230 C:\WINDOWS\System32\drivers\volume.sys AC2E20A74D09D24485BE8396CE04F07B C:\WINDOWS\System32\drivers\vpci.sys 04BEC879AD7B3FDDD0339B19FECB0160 C:\WINDOWS\System32\drivers\vsmraid.sys FD9BCB8920973CEAD4D49DC7A6D8A618 C:\WINDOWS\System32\DRIVERS\vsscanner.sys 88457246BE3C9DE59DDAA36305C013F4 C:\WINDOWS\System32\drivers\vstxraid.sys 0C111F220798CCE80484026E06822379 C:\WINDOWS\System32\drivers\vwifibus.sys 607639716E9DB1CEF4E18B5B229293B4 C:\WINDOWS\System32\drivers\vwififlt.sys B1ED64E628763148BF84FBE23F2AD711 C:\WINDOWS\System32\drivers\wacompen.sys 55D00B785A7587F4263D125817871283 C:\WINDOWS\System32\DRIVERS\wanarp.sys CEF3D306C09BEC1A800E9B4A06F859F6 C:\WINDOWS\System32\DRIVERS\wanarp.sys CEF3D306C09BEC1A800E9B4A06F859F6 C:\WINDOWS\system32\drivers\wcifs.sys CD24DEEA22152524CCFE859591D12A57 C:\WINDOWS\system32\drivers\wcnfs.sys AEA1093B751339267D8C8C1EF3D669CF C:\WINDOWS\System32\drivers\wd\WdBoot.sys 16D3F1C6CB3D6BBFDF4893C7A14D6F12 C:\WINDOWS\System32\drivers\wdcsam64.sys A556768CC1FA4F36022BEE2F0EDE2566 C:\WINDOWS\System32\drivers\Wdf01000.sys 5030C76047D756263093A47B82970868 C:\WINDOWS\System32\drivers\wd\WdFilter.sys 64EB43131121ADD90A061A75C8ADE9E6 C:\WINDOWS\System32\DRIVERS\wdiwifi.sys 373DF27CD5D5E50FFA2A90FEE0C0D994 C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys BE3C9DF77543C78004C400B1CAFCAB49 C:\WINDOWS\System32\drivers\wfplwfs.sys E1785942AC51FEE6826CDF02075C5AA9 C:\Program Files (x86)\Windows Kits\10\Assessment and Deployment Kit\Deployment Tools\amd64\DISM\wimmount.sys 47E0F7D312FC38BB7A001A3DBA781A08 C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys 0DE131733317EB4BE67028366B0CAAC6 C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys 92EB5D38BDF10C790450F3E46BF93A0E C:\WINDOWS\System32\drivers\winmad.sys F95DE20312ACCA7761446DE152BD1F7C C:\WINDOWS\System32\drivers\WinUSB.SYS 4EFB346BFDAEEB29316AA52BBB9852B1 C:\WINDOWS\System32\drivers\winverbs.sys 8B9AFF5F08E66A6F1F1063DEC9457FB6 C:\WINDOWS\System32\DRIVERS\WiseAntiMalWareProcessMonitor.sys 3DD7C0BFEE3AA5BB596401147841A627 C:\WINDOWS\System32\DRIVERS\WiseAntiMalWareRegMonitor.sys 6F73D87D7F4720DBEAF177556CAD82C2 C:\WINDOWS\System32\DRIVERS\WiseProcessMonitor.sys 07D53CC30F39D9B3216E3A69EAC5CC20 C:\WINDOWS\System32\drivers\wmiacpi.sys 6F4F4F5A007D1710BD76FB311DA97C07 C:\Windows\System32\Drivers\Wof.sys 43C8D087B31C592163B33A4BDA540E40 C:\Program Files (x86)\Windows Kits\10\Assessment and Deployment Kit\Deployment Tools\amd64\DISM\wofadk.sys FBA28D5AC166714737D1D8CDF0AEF078 C:\WINDOWS\System32\drivers\WpdUpFltr.sys 75A9284F01FE7CB1A7D5EAE5C1EB4F33 C:\WINDOWS\system32\drivers\ws2ifsl.sys 36D7B73ADC3E10607ED6EC874AFB5D1E C:\WINDOWS\system32\drivers\VirtualAudio.sys DC80D06062B14CBD5D0A91396C2FEA43 C:\WINDOWS\System32\drivers\WSDPrint.sys 696EC2EAA2A42A137CCBB9A84D6917C0 C:\WINDOWS\system32\DRIVERS\WSDScan.sys 46E4A69825A7554A5DB784A55F8AD203 C:\WINDOWS\System32\drivers\WudfPf.sys AED7FE551E8672B824A56324076183EB C:\WINDOWS\System32\drivers\WudfRd.sys CEFAB17FD7DFCFA515626C306262E89D C:\WINDOWS\system32\DRIVERS\WUDFRd.sys CEFAB17FD7DFCFA515626C306262E89D C:\WINDOWS\System32\drivers\xboxgip.sys 59335CEA021FB89E07AD5DB5D17F09D0 C:\WINDOWS\System32\drivers\xinputhid.sys 63088A3361D9A308F328F11E9099DD87 C:\WINDOWS\System32\drivers\zam64.sys 21E13F2CB269DEFEAE5E1D09887D47BB C:\WINDOWS\System32\drivers\zamguard64.sys 21E13F2CB269DEFEAE5E1D09887D47BB ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Trois mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2018-02-24 01:11 - 2018-02-24 01:11 - 002403328 _____ (Farbar) C:\Users\jean-\Desktop\FRST64.exe 2018-02-24 00:55 - 2018-02-24 01:11 - 001838144 _____ (Solvusoft) C:\Users\jean-\Documents\Setup_FileViewPro_2018.exe 2018-02-24 00:54 - 2018-02-24 00:54 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2018-02-24 00:53 - 2018-02-24 00:53 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2018-02-23 22:13 - 2018-02-24 00:52 - 000099663 _____ C:\WINDOWS\ZAM.krnl.trace 2018-02-23 22:13 - 2018-02-24 00:52 - 000062980 _____ C:\WINDOWS\ZAM_Guard.krnl.trace 2018-02-23 21:24 - 2018-02-23 21:25 - 000000000 ____D C:\Users\jean-\Documents\FileViewPro 1.5.0.0 Portable by Spirit Summer 2018-02-23 21:01 - 2018-02-23 21:04 - 001838144 _____ (Solvusoft) C:\Users\jean-\Documents\Setup_FileViewPro_2016.exe 2018-02-23 20:54 - 2018-02-23 20:55 - 000370680 _____ (Mindspark Interactive Network, Inc.) C:\Users\jean-\Downloads\InternetSpeedTracker.ca8d1c9d3a074bfbbb26e7c178a3dd9c.exe 2018-02-23 20:32 - 2018-02-23 20:33 - 000000000 ____D C:\Program Files (x86)\FileZilla FTP Client 2018-02-23 20:32 - 2018-02-23 20:32 - 000000867 _____ C:\Users\Public\Desktop\CCleaner.lnk 2018-02-23 20:32 - 2018-02-23 20:32 - 000000300 ____H C:\WINDOWS\Tasks\CCleaner Update.job 2018-02-23 20:29 - 2018-02-23 20:29 - 000253880 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2018-02-23 20:29 - 2018-02-23 20:29 - 000000839 _____ C:\Users\Public\Desktop\UCheck.lnk 2018-02-23 20:29 - 2018-02-23 20:29 - 000000000 ____D C:\ProgramData\UCheck 2018-02-23 20:29 - 2018-02-23 20:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UCheck 2018-02-23 20:29 - 2018-02-23 20:29 - 000000000 ____D C:\Program Files\UCheck 2018-02-23 20:28 - 2018-02-23 20:28 - 000001922 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2018-02-23 20:28 - 2018-02-23 20:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2018-02-23 20:28 - 2017-11-29 09:11 - 000077432 _____ C:\WINDOWS\system32\Drivers\mbae64.sys 2018-02-23 20:27 - 2018-02-23 20:27 - 000000000 ____D C:\ProgramData\Malwarebytes 2018-02-23 20:25 - 2018-02-23 20:27 - 021003576 _____ (Adlice Software ) C:\Users\jean-\Desktop\UCheck_setup.exe 2018-02-23 20:14 - 2018-02-23 20:22 - 083316440 _____ (Malwarebytes ) C:\Users\jean-\Desktop\mb3-setup-35891.35891-3.3.1.2183-1.0.262-1.0.3374.exe 2018-02-23 20:11 - 2018-02-23 20:11 - 000000000 ____D C:\Users\jean-\AppData\Roaming\brave 2018-02-23 20:10 - 2018-02-23 20:10 - 000000000 ____D C:\Users\jean-\Downloads\mbam-chameleon-3.1.33.0 2018-02-23 20:09 - 2018-02-23 20:12 - 000000000 ____D C:\Users\jean-\AppData\Local\SquirrelTemp 2018-02-23 20:09 - 2018-02-23 20:12 - 000000000 ____D C:\Users\jean-\AppData\Local\Brave 2018-02-23 20:06 - 2018-02-23 20:08 - 006705178 _____ C:\Users\jean-\Downloads\mbam-chameleon-3.1.33.0.zip 2018-02-23 19:49 - 2018-02-24 01:11 - 000000000 ____D C:\Users\jean-\Desktop\FRST-OlderVersion 2018-02-23 19:47 - 2018-02-23 19:48 - 003018624 _____ C:\Users\jean-\Desktop\ZHPDiag3.exe 2018-02-23 19:25 - 2018-02-23 19:25 - 000000000 ____D C:\WINDOWS\Sun 2018-02-23 19:24 - 2018-02-23 19:23 - 000144448 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll 2018-02-23 19:24 - 2018-02-16 14:08 - 000097344 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll 2018-02-23 19:09 - 2018-02-23 19:20 - 000000000 ____D C:\Program Files\Java 2018-02-23 19:02 - 2018-02-23 19:02 - 000000000 ____D C:\WINDOWS\SysWOW64\Adobe 2018-02-23 19:00 - 2018-02-23 19:00 - 000001002 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2018-02-23 18:54 - 2018-02-23 18:54 - 000000000 ____D C:\Users\jean-\AppData\LocalLow\Adblock Plus for IE 2018-02-23 18:54 - 2018-02-23 18:54 - 000000000 ____D C:\Program Files\Adblock Plus for IE 2018-02-23 18:53 - 2018-02-23 20:12 - 000000000 ____D C:\PatchMyPCUpdates 2018-02-23 18:46 - 2018-02-23 18:46 - 000000000 ____D C:\Users\jean-\AppData\Local\Patch_My_PC,_LLC 2018-02-23 18:21 - 2018-02-23 18:21 - 000000000 ____D C:\Users\jean-\Downloads\PatchMyPCTrial 2018-02-23 18:20 - 2018-02-23 18:20 - 000017682 _____ C:\Users\jean-\Downloads\PatchMyPCTrial.cab 2018-02-23 16:19 - 2018-02-23 16:19 - 000028272 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys 2018-02-23 16:07 - 2018-02-23 16:07 - 000478392 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\C71BABA5.sys 2018-02-23 16:00 - 2018-02-23 16:00 - 000000902 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total Uninstall 6.lnk 2018-02-23 16:00 - 2018-02-23 16:00 - 000000000 ____D C:\ProgramData\Martau 2018-02-23 16:00 - 2018-02-23 16:00 - 000000000 ____D C:\Program Files\Total Uninstall 6 2018-02-23 15:52 - 2018-02-23 15:53 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Allavsoft 2018-02-23 15:52 - 2018-02-23 15:52 - 000000000 ____D C:\Users\jean-\Documents\Allavsoft 2018-02-23 15:52 - 2018-02-23 15:52 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Allavsoft 2018-02-23 15:52 - 2018-02-23 15:52 - 000000000 ____D C:\Program Files (x86)\Allavsoft 2018-02-23 15:51 - 2018-02-23 15:51 - 000000000 ____D C:\Users\jean-\AppData\Roaming\WinRAR 2018-02-23 15:49 - 2018-02-23 15:51 - 032110403 _____ C:\Users\jean-\Downloads\Allavsoft315-db28su.zip 2018-02-23 15:25 - 2018-02-23 22:07 - 000000000 ____D C:\Users\jean-\AppData\Roaming\IObit 2018-02-23 15:25 - 2018-02-23 15:25 - 000000000 ____D C:\Users\jean-\AppData\Local\VS Revo Group 2018-02-23 15:25 - 2018-02-23 15:25 - 000000000 ____D C:\ProgramData\VS Revo Group 2018-02-23 15:25 - 2018-02-23 15:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro 2018-02-23 15:25 - 2018-02-23 15:25 - 000000000 ____D C:\ProgramData\IObit 2018-02-23 15:25 - 2018-02-23 15:25 - 000000000 ____D C:\Program Files\VS Revo Group 2018-02-23 15:23 - 2018-02-23 20:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2018-02-23 15:23 - 2018-02-23 20:32 - 000000000 ____D C:\Program Files\CCleaner 2018-02-23 15:23 - 2018-02-23 15:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2018-02-23 15:23 - 2018-02-23 15:23 - 000000000 ____D C:\Program Files (x86)\VideoLAN 2018-02-23 15:22 - 2018-02-23 20:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client 2018-02-23 15:22 - 2018-02-23 15:22 - 000001090 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk 2018-02-23 15:22 - 2018-02-23 15:22 - 000000785 _____ C:\ProgramData\Microsoft\Windows\Start Menu\WinRAR.lnk 2018-02-23 15:22 - 2018-02-23 15:22 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2018-02-23 15:22 - 2018-02-23 15:22 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager 2018-02-23 15:22 - 2018-02-23 15:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2018-02-23 15:22 - 2018-02-23 15:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool Partition Wizard 10 2018-02-23 15:22 - 2018-02-23 15:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager 2018-02-23 15:22 - 2018-02-23 15:22 - 000000000 ____D C:\Program Files\WinRAR 2018-02-23 15:22 - 2018-02-23 15:22 - 000000000 ____D C:\Program Files\MiniTool Partition Wizard 10 2018-02-23 15:22 - 2018-02-23 15:22 - 000000000 ____D C:\Program Files\FileZilla FTP Client 2018-02-23 15:22 - 2018-02-23 15:22 - 000000000 ____D C:\Program Files (x86)\Internet Download Manager 2018-02-23 15:22 - 2018-02-23 15:22 - 000000000 ____D C:\Program Files (x86)\Audacity 2018-02-23 15:16 - 2018-02-23 15:16 - 000000000 ____D C:\Users\jean-\AppData\Local\don maintien lfsu_gpt_100%s_finalisé avril moo0 & gpt loader setups 2018-02-23 12:36 - 2018-02-23 12:36 - 000058550 _____ C:\WINDOWS\system32\.crusader 2018-02-23 12:06 - 2018-02-23 12:39 - 000055232 _____ C:\WINDOWS\system32\Drivers\hitmanpro37.sys 2018-02-23 12:05 - 2018-02-24 00:52 - 000000000 ____D C:\WINDOWS\CryptoGuard 2018-02-23 12:04 - 2018-02-24 00:52 - 000000000 ____D C:\ProgramData\HitmanPro 2018-02-23 12:04 - 2018-02-23 12:04 - 001236616 _____ (SurfRight B.V.) C:\WINDOWS\system32\hmpalert.dll 2018-02-23 12:04 - 2018-02-23 12:04 - 000848008 _____ (SurfRight B.V.) C:\WINDOWS\SysWOW64\hmpalert.dll 2018-02-23 12:04 - 2018-02-23 12:04 - 000293560 _____ (SurfRight B.V.) C:\WINDOWS\system32\Drivers\hmpalert.sys 2018-02-23 12:04 - 2018-02-23 12:04 - 000093800 _____ (SurfRight B.V.) C:\WINDOWS\system32\Drivers\hmpnet.sys 2018-02-23 12:03 - 2018-02-23 12:04 - 004451976 _____ (SurfRight B.V.) C:\Users\jean-\hmpalert3.exe 2018-02-23 11:30 - 2018-02-23 11:30 - 000000000 ____D C:\Users\jean-\Documents\Mobizen 2018-02-23 11:30 - 2018-02-23 11:30 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Rsupport 2018-02-23 11:28 - 2018-02-23 11:28 - 000096017 _____ C:\Users\jean-\Desktop\AdsFix_23_02_2018_11_28_36.txt 2018-02-23 11:25 - 2018-02-23 11:25 - 000001279 _____ C:\Users\jean-\Desktop\Moo0 Video Downloader (1076+ Websites) 1.12.lnk 2018-02-23 11:23 - 2018-02-23 11:23 - 000001264 _____ C:\Users\jean-\Desktop\Moo0 Néttoyeur de Disque 1.23.lnk 2018-02-23 10:57 - 2018-02-23 11:21 - 002140160 _____ C:\Users\jean-\Downloads\sih.3.6.0.0 (1).exe 2018-02-23 10:51 - 2018-02-23 10:54 - 011403264 _____ C:\Users\jean-\Downloads\SibSetup (1).msi 2018-02-23 10:41 - 2018-02-23 10:50 - 000000000 ____D C:\Users\jean-\AppData\Roaming\FreeFileSync 2018-02-23 10:40 - 2018-02-23 10:40 - 000001111 _____ C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\WallpaperHd.lnk 2018-02-23 10:39 - 2018-02-23 10:39 - 000000000 ____D C:\Users\jean-\AppData\Local\WallpaperHd 2018-02-23 10:38 - 2018-02-23 10:39 - 000000000 ____D C:\Program Files\FreeFileSync 2018-02-23 10:38 - 2018-02-23 10:38 - 000001039 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeFileSync.lnk 2018-02-23 10:38 - 2018-02-23 10:38 - 000001009 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealTimeSync.lnk 2018-02-23 09:10 - 2018-02-23 09:33 - 000634351 _____ (PortableAppZ.blogspot.com) C:\Users\jean-\Downloads\Recuva_Portable_MultiVersion_32-64-bit_Multilingual_Online.exe 2018-02-23 08:52 - 2018-02-23 08:55 - 000013030 _____ C:\PDOXUSRS.NET 2018-02-23 08:50 - 2018-02-23 08:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP 2018-02-23 08:50 - 1999-11-12 05:11 - 000183808 _____ C:\WINDOWS\SysWOW64\BDEADMIN.CPL 2018-02-23 08:50 - 1999-01-20 05:01 - 000210032 _____ C:\WINDOWS\SysWOW64\DBCLIENT.DLL 2018-02-23 08:49 - 2018-02-23 08:50 - 000000000 ____D C:\Program Files (x86)\ZebHelpProcess 2018-02-23 08:46 - 2018-02-23 08:49 - 018476835 _____ (Nicolas Coolman ) C:\Users\jean-\Downloads\zhp2016setup.exe 2018-02-22 19:52 - 2018-02-22 19:52 - 000000000 ____D C:\Users\jean-\Downloads\gdisk-windows-1.0.3 2018-02-22 19:50 - 2018-02-22 19:50 - 000789337 _____ C:\Users\jean-\Downloads\gdisk-windows-1.0.3.zip 2018-02-22 19:14 - 2018-02-22 19:14 - 000000827 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 10 Update Assistant.lnk 2018-02-22 16:27 - 2018-02-22 16:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Start Menu 8 2018-02-22 16:27 - 2018-02-22 16:27 - 000000000 ____D C:\ProgramData\{EAAB5A83-3809-4B0E-83A6-E4B0DBF2157E} 2018-02-22 16:24 - 2018-02-22 16:25 - 011472520 _____ (IObit ) C:\Users\jean-\Documents\start-menu-8-4-0-1-1.exe 2018-02-22 14:59 - 2018-02-22 14:59 - 000000000 ____D C:\Users\jean-\Downloads\pathtoolong_b 2018-02-22 14:57 - 2018-02-22 14:57 - 000101373 _____ C:\Users\jean-\Downloads\pathtoolong_b.zip 2018-02-22 14:30 - 2018-02-22 14:30 - 000001444 _____ C:\Users\Public\Desktop\Optimisation en 1 clic.lnk 2018-02-22 14:30 - 2018-02-22 14:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Optimisation du système 2018-02-22 14:15 - 2018-02-22 14:15 - 000000000 ____D C:\Users\Public\Documents\Heimdal Security 2018-02-22 14:15 - 2018-02-22 14:15 - 000000000 ____D C:\Program Files (x86)\Heimdal 2018-02-22 14:14 - 2018-02-22 14:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Heimdal Security 2018-02-22 14:11 - 2018-02-22 14:14 - 000000000 ____D C:\ProgramData\Heimdal Security 2018-02-22 11:33 - 2018-02-22 11:33 - 000000094 _____ C:\WINDOWS\Crypkey.ini 2018-02-22 11:33 - 2018-02-22 11:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stellar Phoenix Outlook PST Repair 2018-02-22 11:33 - 2008-05-08 00:29 - 000122880 _____ (CrypKey (Canada) Ltd.) C:\WINDOWS\system32\Crypserv.exe 2018-02-22 11:33 - 2008-03-17 18:12 - 000028664 _____ C:\WINDOWS\system32\Ckldrv.sys 2018-02-22 11:33 - 1999-06-18 21:49 - 000165888 _____ (Kenonic Controls) C:\WINDOWS\Ckconfig.exe 2018-02-22 11:33 - 1996-05-03 17:21 - 000027648 ____R C:\WINDOWS\Setup_ck.exe 2018-02-22 11:33 - 1996-05-03 15:36 - 000018432 _____ C:\WINDOWS\Setup_ck.dll 2018-02-22 11:33 - 1995-07-04 18:33 - 000011776 _____ C:\WINDOWS\Ckrfresh.exe 2018-02-22 11:26 - 2018-02-22 13:50 - 005990824 _____ (SosVirus) C:\Users\jean-\Desktop\adsfix_5_02.01.18.1.exe 2018-02-22 11:18 - 2018-02-22 11:18 - 000000000 ____D C:\WINDOWS\UpdateAssistant 2018-02-22 09:49 - 2018-02-22 09:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Digital Video Duplicator 2018-02-22 09:42 - 2018-02-22 20:00 - 000000000 ____D C:\Smart Privacy Cleaner 2018-02-22 09:18 - 2018-02-22 09:18 - 000000000 _____ C:\WINDOWS\System32\Tasks\CIS_{81EFDD93-DBBE-415B-BE6E-49B9664E3E82} 2018-02-22 08:12 - 2018-02-22 08:12 - 000000000 _____ C:\WINDOWS\SysWOW64\last.dump 2018-02-22 07:51 - 2018-02-22 07:52 - 015861608 _____ (Ashampoo GmbH & Co. KG ) C:\Users\jean-\Downloads\ashampoo_uninstaller_7_7.00.10_sm.exe 2018-02-22 07:49 - 2018-02-22 07:50 - 000000566 _____ C:\abtext.txt 2018-02-21 21:20 - 2018-02-23 21:55 - 000000890 _____ C:\Users\jean-\Desktop\JRT.txt 2018-02-21 20:32 - 2018-02-23 22:07 - 000000000 ____D C:\AdwCleaner 2018-02-21 20:31 - 2018-02-21 20:56 - 001790024 _____ (Malwarebytes) C:\Users\jean-\Desktop\JRT.exe 2018-02-21 20:31 - 2018-02-21 20:32 - 008222496 _____ (Malwarebytes) C:\Users\jean-\Desktop\adwcleaner_7.0.8.0.exe 2018-02-21 20:12 - 2018-02-21 20:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvisoft 2018-02-21 13:55 - 2018-02-21 13:55 - 000172698 _____ C:\Users\jean-\Desktop\Shortcut.txt 2018-02-21 13:47 - 2018-02-21 13:55 - 000099770 _____ C:\Users\jean-\Desktop\Addition.txt 2018-02-21 13:33 - 2018-02-24 01:13 - 000054603 _____ C:\Users\jean-\Desktop\FRST.txt 2018-02-21 13:31 - 2018-02-24 01:12 - 000000000 ____D C:\FRST 2018-02-21 13:31 - 2018-02-21 13:31 - 000000000 ____D C:\Users\jean-\AppData\Roaming\iDealshare VideoGo 6 2018-02-21 13:08 - 2018-02-21 13:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo 2018-02-21 13:07 - 2018-02-21 13:09 - 000000000 ____D C:\Program Files (x86)\CrystalDiskInfo 2018-02-21 13:06 - 2018-02-21 13:06 - 003948184 _____ (Crystal Dew World ) C:\Users\jean-\Downloads\CrystalDiskInfo7_5_2.exe 2018-02-21 07:24 - 2018-02-21 07:24 - 000000000 ____D C:\Users\jean-\AppData\Local\ElevatedDiagnostics 2018-02-20 21:32 - 2018-02-20 21:32 - 000000000 ____D C:\ProgramData\MB3CoreBackup 2018-02-20 18:24 - 2018-02-20 18:30 - 000001570 _____ C:\Users\Public\Desktop\UVKRebootExecLog.txt 2018-02-20 08:27 - 2018-02-20 08:27 - 000000000 ____D C:\Users\Public\Documents\Daemon Tools Images 2018-02-20 08:27 - 2018-02-20 08:27 - 000000000 ____D C:\Users\jean-\AppData\Local\Disc_Soft_Ltd 2018-02-20 03:11 - 2018-02-20 03:11 - 000000000 ____D C:\acroldr 2018-02-19 17:36 - 2018-02-19 17:36 - 000000000 ____D C:\Users\Public\Documents\Catch! 2018-02-19 17:34 - 2018-02-20 08:47 - 000000000 ____D C:\Users\jean-\AppData\Roaming\DAEMON Tools Lite 2018-02-19 17:34 - 2018-02-19 17:34 - 000047672 _____ (Disc Soft Ltd) C:\WINDOWS\system32\Drivers\dtliteusbbus.sys 2018-02-19 17:34 - 2018-02-19 17:34 - 000030264 _____ (Disc Soft Ltd) C:\WINDOWS\system32\Drivers\dtlitescsibus.sys 2018-02-19 17:34 - 2018-02-19 17:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite 2018-02-19 17:33 - 2018-02-19 17:34 - 000000000 ____D C:\Program Files\DAEMON Tools Lite 2018-02-19 17:33 - 2018-02-19 17:33 - 000000000 ____D C:\ProgramData\DAEMON Tools Lite 2018-02-19 17:31 - 2018-02-19 17:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Pro 2018-02-19 17:31 - 2018-02-19 17:31 - 000000000 ____D C:\Program Files\DAEMON Tools Pro 2018-02-19 17:19 - 2018-02-19 17:29 - 032939904 _____ (Disc Soft Ltd) C:\Users\jean-\Downloads\DTPro821-0709.exe 2018-02-19 17:19 - 2018-02-19 17:29 - 030631608 _____ (Disc Soft Ltd) C:\Users\jean-\Downloads\DTLite1071-0340_paid.exe 2018-02-19 17:17 - 2018-02-19 17:17 - 000000000 ____D C:\ProgramData\Spamihilator 2018-02-19 17:16 - 2018-02-23 11:32 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Spamihilator 2018-02-19 17:15 - 2018-02-19 17:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spamihilator 2018-02-19 17:14 - 2018-02-19 17:15 - 000000000 ____D C:\Program Files\Spamihilator 2018-02-19 17:02 - 2018-02-19 17:02 - 000970912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr120.dll 2018-02-19 17:02 - 2018-02-19 17:02 - 000963232 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr120.dll 2018-02-19 17:02 - 2018-02-19 17:02 - 000660128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp120.dll 2018-02-19 17:02 - 2018-02-19 17:02 - 000455328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp120.dll 2018-02-19 17:02 - 2018-02-19 17:02 - 000356528 _____ (Microsoft Corporation) C:\WINDOWS\system32\vccorlib120.dll 2018-02-19 17:02 - 2018-02-19 17:02 - 000247984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vccorlib120.dll 2018-02-19 17:00 - 2018-02-19 17:02 - 003596800 _____ (Michel Krämer) C:\Users\jean-\Downloads\Spamihilator-x64-1.6.0.exe 2018-02-19 16:50 - 2017-10-19 10:17 - 000271360 _____ (Wondershare Software) C:\WINDOWS\system32\WSPDFelementMonitor.dll 2018-02-19 16:22 - 2018-02-19 16:22 - 000061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys 2018-02-19 16:17 - 2018-02-19 16:17 - 000000000 ____D C:\Users\jean-\Documents\PDF Files 2018-02-19 16:16 - 2018-02-19 16:16 - 000000000 ____D C:\Users\jean-\Documents\Apowersoft 2018-02-19 16:10 - 2018-02-19 16:10 - 000000705 _____ C:\Users\jean-\Desktop\UnZacMe_19_02_2018_16.10.44.txt 2018-02-19 15:56 - 2018-02-19 16:10 - 000000705 _____ C:\UnZacMe_19_02_2018_16.10.44.txt 2018-02-19 15:56 - 2018-02-19 16:10 - 000000000 ____D C:\UnZacMe 2018-02-19 10:57 - 2018-02-19 10:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RSUPPORT 2018-02-19 10:57 - 2018-02-19 10:57 - 000000000 ____D C:\Program Files (x86)\RSUPPORT 2018-02-19 10:48 - 2018-02-19 10:48 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Apowersoft 2018-02-19 10:48 - 2018-02-19 10:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft 2018-02-19 10:48 - 2018-02-19 10:48 - 000000000 ____D C:\Program Files (x86)\Apowersoft 2018-02-19 10:20 - 2018-02-19 10:20 - 000000000 ____D C:\ProgramData\PDFelement 6 Pro 2018-02-19 10:00 - 2018-02-19 10:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BurnAware Premium 2018-02-19 10:00 - 2018-02-19 10:07 - 000000000 ____D C:\Program Files (x86)\BurnAware Premium 2018-02-19 09:43 - 2018-02-19 09:45 - 012293465 _____ C:\Users\jean-\Downloads\BurnAwarePremium110-db38du.zip 2018-02-19 07:48 - 2018-02-23 20:34 - 000993192 _____ (SosVirus) C:\Users\jean-\Desktop\processclose_2_08.01.17.1.exe 2018-02-19 07:48 - 2018-02-19 09:39 - 000993192 _____ (SosVirus) C:\Users\jean-\Downloads\processclose_2_08.01.17.1.exe 2018-02-18 19:51 - 2018-02-23 19:00 - 000001059 _____ C:\Users\jean-\Desktop\AdsFix_Donate.lnk 2018-02-18 19:51 - 2018-02-23 11:28 - 000096017 _____ C:\AdsFix_23_02_2018_11_28_36.txt 2018-02-18 11:26 - 2018-02-23 11:28 - 000000000 ____D C:\AdsFix 2018-02-18 11:26 - 2018-02-18 12:32 - 000010231 _____ C:\Pre_Scan.txt 2018-02-18 11:17 - 2018-02-23 19:00 - 000001059 _____ C:\Users\jean-\Desktop\Pre_Scan_Donate.lnk 2018-02-18 11:17 - 2018-02-18 11:30 - 000000000 ____D C:\Pre_Scan 2018-02-18 11:17 - 2018-02-18 11:17 - 000001573 _____ C:\Users\jean-\Desktop\Pre_Scan_Restore.lnk 2018-02-18 10:08 - 2018-02-18 10:08 - 000000000 ____D C:\Program Files\Softland 2018-02-18 10:08 - 2018-02-18 10:08 - 000000000 ____D C:\Program Files (x86)\Softland 2018-02-18 10:07 - 2018-02-18 10:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dimo MXF Converter 2018-02-18 10:07 - 2018-02-18 10:07 - 000000000 ____D C:\Program Files (x86)\Dimo MXF Converter 2018-02-18 09:13 - 2018-02-18 09:13 - 000000000 ____D C:\Program Files\Common Files\AVAST Software 2018-02-18 09:11 - 2018-02-18 09:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Polaris Office 2017 2018-02-18 09:11 - 2018-02-18 09:11 - 000000000 ____D C:\Program Files (x86)\Polaris Office 2018-02-18 09:10 - 2018-02-18 09:14 - 000000000 ____D C:\ProgramData\CheckPoint 2018-02-18 09:10 - 2018-02-18 09:10 - 000000000 ____D C:\Program Files (x86)\CheckPoint 2018-02-18 09:09 - 2018-02-18 09:09 - 000000000 ____D C:\Program Files\AVAST Software 2018-02-18 09:08 - 2018-02-22 17:35 - 000000000 ____D C:\ProgramData\AVAST Software 2018-02-17 21:22 - 2018-02-17 21:22 - 000000000 ___HD C:\Users\jean-\AppData\Roaming\Obsidium 2018-02-17 21:22 - 2018-02-17 21:22 - 000000000 ___HD C:\Users\jean-\.obs32 2018-02-17 19:35 - 2018-02-17 19:36 - 000000000 ____D C:\Users\jean-\AppData\Local\WinZip 2018-02-17 19:35 - 2018-02-17 19:35 - 000001992 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip.lnk 2018-02-17 19:34 - 2018-02-22 17:35 - 000000000 ____D C:\Program Files\WinZip 2018-02-17 19:34 - 2018-02-21 12:43 - 000000000 ____D C:\ProgramData\WinZip 2018-02-17 19:34 - 2018-02-17 19:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip 22.0 2018-02-17 19:30 - 2018-02-17 19:30 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Opera Software 2018-02-17 19:30 - 2018-02-17 19:30 - 000000000 ____D C:\Users\jean-\AppData\Local\Opera Software 2018-02-17 19:29 - 2018-02-17 19:27 - 000001366 _____ C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk 2018-02-17 19:28 - 2018-02-17 19:28 - 000000023 _____ C:\WINDOWS\SysWOW64\CleanGenius3FreeToolbar.dll 2018-02-17 19:28 - 2018-02-17 19:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CleanGenius 3 2018-02-17 19:28 - 2018-02-17 19:28 - 000000000 ____D C:\ProgramData\Amigabit 2018-02-17 19:27 - 2018-02-19 06:06 - 000000000 ____D C:\Program Files (x86)\CleanGenius 3 2018-02-17 19:26 - 2018-02-17 19:26 - 000000000 ____D C:\Program Files (x86)\McAfee 2018-02-17 19:25 - 2018-02-17 19:26 - 000000000 ____D C:\ProgramData\McAfee 2018-02-17 19:25 - 2018-02-17 19:25 - 010386168 _____ (Amigabit, Inc. ) C:\Users\jean-\Downloads\EaseUS CleanGenius.exe 2018-02-17 19:21 - 2018-02-17 19:24 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Boot Genius 2018-02-17 19:21 - 2018-02-17 19:24 - 000000000 ____D C:\Program Files (x86)\Windows Boot Genius 2018-02-17 19:14 - 2018-02-17 19:21 - 263262800 _____ C:\Users\jean-\Downloads\tenorshare-windows-boot-genius-trial.exe 2018-02-17 19:12 - 2018-02-17 19:14 - 023154904 _____ C:\Users\jean-\Downloads\4UKeyforAndroid.exe 2018-02-17 17:16 - 2018-02-17 19:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinImage 2018-02-17 17:16 - 2018-02-17 17:16 - 000872440 _____ (WinImage) C:\Users\jean-\Downloads\wima6490.exe 2018-02-17 17:16 - 2018-02-17 17:16 - 000000000 ____D C:\Program Files\WinImage 2018-02-17 15:30 - 2018-02-17 15:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Turbo View & Convert 2018-02-17 15:27 - 2018-02-17 15:29 - 054212360 _____ (IMSI/Design, LLC ) C:\Users\jean-\Downloads\tvc_setup_2.1.0.215.exe 2018-02-17 15:26 - 2018-02-17 15:26 - 000000000 ____D C:\Users\jean-\Downloads\explorer++_1.3.5_x64 2018-02-17 15:25 - 2018-02-17 15:25 - 000709805 _____ C:\Users\jean-\Downloads\explorer++_1.3.5_x64.zip 2018-02-17 15:14 - 2018-02-21 12:32 - 000000000 ____D C:\WINDOWS\pss 2018-02-17 15:11 - 2018-02-24 00:52 - 000000000 ____D C:\ProgramData\HitmanPro.Alert 2018-02-17 14:00 - 2018-02-17 14:00 - 000000000 ____D C:\Users\jean-\AppData\LocalLow\Mozilla 2018-02-17 13:56 - 2018-02-17 13:56 - 000017395 _____ C:\Users\jean-\Documents\CisReport_x64_v10.1.0.6476_20180217-135612.zip 2018-02-17 13:39 - 2018-02-17 13:39 - 006379600 _____ (CompuClever Systems Inc.) C:\Users\jean-\Downloads\ultraebookreader_setup.exe 2018-02-17 13:07 - 2018-02-17 16:33 - 000000000 ____D C:\Program Files (x86)\AOMEI Image Deploy 2018-02-17 13:07 - 2018-02-17 13:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Image Deploy 2018-02-17 13:05 - 2018-02-17 13:07 - 042524352 _____ (AOMEI Technology Co., Ltd. ) C:\Users\jean-\Downloads\aomei-image-deploy_V1.0.exe 2018-02-17 13:03 - 2018-02-17 13:04 - 003059624 _____ (SosVirus) C:\Users\jean-\Desktop\pre-scan_7_16.10.17.1.exe 2018-02-17 12:40 - 2018-02-21 11:54 - 000000000 ____D C:\UsbFix 2018-02-17 10:13 - 2018-02-17 10:13 - 000000000 ____D C:\Users\jean-\AppData\Roaming\TightReceiver 2018-02-17 10:09 - 2018-02-17 10:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TightProjector 2018-02-17 10:09 - 2018-02-17 10:11 - 000000000 ____D C:\Program Files (x86)\TightProjector 2018-02-17 10:07 - 2018-02-22 17:34 - 000032876 _____ C:\WINDOWS\system32\Drivers\fvstore.dat 2018-02-17 10:07 - 2018-02-17 10:07 - 000000000 ___HD C:\VTRoot 2018-02-17 09:41 - 2018-02-24 00:43 - 000000000 ____D C:\WINDOWS\rescache 2018-02-17 08:41 - 2018-02-17 08:41 - 000000000 ____D C:\WINDOWS\System32\Tasks\COMODO 2018-02-17 08:40 - 2018-02-22 09:05 - 001474832 _____ C:\WINDOWS\system32\Drivers\sfi.dat 2018-02-17 08:34 - 2017-12-26 11:21 - 000256040 _____ (COMODO) C:\WINDOWS\system32\iseguard64.dll 2018-02-17 08:34 - 2017-12-26 11:21 - 000205536 _____ (COMODO) C:\WINDOWS\SysWOW64\iseguard32.dll 2018-02-17 08:34 - 2017-12-13 03:16 - 000063200 _____ (COMODO) C:\WINDOWS\system32\Drivers\isedrv.sys 2018-02-17 08:21 - 2018-02-17 08:21 - 000000000 ____D C:\Users\jean-\AppData\Local\Comodo 2018-02-17 08:20 - 2018-02-22 09:00 - 000000000 ____D C:\Program Files (x86)\Comodo 2018-02-17 08:15 - 2018-02-22 08:56 - 000000000 ____D C:\ProgramData\Comodo 2018-02-17 08:15 - 2018-02-17 08:15 - 000000000 ____D C:\ProgramData\Shared Space 2018-02-17 08:15 - 2018-02-17 08:15 - 000000000 ____D C:\ProgramData\Comodo Downloader 2018-02-17 08:13 - 2018-02-17 08:14 - 005514616 _____ (COMODO) C:\Users\jean-\Downloads\cispremium_installer.exe 2018-02-17 06:16 - 2018-02-17 06:16 - 130067560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe 2018-02-17 06:15 - 2018-01-09 16:44 - 000108584 _____ (Microsoft Corporation) C:\WINDOWS\system32\osrss.dll 2018-02-17 05:50 - 2018-01-26 19:16 - 002003288 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe 2018-02-17 05:50 - 2018-01-26 19:16 - 001577816 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2018-02-17 05:50 - 2018-01-26 19:16 - 000758104 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2018-02-17 05:50 - 2018-01-26 19:16 - 000662872 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2018-02-17 05:50 - 2018-01-26 19:16 - 000613208 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2018-02-17 05:50 - 2018-01-26 19:16 - 000387416 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2018-02-17 05:50 - 2018-01-26 19:16 - 000270680 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2018-02-17 05:50 - 2018-01-26 19:16 - 000245080 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2018-02-17 05:50 - 2018-01-26 19:16 - 000138072 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2018-02-17 05:50 - 2018-01-26 19:16 - 000069976 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll 2018-02-17 05:50 - 2018-01-26 19:15 - 000460632 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll 2018-02-17 05:50 - 2018-01-26 19:15 - 000035160 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2018-02-17 05:50 - 2018-01-26 19:02 - 000484184 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll 2018-02-17 05:50 - 2018-01-26 18:23 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll 2018-02-17 05:50 - 2018-01-26 18:22 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe 2018-02-17 05:50 - 2018-01-26 14:40 - 000199000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll 2018-02-17 05:49 - 2016-12-21 08:08 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe 2018-02-17 05:49 - 2016-12-21 05:44 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe 2018-02-16 22:33 - 2018-02-16 22:35 - 000000000 ____D C:\Program Files\UNP 2018-02-16 22:33 - 2018-02-16 22:33 - 000000000 ____D C:\WINDOWS\system32\UNP 2018-02-16 21:57 - 2018-02-16 21:57 - 000000000 ____D C:\OneDriveTemp 2018-02-16 21:56 - 2018-02-16 21:56 - 000003374 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4265624635-2019933758-61733912-1001 2018-02-16 21:54 - 2018-02-16 21:55 - 000002409 _____ C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2018-02-16 21:02 - 2018-02-16 21:02 - 000003586 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2018-02-16 21:02 - 2018-02-16 21:02 - 000003492 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore1d3a728d3baed1b 2018-02-16 20:29 - 2018-02-16 20:29 - 001034976 _____ C:\Users\jean-\Downloads\filmora_setup_full846.exe 2018-02-16 19:38 - 2018-02-16 19:38 - 000001727 _____ C:\ProgramData\Microsoft\Windows\Start Menu\TeraCopy.lnk 2018-02-16 19:37 - 2018-02-16 19:37 - 000001299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Express Burn - Logiciel de gravure de disques.lnk 2018-02-16 19:37 - 2018-02-16 19:37 - 000001257 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pixillion - Convertisseur d'images.lnk 2018-02-16 19:37 - 2018-02-16 19:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Data Recovery 2018-02-16 19:31 - 2018-02-16 19:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visagesoft 2018-02-16 19:31 - 2018-02-16 19:31 - 000000000 ____D C:\Program Files (x86)\Visagesoft 2018-02-16 19:17 - 2018-02-16 19:17 - 000000000 ____D C:\ProgramData\SystemAcCrux 2018-02-16 19:17 - 2018-02-16 19:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Todo PCTrans 2018-02-16 18:57 - 2018-02-16 19:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 2018 2018-02-16 18:41 - 2018-02-16 18:42 - 029599720 _____ C:\Users\jean-\Downloads\mhsetup.exe 2018-02-16 18:38 - 2018-02-16 18:39 - 003139608 _____ (Nero AG) C:\Users\jean-\Downloads\Nero2018-1.10.0.9_stub_trial.exe 2018-02-16 18:35 - 2018-02-16 18:37 - 017569232 _____ (AoaoPhoto Digital Studio.) C:\Users\jean-\Downloads\video-watermark-pro (1).exe 2018-02-16 18:35 - 2018-02-16 18:36 - 004575312 _____ (Code Sector ) C:\Users\jean-\Downloads\teracopy.exe 2018-02-16 18:35 - 2018-02-16 18:36 - 002910504 _____ (WiseVideoSuite.com ) C:\Users\jean-\Downloads\wvdsetup.exe 2018-02-16 18:35 - 2018-02-16 18:35 - 002345680 _____ (Smart PC Solutions ) C:\Users\jean-\Downloads\recoverysetup.exe 2018-02-16 18:34 - 2018-02-16 18:35 - 000887480 _____ (NCH Software) C:\Users\jean-\Downloads\pixpsetup.exe 2018-02-16 18:33 - 2018-02-16 18:36 - 059977040 _____ C:\Users\jean-\Downloads\expertpdf_v9_pro.exe 2018-02-16 18:33 - 2018-02-16 18:35 - 025515256 _____ (Eassos Co., Ltd. ) C:\Users\jean-\Downloads\esrsetup203552.exe 2018-02-16 18:33 - 2018-02-16 18:34 - 005957560 _____ C:\Users\jean-\Downloads\epson19043.exe 2018-02-16 18:33 - 2018-02-16 18:33 - 009586112 _____ (EaseUS ) C:\Users\jean-\Downloads\pctrans_trial.exe 2018-02-16 18:33 - 2018-02-16 18:33 - 000902360 _____ (NCH Software) C:\Users\jean-\Downloads\burnsetup.exe 2018-02-16 18:32 - 2018-02-16 18:37 - 069592520 _____ (CHENGDU YIWO Tech Development Co., Ltd ) C:\Users\jean-\Downloads\tb_free.exe 2018-02-16 18:31 - 2018-02-16 18:31 - 000000000 _____ C:\Users\jean-\Downloads\boost-speed-setup.exe.sidownload 2018-02-16 15:21 - 2018-02-16 15:21 - 000002487 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2018-02-16 14:45 - 2018-02-16 17:45 - 000000000 ____D C:\KVRT_Data 2018-02-16 14:32 - 2018-02-16 14:45 - 142936872 _____ (Kaspersky Lab ZAO) C:\Users\jean-\Desktop\KVRT.exe 2018-02-16 14:27 - 2018-02-16 14:28 - 000001178 _____ C:\DelFix.txt 2018-02-16 14:21 - 2018-02-16 14:21 - 000000000 ____D C:\Users\jean-\AppData\LocalLow\Adobe 2018-02-16 14:20 - 2018-02-16 23:06 - 000002274 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2018-02-16 14:19 - 2018-02-22 17:35 - 000000000 ____D C:\Program Files\Google 2018-02-16 14:19 - 2018-02-22 17:35 - 000000000 ____D C:\Program Files (x86)\Google 2018-02-16 14:19 - 2018-02-22 08:54 - 000000000 ____D C:\Users\jean-\AppData\Local\Google 2018-02-16 14:19 - 2018-02-16 14:19 - 000001094 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d3a728c31b252c.job 2018-02-16 14:19 - 2018-02-16 14:19 - 000001094 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2018-02-16 14:19 - 2018-02-16 14:19 - 000000606 _____ C:\WINDOWS\Tasks\Adobe Acrobat Update Task.job 2018-02-16 14:09 - 2018-02-16 14:09 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Sun 2018-02-16 14:09 - 2018-02-16 14:09 - 000000000 ____D C:\Sun 2018-02-16 14:08 - 2018-02-16 14:10 - 000000000 ____D C:\ProgramData\Oracle 2018-02-16 13:39 - 2018-02-16 13:39 - 003078528 _____ C:\Users\jean-\ZHPCleaner.exe 2018-02-16 13:08 - 2018-02-16 13:08 - 000938704 _____ C:\Users\jean-\Downloads\3ivx_MPEG-4_504_trial_win.exe 2018-02-16 13:08 - 2018-02-16 13:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\3ivx 2018-02-16 13:08 - 2018-02-16 13:08 - 000000000 ____D C:\Program Files (x86)\3ivx 2018-02-16 13:07 - 2018-02-22 09:49 - 000000000 ____D C:\Program Files (x86)\WinASPI 2018-02-16 13:07 - 2018-02-16 13:07 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VobSub 2018-02-16 13:07 - 2018-02-16 13:07 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Morgan Stream Switcher 2018-02-16 13:07 - 2018-02-16 13:07 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AC3Filter 2018-02-16 13:07 - 2018-02-16 13:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XviD 2018-02-16 13:07 - 2018-02-16 13:07 - 000000000 ____D C:\Program Files (x86)\XviD 2018-02-16 13:07 - 2018-02-16 13:07 - 000000000 ____D C:\Program Files (x86)\Morgan 2018-02-16 13:07 - 2018-02-16 13:07 - 000000000 ____D C:\Program Files (x86)\Gabest 2018-02-16 13:07 - 2018-02-16 13:07 - 000000000 ____D C:\Program Files (x86)\AC3Filter 2018-02-16 13:07 - 2003-04-02 23:17 - 000172032 _____ () C:\WINDOWS\SysWOW64\ac3filter.cpl 2018-02-16 13:07 - 2002-11-08 15:18 - 000051712 _____ (Morgan Multimedia) C:\WINDOWS\SysWOW64\MMSwitch.ax 2018-02-16 13:06 - 2018-02-22 09:48 - 000000000 ____D C:\Program Files (x86)\LiveUpdate 2018-02-16 13:06 - 2018-02-22 09:47 - 000000000 ____D C:\Program Files (x86)\Digital Video Duplicator 2018-02-16 13:06 - 2018-02-16 13:06 - 000000000 ____D C:\ProgramData\BVRP Software 2018-02-16 13:06 - 2003-03-19 06:12 - 001047552 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71u.dll 2018-02-16 13:06 - 2003-03-19 05:44 - 000061440 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71LOC.DLL 2018-02-16 13:06 - 2003-03-19 05:14 - 000499712 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp71.dll 2018-02-16 13:06 - 1998-06-18 00:00 - 000089360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VB5DB.DLL 2018-02-16 13:06 - 1998-06-17 18:07 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Mfc42loc.dll 2018-02-16 10:01 - 2018-02-16 10:01 - 000000000 ____D C:\ProgramData\Smarty Uninstaller 4 2018-02-16 10:01 - 2018-02-16 10:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smarty Uninstaller 2018-02-16 10:01 - 2018-02-16 10:01 - 000000000 ____D C:\Program Files\Smarty Uninstaller 4 2018-02-16 10:00 - 2018-02-19 07:55 - 000000000 ____D C:\ProgramData\Informer Technologies, Inc 2018-02-16 09:56 - 2018-02-16 09:56 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Winger Directory Submitter 2018-02-16 09:56 - 2018-02-16 09:56 - 000000000 ____D C:\Users\jean-\AppData\Local\WingerSEOTools.com 2018-02-16 09:55 - 2018-02-16 09:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winger Directory Submitter 2018-02-16 09:52 - 2018-02-16 09:55 - 000000000 ____D C:\Program Files (x86)\Winger Directory Submitter 2018-02-16 09:30 - 2018-02-19 06:13 - 000000000 ____D C:\Program Files (x86)\Disk Analyzer Pro 2018-02-16 09:30 - 2018-02-17 13:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Duplicate Files Fixer 2018-02-16 09:30 - 2018-02-17 13:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Disk Analyzer Pro 2018-02-16 09:30 - 2018-02-16 17:46 - 000000000 ____D C:\Program Files (x86)\Duplicate Files Fixer 2018-02-16 09:30 - 2018-02-16 09:30 - 000001246 _____ C:\Users\Public\Desktop\Duplicate Files Fixer.lnk 2018-02-16 09:30 - 2018-02-16 09:30 - 000001190 _____ C:\Users\Public\Desktop\Disk Analyzer Pro.lnk 2018-02-16 09:29 - 2018-02-17 13:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Organizer 2018-02-16 09:29 - 2018-02-16 17:46 - 000000000 ____D C:\Program Files (x86)\Photo Organizer 2018-02-16 09:29 - 2018-02-16 09:29 - 000001169 _____ C:\Users\Public\Desktop\Photo Organizer.lnk 2018-02-16 09:28 - 2018-02-17 13:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Noise Reducer Pro 2018-02-16 09:28 - 2018-02-17 13:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Duplicate Photos Fixer Pro 2018-02-16 09:28 - 2018-02-16 17:46 - 000000000 ____D C:\Program Files (x86)\Noise Reducer Pro 2018-02-16 09:28 - 2018-02-16 09:28 - 000001190 _____ C:\Users\Public\Desktop\Noise Reducer Pro.lnk 2018-02-16 09:27 - 2018-02-17 13:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Duplicate Music Fixer 2018-02-16 09:27 - 2018-02-16 17:46 - 000000000 ____D C:\Program Files (x86)\Duplicate Music Fixer 2018-02-16 09:27 - 2018-02-16 09:28 - 005653288 _____ (Disk Speedup ) C:\Users\jean-\Downloads\dsusetup.exe 2018-02-16 09:27 - 2018-02-16 09:27 - 000001246 _____ C:\Users\Public\Desktop\Duplicate Music Fixer.lnk 2018-02-16 09:26 - 2018-02-16 09:28 - 005117736 _____ (Systweak Software ) C:\Users\jean-\Downloads\posetup.exe 2018-02-16 04:21 - 2018-02-16 06:24 - 000000000 ____D C:\Users\Public\Documents\Wise Anit Malware 2018-02-16 04:21 - 2018-02-16 04:21 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Wise Ad Cleaner 2018-02-16 04:03 - 2018-02-16 06:14 - 000031321 _____ C:\Users\jean-\Desktop\malwarebytes.txt 2018-02-16 01:57 - 2018-02-16 01:57 - 000000000 ____D C:\Program Files\Malwarebytes 2018-02-16 01:52 - 2018-02-16 01:56 - 083316440 _____ (Malwarebytes ) C:\Users\jean-\Downloads\mb3-setup-35891.35891-3.3.1.2183-1.0.262-1.0.3374.exe 2018-02-15 21:48 - 2018-02-15 21:48 - 000007075 _____ C:\Users\jean-\Documents\réponse (cri de lady gaga & de justin timberlake) fei zhpcleaner soir du 15 février 2018.txt 2018-02-15 21:11 - 2018-02-16 14:04 - 000000000 ____D C:\Users\jean-\AppData\Roaming\ZHP 2018-02-15 21:11 - 2018-02-15 21:11 - 000000000 ____D C:\Users\jean-\AppData\Local\ZHP 2018-02-15 21:07 - 2018-02-15 21:08 - 000000000 ____D C:\Users\jean-\Downloads\CyberLink_MakeupDirector_Deluxe_2.0_Portable 2018-02-15 20:19 - 2018-02-15 21:07 - 179802716 _____ C:\Users\jean-\Downloads\CyberLink_MakeupDirector_Deluxe_2.0_Portable.rar 2018-02-15 20:06 - 2018-02-16 05:35 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IconXP 2018-02-15 20:05 - 2018-02-15 20:06 - 000000000 ____D C:\Program Files (x86)\IconXP 2018-02-15 20:05 - 2018-02-15 20:05 - 000000000 ____D C:\Users\jean-\Documents\Axialis Librarian 2018-02-15 20:05 - 2018-02-15 20:05 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Axialis Software 2018-02-15 20:05 - 2018-02-15 20:05 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Axialis 2018-02-15 20:04 - 2018-02-16 11:46 - 000000000 ____D C:\Program Files (x86)\icofx3 2018-02-15 20:04 - 2018-02-15 20:05 - 000000000 ____D C:\Users\jean-\AppData\Local\Axialis 2018-02-15 20:04 - 2018-02-15 20:04 - 000001150 _____ C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\icofx 3.lnk 2018-02-15 20:04 - 2018-02-15 20:04 - 000000000 ____D C:\TileCreator 2018-02-15 20:04 - 2018-02-15 20:04 - 000000000 ____D C:\ProgramData\icofx3 2018-02-15 20:04 - 2018-02-15 20:04 - 000000000 ____D C:\Program Files (x86)\Axialis 2018-02-15 19:55 - 2018-02-23 08:55 - 000000000 ____D C:\Program Files (x86)\UsbFix 2018-02-15 19:41 - 2018-02-15 19:41 - 000004680 _____ C:\Users\jean-\Documents\bugs usb détails.txt 2018-02-15 18:10 - 2018-02-23 15:17 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Moo0 2018-02-15 18:10 - 2018-02-23 11:28 - 000003364 _____ C:\WINDOWS\System32\Tasks\RunAsStdUser Task 2018-02-15 18:09 - 2018-02-23 15:17 - 000000000 ____D C:\WINDOWS\system32\ShellExtBridge 2018-02-15 18:08 - 2018-02-23 15:17 - 000000000 ____D C:\Program Files (x86)\Moo0 2018-02-15 09:12 - 2018-02-23 21:23 - 000000000 ____D C:\Users\jean-\AppData\LocalLow\BitTorrent 2018-02-15 09:10 - 2018-02-15 09:10 - 000000902 _____ C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\BitTorrent.lnk 2018-02-15 09:09 - 2018-02-23 22:04 - 000000000 ____D C:\Users\jean-\AppData\Roaming\BitTorrent 2018-02-15 09:09 - 2018-02-15 09:12 - 000000000 ____D C:\Users\Public\Documents\AKVIS 2018-02-15 09:06 - 2018-02-15 09:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AKVIS 2018-02-15 09:06 - 2018-02-15 09:06 - 000000000 ____D C:\Program Files (x86)\AKVIS 2018-02-15 09:03 - 2018-02-15 09:04 - 002870880 _____ (BitTorrent Inc.) C:\Users\jean-\Downloads\BitTorrent.exe 2018-02-15 08:54 - 2018-02-15 08:54 - 000000000 ____D C:\Users\jean-\Documents\Wondershare 2018-02-15 08:54 - 2018-02-15 08:54 - 000000000 ____D C:\Users\jean-\AppData\Roaming\HYXDevPsnList 2018-02-15 08:48 - 2018-02-15 08:48 - 000000000 ____D C:\Users\jean-\AppData\Local\CEF 2018-02-15 08:46 - 2018-02-15 08:48 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Scadarlia 2018-02-15 08:39 - 2018-02-15 08:40 - 007717240 _____ C:\Users\jean-\Downloads\susetupPro.exe 2018-02-15 08:33 - 2018-02-22 14:20 - 000000000 ____D C:\WINDOWS\system32\Drivers\zinstall_z77 2018-02-15 08:33 - 2018-02-15 08:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Drivers\zinstall_z77 2018-02-15 08:33 - 2018-01-08 14:39 - 000022024 _____ (Olof Lagerkvist) C:\WINDOWS\SysWOW64\imdsksvc.exe 2018-02-15 08:33 - 2018-01-08 14:39 - 000022024 _____ (Olof Lagerkvist) C:\WINDOWS\system32\imdsksvc.exe 2018-02-15 08:33 - 2018-01-08 04:59 - 000064096 _____ (Olof Lagerkvist) C:\WINDOWS\system32\Drivers\imdisk.sys 2018-02-15 08:33 - 2018-01-08 04:59 - 000028256 _____ (Olof Lagerkvist) C:\WINDOWS\system32\Drivers\awealloc.sys 2018-02-15 08:28 - 2018-02-15 08:32 - 000000000 ____D C:\ProgramData\ZiBackup 2018-02-15 08:27 - 2018-02-15 08:32 - 000000000 ____D C:\ProgramData\Zinstall 2018-02-15 08:25 - 2018-02-15 08:25 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zinstall Backup 2018-02-15 08:24 - 2018-02-15 08:28 - 000000000 ____D C:\Program Files (x86)\Zinstall Backup 2018-02-15 08:13 - 2018-02-15 08:15 - 035902656 _____ (watermark-software.com) C:\Users\jean-\Downloads\watermark-software.exe 2018-02-15 08:06 - 2018-02-15 08:08 - 017569232 _____ (AoaoPhoto Digital Studio.) C:\Users\jean-\Downloads\video-watermark-pro.exe 2018-02-15 08:03 - 2018-02-15 08:03 - 000000302 _____ C:\Users\jean-\Documents\utorrent_license.btkey 2018-02-15 07:55 - 2018-02-15 07:56 - 002848936 _____ (BitTorrent Inc.) C:\Users\jean-\Downloads\uTorrent.exe 2018-02-15 07:50 - 2018-02-15 07:50 - 000000000 ____D C:\Users\jean-\Documents\Lighten PDF Security Manager 2018-02-15 07:50 - 2018-02-15 07:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lighten PDF Security Manager 2018-02-15 07:50 - 2018-02-15 07:50 - 000000000 ____D C:\Program Files (x86)\Lighten PDF Security Manager 2018-02-15 07:49 - 2018-02-15 07:49 - 003102299 _____ (Lighten Software Limited ) C:\Users\jean-\Downloads\pdf-security-manager-v110.exe 2018-02-15 07:41 - 2018-02-16 05:35 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Supercopier 2018-02-15 07:34 - 2017-11-30 13:46 - 000076608 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\dokan.sys 2018-02-15 07:33 - 2018-02-15 07:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Linux File Systems for Windows by Paragon Software 2018-02-15 07:31 - 2017-10-11 18:13 - 000079832 _____ C:\WINDOWS\system32\Drivers\gpt_loader.sys 2018-02-15 07:31 - 2017-10-11 18:13 - 000046552 _____ (Paragon Software Group) C:\WINDOWS\system32\Drivers\csvol.sys 2018-02-15 07:30 - 2018-02-15 07:34 - 000000000 ____D C:\ProgramData\Paragon 2018-02-15 07:30 - 2018-02-15 07:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Paragon HFS+ for Windows 2018-02-15 07:30 - 2017-10-11 18:13 - 000218072 _____ (Paragon Software Group) C:\WINDOWS\system32\Drivers\hfsplus.sys 2018-02-15 07:30 - 2017-10-11 18:13 - 000064472 _____ (Paragon Software Group) C:\WINDOWS\system32\Drivers\mounthlp.sys 2018-02-15 07:30 - 2017-10-11 18:13 - 000048088 _____ (Paragon Software Group) C:\WINDOWS\system32\Drivers\apmwin.sys 2018-02-15 07:30 - 2017-10-11 18:13 - 000035288 _____ (Paragon Software Group) C:\WINDOWS\system32\Drivers\hfsplusrec.sys 2018-02-15 07:28 - 2018-02-15 07:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Paragon NTFS-HFS Converter 2018-02-15 07:26 - 2018-02-15 07:26 - 000000000 ____D C:\ProgramData\VSK 2018-02-15 07:23 - 2018-02-15 07:33 - 000000000 ____D C:\Program Files (x86)\Paragon Software 2018-02-15 07:19 - 2018-02-15 07:19 - 000000000 ____D C:\Users\jean-\Documents\Lighten PDF Password Remover 2018-02-15 07:09 - 2018-02-15 07:09 - 000000000 ____D C:\Users\jean-\Documents\Lighten PDF to EPUB Converter 2018-02-15 07:04 - 2018-02-23 16:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DLL Care 1.0 2018-02-15 07:01 - 2018-02-21 14:40 - 000000000 ____D C:\Program Files (x86)\DLL Care 2018-02-15 06:57 - 2018-02-16 05:35 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ultracopier 2018-02-15 06:56 - 2018-02-15 06:56 - 000000000 ____D C:\Users\jean-\ultracopier 2018-02-14 23:31 - 2018-02-14 23:33 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Acronis 2018-02-14 23:29 - 2018-02-14 23:29 - 000339808 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\file_tracker.sys 2018-02-14 23:29 - 2018-01-01 05:51 - 000052224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll 2018-02-14 23:29 - 2018-01-01 05:49 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll 2018-02-14 23:29 - 2018-01-01 05:49 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll 2018-02-14 23:29 - 2018-01-01 05:48 - 000310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2018-02-14 23:29 - 2018-01-01 05:48 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2018-02-14 23:29 - 2018-01-01 05:41 - 000577024 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2018-02-14 23:29 - 2018-01-01 05:39 - 000557568 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2018-02-14 23:29 - 2017-11-18 04:29 - 002321408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2018-02-14 23:29 - 2017-11-01 23:12 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe 2018-02-14 23:29 - 2017-11-01 23:05 - 000297984 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll 2018-02-14 23:29 - 2017-10-09 02:44 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2018-02-14 23:29 - 2017-10-09 02:43 - 001231360 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2018-02-14 23:29 - 2017-09-18 03:27 - 000326656 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll 2018-02-14 23:29 - 2017-09-07 06:53 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2018-02-14 23:29 - 2017-09-07 06:52 - 000557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll 2018-02-14 23:29 - 2017-09-07 06:51 - 000223232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe 2018-02-14 23:29 - 2017-09-07 06:18 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2018-02-14 23:29 - 2017-09-07 06:16 - 000748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2018-02-14 23:29 - 2017-09-07 06:15 - 000260608 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe 2018-02-14 23:29 - 2017-08-22 06:09 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2018-02-14 23:29 - 2017-08-22 06:08 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2018-02-14 23:29 - 2017-08-22 06:06 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2018-02-14 23:29 - 2017-08-22 06:05 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll 2018-02-14 23:29 - 2017-08-22 06:04 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2018-02-14 23:29 - 2017-08-22 05:57 - 000711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2018-02-14 23:29 - 2017-08-22 05:47 - 000869888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2018-02-14 23:29 - 2017-07-12 06:23 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll 2018-02-14 23:29 - 2017-07-12 06:12 - 000091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll 2018-02-14 23:29 - 2017-06-21 07:50 - 001054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll 2018-02-14 23:29 - 2017-03-04 07:36 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\DuCsps.dll 2018-02-14 23:29 - 2016-11-11 10:23 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\EAMProgressHandler.dll 2018-02-14 23:29 - 2016-08-06 05:16 - 000026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2018-02-14 23:29 - 2016-08-06 04:48 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll 2018-02-14 23:28 - 2018-02-14 23:28 - 001049432 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\tib.sys 2018-02-14 23:28 - 2018-02-14 23:28 - 000581464 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\tnd.sys 2018-02-14 23:28 - 2018-02-14 23:28 - 000339288 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\snapman.sys 2018-02-14 23:28 - 2018-02-14 23:28 - 000301408 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\virtual_file.sys 2018-02-14 23:28 - 2018-02-14 23:28 - 000202592 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\tib_mounter.sys 2018-02-14 23:28 - 2018-02-14 23:28 - 000160600 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\fltsrv.sys 2018-02-14 23:27 - 2018-02-19 20:27 - 000000000 ____D C:\ProgramData\Acronis 2018-02-14 23:27 - 2018-02-14 23:27 - 000001300 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis True Image WD Edition.lnk 2018-02-14 23:27 - 2018-02-14 23:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis 2018-02-14 23:27 - 2018-02-14 23:27 - 000000000 ____D C:\Program Files (x86)\Acronis 2018-02-14 23:21 - 2018-02-14 23:23 - 000000000 ____D C:\Users\jean-\Downloads\ATI2016WD_build33 2018-02-14 23:20 - 2018-02-15 09:26 - 000000000 ____D C:\Program Files (x86)\R-Drive Image 2018-02-14 23:20 - 2018-02-14 23:21 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\R-Drive Image 2018-02-14 23:20 - 2018-02-14 23:20 - 000000000 ____D C:\Users\jean-\Documents\R-TT 2018-02-14 23:14 - 2018-02-14 23:19 - 082245424 _____ (R-Tools Technology Inc.) C:\Users\jean-\Downloads\RDriveImage6.exe 2018-02-14 23:12 - 2018-02-14 23:20 - 424564734 _____ C:\Users\jean-\Downloads\ATI2016WD_build33.zip 2018-02-14 22:57 - 2018-02-15 18:53 - 000350568 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2018-02-14 22:53 - 2018-02-14 22:53 - 000000000 ____D C:\WINDOWS\Tasks\ImCleanDisabled 2018-02-14 22:53 - 2018-02-14 22:53 - 000000000 ____D C:\ProgramData\{13CFD044-61E4-4EAC-AD61-02536D961216} 2018-02-14 22:47 - 2018-02-14 22:47 - 000000000 ____D C:\Users\jean-\AppData\Roaming\ExtremeCopy 2018-02-14 22:46 - 2018-02-14 22:46 - 000000000 ____D C:\Users\jean-\AppData\Roaming\USBSafelyRemove 2018-02-14 22:46 - 2018-02-14 22:46 - 000000000 ____D C:\ProgramData\USBSRService 2018-02-14 22:46 - 2018-02-14 22:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\USB Safely Remove 2018-02-14 22:45 - 2018-02-14 22:46 - 000000000 ____D C:\Program Files (x86)\USB Safely Remove 2018-02-14 22:44 - 2018-02-16 19:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Eassos System Restore 2018-02-14 22:44 - 2018-02-14 22:45 - 000000000 ____D C:\Users\jean-\AppData\Roaming\TunesKit Spotify Converter 2018-02-14 22:44 - 2018-02-14 22:44 - 000000000 ____D C:\Users\jean-\Documents\TunesKit Spotify Converter 2018-02-14 22:44 - 2018-02-14 22:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TunesKit Spotify Converter 2018-02-14 22:44 - 2018-02-14 22:44 - 000000000 ____D C:\Program Files (x86)\TunesKit Spotify Converter 2018-02-14 22:43 - 2018-02-20 09:03 - 000000000 ____D C:\Program Files\Eassos System Restore 2018-02-14 22:41 - 2018-02-14 22:41 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Apple Computer 2018-02-14 22:40 - 2018-02-14 22:40 - 000000000 ____D C:\Users\jean-\Documents\4Videosoft Studio 2018-02-14 22:40 - 2018-02-14 22:40 - 000000000 ____D C:\ProgramData\Apple 2018-02-14 22:36 - 2018-02-14 22:36 - 000000000 ____D C:\Users\jean-\AppData\Local\iMusic 2018-02-14 22:34 - 2018-02-14 22:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SkinPack 2018-02-14 22:34 - 2018-02-14 22:34 - 000000000 ____D C:\ProgramData\Aimersoft 2018-02-14 22:33 - 2018-02-19 07:28 - 000000000 ____D C:\Users\Public\File Viewer Plus 2018-02-14 22:33 - 2018-02-16 19:34 - 000000000 ____D C:\Users\jean-\AppData\Local\File Viewer Plus 2018-02-14 22:33 - 2018-02-14 22:33 - 000000000 ____D C:\Users\jean-\AppData\Local\KeepVid 2018-02-14 22:33 - 2018-02-14 22:33 - 000000000 ____D C:\Users\jean-\AppData\Local\4Videosoft Studio 2018-02-14 22:32 - 2018-02-14 22:32 - 031712256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imageres.dll 2018-02-14 22:32 - 2018-02-14 22:32 - 031712256 _____ (Microsoft Corporation) C:\WINDOWS\system32\imageres.dll 2018-02-14 22:32 - 2018-02-14 22:32 - 001752576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagesp1.dll 2018-02-14 22:32 - 2018-02-14 22:32 - 001752576 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagesp1.dll 2018-02-14 22:32 - 2018-02-14 22:32 - 000598016 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll 2018-02-14 22:32 - 2018-02-14 22:32 - 000558080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\zipfldr.dll 2018-02-14 22:30 - 2018-02-16 17:46 - 000000000 ____D C:\SkinPack 2018-02-14 22:30 - 2018-02-15 07:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lighten PDF to EPUB Converter 2018-02-14 22:30 - 2018-02-15 07:08 - 000000000 ____D C:\Program Files (x86)\Lighten PDF to EPUB Converter 2018-02-14 22:30 - 2018-02-14 22:30 - 000000000 ____D C:\Users\jean-\AppData\Roaming\ProtectStar 2018-02-14 22:30 - 2018-02-14 22:30 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ProtectStar 2018-02-14 22:30 - 2018-02-14 22:30 - 000000000 ____D C:\Program Files (x86)\ProtectStar 2018-02-14 22:29 - 2018-02-15 08:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScadarliaPro 2018-02-14 22:29 - 2018-02-15 08:46 - 000000000 ____D C:\Program Files (x86)\ScadarliaPro 2018-02-14 22:29 - 2012-03-13 16:54 - 036595712 _____ C:\Users\jean-\Documents\Disk_Copy.iso 2018-02-14 22:28 - 2018-02-15 07:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lighten PDF Password Remover 2018-02-14 22:28 - 2018-02-15 07:10 - 000000000 ____D C:\Program Files (x86)\Lighten PDF Password Remover 2018-02-14 22:28 - 2018-02-14 22:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyKeyFinder 2018-02-14 22:28 - 2018-02-14 22:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AntiLogger 2018-02-14 22:28 - 2018-02-14 22:28 - 000000000 ____D C:\Program Files (x86)\MyKeyFinder 2018-02-14 22:28 - 2018-02-14 22:28 - 000000000 ____D C:\Program Files (x86)\AntiLogger 2018-02-14 22:27 - 2018-02-17 13:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PriWeb 2018-02-14 22:27 - 2018-02-16 17:46 - 000000000 ____D C:\Program Files (x86)\PriWeb 2018-02-14 22:26 - 2018-02-22 07:36 - 000000000 ____D C:\ProgramData\Abelssoft 2018-02-14 22:26 - 2018-02-14 22:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SSDFresh 2018-02-14 22:26 - 2018-02-14 22:26 - 000000000 ____D C:\Program Files (x86)\SSDFresh 2018-02-14 22:25 - 2018-02-14 22:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BurnAware Professional 2018-02-14 22:25 - 2018-02-14 22:25 - 000000000 ____D C:\Program Files (x86)\BurnAware Professional 2018-02-14 22:24 - 2018-02-14 22:25 - 000000000 ____D C:\ProgramData\FILEminimizer 2018-02-14 22:24 - 2018-02-14 22:24 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Abelssoft 2018-02-14 22:24 - 2018-02-14 22:24 - 000000000 ____D C:\Users\jean-\AppData\Local\Abelssoft 2018-02-14 22:24 - 2018-02-14 22:24 - 000000000 ____D C:\ProgramData\XDMessagingv4 2018-02-14 22:24 - 2018-02-14 22:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FILEminimizer Office 7.0 2018-02-14 22:24 - 2018-02-14 22:24 - 000000000 ____D C:\Program Files (x86)\FILEminimizer Office 2018-02-14 22:23 - 2018-02-19 06:30 - 000000000 ____D C:\Program Files (x86)\Smart Disk Saver 2018-02-14 22:23 - 2018-02-16 19:37 - 000000000 ____D C:\Program Files (x86)\Smart Data Recovery 2018-02-14 22:23 - 2018-02-14 22:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Toolbar Terminator 2018-02-14 22:23 - 2018-02-14 22:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Disk Saver 2018-02-14 22:23 - 2018-02-14 22:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Safe-Passwords 2018-02-14 22:23 - 2018-02-14 22:23 - 000000000 ____D C:\Program Files (x86)\Safe-Passwords 2018-02-14 22:20 - 2018-02-14 22:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\xplorer2 pro x64 2018-02-14 22:20 - 2018-02-14 22:20 - 000000000 ____D C:\Program Files\zabkat 2018-02-14 22:16 - 2018-02-14 22:16 - 000000000 ____D C:\Users\jean-\Documents\LimeWire 2018-02-14 22:16 - 2016-08-18 17:17 - 000029808 _____ (VoodooSoft, LLC) C:\WINDOWS\system32\Drivers\vsscanner.sys 2018-02-14 22:15 - 2018-02-16 14:08 - 000000000 ____D C:\Program Files (x86)\Java 2018-02-14 22:15 - 2018-02-14 22:17 - 000000000 ____D C:\Users\jean-\AppData\Roaming\LimeWire 2018-02-14 22:15 - 2018-02-14 22:15 - 000411368 _____ (Sun Microsystems, Inc.) C:\WINDOWS\SysWOW64\deploytk.dll 2018-02-14 22:15 - 2018-02-14 22:15 - 000153376 _____ (Sun Microsystems, Inc.) C:\WINDOWS\SysWOW64\javaws.exe 2018-02-14 22:15 - 2018-02-14 22:15 - 000145184 _____ (Sun Microsystems, Inc.) C:\WINDOWS\SysWOW64\javaw.exe 2018-02-14 22:15 - 2018-02-14 22:15 - 000145184 _____ (Sun Microsystems, Inc.) C:\WINDOWS\SysWOW64\java.exe 2018-02-14 22:15 - 2018-02-14 22:15 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LimeWire 2018-02-14 22:15 - 2018-02-14 22:15 - 000000000 ____D C:\ProgramData\Sun 2018-02-14 22:14 - 2018-02-14 22:15 - 000000000 ____D C:\Program Files (x86)\LimeWire 2018-02-14 22:14 - 2018-02-14 22:14 - 000000000 ____D C:\Users\jean-\AppData\LocalLow\Sun 2018-02-14 22:11 - 2018-02-14 22:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SysTools Google Apps Backup 2018-02-14 22:11 - 2018-02-14 22:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SysTools Gmail Backup 2018-02-14 22:11 - 2018-02-14 22:11 - 000000000 ____D C:\Program Files (x86)\SysTools Google Apps Backup 2018-02-14 22:11 - 2018-02-14 22:11 - 000000000 ____D C:\Program Files (x86)\SysTools Gmail Backup 2018-02-14 22:10 - 2018-02-14 22:10 - 000000000 ____D C:\Users\jean-\AppData\Roaming\SUPERAntiSpyware.com 2018-02-14 22:10 - 2018-02-14 22:10 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Password Safe 2018-02-14 22:10 - 2018-02-14 22:10 - 000000000 ____D C:\ProgramData\SUPERAntiSpyware.com 2018-02-14 22:10 - 2018-02-14 22:10 - 000000000 ____D C:\Program Files\Password Safe 2018-02-14 22:09 - 2018-02-20 17:11 - 000000000 ____D C:\Program Files\UVK - Ultra Virus Killer 2018-02-14 22:09 - 2018-02-14 22:09 - 000001202 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeePass 2.lnk 2018-02-14 22:09 - 2018-02-14 22:09 - 000000574 _____ C:\WINDOWS\Tasks\Tweaking.com - Windows Repair Tray Icon.job 2018-02-14 22:09 - 2018-02-14 22:09 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Notepad++ 2018-02-14 22:09 - 2018-02-14 22:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UVK - Ultra Virus Killer 2018-02-14 22:09 - 2018-02-14 22:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tweaking.com 2018-02-14 22:09 - 2018-02-14 22:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2018-02-14 22:09 - 2018-02-14 22:09 - 000000000 ____D C:\Program Files\Notepad++ 2018-02-14 22:09 - 2018-02-14 22:09 - 000000000 ____D C:\Program Files (x86)\Tweaking.com 2018-02-14 22:09 - 2018-02-14 22:09 - 000000000 ____D C:\Program Files (x86)\KeePass Password Safe 2 2018-02-14 22:08 - 2018-02-14 22:08 - 000230840 _____ (TrueCrypt Foundation) C:\WINDOWS\system32\Drivers\truecrypt.sys 2018-02-14 22:08 - 2018-02-14 22:08 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LinuxLive USB Creator 2018-02-14 22:08 - 2018-02-14 22:08 - 000000000 ____D C:\Users\jean-\AppData\Roaming\KC Softwares 2018-02-14 22:08 - 2018-02-14 22:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KC Softwares 2018-02-14 22:08 - 2018-02-14 22:08 - 000000000 ____D C:\Program Files\TrueCrypt 2018-02-14 22:08 - 2018-02-14 22:08 - 000000000 ____D C:\Program Files (x86)\LinuxLive USB Creator 2018-02-14 22:08 - 2018-02-14 22:08 - 000000000 ____D C:\Program Files (x86)\KC Softwares 2018-02-14 22:06 - 2018-02-14 22:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hard Drive Data Recovery 2018-02-14 22:06 - 2018-02-14 22:06 - 000000000 ____D C:\Program Files (x86)\Hard Drive Data Recovery 2018-02-14 22:02 - 2017-09-27 17:29 - 000000232 _____ C:\WINDOWS\SysWOW64\dllhost.exe.config 2018-02-14 22:00 - 2018-02-14 22:00 - 000000000 ____D C:\Users\jean-\Documents\Wondershare MediaServer 2018-02-14 21:59 - 2018-02-19 16:39 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Wondershare 2018-02-14 21:56 - 2018-02-14 21:56 - 000000000 ____D C:\ProgramData\GraphicsType 2018-02-14 21:55 - 2018-02-14 21:55 - 000000000 ____D C:\Users\jean-\AppData\Roaming\iSkysoft 2018-02-14 21:52 - 2018-02-14 21:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Anti Malware 2018-02-14 21:52 - 2018-02-14 21:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise AD Cleaner 2018-02-14 21:52 - 2018-02-14 21:52 - 000000000 ____D C:\Program Files\Wise 2018-02-14 21:52 - 2018-02-06 03:12 - 000039448 _____ (WiseCleaner.com) C:\WINDOWS\system32\Drivers\WiseAntiMalWareProcessMonitor.sys 2018-02-14 21:52 - 2018-01-29 02:26 - 000051232 _____ (WiseCleaner.com) C:\WINDOWS\system32\Drivers\WiseAntiMalWareRegMonitor.sys 2018-02-14 21:52 - 2017-10-26 02:22 - 000038984 _____ (WiseCleaner.com) C:\WINDOWS\system32\Drivers\WiseProcessMonitor.sys 2018-02-14 21:52 - 2010-03-18 09:36 - 000827728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr100_x64.dll 2018-02-14 21:52 - 2010-03-18 09:15 - 000770384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr100_x86.dll 2018-02-14 21:51 - 2018-02-14 21:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iMusic 2018-02-14 21:50 - 2018-02-14 21:50 - 000000000 ____D C:\Users\jean-\AppData\Roaming\iMusic 2018-02-14 21:50 - 2018-02-14 21:50 - 000000000 ____D C:\Program Files (x86)\Aimersoft 2018-02-14 21:49 - 2018-02-14 21:51 - 000000000 ____D C:\Users\Public\Documents\Aimersoft 2018-02-14 21:48 - 2018-02-14 21:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2018-02-14 21:48 - 2018-02-14 21:48 - 000000000 ____D C:\Program Files (x86)\FreeCodecPack 2018-02-14 21:48 - 2018-02-14 21:48 - 000000000 ____D C:\Program Files (x86)\DVDVideoSoft 2018-02-14 21:47 - 2018-02-14 23:11 - 000000000 ____D C:\Users\jean-\AppData\Roaming\DVDVideoSoft 2018-02-14 21:42 - 2010-05-26 11:41 - 002106216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_43.dll 2018-02-14 21:40 - 2018-02-14 22:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Runtime Software 2018-02-14 21:40 - 2018-02-14 22:07 - 000000000 ____D C:\Program Files (x86)\Runtime Software 2018-02-14 21:40 - 2018-02-14 21:40 - 000000000 ____D C:\Users\jean-\AppData\Roaming\NiceCopier 2018-02-14 21:40 - 2018-02-14 21:40 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PerigeeCopy 2018-02-14 21:40 - 2018-02-14 21:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NiceCopier 2018-02-14 21:40 - 2018-02-14 21:40 - 000000000 ____D C:\Program Files\PerigeeCopy 2018-02-14 21:40 - 2018-02-14 21:40 - 000000000 ____D C:\Program Files (x86)\NiceCopier 2018-02-14 21:39 - 2018-02-14 21:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NoVirusThanks 2018-02-14 21:39 - 2018-02-14 21:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniCopier 2018-02-14 21:39 - 2018-02-14 21:39 - 000000000 ____D C:\Program Files\NoVirusThanks 2018-02-14 21:39 - 2018-02-14 21:39 - 000000000 ____D C:\Program Files (x86)\MiniCopier 2018-02-14 21:38 - 2018-02-15 19:02 - 000000000 ____D C:\ProgramData\MCShield 2018-02-14 21:38 - 2018-02-14 21:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MCShield 2018-02-14 21:38 - 2018-02-14 21:38 - 000000000 ____D C:\Program Files (x86)\MCShield 2018-02-14 21:37 - 2018-02-22 14:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Stitcher 2018-02-14 21:37 - 2018-02-14 21:37 - 000000000 ____D C:\Program Files (x86)\iFotosoft 2018-02-14 21:35 - 2018-02-14 21:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberGhost 5 2018-02-14 21:35 - 2018-02-14 21:35 - 000000000 ____D C:\Program Files\CyberGhost 5 2018-02-14 21:32 - 2018-02-14 21:32 - 000000000 ____D C:\Users\jean-\AppData\Local\lfs hyper part 1 2018-02-14 21:31 - 2018-02-14 21:31 - 000002513 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Serif WebPlus X7.lnk 2018-02-14 21:31 - 2018-02-14 21:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Applications Serif 2018-02-14 21:31 - 2018-02-14 21:31 - 000000000 ____D C:\Program Files\Serif 2018-02-14 21:27 - 2013-04-05 17:48 - 000020992 _____ (Visagesoft) C:\WINDOWS\system32\vsmon1.dll 2018-02-14 21:26 - 2018-02-16 19:31 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Expert PDF 9 2018-02-14 21:26 - 2018-02-14 21:26 - 000000000 ____D C:\ProgramData\Expert PDF 9 2018-02-14 21:20 - 2018-02-14 21:20 - 000001292 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk 2018-02-14 21:20 - 2018-02-14 21:20 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Thunderbird 2018-02-14 21:20 - 2018-02-14 21:20 - 000000000 ____D C:\Users\jean-\AppData\Local\Thunderbird 2018-02-14 21:20 - 2018-02-14 21:20 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2018-02-14 21:19 - 2018-02-14 21:19 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2018-02-14 21:18 - 2018-02-14 21:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SoftMaker Office 2016 2018-02-14 21:17 - 2018-02-14 21:20 - 000000000 ____D C:\Program Files (x86)\SoftMaker Office 2016 2018-02-14 21:17 - 2018-02-14 21:18 - 000000000 ____D C:\Users\jean-\Documents\SoftMaker 2018-02-14 21:17 - 2018-02-14 21:18 - 000000000 ____D C:\Users\jean-\AppData\Roaming\SoftMaker 2018-02-14 21:13 - 2018-02-14 22:16 - 000000000 ____D C:\ProgramData\VoodooShield 2018-02-14 21:13 - 2018-02-14 22:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VoodooShield 2018-02-14 21:13 - 2018-02-14 22:16 - 000000000 ____D C:\Program Files\VoodooShield 2018-02-14 21:13 - 2018-02-14 21:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IconPack 2018-02-14 21:12 - 2018-02-14 22:32 - 000000000 ____D C:\W7P_Backups 2018-02-14 21:12 - 2018-02-14 21:13 - 000000000 ____D C:\IconPack 2018-02-14 21:12 - 2018-02-14 21:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\File Viewer Plus 2018-02-14 21:11 - 2018-02-19 06:15 - 000000000 ____D C:\Program Files (x86)\File Viewer Plus 2018-02-14 21:11 - 2018-02-14 21:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ExtremeCopy 2018-02-14 21:11 - 2018-02-14 21:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\4Videosoft 2018-02-14 21:11 - 2018-02-14 21:11 - 000000000 ____D C:\Program Files (x86)\Easersoft 2018-02-14 21:10 - 2018-02-14 21:10 - 000000000 ____D C:\Users\jean-\AppData\Local\Aimersoft 2018-02-14 21:10 - 2018-02-14 21:10 - 000000000 ____D C:\ProgramData\Keepvid 2018-02-14 21:10 - 2018-02-14 21:10 - 000000000 ____D C:\ProgramData\4Videosoft Studio 2018-02-14 21:10 - 2018-02-14 21:10 - 000000000 ____D C:\Program Files (x86)\4Videosoft Studio 2018-02-14 21:09 - 2018-02-14 22:13 - 000000000 ____D C:\Users\jean-\.android 2018-02-14 21:09 - 2018-02-14 21:09 - 000000000 ____D C:\Users\jean-\AppData\Roaming\KeepVid 2018-02-14 21:09 - 2018-02-14 21:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeepVid 2018-02-14 21:09 - 2018-01-19 16:31 - 000048424 _____ (Wondershare) C:\WINDOWS\system32\Drivers\VirtualAudio.sys 2018-02-14 21:08 - 2018-02-14 21:09 - 000000000 ____D C:\Program Files (x86)\Keepvid 2018-02-14 21:07 - 2018-02-14 22:14 - 000000000 ____D C:\Users\Public\Documents\Keepvid 2018-02-14 18:56 - 2018-02-14 19:03 - 000000000 ____D C:\Users\jean-\AppData\Local\SIB 2018-02-14 18:55 - 2018-02-23 10:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Silent Install Builder 5 2018-02-14 18:55 - 2018-02-23 10:59 - 000000000 ____D C:\Program Files (x86)\Silent Install Builder 5 2018-02-14 18:55 - 2018-02-14 18:55 - 011403264 _____ C:\Users\jean-\Downloads\SibSetup.msi 2018-02-14 18:55 - 2018-02-14 18:55 - 002140160 _____ C:\Users\jean-\Downloads\sih.3.6.0.0.exe 2018-02-14 18:55 - 2018-02-14 18:55 - 000000000 ____D C:\Users\jean-\Downloads\scripts 2018-02-14 18:55 - 2018-02-14 18:55 - 000000000 ____D C:\Users\jean-\Downloads\donate 2018-02-03 13:24 - 2018-02-03 13:25 - 001201664 _____ C:\Users\jean-\Desktop\TileCreatorProxy.exe 2018-02-03 12:52 - 2018-02-03 12:54 - 000561899 _____ C:\Users\jean-\Desktop\TileCreatorProxy.zip 2018-01-29 16:46 - 2018-01-29 16:46 - 000001751 _____ C:\Users\jean-\Desktop\adaware 12 codes activation.txt 2018-01-29 16:42 - 2018-01-29 16:42 - 000000277 _____ C:\Users\jean-\Desktop\TileCreator Claude Couderc.config 2018-01-29 16:26 - 2018-01-29 16:28 - 039830824 _____ (Axialis Software Corp.) C:\Users\jean-\Desktop\iconworkshop.exe 2018-01-29 16:23 - 2018-01-29 16:24 - 013502176 _____ (IcoFX Software S.R.L. ) C:\Users\jean-\Desktop\icofxsetup.exe 2018-01-29 16:05 - 2018-01-29 16:06 - 006679761 _____ (Aha-Soft) C:\Users\jean-\Desktop\iconxp.exe 2018-01-29 15:56 - 2018-01-31 09:01 - 000000147 _____ C:\Users\jean-\Desktop\Claude Couderc Consulting.url 2018-01-29 13:46 - 2018-01-29 13:46 - 000001987 _____ C:\Users\jean-\Desktop\amine aime g g'dar & adaware 12-claude couderc info.txt ==================== Trois mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2018-02-24 01:14 - 2016-09-03 08:08 - 000000000 ____D C:\Users\jean-\AppData\Local\CrashDumps 2018-02-24 01:11 - 2016-08-31 14:57 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2018-02-24 01:00 - 2016-08-28 11:36 - 003026652 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2018-02-24 01:00 - 2016-07-16 23:40 - 001310670 _____ C:\WINDOWS\system32\perfh00C.dat 2018-02-24 01:00 - 2016-07-16 23:40 - 000330914 _____ C:\WINDOWS\system32\perfc00C.dat 2018-02-24 00:52 - 2016-08-31 15:16 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2018-02-23 23:18 - 2016-07-16 12:36 - 000000000 ____D C:\WINDOWS\CbsTemp 2018-02-23 22:15 - 2016-07-16 12:47 - 000000000 ____D C:\WINDOWS\AppReadiness 2018-02-23 22:13 - 2016-08-28 13:25 - 000000000 ____D C:\ProgramData\Ashampoo 2018-02-23 22:13 - 2016-08-28 11:50 - 000000000 ___RD C:\Users\jean-\OneDrive 2018-02-23 19:02 - 2016-07-16 12:47 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2018-02-23 19:00 - 2016-08-28 15:25 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Macromedia 2018-02-23 18:57 - 2016-07-16 12:47 - 000000000 ____D C:\WINDOWS\system32\Macromed 2018-02-23 16:19 - 2016-09-07 19:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller 2018-02-23 16:19 - 2016-09-07 19:38 - 000000000 ____D C:\Program Files\RogueKiller 2018-02-23 16:19 - 2016-09-07 11:53 - 000000000 ___RD C:\Users\jean-\Desktop\LFS Hyper-100% Sécurisé-Cewbé-ManageMyBarrow 2 à 5 & UMT Widen Suite 2018.911.66.11 2018-02-23 16:08 - 2016-09-07 19:38 - 000000000 ____D C:\ProgramData\RogueKiller 2018-02-23 16:00 - 2016-07-16 12:47 - 000000000 ____D C:\WINDOWS\System 2018-02-23 14:27 - 2016-07-16 07:04 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2018-02-23 13:03 - 2016-07-16 12:47 - 000000000 ____D C:\WINDOWS\Web 2018-02-23 12:04 - 2016-08-31 15:04 - 000000000 ____D C:\Users\jean- 2018-02-23 07:57 - 2016-09-06 15:18 - 000004174 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{3EF053DA-9088-495B-9E19-1A7664ABB844} 2018-02-22 20:20 - 2016-08-28 11:43 - 000000000 ____D C:\Users\jean-\AppData\Local\Packages 2018-02-22 20:17 - 2016-07-16 12:47 - 000000000 ___HD C:\Program Files\WindowsApps 2018-02-22 19:38 - 2016-08-31 12:39 - 000000000 ____D C:\Windows10Upgrade 2018-02-22 17:34 - 2016-09-07 00:56 - 000000000 ____D C:\Users\MSSQL$ADK 2018-02-22 17:34 - 2016-07-16 12:47 - 000000000 ____D C:\WINDOWS\system32\appraiser 2018-02-22 14:40 - 2016-09-09 15:13 - 000000000 ____D C:\Users\jean-\AppData\Local\Turbo View & Convert 2018-02-22 09:04 - 2016-09-07 12:41 - 000000000 ____D C:\Program Files\COMODO 2018-02-22 09:01 - 2016-09-07 12:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\COMODO 2018-02-22 08:00 - 2016-08-28 13:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo 2018-02-22 07:58 - 2016-08-28 13:24 - 000000000 ____D C:\Program Files (x86)\Ashampoo 2018-02-21 12:31 - 2016-08-31 15:21 - 000002561 _____ C:\WINDOWS\diagwrn.xml 2018-02-21 12:31 - 2016-08-31 15:21 - 000001908 _____ C:\WINDOWS\diagerr.xml 2018-02-20 17:11 - 2016-08-28 15:53 - 000000000 ____D C:\Program Files\Unlocker 2018-02-19 20:30 - 2016-08-28 11:43 - 000000000 ____D C:\Users\jean-\AppData\Local\VirtualStore 2018-02-19 17:34 - 2016-07-16 12:45 - 000000000 ____D C:\WINDOWS\INF 2018-02-19 10:21 - 2016-08-31 15:00 - 000000000 ____D C:\ProgramData\Package Cache 2018-02-19 10:21 - 2016-08-28 13:33 - 000000000 ____D C:\Users\Public\Documents\Wondershare 2018-02-19 10:20 - 2016-08-28 18:46 - 000000000 ____D C:\Program Files (x86)\Wondershare 2018-02-19 10:20 - 2016-08-28 18:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare 2018-02-19 06:42 - 2016-09-07 12:20 - 000000000 ____D C:\Program Files (x86)\Wise 2018-02-19 06:26 - 2016-09-02 15:10 - 000000000 ____D C:\Program Files (x86)\Reason 2018-02-18 19:52 - 2016-09-06 22:40 - 000000000 ____D C:\ProgramData\Temp 2018-02-17 21:22 - 2016-09-06 19:58 - 000000000 ____D C:\Users\jean-\AppData\Roaming\TeraCopy 2018-02-17 19:35 - 2016-09-07 13:31 - 000000000 ____D C:\Users\jean-\AppData\Roaming\uTorrent 2018-02-17 19:34 - 2016-09-09 11:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Paragon Migrate OS to SSD™ 4.0 2018-02-17 19:34 - 2016-09-02 14:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Condusiv Technologies 2018-02-17 19:34 - 2016-08-31 12:10 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IM-Magic Partition Resizer Free 2018-02-17 19:34 - 2016-08-28 18:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rebit Pro 2018-02-17 19:34 - 2016-08-28 15:53 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker 2018-02-17 16:32 - 2016-09-08 14:51 - 000000000 ____D C:\ProgramData\AomeiBR 2018-02-17 15:30 - 2016-09-09 15:12 - 000000000 ____D C:\Program Files (x86)\File Identifier 2018-02-17 15:09 - 2016-08-31 11:54 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Mozilla 2018-02-17 13:47 - 2016-09-04 08:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 2018-02-17 13:47 - 2016-08-28 13:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rebit 5 2018-02-17 10:36 - 2016-09-03 07:59 - 000000000 ____D C:\Program Files\Microsoft Silverlight 2018-02-17 10:36 - 2016-09-02 15:23 - 000000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2018-02-17 06:38 - 2016-08-31 12:06 - 000000000 ____D C:\WINDOWS\system32\MRT 2018-02-17 06:16 - 2016-08-31 12:06 - 130067560 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2018-02-17 06:14 - 2016-09-02 15:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2018-02-17 06:07 - 2016-09-07 00:54 - 002269648 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2018-02-17 05:56 - 2016-09-07 00:46 - 000000000 ____D C:\Program Files\Microsoft SQL Server 2018-02-17 05:56 - 2016-09-07 00:39 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server 2018-02-16 20:50 - 2016-08-28 16:04 - 000548000 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2018-02-16 20:26 - 2016-09-04 08:06 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Nero 2018-02-16 19:38 - 2016-09-07 12:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Video Downloader 2018-02-16 19:38 - 2016-09-06 19:50 - 000000000 ____D C:\Program Files\TeraCopy 2018-02-16 19:37 - 2016-09-02 15:22 - 000000000 ____D C:\Program Files (x86)\NCH Software 2018-02-16 19:30 - 2016-08-29 05:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Software 2018-02-16 19:30 - 2016-08-29 05:10 - 000000000 ____D C:\Program Files (x86)\EPSON Software 2018-02-16 19:04 - 2016-09-04 08:10 - 000000000 ____D C:\ProgramData\Nero 2018-02-16 19:03 - 2016-09-04 08:10 - 000000000 ____D C:\Program Files (x86)\Nero 2018-02-16 14:22 - 2016-09-02 15:12 - 000000000 ____D C:\ProgramData\Adobe 2018-02-16 14:21 - 2016-09-03 08:13 - 000000000 ____D C:\Users\jean-\AppData\Local\Adobe 2018-02-16 14:21 - 2016-08-28 11:43 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Adobe 2018-02-16 14:18 - 2016-09-02 15:10 - 000000000 ____D C:\Program Files (x86)\Adobe 2018-02-16 13:06 - 2016-08-29 05:52 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2018-02-16 05:35 - 2016-08-31 15:56 - 000000000 ___DC C:\WINDOWS\Panther 2018-02-15 21:08 - 2016-09-06 22:42 - 000000000 ____D C:\Users\jean-\AppData\Local\CyberLink 2018-02-15 19:24 - 2016-09-09 15:44 - 000000000 ____D C:\Users\jean-\AppData\LocalLow\Temp 2018-02-15 18:53 - 2016-09-07 12:24 - 000000000 ____D C:\Program Files\Supercopier 2018-02-15 18:53 - 2016-09-07 12:23 - 000000000 ____D C:\Program Files\Ultracopier 2018-02-15 18:53 - 2016-07-16 12:47 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2018-02-15 10:07 - 2016-09-03 14:37 - 000002684 _____ C:\WINDOWS\System32\Tasks\SoftwareUpdate Pro 2018-02-15 09:05 - 2016-09-09 11:53 - 000000000 ____D C:\Users\jean-\AppData\Local\Downloaded Installations 2018-02-15 09:02 - 2016-09-07 13:32 - 000000000 ____D C:\Users\jean-\AppData\LocalLow\uTorrent 2018-02-15 08:16 - 2016-09-07 13:47 - 000000000 ____D C:\Users\jean-\Documents\AoaoPhoto Digital Studio 2018-02-15 08:09 - 2016-09-07 13:45 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AoaoPhoto Digital Studio 2018-02-15 08:09 - 2016-09-07 13:45 - 000000000 ____D C:\Program Files (x86)\AoaoPhoto Digital Studio 2018-02-15 07:59 - 2016-09-07 13:32 - 000000878 _____ C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2018-02-14 23:32 - 2016-08-28 12:31 - 000000000 ____D C:\Users\jean-\AppData\Local\AMD 2018-02-14 22:33 - 2016-07-16 12:47 - 000000000 ____D C:\WINDOWS\Cursors 2018-02-14 22:20 - 2016-08-28 13:26 - 000000000 ____D C:\Users\jean-\AppData\Local\ashampoo 2018-02-14 22:02 - 2016-08-28 18:43 - 000000000 ____D C:\ProgramData\Wondershare 2018-02-14 21:56 - 2016-09-07 12:24 - 000000000 ____D C:\ProgramData\iSkysoft iMedia Converter Deluxe 2018-02-14 21:56 - 2016-09-07 12:24 - 000000000 ____D C:\ProgramData\iSkysoft 2018-02-14 21:56 - 2016-09-07 12:22 - 000000000 ____D C:\Users\Public\Documents\iSkysoft 2018-02-14 21:55 - 2016-09-07 12:24 - 000000000 ____D C:\Program Files (x86)\iSkysoft 2018-02-14 21:40 - 2016-09-07 14:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise JetSearch 2018-02-14 21:38 - 2016-08-28 15:54 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\KillCopy 2018-02-14 21:36 - 2016-08-28 13:45 - 000000000 ____D C:\ProgramData\DAEMON Tools Pro 2018-02-14 18:42 - 2016-09-06 15:06 - 000000000 ____D C:\WINDOWS\System32\Tasks\NCH Software ==================== Fichiers à la racine de certains dossiers ======= 2018-02-23 12:03 - 2018-02-23 12:04 - 004451976 _____ (SurfRight B.V.) C:\Users\jean-\hmpalert3.exe 2018-02-16 13:39 - 2018-02-16 13:39 - 003078528 _____ () C:\Users\jean-\ZHPCleaner.exe Certains fichiers dans TEMP: ==================== 2018-02-23 16:08 - 2016-08-20 07:03 - 001883784 _____ (Microsoft Corporation) C:\Users\jean-\AppData\Local\Temp\dllnt_dump.dll 2018-02-23 20:33 - 2018-02-23 20:34 - 018190581 _____ (TeamViewer GmbH) C:\Users\jean-\AppData\Local\Temp\rk_FB20.tmp.exe ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement ==================== BCD ================================ Gestionnaire de d�marrage du microprogramme ------------------------------------------- identificateur {fwbootmgr} displayorder {bootmgr} {7901a9d1-6d56-11e6-85ee-f83324fa3d7b} {7901a9b9-6d56-11e6-85ee-f83324fa3d7b} {2e39fdff-1587-11e8-b911-806e6f6e6963} {7901a9b7-6d56-11e6-85ee-f83324fa3d7b} {7901a9bd-6d56-11e6-85ee-f83324fa3d7b} {7901a9ce-6d56-11e6-85ee-f83324fa3d7b} {7901a9cf-6d56-11e6-85ee-f83324fa3d7b} {7901a9d0-6d56-11e6-85ee-f83324fa3d7b} {aa7fd2b7-127b-11e8-b8fe-806e6f6e6963} {dfc74ef9-12f1-11e8-b902-806e6f6e6963} {47052f47-18a1-11e8-b928-806e6f6e6963} {548cdcb3-18de-11e8-b92b-806e6f6e6963} {548cdcb4-18de-11e8-b92b-806e6f6e6963} {7901a9d2-6d56-11e6-85ee-f83324fa3d7b} {7901a9d3-6d56-11e6-85ee-f83324fa3d7b} {7901a9be-6d56-11e6-85ee-f83324fa3d7b} {7901a9cd-6d56-11e6-85ee-f83324fa3d7b} timeout 2 Gestionnaire de d�marrage Windows --------------------------------- identificateur {bootmgr} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\bootmgfw.efi description Windows Boot Manager locale fr-FR inherit {globalsettings} default {current} resumeobject {7901a9c9-6d56-11e6-85ee-f83324fa3d7b} displayorder {current} {b17757e5-b185-4a19-8fa5-98850aca85b6} {051e00a4-7609-42f5-a041-3792cd5917ad} toolsdisplayorder {memdiag} timeout 3 Application logicielle (101fffff) -------------------------------- identificateur {2e39fdff-1587-11e8-b911-806e6f6e6963} description UEFI: FixMeStick 8.07 Application logicielle (101fffff) -------------------------------- identificateur {47052f47-18a1-11e8-b928-806e6f6e6963} device partition=L: description UEFI: SanDisk Application logicielle (101fffff) -------------------------------- identificateur {548cdcb3-18de-11e8-b92b-806e6f6e6963} device partition=E: description UEFI: KingstonDataTraveler 3.0PMAP Application logicielle (101fffff) -------------------------------- identificateur {548cdcb4-18de-11e8-b92b-806e6f6e6963} description UEFI: FixMeStick 8.07 Application logicielle (101fffff) -------------------------------- identificateur {7901a9b7-6d56-11e6-85ee-f83324fa3d7b} description UEFI: TOSHIBA TransMemory 1.00 Application logicielle (101fffff) -------------------------------- identificateur {7901a9b9-6d56-11e6-85ee-f83324fa3d7b} description USB Floppy/CD Application logicielle (101fffff) -------------------------------- identificateur {7901a9bd-6d56-11e6-85ee-f83324fa3d7b} description UEFI: SanDisk Application logicielle (101fffff) -------------------------------- identificateur {7901a9be-6d56-11e6-85ee-f83324fa3d7b} description Atheros Boot Agent Application logicielle (101fffff) -------------------------------- identificateur {7901a9cd-6d56-11e6-85ee-f83324fa3d7b} description CD/DVD Drive Application logicielle (101fffff) -------------------------------- identificateur {7901a9ce-6d56-11e6-85ee-f83324fa3d7b} description USB Hard Drive Application logicielle (101fffff) -------------------------------- identificateur {7901a9cf-6d56-11e6-85ee-f83324fa3d7b} description UEFI: KingstonDataTraveler 2.01.00 Application logicielle (101fffff) -------------------------------- identificateur {7901a9d0-6d56-11e6-85ee-f83324fa3d7b} description UEFI: ZALMAN ZM-VE350 1060 Application logicielle (101fffff) -------------------------------- identificateur {7901a9d1-6d56-11e6-85ee-f83324fa3d7b} path \EFI\ubuntu\shimx64.efi description ubuntu Application logicielle (101fffff) -------------------------------- identificateur {7901a9d2-6d56-11e6-85ee-f83324fa3d7b} description USB Floppy/CD Application logicielle (101fffff) -------------------------------- identificateur {7901a9d3-6d56-11e6-85ee-f83324fa3d7b} description Hard Drive Application logicielle (101fffff) -------------------------------- identificateur {aa7fd2b7-127b-11e8-b8fe-806e6f6e6963} device partition=G: description UEFI: General USB Flash Disk 1.00 Application logicielle (101fffff) -------------------------------- identificateur {dfc74ef9-12f1-11e8-b902-806e6f6e6963} device unknown description UEFI: WD Elements 10A8 1042 Chargeur de d�marrage Windows ----------------------------- identificateur {051e00a4-7609-42f5-a041-3792cd5917ad} device ramdisk=[\Device\HarddiskVolume5]\sources\boot.wim,{e3824afe-2482-4392-8329-ef406fb9ce98} description Enter into AOMEI OneKey Recovery osdevice ramdisk=[\Device\HarddiskVolume5]\sources\boot.wim,{e3824afe-2482-4392-8329-ef406fb9ce98} systemroot \Windows detecthal Yes winpe Yes Chargeur de d�marrage Windows ----------------------------- identificateur {7901a9c2-6d56-11e6-85ee-f83324fa3d7b} device ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{7901a9c3-6d56-11e6-85ee-f83324fa3d7b} path \windows\system32\winload.efi description Windows Recovery Environment locale en-us inherit {bootloadersettings} displaymessage Recovery displaymessageoverride Recovery osdevice ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{7901a9c3-6d56-11e6-85ee-f83324fa3d7b} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Chargeur de d�marrage Windows ----------------------------- identificateur {7901a9c6-6d56-11e6-85ee-f83324fa3d7b} device ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{7901a9c7-6d56-11e6-85ee-f83324fa3d7b} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery displaymessageoverride Recovery osdevice ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{7901a9c7-6d56-11e6-85ee-f83324fa3d7b} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Chargeur de d�marrage Windows ----------------------------- identificateur {current} device partition=C: path \WINDOWS\system32\winload.efi description Windows 10 locale fr-FR inherit {bootloadersettings} recoverysequence {7901a9cb-6d56-11e6-85ee-f83324fa3d7b} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {7901a9c9-6d56-11e6-85ee-f83324fa3d7b} nx OptIn bootmenupolicy Standard Chargeur de d�marrage Windows ----------------------------- identificateur {7901a9cb-6d56-11e6-85ee-f83324fa3d7b} device ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{7901a9cc-6d56-11e6-85ee-f83324fa3d7b} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery displaymessageoverride Recovery osdevice ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{7901a9cc-6d56-11e6-85ee-f83324fa3d7b} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Chargeur de d�marrage Windows ----------------------------- identificateur {81618445-6d22-4807-8eb3-63a1e2c171ce} device ramdisk=[unknown]\Aomei\AomeiBoot.wim,{0ada04be-df6b-452a-942f-43ecbd31c8ac} description Aomei PE osdevice ramdisk=[unknown]\Aomei\AomeiBoot.wim,{0ada04be-df6b-452a-942f-43ecbd31c8ac} systemroot \Windows detecthal Yes winpe Yes Reprendre � partir de la mise en veille prolong�e ------------------------------------------------- identificateur {7901a9c4-6d56-11e6-85ee-f83324fa3d7b} device unknown path \Windows\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {7901a9c6-6d56-11e6-85ee-f83324fa3d7b} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice unknown filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Reprendre � partir de la mise en veille prolong�e ------------------------------------------------- identificateur {7901a9c9-6d56-11e6-85ee-f83324fa3d7b} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {7901a9cb-6d56-11e6-85ee-f83324fa3d7b} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Testeur de m�moire Windows -------------------------- identificateur {memdiag} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\memtest.efi description Diagnostics m�moire Windows locale fr-FR inherit {globalsettings} badmemoryaccess Yes Param�tres EMS -------------- identificateur {emssettings} bootems No Param�tres du d�bogueur ----------------------- identificateur {dbgsettings} debugtype Serial debugport 1 baudrate 115200 Erreurs de m�moire RAM ---------------------- identificateur {badmemory} Param�tres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} Param�tres du chargeur de d�marrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} Param�tres de l'hyperviseur ------------------- identificateur {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Param�tres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} Options de p�riph�rique ----------------------- identificateur {0ada04be-df6b-452a-942f-43ecbd31c8ac} ramdisksdidevice unknown ramdisksdipath \Aomei\AomeiBoot.sdi Options de p�riph�rique ----------------------- identificateur {7901a9c3-6d56-11e6-85ee-f83324fa3d7b} description Windows Recovery ramdisksdidevice unknown ramdisksdipath \Recovery\WindowsRE\boot.sdi Options de p�riph�rique ----------------------- identificateur {7901a9c7-6d56-11e6-85ee-f83324fa3d7b} description Windows Recovery ramdisksdidevice unknown ramdisksdipath \Recovery\WindowsRE\boot.sdi Options de p�riph�rique ----------------------- identificateur {7901a9c8-6d56-11e6-85ee-f83324fa3d7b} description Windows Setup ramdisksdidevice unknown ramdisksdipath \$WINDOWS.~BT\Sources\SafeOS\boot.sdi Options de p�riph�rique ----------------------- identificateur {7901a9cc-6d56-11e6-85ee-f83324fa3d7b} description Windows Recovery ramdisksdidevice unknown ramdisksdipath \Recovery\WindowsRE\boot.sdi Options de p�riph�rique ----------------------- identificateur {e3824afe-2482-4392-8329-ef406fb9ce98} ramdisksdidevice partition=\Device\HarddiskVolume5 ramdisksdipath \boot\boot.sdi LastRegBack: 2018-02-23 11:46 ==================== Fin de FRST.txt ============================