Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 11-10-2017 ([color=red]ATTENTION: ====> FRSTla version date de 663 jours et est peut-être périmée[/color]) Exécuté par Thierry (administrateur) sur TITI (05-08-2019 12:15:57) Exécuté depuis C:\Users\Thierry\Desktop\FRST-OlderVersion Profils chargés: Thierry & (Profils disponibles: Thierry) Platform: Windows 10 Home Version 1803 180410-1804 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: Opera) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) Impossible d'accéder au processus -> Registry (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe () C:\Windows\System32\igfxTray.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe () C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe (Nuance Communications, Inc.) C:\Program Files (x86)\Common Files\Nuance\dgnsvc.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (AVAST Software) C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupSvc.exe (Intel Corporation) C:\Windows\System32\ibtsiva.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (NeToSoft) C:\ProgramData\playersclub\LaunchServ.exe (McAfee, Inc.) C:\Program Files\McAfee\WebAdvisor\servicehost.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (AVAST Software) C:\Program Files\AVAST Software\SecureLine\VpnSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe () C:\ProgramData\playersclub\systemSpawn.exe (McAfee, Inc.) C:\Program Files\McAfee\WebAdvisor\uihost.exe (Nuance Communications, Inc.) C:\Program Files (x86)\Common Files\Nuance\loggerservice.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.50.38.0_x64__kzf8qxf38zg5c\SkypeApp.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.50.38.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe (Logitech, Inc.) C:\Program Files\Logitech\LogiOptions\LogiOptions.exe () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19031.11411.0_x64__8wekyb3d8bbwe\Video.UI.exe (Flexera Software LLC.) C:\ProgramData\FLEXnet\Connect\11\agent.exe (Flexera Software LLC.) C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe (Incendo Technology) C:\Program Files (x86)\Vectir\Vectir.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Logitech, Inc.) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.exe (ultracopier.first-world.info) C:\Program Files (x86)\Ultracopier\ultracopier.exe (Logitech, Inc.) C:\ProgramData\Logishrd\LogiOptions\Software\Current\laclient\laclient.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.50.38.0_x64__kzf8qxf38zg5c\SkypeBridge\SkypeBridge.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (Logitech) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOverlay.exe (hxxp://www.emule-project.net) C:\Program Files (x86)\eMule\emule.exe (AVAST Software) C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe (SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (AVAST Software) C:\Program Files\AVAST Software\SecureLine\Vpn.exe (WinZip Computing LP) C:\Program Files (x86)\WinZip\WZQKPICK.EXE (SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (NewSoft Technology Corporation) C:\Program Files (x86)\NewSoft\Presto! PageManager 9.32\PMSpeed.exe (SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Seiko Epson Corporation) C:\Program Files (x86)\epson\MyEpson Portal\mepService.exe (Seiko Epson Corporation) C:\Program Files (x86)\epson\MyEpson Portal\mep.exe (Microsoft Corporation) C:\Windows\System32\SgrmBroker.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19051.16210.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11901.20184.0_x64__8wekyb3d8bbwe\HxCalendarAppImm.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11901.20184.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Corporation) C:\Windows\System32\OpenWith.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11906.1001.24.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe () C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe () C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe (Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\TibMounter\tib_mounter_monitor.exe () C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe () C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe () C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe (Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe () C:\Program Files\WindowsApps\26720RandomSaladGamesLLC.HeartsDeluxe_6.4.16.0_x64__kx24dqmazqk8j\HeartsDeluxe.UWP.exe (Microsoft Corporation) C:\Windows\System32\GameBarPresenceWriter.exe (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Corporation) C:\Program Files\rempl\sedsvc.exe (Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\TibMounter64\tib_mounter_service.exe (Opera Software) C:\Program Files (x86)\Opera\62.0.3331.99\opera.exe (Opera Software) C:\Program Files (x86)\Opera\62.0.3331.99\opera_crashreporter.exe (Opera Software) C:\Program Files (x86)\Opera\62.0.3331.99\opera.exe (Opera Software) C:\Program Files (x86)\Opera\62.0.3331.99\opera.exe (Opera Software) C:\Program Files (x86)\Opera\62.0.3331.99\opera.exe (Opera Software) C:\Program Files (x86)\Opera\62.0.3331.99\opera.exe (Opera Software) C:\Program Files (x86)\Opera\62.0.3331.99\opera.exe (Opera Software) C:\Program Files (x86)\Opera\62.0.3331.99\opera.exe (Opera Software) C:\Program Files (x86)\Opera\62.0.3331.99\opera.exe (Opera Software) C:\Program Files (x86)\Opera\62.0.3331.99\opera.exe (Opera Software) C:\Program Files (x86)\Opera\62.0.3331.99\opera.exe (Opera Software) C:\Program Files (x86)\Opera\62.0.3331.99\opera.exe (Opera Software) C:\Program Files (x86)\Opera\62.0.3331.99\opera.exe (Opera Software) C:\Program Files (x86)\Opera\62.0.3331.99\opera.exe (Opera Software) C:\Program Files (x86)\Opera\62.0.3331.99\opera.exe (Opera Software) C:\Program Files (x86)\Opera\62.0.3331.99\opera.exe (Opera Software) C:\Program Files (x86)\Opera\62.0.3331.99\opera.exe (Opera Software) C:\Program Files (x86)\Opera\62.0.3331.99\opera.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Corporation) HKLM\...\Run: [LogiOptions] => C:\Program Files\Logitech\LogiOptions\LogiOptions.exe [2142328 2017-12-18] (Logitech, Inc.) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [269192 2019-06-26] (AVAST Software) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322120 2017-04-19] (Intel Corporation) HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [752168 2019-03-25] () HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1087184 2016-01-20] (SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\\isuspm.exe [2075480 2013-06-24] (Flexera Software LLC.) HKLM-x32\...\Run: [DNS7reminder] => "C:\Program Files (x86)\Nuance\NaturallySpeaking13\Ereg\Ereg.exe" -r "C:\ProgramData\Nuance\NaturallySpeaking13\Ereg.ini" HKLM-x32\...\Run: [FUFAXRCV] => C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe [650496 2016-01-19] (SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [PMSpeed9.32.10] => C:\Program Files (x86)\NewSoft\Presto! PageManager 9.32\PMSpeed.EXE [125248 2013-09-26] (NewSoft Technology Corporation) HKLM-x32\...\Run: [FUFAXSTM] => C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe [863488 2016-01-19] (SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [OnScreen Control] => C:\Program Files (x86)\LG Electronics\OnScreen Control\bin\OnScreenStartUpApp.exe [1785328 2015-12-14] (TODO: ) HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4174464 2017-05-23] (Safer-Networking Ltd.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [644552 2019-07-04] (Oracle Corporation) HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [4971688 2019-03-25] () HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\tib_mounter_monitor.exe [441448 2019-03-25] (Acronis International GmbH) HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation) HKU\S-1-5-19\...\Winlogon: [Shell] [[%%INSTALLTIME%%]] <==== ATTENTION HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-07312019181924603\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation) HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-07312019181924603\...\Winlogon: [Shell] [[%%INSTALLTIME%%]] <==== ATTENTION HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation) HKU\S-1-5-20\...\Winlogon: [Shell] [[%%INSTALLTIME%%]] <==== ATTENTION HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-07312019181924650\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation) HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-07312019181924650\...\Winlogon: [Shell] [[%%INSTALLTIME%%]] <==== ATTENTION HKU\S-1-5-21-327278073-2271488925-2196082338-1001\...\Run: [Chromium] => c:\users\thierry\appdata\local\chromium\application\chrome.exe [1068544 2016-03-18] (The Chromium Authors) HKU\S-1-5-21-327278073-2271488925-2196082338-1001\...\Run: [PeerBlock] => C:\Program Files\PeerBlock\peerblock.exe [2513992 2014-01-14] (PeerBlock, LLC) HKU\S-1-5-21-327278073-2271488925-2196082338-1001\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [2075480 2013-06-24] (Flexera Software LLC.) HKU\S-1-5-21-327278073-2271488925-2196082338-1001\...\Run: [Vectir] => C:\Program Files (x86)\Vectir\Vectir.exe [1959608 2017-02-05] (Incendo Technology) HKU\S-1-5-21-327278073-2271488925-2196082338-1001\...\Run: [GarminExpressTrayApp] => C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [1421224 2017-05-18] (Garmin Ltd. or its subsidiaries) HKU\S-1-5-21-327278073-2271488925-2196082338-1001\...\Run: [ultracopier] => C:\Program Files (x86)\Ultracopier\ultracopier.exe [1403392 2016-01-02] (ultracopier.first-world.info) HKU\S-1-5-21-327278073-2271488925-2196082338-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22691064 2019-06-04] (Piriform Software Ltd) HKU\S-1-5-21-327278073-2271488925-2196082338-1001\...\Run: [eMuleAutoStart] => C:\Program Files (x86)\eMule\emule.exe [5758976 2010-04-07] (hxxp://www.emule-project.net) HKU\S-1-5-21-327278073-2271488925-2196082338-1001\...\Winlogon: [Shell] [[%%INSTALLTIME%%]] <==== ATTENTION HKU\S-1-5-21-327278073-2271488925-2196082338-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-07312019181924681\...\Run: [Chromium] => c:\users\thierry\appdata\local\chromium\application\chrome.exe [1068544 2016-03-18] (The Chromium Authors) HKU\S-1-5-21-327278073-2271488925-2196082338-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-07312019181924681\...\Run: [PeerBlock] => C:\Program Files\PeerBlock\peerblock.exe [2513992 2014-01-14] (PeerBlock, LLC) HKU\S-1-5-21-327278073-2271488925-2196082338-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-07312019181924681\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [2075480 2013-06-24] (Flexera Software LLC.) HKU\S-1-5-21-327278073-2271488925-2196082338-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-07312019181924681\...\Run: [Vectir] => C:\Program Files (x86)\Vectir\Vectir.exe [1959608 2017-02-05] (Incendo Technology) HKU\S-1-5-21-327278073-2271488925-2196082338-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-07312019181924681\...\Run: [GarminExpressTrayApp] => C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [1421224 2017-05-18] (Garmin Ltd. or its subsidiaries) HKU\S-1-5-21-327278073-2271488925-2196082338-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-07312019181924681\...\Run: [ultracopier] => C:\Program Files (x86)\Ultracopier\ultracopier.exe [1403392 2016-01-02] (ultracopier.first-world.info) HKU\S-1-5-21-327278073-2271488925-2196082338-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-07312019181924681\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22691064 2019-06-04] (Piriform Software Ltd) HKU\S-1-5-21-327278073-2271488925-2196082338-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-07312019181924681\...\Run: [eMuleAutoStart] => C:\Program Files (x86)\eMule\emule.exe [5758976 2010-04-07] (hxxp://www.emule-project.net) HKU\S-1-5-21-327278073-2271488925-2196082338-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-07312019181924681\...\RunOnce: [NetworkResetPostReboot] => netsh.exe trace postreset HKU\S-1-5-21-327278073-2271488925-2196082338-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-07312019181924681\...\Winlogon: [Shell] [[%%INSTALLTIME%%]] <==== ATTENTION Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast Cleanup Premium.lnk [2018-05-15] ShortcutTarget: Avast Cleanup Premium.lnk -> C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe (AVAST Software) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast SecureLine VPN.lnk [2019-05-27] ShortcutTarget: Avast SecureLine VPN.lnk -> C:\Program Files\AVAST Software\SecureLine\Vpn.exe (AVAST Software) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WinZip Quick Pick.lnk [2018-12-18] ShortcutTarget: WinZip Quick Pick.lnk -> C:\Program Files (x86)\WinZip\WZQKPICK.EXE (WinZip Computing LP) BootExecute: autocheck autochk * sdnclean64.exe GroupPolicy: Restriction <==== ATTENTION ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt Tcpip\Parameters: [DhcpNameServer] 212.27.40.241 212.27.40.240 Tcpip\..\Interfaces\{0cac76e3-5c3b-4eaf-bf1c-c575a681d9be}: [DhcpNameServer] 212.27.40.241 212.27.40.240 Tcpip\..\Interfaces\{476c1081-e1c4-4bcc-84ea-0756cfd2a62e}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{63d92278-625e-4a8e-aa93-0d4f477f4fa2}: [DhcpNameServer] 192.168.137.129 Tcpip\..\Interfaces\{78194770-23f7-43b9-9bee-eca6f2dfe297}: [DhcpNameServer] 212.27.40.241 212.27.40.240 Tcpip\..\Interfaces\{ad2c77e0-fbb5-4655-9cb9-31039406cbdd}: [DhcpNameServer] 192.168.0.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKU\S-1-5-21-327278073-2271488925-2196082338-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.fr-gogo.com/ HKU\S-1-5-21-327278073-2271488925-2196082338-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-07312019181924681\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.fr-gogo.com/ SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-327278073-2271488925-2196082338-1001 -> DefaultScope {FBD9D181-CB2B-411A-873A-249688F1DAAB} URL = hxxp://www.fr-gogo.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-327278073-2271488925-2196082338-1001 -> {68F31152-71CD-4167-AF21-6CE79FCDB9B2} URL = hxxps://fr.search.yahoo.com/search?p={searchTerms}&intl=fr&fr=yset_ie_syc_oracle&type=orcl_default&partnerexternal-oracle=external-oracle SearchScopes: HKU\S-1-5-21-327278073-2271488925-2196082338-1001 -> {9CCA2295-F1DB-4867-901F-2AE0FDCC7C92} URL = hxxp://www.recherche-fr.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-327278073-2271488925-2196082338-1001 -> {FBD9D181-CB2B-411A-873A-249688F1DAAB} URL = hxxp://www.fr-gogo.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-327278073-2271488925-2196082338-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-07312019181924681 -> DefaultScope {FBD9D181-CB2B-411A-873A-249688F1DAAB} URL = hxxp://www.fr-gogo.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-327278073-2271488925-2196082338-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-07312019181924681 -> {68F31152-71CD-4167-AF21-6CE79FCDB9B2} URL = hxxps://fr.search.yahoo.com/search?p={searchTerms}&intl=fr&fr=yset_ie_syc_oracle&type=orcl_default&partnerexternal-oracle=external-oracle SearchScopes: HKU\S-1-5-21-327278073-2271488925-2196082338-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-07312019181924681 -> {9CCA2295-F1DB-4867-901F-2AE0FDCC7C92} URL = hxxp://www.recherche-fr.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-327278073-2271488925-2196082338-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-07312019181924681 -> {FBD9D181-CB2B-411A-873A-249688F1DAAB} URL = hxxp://www.fr-gogo.com/search?q={searchTerms} BHO: Dragon Web Extension For Internet Explorer -> {609C0837-8DD3-4F9B-AAC5-446F36BC0353} -> C:\Program Files (x86)\Nuance\NaturallySpeaking13\Program\x64\dgnriaie_x64.dll [2014-11-04] (Nuance Communications, Inc.) BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2019-06-29] (McAfee, Inc.) BHO-x32: Dragon Web Extension For Internet Explorer -> {609C0837-8DD3-4F9B-AAC5-446F36BC0353} -> C:\Program Files (x86)\Nuance\NaturallySpeaking13\Program\dgnriaie.dll [2014-11-04] (Nuance Communications, Inc.) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\ssv.dll [2019-07-19] (Oracle Corporation) BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2019-06-29] (McAfee, Inc.) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\jp2ssv.dll [2019-07-19] (Oracle Corporation) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - Pas de fichier Edge: ====== Edge HomeButtonPage: HKU\S-1-5-21-327278073-2271488925-2196082338-1001 -> hxxp://www.fr-gogo.com/ Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions [2018-04-12] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions [2018-04-12] FireFox: ======== FF ProfilePath: C:\Users\Thierry\AppData\Roaming\Mozilla\Firefox\Profiles\ps5ru8H6.default [2019-08-05] FF Homepage: Mozilla\Firefox\Profiles\ps5ru8H6.default -> hxxps://www.malwarebytes.org/restorebrowser/ FF Homepage: Mozilla\Firefox\Profiles\ps5ru8H6.default -> hxxp://www.recherche-fr.com/ FF Homepage: Mozilla\Firefox\Profiles\ps5ru8H6.default -> hxxp://www.fr-gogo.com/ FF DefaultSearchEngine: Mozilla\Firefox\Profiles\ps5ru8H6.default -> Bing Search Engine FF SelectedSearchEngine: Mozilla\Firefox\Profiles\ps5ru8H6.default -> Bing Search Engine FF Extension: (Avira Browser Safety) - C:\Users\Thierry\AppData\Roaming\Mozilla\Firefox\Profiles\ps5ru8H6.default\Extensions\abs@avira.com [2017-01-20] FF Extension: (Avast SafePrice) - C:\Users\Thierry\AppData\Roaming\Mozilla\Firefox\Profiles\ps5ru8H6.default\Extensions\sp@avast.com.xpi [2018-05-15] FF Extension: (Avast Online Security) - C:\Users\Thierry\AppData\Roaming\Mozilla\Firefox\Profiles\ps5ru8H6.default\Extensions\wrc@avast.com.xpi [2018-06-21] FF Extension: (Pas de nom) - C:\Program Files (x86)\McAfee\SiteAdvisor\e10ssaffplg.xpi [non trouvé(e)] FF SearchPlugin: C:\Users\Thierry\AppData\Roaming\Mozilla\Firefox\Profiles\ps5ru8H6.default\searchplugins\bing-lavasoft-ff59.xml [2019-06-04] FF Extension: (Firefox Monitor) - C:\Program Files\Mozilla Firefox\browser\features\fxmonitor@mozilla.org.xpi [2019-06-13] [non signé] FF Extension: (WebCompat Reporter) - C:\Program Files\Mozilla Firefox\browser\features\webcompat-reporter@mozilla.org.xpi [2019-06-13] [non signé] FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2019-06-29] FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi FF Plugin: nuance.com/DgnRia2_x86_64 -> C:\Program Files (x86)\Nuance\NaturallySpeaking13\Program\x64\npDgnRia2_x64.dll [2014-11-04] (Nuance Communications, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\dtplugin\npDeployJava1.dll [2019-07-19] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.221.2 -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\plugin2\npjp2.dll [2019-07-19] (Oracle Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google LLC) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google LLC) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\adslTV\VLC\npvlc.dll [2019-06-11] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\adslTV\VLC\npvlc.dll [2019-06-11] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.8 -> C:\Program Files (x86)\adslTV\VLC\npvlc.dll [2019-06-11] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.0 -> C:\Program Files (x86)\adslTV\VLC\npvlc.dll [2019-06-11] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.1 -> C:\Program Files (x86)\adslTV\VLC\npvlc.dll [2019-06-11] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.2 -> C:\Program Files (x86)\adslTV\VLC\npvlc.dll [2019-06-11] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.3 -> C:\Program Files (x86)\adslTV\VLC\npvlc.dll [2019-06-11] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.4 -> C:\Program Files (x86)\adslTV\VLC\npvlc.dll [2019-06-11] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\adslTV\VLC\npvlc.dll [2019-06-11] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.7 -> C:\Program Files (x86)\adslTV\VLC\npvlc.dll [2019-06-11] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files (x86)\adslTV\VLC\npvlc.dll [2019-06-11] (VideoLAN) FF Plugin-x32: nuance.com/DgnRia2 -> C:\Program Files (x86)\Nuance\NaturallySpeaking13\Program\npDgnRia2.dll [2014-11-04] (Nuance Communications, Inc.) Chrome: ======= CHR DefaultProfile: Default CHR HomePage: Default -> hxxp://www.fr-gogo.com/ CHR StartupUrls: Default -> "hxxps://www.google.fr/" CHR NewTab: Default -> "active": false, "entry": "chrome-extension://fdbpcigaolookbahgdofnimidinicfid/newtab.html" CHR DefaultSearchURL: Default -> hxxps://fr.search.yahoo.com/search?fr=mcafee&type=E210FR91082G0&p={searchTerms} CHR DefaultSearchKeyword: Default -> mcafee CHR Profile: C:\Users\Thierry\AppData\Local\Google\Chrome\User Data\Default [2019-07-19] CHR Extension: (Slides) - C:\Users\Thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-14] CHR Extension: (Docs) - C:\Users\Thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-14] CHR Extension: (Google Drive) - C:\Users\Thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-10-20] CHR Extension: (YouTube) - C:\Users\Thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-02-11] CHR Extension: (Adaware Ad Block) - C:\Users\Thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmllgdnjnkbapbchnebiedipojhmnjej [2018-06-22] CHR Extension: (Avast SafePrice | Comparaison, offres, coupons) - C:\Users\Thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2019-06-27] CHR Extension: (Yahoo Partner) - C:\Users\Thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdbpcigaolookbahgdofnimidinicfid [2019-06-27] CHR Extension: (Sheets) - C:\Users\Thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-14] CHR Extension: (McAfee® WebAdvisor) - C:\Users\Thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2019-06-27] CHR Extension: (Protection Web Avira) - C:\Users\Thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2019-07-05] CHR Extension: (Google Docs hors connexion) - C:\Users\Thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-23] CHR Extension: (AdBlock) - C:\Users\Thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-06-27] CHR Extension: (Avast Online Security) - C:\Users\Thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2019-07-05] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-09] CHR Extension: (Gmail) - C:\Users\Thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-06-27] CHR Extension: (Chrome Media Router) - C:\Users\Thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-06-27] CHR Profile: C:\Users\Thierry\AppData\Local\Google\Chrome\User Data\Guest Profile [2019-07-19] CHR Profile: C:\Users\Thierry\AppData\Local\Google\Chrome\User Data\System Profile [2019-07-19] CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [fdbpcigaolookbahgdofnimidinicfid] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx Opera: ======= OPR Extension: (Avira Browser Safety) - C:\Users\Thierry\AppData\Roaming\Opera Software\Opera Stable\Extensions\dalelnnofafalcmkmnhdbigbjjkloabo [2019-07-14] OPR Extension: (Amazon Assistant for Opera) - C:\Users\Thierry\AppData\Roaming\Opera Software\Opera Stable\Extensions\mmmbddcnnndpbdflpccgcknaaabgldak [2019-07-14] ==================== Services (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AcronisActiveProtectionService; C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe [4383760 2019-03-25] (Acronis International GmbH) R2 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1155344 2019-03-25] () R2 afcdpsrv; C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [6341824 2019-08-03] () R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2018-07-05] (Apple Inc.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [936728 2013-07-04] () R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6797008 2019-06-26] (AVAST Software) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [414976 2019-06-26] (AVAST Software) R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [423288 2019-06-26] (AVAST Software) S3 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2019-06-26] (AVAST Software) S3 BcastDVRUserService; C:\WINDOWS\System32\BcastDVRUserService.dll [1364992 2019-06-07] (Microsoft Corporation) S3 BcastDVRUserService_3ad9b; C:\WINDOWS\system32\svchost.exe [85472 2019-01-09] (Microsoft Corporation) <==== ATTENTION (pas de ServiceDLL) S3 BcastDVRUserService_3ad9b; C:\WINDOWS\SysWOW64\svchost.exe [71456 2019-01-09] (Microsoft Corporation) <==== ATTENTION (pas de ServiceDLL) S3 BluetoothUserService; C:\WINDOWS\System32\Microsoft.Bluetooth.UserService.dll [464384 2018-04-12] (Microsoft Corporation) S3 BluetoothUserService_3ad9b; C:\WINDOWS\system32\svchost.exe [85472 2019-01-09] (Microsoft Corporation) <==== ATTENTION (pas de ServiceDLL) S3 BluetoothUserService_3ad9b; C:\WINDOWS\SysWOW64\svchost.exe [71456 2019-01-09] (Microsoft Corporation) <==== ATTENTION (pas de ServiceDLL) R3 BTAGService; C:\WINDOWS\System32\BTAGService.dll [514048 2018-11-09] (Microsoft Corporation) R3 BthAvctpSvc; C:\WINDOWS\System32\BthAvctpSvc.dll [399872 2018-11-09] (Microsoft Corporation) R2 CleanupPSvc; C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupSvc.exe [10287216 2019-07-25] (AVAST Software) S3 DevicePickerUserSvc; C:\WINDOWS\System32\Windows.Devices.Picker.dll [400896 2018-04-12] (Microsoft Corporation) S3 DevicePickerUserSvc; C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll [312832 2018-04-12] (Microsoft Corporation) R2 DragonLoggerService; C:\Program Files (x86)\Common Files\Nuance\loggerservice.exe [151616 2014-11-04] (Nuance Communications, Inc.) R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [144560 2012-05-17] (Seiko Epson Corporation) R2 EPSON_PM_RPCV4_06; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE [152640 2013-04-15] (SEIKO EPSON CORPORATION) S3 GoogleChromeElevationService; C:\Program Files (x86)\Google\Chrome\Application\75.0.3770.142\elevation_service.exe [1098224 2019-07-13] (Google LLC) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18504 2017-04-19] (Intel Corporation) R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [353768 2018-05-03] (Intel Corporation) S3 LxpSvc; C:\WINDOWS\System32\LanguageOverlayServer.dll [199680 2018-04-12] (Microsoft Corporation) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6744288 2019-06-26] (Malwarebytes) R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [905336 2019-06-29] (McAfee, Inc.) R2 mmsminisrv; C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe [4808088 2019-03-25] (Acronis International GmbH) S3 mobile_backup_server; C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe [3004128 2019-03-25] (Acronis International GmbH) S3 mobile_backup_status_server; C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe [1774784 2019-03-25] () R2 MyEpson Portal Service; C:\Program Files (x86)\EPSON\MyEpson Portal\mepService.exe [714712 2017-06-28] (Seiko Epson Corporation) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268704 2016-12-27] () R2 player; C:\ProgramData\playersclub\LaunchServ.exe [69632 2013-08-07] (NeToSoft) [Fichier non signé] R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1776864 2017-05-23] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2131760 2017-05-23] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [233936 2017-05-23] (Safer-Networking Ltd.) R2 SecureLine; C:\Program Files\AVAST Software\SecureLine\VpnSvc.exe [7343496 2019-07-19] (AVAST Software) R2 sedsvc; C:\Program Files\rempl\sedsvc.exe [357896 2019-07-30] (Microsoft Corporation) R2 SgrmBroker; C:\WINDOWS\system32\SgrmBroker.exe [163336 2018-04-12] (Microsoft Corporation) S4 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [495616 2018-03-10] () R2 syncagentsrv; C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe [7182560 2019-03-25] () S3 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10351856 2016-12-15] (TeamViewer GmbH) S3 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10351856 2016-12-15] (TeamViewer GmbH) R3 Tib Mounter Service; C:\Program Files (x86)\Common Files\Acronis\TibMounter64\tib_mounter_service.exe [7099408 2019-03-25] (Acronis International GmbH) S4 tzautoupdate; C:\WINDOWS\SysWOW64\tzautoupdate.dll [72192 2018-04-12] (Microsoft Corporation) S3 VacSvc; C:\WINDOWS\System32\vac.dll [411256 2018-04-12] (Microsoft Corporation) S3 WaaSMedicSvc; C:\WINDOWS\System32\WaaSMedicSvc.dll [392704 2019-01-09] (Microsoft Corporation) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\NisSrv.exe [2433136 2019-06-25] (Microsoft Corporation) <==== ATTENTION S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\MsMpEng.exe [109896 2019-06-25] (Microsoft Corporation) <==== ATTENTION S3 wisvc; C:\WINDOWS\SysWOW64\flightsettings.dll [729088 2018-06-08] (Microsoft Corporation) S3 WpcMonSvc; C:\WINDOWS\System32\WpcDesktopMonSvc.dll [1456640 2018-05-20] (Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3732896 2016-12-27] (Intel® Corporation) R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X] ===================== Pilotes (Avec liste blanche) ====================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R1 afunix; C:\WINDOWS\system32\drivers\afunix.sys [39424 2018-04-12] (Microsoft Corporation) R1 afunix; C:\Windows\SysWOW64\drivers\afunix.sys [29696 2018-04-12] (Microsoft Corporation) S3 ampa; C:\WINDOWS\system32\ampa.sys [15288 2011-12-26] () [Fichier non signé] S3 ampa; C:\WINDOWS\SysWOW64\ampa.sys [12728 2011-12-26] () [Fichier non signé] R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2013-07-04] () R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [209256 2019-06-26] (AVAST Software) R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [263224 2019-06-26] (AVAST Software) R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [206056 2019-06-26] (AVAST Software) R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [61688 2019-06-26] (AVAST Software) R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [15488 2019-01-30] (AVAST Software) R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42504 2019-06-26] (AVAST Software) R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [168896 2019-07-31] (AVAST Software) R1 aswNetSec; C:\WINDOWS\System32\drivers\aswNetSec.sys [549416 2019-06-26] (AVAST Software) R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [112520 2019-06-26] (AVAST Software) R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [88160 2019-06-26] (AVAST Software) R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [1030784 2019-07-31] (AVAST Software) R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [477288 2019-06-26] (AVAST Software) R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [225816 2019-06-26] (AVAST Software) S3 aswTap; C:\WINDOWS\System32\drivers\aswTap.sys [53904 2017-03-16] (The OpenVPN Project) R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [387896 2019-07-25] (AVAST Software) S3 bindflt; C:\WINDOWS\system32\drivers\bindflt.sys [92704 2019-01-09] (Microsoft Corporation) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd.) S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2017-02-09] (Disc Soft Ltd) S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2017-02-09] (Disc Soft Ltd) R2 file_protector; C:\WINDOWS\System32\DRIVERS\file_protector.sys [667144 2019-08-03] (Acronis International GmbH) R0 file_tracker; C:\WINDOWS\System32\DRIVERS\file_tracker.sys [390592 2019-08-03] (Acronis International GmbH) S4 hvcrash; C:\WINDOWS\System32\drivers\hvcrash.sys [33184 2018-04-12] (Microsoft Corporation) S0 iaStorAVC; C:\WINDOWS\System32\drivers\iaStorAVC.sys [885144 2018-04-12] (Intel Corporation) R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [136200 2017-11-17] (Intel Corporation) S0 ItSas35i; C:\WINDOWS\System32\drivers\ItSas35i.sys [145816 2018-04-12] (Avago Technologies) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-06-26] (Malwarebytes) R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [224408 2019-07-31] (Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [275232 2019-07-31] (Malwarebytes) S0 megasas35i; C:\WINDOWS\System32\drivers\megasas35i.sys [82328 2018-04-12] (Avago Technologies) S3 mfesapsn; C:\Program Files\McAfee\WebAdvisor\mfesapsn.sys [111976 2018-12-11] (McAfee, Inc.) R3 Microsoft_Bluetooth_AvrcpTransport; C:\WINDOWS\system32\DRIVERS\Microsoft.Bluetooth.AvrcpTransport.sys [46592 2018-04-12] (Microsoft Corporation) R3 Netwtw06; C:\WINDOWS\System32\drivers\Netwtw06.sys [8742976 2018-03-22] (Intel Corporation) S3 nvdimm; C:\WINDOWS\System32\drivers\nvdimm.sys [104448 2018-04-12] (Microsoft Corporation) S3 pbfilter; C:\Program Files\PeerBlock\pbfilter.sys [22600 2014-01-14] () S3 ptun0901; C:\WINDOWS\System32\drivers\ptun0901.sys [27136 2014-08-08] (The OpenVPN Project) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [943112 2000-01-01] (Realtek ) R0 SgrmAgent; C:\WINDOWS\System32\drivers\SgrmAgent.sys [63896 2018-04-12] (Microsoft Corporation) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd.) S3 tib; C:\WINDOWS\system32\DRIVERS\tib.sys [885880 2019-08-03] (Acronis International GmbH) R2 tib_mounter; C:\WINDOWS\system32\DRIVERS\tib_mounter.sys [171976 2019-08-03] (Acronis International GmbH) S3 tnd; C:\WINDOWS\system32\DRIVERS\tnd.sys [693768 2019-08-03] (Acronis International GmbH) U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] () S3 usbrndis6; C:\WINDOWS\System32\drivers\usb80236.sys [22016 2018-04-12] (Microsoft Corporation) R2 virtual_file; C:\WINDOWS\System32\DRIVERS\virtual_file.sys [331976 2019-08-03] (Acronis International GmbH) R0 volume_tracker; C:\WINDOWS\System32\DRIVERS\volume_tracker.sys [243472 2019-08-03] (Acronis International GmbH) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [47496 2019-06-25] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [337632 2019-06-25] (Microsoft Corporation) S3 WdmCompanionFilter; C:\WINDOWS\System32\drivers\WdmCompanionFilter.sys [21408 2018-04-12] (Microsoft Corporation) S3 wdm_usb; C:\WINDOWS\system32\DRIVERS\usb2ser.sys [151184 2016-07-15] (MBB) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [53984 2019-06-25] (Microsoft Corporation) S3 SWDUMon; \SystemRoot\system32\DRIVERS\SWDUMon.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) NETSVC: LxpSvc -> C:\Windows\System32\LanguageOverlayServer.dll (Microsoft Corporation) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2019-08-04 11:00 - 2019-08-04 11:00 - 000001275 _____ C:\Users\Thierry\AppData\Roaming\SAS7_000.DAT 2019-08-03 12:12 - 2019-08-03 12:12 - 000000000 ____D C:\Users\Thierry\AppData\Roaming\Acronis 2019-08-03 11:57 - 2019-08-03 11:57 - 000885880 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\tib.sys 2019-08-03 11:57 - 2019-08-03 11:57 - 000693768 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\tnd.sys 2019-08-03 11:57 - 2019-08-03 11:57 - 000667144 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\file_protector.sys 2019-08-03 11:57 - 2019-08-03 11:57 - 000390592 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\file_tracker.sys 2019-08-03 11:57 - 2019-08-03 11:57 - 000371848 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\snapman.sys 2019-08-03 11:57 - 2019-08-03 11:57 - 000331976 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\virtual_file.sys 2019-08-03 11:57 - 2019-08-03 11:57 - 000243472 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\volume_tracker.sys 2019-08-03 11:57 - 2019-08-03 11:57 - 000182832 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\fltsrv.sys 2019-08-03 11:57 - 2019-08-03 11:57 - 000171976 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\tib_mounter.sys 2019-08-03 11:57 - 2019-08-03 11:57 - 000001358 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis True Image.lnk 2019-08-03 11:57 - 2019-08-03 11:57 - 000001346 _____ C:\Users\Public\Desktop\Acronis True Image.lnk 2019-08-03 11:57 - 2019-08-03 11:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis 2019-08-03 11:57 - 2019-08-03 11:57 - 000000000 ____D C:\ProgramData\Acronis Mobile Backup Data 2019-08-03 11:57 - 2019-08-03 11:57 - 000000000 ____D C:\Program Files (x86)\Acronis 2019-08-03 11:49 - 2019-08-03 14:25 - 000000000 ____D C:\ProgramData\Acronis 2019-08-03 11:48 - 2019-08-03 11:49 - 008105136 _____ C:\Users\Thierry\Downloads\AcronisTrueImage2019_web.exe 2019-08-01 12:15 - 2019-08-01 12:15 - 000414511 _____ C:\Users\Thierry\Downloads\DA-70544_manual_english_20110526.pdf 2019-08-01 11:43 - 2019-08-01 11:43 - 000201869 _____ C:\Users\Thierry\Downloads\img20190801_11430604.pdf 2019-07-31 18:19 - 2019-07-31 18:19 - 000275232 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2019-07-31 18:19 - 2019-07-31 18:19 - 000224408 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys 2019-07-31 18:19 - 2019-07-31 18:19 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2019-07-31 17:26 - 2019-07-31 17:26 - 000001554 _____ C:\Users\Thierry\Desktop\SALON.lnk 2019-07-31 14:56 - 2019-07-31 14:56 - 001030784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys 2019-07-31 14:56 - 2019-07-31 14:56 - 000168896 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2019-07-30 09:02 - 2019-07-30 09:02 - 000003974 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1499961985 2019-07-30 09:02 - 2019-07-30 09:02 - 000001209 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk 2019-07-28 09:29 - 2019-07-28 09:29 - 000045876 _____ C:\Users\Thierry\Downloads\vosTimbres.pdf 2019-07-28 09:04 - 2019-07-28 09:04 - 000018798 _____ C:\Users\Thierry\Downloads\document.pdf 2019-07-25 15:15 - 2019-07-25 15:15 - 000387896 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys 2019-07-19 11:47 - 2019-07-19 11:42 - 000098288 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll 2019-07-19 11:24 - 2019-07-19 11:32 - 000000000 ____D C:\Program Files (x86)\Auslogics 2019-07-19 11:24 - 2019-07-19 11:30 - 000000000 ____D C:\WINDOWS\System32\Tasks\Auslogics 2019-07-19 11:22 - 2019-07-19 11:37 - 000000000 ____D C:\Program Files (x86)\Cobian Backup 11 2019-07-19 11:13 - 2019-07-19 11:13 - 000000000 __SHD C:\WINDOWS\SysWOW64\AI_RecycleBin 2019-07-19 11:12 - 2019-07-19 11:12 - 000001418 _____ C:\Users\Thierry\Desktop\Should I Remove It.lnk 2019-07-19 11:12 - 2019-07-19 11:12 - 000000000 ____D C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Should I Remove It 2019-07-19 11:12 - 2019-07-19 11:12 - 000000000 ____D C:\Program Files (x86)\Reason 2019-07-19 11:05 - 2019-07-19 11:05 - 019713536 _____ (Luis Cobian, CobianSoft) C:\Users\Thierry\Downloads\cobian-backup_cobian_backup_11.2.0.583_francais_11081.exe 2019-07-19 10:57 - 2019-07-19 10:57 - 002178872 _____ (Reason Software Company Inc.) C:\Users\Thierry\Downloads\should-i-remove-it_1-0-4-36591_fr_431721.exe 2019-07-19 10:55 - 2019-07-19 10:55 - 002001544 _____ C:\Users\Thierry\Desktop\pc-decrapifier_3-0-1_fr_259082.exe 2019-07-19 09:55 - 2019-07-19 09:55 - 000001940 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2019-07-19 09:55 - 2019-07-19 09:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2019-07-19 09:55 - 2019-06-26 13:00 - 000020936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys 2019-07-19 09:55 - 2019-01-08 16:32 - 000153328 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2019-07-14 18:40 - 2019-07-14 18:40 - 002658352 _____ C:\Users\Thierry\Downloads\UltData for Windows.exe 2019-07-14 18:11 - 2019-07-14 18:11 - 000000000 ____D C:\Users\Thierry\AppData\Roaming\LibreOffice 2019-07-14 18:10 - 2019-07-14 18:10 - 000001197 _____ C:\Users\Public\Desktop\LibreOffice 6.2.lnk 2019-07-14 18:10 - 2019-07-14 18:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 6.2 2019-07-14 18:09 - 2019-07-14 18:10 - 000000000 ____D C:\Program Files\LibreOffice 2019-07-14 17:42 - 2019-07-14 17:48 - 295682048 _____ C:\Users\Thierry\Downloads\LibreOffice_6.2.4_Win_x64.msi 2019-07-12 22:46 - 2019-07-27 10:40 - 000002618 _____ C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2019-07-12 22:46 - 2019-07-16 09:03 - 000002858 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-327278073-2271488925-2196082338-1001 2019-07-11 20:50 - 2019-07-11 20:52 - 000000000 ____D C:\Users\Thierry\Downloads\San-Antonio 2019-07-11 05:58 - 2019-07-04 11:43 - 000094008 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2019-07-11 05:58 - 2019-07-04 11:40 - 021390504 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2019-07-11 05:58 - 2019-07-04 11:40 - 001631808 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2019-07-11 05:58 - 2019-07-04 11:40 - 001616840 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2019-07-11 05:58 - 2019-07-04 11:40 - 000790416 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2019-07-11 05:58 - 2019-07-04 11:22 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe 2019-07-11 05:58 - 2019-07-04 11:22 - 000128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll 2019-07-11 05:58 - 2019-07-04 11:21 - 008627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2019-07-11 05:58 - 2019-07-04 11:20 - 001609216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2019-07-11 05:58 - 2019-07-04 11:19 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe 2019-07-11 05:58 - 2019-07-04 11:18 - 003614208 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2019-07-11 05:58 - 2019-07-04 11:18 - 001663488 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2019-07-11 05:58 - 2019-07-04 10:56 - 001453416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2019-07-11 05:58 - 2019-07-04 10:54 - 000662352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2019-07-11 05:58 - 2019-07-04 10:51 - 020384128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2019-07-11 05:58 - 2019-07-04 10:41 - 007990784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2019-07-11 05:58 - 2019-07-04 10:37 - 002882048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2019-07-11 05:58 - 2019-07-04 10:36 - 001471488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2019-07-11 05:58 - 2019-07-04 07:00 - 001035040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe 2019-07-11 05:58 - 2019-07-04 06:58 - 001328440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll 2019-07-11 05:58 - 2019-07-04 06:58 - 001219896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2019-07-11 05:58 - 2019-07-04 06:58 - 000416312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2019-07-11 05:58 - 2019-07-04 06:58 - 000192824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys 2019-07-11 05:58 - 2019-07-04 06:57 - 003292152 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2019-07-11 05:58 - 2019-07-04 06:57 - 001027384 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2019-07-11 05:58 - 2019-07-04 06:57 - 000986128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2019-07-11 05:58 - 2019-07-04 06:57 - 000776784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2019-07-11 05:58 - 2019-07-04 06:57 - 000723728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2019-07-11 05:58 - 2019-07-04 06:57 - 000708696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2019-07-11 05:58 - 2019-07-04 06:57 - 000568104 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe 2019-07-11 05:58 - 2019-07-04 06:57 - 000362264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.ApplicationData.dll 2019-07-11 05:58 - 2019-07-04 06:57 - 000209424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe 2019-07-11 05:58 - 2019-07-04 06:57 - 000194360 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll 2019-07-11 05:58 - 2019-07-04 06:57 - 000137656 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcrypt.dll 2019-07-11 05:58 - 2019-07-04 06:57 - 000134968 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll 2019-07-11 05:58 - 2019-07-04 06:57 - 000091776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpfve.sys 2019-07-11 05:58 - 2019-07-04 06:56 - 009084216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2019-07-11 05:58 - 2019-07-04 06:56 - 007519896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2019-07-11 05:58 - 2019-07-04 06:56 - 007436536 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2019-07-11 05:58 - 2019-07-04 06:56 - 002810680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2019-07-11 05:58 - 2019-07-04 06:56 - 002571640 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2019-07-11 05:58 - 2019-07-04 06:56 - 001566520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll 2019-07-11 05:58 - 2019-07-04 06:56 - 001459120 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2019-07-11 05:58 - 2019-07-04 06:56 - 001260776 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2019-07-11 05:58 - 2019-07-04 06:56 - 001141496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2019-07-11 05:58 - 2019-07-04 06:56 - 000983936 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2019-07-11 05:58 - 2019-07-04 06:56 - 000767536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2019-07-11 05:58 - 2019-07-04 06:56 - 000734952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2019-07-11 05:58 - 2019-07-04 06:56 - 000713272 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2019-07-11 05:58 - 2019-07-04 06:56 - 000604984 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2019-07-11 05:58 - 2019-07-04 06:56 - 000493752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll 2019-07-11 05:58 - 2019-07-04 06:56 - 000115512 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdnet.dll 2019-07-11 05:58 - 2019-07-04 06:43 - 000832016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2019-07-11 05:58 - 2019-07-04 06:43 - 000665440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2019-07-11 05:58 - 2019-07-04 06:43 - 000328696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll 2019-07-11 05:58 - 2019-07-04 06:43 - 000287376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.ApplicationData.dll 2019-07-11 05:58 - 2019-07-04 06:43 - 000191800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe 2019-07-11 05:58 - 2019-07-04 06:42 - 006570368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2019-07-11 05:58 - 2019-07-04 06:42 - 006044008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2019-07-11 05:58 - 2019-07-04 06:42 - 002479176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2019-07-11 05:58 - 2019-07-04 06:42 - 001980984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2019-07-11 05:58 - 2019-07-04 06:42 - 001427768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll 2019-07-11 05:58 - 2019-07-04 06:42 - 000573808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2019-07-11 05:58 - 2019-07-04 06:42 - 000356312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll 2019-07-11 05:58 - 2019-07-04 06:42 - 000097272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcrypt.dll 2019-07-11 05:58 - 2019-07-04 06:41 - 000559328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2019-07-11 05:58 - 2019-07-04 06:37 - 025857536 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2019-07-11 05:58 - 2019-07-04 06:33 - 022017536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2019-07-11 05:58 - 2019-07-04 06:29 - 022717440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2019-07-11 05:58 - 2019-07-04 06:26 - 004385280 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll 2019-07-11 05:58 - 2019-07-04 06:26 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll 2019-07-11 05:58 - 2019-07-04 06:26 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll 2019-07-11 05:58 - 2019-07-04 06:25 - 019372544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2019-07-11 05:58 - 2019-07-04 06:25 - 007589888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2019-07-11 05:58 - 2019-07-04 06:25 - 004861440 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2019-07-11 05:58 - 2019-07-04 06:25 - 003401216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2019-07-11 05:58 - 2019-07-04 06:25 - 000295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll 2019-07-11 05:58 - 2019-07-04 06:25 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll 2019-07-11 05:58 - 2019-07-04 06:24 - 000726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\PEAuth.sys 2019-07-11 05:58 - 2019-07-04 06:24 - 000567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2019-07-11 05:58 - 2019-07-04 06:24 - 000462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe 2019-07-11 05:58 - 2019-07-04 06:24 - 000153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll 2019-07-11 05:58 - 2019-07-04 06:23 - 001765888 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2019-07-11 05:58 - 2019-07-04 06:23 - 001217536 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll 2019-07-11 05:58 - 2019-07-04 06:23 - 000786432 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll 2019-07-11 05:58 - 2019-07-04 06:22 - 003707904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2019-07-11 05:58 - 2019-07-04 06:22 - 002587648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2019-07-11 05:58 - 2019-07-04 06:22 - 002176000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2019-07-11 05:58 - 2019-07-04 06:22 - 001561088 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2019-07-11 05:58 - 2019-07-04 06:22 - 001549824 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2019-07-11 05:58 - 2019-07-04 06:22 - 001175552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2019-07-11 05:58 - 2019-07-04 06:22 - 000300544 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2019-07-11 05:58 - 2019-07-04 06:22 - 000110592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll 2019-07-11 05:58 - 2019-07-04 06:22 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll 2019-07-11 05:58 - 2019-07-04 06:21 - 005784064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2019-07-11 05:58 - 2019-07-04 06:21 - 005307392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2019-07-11 05:58 - 2019-07-04 06:21 - 003202560 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2019-07-11 05:58 - 2019-07-04 06:21 - 002166784 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2019-07-11 05:58 - 2019-07-04 06:21 - 001920000 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2019-07-11 05:58 - 2019-07-04 06:21 - 001220608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2019-07-11 05:58 - 2019-07-04 06:21 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2019-07-11 05:58 - 2019-07-04 06:21 - 000124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll 2019-07-11 05:58 - 2019-07-04 06:21 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll 2019-07-11 05:58 - 2019-07-04 06:20 - 001156608 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll 2019-07-11 05:58 - 2019-07-04 06:20 - 000544256 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2019-07-11 05:58 - 2019-07-04 06:20 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2019-07-11 05:58 - 2019-07-04 06:20 - 000330752 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll 2019-07-11 05:58 - 2019-07-04 06:19 - 000886272 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2019-07-11 05:58 - 2019-07-04 06:19 - 000230912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2019-07-11 05:58 - 2019-07-04 06:18 - 002602496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2019-07-11 05:58 - 2019-07-04 06:18 - 001076224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll 2019-07-11 05:58 - 2019-07-04 06:18 - 000965632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll 2019-07-11 05:58 - 2019-07-04 06:18 - 000953344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2019-07-11 05:58 - 2019-07-04 06:18 - 000275968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll 2019-07-11 05:58 - 2019-07-04 06:17 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2019-07-11 05:58 - 2019-07-04 05:01 - 000001312 _____ C:\WINDOWS\system32\tcbres.wim 2019-07-11 05:58 - 2019-06-21 10:50 - 000280584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2019-07-11 05:58 - 2019-06-13 14:15 - 000324408 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2019-07-11 05:58 - 2019-06-13 14:12 - 002871848 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe 2019-07-11 05:58 - 2019-06-13 14:05 - 000810296 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2019-07-11 05:58 - 2019-06-13 14:04 - 001721144 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2019-07-11 05:58 - 2019-06-13 14:00 - 000464696 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2019-07-11 05:58 - 2019-06-13 13:59 - 000740664 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2019-07-11 05:58 - 2019-06-13 13:58 - 000637752 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2019-07-11 05:58 - 2019-06-13 13:58 - 000071480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll 2019-07-11 05:58 - 2019-06-13 13:56 - 000164152 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2019-07-11 05:58 - 2019-06-13 13:43 - 001048480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll 2019-07-11 05:58 - 2019-06-13 13:42 - 004038688 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2019-07-11 05:58 - 2019-06-13 13:42 - 000566536 _____ (Microsoft Corporation) C:\WINDOWS\system32\phoneactivate.exe 2019-07-11 05:58 - 2019-06-13 13:40 - 000540984 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll 2019-07-11 05:58 - 2019-06-13 13:38 - 000766264 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll 2019-07-11 05:58 - 2019-06-13 13:37 - 000101192 _____ (Microsoft Corporation) C:\WINDOWS\system32\changepk.exe 2019-07-11 05:58 - 2019-06-13 13:36 - 000251000 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll 2019-07-11 05:58 - 2019-06-13 13:36 - 000236520 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll 2019-07-11 05:58 - 2019-06-13 13:35 - 001376688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2019-07-11 05:58 - 2019-06-13 13:34 - 000146888 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingUI.exe 2019-07-11 05:58 - 2019-06-13 13:18 - 006586880 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2019-07-11 05:58 - 2019-06-13 13:18 - 004847104 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2019-07-11 05:58 - 2019-06-13 13:17 - 012756992 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2019-07-11 05:58 - 2019-06-13 13:17 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmvdsitf.dll 2019-07-11 05:58 - 2019-06-13 13:17 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\RjvMDMConfig.dll 2019-07-11 05:58 - 2019-06-13 13:17 - 000109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2019-07-11 05:58 - 2019-06-13 13:17 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe 2019-07-11 05:58 - 2019-06-13 13:16 - 000767488 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcommdlg.dll 2019-07-11 05:58 - 2019-06-13 13:15 - 004718080 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll 2019-07-11 05:58 - 2019-06-13 13:15 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpgradeResultsUI.exe 2019-07-11 05:58 - 2019-06-13 13:14 - 001127936 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll 2019-07-11 05:58 - 2019-06-13 13:14 - 000900096 _____ (Microsoft Corporation) C:\WINDOWS\system32\slui.exe 2019-07-11 05:58 - 2019-06-13 13:14 - 000346624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll 2019-07-11 05:58 - 2019-06-13 13:14 - 000246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\DesktopSwitcherDataModel.dll 2019-07-11 05:58 - 2019-06-13 13:13 - 002920448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2019-07-11 05:58 - 2019-06-13 13:13 - 001339392 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskFlowDataEngine.dll 2019-07-11 05:58 - 2019-06-13 13:13 - 000951808 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll 2019-07-11 05:58 - 2019-06-13 13:13 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll 2019-07-11 05:58 - 2019-06-13 13:13 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll 2019-07-11 05:58 - 2019-06-13 13:12 - 000394240 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll 2019-07-11 05:58 - 2019-06-13 13:10 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll 2019-07-11 05:58 - 2019-06-13 12:07 - 001027008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2019-07-11 05:58 - 2019-06-13 12:07 - 000660496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll 2019-07-11 05:58 - 2019-06-13 12:07 - 000221232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeManagerObj.dll 2019-07-11 05:58 - 2019-06-13 12:05 - 003700160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2019-07-11 05:58 - 2019-06-13 11:55 - 005657088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2019-07-11 05:58 - 2019-06-13 11:54 - 011942912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2019-07-11 05:58 - 2019-06-13 11:54 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmvdsitf.dll 2019-07-11 05:58 - 2019-06-13 11:53 - 000089600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2019-07-11 05:58 - 2019-06-13 11:51 - 000622080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll 2019-07-11 05:58 - 2019-06-13 11:50 - 000896512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll 2019-07-11 05:58 - 2019-06-13 11:49 - 002406400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll 2019-07-11 05:58 - 2019-06-13 11:49 - 000371200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll 2019-07-11 05:58 - 2019-06-13 09:48 - 000677376 _____ (Microsoft Corporation) C:\WINDOWS\system32\HeadTrackerStorage.dll 2019-07-11 05:58 - 2019-06-13 09:46 - 000713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedRealitySvc.dll 2019-07-11 05:58 - 2019-06-13 09:01 - 000513336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2019-07-11 05:58 - 2019-06-13 09:01 - 000511288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll 2019-07-11 05:58 - 2019-06-13 09:01 - 000036152 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2019-07-11 05:58 - 2019-06-13 08:59 - 000785264 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll 2019-07-11 05:58 - 2019-06-13 08:47 - 005625160 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll 2019-07-11 05:58 - 2019-06-13 08:47 - 001063224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2019-07-11 05:58 - 2019-06-13 08:46 - 001076536 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll 2019-07-11 05:58 - 2019-06-13 08:46 - 000510296 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll 2019-07-11 05:58 - 2019-06-13 08:46 - 000093984 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll 2019-07-11 05:58 - 2019-06-13 08:45 - 002421560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2019-07-11 05:58 - 2019-06-13 08:44 - 002769688 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2019-07-11 05:58 - 2019-06-13 08:44 - 002546704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll 2019-07-11 05:58 - 2019-06-13 08:44 - 001098272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll 2019-07-11 05:58 - 2019-06-13 08:44 - 001033696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll 2019-07-11 05:58 - 2019-06-13 08:44 - 000607112 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll 2019-07-11 05:58 - 2019-06-13 08:44 - 000545808 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2019-07-11 05:58 - 2019-06-13 08:44 - 000130624 _____ (Microsoft Corporation) C:\WINDOWS\system32\rmclient.dll 2019-07-11 05:58 - 2019-06-13 08:17 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll 2019-07-11 05:58 - 2019-06-13 08:16 - 001626112 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2019-07-11 05:58 - 2019-06-13 08:16 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll 2019-07-11 05:58 - 2019-06-13 08:15 - 000514560 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe 2019-07-11 05:58 - 2019-06-13 08:15 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2019-07-11 05:58 - 2019-06-13 08:15 - 000204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll 2019-07-11 05:58 - 2019-06-13 08:15 - 000137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll 2019-07-11 05:58 - 2019-06-13 08:15 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\KdsCli.dll 2019-07-11 05:58 - 2019-06-13 08:14 - 003318784 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2019-07-11 05:58 - 2019-06-13 08:14 - 000409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2019-07-11 05:58 - 2019-06-13 08:14 - 000361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe 2019-07-11 05:58 - 2019-06-13 08:14 - 000302080 _____ (Microsoft Corporation) C:\WINDOWS\system32\CXHProvisioningServer.dll 2019-07-11 05:58 - 2019-06-13 08:13 - 004771840 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2019-07-11 05:58 - 2019-06-13 08:13 - 002370048 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll 2019-07-11 05:58 - 2019-06-13 08:13 - 000761344 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2019-07-11 05:58 - 2019-06-13 08:13 - 000322560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2019-07-11 05:58 - 2019-06-13 08:13 - 000110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll 2019-07-11 05:58 - 2019-06-13 08:12 - 000916480 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2019-07-11 05:58 - 2019-06-13 08:12 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll 2019-07-11 05:58 - 2019-06-13 08:12 - 000808448 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll 2019-07-11 05:58 - 2019-06-13 08:12 - 000624640 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2019-07-11 05:58 - 2019-06-13 08:12 - 000532992 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuietHours.dll 2019-07-11 05:58 - 2019-06-13 08:12 - 000501248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll 2019-07-11 05:58 - 2019-06-13 08:11 - 000508416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll 2019-07-11 05:58 - 2019-06-13 08:11 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll 2019-07-11 05:58 - 2019-06-13 08:11 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerUI.dll 2019-07-11 05:58 - 2019-06-13 08:10 - 002912256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2019-07-11 05:58 - 2019-06-13 08:10 - 001400832 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2019-07-11 05:58 - 2019-06-13 08:10 - 001215488 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll 2019-07-11 05:58 - 2019-06-13 08:10 - 000871424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll 2019-07-11 05:58 - 2019-06-13 08:10 - 000869376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll 2019-07-11 05:58 - 2019-06-13 08:10 - 000849408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll 2019-07-11 05:58 - 2019-06-13 08:10 - 000523776 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2019-07-11 05:58 - 2019-06-13 08:09 - 001854976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll 2019-07-11 05:58 - 2019-06-13 08:09 - 000922112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll 2019-07-11 05:58 - 2019-06-13 08:09 - 000755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll 2019-07-11 05:58 - 2019-06-13 08:08 - 000506368 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll 2019-07-11 05:58 - 2019-06-13 07:14 - 000415544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll 2019-07-11 05:58 - 2019-06-13 07:08 - 000443632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll 2019-07-11 05:58 - 2019-06-13 07:07 - 000101192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rmclient.dll 2019-07-11 05:58 - 2019-06-13 07:07 - 000080744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wldp.dll 2019-07-11 05:58 - 2019-06-13 07:06 - 002256768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2019-07-11 05:58 - 2019-06-13 07:06 - 001130776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll 2019-07-11 05:58 - 2019-06-13 07:06 - 000581600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll 2019-07-11 05:58 - 2019-06-13 06:49 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll 2019-07-11 05:58 - 2019-06-13 06:47 - 003554304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2019-07-11 05:58 - 2019-06-13 06:47 - 002899456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2019-07-11 05:58 - 2019-06-13 06:47 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll 2019-07-11 05:58 - 2019-06-13 06:46 - 000608768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll 2019-07-11 05:58 - 2019-06-13 06:46 - 000331776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll 2019-07-11 05:58 - 2019-06-13 06:46 - 000038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerUI.dll 2019-07-11 05:58 - 2019-06-13 06:45 - 000602112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll 2019-07-11 05:58 - 2019-06-13 06:45 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll 2019-07-11 05:58 - 2019-06-13 06:44 - 001003008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll 2019-07-11 05:58 - 2019-06-13 06:44 - 000648192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll 2019-07-11 05:58 - 2019-06-13 06:44 - 000630784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.MediaPlayer.dll 2019-07-11 05:58 - 2019-06-13 06:44 - 000582144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll 2019-07-11 05:58 - 2019-06-13 06:44 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll 2019-07-11 05:58 - 2019-06-13 06:43 - 000681472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll 2019-07-11 05:58 - 2019-06-13 06:43 - 000646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll 2019-07-11 05:58 - 2019-06-13 06:43 - 000445952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll 2019-07-09 20:58 - 2016-02-29 07:50 - 001283584 _____ (RadiXX11) C:\Users\Thierry\Downloads\Keygen.exe 2019-07-09 20:26 - 2019-07-09 20:26 - 000001248 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltData - Windows.lnk 2019-07-09 20:26 - 2019-07-09 20:26 - 000001236 _____ C:\Users\Public\Desktop\UltData - Windows.lnk 2019-07-09 20:26 - 2019-07-09 20:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltData - Windows 2019-07-09 19:31 - 2019-07-09 19:33 - 000000000 ____D C:\Program Files\Recuva 2019-07-09 19:31 - 2019-07-09 19:31 - 000001719 _____ C:\Users\Public\Desktop\Recuva.lnk 2019-07-09 19:31 - 2019-07-09 19:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva 2019-07-09 18:42 - 2019-07-09 20:26 - 000000000 ____D C:\Program Files (x86)\UltData - Windows 2019-07-09 18:39 - 2019-07-09 18:40 - 006389888 _____ (Tenorshare, Inc. ) C:\Users\Thierry\Downloads\ultdata-for-windows.exe 2019-07-09 18:19 - 2019-07-09 18:19 - 003140480 _____ (Nicolas Coolman) C:\Users\Thierry\ZHPCleaner.exe 2019-07-09 18:14 - 2019-07-09 18:14 - 000000000 ____D C:\Users\Thierry\Downloads\eMule ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2019-08-05 12:15 - 2017-09-10 16:28 - 000000000 ____D C:\Users\Thierry\Desktop\FRST-OlderVersion 2019-08-05 12:15 - 2016-09-27 09:59 - 000000000 ____D C:\FRST 2019-08-05 12:10 - 2019-06-20 10:07 - 000000000 ____D C:\Users\Thierry\AppData\Roaming\MPC-HC 2019-08-05 11:58 - 2018-05-11 13:13 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2019-08-05 11:04 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2019-08-05 09:21 - 2017-07-24 10:54 - 000000000 ____D C:\Users\Thierry\AppData\Local\AVAST Software 2019-08-05 08:20 - 2018-04-12 01:38 - 000000000 ___HD C:\Program Files\WindowsApps 2019-08-05 08:20 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\AppReadiness 2019-08-05 08:08 - 2017-02-09 13:13 - 000000000 ____D C:\ProgramData\Logishrd 2019-08-05 06:24 - 2018-05-24 11:13 - 000000000 ____D C:\Program Files\CCleaner 2019-08-04 12:49 - 2017-02-20 12:49 - 000000000 ____D C:\ProgramData\TEMP 2019-08-03 13:49 - 2017-12-13 15:42 - 000000000 ____D C:\Program Files\rempl 2019-08-03 11:40 - 2018-05-15 11:26 - 000000000 ____D C:\Users\Thierry\AppData\Local\D3DSCache 2019-08-03 11:22 - 2018-08-20 08:05 - 000000000 ____D C:\Users\Thierry\AppData\Local\CrashDumps 2019-08-03 11:22 - 2018-04-12 01:36 - 000000000 ____D C:\WINDOWS\INF 2019-08-01 11:42 - 2018-05-11 13:14 - 000000000 ____D C:\Users\Thierry 2019-07-31 20:13 - 2016-09-10 11:57 - 000000000 ____D C:\ProgramData\AVAST Software 2019-07-31 18:26 - 2018-05-11 13:22 - 000005848 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2019-07-31 18:26 - 2018-04-12 18:18 - 003025078 _____ C:\WINDOWS\system32\perfh00C.dat 2019-07-31 18:26 - 2018-04-12 18:18 - 000823076 _____ C:\WINDOWS\system32\perfc00C.dat 2019-07-31 18:21 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\NDF 2019-07-31 18:21 - 2017-01-31 19:55 - 000000000 ____D C:\Users\Thierry\AppData\Roaming\.oit 2019-07-31 18:19 - 2018-05-11 13:20 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2019-07-31 18:19 - 2016-09-09 16:55 - 000000000 __SHD C:\Users\Thierry\IntelGraphicsProfiles 2019-07-31 18:18 - 2018-04-11 23:04 - 001048576 _____ C:\WINDOWS\system32\config\BBI 2019-07-30 09:02 - 2017-07-13 18:06 - 000000000 ____D C:\Program Files (x86)\Opera 2019-07-27 10:41 - 2017-02-15 17:52 - 000000000 ___HD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\~Nero 2017 2019-07-27 10:41 - 2017-02-14 13:09 - 000000000 ___HD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\~Nero 2019-07-27 10:40 - 2019-05-30 10:24 - 000001118 _____ C:\Users\Thierry\Desktop\ZHPCleaner.lnk 2019-07-26 11:25 - 2018-05-18 11:07 - 000000000 ____D C:\ProgramData\updater2 2019-07-25 15:04 - 2019-06-26 02:56 - 000004264 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update 2019-07-25 14:58 - 2016-09-10 02:47 - 000000000 ____D C:\Program Files\PeerBlock 2019-07-19 11:47 - 2017-02-12 21:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2019-07-19 11:47 - 2017-02-12 21:26 - 000000000 ____D C:\Program Files (x86)\Java 2019-07-19 10:51 - 2018-03-03 19:43 - 000000000 ____D C:\Users\Thierry\AppData\Roaming\ZHP 2019-07-19 10:15 - 2017-02-01 12:03 - 000000929 _____ C:\WINDOWS\Tasks\EPSON WF-2750 Series Update {C3E2809F-0273-404A-B552-BB43725E8AA4}.job 2019-07-19 09:55 - 2018-04-12 01:38 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2019-07-17 12:28 - 2018-12-18 19:33 - 000000000 ____D C:\ProgramData\Malwarebytes 2019-07-16 09:03 - 2019-06-13 08:58 - 000002988 _____ C:\WINDOWS\System32\Tasks\CCleaner Update 2019-07-16 09:03 - 2018-12-19 13:40 - 000002218 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2019-07-16 09:03 - 2018-05-18 10:49 - 000002798 _____ C:\WINDOWS\System32\Tasks\ACC 2019-07-16 09:03 - 2018-05-11 13:20 - 000003516 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2019-07-16 09:03 - 2018-05-11 13:20 - 000003482 _____ C:\WINDOWS\System32\Tasks\EPSON WF-2750 Series Update {C3E2809F-0273-404A-B552-BB43725E8AA4} 2019-07-16 09:03 - 2018-05-11 13:20 - 000003292 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2019-07-16 09:03 - 2018-05-11 13:20 - 000003078 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{242502A2-37E1-4CA3-AE6C-7B26253650BD} 2019-07-16 09:03 - 2018-05-11 13:20 - 000002702 _____ C:\WINDOWS\System32\Tasks\GarminUpdaterTask 2019-07-16 09:03 - 2018-05-11 13:20 - 000002320 _____ C:\WINDOWS\System32\Tasks\{36995753-CA96-4B6B-B3D3-4520E170549C} 2019-07-16 09:03 - 2018-05-11 13:20 - 000002302 _____ C:\WINDOWS\System32\Tasks\{8F2DF186-9C83-43BB-A9E4-DBFC69293CFD} 2019-07-16 09:03 - 2018-05-11 13:20 - 000002224 _____ C:\WINDOWS\System32\Tasks\{8F417282-8704-4BE3-9E2C-98A5C75A2AD4} 2019-07-16 09:03 - 2018-05-11 13:20 - 000000000 ____D C:\WINDOWS\System32\Tasks\Avast Software 2019-07-16 02:03 - 2017-02-11 07:09 - 000002359 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2019-07-16 02:03 - 2017-02-11 07:09 - 000002318 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2019-07-14 19:10 - 2016-09-11 20:00 - 000001321 _____ C:\WINDOWS\SysWOW64\stats.dat 2019-07-14 19:10 - 2016-09-11 19:58 - 000006048 _____ C:\WINDOWS\SysWOW64\parties.txt 2019-07-13 09:46 - 2016-09-09 17:44 - 000000000 ____D C:\Users\Thierry\AppData\Roaming\vlc 2019-07-12 22:46 - 2016-09-09 16:41 - 000000000 ___RD C:\Users\Thierry\OneDrive 2019-07-11 22:14 - 2017-12-17 12:23 - 000000000 ___RD C:\Users\Thierry\3D Objects 2019-07-11 22:14 - 2016-09-09 20:39 - 000000000 __RHD C:\Users\Public\AccountPictures 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\zu-ZA 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\yo-NG 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\xh-ZA 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\wo-SN 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\uz-Latn-UZ 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\tn-ZA 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\ti-ET 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\tg-Cyrl-TJ 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-RS 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-BA 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\sd-Arab-PK 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\rw-RW 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\quc-Latn-GT 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-Arab-PK 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\nso-ZA 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\ku-Arab-IQ 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\ig-NG 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\ha-Latn-NG 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\chr-CHER-US 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES-valencia 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\bs-Latn-BA 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\SysWOW64\az-Latn-AZ 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\zu-ZA 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\yo-NG 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\xh-ZA 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\wo-SN 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\uz-Latn-UZ 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\tn-ZA 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\ti-ET 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\tg-Cyrl-TJ 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-RS 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-BA 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\sd-Arab-PK 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\rw-RW 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\quc-Latn-GT 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\pa-Arab-PK 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\nso-ZA 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\ku-Arab-IQ 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\ig-NG 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\ha-Latn-NG 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\chr-CHER-US 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\ca-ES-valencia 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\bs-Latn-BA 2019-07-11 22:12 - 2018-04-12 18:22 - 000000000 ____D C:\WINDOWS\system32\az-Latn-AZ 2019-07-11 22:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\TextInput 2019-07-11 22:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2019-07-11 22:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2019-07-11 22:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\oobe 2019-07-11 22:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\appraiser 2019-07-11 22:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\ShellComponents 2019-07-11 22:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\Provisioning 2019-07-11 22:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\bcastdvr 2019-07-11 22:12 - 2018-04-11 23:04 - 000000000 ____D C:\WINDOWS\system32\Dism 2019-07-11 06:01 - 2018-04-12 01:30 - 000000000 ____D C:\WINDOWS\CbsTemp 2019-07-11 05:57 - 2016-09-10 09:43 - 000000000 ____D C:\WINDOWS\system32\MRT 2019-07-11 05:55 - 2016-09-10 09:43 - 136618864 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2019-07-09 21:04 - 2018-04-12 11:38 - 000000000 ____D C:\Program Files\Mozilla Firefox 2019-07-09 20:12 - 2018-05-11 13:14 - 000000000 ____D C:\Users\Thierry\AppData\Local\Microsoft Help 2019-07-09 18:13 - 2018-05-15 11:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2019-07-06 17:30 - 2019-05-27 14:26 - 000004294 _____ C:\WINDOWS\System32\Tasks\Avast SecureLine VPN Update ==================== Fichiers à la racine de certains dossiers ======= 2018-02-04 11:53 - 2018-02-04 11:53 - 000001674 _____ () C:\Program Files (x86)\dsengine.cfg 2019-08-04 11:00 - 2019-08-04 11:00 - 000001275 _____ () C:\Users\Thierry\AppData\Roaming\SAS7_000.DAT 2016-09-10 00:04 - 2016-09-10 00:04 - 000000043 _____ () C:\Users\Thierry\AppData\Roaming\WB.CFG 2017-01-20 11:20 - 2017-01-20 11:20 - 000000017 _____ () C:\Users\Thierry\AppData\Local\resmon.resmoncfg 2017-03-20 11:54 - 2017-03-20 11:54 - 000000000 _____ () C:\ProgramData\DP45977C.lfl 2017-02-22 10:10 - 2017-02-22 10:10 - 000000016 _____ () C:\ProgramData\mntemp Fichiers à déplacer ou supprimer: ==================== C:\Users\Thierry\ZHPCleaner.exe Certains fichiers dans TEMP: ==================== 2019-07-19 11:41 - 2019-07-19 11:41 - 002070488 _____ (Oracle Corporation) C:\Users\Thierry\AppData\Local\Temp\jre-8u221-windows-au.exe 2019-07-18 16:53 - 2019-04-19 11:37 - 000607960 _____ (Microsoft Corporation) C:\Users\Thierry\AppData\Local\Temp\kernel32.dll 2013-10-05 10:38 - 2013-10-05 10:38 - 000455328 _____ (Microsoft Corporation) C:\Users\Thierry\AppData\Local\Temp\msvcp120.dll 2013-10-05 10:38 - 2013-10-05 10:38 - 000970912 _____ (Microsoft Corporation) C:\Users\Thierry\AppData\Local\Temp\msvcr120.dll 2016-07-31 02:08 - 2016-07-31 02:08 - 003112960 _____ (Jason York) C:\Users\Thierry\AppData\Local\Temp\pc-decrapifier.exe ==================== Bamital & volsnap ====================== (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement C:\WINDOWS\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2018-05-11 13:12 ==================== Fin de FRST.txt ============================Résultats d'analyse des raccourcis de l'utilisateur (x64) Version: 11-10-2017 Exécuté par Thierry (05-08-2019 12:18:26) Exécuté depuis C:\Users\Thierry\Desktop\FRST-OlderVersion Mode d'amorçage: Normal ==================== Raccourcis ============================= (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\01 - File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\03 - Documents.lnk -> C:\Users\Thierry\Documents () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\04 - Downloads.lnk -> C:\Users\Thierry\Downloads () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\05 - Music.lnk -> C:\Users\Thierry\Music () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\06 - Pictures.lnk -> C:\Users\Thierry\Pictures () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\07 - Videos.lnk -> C:\Users\Thierry\Videos () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\08 - Homegroup.lnk -> Microsoft.Windows.Homegroup Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\09 - Network.lnk -> Microsoft.Windows.Network Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\10 - UserProfile.lnk -> C:\Users\Thierry () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Software Updates.lnk -> C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe (Flexera Software LLC.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\WinZip.lnk -> C:\Program Files (x86)\WinZip\WINZIP32.EXE (WinZip Computing LP) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis True Image.lnk -> C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageLauncher.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk -> C:\Windows\Installer\{A30EA700-5515-48F0-88B0-9E99DC356B88}\AppleSoftwareUpdateIco.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk -> C:\Program Files (x86)\Audacity\audacity.exe (The Audacity Team) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Internet Security.lnk -> C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EOBD-Facile.lnk -> C:\Program Files (x86)\EOBD-Facile\EOBD-Facile.exe (Outils OBD Facile SAS) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro.lnk -> C:\Program Files\Google\Google Earth Pro\client\googleearth.exe (Google) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immersive Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 12.lnk -> C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total Uninstall 6.lnk -> C:\Program Files\Total Uninstall 6\Tu.exe (Gavrila Martau) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltData - Windows.lnk -> C:\Program Files (x86)\UltData - Windows\NetFrameCheck.exe (Tenorshare Co.Ltd) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\~Nero\Nero StartSmart.lnk -> C:\Program Files (x86)\Ahead\Nero StartSmart\NeroStartSmart.exe (Ahead Software AG) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip\Help Manual.lnk -> C:\Program Files (x86)\WinZip\WINZIP.CHM () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip\ReadMe.txt.lnk -> C:\Program Files (x86)\WinZip\README.TXT () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip\WinZip 11.0 .lnk -> C:\Program Files (x86)\WinZip\WINZIP32.EXE (WinZip Computing LP) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Aide de WinRAR.lnk -> C:\Program Files (x86)\WinRAR\winrar.chm () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Manuel de la console RAR.lnk -> C:\Program Files (x86)\WinRAR\Rar.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\Quelles sont les nouveautés de la dernière version.lnk -> C:\Program Files (x86)\WinRAR\WhatsNew.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files (x86)\WinRAR\WinRAR.exe (Alexander Roshal) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Documentation.lnk -> C:\Program Files (x86)\adslTV\VLC\Documentation.url () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Release Notes.lnk -> C:\Program Files (x86)\adslTV\VLC\NEWS.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VideoLAN Website.lnk -> C:\Program Files (x86)\adslTV\VLC\VideoLAN Website.url () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player.lnk -> C:\Program Files (x86)\adslTV\VLC\vlc.exe (VideoLAN) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vectir\Vectir.lnk -> C:\Program Files (x86)\Vectir\Vectir.exe (Incendo Technology) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltData - Windows\Désinstaller UltData - Windows.lnk -> C:\Program Files (x86)\UltData - Windows\unins000.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp\WinZip Quick Pick.lnk -> C:\Program Files (x86)\WinZip\WZQKPICK.EXE (WinZip Computing LP) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Create System Report.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDLogReport.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\File Scan.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFiles.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Immunization.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Rootkit Scan.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDRootAlyzer.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Spybot-S&D Start Center.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\System Scan.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Tray Icon (Live Protection).lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Uninstall Spybot-S&D.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\unins000.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy\Speccy.lnk -> C:\Program Files\Speccy\Speccy64.exe (Piriform Ltd) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Scrivener\Scrivener.lnk -> C:\Program Files (x86)\Scrivener\Scrivener.exe (Scrivener HQ Pty Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Scrivener\Uninstall Scrivener.lnk -> C:\Program Files (x86)\Scrivener\uninstall.exe (Literature and Latte) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Satsuki Decoder Pack\Configuration.lnk -> C:\Program Files (x86)\Satsuki Decoder Pack\Cpl\SDPCPL.exe (SySofts) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Satsuki Decoder Pack\Media Player Classic.lnk -> C:\Program Files (x86)\Satsuki Decoder Pack\MPC\mpc-hc.exe (MPC-HC Team) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Satsuki Decoder Pack\Désinstaller\Désinstaller.lnk -> C:\Program Files (x86)\Satsuki Decoder Pack\Uninstall.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva\Recuva.lnk -> C:\Program Files\Recuva\recuva64.exe (Piriform Ltd) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva\Uninstall Recuva.lnk -> C:\Program Files\Recuva\uninst.exe (Piriform Ltd) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Presto! PageManager 9.32\Importer anciennes données.lnk -> C:\Program Files (x86)\NewSoft\Presto! PageManager 9.32\Convert.exe (NewSoft Technology Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Presto! PageManager 9.32\License Manager.lnk -> C:\Program Files (x86)\NewSoft\Presto! PageManager 9.32\LicenseCheck.exe (NewSoft Technology Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Presto! PageManager 9.32\Presto! PageManager 9.32.lnk -> C:\Program Files (x86)\NewSoft\Presto! PageManager 9.32\prestopm.exe (NewSoft Technology Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Presto! PageManager 9.32\Presto! Scan Button.lnk -> C:\Program Files (x86)\NewSoft\Presto! PageManager 9.32\Pmsb.exe (NewSoft Technology Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PeerBlock\PeerBlock.lnk -> C:\Program Files\PeerBlock\peerblock.exe (PeerBlock, LLC) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PeerBlock\Uninstall PeerBlock.lnk -> C:\Program Files\PeerBlock\unins000.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PeerBlock\Help and Support\ReadMe.lnk -> C:\Program Files\PeerBlock\readme.rtf () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OnScreen Control\OnScreen Control.lnk -> C:\Program Files (x86)\LG Electronics\OnScreen Control\bin\OnScreen Control.exe (LG Electronics Inc.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC x64\Changelog.lnk -> C:\Program Files\MPC-HC\Changelog.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC x64\Désinstaller MPC-HC.lnk -> C:\Program Files\MPC-HC\unins000.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC x64\MPC-HC x64.lnk -> C:\Program Files\MPC-HC\mpc-hc64.exe (MPC-HC Team) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Access 2007.lnk -> C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\accicons.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Excel 2007.lnk -> C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\xlicons.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office InfoPath 2007.lnk -> C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\inficon.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Outlook 2007.lnk -> C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\outicon.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office PowerPoint 2007.lnk -> C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\pptico.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Publisher 2007.lnk -> C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\pubs.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Microsoft Office Word 2007.lnk -> C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\wordicon.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Outils Microsoft Office\Bibliothèque multimédia Microsoft.lnk -> C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\cagicon.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Outils Microsoft Office\Certificat numérique pour les projets VBA.lnk -> C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\misc.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Outils Microsoft Office\Microsoft Office 2007 Paramètres de langue.lnk -> C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\misc.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Outils Microsoft Office\Microsoft Office Diagnostics.lnk -> C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\misc.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Outils Microsoft Office\Microsoft Office Picture Manager.lnk -> C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\oisicon.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes\Malwarebytes.lnk -> C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe (Malwarebytes) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech\Logitech Options.lnk -> C:\Program Files\Logitech\LogiOptions\LogiOptions.exe (Logitech, Inc.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 6.2\LibreOffice Base.lnk -> C:\Program Files\LibreOffice\program\sbase.exe (The Document Foundation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 6.2\LibreOffice Calc.lnk -> C:\Program Files\LibreOffice\program\scalc.exe (The Document Foundation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 6.2\LibreOffice Draw.lnk -> C:\Program Files\LibreOffice\program\sdraw.exe (The Document Foundation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 6.2\LibreOffice Impress.lnk -> C:\Program Files\LibreOffice\program\simpress.exe (The Document Foundation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 6.2\LibreOffice Math.lnk -> C:\Program Files\LibreOffice\program\smath.exe (The Document Foundation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 6.2\LibreOffice Writer.lnk -> C:\Program Files\LibreOffice\program\swriter.exe (The Document Foundation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 6.2\LibreOffice.lnk -> C:\Program Files\LibreOffice\program\soffice.exe (The Document Foundation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configurer Java.lnk -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\javacpl.exe (Oracle Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel\Intel(R) Rapid Storage Technology.lnk -> C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorUI.exe (Intel Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImprimCheques\Historique.lnk -> C:\Program Files (x86)\La Limace Folle\ImprimCheques\Historique.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImprimCheques\ImprimChèques.lnk -> C:\Program Files (x86)\La Limace Folle\ImprimCheques\ImprimCheques.exe (lalimacefolle.free.fr) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImprimCheques\Licence.lnk -> C:\Program Files (x86)\La Limace Folle\ImprimCheques\Licence.rtf () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImprimCheques\Lisez_moi.lnk -> C:\Program Files (x86)\La Limace Folle\ImprimCheques\Lisez_moi.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImprimCheques\Pour désinstaller ImprimChèques.lnk -> C:\Program Files (x86)\La Limace Folle\ImprimCheques\unins000.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeOCR\FreeOCR.lnk -> C:\FreeOCR\FreeOCR.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeOCR\Uninstall FreeOCR.lnk -> C:\FreeOCR\unins000.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software\Event Manager.lnk -> C:\Program Files (x86)\Epson Software\Event Manager\EProjManager.exe (SEIKO EPSON CORPORATION) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software\FAX Utility.lnk -> C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXCNT.exe (SEIKO EPSON CORPORATION) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON\EPSON Scan\Configuration EPSON Scan.lnk -> C:\Windows\twain_32\escndv\escfg.exe (SEIKO EPSON CORP.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON\EPSON Scan\EPSON Scan.lnk -> C:\Windows\twain_32\escndv\escndv.exe (SEIKO EPSON CORP.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMule\eMule.lnk -> C:\Program Files (x86)\eMule\emule.exe (hxxp://www.emule-project.net) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMule\LinkCreator.lnk -> C:\Program Files (x86)\eMule\LinkCreator.exe (eMule-Project.net) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMule\Uninstall eMule.lnk -> C:\Program Files (x86)\eMule\Uninstall.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\e-Carte Bleue La Banque Postale\e-Carte Bleue La Banque Postale.lnk -> C:\Program Files (x86)\e-Carte Bleue\La Banque Postale\eCarteBleue_LBP.exe (Orange) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dragon NaturallySpeaking\Dragon NaturallySpeaking.lnk -> C:\Windows\Installer\{33EA20FB-5389-4938-BA59-2BCD9BB68F41}\NatSpeak_Shortcut_33EA20FB53894938BA592BCD9BB68F41.exe (Flexera Software LLC) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dragon NaturallySpeaking\Outils Dragon NaturallySpeaking\Collecte des fichiers à transmettre au support technique.lnk -> C:\Windows\Installer\{33EA20FB-5389-4938-BA59-2BCD9BB68F41}\SuppPack_Shortcut_33EA20FB53894938BA592BCD9BB68F41.exe (Flexera Software LLC) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dragon NaturallySpeaking\Outils Dragon NaturallySpeaking\Mise à niveau d'utilisateur.lnk -> C:\Windows\Installer\{33EA20FB-5389-4938-BA59-2BCD9BB68F41}\Upgrade_Shortcut_33EA20FB53894938BA592BCD9BB68F41.exe (Flexera Software LLC) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler\Defraggler.lnk -> C:\Program Files\Defraggler\Defraggler64.exe (Piriform Ltd) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Clementine\Clementine.lnk -> C:\Program Files (x86)\Clementine\clementine.exe (Clementine) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Clementine\Uninstall.lnk -> C:\Program Files (x86)\Clementine\Uninstall.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Software Ltd) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software\Avast Cleanup Premium.lnk -> C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe (AVAST Software) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software\Avast SecureLine VPN.lnk -> C:\Program Files\AVAST Software\SecureLine\Vpn.exe (AVAST Software) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Partition Assistant Standard Edition 5.2\AOMEI Partition Assistant Standard Edition 5.2.lnk -> C:\Program Files (x86)\AOMEI Partition Assistant Standard Edition 5.2\PartAssist.exe (AOMEI Technology Co., Ltd) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Partition Assistant Standard Edition 5.2\Uninstall AOMEI Partition Assistant.lnk -> C:\Program Files (x86)\AOMEI Partition Assistant Standard Edition 5.2\unins000.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (32-bit).lnk -> C:\Windows\SysWOW64\odbcad32.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (64-bit).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\RecoveryDrive.lnk -> C:\Windows\System32\RecoveryDrive.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Defender Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis\True Image\Acronis True Image.lnk -> C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageLauncher.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis\True Image\Tools and Utilities\Acronis System Report.lnk -> C:\Program Files (x86)\Acronis\TrueImageHome\SystemReport.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis\True Image\Tools and Utilities\Bootable Rescue Media Builder.lnk -> C:\Program Files (x86)\Acronis\TrueImageHome\MediaBuilder.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Quick Assist.lnk -> C:\Windows\System32\quickassist.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Steps Recorder.lnk -> C:\Windows\System32\psr.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip\7-Zip File Manager.lnk -> C:\Program Files (x86)\7-Zip\7zFM.exe (Igor Pavlov) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip\7-Zip Help.lnk -> C:\Program Files (x86)\7-Zip\7-zip.chm () Shortcut: C:\ProgramData\Microsoft\Internet Explorer\Quick Launch\Spybot-S&D Start Center.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Internet Explorer\Quick Launch\System Scan.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe (Safer-Networking Ltd.) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk -> C:\Users\Thierry\Documents () Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk -> C:\Users\Thierry\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk -> C:\Users\Thierry\Pictures () Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-30 Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc () Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) Shortcut: C:\Users\Public\Desktop\Acronis True Image.lnk -> C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageLauncher.exe () Shortcut: C:\Users\Public\Desktop\AOMEI Partition Assistant Standard Edition 5.2.lnk -> C:\Program Files (x86)\AOMEI Partition Assistant Standard Edition 5.2\PartAssist.exe (AOMEI Technology Co., Ltd) Shortcut: C:\Users\Public\Desktop\Audacity.lnk -> C:\Program Files (x86)\Audacity\audacity.exe (The Audacity Team) Shortcut: C:\Users\Public\Desktop\Avast Cleanup Premium.lnk -> C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe (AVAST Software) Shortcut: C:\Users\Public\Desktop\Avast Internet Security.lnk -> C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software) Shortcut: C:\Users\Public\Desktop\Avast SecureLine VPN.lnk -> C:\Program Files\AVAST Software\SecureLine\Vpn.exe (AVAST Software) Shortcut: C:\Users\Public\Desktop\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Software Ltd) Shortcut: C:\Users\Public\Desktop\Defraggler.lnk -> C:\Program Files\Defraggler\Defraggler64.exe (Piriform Ltd) Shortcut: C:\Users\Public\Desktop\Dragon NaturallySpeaking.lnk -> C:\Windows\Installer\{33EA20FB-5389-4938-BA59-2BCD9BB68F41}\NatSpeakD_Shortcut_33EA20FB53894938BA592BCD9BB68F41.exe (Flexera Software LLC) Shortcut: C:\Users\Public\Desktop\e-Carte Bleue La Banque Postale.lnk -> C:\Program Files (x86)\e-Carte Bleue\La Banque Postale\eCarteBleue_LBP.exe (Orange) Shortcut: C:\Users\Public\Desktop\eMule.lnk -> C:\Program Files (x86)\eMule\emule.exe (hxxp://www.emule-project.net) Shortcut: C:\Users\Public\Desktop\EOBD-Facile.lnk -> C:\Program Files (x86)\EOBD-Facile\EOBD-Facile.exe (Outils OBD Facile SAS) Shortcut: C:\Users\Public\Desktop\EPSON Scan.lnk -> C:\Windows\twain_32\escndv\escndv.exe (SEIKO EPSON CORP.) Shortcut: C:\Users\Public\Desktop\Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) Shortcut: C:\Users\Public\Desktop\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) Shortcut: C:\Users\Public\Desktop\Google Earth Pro.lnk -> C:\Program Files\Google\Google Earth Pro\client\googleearth.exe (Google) Shortcut: C:\Users\Public\Desktop\ImprimChèques.lnk -> C:\Program Files (x86)\La Limace Folle\ImprimCheques\ImprimCheques.exe (lalimacefolle.free.fr) Shortcut: C:\Users\Public\Desktop\LibreOffice 6.2.lnk -> C:\Program Files\LibreOffice\program\soffice.exe (The Document Foundation) Shortcut: C:\Users\Public\Desktop\Malwarebytes.lnk -> C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe (Malwarebytes) Shortcut: C:\Users\Public\Desktop\Navigateur Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software) Shortcut: C:\Users\Public\Desktop\OnScreen Control.lnk -> C:\Program Files (x86)\LG Electronics\OnScreen Control\bin\OnScreen Control.exe (LG Electronics Inc.) Shortcut: C:\Users\Public\Desktop\PageManager 9.32.lnk -> C:\Program Files (x86)\NewSoft\Presto! PageManager 9.32\prestopm.exe (NewSoft Technology Corporation) Shortcut: C:\Users\Public\Desktop\Recuva.lnk -> C:\Program Files\Recuva\recuva64.exe (Piriform Ltd) Shortcut: C:\Users\Public\Desktop\Scrivener.lnk -> C:\Program Files (x86)\Scrivener\Scrivener.exe (Scrivener HQ Pty Ltd.) Shortcut: C:\Users\Public\Desktop\Speccy.lnk -> C:\Program Files\Speccy\Speccy64.exe (Piriform Ltd) Shortcut: C:\Users\Public\Desktop\TeamViewer 12.lnk -> C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH) Shortcut: C:\Users\Public\Desktop\Total Uninstall 6.lnk -> C:\Program Files\Total Uninstall 6\Tu.exe (Gavrila Martau) Shortcut: C:\Users\Public\Desktop\UltData - Windows.lnk -> C:\Program Files (x86)\UltData - Windows\NetFrameCheck.exe (Tenorshare Co.Ltd) Shortcut: C:\Users\Public\Desktop\VLC media player.lnk -> C:\Program Files (x86)\adslTV\VLC\vlc.exe (VideoLAN) Shortcut: C:\Users\Public\Desktop\WinZip.lnk -> C:\Program Files (x86)\WinZip\WINZIP32.EXE (WinZip Computing LP) Shortcut: C:\Users\Thierry\Links\Desktop.lnk -> C:\Users\Thierry\Desktop () Shortcut: C:\Users\Thierry\Links\Downloads.lnk -> C:\Users\Thierry\Downloads () Shortcut: C:\Users\Thierry\Links\RecentPlaces.lnk -> [::{22877A6D-37A1-461A-91B0-DBDA5AAEBC99}] Shortcut: C:\Users\Thierry\Desktop\adsl TV.lnk -> C:\Program Files (x86)\adslTV\adsltv.exe (adsl TV / FM) Shortcut: C:\Users\Thierry\Desktop\Bureau - Raccourci.lnk -> C:\Users\Thierry\Desktop () Shortcut: C:\Users\Thierry\Desktop\Ce PC - Raccourci.lnk -> [LFPO :i+00Lj1SPS0%G`Ce PC1Dossier systme1SPSjc(=Oe)::{20D04FE0-3AEA-1069-A2D8-08002B30309D}U1SPSOh+'9Poste de travail] Shortcut: C:\Users\Thierry\Desktop\Clementine.lnk -> C:\Program Files (x86)\Clementine\clementine.exe (Clementine) Shortcut: C:\Users\Thierry\Desktop\Dame de Pique.lnk -> [LF4BEM84VAPPS1SPSU(Ly9K-y426720RandomSaladGamesLLC.HeartsDeluxe_kx24dqmazqk8jB26720RandomSaladGamesLLC.HeartsDeluxe_4.3.0.16_x64__kx24dqmazqk8j826720RandomSaladGamesLLC.HeartsDeluxe_kx24dqmazqk8j!App_C:\Program Files\WindowsApps\26720RandomSaladGamesLLC.HeartsDeluxe_4.3.0.16_x64__kx24dqmazqk8j1SPSMԆi [LF> !:i+00qǬp2_'N^jf!_'4_%AX# ^Ln)p&EthernetRealtek PCIe GBE Family Controller #24_%AX# Network Connection] Shortcut: C:\Users\Thierry\Desktop\Fax - Raccourci.lnk -> [LFph&DqdɆ!9qXf}:$D$i\zgE1SPSOxJJRMRnW1ZPrintFax.FAX8]9%C:\Windows\System32\DDORes.dll,-2412e1SPS;jeCwJ@JI Microsoft Shared Fax Driver51SPS0%G`Fax1SPSp`G9ѣùTProvider\Microsoft.Base.DevQueryObjects//DDO:{9F93BEBB-76BA-11E6-BBA2-7824AFA06E64}1SPSjc(=OZProvider%5CMicrosoft.Base.DevQueryObjects//DDO:%7B9F93BEBB-76BA-11E6-BBA2-7824AFA06E64%7D91SPS~?'HlHvx$ndE1SPSԍО:.F{ck%v)Imprimantes] (Pas de fichier) Shortcut: C:\Users\Thierry\Desktop\FAX Utility.lnk -> C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXCNT.exe (SEIKO EPSON CORPORATION) Shortcut: C:\Users\Thierry\Desktop\films par genre.lnk -> H:\ () Shortcut: C:\Users\Thierry\Desktop\Free Tarot.lnk -> C:\Program Files (x86)\Free Tarot\FreeTarot.exe (Pellenc Software) Shortcut: C:\Users\Thierry\Desktop\FreeOCR.lnk -> C:\FreeOCR\FreeOCR.exe () Shortcut: C:\Users\Thierry\Desktop\Images - Raccourci.lnk -> C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Libraries\Pictures.library-ms () Shortcut: C:\Users\Thierry\Desktop\KMPlayer.lnk -> C:\KMPlayer\KMPlayer.exe (PandoraTV) Shortcut: C:\Users\Thierry\Desktop\Lecteur de CD.lnk -> E:\ () Shortcut: C:\Users\Thierry\Desktop\Lecteur USB (G) - Raccourci.lnk -> G:\ () Shortcut: C:\Users\Thierry\Desktop\libre.lnk -> J:\ () Shortcut: C:\Users\Thierry\Desktop\Media Player Classic.lnk -> C:\Program Files (x86)\Satsuki Decoder Pack\MPC\mpc-hc.exe (MPC-HC Team) Shortcut: C:\Users\Thierry\Desktop\Microsoft Office Word 2007.lnk -> C:\Windows\Installer\{90120000-0011-0000-0000-0000000FF1CE}\wordicon.exe () Shortcut: C:\Users\Thierry\Desktop\Microsoft Solitaire Collection.lnk -> Tile and icon assets Shortcut: C:\Users\Thierry\Desktop\MPC-HC x64.lnk -> C:\Program Files\MPC-HC\mpc-hc64.exe (MPC-HC Team) Shortcut: C:\Users\Thierry\Desktop\PeerBlock.lnk -> C:\Program Files\PeerBlock\peerblock.exe (PeerBlock, LLC) Shortcut: C:\Users\Thierry\Desktop\RAMIUS (1).lnk -> [LF0X,!PCsg<;I1SPS՜.+,-Ordinateur1SPSsCCOi܆3nVProvider\Microsoft.Networking.Netbios//Microsoft Windows Network::\\WORKGROUP\\RAMIUS=1SPS0%G`!RAMIUSA1SPS\SDV.=%WORKGROUP1SPS;jeCwJ@J-1SPS:޳7CD)\\RAMIUS\\RAMIUS=1SPS0%G`!RAMIUSA1SPSjc(=O%\\RAMIUS] Shortcut: C:\Users\Thierry\Desktop\RAMIUS (2).lnk -> [LF(X,!PCsg<;I1SPS՜.+,-Ordinateur1SPSsCCOi܆3nTProvider\Microsoft.Networking.Netbios//Microsoft Windows Network::\\WORKGROUP\\TITI91SPS0%G`TITIA1SPS\SDV.=%WORKGROUP1SPS;jeCwJ@J-1SPS:޳7CD)\\TITI\\TITI91SPS0%G`TITI=1SPSjc(=O!\\TITI] Shortcut: C:\Users\Thierry\Desktop\Réseau - Raccourci.lnk -> [LFX,!PCsg [LF,X,!PCsg<;I1SPS՜.+,-Ordinateur1SPSsCCOi܆3nUProvider\Microsoft.Networking.Netbios//Microsoft Windows Network::\\WORKGROUP\\SALON91SPS0%G`SALONA1SPS\SDV.=%WORKGROUP1SPS;jeCwJ@J-1SPS:޳7CD)\\SALON\\SALON91SPS0%G`SALON=1SPSjc(=O!\\SALON] Shortcut: C:\Users\Thierry\Desktop\series.lnk -> I:\ () Shortcut: C:\Users\Thierry\Desktop\Should I Remove It.lnk -> C:\Program Files (x86)\Reason\Should I Remove It\ShouldIRemoveIt.exe (Reason Software Company Inc.) Shortcut: C:\Users\Thierry\Desktop\Spybot-S&D Start Center.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe (Safer-Networking Ltd.) Shortcut: C:\Users\Thierry\Desktop\star trek series et films.lnk -> K:\ () Shortcut: C:\Users\Thierry\Desktop\Start Unlocker.lnk -> C:\Program Files\Unlocker\Unlocker.exe () Shortcut: C:\Users\Thierry\Desktop\systeme d'exploitation.lnk -> C:\ () Shortcut: C:\Users\Thierry\Desktop\telechargement films et series.lnk -> D:\ () Shortcut: C:\Users\Thierry\Desktop\TITI2.lnk -> [LF,X,!PCsg<;I1SPS՜.+,-Ordinateur1SPSsCCOi܆3nUProvider\Microsoft.Networking.Netbios//Microsoft Windows Network::\\WORKGROUP\\TITI291SPS0%G`TITI2A1SPS\SDV.=%WORKGROUP1SPS;jeCwJ@J-1SPS:޳7CD)\\TITI2\\TITI291SPS0%G`TITI2=1SPSjc(=O!\\TITI2] Shortcut: C:\Users\Thierry\Desktop\Téléchargements - Raccourci.lnk -> C:\Users\Thierry\Downloads () Shortcut: C:\Users\Thierry\Desktop\Ultracopier.lnk -> C:\Program Files (x86)\Ultracopier\ultracopier.exe (ultracopier.first-world.info) Shortcut: C:\Users\Thierry\Desktop\Vectir.lnk -> C:\Program Files (x86)\Vectir\Vectir.exe (Incendo Technology) Shortcut: C:\Users\Thierry\Desktop\yWriter5.lnk -> C:\Program Files (x86)\yWriter5\yWriter5.exe (Spacejock Software) Shortcut: C:\Users\Thierry\Desktop\ZHPCleaner.lnk -> C:\Users\Thierry\AppData\Roaming\ZHP\ZHPCleaner.exe (Nicolas Coolman) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -> C:\Users\Thierry\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk -> C:\Users\Thierry\Documents () Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk -> C:\Users\Thierry\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk -> C:\Users\Thierry\Pictures () Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\~Nero\Nero StartSmart.lnk -> C:\Program Files (x86)\Ahead\Nero StartSmart\NeroStartSmart.exe (Ahead Software AG) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\~Nero\Nero 6 Ultra Edition\Nero BackItUp.lnk -> C:\Program Files (x86)\Ahead\Nero BackItUp\BackItUp.exe (Ahead Software AG) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\~Nero\Nero 6 Ultra Edition\Nero Cover Designer.lnk -> C:\Program Files (x86)\Ahead\CoverDesigner\CoverDes.exe (Ahead Software AG) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\~Nero\Nero 6 Enterprise Edition\Nero Cover Designer.lnk -> C:\Program Files (x86)\Ahead\CoverDesigner\CoverDes.exe (Ahead Software AG) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Aide de WinRAR.lnk -> C:\Program Files (x86)\WinRAR\winrar.chm () Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Manuel de la console RAR.lnk -> C:\Program Files (x86)\WinRAR\Rar.txt () Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\Quelles sont les nouveautés de la dernière version.lnk -> C:\Program Files (x86)\WinRAR\WhatsNew.txt () Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR\WinRAR.lnk -> C:\Program Files (x86)\WinRAR\WinRAR.exe (Alexander Roshal) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker\README.lnk -> C:\Program Files\Unlocker\README.TXT () Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker\Start Unlocker.lnk -> C:\Program Files\Unlocker\Unlocker.exe () Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker\Uninstall.lnk -> C:\Program Files\Unlocker\uninst.exe () Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker\Website.lnk -> C:\Program Files\Unlocker\Unlocker.url () Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ultracopier\Ultracopier.lnk -> C:\Program Files (x86)\Ultracopier\ultracopier.exe (ultracopier.first-world.info) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer\KMPlayer.lnk -> C:\KMPlayer\KMPlayer.exe (PandoraTV) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer\Uninstall KMPlayer.lnk -> C:\KMPlayer\uninstall.exe (PandoraTV) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-30 Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Supercopier\Supercopier.lnk -> C:\Program Files\Supercopier\supercopier.exe (ultracopier.first-world.info) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Supercopier\Uninstall.lnk -> C:\Program Files\Supercopier\uninst.exe () Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spacejock Software\Sample Project.lnk -> C:\Users\Thierry\Documents\yWriter5 Sample\yW5 Sample Project.yw5 () Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spacejock Software\yWriter5\Help File.lnk -> C:\Program Files (x86)\yWriter5\Help\index.htm () Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spacejock Software\yWriter5\Quickstart Guide.lnk -> C:\Program Files (x86)\yWriter5\yWriter5Guide.pdf () Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spacejock Software\yWriter5\Spacejock Web Page.lnk -> C:\Program Files (x86)\yWriter5\yWriter5.url () Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spacejock Software\yWriter5\Uninstall yWriter5.lnk -> C:\Program Files (x86)\yWriter5\unins000.exe () Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spacejock Software\yWriter5\yWriter5.lnk -> C:\Program Files (x86)\yWriter5\yWriter5.exe (Spacejock Software) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Should I Remove It\Should I Remove It.lnk -> C:\Program Files (x86)\Reason\Should I Remove It\ShouldIRemoveIt.exe (Reason Software Company Inc.) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free Tarot\Désinstallation.lnk -> C:\Program Files (x86)\Free Tarot\uninstall.exe () Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free Tarot\Free Tarot.lnk -> C:\Program Files (x86)\Free Tarot\FreeTarot.exe (Pellenc Software) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free Belote\Désinstallation.lnk -> C:\Program Files (x86)\Free Belote\uninstall.exe () Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free Belote\Free Belote.lnk -> C:\Program Files (x86)\Free Belote\FreeBelote.exe (Pellenc Software) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\adsl TV\adsl TV.lnk -> C:\Program Files (x86)\adslTV\adsltv.exe (adsl TV / FM) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\adsl TV\Aide adsl TV.lnk -> C:\Program Files (x86)\adslTV\adsltv-r.exe (adsl TV / FM) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\adsl TV\Forums adsl TV.lnk -> C:\Program Files (x86)\adslTV\adsltv-r.exe (adsl TV / FM) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\adsl TV\Réinitialiser adsl TV.lnk -> C:\Program Files (x86)\adslTV\adsltv-r.exe (adsl TV / FM) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\adsl TV\Site adsl TV.lnk -> C:\Program Files (x86)\adslTV\adsltv-r.exe (adsl TV / FM) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\adsl TV\Site VideoLAN (VLC).lnk -> C:\Program Files (x86)\adslTV\VLC\vlc.exe (VideoLAN) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\adsl TV\Skins adsl TV.lnk -> C:\Program Files (x86)\adslTV\adsltv-r.exe (adsl TV / FM) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\adsl TV\VLC.lnk -> C:\Program Files (x86)\adslTV\VLC\vlc.exe (VideoLAN) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\internet explorer\iexplore.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\SendTo\Transfert de fichiers Bluetooth.LNK -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\ImprimChèques.lnk -> C:\Program Files (x86)\La Limace Folle\ImprimCheques\ImprimCheques.exe (lalimacefolle.free.fr) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Navigateur Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Software Ltd) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Free Belote.lnk -> C:\Program Files (x86)\Free Belote\FreeBelote.exe (Pellenc Software) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Navigateur Opera.lnk -> C:\Program Files (x86)\Opera\launcher.exe (Opera Software) Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc () Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.ZuneVideo_8wekyb3d8bbwe\Microsoft.ZuneVideo.lnk -> Tile and icon assets Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.ZuneMusic_8wekyb3d8bbwe\Microsoft.ZuneMusic.lnk -> Tile and icon assets Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.XboxLIVEGames_8wekyb3d8bbwe\Microsoft.XboxLIVEGames.lnk -> Tile and icon assets Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.WindowsSoundRecorder_8wekyb3d8bbwe\App.lnk -> Tile and icon assets Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.WindowsScan_8wekyb3d8bbwe\App.lnk -> Tile and icon assets Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.WindowsReadingList_8wekyb3d8bbwe\Microsoft.WindowsReadingList.lnk -> Tile and icon assets Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\Application Shortcuts\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Microsoft.WindowsLive.Calendar.lnk -> [LFz1SPSU(Ly9K-u2microsoft.windowscommunicationsapps_8wekyb3d8bbweGmicrosoft.windowscommunicationsapps_17.5.9600.20413_x64__8wekyb3d8bbweQmicrosoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.CalendardC:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20413_x64__8wekyb3d8bbwe1SPSMԆi [LF1SPSU(Ly9K-u2microsoft.windowscommunicationsapps_8wekyb3d8bbweGmicrosoft.windowscommunicationsapps_17.5.9600.20413_x64__8wekyb3d8bbweMmicrosoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.MaildC:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20413_x64__8wekyb3d8bbwev1SPSMԆi [LFr1SPSU(Ly9K-u2microsoft.windowscommunicationsapps_8wekyb3d8bbweGmicrosoft.windowscommunicationsapps_17.5.9600.20413_x64__8wekyb3d8bbweOmicrosoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.PeopledC:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20413_x64__8wekyb3d8bbwe1SPSMԆi Tile and icon assets Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.WindowsAlarms_8wekyb3d8bbwe\App.lnk -> Tile and icon assets Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.SkypeApp_kzf8qxf38zg5c\App.lnk -> Tile and icon assets Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.Reader_8wekyb3d8bbwe\Microsoft.Reader.lnk -> Tile and icon assets Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.Office.OneNote_8wekyb3d8bbwe\microsoft.onenoteim.lnk -> Tile and icon assets Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.HelpAndTips_8wekyb3d8bbwe\HelpAndTips.lnk -> Tile and icon assets Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.BingWeather_8wekyb3d8bbwe\App.lnk -> Tile and icon assets Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.BingTravel_8wekyb3d8bbwe\AppexTravel.lnk -> Tile and icon assets Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.BingSports_8wekyb3d8bbwe\AppexSports.lnk -> Tile and icon assets Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.BingNews_8wekyb3d8bbwe\AppexNews.lnk -> Tile and icon assets Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.BingMaps_8wekyb3d8bbwe\AppexMaps.lnk -> Tile and icon assets Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.BingHealthAndFitness_8wekyb3d8bbwe\AppexHealthAndFitness.lnk -> Tile and icon assets Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.BingFoodAndDrink_8wekyb3d8bbwe\AppexFoodAndDrink.lnk -> Tile and icon assets Shortcut: C:\Users\Thierry\AppData\Local\Microsoft\Windows\Application Shortcuts\Microsoft.BingFinance_8wekyb3d8bbwe\AppexFinance.lnk -> Tile and icon assets Shortcut: C:\Users\Thierry\3D Objects\Bureau - Raccourci.lnk -> C:\Users\Thierry\Desktop () ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1 ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player - reset preferences and cache files.lnk -> C:\Program Files (x86)\adslTV\VLC\vlc.exe (VideoLAN) -> --reset-config --reset-plugins-cache vlc://quit ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player skinned.lnk -> C:\Program Files (x86)\adslTV\VLC\vlc.exe (VideoLAN) -> -Iskins ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /7 ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp\Avast Cleanup Premium.lnk -> C:\Program Files (x86)\AVAST Software\Avast Cleanup\TuneupUI.exe (AVAST Software) -> /nogui ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp\Avast SecureLine VPN.lnk -> C:\Program Files\AVAST Software\SecureLine\Vpn.exe (AVAST Software) -> /nogui ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OnScreen Control\Désinstaller OnScreen Control.lnk -> C:\Program Files (x86)\InstallShield Installation Information\{E5C1B339-0E4E-49A5-859E-5E1DE1938706}\setup.exe (LG Electronics Inc) -> /L0x040c /removeonly ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes\Uninstall Malwarebytes.lnk -> C:\Program Files\Malwarebytes\Anti-Malware\unins001.exe () -> /LOG ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 6.2\LibreOffice (Safe Mode).lnk -> C:\Program Files\LibreOffice\program\soffice.exe (The Document Foundation) -> --safe-mode ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\A propos de Java.lnk -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\javacpl.exe (Oracle Corporation) -> -tab about ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Rechercher les mises à jour.lnk -> C:\Program Files (x86)\Java\jre1.8.0_221\bin\javacpl.exe (Oracle Corporation) -> -tab update ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software\EPSON Software Updater.lnk -> C:\Program Files (x86)\Epson Software\Download Navigator\EPSDNAVI.EXE (Seiko Epson Corporation) -> /ST ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software\Manuels EPSON.lnk -> C:\Program Files (x86)\Epson Software\Epson Manual\Launcher\EPSMLAN.EXE (Seiko Epson Corporation) -> /LA "FR" /FR "STARTMENU" ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON\MyEpson Portal.lnk -> C:\Program Files (x86)\epson\MyEpson Portal\mep.exe (Seiko Epson Corporation) -> /S ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\e-Carte Bleue La Banque Postale\Uninstall e-Carte Bleue La Banque Postale.lnk -> C:\Windows\SysWOW64\msiexec.exe (Microsoft Corporation) -> /x {73734A45-6D87-4624-9EE9-8CC9291FFC12} ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dragon NaturallySpeaking\Afficher le fichier journal d'installation.lnk -> C:\Windows\Installer\{33EA20FB-5389-4938-BA59-2BCD9BB68F41}\Setuplog_Shortcut_33EA20FB53894938BA592BCD9BB68F41.exe (Flexera Software LLC) -> /findsetuplog ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dragon NaturallySpeaking\Afficher le fichier journal Dragon.lnk -> C:\Windows\Installer\{33EA20FB-5389-4938-BA59-2BCD9BB68F41}\Dragonlog_Shortcut_33EA20FB53894938BA592BCD9BB68F41.exe (Flexera Software LLC) -> /finddragonlog ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dragon NaturallySpeaking\À propos de Dragon NaturallySpeaking.lnk -> C:\Windows\Installer\{33EA20FB-5389-4938-BA59-2BCD9BB68F41}\About_Shortcut_33EA20FB53894938BA592BCD9BB68F41.exe (Flexera Software LLC) -> /About ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dragon NaturallySpeaking\Outils Dragon NaturallySpeaking\Dragon service.lnk -> C:\Windows\SysWOW64\cmd.exe (Microsoft Corporation) -> /k "C:\Program Files (x86)\Common Files\Nuance\dgnsvc.exe" ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis\True Image\Tools and Utilities\Acronis DriveCleanser.lnk -> C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageTools.exe () -> /drive_cleanser ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis\True Image\Tools and Utilities\Acronis Secure Zone.lnk -> C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageTools.exe () -> /manage_asz ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis\True Image\Tools and Utilities\Acronis Startup Recovery Manager.lnk -> C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageTools.exe () -> /asz_recovery_manager ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis\True Image\Tools and Utilities\Add New Disk.lnk -> C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageTools.exe () -> /add_new_disk ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis\True Image\Tools and Utilities\Clone Disk.lnk -> C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageTools.exe () -> /clone_disk ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis\True Image\Tools and Utilities\System Clean-up.lnk -> C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageTools.exe () -> /system_cleanup ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis\True Image\Tools and Utilities\Try&Decide.lnk -> C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageTools.exe () -> /tnd_tool ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1 ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\TeamViewer.lnk -> C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH) -> --sendto ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - NetworkStatus.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageNetworkStatus ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\06 - SystemAbout.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPagePCSystemInfo ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\08 - PowerAndSleep.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageScreenPowerAndSleep ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\10 - AppsAndFeatures.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsSizes ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0} ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0} ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1} ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0 ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257} ShortcutWithArgument: C:\Users\Public\Desktop\Manuels EPSON.lnk -> C:\Program Files (x86)\Epson Software\Epson Manual\Launcher\EPSMLAN.EXE (Seiko Epson Corporation) -> /LA "FR" /FR "DESKTOP" ShortcutWithArgument: C:\Users\Public\Desktop\MyEpson Portal.lnk -> C:\Program Files (x86)\epson\MyEpson Portal\mep.exe (Seiko Epson Corporation) -> /S ShortcutWithArgument: C:\Users\Thierry\Desktop\Avast Passwords.lnk -> C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software) -> /pam ShortcutWithArgument: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Avast Passwords.lnk -> C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software) -> /pam ShortcutWithArgument: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Should I Remove It\Uninstall.lnk -> C:\Windows\SysWOW64\msiexec.exe (Microsoft Corporation) -> /x {4E62123C-4C0D-4123-A8A2-C0103B92D7EA} ShortcutWithArgument: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\adsl TV\Désinstaller adsl TV.lnk -> C:\Program Files (x86)\adslTV\Uninstall.exe () -> -u ShortcutWithArgument: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\SendTo\Destinataire de télécopie.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo ShortcutWithArgument: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo ShortcutWithArgument: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\SendTo\TeamViewer.lnk -> C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH) -> --sendto ShortcutWithArgument: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E} ShortcutWithArgument: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - NetworkStatus.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageNetworkStatus ShortcutWithArgument: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager ShortcutWithArgument: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System ShortcutWithArgument: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group3\06 - SystemAbout.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPagePCSystemInfo ShortcutWithArgument: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions ShortcutWithArgument: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group3\08 - PowerAndSleep.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageScreenPowerAndSleep ShortcutWithArgument: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group3\10 - AppsAndFeatures.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsSizes ShortcutWithArgument: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures ShortcutWithArgument: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0} ShortcutWithArgument: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0} ShortcutWithArgument: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1} ShortcutWithArgument: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0 ShortcutWithArgument: C:\Users\Thierry\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257} InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vectir\Page d'accueil de Vectir.url -> URL: hxxp://www.vectir.com/ InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy\Speccy Homepage.url -> URL: hxxp://www.piriform.com/speccy InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva\Recuva Homepage.url -> URL: hxxp://www.piriform.com/recuva InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PeerBlock\Help and Support\Forums.url -> URL: hxxp://forums.peerblock.com/ InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PeerBlock\Help and Support\Homepage.url -> URL: hxxp://www.peerblock.com/ InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PeerBlock\Help and Support\User Manual.url -> URL: hxxp://www.peerblock.com/userguide InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC x64\Page d'accueil de MPC-HC.url -> URL: hxxps://mpc-hc.org/ InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Obtenir de l'aide.url -> URL: hxxp://java.com/help InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Visiter le site Java.com.url -> URL: hxxp://java.com/ InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImprimCheques\Page d'accueil de ImprimChèques.url -> URL: hxxp://lalimacefolle.free.fr/imprimcheques.php InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON\EpsonLink\Epson Connect Site.url -> URL: hxxps://www.epsonconnect.com/?p=0 InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMule\eMule Home Page.url -> URL: hxxp://www.emule-project.net InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMule\Online FAQ.url -> URL: hxxp://www.emule-project.net/faq/ InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler\Defraggler Homepage.url -> URL: hxxp://www.ccleaner.com/defraggler InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner Homepage.url -> URL: hxxp://www.ccleaner.com/ccleaner InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Partition Assistant Standard Edition 5.2\User Help - French.url -> URL: hxxp://www.disk-partition.com/fr/tutorials.html InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Partition Assistant Standard Edition 5.2\Visit our website - French.url -> URL: hxxp://www.disk-partition.com/fr InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis\True Image\User's guide.url -> URL: hxxps://www.acronis.com/redirector/products/atih2019/users_guide_pdf InternetURL: C:\Users\Thierry\Favorites\01net - informatique high-tech actu, produits, téléchargement logiciels et jeux.url -> URL: hxxp://www.01net.com/ InternetURL: C:\Users\Thierry\Favorites\Banque - banque en ligne - La Banque Postale – La Banque Postale.url -> URL: hxxps://www.labanquepostale.fr/ InternetURL: C:\Users\Thierry\Favorites\Bing.url -> URL: hxxp://go.microsoft.com/fwlink/p/?LinkId=255142 InternetURL: C:\Users\Thierry\Favorites\CIBTP-ILE DE FRANCE.url -> URL: hxxps://transac.cibtp-paris.fr/ InternetURL: C:\Users\Thierry\Favorites\Download IObit Freeware.url -> URL: hxxp://www.iobit.com/ InternetURL: C:\Users\Thierry\Favorites\eMule-Island Films, séries, mangas, emissions tv, spectacles sur eMule.url -> URL: hxxp://www.emule-island.ru/ InternetURL: C:\Users\Thierry\Favorites\F1 Grand Prix Streaming En Direct Live -- F1 Grand Prix Diffusion 2Siteweb.url -> BASEURL: hxxp://www.2sw.me/live.php?streaming=F1-Grand-Prix URL: hxxp://www.2sw.me/live.php?streaming=F1-Grand-Prix InternetURL: C:\Users\Thierry\Favorites\LCL Banque et Assurance - Compte, Epargne, Prêt et Assurance.url -> URL: hxxps://particuliers.secure.lcl.fr/index.html InternetURL: C:\Users\Thierry\Favorites\PROGRAMME TV DU 31-10-2015 - Consumer Site.url -> BASEURL: hxxp://tv.eurosport.fr/tvschedule.shtml?_ga=1.106143619.1633819381.1442129660 URL: hxxp://tv.eurosport.fr/tvschedule.shtml?_ga=1.106143619.1633819381.1442129660 InternetURL: C:\Users\Thierry\Favorites\Tarifs postier 2015 pour l'affranchissement. Tarifs postaux, service postal en France..url -> BASEURL: hxxp://www.pese-lettre.com/tarifs.php URL: hxxp://www.pese-lettre.com/tarifs.php InternetURL: C:\Users\Thierry\Favorites\Webmail Free ADSL Freebox - corwin1er.url -> BASEURL: hxxps://imp.free.fr/horde/imp/mailbox.php?mailbox=INBOX&actionID= URL: hxxps://imp.free.fr/horde/imp/mailbox.php?mailbox=INBOX&actionID= InternetURL: C:\Users\Thierry\Favorites\YouTube.url -> URL: hxxps://www.youtube.com/?hl=fr&gl=FR InternetURL: C:\Users\Thierry\Favorites\Acer\Acer.url -> URL: hxxp://www.acer.com InternetURL: C:\Users\Thierry\Desktop\messagerie.url -> URL: hxxps://webmail.free.fr/?_task=mail&_mbox=INBOX InternetURL: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer\KMPlayer Home Page.url -> URL: hxxp://www.kmplayer.com/forums ==================== Fin de Shortcut.txt =============================