Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 05-04-2022 Exécuté par Pat GUY (administrateur) sur DESKTOP-4CU2G5L (05-04-2022 14:24:28) Exécuté depuis D:\Docs\Téléchargements Profils chargés: Pat GUY Plate-forme: Microsoft Windows 10 Famille Version 20H2 19042.1620 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.29\identity_helper.exe (C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe ->) (Nicolas Coolman -> Nicolas Coolman) [Fichier non signé] D:\Docs\Téléchargements\ZHPSuite.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <26> (explorer.exe ->) (Janos Mathe -> H.D.S. Hungary) D:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe (explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\tobedeleted\nsr8801.tmp <2> (services.exe ->) (Digital Wave Ltd -> Digital Wave Ltd) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe (services.exe ->) (NortonLifeLock Inc. -> NortonLifelock Inc.) C:\Program Files\Norton Security\Engine\22.22.2.10\NortonSecurity.exe <2> (services.exe ->) (NortonLifeLock Inc. -> NortonLifeLock Inc.) C:\Program Files\Norton Security\Engine\22.22.2.10\nsWscSvc.exe (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_3b12ac0f95b18b9d\Display.NvContainer\NVDisplay.Container.exe <2> (sihost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MSPaint_6.2203.1037.0_x64__8wekyb3d8bbwe\PaintStudio.View.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (VSSVC.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <47> ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [19572528 2022-03-24] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM-x32\...\RunOnce: [ccleaner_update_helper] => C:\Program Files\CCleaner\ccleaner_update_helper.exe [688256 2022-04-04] (Piriform Software Ltd -> Piriform) HKU\S-1-5-21-1044430573-3039461709-3979879080-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22515488 2019-04-12] (Piriform Software Ltd -> Piriform Software Ltd) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\100.0.4896.75\Installer\chrmstp.exe [2022-04-04] (Google LLC -> Google LLC) ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {3748C4DC-0565-4D2E-983A-A1D457E133B9} - System32\Tasks\Norton WSC Integration => C:\Program Files\Norton Security\Engine\22.22.2.10\WSCStub.exe [646520 2022-03-04] (NortonLifeLock Inc. -> NortonLifeLock Inc.) Task: {5E5948BF-6E17-480A-A5B1-FC19571F8BBE} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16509040 2019-04-12] (Piriform Software Ltd -> Piriform Software Ltd) Task: {6ED33A90-DA23-4656-A0A2-B1E00D2812CA} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" Task: {90CBB096-E4F7-4139-9FAD-B7669FF268BA} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-04-12] (Piriform Software Ltd -> Piriform Software Ltd) Task: {9C82464F-26A7-4322-B0FA-15F5EEB2361E} - System32\Tasks\Norton 360\Norton 360 Error Analyzer => C:\Program Files\Norton Security\Engine\22.22.2.10\SymErr.exe [108752 2022-03-04] (NortonLifeLock Inc. -> NortonLifeLock Inc) Task: {9EE94B50-0AA2-4A42-894A-2BB237E9D29B} - System32\Tasks\HardDiskSentinel\Hard Disk Sentinel_Pat_20GUY => d:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe [5825416 2022-02-15] (Janos Mathe -> H.D.S. Hungary) Task: {C86462D2-36A1-4B72-9AC9-15966711A322} - System32\Tasks\GoogleUpdateTaskMachineCore{7E36C477-9241-41B2-8B34-DE8D2582BBC3} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2022-04-04] (Google LLC -> Google LLC) Task: {E5260ED4-C30F-42CB-B9B8-AF2B07941760} - System32\Tasks\Norton 360\Norton 360 Autofix => C:\Program Files\Norton Security\Engine\22.22.2.10\SymErr.exe [108752 2022-03-04] (NortonLifeLock Inc. -> NortonLifeLock Inc) Task: {EB038A0F-B895-439D-90F3-162A77C5C9C3} - System32\Tasks\Norton 360\Norton 360 Error Processor => C:\Program Files\Norton Security\Engine\22.22.2.10\SymErr.exe [108752 2022-03-04] (NortonLifeLock Inc. -> NortonLifeLock Inc) Task: {EC0F1B89-1BA8-43CE-9718-4FF44EA00D3D} - System32\Tasks\Remediation\AntimalwareMigrationTask => C:\Program Files\Common Files\AV\Norton 360\Upgrade.exe [2353000 2022-03-04] (NortonLifeLock Inc. -> NortonLifeLock Inc.) Task: {F7CD28F3-7021-42D0-B7C0-6CE9BB95067E} - System32\Tasks\GoogleUpdateTaskMachineUA{94F2E107-463D-41EA-B74E-E133734223B8} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2022-04-04] (Google LLC -> Google LLC) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{4e22bb19-d0c5-47d6-b181-f11f25aac2f4}: [DhcpNameServer] 192.168.1.254 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Pat GUY\AppData\Local\Microsoft\Edge\User Data\Default [2022-04-05] Edge Notifications: Default -> hxxps://assiste.com Edge DefaultSearchURL: Default -> hxxps://find.searchtoolshub.com?c5b4082e98f52da6aa01cdb889f548a3=H1xAXFNGX1pbVFQNEQQwBw9cQ1pVQFZcWFZFW1ZFX11fWFQJDB0LUyknNy4nNikoW1FCX1FCLldZUEddJEEpWlxTNypWQCsvWFk0KlQwXCo%253D&q={searchTerms} Edge DefaultSearchKeyword: Default -> find.searchtoolshub.com Edge DefaultSuggestURL: Default -> hxxps://api.bing.com/qsml.aspx?query={searchTerms}&market={language}&maxwidth={ie:maxWidth}&rowheight={ie:rowHeight}§ionHeight={ie:sectionHeight}&FORM=IESS02 FireFox: ======== FF DefaultProfile: a5tzyklt.default FF ProfilePath: C:\Users\Pat GUY\AppData\Roaming\Mozilla\Firefox\Profiles\a5tzyklt.default [2022-04-05] FF ProfilePath: C:\Users\Pat GUY\AppData\Roaming\Mozilla\Firefox\Profiles\mqychrf6.default-release [2022-04-05] Chrome: ======= CHR Profile: C:\Users\Pat GUY\AppData\Local\Google\Chrome\User Data\Default [2022-04-05] CHR HomePage: Default -> hxxp://fr.msn.com/ CHR StartupUrls: Default -> "hxxp://lefigaro/","hxxps://www.bing.com/?PC=ER08" CHR Extension: (Video Downloader Plus) - C:\Users\Pat GUY\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfejhehdhaaeoiahaojjhmjaihjaodcf [2022-03-24] CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\Pat GUY\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2022-03-24] CHR Extension: (Video Downloader Plus) - C:\Users\Pat GUY\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjljdgfhkjbdbkcdkfojleidpldagmao [2022-03-24] CHR Extension: (Video Downloader for Web) - C:\Users\Pat GUY\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnlogloeabhinechhmcgkkgglmiefaif [2022-03-24] CHR Extension: (Easy Video Downloader) - C:\Users\Pat GUY\AppData\Local\Google\Chrome\User Data\Default\Extensions\eaicplkoeceoelookkiaeekhodehdhde [2022-03-24] CHR Extension: (Video Downloader Plus) - C:\Users\Pat GUY\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkdmdpdhfaamhgaojpelccmeehpfljgf [2022-03-24] CHR Extension: (Tube Video Downloader) - C:\Users\Pat GUY\AppData\Local\Google\Chrome\User Data\Default\Extensions\iognjfgfedhkodkkcjafpinhnbinjpcn [2022-03-24] CHR Extension: (Flash Video Downloader) - C:\Users\Pat GUY\AppData\Local\Google\Chrome\User Data\Default\Extensions\ionpbgeeliajehajombdeflogfpgmmel [2022-03-24] CHR Extension: (Video Downloader Pro) - C:\Users\Pat GUY\AppData\Local\Google\Chrome\User Data\Default\Extensions\klkegmdjeiklkjdjjbknjgdpdbaojdkk [2022-03-24] CHR Extension: (Video DownloadHelper) - C:\Users\Pat GUY\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2022-03-24] CHR Extension: (Video Downloader PLUS) - C:\Users\Pat GUY\AppData\Local\Google\Chrome\User Data\Default\Extensions\njgehaondchbmjmajphnhlojfnbfokng [2022-03-24] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Pat GUY\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-03-24] CHR Extension: (Web Video Downloader) - C:\Users\Pat GUY\AppData\Local\Google\Chrome\User Data\Default\Extensions\odecbmmehabeloobkgokmfgldaegiflc [2022-04-04] CHR Extension: (ODM - Téléchargeur de vidéos) - C:\Users\Pat GUY\AppData\Local\Google\Chrome\User Data\Default\Extensions\opjjpmhoiojifppkkcdabiobhakljdgm [2022-04-04] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [439616 2020-03-12] (Digital Wave Ltd -> Digital Wave Ltd) R2 NortonSecurity; C:\Program Files\Norton Security\Engine\22.22.2.10\NortonSecurity.exe [344888 2022-03-04] (NortonLifeLock Inc. -> NortonLifelock Inc.) R2 nsWscSvc; C:\Program Files\Norton Security\Engine\22.22.2.10\nsWscSvc.exe [1059176 2022-03-04] (NortonLifeLock Inc. -> NortonLifeLock Inc.) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2202.4-0\NisSrv.exe [3046608 2022-03-23] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2202.4-0\MsMpEng.exe [132504 2022-03-23] (Microsoft Windows Publisher -> Microsoft Corporation) S2 EraserSvc11913; "C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\NortonSecurity.exe" /h ccCommon [X] R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_3b12ac0f95b18b9d\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_3b12ac0f95b18b9d\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R1 BHDrvx64; C:\Program Files\Norton Security\NortonData\22.21.8.62\Definitions\BASHDefs\20220404.011\BHDrvx64.sys [2018784 2022-03-23] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R1 ccSet_NGC; C:\Windows\System32\drivers\NGCx64\1616020.00A\ccSetx64.sys [184312 2022-03-04] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [509904 2021-10-29] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [145376 2022-04-04] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R1 IDSVia64; C:\Program Files\Norton Security\NortonData\22.21.8.62\Definitions\IPSDefs\20220404.061\IDSvia64.sys [1515512 2022-04-05] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) S3 nsvst_NGC; C:\Windows\System32\drivers\NGCx64\1616020.00A\nsvst.sys [56080 2022-03-04] (NortonLifeLock Inc. -> NortonLifeLock Inc.) R1 SRTSP; C:\Windows\System32\drivers\NGCx64\1616020.00A\SRTSP64.SYS [892600 2022-03-04] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R1 SRTSPX; C:\Windows\System32\drivers\NGCx64\1616020.00A\SRTSPX64.SYS [48824 2022-03-04] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R0 SymEFASI; C:\Windows\System32\drivers\NGCx64\1616020.00A\SYMEFASI64.SYS [2030768 2022-03-04] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) S0 SymELAM; C:\Windows\System32\drivers\NGCx64\1616020.00A\SymELAM.sys [31984 2022-03-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Broadcom Corporation) R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [93120 2022-03-24] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R3 SymEvnt; C:\Program Files\Norton Security\NortonData\22.21.8.62\SymPlatform\SymEvnt.sys [712432 2021-06-16] (Symantec Corporation -> Symantec Corporation) R1 SymIRON; C:\Windows\System32\drivers\NGCx64\1616020.00A\Ironx64.SYS [319152 2022-03-04] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom) R1 SymNetS; C:\Windows\System32\drivers\NGCx64\1616020.00A\symnets.sys [575344 2022-03-04] (Symantec Corporation -> Symantec Corporation) S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [49600 2022-03-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [439544 2022-03-23] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [90360 2022-03-23] (Microsoft Windows -> Microsoft Corporation) R1 wpCtrlDrv_NGC; C:\Windows\System32\drivers\NGCx64\1616020.00A\wpCtrlDrv.sys [1015760 2022-03-04] (NortonLifeLock Inc. -> NortonLifeLock Inc.) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Trois mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-04-05 14:23 - 2022-04-05 14:21 - 002365440 _____ (Farbar) C:\Users\Pat GUY\Desktop\FRST64.exe 2022-04-05 14:22 - 2022-04-05 14:24 - 000000000 ____D C:\FRST 2022-04-05 14:06 - 2022-04-05 14:06 - 000257909 _____ C:\Users\Pat GUY\Desktop\ZHPDiag.txt 2022-04-05 14:04 - 2022-04-05 14:06 - 000000135 _____ C:\Users\Pat 2022-04-05 14:01 - 2022-04-05 14:06 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\ZHP 2022-04-05 14:01 - 2022-04-05 14:01 - 000000867 _____ C:\Users\Pat GUY\Desktop\ZHPSuite.lnk 2022-04-05 14:01 - 2022-04-05 14:01 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\ZHP 2022-04-05 13:51 - 2022-04-05 13:51 - 000000193 _____ C:\Users\Pat GUY\Desktop\PDFHub.url 2022-04-05 13:51 - 2022-04-05 13:51 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\PDFHub 2022-04-05 11:56 - 2022-04-05 11:56 - 000000000 ____D C:\Windows\system32\Tasks\Remediation 2022-04-05 10:23 - 2022-04-05 10:23 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\Mozilla 2022-04-05 10:18 - 2022-04-05 10:37 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2022-04-05 10:18 - 2022-04-05 10:37 - 000000993 _____ C:\Users\Public\Desktop\Firefox.lnk 2022-04-05 10:18 - 2022-04-05 10:37 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2022-04-05 10:18 - 2022-04-05 10:37 - 000000000 ____D C:\Program Files\Mozilla Firefox 2022-04-05 10:18 - 2022-04-05 10:37 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2022-04-05 10:18 - 2022-04-05 10:18 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\Mozilla 2022-04-05 10:06 - 2022-04-05 10:06 - 000002849 _____ C:\Users\Pat GUY\Desktop\bookmarks-2022-04-05.json 2022-04-04 22:11 - 2022-04-04 22:11 - 000002321 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-04-04 22:11 - 2022-04-04 22:11 - 000002280 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2022-04-04 22:10 - 2022-04-04 22:10 - 000000000 ____D C:\Program Files\Google 2022-04-04 22:09 - 2022-04-04 22:09 - 000003666 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{94F2E107-463D-41EA-B74E-E133734223B8} 2022-04-04 22:09 - 2022-04-04 22:09 - 000003542 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{7E36C477-9241-41B2-8B34-DE8D2582BBC3} 2022-04-04 21:29 - 2022-04-04 21:29 - 000003936 _____ C:\Windows\system32\Tasks\CCleaner Update 2022-04-04 21:29 - 2022-04-04 21:29 - 000002892 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC 2022-04-04 21:29 - 2022-04-04 21:29 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk 2022-04-04 21:29 - 2022-04-04 21:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2022-04-04 21:29 - 2022-04-04 21:29 - 000000000 ____D C:\Program Files\CCleaner 2022-04-04 21:20 - 2022-04-04 21:27 - 000000000 ____D C:\ProgramData\RogueKiller 2022-04-04 21:06 - 2022-04-04 21:54 - 000000000 ____D C:\Users\Pat GUY\Desktop\Anciennes données de Firefox 2022-04-04 20:00 - 2022-04-04 20:00 - 000001188 _____ C:\Users\Pat GUY\Desktop\FarCry5.exe - Raccourci.lnk 2022-04-04 19:19 - 2022-04-04 19:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Far Cry 5 2022-04-04 17:55 - 2022-04-04 17:55 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\EasyAntiCheat 2022-04-04 16:42 - 2022-04-04 17:59 - 000000000 ____D C:\Users\Pat GUY\FutureXGame 2022-04-04 16:41 - 2022-04-04 16:41 - 000000000 ____D C:\Program Files (x86)\WinRAR 2022-04-04 16:37 - 2022-04-04 16:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2022-04-04 13:23 - 2022-04-04 13:23 - 000000000 ____D C:\Windows\system32\Tasks\HardDiskSentinel 2022-04-04 13:23 - 2022-04-04 13:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hard Disk Sentinel 2022-04-04 12:13 - 2022-04-05 13:33 - 000000000 ____D C:\Windows\system32\Tasks\Norton 360 2022-04-04 12:08 - 2022-04-04 21:30 - 000000000 ____D C:\Windows\Minidump 2022-04-04 12:08 - 2022-04-04 12:22 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security 2022-04-04 12:08 - 2022-04-04 12:08 - 000003376 _____ C:\Windows\system32\Tasks\Norton WSC Integration 2022-04-04 12:03 - 2022-04-04 12:03 - 000000000 ___HD C:\$SysReset 2022-04-01 18:55 - 2022-04-04 12:07 - 000000000 __SHD C:\found.000 2022-03-26 16:19 - 2022-04-04 12:07 - 000000000 ____D C:\Program Files\WinRAR 2022-03-26 12:37 - 2022-03-26 12:37 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2022-03-25 22:10 - 2022-03-25 22:10 - 000000000 ____D C:\Windows\PCHEALTH 2022-03-25 22:09 - 2022-03-25 22:09 - 000000000 ____D C:\Program Files\Microsoft Office 2022-03-25 22:08 - 2022-03-25 22:10 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2022-03-25 22:08 - 2022-03-25 22:08 - 000000000 __RHD C:\MSOCache 2022-03-25 19:11 - 2022-04-04 12:07 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\GiliSoft 2022-03-25 19:11 - 2022-04-04 12:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ThunderSoft 2022-03-25 19:06 - 2022-03-25 19:06 - 000000000 ____D C:\Program Files\Common Files\FlashIntegro 2022-03-25 14:41 - 2022-03-25 14:41 - 000000000 ____D C:\ProgramData\DigitalWave.ApplicationUpdater_files 2022-03-25 14:40 - 2022-04-04 12:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2022-03-25 14:40 - 2022-03-25 14:40 - 000000000 ____D C:\Program Files (x86)\FreeCodecPack 2022-03-25 14:35 - 2022-03-25 14:35 - 000000000 ____D C:\ProgramData\CyberLink 2022-03-24 22:10 - 2022-03-24 22:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC x64 2022-03-24 17:18 - 2022-04-04 13:23 - 000000000 ____D C:\Program Files\Common Files\AV 2022-03-24 16:55 - 2022-04-04 12:08 - 000000000 ____D C:\Windows\system32\Drivers\NGCx64 2022-03-24 16:55 - 2022-03-24 16:55 - 000093120 _____ (Broadcom) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS 2022-03-24 16:55 - 2022-03-24 16:55 - 000010235 _____ C:\Windows\system32\Drivers\SYMEVENT64x86.CAT 2022-03-24 16:55 - 2022-03-24 16:55 - 000000000 ____D C:\ProgramData\NortonInstaller 2022-03-24 16:55 - 2022-03-24 16:55 - 000000000 ____D C:\Program Files\Norton Security 2022-03-24 16:55 - 2022-03-24 16:55 - 000000000 ____D C:\Program Files\Common Files\Symantec Shared 2022-03-24 16:55 - 2022-03-24 16:55 - 000000000 ____D C:\Program Files (x86)\NortonInstaller 2022-03-24 16:18 - 2022-04-05 13:34 - 000000000 ____D C:\ProgramData\Norton 2022-03-24 16:18 - 2022-03-24 16:18 - 000000000 ____D C:\Users\Public\Downloads\Norton 2022-03-24 03:32 - 2022-03-24 03:32 - 000000000 ____D C:\ProgramData\IObit 2022-03-24 03:30 - 2022-04-04 12:06 - 000000000 ____D C:\ProgramData\Package Cache 2022-03-24 03:29 - 2022-03-24 03:29 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\IObit 2022-03-24 02:41 - 2022-04-04 21:47 - 000000000 ____D C:\ProgramData\NVIDIA 2022-03-24 02:40 - 2022-03-24 02:40 - 000000000 ____D C:\Windows\system32\lxss 2022-03-24 02:39 - 2022-03-24 02:39 - 008612520 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2022-03-24 02:39 - 2022-03-24 02:39 - 007714984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2022-03-24 02:39 - 2022-03-24 02:39 - 006461040 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2022-03-24 02:39 - 2022-03-24 02:39 - 005727376 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2022-03-24 02:39 - 2022-03-24 02:39 - 005099152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2022-03-24 02:39 - 2022-03-24 02:39 - 002935768 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2022-03-24 02:39 - 2022-03-24 02:39 - 002121360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2022-03-24 02:39 - 2022-03-24 02:39 - 001904872 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe 2022-03-24 02:39 - 2022-03-24 02:39 - 001904872 _____ C:\Windows\system32\vulkaninfo.exe 2022-03-24 02:39 - 2022-03-24 02:39 - 001602704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2022-03-24 02:39 - 2022-03-24 02:39 - 001531872 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2022-03-24 02:39 - 2022-03-24 02:39 - 001477352 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2022-03-24 02:39 - 2022-03-24 02:39 - 001477352 _____ C:\Windows\SysWOW64\vulkaninfo.exe 2022-03-24 02:39 - 2022-03-24 02:39 - 001466808 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2022-03-24 02:39 - 2022-03-24 02:39 - 001431272 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll 2022-03-24 02:39 - 2022-03-24 02:39 - 001431272 _____ C:\Windows\system32\vulkan-1.dll 2022-03-24 02:39 - 2022-03-24 02:39 - 001209280 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2022-03-24 02:39 - 2022-03-24 02:39 - 001176704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2022-03-24 02:39 - 2022-03-24 02:39 - 001144552 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll 2022-03-24 02:39 - 2022-03-24 02:39 - 001144552 _____ C:\Windows\SysWOW64\vulkan-1.dll 2022-03-24 02:39 - 2022-03-24 02:39 - 000985056 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2022-03-24 02:39 - 2022-03-24 02:39 - 000850088 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe 2022-03-24 02:39 - 2022-03-24 02:39 - 000798144 _____ C:\Windows\system32\nvofapi64.dll 2022-03-24 02:39 - 2022-03-24 02:39 - 000795584 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2022-03-24 02:39 - 2022-03-24 02:39 - 000717760 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll 2022-03-24 02:39 - 2022-03-24 02:39 - 000712664 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe 2022-03-24 02:39 - 2022-03-24 02:39 - 000637072 _____ C:\Windows\SysWOW64\nvofapi.dll 2022-03-24 02:39 - 2022-03-24 02:39 - 000456872 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe 2022-03-24 02:39 - 2022-03-24 02:39 - 000089251 _____ C:\Windows\system32\nvinfo.pb 2022-03-24 02:38 - 2022-04-04 12:07 - 000000000 ____D C:\Windows\LastGood.Tmp 2022-03-24 02:38 - 2022-03-24 02:38 - 001492648 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco64.dll 2022-03-24 02:38 - 2022-03-24 02:38 - 001163096 _____ (Realtek ) C:\Windows\system32\Drivers\rt640x64.sys 2022-03-24 02:38 - 2022-03-24 02:38 - 000040928 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2022-03-24 02:38 - 2022-03-24 02:38 - 000000000 ____D C:\Windows\SysWOW64\RTCOM 2022-03-24 02:38 - 2022-03-24 02:38 - 000000000 ____D C:\Program Files\Realtek 2022-03-24 02:37 - 2022-03-24 02:37 - 043252949 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT 2022-03-24 02:37 - 2022-03-24 02:37 - 005954144 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2022-03-24 02:37 - 2022-03-24 02:37 - 003843944 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll 2022-03-24 02:37 - 2022-03-24 02:37 - 003676976 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2022-03-24 02:37 - 2022-03-24 02:37 - 003375928 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2022-03-24 02:37 - 2022-03-24 02:37 - 003159680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2022-03-24 02:37 - 2022-03-24 02:37 - 002930056 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2022-03-24 02:37 - 2022-03-24 02:37 - 001353224 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2022-03-24 02:37 - 2022-03-24 02:37 - 000692072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2022-03-24 02:37 - 2022-03-24 02:37 - 000541024 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2022-03-24 02:37 - 2022-03-24 02:37 - 000392776 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2022-03-24 02:37 - 2022-03-24 02:37 - 000343616 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2022-03-24 02:37 - 2022-03-24 02:37 - 000327176 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2022-03-24 02:37 - 2022-03-24 02:37 - 000327176 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2022-03-24 02:37 - 2022-03-24 02:37 - 000230608 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2022-03-24 02:37 - 2022-03-24 02:37 - 000220296 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2022-03-24 02:37 - 2022-03-24 02:37 - 000218176 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2022-03-24 02:37 - 2022-03-24 02:37 - 000192888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2022-03-24 02:37 - 2022-03-24 02:37 - 000174848 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2022-03-24 02:37 - 2022-03-24 02:37 - 000122224 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2022-03-24 02:37 - 2022-03-24 02:37 - 000116448 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2022-03-24 02:37 - 2022-03-24 02:37 - 000093808 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2022-03-24 02:37 - 2022-03-24 02:37 - 000044744 _____ C:\Windows\system32\Drivers\ISCTD.sys 2022-03-24 02:37 - 2022-03-24 02:37 - 000023600 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2022-03-24 02:16 - 2022-03-24 15:58 - 000000000 ____D C:\Program Files\RUXIM 2022-03-24 01:58 - 2022-04-05 14:14 - 000000000 ____D C:\Program Files (x86)\Google 2022-03-24 01:58 - 2022-04-04 23:18 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\MPC-HC 2022-03-24 01:58 - 2022-04-04 12:06 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\WeMod 2022-03-24 01:58 - 2022-03-24 01:59 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\Zoom 2022-03-24 01:58 - 2022-03-24 01:58 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\WinRAR 2022-03-24 01:58 - 2022-03-24 01:58 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\vlc 2022-03-24 01:58 - 2022-03-24 01:58 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\VideoWinSoft 2022-03-24 01:58 - 2022-03-24 01:58 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\Steam 2022-03-24 01:58 - 2022-03-24 01:58 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\Plitch 2022-03-24 01:58 - 2022-03-24 01:58 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\NVIDIA 2022-03-24 01:58 - 2022-03-24 01:58 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\NCH Software 2022-03-24 01:58 - 2022-02-14 20:27 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\Opera Software 2022-03-24 01:57 - 2022-04-05 10:25 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2022-03-24 01:57 - 2022-04-05 10:24 - 000000000 ____D C:\Users\Pat GUY\AppData\LocalLow\Mozilla 2022-03-24 01:57 - 2022-04-04 16:41 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2022-03-24 01:57 - 2022-04-04 12:07 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\DVDVideoSoft 2022-03-24 01:57 - 2022-04-04 12:07 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\WeMod 2022-03-24 01:57 - 2022-04-04 12:06 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\BitTorrent 2022-03-24 01:57 - 2022-04-01 01:45 - 000000000 ____D C:\Users\Pat GUY\AppData\LocalLow\BitTorrent 2022-03-24 01:57 - 2022-03-26 20:12 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\SquirrelTemp 2022-03-24 01:57 - 2022-03-25 16:07 - 000000000 ____D C:\Users\Pat GUY\AppData\LocalLow\Norton 2022-03-24 01:57 - 2022-03-25 10:19 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\BitTorrent Web 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WeMod 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Days Gone 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\HpUpdate 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\HOODLUM 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\FlashIntegro 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\CyberLink 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\Crystal Dynamics 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\ClassicShell 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\Boilsoft 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\Audacity 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\Ant.com 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\Ahead 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\LocalLow\UnrealEngine 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\LocalLow\NVIDIA 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\LocalLow\MCC 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\LocalLow\Apple Computer 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\LocalLow\Adobe 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\WW 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\Wolfenstein_II__The_New_C 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\UnrealEngine 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\TileDataLayer 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\Terminator 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\SolidDocuments 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\SniperElite4 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\Sniper3 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\Sniper Elite V2 Remastered 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\SkinSoft 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\PunkBuster 2022-03-24 01:57 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\plitch-updater 2022-03-24 01:57 - 2022-03-09 10:00 - 000001893 _____ C:\Users\Pat GUY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitTorrent Web.lnk 2022-03-24 01:57 - 2022-02-15 17:50 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\ResoluteSISTERS 2022-03-24 01:57 - 2022-02-14 21:12 - 000000898 _____ C:\Users\Pat GUY\AppData\Roaming\Microsoft\Windows\Start Menu\BitTorrent.lnk 2022-03-24 01:56 - 2022-03-24 01:56 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\NVIDIA Corporation 2022-03-24 01:56 - 2022-02-14 20:27 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\Opera Software 2022-03-24 01:55 - 2022-03-24 01:56 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\NVIDIA 2022-03-24 01:55 - 2022-03-24 01:55 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\NPE 2022-03-24 01:55 - 2022-03-24 01:55 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\Norton 2022-03-24 01:54 - 2022-04-04 13:23 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\Hard Disk Sentinel 2022-03-24 01:53 - 2022-03-24 01:53 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\MiniTool Power Data Recovery v10.2 2022-03-24 01:53 - 2022-03-24 01:53 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\MicrosoftEdge 2022-03-24 01:53 - 2022-03-24 01:53 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\Microsoft Help 2022-03-24 01:52 - 2022-03-24 01:52 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\MegaDev 2022-03-24 01:52 - 2022-03-24 01:52 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\iTubeGo 2022-03-24 01:52 - 2022-03-24 01:52 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\HP 2022-03-24 01:51 - 2022-04-04 21:30 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\CrashDumps 2022-03-24 01:51 - 2022-03-24 01:52 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\Google 2022-03-24 01:51 - 2022-03-24 01:51 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\GOG.com 2022-03-24 01:51 - 2022-03-24 01:51 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\FreemakeVideoConverter 2022-03-24 01:51 - 2022-03-24 01:51 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\FLiNGTrainer 2022-03-24 01:51 - 2022-03-24 01:51 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\Elementite 2022-03-24 01:51 - 2022-03-24 01:51 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\DaysGone 2022-03-24 01:51 - 2022-03-24 01:51 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\CrashRpt 2022-03-24 01:51 - 2022-03-24 01:51 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\ClassicShell 2022-03-24 01:51 - 2022-03-24 01:51 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\CEF 2022-03-24 01:51 - 2022-03-24 01:51 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\CAPCOM 2022-03-24 01:51 - 2022-03-24 01:51 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\cache 2022-03-24 01:51 - 2022-03-24 01:51 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\Blizzard Entertainment 2022-03-24 01:51 - 2022-03-24 01:51 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\bizarre creations 2022-03-24 01:51 - 2022-03-24 01:51 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\BitTorrentHelper 2022-03-24 01:51 - 2022-03-24 01:51 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\BeyondEnemyLines2 2022-03-24 01:51 - 2022-03-24 01:51 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\BendGame 2022-03-24 01:51 - 2022-03-24 01:51 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\BELRemaster 2022-03-24 01:51 - 2022-03-24 01:51 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\Ahead 2022-03-24 01:51 - 2022-03-24 01:51 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\Adobe 2022-03-24 01:51 - 2022-03-24 01:51 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\Adaware 2022-03-24 01:51 - 2022-03-04 13:47 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\ElevatedDiagnostics 2022-03-24 01:50 - 2022-03-24 01:50 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\Activision 2022-03-24 01:50 - 2022-02-15 17:51 - 000016438 _____ C:\Users\Pat GUY\AppData\Local\partner.bmp 2022-03-24 01:50 - 2022-02-08 12:37 - 000002345 _____ C:\Users\Pat GUY\Desktop\farcry3_d3d11.exe - Raccourci.lnk 2022-03-23 23:59 - 2022-03-23 23:59 - 000000000 ___HD C:\Users\Pat GUY\MicrosoftEdgeBackups 2022-03-23 23:59 - 2022-03-23 23:59 - 000000000 ____D C:\Users\Pat GUY\Tracing 2022-03-23 23:59 - 2022-01-07 19:09 - 000000000 ____D C:\Users\Pat GUY\ansel 2022-03-23 23:51 - 2022-03-08 23:09 - 021321871 _____ C:\Users\Pat GUY\Desktop\videoplayback.mp4 2022-03-23 23:47 - 2022-04-04 16:30 - 000000000 ___RD C:\Users\Pat GUY\Desktop\UTILITAIRES 2022-03-23 23:47 - 2022-03-29 12:59 - 000000000 ____D C:\Users\Pat GUY\dwhelper 2022-03-23 23:47 - 2022-03-24 21:47 - 000000000 ____D C:\Users\Pat GUY\Desktop\wolfenstein young blood 2022-03-23 23:47 - 2022-03-23 23:47 - 000000000 ____D C:\Users\Pat GUY\Desktop\youtube 2022-03-23 23:47 - 2022-03-23 23:47 - 000000000 ____D C:\Users\Pat GUY\Desktop\Velo2 2022-03-23 23:47 - 2022-03-23 23:47 - 000000000 ____D C:\Users\Pat GUY\Desktop\Velo 2022-03-23 23:47 - 2022-03-23 23:47 - 000000000 ____D C:\Users\Pat GUY\Desktop\The evil within 2022-03-23 23:47 - 2022-03-23 23:47 - 000000000 ____D C:\Users\Pat GUY\Cheathappens 2022-03-23 23:46 - 2022-03-23 23:47 - 000000000 ____D C:\Users\Pat GUY\Desktop\telephone 2022-03-23 23:46 - 2022-03-23 23:46 - 000000000 ____D C:\Users\Pat GUY\Desktop\Samsung 2022-03-23 23:46 - 2022-03-23 23:46 - 000000000 ____D C:\Users\Pat GUY\Desktop\Rose 2022-03-23 23:46 - 2022-03-23 23:46 - 000000000 ____D C:\Users\Pat GUY\Desktop\pour face 2022-03-23 23:46 - 2022-03-23 23:46 - 000000000 ____D C:\Users\Pat GUY\Desktop\PHOTOS 2022-03-23 23:45 - 2022-04-04 12:06 - 000000000 ____D C:\Users\Pat GUY\Desktop\JEUX 2 2022-03-23 23:44 - 2022-04-01 17:24 - 000000000 ____D C:\Users\Pat GUY\Desktop\FARCRY 5 2022-03-23 23:43 - 2022-04-04 12:07 - 000000000 ____D C:\Users\Pat GUY\Desktop\jeux 2022-03-23 23:42 - 2022-03-23 23:43 - 000000000 ____D C:\Users\Pat GUY\Desktop\far cry 3 2022-03-23 23:42 - 2022-03-23 23:42 - 000000000 ____D C:\Users\Pat GUY\Desktop\Elda 2022-03-23 23:42 - 2022-03-23 23:42 - 000000000 ____D C:\Users\Pat GUY\Desktop\dossier succession 2022-03-23 23:41 - 2022-03-23 23:42 - 000000000 ____D C:\Users\Pat GUY\Desktop\DONNEES 2022-03-23 23:41 - 2022-03-23 23:41 - 000000000 ____D C:\Users\Pat GUY\Desktop\divers 2020 2022-03-23 23:39 - 2022-03-23 23:39 - 000000000 ____D C:\Users\Pat GUY\Desktop\Coherence 2022-03-23 23:39 - 2022-03-23 23:39 - 000000000 ____D C:\Users\Pat GUY\Desktop\Cochin 2022-03-23 23:37 - 2022-03-23 23:37 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\OneDrive 2022-03-23 20:09 - 2022-03-23 23:39 - 000000000 ____D C:\Users\Pat GUY\Desktop\Cle USB 2022-03-23 20:09 - 2022-03-23 20:09 - 000000000 ____D C:\Users\Pat GUY\Desktop\Charlotte_loc 2022-03-23 20:09 - 2022-03-23 20:09 - 000000000 ____D C:\Users\Pat GUY\Desktop\CD provisoire 2022-03-23 20:09 - 2022-03-23 20:09 - 000000000 ____D C:\Users\Pat GUY\Desktop\BELEM 2022-03-23 20:09 - 2022-03-23 20:09 - 000000000 ____D C:\Users\Pat GUY\Desktop\Becheville douleur 2022-03-23 20:09 - 2022-03-23 20:09 - 000000000 ____D C:\Users\Pat GUY\Desktop\Asssassin origin 2022-03-23 20:09 - 2022-03-14 22:04 - 000001868 _____ C:\Users\Pat GUY\Desktop\Assassins Creed Origins v1.02-v1.21 Plus 16 Trainer.exe - Raccourci.lnk 2022-03-23 20:09 - 2022-03-02 00:03 - 005004123 _____ C:\Users\Pat GUY\Desktop\Top 10 animals react to magic tricks (Animals being tricked by magic tricks)_cut.mp4 2022-03-23 20:09 - 2022-02-17 14:22 - 000001363 _____ C:\Users\Pat GUY\Desktop\The Evil Within Trainer Setup.exe - Raccourci (2).lnk 2022-03-23 20:09 - 2022-02-15 20:19 - 000000865 _____ C:\Users\Pat GUY\Desktop\The Evil Within The Consequence.lnk 2022-03-23 20:09 - 2022-02-14 17:03 - 000001929 _____ C:\Users\Pat GUY\Desktop\Call of Duty WWII v1.0 Plus 9 Trainer.exe - Raccourci.lnk 2022-03-23 20:09 - 2022-02-12 12:43 - 000001809 _____ C:\Users\Pat GUY\Desktop\Far Cry 3 v1.01 Plus 18 Trainer.exe - Raccourci.lnk 2022-03-23 20:09 - 2022-02-04 00:12 - 000000864 _____ C:\Users\Pat GUY\Desktop\Batman The Enemy Within Episode 3.lnk 2022-03-23 20:09 - 2022-01-13 03:36 - 087846138 _____ C:\Users\Pat GUY\Desktop\smartools_b65ba74f4c8c50025d8dec6abd343ab4_720p.mp4 2022-03-23 20:09 - 2022-01-11 12:32 - 006872216 _____ C:\Users\Pat GUY\Desktop\buffle.mp4 2022-03-23 20:09 - 2021-12-13 17:37 - 000003022 _____ C:\Users\Pat GUY\Desktop\Wolfenstein II The New Colossus v1.0-Update6 Plus +18 Trainer.exe - Raccourci.lnk 2022-03-23 20:09 - 2021-12-11 22:36 - 000000903 _____ C:\Users\Pat GUY\Desktop\Wolfenstein II The New Colossus.lnk 2022-03-23 20:09 - 2020-12-24 10:52 - 019562903 _____ C:\Users\Pat GUY\Desktop\Mia le beagle très distrait pendant un concours d'Agility - .mp4 2022-03-23 19:18 - 2022-03-23 19:18 - 000162816 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe 2022-03-23 19:18 - 2022-03-23 19:18 - 000048640 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2022-03-23 19:18 - 2022-03-23 19:18 - 000039936 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2022-03-23 19:18 - 2022-03-23 19:18 - 000011791 _____ C:\Windows\system32\DrtmAuthTxt.wim 2022-03-23 19:15 - 2022-04-04 21:38 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\D3DSCache 2022-03-23 19:13 - 2022-03-23 19:13 - 000000000 ___HD C:\$WinREAgent 2022-03-23 19:10 - 2022-03-23 19:10 - 000000000 ____D C:\Windows\SystemTemp 2022-03-23 19:08 - 2022-03-23 19:08 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2022-03-23 19:08 - 2011-06-10 07:34 - 000539240 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2022-03-23 19:08 - 2011-06-10 07:34 - 000107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll 2022-03-23 19:08 - 2011-06-10 07:34 - 000074272 _____ C:\Windows\system32\RtNicProp64.dll 2022-03-23 17:53 - 2022-03-23 17:53 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2022-03-23 17:51 - 2022-03-23 17:51 - 001687040 _____ C:\Windows\system32\libcrypto.dll 2022-03-23 17:50 - 2022-03-23 17:50 - 002371072 _____ C:\Windows\system32\rdpnano.dll 2022-03-23 17:50 - 2022-03-23 17:50 - 002111488 _____ (Digimarc) C:\Windows\SysWOW64\DMRCDecoder.dll 2022-03-23 17:50 - 2022-03-23 17:50 - 001864192 _____ (The ICU Project) C:\Windows\SysWOW64\icu.dll 2022-03-23 17:50 - 2022-03-23 17:50 - 001333760 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll 2022-03-23 17:50 - 2022-03-23 17:50 - 000672768 _____ C:\Windows\system32\FsNVSDeviceSource.dll 2022-03-23 17:50 - 2022-03-23 17:50 - 000611960 _____ C:\Windows\SysWOW64\TextShaping.dll 2022-03-23 17:50 - 2022-03-23 17:50 - 000581120 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr 2022-03-23 17:50 - 2022-03-23 17:50 - 000523776 _____ (curl, hxxps://curl.se/) C:\Windows\system32\curl.exe 2022-03-23 17:50 - 2022-03-23 17:50 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoScreensaver.scr 2022-03-23 17:50 - 2022-03-23 17:50 - 000468440 _____ C:\Windows\SysWOW64\WindowManagementAPI.dll 2022-03-23 17:50 - 2022-03-23 17:50 - 000464384 _____ (curl, hxxps://curl.se/) C:\Windows\SysWOW64\curl.exe 2022-03-23 17:50 - 2022-03-23 17:50 - 000266240 _____ C:\Windows\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll 2022-03-23 17:50 - 2022-03-23 17:50 - 000235520 _____ C:\Windows\SysWOW64\HeatCore.dll 2022-03-23 17:50 - 2022-03-23 17:50 - 000095744 _____ C:\Windows\system32\VirtualMonitorManager.dll 2022-03-23 17:50 - 2022-03-23 17:50 - 000067072 _____ C:\Windows\system32\BWContextHandler.dll 2022-03-23 17:50 - 2022-03-23 17:50 - 000053760 _____ C:\Windows\SysWOW64\BWContextHandler.dll 2022-03-23 17:49 - 2022-03-23 17:49 - 002295296 _____ (Digimarc) C:\Windows\system32\DMRCDecoder.dll 2022-03-23 17:49 - 2022-03-23 17:49 - 002260992 _____ C:\Windows\system32\TextInputMethodFormatter.dll 2022-03-23 17:49 - 2022-03-23 17:49 - 002260480 _____ (The ICU Project) C:\Windows\system32\icu.dll 2022-03-23 17:49 - 2022-03-23 17:49 - 002254336 _____ C:\Windows\system32\dwmscene.dll 2022-03-23 17:49 - 2022-03-23 17:49 - 001164288 _____ C:\Windows\system32\MBR2GPT.EXE 2022-03-23 17:49 - 2022-03-23 17:49 - 000706536 _____ C:\Windows\system32\TextShaping.dll 2022-03-23 17:49 - 2022-03-23 17:49 - 000657464 _____ C:\Windows\system32\WindowManagementAPI.dll 2022-03-23 17:49 - 2022-03-23 17:49 - 000363520 _____ C:\Windows\system32\Windows.Internal.UI.Shell.WindowTabManager.dll 2022-03-23 17:49 - 2022-03-23 17:49 - 000330752 _____ C:\Windows\SysWOW64\ssdm.dll 2022-03-23 17:49 - 2022-03-23 17:49 - 000306688 _____ C:\Windows\system32\HeatCore.dll 2022-03-23 17:49 - 2022-03-23 17:49 - 000272896 _____ C:\Windows\system32\TpmTool.exe 2022-03-23 17:49 - 2022-03-23 17:49 - 000240640 _____ C:\Windows\SysWOW64\CoreMas.dll 2022-03-23 17:49 - 2022-03-23 17:49 - 000231248 _____ C:\Windows\system32\containerdevicemanagement.dll 2022-03-23 17:49 - 2022-03-23 17:49 - 000223744 _____ C:\Windows\SysWOW64\TpmTool.exe 2022-03-23 17:49 - 2022-03-23 17:49 - 000190976 _____ C:\Windows\system32\BthpanContextHandler.dll 2022-03-23 17:49 - 2022-03-23 17:49 - 000152064 _____ C:\Windows\system32\EoAExperiences.exe 2022-03-23 17:49 - 2022-03-23 17:49 - 000098304 _____ C:\Windows\system32\Drivers\cimfs.sys 2022-03-23 17:49 - 2022-03-23 17:49 - 000060928 _____ C:\Windows\system32\runexehelper.exe 2022-03-23 17:49 - 2022-03-23 17:49 - 000010752 _____ C:\Windows\SysWOW64\agentactivationruntimestarter.exe 2022-03-23 17:49 - 2022-03-23 17:49 - 000001370 _____ C:\Windows\system32\ThirdPartyNoticesBySHS.txt 2022-03-23 17:48 - 2022-03-23 17:48 - 000455168 _____ C:\Windows\system32\ssdm.dll 2022-03-23 17:48 - 2022-03-23 17:48 - 000288768 _____ C:\Windows\system32\Windows.Management.InprocObjects.dll 2022-03-23 17:48 - 2022-03-23 17:48 - 000287232 _____ C:\Windows\system32\CoreMas.dll 2022-03-23 17:48 - 2022-03-23 17:48 - 000089088 _____ C:\Windows\system32\windows.applicationmodel.conversationalagent.proxystub.dll 2022-03-23 17:48 - 2022-03-23 17:48 - 000074240 _____ C:\Windows\system32\rdsxvmaudio.dll 2022-03-23 17:48 - 2022-03-23 17:48 - 000073216 _____ C:\Windows\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll 2022-03-23 17:48 - 2022-03-23 17:48 - 000013312 _____ C:\Windows\system32\agentactivationruntimestarter.exe 2022-03-23 17:41 - 2022-03-23 17:41 - 000001146 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk 2022-03-23 17:41 - 2022-03-23 17:41 - 000000000 ____D C:\Program Files\PCHealthCheck 2022-03-23 17:40 - 2022-03-23 17:43 - 000000000 ____D C:\Windows\system32\MRT 2022-03-23 17:27 - 2022-03-23 17:27 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\Comms 2022-03-23 17:12 - 2022-04-05 13:21 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\PlaceholderTileLogoFolder 2022-03-23 17:12 - 2022-04-04 18:58 - 001681370 _____ C:\Windows\system32\PerfStringBackup.INI 2022-03-23 17:12 - 2022-03-24 02:40 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation 2022-03-23 17:12 - 2022-03-23 19:15 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2022-03-23 17:12 - 2022-03-23 17:12 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2022-03-23 17:11 - 2022-03-25 02:24 - 000003592 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1044430573-3039461709-3979879080-1001 2022-03-23 17:11 - 2022-03-25 02:24 - 000003384 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1044430573-3039461709-3979879080-1001 2022-03-23 17:11 - 2022-03-24 02:39 - 007613344 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2022-03-23 17:11 - 2022-03-24 02:38 - 000127968 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2022-03-23 17:11 - 2022-03-23 17:11 - 000000000 ___RD C:\Users\Pat GUY\OneDrive 2022-03-23 17:11 - 2020-10-07 14:33 - 000047232 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhdap64.dll 2022-03-23 17:10 - 2022-04-04 16:42 - 000000000 ____D C:\Users\Pat GUY 2022-03-23 17:10 - 2022-03-28 12:18 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\Packages 2022-03-23 17:10 - 2022-03-25 02:24 - 000002427 _____ C:\Users\Pat GUY\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-03-23 17:10 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Roaming\Adobe 2022-03-23 17:10 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\VirtualStore 2022-03-23 17:10 - 2022-03-24 01:57 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\Publishers 2022-03-23 17:10 - 2022-03-23 17:10 - 000000020 ___SH C:\Users\Pat GUY\ntuser.ini 2022-03-23 17:10 - 2022-03-23 17:10 - 000000000 _SHDL C:\Users\Pat GUY\Voisinage réseau 2022-03-23 17:10 - 2022-03-23 17:10 - 000000000 _SHDL C:\Users\Pat GUY\Voisinage d'impression 2022-03-23 17:10 - 2022-03-23 17:10 - 000000000 _SHDL C:\Users\Pat GUY\Modèles 2022-03-23 17:10 - 2022-03-23 17:10 - 000000000 _SHDL C:\Users\Pat GUY\Mes documents 2022-03-23 17:10 - 2022-03-23 17:10 - 000000000 _SHDL C:\Users\Pat GUY\Menu Démarrer 2022-03-23 17:10 - 2022-03-23 17:10 - 000000000 _SHDL C:\Users\Pat GUY\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2022-03-23 17:10 - 2022-03-23 17:10 - 000000000 _SHDL C:\Users\Pat GUY\AppData\Local\Historique 2022-03-23 17:10 - 2022-03-23 17:10 - 000000000 ____D C:\Users\Pat GUY\AppData\Local\ConnectedDevicesPlatform 2022-03-23 17:07 - 2022-03-23 17:07 - 000000000 _SHDL C:\Users\Default\Voisinage réseau 2022-03-23 17:07 - 2022-03-23 17:07 - 000000000 _SHDL C:\Users\Default\Voisinage d'impression 2022-03-23 17:07 - 2022-03-23 17:07 - 000000000 _SHDL C:\Users\Default\Modèles 2022-03-23 17:07 - 2022-03-23 17:07 - 000000000 _SHDL C:\Users\Default\Mes documents 2022-03-23 17:07 - 2022-03-23 17:07 - 000000000 _SHDL C:\Users\Default\Menu Démarrer 2022-03-23 17:07 - 2022-03-23 17:07 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2022-03-23 17:07 - 2022-03-23 17:07 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historique 2022-03-23 17:07 - 2022-03-23 17:07 - 000000000 _SHDL C:\ProgramData\Modèles 2022-03-23 17:07 - 2022-03-23 17:07 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programmes 2022-03-23 17:07 - 2022-03-23 17:07 - 000000000 _SHDL C:\ProgramData\Menu Démarrer 2022-03-23 17:07 - 2022-03-23 17:07 - 000000000 _SHDL C:\ProgramData\Bureau 2022-03-23 17:07 - 2022-03-23 17:07 - 000000000 _SHDL C:\Program Files\Fichiers communs 2022-03-23 17:07 - 2022-03-23 17:07 - 000000000 _SHDL C:\Documents and Settings 2022-03-23 17:06 - 2022-03-23 17:06 - 000002858 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1044430573-3039461709-3979879080-500 2022-03-23 17:05 - 2022-04-04 21:30 - 000000000 ____D C:\Windows\Panther 2022-03-23 17:05 - 2022-04-04 18:51 - 000008192 ___SH C:\DumpStack.log.tmp ==================== Trois mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-04-05 14:04 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-04-05 13:38 - 2020-11-19 00:28 - 000000000 ____D C:\Windows\system32\SleepStudy 2022-04-04 23:31 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness 2022-04-04 23:19 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-04-04 21:30 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\LiveKernelReports 2022-04-04 21:30 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF 2022-04-04 20:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\NDF 2022-04-04 18:58 - 2019-12-07 16:49 - 000755174 _____ C:\Windows\system32\perfh00C.dat 2022-04-04 18:58 - 2019-12-07 16:49 - 000141980 _____ C:\Windows\system32\perfc00C.dat 2022-04-04 18:51 - 2020-11-19 01:29 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2022-04-04 18:51 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI 2022-04-04 18:47 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\System 2022-04-04 12:25 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp 2022-04-04 12:17 - 2020-11-19 01:31 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-04-04 12:07 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\ELAMBKUP 2022-04-04 12:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\MUI 2022-04-04 12:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinMetadata 2022-04-04 12:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Sysprep 2022-04-04 12:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\MUI 2022-04-04 12:06 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\registration 2022-04-01 11:34 - 2019-12-07 11:03 - 000032768 _____ C:\Windows\system32\config\ELAM 2022-03-24 15:58 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\appcompat 2022-03-24 03:30 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2022-03-23 23:36 - 2020-11-19 00:28 - 000257912 _____ C:\Windows\system32\FNTCACHE.DAT 2022-03-23 23:35 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2022-03-23 23:35 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism 2022-03-23 23:35 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources 2022-03-23 23:35 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe 2022-03-23 23:35 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism 2022-03-23 23:35 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences 2022-03-23 23:35 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\Provisioning 2022-03-23 23:35 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\PolicyDefinitions 2022-03-23 23:35 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr 2022-03-23 20:31 - 2020-11-19 01:32 - 000000000 ____D C:\ProgramData\Packages 2022-03-23 19:21 - 2020-11-19 01:29 - 000000000 ____D C:\Windows\system32\Drivers\wd 2022-03-23 19:21 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender 2022-03-23 19:10 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2022-03-23 19:10 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2022-03-23 19:10 - 2019-12-07 16:51 - 000000000 ____D C:\Windows\system32\OpenSSH 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\SysWOW64\F12 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\UNP 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\F12 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\DiagSvcs 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\setup 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\PerceptionSimulation 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\oobe 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lv-LV 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lt-LT 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Keywords 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\et-EE 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Com 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\AdvancedInstallers 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioPlugIns 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\SystemResetPlatform 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\setup 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lv-LV 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lt-LT 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Keywords 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\et-EE 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\es-MX 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\DDFs 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Com 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\appraiser 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\AdvancedInstallers 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellComponents 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\IME 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\DiagTrack 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System 2022-03-23 19:10 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2022-03-23 19:10 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing 2022-03-23 17:53 - 2019-12-07 16:53 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\OEMDefaultAssociations.dll 2022-03-23 17:48 - 2020-11-19 01:31 - 002877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2022-03-23 17:11 - 2020-11-19 01:31 - 000003634 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-03-23 17:11 - 2020-11-19 01:31 - 000003510 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-03-23 17:10 - 2020-11-19 01:32 - 000000000 __RHD C:\Users\Public\AccountPictures 2022-03-23 17:10 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate 2022-03-23 17:09 - 2019-12-07 16:51 - 000000000 ____D C:\Windows\system32\FxsTmp 2022-03-23 17:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState 2022-03-23 17:07 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows NT 2022-03-23 17:05 - 2019-12-07 11:14 - 000028672 _____ C:\Windows\system32\config\BCD-Template ==================== Fichiers à la racine de certains dossiers ======== 2022-03-24 01:50 - 2022-02-15 17:51 - 000016438 _____ () C:\Users\Pat GUY\AppData\Local\partner.bmp ==================== SigCheckExt ========================= 2022-04-05 14:23 - 2022-04-05 14:21 - 002365440 _____ (Farbar) C:\Users\Pat GUY\Desktop\FRST64.exe ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== BCD ================================ Gestionnaire de d‚marrage du microprogramme ------------------------------------------- identificateur {fwbootmgr} displayorder {bootmgr} {3ad3fa34-aaba-11ec-a6d6-ee722bf518d7} {3ad3fa35-aaba-11ec-a6d6-ee722bf518d7} {7f626aeb-b437-11ec-89c1-806e6f6e6963} timeout 1 Gestionnaire de d‚marrage Windows --------------------------------- identificateur {bootmgr} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\bootmgfw.efi description Windows Boot Manager locale fr-FR inherit {globalsettings} default {current} resumeobject {3ad3fa38-aaba-11ec-a6d6-ee722bf518d7} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Application logicielle (101fffff) -------------------------------- identificateur {3ad3fa34-aaba-11ec-a6d6-ee722bf518d7} description Hard Drive Application logicielle (101fffff) -------------------------------- identificateur {3ad3fa35-aaba-11ec-a6d6-ee722bf518d7} description CD/DVD Drive Application logicielle (101fffff) -------------------------------- identificateur {7f626aeb-b437-11ec-89c1-806e6f6e6963} description USB Chargeur de d‚marrage Windows ----------------------------- identificateur {current} device partition=C: path \Windows\system32\winload.efi description Windows 10 locale fr-FR inherit {bootloadersettings} recoverysequence {3ad3fa3a-aaba-11ec-a6d6-ee722bf518d7} displaymessageoverride Recovery recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \Windows resumeobject {3ad3fa38-aaba-11ec-a6d6-ee722bf518d7} nx OptIn bootmenupolicy Standard Chargeur de d‚marrage Windows ----------------------------- identificateur {3ad3fa3a-aaba-11ec-a6d6-ee722bf518d7} device ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{3ad3fa3b-aaba-11ec-a6d6-ee722bf518d7} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-fr inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{3ad3fa3b-aaba-11ec-a6d6-ee722bf518d7} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Reprendre … partir de la mise en veille prolong‚e ------------------------------------------------- identificateur {3ad3fa38-aaba-11ec-a6d6-ee722bf518d7} device partition=C: path \Windows\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {3ad3fa3a-aaba-11ec-a6d6-ee722bf518d7} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Testeur de m‚moire Windows -------------------------- identificateur {memdiag} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\memtest.efi description Diagnostics m‚moire Windows locale fr-FR inherit {globalsettings} badmemoryaccess Yes ParamÅ tres EMS -------------- identificateur {emssettings} bootems No ParamÅ tres du d‚bogueur ----------------------- identificateur {dbgsettings} debugtype Local Erreurs de m‚moire RAM ---------------------- identificateur {badmemory} ParamÅ tres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} ParamÅ tres du chargeur de d‚marrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} ParamÅ tres de l'hyperviseur ------------------- identificateur {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 ParamÅ tres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} Options de p‚riph‚rique ----------------------- identificateur {3ad3fa3b-aaba-11ec-a6d6-ee722bf518d7} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume4 ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== Fin de FRST.txt ========================