Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 12-10-2021 Exécuté par Bobo (administrateur) sur DESKTOP-LRB0SS4 (HP HP ENVY Laptop 13-ah0xxx) (15-10-2021 22:12:45) Exécuté depuis C:\Users\Bobo\Desktop Profils chargés: Bobo Platform: Microsoft Windows 10 Famille Version 20H2 19042.1237 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler64.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_35df954651b1f88f\x64\TouchpointAnalyticsClientService.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4ae87038c758c4f5\x64\AppHelperCap.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4ae87038c758c4f5\x64\BridgeCommunication.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4ae87038c758c4f5\x64\DiagsCap.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4ae87038c758c4f5\x64\NetworkCap.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4ae87038c758c4f5\x64\SysInfoCap.exe (HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPThermalControl_1.10.6.0_x64__v10z8vjag6ke6\HpSystemManagement.exe (HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPThermalControl_1.10.6.0_x64__v10z8vjag6ke6\Win32Process\HPCC.Bg.BackgroundApp.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_167a1a0325242e3d\aesm_service.exe (Intel Corporation -> Intel(R) Corporation) C:\Windows\SysWOW64\XtuService.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_b8e01d9e8716d2a7\igfxCUIService.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_b8e01d9e8716d2a7\igfxEM.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_54b736e5be5b50b2\OneApp.IGCC.WinService.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a086f01cc7be643a\IntelCpHDCPSvc.exe (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2109.6305.0_x64__8wekyb3d8bbwe\Cortana.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowsstore_12107.1001.15.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\HelpPane.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MpCopyAccelerator.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\NisSrv.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <11> (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2> (Sound Research Corporation -> Sound Research, Corp.) C:\Windows\System32\SECOMN64.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnh.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnhService.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [881440 2019-06-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKU\S-1-5-21-2516496672-807159482-223521202-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2340200 2021-10-12] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2516496672-807159482-223521202-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Bobo\AppData\Local\Microsoft\Teams\Update.exe [2455256 2021-10-11] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-2516496672-807159482-223521202-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [35093120 2021-09-10] (Piriform Software Ltd -> Piriform Software Ltd) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\94.0.4606.81\Installer\chrmstp.exe [2021-10-10] (Google LLC -> Google LLC) ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {4309D469-1919-4AA8-92CF-CE692D8F0235} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [680888 2021-10-07] (Mozilla Corporation -> Mozilla Foundation) Task: {457E025D-A003-4CE2-B93F-B7441491BCF3} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [134488 2021-10-08] (Microsoft Corporation -> Microsoft Corporation) Task: {4BD7AC7D-65BE-4F17-B8C2-B5A5EC537DA4} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-09-10] (Piriform Software Ltd -> Piriform) Task: {6BFA675C-6398-4C85-A568-888D8B5A12EF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [5729184 2021-10-08] (Microsoft Corporation -> Microsoft Corporation) Task: {72D18447-CBF0-4E70-AB41-4F9114FC0CE6} - System32\Tasks\CCleanerSkipUAC - Bobo => C:\Program Files\CCleaner\CCleaner.exe [29155968 2021-09-10] (Piriform Software Ltd -> Piriform Software Ltd) Task: {84DB792C-50BF-44D5-9C97-E4D57E2F9B94} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MpCmdRun.exe [884544 2021-10-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {8EA096F9-78C4-40CB-9D2D-0B0A4B612429} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [21976976 2021-09-25] (Microsoft Corporation -> Microsoft Corporation) Task: {9BFC167F-E0D3-4237-95C1-75C0B80F5495} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {A3F575B1-7D3C-49DE-826E-61BA45EDE26D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-10-10] (Google LLC -> Google LLC) Task: {A413F567-BCE5-45F7-ADF9-0EB054830CA1} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-10-10] (Google LLC -> Google LLC) Task: {B1B2ACFE-0CD1-4439-96A4-8B78D3F225C4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MpCmdRun.exe [884544 2021-10-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {BDEA1FA8-5DE3-4CC3-A88A-3A4CC6631F8F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MpCmdRun.exe [884544 2021-10-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C9A830C6-5FFF-4DE2-8736-C99FFE4B1134} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [5729184 2021-10-08] (Microsoft Corporation -> Microsoft Corporation) Task: {D101F545-04A7-4B59-A71B-C0101B9E7A3A} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [134488 2021-10-08] (Microsoft Corporation -> Microsoft Corporation) Task: {D59C61E0-0BBA-44E6-9D4C-EC40C1B4D957} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [3977576 2021-10-12] (Microsoft Corporation -> Microsoft Corporation) Task: {DC2E7E49-7E7B-49E0-9D22-DDF50982FC4F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MpCmdRun.exe [884544 2021-10-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {ECBF6BBC-E8A2-4090-B896-1D55B27B779F} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [21976976 2021-09-25] (Microsoft Corporation -> Microsoft Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{96916de4-7d07-41a9-937b-7dd6c43d6377}: [DhcpNameServer] 192.168.1.254 FireFox: ======== FF DefaultProfile: 81gcj2hd.default FF ProfilePath: C:\Users\Bobo\AppData\Roaming\Mozilla\Firefox\Profiles\81gcj2hd.default [2021-09-15] FF ProfilePath: C:\Users\Bobo\AppData\Roaming\Mozilla\Firefox\Profiles\wfve4zic.default-release [2021-10-15] FF Session Restore: Mozilla\Firefox\Profiles\wfve4zic.default-release -> est activé. FF HomepageOverride: Mozilla\Firefox\Profiles\wfve4zic.default-release -> Enabled: nortonhomepage@symantec.com FF NewTabOverride: Mozilla\Firefox\Profiles\wfve4zic.default-release -> Enabled: nortonhomepage@symantec.com FF NewTabOverride: Mozilla\Firefox\Profiles\wfve4zic.default-release -> Disabled: nortonsafesearch_ul_2@symantec.com FF Extension: (Norton Password Manager) - C:\Users\Bobo\AppData\Roaming\Mozilla\Firefox\Profiles\wfve4zic.default-release\Extensions\idsafe@norton.com.xpi [2021-09-15] FF Extension: (Norton Home Page) - C:\Users\Bobo\AppData\Roaming\Mozilla\Firefox\Profiles\wfve4zic.default-release\Extensions\nortonhomepage@symantec.com.xpi [2021-09-15] [UpdateUrl:hxxps://static.nortoncdn.com/idscp/firefox/nsss/hp/updates.json] FF Extension: (Norton Safe Search) - C:\Users\Bobo\AppData\Roaming\Mozilla\Firefox\Profiles\wfve4zic.default-release\Extensions\nortonsafesearch_ul_2@symantec.com.xpi [2021-09-15] [UpdateUrl:hxxps://static.nortoncdn.com/idscp/firefox/nsss/ds_modified/updates.json] FF Extension: (Norton Safe Web) - C:\Users\Bobo\AppData\Roaming\Mozilla\Firefox\Profiles\wfve4zic.default-release\Extensions\nortonsafeweb@symantec.com.xpi [2021-09-15] FF Extension: (Sahara Sand) - C:\Users\Bobo\AppData\Roaming\Mozilla\Firefox\Profiles\wfve4zic.default-release\Extensions\{2ddbcb89-c6c1-4c0e-a146-21ba9bcd99ef}.xpi [2021-09-16] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-09-15] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2021-09-15] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-09-15] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR Profile: C:\Users\Bobo\AppData\Local\Google\Chrome\User Data\Default [2021-10-15] CHR Extension: (Slides) - C:\Users\Bobo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-10-10] CHR Extension: (Docs) - C:\Users\Bobo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-10-10] CHR Extension: (Google Drive) - C:\Users\Bobo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-10-10] CHR Extension: (YouTube) - C:\Users\Bobo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-10-10] CHR Extension: (Sheets) - C:\Users\Bobo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-10-10] CHR Extension: (Google Docs hors connexion) - C:\Users\Bobo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-10-15] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Bobo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-10-10] CHR Extension: (Gmail) - C:\Users\Bobo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-10-10] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9250696 2021-10-01] (Microsoft Corporation -> Microsoft Corporation) S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\21.196.0921.0007\FileSyncHelper.exe [3252584 2021-10-12] (Microsoft Corporation -> Microsoft Corporation) R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4ae87038c758c4f5\x64\AppHelperCap.exe [744000 2021-08-27] (HP Inc. -> HP Inc.) R2 HPDiagsCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4ae87038c758c4f5\x64\DiagsCap.exe [742480 2021-08-27] (HP Inc. -> HP Inc.) R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4ae87038c758c4f5\x64\NetworkCap.exe [742488 2021-08-27] (HP Inc. -> HP Inc.) R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_4ae87038c758c4f5\x64\SysInfoCap.exe [743512 2021-08-27] (HP Inc. -> HP Inc.) R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_35df954651b1f88f\x64\TouchpointAnalyticsClientService.exe [489584 2021-06-18] (HP Inc. -> HP Inc.) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\21.196.0921.0007\OneDriveUpdaterService.exe [3721576 2021-10-12] (Microsoft Corporation -> Microsoft Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\NisSrv.exe [2855512 2021-10-06] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2109.6-0\MsMpEng.exe [128392 2021-10-06] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [159864 2021-06-29] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1f5602eb8a12ac4c\x64\hpcustomcapdriver.sys [23960 2018-07-06] (HP Inc. -> HP Inc.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48520 2021-10-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [434424 2021-10-06] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [86264 2021-10-06] (Microsoft Windows -> Microsoft Corporation) R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [35392 2020-06-08] (HP Inc. -> HP) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Trois mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-10-15 22:12 - 2021-10-15 22:13 - 000017813 _____ C:\Users\Bobo\Desktop\FRST.txt 2021-10-15 22:11 - 2021-10-15 22:11 - 000000000 ____D C:\Users\Bobo\Desktop\FRST-OlderVersion 2021-10-15 21:55 - 2021-10-15 21:55 - 000231068 _____ C:\Users\Bobo\Desktop\ZHPDiag.txt 2021-10-15 21:46 - 2021-10-15 21:46 - 000002468 _____ C:\Users\Bobo\Desktop\ZHPCleaner (R).txt 2021-10-15 21:42 - 2021-10-15 21:42 - 000002353 _____ C:\Users\Bobo\Desktop\ZHPCleaner (S).txt 2021-10-15 21:23 - 2021-10-15 21:23 - 000002914 _____ C:\Users\Bobo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk 2021-10-15 21:23 - 2021-10-15 21:23 - 000002908 _____ C:\Users\Bobo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Outlook.lnk 2021-10-15 21:23 - 2021-10-15 21:23 - 000002904 _____ C:\Users\Bobo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Excel.lnk 2021-10-15 21:23 - 2021-10-15 21:23 - 000002902 _____ C:\Users\Bobo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Word.lnk 2021-10-15 21:22 - 2021-10-15 21:22 - 000003170 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateBrowserReplacementTask 2021-10-15 21:09 - 2021-10-15 21:09 - 000000000 ___HD C:\$WinREAgent 2021-10-15 20:29 - 2021-10-15 21:29 - 000000000 ____D C:\Program Files\CCleaner 2021-10-15 20:29 - 2021-10-15 21:19 - 000000000 ____D C:\ProgramData\AVG 2021-10-15 20:29 - 2021-10-15 20:29 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2021-10-15 20:29 - 2021-10-15 20:29 - 000002900 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - Bobo 2021-10-15 20:29 - 2021-10-15 20:29 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk 2021-10-15 20:29 - 2021-10-15 20:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2021-10-15 16:17 - 2021-10-15 20:17 - 000003634 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-10-15 16:17 - 2021-10-15 20:17 - 000003510 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-10-14 18:03 - 2021-10-14 18:03 - 001365156 _____ C:\Users\Bobo\Downloads\GarciaChauvet-slides.pdf 2021-10-13 21:32 - 2021-10-13 21:32 - 000609975 _____ C:\Users\Bobo\Downloads\AV ingénieur de données NexSis.pdf 2021-10-13 16:33 - 2021-10-13 16:33 - 000245172 _____ C:\Users\Bobo\Downloads\titre de séjour(1).pdf 2021-10-12 21:29 - 2021-10-12 21:29 - 000282285 _____ C:\Users\Bobo\Downloads\ActesSELF2016-759-770.pdf 2021-10-12 20:04 - 2021-10-12 20:05 - 000000000 ____D C:\Users\Bobo\Documents\Document 2021-10-10 19:19 - 2021-10-14 20:59 - 000000000 ____D C:\Users\Bobo\Documents\APS 2021-10-10 14:18 - 2021-10-10 14:18 - 000002317 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2021-10-10 14:18 - 2021-10-10 14:18 - 000002276 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2021-10-10 14:17 - 2021-10-15 21:29 - 000000000 ____D C:\Program Files (x86)\Google 2021-10-10 14:17 - 2021-10-11 20:49 - 000000000 ____D C:\Users\Bobo\AppData\Local\Google 2021-10-10 14:17 - 2021-10-10 14:17 - 000003590 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2021-10-10 14:17 - 2021-10-10 14:17 - 000003466 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2021-10-10 14:17 - 2021-10-10 14:17 - 000000000 ____D C:\Program Files\Google 2021-10-10 14:16 - 2021-10-10 14:16 - 001341272 _____ (Google LLC) C:\Users\Bobo\Downloads\ChromeSetup.exe 2021-10-07 16:47 - 2021-09-06 02:49 - 000286312 _____ (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\IntcAudioBus.sys 2021-10-07 16:47 - 2021-06-29 05:43 - 000159864 _____ (Samsung Electronics Co., Ltd.) C:\WINDOWS\system32\Drivers\ssudbus2.sys 2021-10-07 16:17 - 2021-10-07 16:17 - 000002293 _____ C:\Users\Bobo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StarLeaf.lnk 2021-10-07 16:17 - 2021-10-07 16:17 - 000000000 ____D C:\Users\Bobo\AppData\Local\Pronto 2021-10-07 16:15 - 2021-10-07 16:15 - 002735200 _____ (StarLeaf Ltd.) C:\Users\Bobo\Downloads\StarLeaf Launcher - j-hxcv0q.exe 2021-10-07 16:15 - 2021-10-07 16:15 - 000000000 ____D C:\Users\Bobo\AppData\Local\StarLeaf 2021-10-07 15:19 - 2021-10-15 16:12 - 000000000 ____D C:\Program Files\Mozilla Firefox 2021-10-04 22:02 - 2021-10-04 22:02 - 000000000 ____D C:\Users\Bobo\AppData\Local\mbam 2021-10-04 21:59 - 2021-10-04 21:59 - 002101944 _____ (Malwarebytes) C:\Users\Bobo\Desktop\MBSetup.exe 2021-10-04 21:53 - 2021-10-04 21:54 - 000000000 ____D C:\AdwCleaner 2021-10-04 21:52 - 2021-10-04 21:52 - 008553680 _____ (Malwarebytes) C:\Users\Bobo\Desktop\adwcleaner_8.3.0.exe 2021-10-04 21:34 - 2021-10-04 21:34 - 003289752 _____ (Nicolas Coolman) C:\Users\Bobo\Desktop\ZHPCleaner.exe 2021-10-04 21:34 - 2021-10-04 21:34 - 000000874 _____ C:\Users\Bobo\Desktop\ZHPCleaner.lnk 2021-10-04 17:00 - 2021-10-11 16:12 - 000002359 _____ C:\Users\Bobo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk 2021-10-04 17:00 - 2021-10-11 16:12 - 000002351 _____ C:\Users\Bobo\Desktop\Microsoft Teams.lnk 2021-10-04 17:00 - 2021-10-04 17:00 - 000000000 ____D C:\Users\Bobo\AppData\Roaming\Teams 2021-10-04 16:59 - 2021-10-11 16:12 - 000000000 ____D C:\Users\Bobo\AppData\Local\SquirrelTemp 2021-09-25 11:59 - 2021-10-15 22:13 - 000000000 ____D C:\FRST 2021-09-25 11:58 - 2021-10-15 22:11 - 002310656 _____ (Farbar) C:\Users\Bobo\Desktop\FRST64.exe 2021-09-25 11:50 - 2021-10-15 21:55 - 000000000 ____D C:\Users\Bobo\AppData\Roaming\ZHP 2021-09-25 11:50 - 2021-10-04 21:34 - 000000000 ____D C:\Users\Bobo\AppData\Local\ZHP 2021-09-25 11:50 - 2021-09-25 11:50 - 000000864 _____ C:\Users\Bobo\Desktop\ZHPSuite.lnk 2021-09-25 11:48 - 2021-09-26 13:34 - 000000000 ____D C:\WINDOWS\system32\Tasks\Remediation 2021-09-25 11:46 - 2021-09-25 11:45 - 003476120 _____ (Nicolas Coolman) C:\Users\Bobo\Desktop\ZHPSuite.exe 2021-09-23 07:22 - 2021-09-23 07:22 - 000000000 ____D C:\WINDOWS\system32\N360_BACKUP 2021-09-21 18:47 - 2021-09-21 18:47 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2021-09-20 15:19 - 2021-09-20 15:19 - 000000000 ____D C:\Users\Bobo\AppData\Local\ElevatedDiagnostics 2021-09-19 21:32 - 2021-09-24 21:22 - 000000000 ____D C:\Program Files (x86)\SMADAV 2021-09-19 21:32 - 2021-09-24 21:20 - 000000000 ____D C:\Users\Bobo\AppData\Roaming\Smadav 2021-09-19 21:32 - 2021-09-19 21:32 - 000000000 __SHD C:\[Smad-Cage] 2021-09-19 21:31 - 2021-09-19 21:31 - 006152448 _____ (Smadsoft ) C:\Users\Bobo\Downloads\smadav2021rev1462.exe 2021-09-17 23:25 - 2021-09-17 23:25 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime 2021-09-17 20:00 - 2021-09-17 20:00 - 036174008 _____ (Piriform Software Ltd) C:\Users\Bobo\Downloads\ccsetup585.exe 2021-09-17 19:56 - 2021-10-15 16:12 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2021-09-17 19:45 - 2021-09-17 19:45 - 000000000 ____D C:\Users\Bobo\Documents\Modèles Office personnalisés 2021-09-17 16:29 - 2021-10-15 20:20 - 000000000 ____D C:\Users\Bobo\Documents\COURS 2021-09-17 00:37 - 2021-10-14 18:48 - 000000000 ____D C:\Users\Bobo\Documents\Entretient 2021-09-16 22:10 - 2021-09-16 22:10 - 000000000 ____D C:\Program Files\Common Files\AV 2021-09-15 22:41 - 2021-09-15 22:41 - 000000000 ____D C:\ProgramData\NortonInstaller 2021-09-15 22:32 - 2021-09-26 13:38 - 000000000 ____D C:\ProgramData\Norton 2021-09-15 22:32 - 2021-09-15 22:32 - 000001389 _____ C:\Users\Bobo\Desktop\Norton Installation Files.lnk 2021-09-15 22:32 - 2021-09-15 22:32 - 000000000 ____D C:\Users\Public\Downloads\Norton 2021-09-15 22:31 - 2021-09-15 22:32 - 003806720 _____ (NortonLifeLock Inc.) C:\Users\Bobo\Downloads\NAVPlusDownloader.exe 2021-09-15 22:05 - 2021-10-15 21:48 - 000000000 ____D C:\ProgramData\Mozilla 2021-09-15 22:05 - 2021-10-15 21:47 - 000000000 ____D C:\Users\Bobo\AppData\LocalLow\Mozilla 2021-09-15 22:05 - 2021-10-15 16:12 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-09-15 22:05 - 2021-10-08 13:56 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2021-09-15 22:05 - 2021-10-08 13:56 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2021-09-15 22:05 - 2021-09-15 22:05 - 000000993 _____ C:\Users\Public\Desktop\Firefox.lnk 2021-09-15 22:05 - 2021-09-15 22:05 - 000000000 ____D C:\Users\Bobo\AppData\Roaming\Mozilla 2021-09-15 22:05 - 2021-09-15 22:05 - 000000000 ____D C:\Users\Bobo\AppData\Local\Mozilla 2021-09-15 22:04 - 2021-09-15 22:04 - 000333160 _____ (Mozilla) C:\Users\Bobo\Downloads\Firefox Installer.exe 2021-09-15 21:58 - 2021-09-15 21:58 - 000000000 ____D C:\Users\Bobo\AppData\Local\OneDrive 2021-09-15 18:30 - 2021-09-15 18:30 - 002111488 _____ (Digimarc) C:\WINDOWS\SysWOW64\DMRCDecoder.dll 2021-09-15 18:30 - 2021-09-15 18:30 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2021-09-15 18:30 - 2021-09-15 18:30 - 001313608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2021-09-15 18:30 - 2021-09-15 18:30 - 001164288 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2021-09-15 18:30 - 2021-09-15 18:30 - 000672768 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll 2021-09-15 18:30 - 2021-09-15 18:30 - 000570368 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2021-09-15 18:30 - 2021-09-15 18:30 - 000452096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2021-09-15 18:30 - 2021-09-15 18:30 - 000426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2021-09-15 18:30 - 2021-09-15 18:30 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe 2021-09-15 18:30 - 2021-09-15 18:30 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshom.ocx 2021-09-15 18:30 - 2021-09-15 18:30 - 000011355 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-09-15 18:29 - 2021-09-15 18:29 - 002295296 _____ (Digimarc) C:\WINDOWS\system32\DMRCDecoder.dll 2021-09-15 18:29 - 2021-09-15 18:29 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2021-09-15 18:29 - 2021-09-15 18:29 - 001823304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2021-09-15 18:29 - 2021-09-15 18:29 - 001393480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2021-09-15 18:29 - 2021-09-15 18:29 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2021-09-15 18:29 - 2021-09-15 18:29 - 000272384 _____ C:\WINDOWS\system32\TpmTool.exe 2021-09-15 18:29 - 2021-09-15 18:29 - 000162816 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2021-09-15 18:29 - 2021-09-15 18:29 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshom.ocx 2021-09-15 18:29 - 2021-09-15 18:29 - 000098816 _____ C:\WINDOWS\system32\Drivers\cimfs.sys 2021-09-15 18:24 - 2021-09-15 18:24 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-09-15 16:48 - 2021-09-15 16:48 - 000000000 ____D C:\Users\Bobo\AppData\Local\CEF 2021-09-15 16:43 - 2021-09-15 18:13 - 000000000 ____D C:\ProgramData\Avast Software 2021-09-15 16:17 - 2021-09-15 16:17 - 000232168 _____ (AVAST Software) C:\Users\Bobo\Downloads\avast_free_antivirus_setup_online.exe 2021-09-15 16:15 - 2021-09-15 16:15 - 005794408 _____ (McAfee, LLC) C:\Users\Bobo\Downloads\mcafee_trial_setup_433.0207.3617_key.exe 2021-09-15 16:15 - 2021-09-15 16:15 - 000910056 _____ (McAfee, LLC) C:\Users\Bobo\Downloads\Non confirmé 933967.crdownload 2021-09-15 01:08 - 2021-10-12 15:08 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2021-09-15 01:08 - 2021-10-12 15:08 - 000002170 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-09-15 01:08 - 2021-09-15 01:08 - 000000000 ___RD C:\Users\Default\OneDrive 2021-09-15 01:07 - 2021-09-15 01:07 - 000002546 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype Entreprise.lnk 2021-09-15 01:07 - 2021-09-15 01:07 - 000002472 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk 2021-09-15 01:07 - 2021-09-15 01:07 - 000002472 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk 2021-09-15 01:07 - 2021-09-15 01:07 - 000002455 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk 2021-09-15 01:07 - 2021-09-15 01:07 - 000002445 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk 2021-09-15 01:07 - 2021-09-15 01:07 - 000002445 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk 2021-09-15 01:07 - 2021-09-15 01:07 - 000002433 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk 2021-09-15 01:07 - 2021-09-15 01:07 - 000002395 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk 2021-09-15 01:07 - 2021-09-15 01:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2021-09-15 01:07 - 2021-09-15 01:07 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2021-09-15 00:50 - 2021-09-15 00:50 - 001458285 _____ C:\Users\Bobo\Downloads\NOTICEEUINFORMATIQUEIMPORTANT.pdf 2021-09-15 00:49 - 2021-10-08 14:06 - 000000000 ____D C:\Program Files\Microsoft Office 2021-09-15 00:49 - 2021-09-15 00:49 - 000000000 ____D C:\Program Files\Microsoft Office 15 2021-09-14 23:43 - 2021-09-14 23:43 - 000048700 _____ C:\Users\Bobo\Downloads\AttestationDroits.pdf 2021-09-14 22:05 - 2021-09-14 22:05 - 000367647 _____ C:\Users\Bobo\Downloads\AMOA.docx.pdf 2021-09-14 22:05 - 2021-09-14 22:05 - 000000000 ____D C:\Users\Bobo\Documents\CV 2021-09-14 21:35 - 2021-09-14 21:35 - 000154672 _____ C:\Users\Bobo\Downloads\AMOA.pdf.121797043.pdf 2021-09-14 21:27 - 2021-10-10 14:20 - 000000000 ____D C:\Users\Bobo\AppData\Local\D3DSCache 2021-09-14 20:29 - 2021-09-14 20:29 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsraLegacy.tlb 2021-09-14 20:29 - 2021-09-14 20:29 - 000006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rendezvousSession.tlb 2021-09-14 20:28 - 2021-09-14 20:28 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2021-09-14 20:28 - 2021-09-14 20:28 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2021-09-14 20:28 - 2021-09-14 20:28 - 002371072 _____ C:\WINDOWS\system32\rdpnano.dll 2021-09-14 20:28 - 2021-09-14 20:28 - 001864192 _____ (The ICU Project) C:\WINDOWS\SysWOW64\icu.dll 2021-09-14 20:28 - 2021-09-14 20:28 - 001687040 _____ C:\WINDOWS\system32\libcrypto.dll 2021-09-14 20:28 - 2021-09-14 20:28 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx 2021-09-14 20:28 - 2021-09-14 20:28 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll 2021-09-14 20:28 - 2021-09-14 20:28 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl 2021-09-14 20:28 - 2021-09-14 20:28 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr 2021-09-14 20:28 - 2021-09-14 20:28 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx 2021-09-14 20:28 - 2021-09-14 20:28 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr 2021-09-14 20:28 - 2021-09-14 20:28 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl 2021-09-14 20:28 - 2021-09-14 20:28 - 000468440 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll 2021-09-14 20:28 - 2021-09-14 20:28 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl 2021-09-14 20:28 - 2021-09-14 20:28 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax 2021-09-14 20:28 - 2021-09-14 20:28 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll 2021-09-14 20:28 - 2021-09-14 20:28 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax 2021-09-14 20:28 - 2021-09-14 20:28 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl 2021-09-14 20:28 - 2021-09-14 20:28 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax 2021-09-14 20:28 - 2021-09-14 20:28 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBICodec.ax 2021-09-14 20:28 - 2021-09-14 20:28 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl 2021-09-14 20:28 - 2021-09-14 20:28 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll 2021-09-14 20:28 - 2021-09-14 20:28 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx 2021-09-14 20:28 - 2021-09-14 20:28 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl 2021-09-14 20:28 - 2021-09-14 20:28 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx 2021-09-14 20:28 - 2021-09-14 20:28 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl 2021-09-14 20:28 - 2021-09-14 20:28 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll 2021-09-14 20:28 - 2021-09-14 20:28 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll 2021-09-14 20:28 - 2021-09-14 20:28 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2021-09-14 20:28 - 2021-09-14 20:28 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsraLegacy.tlb 2021-09-14 20:28 - 2021-09-14 20:28 - 000006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\rendezvousSession.tlb 2021-09-14 18:48 - 2021-09-14 18:48 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll 2021-09-14 18:48 - 2021-09-14 18:48 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll 2021-09-14 18:48 - 2021-09-14 18:48 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll 2021-09-14 18:48 - 2021-09-14 18:48 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl 2021-09-14 18:48 - 2021-09-14 18:48 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl 2021-09-14 18:48 - 2021-09-14 18:48 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl 2021-09-14 18:48 - 2021-09-14 18:48 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe 2021-09-14 18:48 - 2021-09-14 18:48 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2021-09-14 18:48 - 2021-09-14 18:48 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe 2021-09-14 18:48 - 2021-09-14 18:48 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt 2021-09-14 18:47 - 2021-09-14 18:47 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll 2021-09-14 18:47 - 2021-09-14 18:47 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll 2021-09-14 18:47 - 2021-09-14 18:47 - 000707016 _____ C:\WINDOWS\system32\TextShaping.dll 2021-09-14 18:47 - 2021-09-14 18:47 - 000657464 _____ C:\WINDOWS\system32\WindowManagementAPI.dll 2021-09-14 18:47 - 2021-09-14 18:47 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl 2021-09-14 18:47 - 2021-09-14 18:47 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll 2021-09-14 18:47 - 2021-09-14 18:47 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll 2021-09-14 18:47 - 2021-09-14 18:47 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl 2021-09-14 18:47 - 2021-09-14 18:47 - 000231248 _____ C:\WINDOWS\system32\containerdevicemanagement.dll 2021-09-14 18:47 - 2021-09-14 18:47 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll 2021-09-14 18:47 - 2021-09-14 18:47 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe 2021-09-14 18:46 - 2021-09-14 18:46 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll 2021-09-14 18:46 - 2021-09-14 18:46 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll 2021-09-14 18:46 - 2021-09-14 18:46 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll 2021-09-14 18:46 - 2021-09-14 18:46 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll 2021-09-14 18:46 - 2021-09-14 18:46 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll 2021-09-14 18:46 - 2021-09-14 18:46 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll 2021-09-14 18:46 - 2021-09-14 18:46 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe 2021-09-14 18:33 - 2021-10-06 16:34 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2021-09-14 18:29 - 2021-09-14 18:29 - 005708193 _____ C:\Users\Bobo\Downloads\CV-20210914T162904Z-001.zip 2021-09-14 18:22 - 2021-10-14 20:46 - 000000000 ____D C:\Users\Bobo\AppData\Local\PlaceholderTileLogoFolder 2021-09-14 18:19 - 2021-09-14 18:19 - 000000000 ____D C:\Users\Bobo\AppData\Local\Comms 2021-09-14 15:54 - 2021-09-17 20:03 - 000000000 ____D C:\WINDOWS\Panther 2021-09-14 15:53 - 2021-09-14 15:53 - 000000000 ____D C:\WINDOWS\system32\Intel 2021-09-14 15:53 - 2021-09-14 15:53 - 000000000 ____D C:\WINDOWS\system32\cAVS 2021-09-14 15:51 - 2021-10-15 21:31 - 000756416 _____ C:\WINDOWS\system32\perfh00C.dat 2021-09-14 15:51 - 2021-10-15 21:31 - 000142186 _____ C:\WINDOWS\system32\perfc00C.dat 2021-09-14 15:51 - 2021-09-14 20:43 - 000000000 ____D C:\WINDOWS\system32\OpenSSH 2021-09-14 15:51 - 2021-09-14 15:51 - 000351124 _____ C:\WINDOWS\system32\perfi00C.dat 2021-09-14 15:51 - 2021-09-14 15:51 - 000040694 _____ C:\WINDOWS\system32\perfd00C.dat 2021-09-14 15:51 - 2021-09-14 15:51 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2021-09-14 15:51 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm 2021-09-14 15:51 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN 2021-09-14 15:51 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\SysWOW64\sysprep 2021-09-14 15:51 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr 2021-09-14 15:51 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts 2021-09-14 15:51 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync 2021-09-14 15:51 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\SysWOW64\FxsTmp 2021-09-14 15:51 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\SysWOW64\fr 2021-09-14 15:51 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\SysWOW64\0409 2021-09-14 15:51 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\system32\winrm 2021-09-14 15:51 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\system32\WCN 2021-09-14 15:51 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\system32\slmgr 2021-09-14 15:51 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts 2021-09-14 15:51 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync 2021-09-14 15:51 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\system32\fr 2021-09-14 15:51 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\system32\0409 2021-09-14 15:51 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\Setup 2021-09-14 15:51 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\OCR 2021-09-14 15:51 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\DigitalLocker 2021-09-14 15:51 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\addins 2021-09-14 15:51 - 2021-09-14 15:51 - 000000000 ____D C:\ProgramData\ssh 2021-09-14 15:51 - 2021-09-14 15:02 - 000000000 ____D C:\WINDOWS\system32\FxsTmp 2021-09-14 15:49 - 2021-10-15 22:13 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-09-14 15:49 - 2021-10-15 21:27 - 000000000 ____D C:\WINDOWS\ServiceState 2021-09-14 15:49 - 2021-10-15 21:27 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-09-14 15:49 - 2021-10-15 21:25 - 000000000 ___HD C:\Program Files\WindowsApps 2021-09-14 15:49 - 2021-10-15 21:21 - 000000000 ___SD C:\WINDOWS\system32\UNP 2021-09-14 15:49 - 2021-10-15 21:21 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-09-14 15:49 - 2021-10-15 21:21 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2021-09-14 15:49 - 2021-10-15 21:21 - 000000000 ____D C:\WINDOWS\SystemResources 2021-09-14 15:49 - 2021-10-15 21:21 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2021-09-14 15:49 - 2021-10-15 21:21 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-09-14 15:49 - 2021-10-15 21:21 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2021-09-14 15:49 - 2021-10-15 21:21 - 000000000 ____D C:\WINDOWS\DiagTrack 2021-09-14 15:49 - 2021-10-15 21:21 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-09-14 15:49 - 2021-10-15 21:11 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2021-09-14 15:49 - 2021-10-10 14:17 - 000000000 ___RD C:\Program Files (x86) 2021-09-14 15:49 - 2021-09-23 07:20 - 000000000 ____D C:\WINDOWS\system32\config\systemprofile 2021-09-14 15:49 - 2021-09-19 21:31 - 000000000 ____D C:\WINDOWS\appcompat 2021-09-14 15:49 - 2021-09-19 02:13 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2021-09-14 15:49 - 2021-09-15 19:49 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2021-09-14 15:49 - 2021-09-15 19:49 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2021-09-14 15:49 - 2021-09-15 19:49 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2021-09-14 15:49 - 2021-09-15 19:49 - 000000000 ____D C:\WINDOWS\system32\migwiz 2021-09-14 15:49 - 2021-09-15 19:49 - 000000000 ____D C:\WINDOWS\system32\Dism 2021-09-14 15:49 - 2021-09-15 19:49 - 000000000 ____D C:\WINDOWS\system32\DDFs 2021-09-14 15:49 - 2021-09-15 19:49 - 000000000 ____D C:\WINDOWS\system32\appraiser 2021-09-14 15:49 - 2021-09-15 19:49 - 000000000 ____D C:\WINDOWS\ShellComponents 2021-09-14 15:49 - 2021-09-15 19:49 - 000000000 ____D C:\WINDOWS\Provisioning 2021-09-14 15:49 - 2021-09-15 01:07 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2021-09-14 15:49 - 2021-09-14 20:54 - 000000000 ____D C:\Program Files\Windows Defender 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ___SD C:\WINDOWS\system32\F12 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ___RD C:\WINDOWS\PrintDialog 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ____D C:\WINDOWS\system32\setup 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ____D C:\WINDOWS\system32\Keywords 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ____D C:\WINDOWS\system32\config\TxR 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ____D C:\WINDOWS\system32\Com 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ____D C:\WINDOWS\ShellExperiences 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ____D C:\WINDOWS\IME 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ____D C:\Program Files\Common Files\System 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2021-09-14 15:49 - 2021-09-14 20:43 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2021-09-14 15:49 - 2021-09-14 18:22 - 000000000 ____D C:\ProgramData\USOPrivate 2021-09-14 15:49 - 2021-09-14 15:54 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2021-09-14 15:49 - 2021-09-14 15:51 - 000000000 ___SD C:\WINDOWS\system32\dsc 2021-09-14 15:49 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2021-09-14 15:49 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\system32\MUI 2021-09-14 15:49 - 2021-09-14 15:51 - 000000000 ____D C:\WINDOWS\Help 2021-09-14 15:49 - 2021-09-14 15:51 - 000000000 ____D C:\Program Files (x86)\Windows NT 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 __SHD C:\Program Files\Windows Sidebar 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 __RSD C:\WINDOWS\Media 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 __RHD C:\Users\Public\Libraries 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ___SD C:\WINDOWS\SysWOW64\Nui 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ___SD C:\WINDOWS\SysWOW64\Configuration 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ___SD C:\WINDOWS\system32\Nui 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ___SD C:\WINDOWS\system32\Configuration 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ___RD C:\WINDOWS\Offline Web Pages 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ___HD C:\WINDOWS\LanguageOverlayCache 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\Web 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\WaaS 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\Vss 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\tracing 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\TAPI 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\SysWOW64\SMI 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\SysWOW64\ras 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\SysWOW64\NDF 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\SysWOW64\Msdtc 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\SysWOW64\Ipmi 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\SysWOW64\InputMethod 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\SysWOW64\IME 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\SysWOW64\icsxml 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicyUsers 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\SysWOW64\downlevel 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\SysWOW64\Bthprops 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\SysWOW64\AppLocker 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\SystemApps 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\winevt 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\ti-et 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\ta-lk 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\ta-in 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\si-lk 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\Sgrm 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\ras 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\ProximityToast 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\PointOfService 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\osa-Osge-001 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\NDF 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\my-mm 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\MsDtc 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\Ipmi 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\InputMethod 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\inetsrv 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\IME 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\icsxml 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\ias 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\Hydrogen 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\GroupPolicyUsers 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\GroupPolicy 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\ff-Adlm-SN 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\DriverState 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\Drivers\DriverData 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\downlevel 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\ContainerSettingsProviders 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\config\RegBack 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\config\Journal 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\Bthprops 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\AppLocker 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\am-et 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\System 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\SKB 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\security 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\schemas 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\SchCache 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\Resources 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\rescache 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\Registration 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\PLA 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\Performance 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\ModemLogs 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\L2Schemas 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\InputMethod 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\IdentityCRL 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\Globalization 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\GameBarPresenceWriter 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\Cursors 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\Containers 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\Branding 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\ProgramData\WindowsHolographicDevices 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\ProgramData\USOShared 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\Program Files\Windows Security 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\Program Files\Windows Portable Devices 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\Program Files\Windows Multimedia Platform 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\Program Files\ModifiableWindowsApps 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\Program Files\Common Files\Services 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\Program Files (x86)\Windows Portable Devices 2021-09-14 15:49 - 2021-09-14 15:49 - 000000000 ____D C:\Program Files (x86)\Windows Multimedia Platform 2021-09-14 15:49 - 2021-09-14 15:48 - 000215943 _____ C:\WINDOWS\SysWOW64\dssec.dat 2021-09-14 15:49 - 2021-09-14 15:48 - 000215943 _____ C:\WINDOWS\system32\dssec.dat 2021-09-14 15:49 - 2021-09-14 15:48 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml 2021-09-14 15:49 - 2021-09-14 15:48 - 000017635 _____ C:\WINDOWS\system32\Drivers\etc\services 2021-09-14 15:49 - 2021-09-14 15:48 - 000003683 _____ C:\WINDOWS\system32\Drivers\etc\lmhosts.sam 2021-09-14 15:49 - 2021-09-14 15:48 - 000003103 _____ C:\WINDOWS\SysWOW64\mmc.exe.config 2021-09-14 15:49 - 2021-09-14 15:48 - 000003103 _____ C:\WINDOWS\system32\mmc.exe.config 2021-09-14 15:49 - 2021-09-14 15:48 - 000001358 _____ C:\WINDOWS\system32\Drivers\etc\protocol 2021-09-14 15:49 - 2021-09-14 15:48 - 000000858 _____ C:\WINDOWS\system32\DefaultQuestions.json 2021-09-14 15:49 - 2021-09-14 15:48 - 000000741 _____ C:\WINDOWS\SysWOW64\NOISE.DAT 2021-09-14 15:49 - 2021-09-14 15:48 - 000000741 _____ C:\WINDOWS\system32\NOISE.DAT 2021-09-14 15:49 - 2021-09-14 15:48 - 000000407 _____ C:\WINDOWS\system32\Drivers\etc\networks 2021-09-14 15:49 - 2021-09-14 15:48 - 000000219 _____ C:\WINDOWS\system.ini 2021-09-14 15:49 - 2021-09-14 15:48 - 000000092 _____ C:\WINDOWS\win.ini 2021-09-14 15:49 - 2021-09-14 15:02 - 000000000 ____D C:\WINDOWS\system32\spool 2021-09-14 15:49 - 2021-09-14 15:01 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2021-09-14 15:49 - 2021-09-14 15:00 - 000000000 ____D C:\Program Files\Windows NT 2021-09-14 15:48 - 2021-10-15 21:31 - 000000000 ____D C:\WINDOWS\INF 2021-09-14 15:46 - 2021-10-15 21:18 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-09-14 15:45 - 2021-10-15 21:26 - 095944704 _____ C:\WINDOWS\system32\config\SOFTWARE 2021-09-14 15:45 - 2021-10-15 21:26 - 082837504 _____ C:\WINDOWS\system32\config\SYSTEM 2021-09-14 15:45 - 2021-10-15 21:26 - 000786432 _____ C:\WINDOWS\system32\config\DEFAULT 2021-09-14 15:45 - 2021-10-15 21:26 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2021-09-14 15:45 - 2021-10-15 21:26 - 000065536 _____ C:\WINDOWS\system32\config\SAM 2021-09-14 15:45 - 2021-10-15 21:26 - 000032768 _____ C:\WINDOWS\system32\config\SECURITY 2021-09-14 15:45 - 2021-09-26 13:34 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2021-09-14 15:45 - 2021-09-15 19:49 - 000000000 ____D C:\WINDOWS\servicing 2021-09-14 15:45 - 2021-09-14 15:49 - 000000000 ____D C:\WINDOWS\system32\SMI 2021-09-14 15:06 - 2021-09-15 01:08 - 000000000 ___RD C:\Users\Bobo\OneDrive 2021-09-14 15:05 - 2021-09-14 15:05 - 000000000 ____D C:\Users\Bobo\AppData\Roaming\HP 2021-09-14 15:05 - 2021-09-14 15:05 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2021-09-14 15:04 - 2021-10-15 21:31 - 001681370 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-09-14 15:04 - 2021-10-15 21:27 - 000000000 __SHD C:\Users\Bobo\IntelGraphicsProfiles 2021-09-14 15:04 - 2021-10-15 21:25 - 000000000 ____D C:\Users\Bobo\AppData\Local\Packages 2021-09-14 15:04 - 2021-09-14 18:28 - 000000000 ____D C:\ProgramData\Packages 2021-09-14 15:04 - 2021-09-14 18:23 - 000000000 ____D C:\Users\Bobo\AppData\Local\Publishers 2021-09-14 15:04 - 2021-09-14 15:05 - 000000000 ____D C:\Users\Bobo\AppData\Local\Intel 2021-09-14 15:04 - 2021-09-14 15:04 - 000000000 __RHD C:\Users\Public\AccountPictures 2021-09-14 15:04 - 2021-09-14 15:04 - 000000000 ___RD C:\Users\Bobo\3D Objects 2021-09-14 15:04 - 2021-09-14 15:04 - 000000000 ____D C:\Users\Bobo\AppData\Roaming\Synaptics 2021-09-14 15:04 - 2021-09-14 15:04 - 000000000 ____D C:\Users\Bobo\AppData\Roaming\Adobe 2021-09-14 15:04 - 2021-09-14 15:04 - 000000000 ____D C:\Users\Bobo\AppData\LocalLow\Intel 2021-09-14 15:04 - 2021-09-14 15:04 - 000000000 ____D C:\Users\Bobo\AppData\Local\VirtualStore 2021-09-14 15:04 - 2021-09-14 15:04 - 000000000 ____D C:\Users\Bobo\AppData\Local\ConnectedDevicesPlatform 2021-09-14 15:03 - 2021-09-14 15:06 - 000000000 ____D C:\Users\Bobo 2021-09-14 15:03 - 2021-09-14 15:03 - 000000020 ___SH C:\Users\Bobo\ntuser.ini 2021-09-14 15:03 - 2021-09-14 15:03 - 000000000 _SHDL C:\Users\Bobo\Voisinage réseau 2021-09-14 15:03 - 2021-09-14 15:03 - 000000000 _SHDL C:\Users\Bobo\Voisinage d'impression 2021-09-14 15:03 - 2021-09-14 15:03 - 000000000 _SHDL C:\Users\Bobo\Modèles 2021-09-14 15:03 - 2021-09-14 15:03 - 000000000 _SHDL C:\Users\Bobo\Mes documents 2021-09-14 15:03 - 2021-09-14 15:03 - 000000000 _SHDL C:\Users\Bobo\Menu Démarrer 2021-09-14 15:03 - 2021-09-14 15:03 - 000000000 _SHDL C:\Users\Bobo\Documents\Mes vidéos 2021-09-14 15:03 - 2021-09-14 15:03 - 000000000 _SHDL C:\Users\Bobo\Documents\Mes images 2021-09-14 15:03 - 2021-09-14 15:03 - 000000000 _SHDL C:\Users\Bobo\Documents\Ma musique 2021-09-14 15:03 - 2021-09-14 15:03 - 000000000 _SHDL C:\Users\Bobo\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2021-09-14 15:03 - 2021-09-14 15:03 - 000000000 _SHDL C:\Users\Bobo\AppData\Local\Historique 2021-09-14 15:00 - 2021-09-14 15:00 - 000000000 _SHDL C:\Users\Public\Documents\Mes vidéos 2021-09-14 15:00 - 2021-09-14 15:00 - 000000000 _SHDL C:\Users\Public\Documents\Mes images 2021-09-14 15:00 - 2021-09-14 15:00 - 000000000 _SHDL C:\Users\Public\Documents\Ma musique 2021-09-14 15:00 - 2021-09-14 15:00 - 000000000 _SHDL C:\Users\Default\Voisinage réseau 2021-09-14 15:00 - 2021-09-14 15:00 - 000000000 _SHDL C:\Users\Default\Voisinage d'impression 2021-09-14 15:00 - 2021-09-14 15:00 - 000000000 _SHDL C:\Users\Default\Modèles 2021-09-14 15:00 - 2021-09-14 15:00 - 000000000 _SHDL C:\Users\Default\Mes documents 2021-09-14 15:00 - 2021-09-14 15:00 - 000000000 _SHDL C:\Users\Default\Menu Démarrer 2021-09-14 15:00 - 2021-09-14 15:00 - 000000000 _SHDL C:\Users\Default\Documents\Mes vidéos 2021-09-14 15:00 - 2021-09-14 15:00 - 000000000 _SHDL C:\Users\Default\Documents\Mes images 2021-09-14 15:00 - 2021-09-14 15:00 - 000000000 _SHDL C:\Users\Default\Documents\Ma musique 2021-09-14 15:00 - 2021-09-14 15:00 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2021-09-14 15:00 - 2021-09-14 15:00 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historique 2021-09-14 15:00 - 2021-09-14 15:00 - 000000000 _SHDL C:\Users\Default User 2021-09-14 15:00 - 2021-09-14 15:00 - 000000000 _SHDL C:\Users\All Users 2021-09-14 15:00 - 2021-09-14 15:00 - 000000000 _SHDL C:\ProgramData\Modèles 2021-09-14 15:00 - 2021-09-14 15:00 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programmes 2021-09-14 15:00 - 2021-09-14 15:00 - 000000000 _SHDL C:\ProgramData\Menu Démarrer 2021-09-14 15:00 - 2021-09-14 15:00 - 000000000 _SHDL C:\ProgramData\Bureau 2021-09-14 15:00 - 2021-09-14 15:00 - 000000000 _SHDL C:\Program Files\Fichiers communs 2021-09-14 15:00 - 2021-09-14 15:00 - 000000000 _SHDL C:\Documents and Settings 2021-09-14 14:57 - 2021-10-15 21:27 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-09-14 14:57 - 2021-10-15 21:27 - 000000000 ____D C:\Intel 2021-09-14 14:57 - 2021-10-06 21:01 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2021-09-14 14:57 - 2021-10-04 21:55 - 000000000 ____D C:\ProgramData\HP 2021-09-14 14:57 - 2021-09-14 15:00 - 000000000 ____D C:\ProgramData\Intel 2021-09-14 14:57 - 2021-09-14 14:57 - 000000037 _____ C:\WINDOWS\system32\Drivers\RtkR0Log.dat 2021-09-14 14:57 - 2021-09-14 14:57 - 000000000 _____ C:\WINDOWS\system32\GfxValDisplayLog.bin 2021-09-14 14:57 - 2019-02-26 23:33 - 000014220 _____ C:\WINDOWS\system32\Drivers\Gen3pKey1.dat 2021-09-14 14:57 - 2019-02-18 20:05 - 000010324 _____ C:\WINDOWS\system32\Drivers\Gen3pKey.dat 2021-09-14 14:57 - 2017-12-08 18:11 - 000001304 _____ C:\WINDOWS\system32\Drivers\RTKAMPI.Dat 2021-09-14 14:57 - 2017-11-09 19:10 - 000017232 _____ C:\WINDOWS\system32\Drivers\RTSPKPT.dat 2021-09-14 14:56 - 2021-10-15 21:27 - 000008192 ___SH C:\DumpStack.log.tmp 2021-09-14 14:56 - 2021-10-15 21:22 - 000439128 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-09-14 14:56 - 2021-10-15 21:06 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-09-14 14:56 - 2021-09-14 14:56 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2021-09-14 14:19 - 2021-09-14 15:54 - 000000000 ___HD C:\$SysReset 2021-09-13 23:54 - 2021-09-13 23:54 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll 2021-09-13 23:54 - 2021-09-13 23:54 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll 2021-09-13 23:54 - 2021-09-13 23:54 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll 2021-09-13 23:54 - 2021-09-13 23:54 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll 2021-09-13 23:54 - 2021-09-13 23:54 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax 2021-09-13 23:54 - 2021-09-13 23:54 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpg2splt.ax 2021-09-13 23:54 - 2021-09-13 23:54 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll 2021-09-13 23:54 - 2021-09-13 23:54 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll 2021-09-13 23:53 - 2021-09-13 23:53 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll 2021-09-13 23:53 - 2021-09-13 23:53 - 004227116 ____N C:\WINDOWS\system32\DefaultHrtfs.bin 2021-09-13 23:53 - 2021-09-13 23:53 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll 2021-09-13 23:53 - 2021-09-13 23:53 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll 2021-09-13 23:53 - 2021-09-13 23:53 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll 2021-09-13 23:53 - 2021-09-13 23:53 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl 2021-09-13 23:53 - 2021-09-13 23:53 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl 2021-09-13 23:53 - 2021-09-13 23:53 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll 2021-09-13 23:53 - 2021-09-13 23:53 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.tlb 2021-09-13 23:53 - 2021-09-13 23:53 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.tlb 2021-09-13 23:53 - 2021-09-13 23:53 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll 2021-09-13 23:53 - 2021-09-13 23:53 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll 2021-09-13 23:53 - 2021-09-13 23:53 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll 2021-09-13 23:53 - 2021-09-13 23:53 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv 2021-09-13 23:53 - 2021-09-13 23:53 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll 2021-09-13 23:53 - 2021-09-13 23:53 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll 2021-09-13 23:53 - 2021-09-13 23:53 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.drv 2021-09-02 00:20 - 2021-05-06 23:25 - 048047288 _____ (Intel Corporation) C:\WINDOWS\system32\IntelSSTPreprocStreamer.dll 2021-09-02 00:20 - 2021-05-06 23:25 - 001686184 _____ (Intel Corporation) C:\WINDOWS\system32\MultiChannelWoV.dll 2021-09-02 00:20 - 2021-05-06 23:25 - 000877752 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWovSDK.dll 2021-09-02 00:20 - 2021-05-06 23:25 - 000507064 _____ (Intel Corporation) C:\WINDOWS\system32\MultichannelWoVCfg.dll 2021-09-02 00:20 - 2019-06-20 06:37 - 005570328 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPOU64.dll 2021-09-02 00:20 - 2019-06-20 06:37 - 003733936 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTKSpeechPP2.dll 2021-09-02 00:20 - 2019-06-20 06:37 - 003732872 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTKSpeechPP.dll 2021-09-02 00:20 - 2019-06-20 06:37 - 001126552 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtCOM64.dll 2021-09-02 00:20 - 2019-06-20 06:37 - 000482120 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll 2021-09-02 00:20 - 2019-06-20 03:37 - 000881440 _____ (Realtek Semiconductor) C:\WINDOWS\system32\RtkAudUService64.exe 2021-09-02 00:20 - 2019-06-20 03:37 - 000821328 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64U.dll 2021-09-02 00:20 - 2019-06-20 03:37 - 000215032 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll 2021-09-02 00:05 - 2019-12-04 02:16 - 019840776 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPRes.dll 2021-09-02 00:05 - 2019-12-04 02:16 - 004313864 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPEnh.exe 2021-09-02 00:05 - 2019-12-04 02:16 - 000812296 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynCOM.dll 2021-09-02 00:05 - 2019-12-04 02:16 - 000769288 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\SynTP.sys 2021-09-02 00:05 - 2019-12-04 02:16 - 000383240 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPEnhService.exe 2021-09-02 00:05 - 2019-12-04 02:16 - 000275720 _____ (Synaptics Incorporated) C:\WINDOWS\system32\SynTPAPI.dll 2021-09-02 00:05 - 2019-12-04 02:16 - 000064264 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\SynRMIHID.sys 2021-09-02 00:05 - 2019-12-04 02:16 - 000049416 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_Intel.sys 2021-09-02 00:05 - 2019-12-04 02:16 - 000048904 _____ (Synaptics Incorporated) C:\WINDOWS\system32\Drivers\Smb_driver_AMDASF.sys 2021-09-02 00:03 - 2021-05-06 23:25 - 000852760 _____ (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\IntcOED.sys 2021-09-02 00:03 - 2021-05-06 22:52 - 000243016 _____ C:\WINDOWS\system32\Drivers\dsp_fw_release.bin 2021-09-02 00:03 - 2021-05-06 22:52 - 000012288 _____ C:\WINDOWS\system32\Drivers\dsp_fw_release_7CAD0808-AB10-CD23-EF45-12AB34CD56EF.bin 2021-09-01 22:55 - 2019-06-20 03:32 - 006861904 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys 2021-09-01 22:55 - 2019-06-20 03:23 - 032896202 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT 2021-08-12 19:49 - 2020-09-11 11:36 - 000305992 _____ C:\WINDOWS\system32\libmfxhw64.dll 2021-08-12 19:49 - 2020-09-11 11:36 - 000254520 _____ C:\WINDOWS\SysWOW64\libmfxhw32.dll 2021-08-12 19:49 - 2020-09-11 11:36 - 000171472 _____ (Intel Corporation) C:\WINDOWS\system32\intel_gfx_api-x64.dll 2021-08-12 19:49 - 2020-09-11 11:36 - 000146752 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\intel_gfx_api-x86.dll 2021-08-12 19:49 - 2020-09-11 11:35 - 026676016 _____ (Intel Corporation) C:\WINDOWS\system32\mfxplugin64_hw.dll 2021-08-12 19:49 - 2020-09-11 11:35 - 013519664 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\mfxplugin32_hw.dll 2021-08-12 19:49 - 2020-09-11 11:35 - 001790192 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2021-08-12 19:49 - 2020-09-11 11:35 - 001790192 _____ C:\WINDOWS\system32\vulkaninfo.exe 2021-08-12 19:49 - 2020-09-11 11:35 - 001386224 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2021-08-12 19:49 - 2020-09-11 11:35 - 001386224 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2021-08-12 19:49 - 2020-09-11 11:35 - 001096800 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2021-08-12 19:49 - 2020-09-11 11:35 - 001096800 _____ C:\WINDOWS\system32\vulkan-1.dll 2021-08-12 19:49 - 2020-09-11 11:35 - 000949856 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2021-08-12 19:49 - 2020-09-11 11:35 - 000949856 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2021-08-12 19:49 - 2020-09-11 11:35 - 000507696 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2021-08-12 19:49 - 2020-09-11 11:35 - 000462640 _____ C:\WINDOWS\system32\ze_loader.dll 2021-08-12 19:49 - 2020-09-11 11:35 - 000370480 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2021-08-12 19:49 - 2020-09-11 11:35 - 000148784 _____ C:\WINDOWS\system32\ze_validation_layer.dll ==================== Trois mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) ==================== SigCheckExt ========================= 2021-09-25 11:58 - 2021-10-15 22:11 - 002310656 _____ (Farbar) C:\Users\Bobo\Desktop\FRST64.exe 2021-10-04 21:34 - 2021-10-04 21:34 - 003289752 _____ (Nicolas Coolman) C:\Users\Bobo\Desktop\ZHPCleaner.exe 2021-09-25 11:46 - 2021-09-25 11:45 - 003476120 _____ (Nicolas Coolman) C:\Users\Bobo\Desktop\ZHPSuite.exe ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== BCD ================================ Gestionnaire de d‚marrage Windows --------------------------------- identificateur {bootmgr} device partition=\Device\HarddiskVolume1 description Windows Boot Manager locale fr-FR inherit {globalsettings} default {current} resumeobject {37659898-1563-11ec-899e-ab4d9aa93883} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Chargeur de d‚marrage Windows ----------------------------- identificateur {current} device partition=C: path \WINDOWS\system32\winload.exe description Windows 10 locale fr-FR inherit {bootloadersettings} recoverysequence {f6074317-fb8f-11eb-bbab-d41ca87f7f3e} displaymessageoverride Recovery recoveryenabled Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {37659898-1563-11ec-899e-ab4d9aa93883} nx OptIn bootmenupolicy Standard Chargeur de d‚marrage Windows ----------------------------- identificateur {f6074317-fb8f-11eb-bbab-d41ca87f7f3e} device ramdisk=[\Device\HarddiskVolume3]\Recovery\WindowsRE\Winre.wim,{f6074318-fb8f-11eb-bbab-d41ca87f7f3e} path \windows\system32\winload.exe description Windows Recovery Environment locale fr-fr inherit {bootloadersettings} displaymessage Recovery displaymessageoverride PushButtonReset osdevice ramdisk=[\Device\HarddiskVolume3]\Recovery\WindowsRE\Winre.wim,{f6074318-fb8f-11eb-bbab-d41ca87f7f3e} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Reprendre … partir de la mise en veille prolong‚e ------------------------------------------------- identificateur {37659898-1563-11ec-899e-ab4d9aa93883} device partition=C: path \WINDOWS\system32\winresume.exe description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {f6074317-fb8f-11eb-bbab-d41ca87f7f3e} recoveryenabled Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Testeur de m‚moire Windows -------------------------- identificateur {memdiag} device partition=\Device\HarddiskVolume1 path \boot\memtest.exe description Diagnostics m‚moire Windows locale fr-FR inherit {globalsettings} badmemoryaccess Yes ParamŠtres EMS -------------- identificateur {emssettings} bootems No ParamŠtres du d‚bogueur ----------------------- identificateur {dbgsettings} debugtype Local Erreurs de m‚moire RAM ---------------------- identificateur {badmemory} ParamŠtres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} ParamŠtres du chargeur de d‚marrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} ParamŠtres de l'hyperviseur ------------------- identificateur {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 ParamŠtres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} Options de p‚riph‚rique ----------------------- identificateur {f6074318-fb8f-11eb-bbab-d41ca87f7f3e} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume3 ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== Fin de FRST.txt ========================