Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version:25-10-2015 02 Exécuté par romai (administrateur) sur DESKTOP-REDPR99 (26-10-2015 18:40:19) Exécuté depuis C:\Users\romai\Desktop Profils chargés: romai (Profils disponibles: defaultuser0 & romai & patri) Platform: Windows 10 Home (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: FF) Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (AMD) C:\Windows\System32\atiesrxx.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe () C:\Program Files\CyberLink\Shared files\RichVideo64.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe (RaMMicHaeL) C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (AMD) C:\Windows\System32\atieclxx.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (RaMMicHaeL) C:\Program Files (x86)\Unchecky\bin\unchecky_bg.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe ==================== Registre (Avec liste blanche) =========================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8483032 2015-06-05] (Realtek Semiconductor) HKLM-x32\...\Run: [PowerDVD14Agent] => C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe [795336 2015-06-22] (CyberLink Corp.) HKLM-x32\...\Run: [StartCCC] => c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-07-07] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597040 2015-10-06] (Oracle Corporation) HKU\S-1-5-21-601248458-4252691497-4015294055-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8461224 2015-09-16] (Piriform Ltd) ShellIconOverlayIdentifiers: [AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2015-09-10] (Acronis) ShellIconOverlayIdentifiers: [AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2015-09-10] (Acronis) ShellIconOverlayIdentifiers: [AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2015-09-10] (Acronis) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{8c093c4c-d6bf-45de-b88d-80a94758945e}: [DhcpNameServer] 192.168.1.254 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp15-comm.msn.com/?pc=HRTE HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp15-comm.msn.com/?pc=HRTE HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE HKU\S-1-5-21-601248458-4252691497-4015294055-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://google.fr BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2015-10-18] (Microsoft Corporation) BHO: Virtual Keyboard Plugin -> {4A66AD60-A03D-4D01-86F0-5F0F7C0EF1AD} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\x64\IEExt\ie_plugin.dll [2014-12-23] (Kaspersky Lab ZAO) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_65\bin\ssv.dll [2015-10-21] (Oracle Corporation) BHO: Content Blocker Plugin -> {93BC2EA7-2F17-4729-948A-D2E03FFB2412} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\x64\IEExt\ie_plugin.dll [2014-12-23] (Kaspersky Lab ZAO) BHO: Safe Money Plugin -> {AB379017-4C03-4E00-8EDF-E6D6AF7CCF82} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\x64\IEExt\ie_plugin.dll [2014-12-23] (Kaspersky Lab ZAO) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2015-10-18] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_65\bin\jp2ssv.dll [2015-10-21] (Oracle Corporation) BHO-x32: Virtual Keyboard Plugin -> {4A66AD60-A03D-4D01-86F0-5F0F7C0EF1AD} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\IEExt\ie_plugin.dll [2014-12-23] (Kaspersky Lab ZAO) BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2015-04-30] (Evernote Corp., 305 Walnut Street, Redwood City, CA 94063) BHO-x32: Content Blocker Plugin -> {93BC2EA7-2F17-4729-948A-D2E03FFB2412} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\IEExt\ie_plugin.dll [2014-12-23] (Kaspersky Lab ZAO) BHO-x32: Safe Money Plugin -> {AB379017-4C03-4E00-8EDF-E6D6AF7CCF82} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\IEExt\ie_plugin.dll [2014-12-23] (Kaspersky Lab ZAO) BHO-x32: Microsoft Web Test Recorder 14.0 Helper -> {b924f0b4-0b3c-49c0-bab2-213fb9ebd1d3} -> C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll [2015-07-06] (Microsoft Corporation) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2015-05-06] (Hewlett-Packard) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2015-10-18] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2015-10-18] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2015-10-18] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2015-10-18] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\romai\AppData\Roaming\Mozilla\Firefox\Profiles\0ahtztzv.default FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_19_0_0_226.dll [2015-10-17] () FF Plugin: @java.com/DTPlugin,version=11.65.2 -> C:\Program Files\Java\jre1.8.0_65\bin\dtplugin\npDeployJava1.dll [2015-10-21] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.65.2 -> C:\Program Files\Java\jre1.8.0_65\bin\plugin2\npjp2.dll [2015-10-21] (Oracle Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_226.dll [2015-10-17] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel Corporation) FF Plugin-x32: @kaspersky.com/content_blocker_663BE84DBCC949E88C7600F63CA7F098 -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\FFExt\content_blocker@kaspersky.com [2015-10-17] () FF Plugin-x32: @kaspersky.com/online_banking_08806E753BE44495B44E90AA2513BDC5 -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\FFExt\online_banking@kaspersky.com [2015-10-17] () FF Plugin-x32: @kaspersky.com/virtual_keyboard_07402848C2F6470194F131B0F3DE025E -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\FFExt\virtual_keyboard@kaspersky.com [2015-10-17] () FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll [2013-05-13] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2015-10-18] (Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2015-06-25] () FF user.js: detected! => C:\Users\romai\AppData\Roaming\Mozilla\Firefox\Profiles\0ahtztzv.default\user.js [2015-10-20] FF Extension: Adblock Plus - C:\Users\romai\AppData\Roaming\Mozilla\Firefox\Profiles\0ahtztzv.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-10-20] FF HKLM-x32\...\Firefox\Extensions: [content_blocker_663BE84DBCC949E88C7600F63CA7F098@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\FFExt\content_blocker@kaspersky.com FF Extension: Dangerous Websites Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\FFExt\content_blocker@kaspersky.com [2015-10-17] [non signé] FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard_07402848C2F6470194F131B0F3DE025E@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\FFExt\virtual_keyboard@kaspersky.com [2015-10-17] [non signé] FF HKLM-x32\...\Firefox\Extensions: [online_banking_08806E753BE44495B44E90AA2513BDC5@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\FFExt\online_banking@kaspersky.com [2015-10-17] [non signé] Chrome: ======= CHR HKLM\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - hxxps://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho CHR HKLM-x32\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - hxxps://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho ==================== Services (Avec liste blanche) ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S2 AVP15.0.2; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 15.0.2\avp.exe [194000 2015-06-29] (Kaspersky Lab ZAO) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2842808 2015-09-26] (Microsoft Corporation) R3 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [349728 2015-06-25] (WildTangent) R2 HPSupportSolutionsFrameworkService; c:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [25800 2015-09-28] (Hewlett-Packard Company) R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [350312 2015-07-27] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel(R) Corporation) R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Fichier non signé] R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [22744 2015-02-05] (Microsoft Corporation) S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Fichier non signé] R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [223520 2015-07-10] (Intel Corporation) S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes) S3 mmsminisrv; C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe [4884064 2015-08-11] (Acronis) R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [389896 2014-04-15] () R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [294616 2015-06-05] (Realtek Semiconductor) R3 Unchecky; C:\Program Files (x86)\Unchecky\bin\Unchecky_svc.exe [241400 2015-10-20] (RaMMicHaeL) R3 VSStandardCollectorService140; C:\Program Files (x86)\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe [52968 2015-07-06] (Microsoft Corporation) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation) ===================== Pilotes (Avec liste blanche) ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [31992 2015-06-04] (Advanced Micro Devices, Inc.) R0 cm_km_w; C:\Windows\System32\drivers\cm_km_w.sys [247016 2015-06-29] (Kaspersky Lab UK Ltd) R0 file_tracker; C:\Windows\System32\DRIVERS\file_tracker.sys [323040 2015-10-17] (Acronis International GmbH) R3 HPMoA407; C:\Windows\System32\drivers\HPMoA407.sys [25088 2011-10-31] (Hewlett-Packard.) R3 HPubA407; C:\Windows\System32\Drivers\HPubA407.sys [18944 2012-06-14] (Hewlett-Packard.) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [478392 2015-06-29] (Kaspersky Lab ZAO) R2 kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [64368 2015-06-29] (Kaspersky Lab ZAO) S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [29616 2012-07-27] (Kaspersky Lab) R3 klflt; C:\Windows\system32\DRIVERS\klflt.sys [159960 2015-06-29] (Kaspersky Lab ZAO) R1 klhk; C:\Windows\system32\DRIVERS\klhk.sys [226480 2015-06-29] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [817848 2015-10-17] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [39792 2015-06-29] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [40304 2015-06-29] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [39792 2015-06-29] (Kaspersky Lab ZAO) R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [24944 2015-06-29] (Kaspersky Lab ZAO) R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [77680 2015-06-29] (Kaspersky Lab ZAO) R1 Klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [85360 2015-06-29] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [190648 2015-10-17] (Kaspersky Lab ZAO) S3 MBAMProtector; C:\windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes) R3 MBAMSwissArmy; C:\windows\system32\drivers\MBAMSwissArmy.sys [192216 2015-10-23] (Malwarebytes) S3 MBAMWebAccessControl; C:\windows\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation) R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [184608 2015-07-07] (Intel Corporation) S1 PCLEPCI; C:\windows\SysWOW64\drivers\pclepci.sys [14165 2005-02-09] (Pinnacle Systems GmbH) [Fichier non signé] R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [886528 2015-06-03] (Realtek ) R3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [402136 2015-05-27] (Realsil Semiconductor Corporation) R3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [4641536 2015-10-26] (Realtek Semiconductor Corporation ) R3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [214016 2015-07-10] (Microsoft Corporation) R0 tib; C:\Windows\System32\DRIVERS\tib.sys [1057728 2015-10-17] (Acronis International GmbH) R2 tib_mounter; C:\Windows\system32\DRIVERS\tib_mounter.sys [198088 2015-10-17] (Acronis International GmbH) S3 tnd; C:\Windows\system32\DRIVERS\tnd.sys [553912 2015-10-17] (Acronis International GmbH) S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] () S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation) R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation) U4 klkbdflt2; \SystemRoot\system32\DRIVERS\klkbdflt2.sys [X] S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X] ========================== MD5 Pilotes ======================= C:\Windows\System32\drivers\1394ohci.sys 22CE801AD25C51E2553F41A076BB0CB2 C:\Windows\System32\drivers\3ware.sys 2C49A2441EBB24C6ACFB524C1459115F C:\Windows\System32\drivers\ACPI.sys B87D3D07FE6F15328C6860D542F0E2BD C:\Windows\System32\Drivers\acpiex.sys 1E3C4EDBB7F3F668B7205E351010BB79 C:\Windows\System32\drivers\acpipagr.sys 13B1C26AEDCB40082CDD97506F968129 C:\Windows\System32\drivers\acpipmi.sys B3D64FF927D611721DA73A61BF3A18B3 C:\Windows\System32\drivers\acpitime.sys 19F793B2203D94AC1F8AEDB08B494E2E C:\Windows\System32\drivers\ADP80XX.SYS 2A24E10C1A1DE0E0035E353EED494A1C C:\Windows\system32\drivers\afd.sys 6C12C7E01A4F64E0AA9C88AF66955CC9 C:\Windows\System32\drivers\agp440.sys EF09D07626820F7F89519514C17FE768 C:\Windows\System32\DRIVERS\ahcache.sys 8A289EF0721F95267BF2404BABEE146D C:\Windows\System32\drivers\amdk8.sys 6763084E8322A4876D1613854640F914 C:\Windows\System32\drivers\amdkmafd.sys BE258C17CFD09F4210602105432E784A C:\Windows\system32\DRIVERS\atikmdag.sys 7898D94385DF3AAE7D5E96FE4E3AEF64 C:\Windows\system32\DRIVERS\atikmpag.sys BD133423A9A7AFB3E832A40F4F2BE5F9 C:\Windows\System32\drivers\amdppm.sys DE29D8AB57AD67D4940CAB4A48B3E230 C:\Windows\System32\drivers\amdsata.sys 4C1F9BBAF5CCD76D4642F3B92B97B454 C:\Windows\System32\drivers\amdsbs.sys F8195C1A15955180DD663E7FF4C2F6DD C:\Windows\System32\drivers\amdxata.sys DD2F5BBCFAC4D8E48DB1A95A7EEBFF08 C:\Windows\system32\drivers\appid.sys 46AAF119090573A80D603745582229ED C:\Windows\System32\drivers\arcsas.sys 0756EECAC010BE449D07502DF27E7701 C:\Windows\System32\drivers\asyncmac.sys A5792F971EFE86B7F56EE7299ED1082B C:\Windows\System32\drivers\atapi.sys 8921DF6060DB5C7700AA48CB12E9EA08 C:\Windows\System32\drivers\bxvbda.sys 00D64E82900E4EC9062805ED87C2D75A C:\Windows\System32\drivers\BasicDisplay.sys 5164A66EC1565711A7B4CF2F143B4979 C:\Windows\System32\drivers\BasicRender.sys F4C58BBF2972BD84C73F6A14CA35AC4E C:\Windows\System32\drivers\bcmfn2.sys 25349D0B334E528667980948ED107D89 C:\Windows\System32\Drivers\Beep.sys 1E8A9267F8886803AAE02982FC1B5BC4 C:\Windows\System32\DRIVERS\bowser.sys C9FD65687EF89715999C582D3E568812 C:\Windows\System32\drivers\BthAvrcpTg.sys F8DD3B0EAC1EF1D087AE47E5819540AC C:\Windows\System32\drivers\bthhfenum.sys 647E2A425AD43637EAA01096A58B7089 C:\Windows\System32\drivers\BthHFHid.sys B95040CAD3434D9EE003065363A0FAFF C:\Windows\System32\drivers\bthmodem.sys 29AEE352AED4FCD2191436D263D75347 C:\Windows\System32\drivers\buttonconverter.sys 854AF190F55E6D70EC65A85798F896E2 C:\Windows\System32\drivers\capimg.sys A10A1E05A943B10ECE5D57D131B7404D C:\Windows\System32\DRIVERS\cdfs.sys F2829DC6D292DCAC5029893BB2E9FEE3 C:\Windows\System32\drivers\cdrom.sys CA160E02F35A61C6F5C681FB4669C519 C:\Windows\System32\drivers\circlass.sys 60D7D304DF75DFF6A46CF633F583B592 C:\Windows\System32\drivers\CLFS.sys FF9D4BCE19E5D36CB3A845A3286DA6C3 C:\Windows\System32\drivers\CmBatt.sys 8EBA63416EC166EBA6EF6D34A505D8C8 C:\Windows\System32\drivers\cm_km_w.sys 429B31D047CFAD3CA5DD38120A2CE455 C:\Windows\System32\Drivers\cng.sys 3B64DA873CEA5BEC42570BFF1054A014 C:\Windows\System32\DRIVERS\cnghwassist.sys 5EEA0856000F81B3D709BC81B3AA1EF2 C:\Windows\System32\DriverStore\FileRepository\compositebus.inf_amd64_98334ba6e76853ba\CompositeBus.sys 74CD3BF688E2B408227FE012A2F2D8ED C:\Windows\System32\drivers\condrv.sys D38774D1D383A2CDB9A4F64B7206913B C:\Windows\System32\drivers\dam.sys F038EAF73AAB72A4A89185A5A7B9FD75 C:\Windows\System32\Drivers\dfsc.sys 25435407D97419627F4B10653433BF2B C:\Windows\System32\drivers\disk.sys FDCD449AE9E75D7690593D16ADAF4DB4 C:\Windows\System32\drivers\dmvsc.sys F10A8F6D036CEDD14A5471782C52F041 C:\Windows\system32\drivers\drmkaud.sys 45771610FF181434073B5A0A00F20F8D C:\Windows\System32\drivers\dxgkrnl.sys 89C9C3745F270EF93988DA57BC6AA62B C:\Windows\System32\drivers\evbda.sys 3070013B01EDA42C7EB67D731340C396 C:\Windows\System32\drivers\EhStorClass.sys 59EE187E333EE9914DD9BEA5F4E0D85D C:\Windows\System32\drivers\EhStorTcgDrv.sys 9297F1CC486F24BDFD2874156AC5430F C:\Windows\System32\drivers\errdev.sys F7FCCA6300485EF60CEA6D991D6C8C78 C:\Windows\System32\Drivers\exfat.sys DCCDC3F35F0618692117DF90800A4284 C:\Windows\System32\Drivers\fastfat.sys 5A1C6AFFF6946C5C21A27AE05084C0D1 C:\Windows\System32\drivers\fcvsc.sys 4E4B7D935DBF522B2F23D3573596181D C:\Windows\System32\drivers\fdc.sys 583EB1C7690E361213BBD0472155128B C:\Windows\System32\drivers\filecrypt.sys CDFD81CACE0E11596A3BB61EC4CF6467 C:\Windows\System32\drivers\fileinfo.sys 3F02FEDAE894CBF4BAADDF8C8E1D53A8 C:\Windows\System32\drivers\filetrace.sys 2824933386E30DE5BA089DF539CE19A3 C:\Windows\System32\DRIVERS\file_tracker.sys 85A063C15DC49543700B73084E16CF06 C:\Windows\System32\drivers\flpydisk.sys 6A598249640F8BEDD79EC73917E1664F C:\Windows\System32\drivers\fltmgr.sys 44B6A6832134DF651E887E941478CA35 C:\Windows\System32\DRIVERS\fltsrv.sys AFCF6AAE1602877AB261F64D853F5385 C:\Windows\System32\drivers\FsDepends.sys 3F3B9E8CECD5604BC7746EF3A852EB67 C:\Windows\System32\Drivers\Fs_Rec.sys A60583221C7BB7CEC35C63285A297BE1 C:\Windows\System32\DRIVERS\fvevol.sys 58013A50225174EEF1410E37795D7908 C:\Windows\System32\drivers\gagp30kx.sys 0DAAE3EFCE00133AB3E383A36C47CDAF C:\Windows\System32\drivers\vmgencounter.sys F59155B95D01C08F9ED774B626B504A1 C:\Windows\System32\drivers\genericusbfn.sys AE24452F55C6F1784CBD7489D0CDDB02 C:\Windows\System32\Drivers\msgpioclx.sys 96F0D3A583A91B634EE2AC2507356EDC C:\Windows\System32\drivers\gpuenergydrv.sys BA2455D93BD57989A04FE4094AA6F941 C:\Windows\System32\drivers\HDAudBus.sys C277A49F8A8295840DEBC9240B75A282 C:\Windows\System32\drivers\HidBatt.sys D5A57EF4822A0388352FFF9F5CD53495 C:\Windows\System32\drivers\hidbth.sys 39575B53EB80C77FF2A3F1449D00B7F5 C:\Windows\System32\drivers\hidi2c.sys 35C3B602664116E737FF729F9A7156AD C:\Windows\System32\drivers\hidinterrupt.sys C4ABE526BBF2A18E8AF70177FBAD9C6E C:\Windows\System32\drivers\hidir.sys 348416C7D7EB05BC3099FE2F2B27985C C:\Windows\System32\drivers\hidusb.sys 01F732724AF6EFE69886DA95A4E51820 C:\Windows\System32\drivers\HPMoA407.sys 9F2CBCE009396EE1B021B443EC68ECD5 C:\Windows\System32\drivers\HpSAMD.sys 3844CE7DD23530CAD59D8CABA57CCB05 C:\Windows\System32\Drivers\HPubA407.sys F62CE35349403B2C6BC2787E61F1973A C:\Windows\System32\drivers\HTTP.sys CA6EADBB8731CA27BDA4037BF290AC14 C:\Windows\System32\drivers\hwpolicy.sys 8841D927EB1F7FFC8B1805BC0CF190ED C:\Windows\System32\drivers\hyperkbd.sys 53436C3835E80F4421652A67F44D6313 C:\Windows\System32\drivers\i8042prt.sys D4CDEE4A62BDFFF6E8558A9552148EA7 C:\Windows\System32\drivers\iaLPSSi_GPIO.sys 16A10CCEDCF5AC4CAAE43DC9FC40392F C:\Windows\System32\drivers\iaLPSSi_I2C.sys F1DF87463AC308047B089E9F0456B4C8 C:\Windows\System32\drivers\iaStorA.sys 12859E1215AA083A42E7ADCDE5C061D1 C:\Windows\System32\drivers\iaStorAV.sys 9FDD4763A115D04F565C38183DE4646F C:\Windows\System32\drivers\iaStorV.sys 4E69EE8F8E5DA036535D433C544AF9E2 C:\Windows\System32\drivers\ibbus.sys 15C59DF20F74A0C2C764B991FED7F4A5 C:\Windows\system32\DRIVERS\igdkmd64.sys 6FFC445E0D38C3C880125F2C201C9BC6 C:\Windows\system32\drivers\RTKVHD64.sys E0AB51937979C57300AB38E2F202E1D6 C:\Windows\system32\DRIVERS\IntcDAud.sys 42777B7BE4946135578E5C3BC1D2E4AD C:\Windows\System32\drivers\intelide.sys 498759139F71142888CF7EFA1ABE18C8 C:\Windows\System32\drivers\intelpep.sys DC270DDCDDC2EF65D484A65CC5166222 C:\Windows\System32\drivers\intelppm.sys B4D9C777762B1F7356958B9C0AA93BEB C:\Windows\System32\drivers\ioqos.sys 22BD83268B80A8C89AAC0BDF46E4EB5D C:\Windows\System32\DRIVERS\ipfltdrv.sys A49E47A6E1429123F46A7CA9C05AEFC1 C:\Windows\System32\drivers\IPMIDrv.sys E0C276985AF968CE295B8E09C121321F C:\Windows\System32\drivers\ipnat.sys 5D3744E6FDEC1A6FB3FA9B1DD4AF0694 C:\Windows\System32\drivers\irenum.sys B18202D72C0EF4B53CEC6F59E3E1B955 C:\Windows\System32\drivers\isapnp.sys CD04CBCCCB4C0E4BB06B98E0F45C888A C:\Windows\System32\drivers\msiscsi.sys 5D90E942C94B20E0F321015C0ABF3EEA C:\Windows\System32\drivers\kbdclass.sys 4192DFE6CA143C0AD8AF42C51A82BECA C:\Windows\System32\drivers\kbdhid.sys B63C0DB341DCB46CF7AA259333A737DD C:\Windows\System32\drivers\kdnic.sys 53C79A7FABDAAFD11EAB31963FB2CED7 C:\Windows\System32\DRIVERS\kl1.sys 5781DA0CFB8833F5D8AEB433233C7294 C:\Windows\system32\DRIVERS\kldisk.sys EE7A44540B65B6FF617DCB8929C9FDAE C:\Windows\System32\DRIVERS\klelam.sys F2EB9202FCCC81E0902D3C5A70037A44 C:\Windows\system32\DRIVERS\klflt.sys 6C76992FC40A857A24C5D96602E9C3B1 C:\Windows\system32\DRIVERS\klhk.sys 52B6208BC2E92558AD7DB2A6015F8E4A C:\Windows\System32\DRIVERS\klif.sys 68A63B654F5545F2131B8C549F18B95B C:\Windows\system32\DRIVERS\klim6.sys 082E4E17C8C56205D7A3A74F52FAD991 C:\Windows\system32\DRIVERS\klkbdflt.sys 72EB703CBD490DE11FB468F290A47493 C:\Windows\system32\DRIVERS\klmouflt.sys 039C35F0CA2866447C6C38F6653DD0BF C:\Windows\System32\DRIVERS\klpd.sys B33399BCA2034648520E34987CE2C0C9 C:\Windows\system32\DRIVERS\klwfp.sys C66A4C640B7F9606668D35D726D2FF51 C:\Windows\system32\DRIVERS\klwtp.sys 88D5EF6EE17C280167D42B53282AB4BD C:\Windows\system32\DRIVERS\kneps.sys F9F8752748D6629EB8A5990F97D4346B C:\Windows\System32\Drivers\ksecdd.sys 1E99B26BDB9B9C9BC775ED4543558560 C:\Windows\System32\Drivers\ksecpkg.sys 6198A79011C67497B324798B3D4272CE C:\Windows\system32\drivers\ksthunk.sys 503597D9B72DBD9998F722F12A51ACFC C:\Windows\System32\drivers\lltdio.sys DB789F57CE94C827FBFF709CA5ABD29E C:\Windows\System32\drivers\lsi_sas.sys 3BB39166E446D456C277C17DFEA3DAC6 C:\Windows\System32\drivers\lsi_sas2i.sys 25CF625E46307A5D6674C8DFA1A289AA C:\Windows\System32\drivers\lsi_sas3i.sys 722C52B12EA4C198D56994934C9DDAB6 C:\Windows\System32\drivers\lsi_sss.sys 3371FF1D5D745C3306C6A2C4E99C25A9 C:\Windows\system32\drivers\luafv.sys C692B9C0352315417CF49FFA664957A3 C:\windows\system32\drivers\mbam.sys CFBC6C6D8A492697CABD1D353EE64933 C:\windows\system32\drivers\MBAMSwissArmy.sys 78488AF2AB2111D67B3C4044707A519B C:\windows\system32\drivers\mwac.sys 08DECFCB9BA97786165A69AB1015BC30 C:\Windows\System32\drivers\megasas.sys B2ED9A7A5587A128A0EFD0DBE7662E95 C:\Windows\System32\drivers\megasr.sys 083F71488E6780A67290273180256EA5 C:\Windows\System32\drivers\TeeDriverW8x64.sys 48F64A35BA9F2E4AC0587DDA555FF951 C:\Windows\System32\drivers\mlx4_bus.sys 5907A10D46747A2B6DBFD6A198254DC2 C:\Windows\system32\drivers\mmcss.sys 91ED6F0EDF4158D63C52194F17D4F42E C:\Windows\System32\drivers\modem.sys 2C4CC9F6ADBED5A6D131FDB97A78FF68 C:\Windows\System32\drivers\monitor.sys D8DB13529C8AD6FBAF8E2F382024374F C:\Windows\System32\drivers\mouclass.sys 2DAAF1EE1C30F2FCF59851A64ADA0422 C:\Windows\System32\drivers\mouhid.sys D30FE074503283829ED194BCAE6239C3 C:\Windows\System32\drivers\mountmgr.sys D5EC9413527B286CFEEB0294C53ABB95 C:\Windows\System32\drivers\mpsdrv.sys 989A1BBD9C49B107B4A47D06E6827A69 C:\Windows\system32\drivers\mrxdav.sys C1E74DD1D84861D8F12FF8BC0BA11975 C:\Windows\System32\DRIVERS\mrxsmb.sys 1DF2C5FD2710A13B07E663A12F0E0EEA C:\Windows\System32\DRIVERS\mrxsmb10.sys 185932B1149BD707F8A13174CDAB365B C:\Windows\System32\DRIVERS\mrxsmb20.sys 99E24D4DBACBC569833B9A67710D65E7 C:\Windows\System32\drivers\bridge.sys 6F8BE4FB6262012E61BBADB5444628DC C:\Windows\System32\Drivers\Msfs.sys 7C55F1751CAC199680D4489D1EE46544 C:\Windows\System32\drivers\msgpiowin32.sys 988588C16A53C2581488C15FF18934BF C:\Windows\System32\drivers\mshidkmdf.sys 09622DBC24D0178F15DB8461BB6970DF C:\Windows\System32\drivers\mshidumdf.sys 34BB07495C0159BE4189841E16F3BC2F C:\Windows\System32\drivers\msisadrv.sys 7BF3F0DA362C053918F5F2EC43CE39E2 C:\Windows\system32\drivers\MSKSSRV.sys B2D0FD21FE67D6434769CC6F7A7883CA C:\Windows\System32\drivers\mslldp.sys FB3801F176376286A3F8F20FFB8CDC53 C:\Windows\system32\drivers\MSPCLOCK.sys 8CBDF0E7A6CD824352F37A682A33DF7E C:\Windows\system32\drivers\MSPQM.sys 33E5B6261D69ACD4948A5C64B9D8F29F C:\Windows\System32\Drivers\MsRPC.sys 557DF8C0DBBBF518AC395C6EB1B179AE C:\Windows\System32\drivers\mssmbios.sys 0A29AFA668F5DD50482A98ECE70C77A7 C:\Windows\system32\drivers\MSTEE.sys 30CE30877FD5BFADE74FA27D7829BF89 C:\Windows\System32\drivers\MTConfig.sys 13D88C0B8A2FA001CD72D454955A6974 C:\Windows\System32\Drivers\mup.sys 00C7F0F06A0A48B9CDB6B3AC3BE288F0 C:\Windows\System32\drivers\mvumis.sys 8E237527CA260C71D39ED4081BDF3419 C:\Windows\System32\DRIVERS\nwifi.sys 48D0587A8302FD3302CFE6F59F7345B0 C:\Windows\System32\drivers\ndfltr.sys CF8296427834CF8BBB3EE1444C17362D C:\Windows\System32\drivers\ndis.sys 616F40B897DA651221F86A1741E9609B C:\Windows\System32\drivers\ndiscap.sys A0719D1EBA971DFC5DF5F7CC010385F8 C:\Windows\System32\drivers\NdisImPlatform.sys 0C557932CCCC65AEB37326DD36504527 C:\Windows\System32\DRIVERS\ndistapi.sys 56F9345D1945826135FBAB7589592B1F C:\Windows\System32\drivers\ndisuio.sys AADFC340939D99E5D756E713E1D452EB C:\Windows\System32\drivers\NdisVirtualBus.sys 312DFD787D99D3BF1427B0388BC04F71 C:\Windows\System32\drivers\ndiswan.sys 2103F43E0A1ECFB14B7E1B889F5F24D7 C:\Windows\System32\DRIVERS\ndiswan.sys 2103F43E0A1ECFB14B7E1B889F5F24D7 C:\Windows\System32\DRIVERS\NDProxy.sys 6E98F16983C4AE8703FF9F90AB4B31DD C:\Windows\System32\drivers\Ndu.sys F1B7CC77F412C8D45B2DDCF76EDA4F9D C:\Windows\System32\drivers\netbios.sys 824FDC990A3F79069BE468A132EB6888 C:\Windows\System32\DRIVERS\netbt.sys F0D791348AD254360CC3C3E501CCB745 C:\Windows\System32\Drivers\Npfs.sys 41557BE174E9EC6AC703A8A4ADBC6650 C:\Windows\System32\drivers\npsvctrig.sys AC3F70FCFBCE97AA2F12BA43EE13B86E C:\Windows\System32\drivers\nsiproxy.sys 66A98C407085B8920DF1E6D722F1ADB8 C:\Windows\System32\Drivers\NTFS.sys 466EC5659C02ED53DBD47DC1BC2B8086 C:\Windows\System32\Drivers\Null.sys 383E546EF4982262A0EF6CC2B6E9D525 C:\Windows\System32\drivers\nvraid.sys 466F875F1D4C6ABB46AF28007009237C C:\Windows\System32\drivers\nvstor.sys 76F19EAE7A52CBAF7B8EC428BE6E0DA0 C:\Windows\System32\drivers\nv_agp.sys 0D0CB77D74B38E0EC62341C19E469D8D C:\Windows\System32\drivers\parport.sys 38F1AE32339731F6E5A7281AE8042545 C:\Windows\System32\drivers\partmgr.sys 707889D2F95AAE8C9DD254D8767AD908 C:\Windows\System32\drivers\pci.sys 2834089EA4E550FF3B96E61FB4AA34ED C:\Windows\System32\drivers\pciide.sys 3D587E4295B11B8480F7ACB09A89D718 C:\windows\SysWOW64\drivers\pclepci.sys 1BEBE7DE8508A02650CDCE45C664C2A2 C:\Windows\System32\drivers\pcmcia.sys B8F07002B5F1DA23CFF979C2806B09F3 C:\Windows\System32\drivers\pcw.sys FF588077D0C6AC2EA3FCBF1903CE08D0 C:\Windows\System32\drivers\pdc.sys 70469C8AC4AD367295E70CFDD81B754C C:\Windows\System32\drivers\peauth.sys 688F47C342E1BBC87A48AB71D316233E C:\Windows\System32\drivers\percsas2i.sys 189265498945593D5256CFF7FEBB9665 C:\Windows\System32\drivers\percsas3i.sys 9B86965114F6831A5130EFE6657B17D9 C:\Windows\System32\drivers\raspptp.sys 1433EB7908E5E1E20FFD50E4126C3484 C:\Windows\System32\drivers\processr.sys 22DE54C3974E4FD98F61D095C22C59B7 C:\Windows\System32\drivers\pacer.sys EDD52C352CBAAAD13FD7BD5DCEA309B3 C:\Windows\system32\drivers\qwavedrv.sys 51590F442C6E5D43244BA30DDB0CE79D C:\Windows\System32\DRIVERS\rasacd.sys E951E70019865B06126AF850BCCA2026 C:\Windows\System32\drivers\AgileVpn.sys 0BF8607133AE264BC3C41A5BAA5FFB7B C:\Windows\System32\drivers\rasl2tp.sys CA60F6C03611AF1710BC903ED9F566FB C:\Windows\System32\DRIVERS\raspppoe.sys E5FA41160F5A3D78D8F7765E5C5F6BB0 C:\Windows\System32\drivers\rassstp.sys DF0834AE921E633E05D1FDC55C318957 C:\Windows\System32\DRIVERS\rdbss.sys FC9B7AC6E2B837EF7CD6C64F7068D41D C:\Windows\System32\drivers\rdpbus.sys FB7375657F8A5932C35EAA45E9B4B416 C:\Windows\System32\drivers\rdpdr.sys A32AED8C644734B283A7C9D08D76064D C:\Windows\System32\drivers\rdpvideominiport.sys 37CC7E41243EFBB4FBC0510E5CA32A02 C:\Windows\System32\drivers\rdyboost.sys DAF957B25A35757E9D814611FAE8FE3B C:\Windows\System32\Drivers\ReFSv1.sys 2C72E029C153D25325CA182A669E4ADE C:\Windows\System32\drivers\rspndr.sys DC66C1D262D64E30A30B68E9F21AC74B C:\Windows\System32\drivers\rt640x64.sys 12A3D1530E3F67B8664EBA923A3981E4 C:\Windows\system32\Drivers\RtsUer.sys AB959F26FBB851A9D31E2F229DB3FA1A C:\Windows\system32\DRIVERS\rtwlane.sys 6EB47CD7B47F3EEC268B015054D0C393 C:\Windows\System32\drivers\vms3cap.sys 88F7703F2A4677C828124AE2110D3EBC C:\Windows\System32\drivers\sbp2port.sys B467E932FE4E16E201DC7E56870CB559 C:\Windows\System32\DRIVERS\scfilter.sys 31DDA0716EC265CA57DAF9D2295FD76F C:\Windows\System32\drivers\sdbus.sys 004C66464D8FE76D5DA78BE6777D61AF C:\Windows\System32\drivers\sdstor.sys F4BF50A7D16A97A887BFA0F193693C42 C:\Windows\system32\DRIVERS\WUDFRd.sys 4E848DE29E4279C7F25EF5B34ED94FDD C:\Windows\System32\drivers\SerCx.sys 9DB0BBE3ABE1F49651AE51EC5BCABE58 C:\Windows\System32\drivers\SerCx2.sys C4AF79C37334D995D95C22C14FDBF7FD C:\Windows\System32\drivers\serenum.sys FC541A272F47BE03E67A9FCB87FA8C3E C:\Windows\System32\drivers\serial.sys 2A5F5F95FCA123DCBF53B5F603B64789 C:\Windows\System32\drivers\sermouse.sys C8738887228B7BFA3B1A906816A8BB12 C:\Windows\System32\drivers\sfloppy.sys 67832B68752CDF7FDE56949E4A2E70BF C:\Windows\System32\drivers\SiSRaid2.sys ED058030296CF9B79C8D48BF43724323 C:\Windows\System32\drivers\sisraid4.sys 633D3D1581E9DCCD5A2D8F039104C9A5 C:\Windows\System32\DRIVERS\snapman.sys 273D023EC708A54623518A059DA1E043 C:\Windows\System32\drivers\spaceport.sys 187B4AD4446C59F8FCC4A10F473EE3D1 C:\Windows\System32\drivers\SpbCx.sys 2799FCA215919FDC9A87C5FCAB530828 C:\Windows\System32\DRIVERS\srv.sys AA1F23501511EFE9CF9771F6B20E8D45 C:\Windows\System32\DRIVERS\srv2.sys F5B169EDF9D5E3C7200D89D30E065D13 C:\Windows\System32\DRIVERS\srvnet.sys 2E142E027F0AA698BA4DCE49CBDB43CD C:\Windows\System32\drivers\stexstor.sys DDE064A4298FD1FBF804D3ED691E7EDB C:\Windows\System32\drivers\storahci.sys 32C95F44108C3E7DB58F773346E3C9D0 C:\Windows\System32\drivers\vmstorfl.sys 8883C8CE4942A99B84E1CC6EFA19738E C:\Windows\System32\drivers\stornvme.sys AE7B7E1E95BFB9340B1956C98CA52C81 C:\Windows\System32\drivers\storqosflt.sys 63513EF3121689B3A59BD217618A2E42 C:\Windows\System32\drivers\storufs.sys 000F5CFCEF0F06DC8FD1D2F568E48AE4 C:\Windows\System32\drivers\storvsc.sys 7415087F9006D6818F85F3CBD79B1A50 C:\Windows\System32\DriverStore\FileRepository\swenum.inf_amd64_2a699e44676b7781\swenum.sys 802278EE4ACCE9EA1F1481DF20EB1667 C:\Windows\System32\drivers\Synth3dVsc.sys 12D0CB1DCAE6725B6CA54CC2038C4C8C C:\Windows\System32\drivers\tcpip.sys 7EBD20284AC9BF9F0A020B86769BB074 C:\Windows\System32\drivers\tcpip.sys 7EBD20284AC9BF9F0A020B86769BB074 C:\Windows\System32\drivers\tcpipreg.sys D378A1AF58AFA84BB6AC753F2C1BE9F4 C:\Windows\system32\DRIVERS\tdx.sys 28E1E63A1AC65E17B3194238FA2CF3BF C:\Windows\System32\drivers\terminpt.sys CCDBD2817C10A4F631280CBB3AE44FFB C:\Windows\System32\DRIVERS\tib.sys D00E6FC3615D6DF90B3B9A842B07C1E2 C:\Windows\system32\DRIVERS\tib_mounter.sys E8485EE510638CE24CD7427ABE7CF6B5 C:\Windows\system32\DRIVERS\tnd.sys 4A3AB9F8994A02BEE54D2D21EE38B03C C:\Windows\system32\drivers\tpm.sys F4AEDABC8F3A9D632F8206D0C7F8CA09 C:\Windows\System32\drivers\TsUsbFlt.sys 676C801CAA61AADD0C918CC536A74B78 C:\Windows\System32\drivers\TsUsbGD.sys 2BB6CC0DD1CEE86330743B56FA9FE91F C:\Windows\System32\drivers\tunnel.sys 14B46248612DF1B1A695040FFFBCFAFC C:\Windows\System32\drivers\uagp35.sys D0BE5EA1652D55029C9A898FB8ACFCE0 C:\Windows\System32\drivers\uaspstor.sys 13C15E4B238895FE4731DB1D612EEB5F C:\Windows\System32\Drivers\UcmCx.sys BEBB8B55C5F99B69EEE39A9D7BADB21E C:\Windows\System32\drivers\UcmUcsi.sys DE3EDAF609D00EA2E54986E6459796A6 C:\Windows\System32\drivers\ucx01000.sys FB1C1D8B96A482F3581338D6752E1D6C C:\Windows\System32\drivers\udecx.sys 4E1543ACE2F6E2846713E5123D9D4159 C:\Windows\System32\DRIVERS\udfs.sys CDCA9CC1D8293E75218D8FF85F2337A4 C:\Windows\System32\drivers\UEFI.sys BC683E19307C533C7161DB7A58051347 C:\Windows\System32\drivers\ufx01000.sys D14B42C26DE402F316D49667D15446F0 C:\Windows\System32\drivers\UfxChipidea.sys 192470BE4321791FBB25F379D0141D6F C:\Windows\System32\drivers\ufxsynopsys.sys F7BD838E84E6B286DBCE068EFB8C0800 C:\Windows\System32\drivers\uliagpkx.sys A25842AC180F0E8B02380ECB8ADA1AF5 C:\Windows\System32\drivers\umbus.sys 21088F43172525C7E02D335A3327F46C C:\Windows\System32\drivers\umpass.sys 294A291B5D48FE8F38DD94B7272442C5 C:\Windows\System32\drivers\urschipidea.sys A7A52EDDC3FAF183D6AC4774690ADF13 C:\Windows\System32\drivers\urscx01000.sys 2EEA0897DD9E30E958B508D557F0B5E4 C:\Windows\System32\drivers\urssynopsys.sys DC54D775A3A61E4CDE871B4E38A1459A C:\Windows\System32\drivers\usbccgp.sys 18B63A0980F4AA1E6D7879B253980E37 C:\Windows\System32\drivers\usbcir.sys 1C60A1A3C8E1E819E16F12BAEB1C83F8 C:\Windows\System32\drivers\usbehci.sys 9A3E39F85DC6E3B9F792F1095ACFF788 C:\Windows\System32\drivers\usbhub.sys 0A368247A900656CC0678117DFC3A87C C:\Windows\System32\drivers\UsbHub3.sys C08449092043601887A1743350888635 C:\Windows\System32\drivers\usbohci.sys 72EA850B59F40C25A4FEDDA5FE84EFEB C:\Windows\System32\drivers\usbprint.sys 47B2B2DE152E25546944049CA1170BB1 C:\Windows\System32\drivers\usbser.sys 1F72E1A7E1858B7B3FF81522FCEBDE95 C:\Windows\System32\drivers\USBSTOR.SYS CD35467670DF1E6FBF36DA308F0C872B C:\Windows\System32\drivers\usbuhci.sys DFA92EA105DD1073B43FB210EEB03DD4 C:\Windows\System32\drivers\USBXHCI.SYS C67A03F54A1EA683F4880A481EE5FF6C C:\Windows\System32\drivers\vdrvroot.sys 26223003DDFB347B5CF3EC0B56DB066B C:\Windows\System32\drivers\VerifierExt.sys A417284BC6B5C2EEF63F2C5154473530 C:\Windows\System32\drivers\vhdmp.sys 4C39C05A72EB14C0567501C7E087E564 C:\Windows\System32\drivers\vhf.sys C42206A15078596FDE8E89BB629DE342 C:\Windows\System32\drivers\vmbus.sys 248D9F911A5C94CF8477125DD0C3A291 C:\Windows\System32\drivers\VMBusHID.sys 3E98DD4E0CBD6B4F9CBD0E9E0EDF541E C:\Windows\System32\drivers\volmgr.sys 91F165C5D71D9DCB18D4661CF10D1084 C:\Windows\System32\drivers\volmgrx.sys 17042748AC05862A0283D32575220080 C:\Windows\System32\drivers\volsnap.sys 823A237D871CD652C6BFD47BECB6810A C:\Windows\System32\drivers\vpci.sys 78727FA284C2095EED660D71CD3C9AEF C:\Windows\System32\drivers\vsmraid.sys 2415961D561E02F5E46B7C1C687A6788 C:\Windows\System32\drivers\vstxraid.sys 6AE9A843AE979F2DCCA5A25C07C7A5F8 C:\Windows\System32\drivers\vwifibus.sys BD232C761C59FA8D8EF626CA630E2D2E C:\Windows\System32\drivers\vwififlt.sys 3039687AB65CEE26CF478C1F42FFCD7D C:\Windows\System32\drivers\vwifimp.sys 37C868DDE3103130B00AD1313DAB5ACB C:\Windows\System32\drivers\wacompen.sys FC40A7527D39F06D032A6553D22E4BF6 C:\Windows\System32\DRIVERS\wanarp.sys E9E22E116F810DAC98C5EC207F24C916 C:\Windows\System32\DRIVERS\wanarp.sys E9E22E116F810DAC98C5EC207F24C916 C:\Windows\System32\drivers\WdBoot.sys C8BA574B3BA6AE88741AC86B1FE3C1DC C:\Windows\System32\drivers\Wdf01000.sys 927AD29D7F91B9A0C5294932374DA15E C:\Windows\System32\drivers\WdFilter.sys C5BB7C612B4C852836BEA39593BA5F46 C:\Windows\System32\DRIVERS\wdiwifi.sys 9B2039C5673EEBF1D4E34ABC0AFB88C7 C:\Windows\System32\Drivers\WdNisDrv.sys BD193A7BD34B2E829FAF56306FEE3B09 C:\Windows\System32\drivers\wfplwfs.sys DBF5255B759212E5217A2748567A0B5C C:\Windows\System32\drivers\wimmount.sys 4375BCBA419D19695CF566082CEF27D3 C:\Windows\System32\drivers\WindowsTrustedRT.sys 037BC6DE5F58D4A74A5BB0C12DCECDCA C:\Windows\System32\drivers\WindowsTrustedRTProxy.sys 70BCD70BD53F2FE660ED94B025A043EB C:\Windows\System32\drivers\winmad.sys 7792AE5403BF8975B6460DFC3428D129 C:\Windows\System32\drivers\WinUSB.SYS 811F30EB6EE8318C4171CB95AE30B9BD C:\Windows\System32\drivers\winverbs.sys DF00381AB8665D48DE3FF794BC6760AB C:\Windows\System32\drivers\wmiacpi.sys 623ED8E10DFEEAB7AE2CD11A0451DB79 C:\Windows\System32\Drivers\Wof.sys 78CA1FF6FE37EEFAFF99DD1C956AF60A C:\Windows\System32\DRIVERS\wpcfltr.sys 388F2A3C771B8BEE76FD1AAF9614D08E C:\Windows\System32\drivers\WpdUpFltr.sys 37DCE976B3935380F2F6E39ABB6BF40D C:\Windows\system32\drivers\ws2ifsl.sys 3CD22DD5A790CF7C24D65455E565EA83 C:\Windows\System32\drivers\WudfPf.sys 835F60262E7E310080EA05F6752BF248 C:\Windows\System32\drivers\WUDFRd.sys 4E848DE29E4279C7F25EF5B34ED94FDD C:\Windows\system32\DRIVERS\WUDFRd.sys 4E848DE29E4279C7F25EF5B34ED94FDD C:\Windows\System32\drivers\xboxgip.sys 30021D1E0407B71E8D5D4F8DAE4E656A C:\Windows\System32\drivers\xinputhid.sys 6851673B90D8CB332439E0339F81A6B6 ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois - Créés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2015-10-26 18:40 - 2015-10-26 18:41 - 00044240 _____ C:\Users\romai\Desktop\FRST.txt 2015-10-26 18:40 - 2015-10-26 18:40 - 00000000 ____D C:\FRST 2015-10-26 18:39 - 2015-10-26 18:39 - 02197504 _____ (Farbar) C:\Users\romai\Desktop\FRST64.exe 2015-10-26 18:37 - 2015-10-26 18:37 - 00016148 _____ C:\windows\system32\DESKTOP-REDPR99_romai_HistoryPrediction.bin 2015-10-26 18:19 - 2015-10-26 18:19 - 00002706 _____ C:\Users\romai\Desktop\ZHPFixReport.txt 2015-10-26 18:18 - 2015-10-26 18:18 - 00001925 _____ C:\Users\Public\Desktop\ZHPFix.lnk 2015-10-26 18:18 - 2015-10-26 18:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP 2015-10-26 18:18 - 2015-10-26 18:18 - 00000000 ____D C:\Program Files (x86)\ZHPFix 2015-10-26 18:17 - 2015-10-26 18:18 - 03521617 _____ (Nicolas Coolman ) C:\Users\romai\Desktop\ZHPFix.exe 2015-10-26 18:16 - 2015-10-26 18:16 - 00003252 _____ C:\windows\System32\Tasks\HPCeeScheduleForromai 2015-10-26 18:16 - 2015-10-26 18:16 - 00000364 _____ C:\windows\Tasks\HPCeeScheduleForromai.job 2015-10-26 17:57 - 2015-10-26 17:53 - 01139416 _____ (Realtek Semiconductor Corp. ) C:\windows\system32\Rtlihvs.dll 2015-10-26 13:03 - 2015-10-26 17:58 - 00000052 _____ C:\windows\SysWOW64\DOErrors.log 2015-10-26 13:01 - 2015-10-26 18:16 - 00000000 ____D C:\Users\romai\AppData\Local\Hewlett-Packard 2015-10-26 10:12 - 2015-10-26 10:12 - 00125793 _____ C:\Users\romai\Desktop\ZHPDiag.txt 2015-10-26 10:10 - 2015-10-26 18:19 - 00000000 ____D C:\Users\romai\AppData\Roaming\ZHP 2015-10-26 10:10 - 2015-10-26 10:11 - 00000872 _____ C:\Users\romai\Desktop\ZHPDiag.lnk 2015-10-26 10:10 - 2015-10-26 10:10 - 01959936 _____ C:\Users\romai\Desktop\ZHPDiag3.exe 2015-10-25 20:39 - 2015-10-25 20:39 - 00016148 _____ C:\windows\system32\DESKTOP-REDPR99_patri_HistoryPrediction.bin 2015-10-23 10:48 - 2015-10-23 10:49 - 00192216 _____ (Malwarebytes) C:\windows\system32\Drivers\MBAMSwissArmy.sys 2015-10-23 10:48 - 2015-10-23 10:48 - 00001178 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2015-10-23 10:48 - 2015-10-23 10:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware 2015-10-23 10:48 - 2015-10-23 10:48 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-10-23 10:48 - 2015-10-23 10:48 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware 2015-10-23 10:48 - 2015-10-05 08:50 - 00109272 _____ (Malwarebytes) C:\windows\system32\Drivers\mbamchameleon.sys 2015-10-23 10:48 - 2015-10-05 08:50 - 00064216 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mwac.sys 2015-10-23 10:48 - 2015-10-05 08:50 - 00025816 _____ (Malwarebytes) C:\windows\system32\Drivers\mbam.sys 2015-10-23 10:47 - 2015-10-23 10:48 - 22908888 _____ (Malwarebytes ) C:\Users\romai\Desktop\mbam-setup-2.2.0.1024.exe 2015-10-22 14:07 - 2015-10-22 14:09 - 00000454 _____ C:\Users\romai\Desktop\new 2 2015-10-22 14:06 - 2015-10-22 14:06 - 00000506 _____ C:\Users\romai\Desktop\new 1 2015-10-22 13:37 - 2015-10-22 13:37 - 00000000 ____D C:\Users\romai\Desktop\Rapport 2015-10-22 13:28 - 2015-10-22 13:30 - 00000000 ____D C:\Data_Tool_Controler 2015-10-22 13:27 - 2015-10-22 21:13 - 00000000 ____D C:\Users\romai\Desktop\Tool_Controler_console_visual 2015-10-22 11:21 - 2015-10-22 14:00 - 00000000 ____D C:\Users\romai\AppData\Roaming\Notepad++ 2015-10-22 11:21 - 2015-10-22 11:21 - 00000000 ____D C:\Users\romai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ 2015-10-22 11:21 - 2015-10-22 11:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2015-10-22 11:21 - 2015-10-22 11:21 - 00000000 ____D C:\Program Files (x86)\Notepad++ 2015-10-21 18:00 - 2015-10-21 18:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DB Browser for SQLite 2015-10-21 18:00 - 2015-10-21 18:00 - 00000000 ____D C:\Program Files\SqliteBrowser3 2015-10-21 17:56 - 2015-10-21 17:56 - 00000000 ____D C:\ProgramData\Microsoft Visual Studio 2015-10-21 17:54 - 2015-10-21 17:54 - 00000000 ____D C:\Users\romai\AppData\Roaming\NuGet 2015-10-21 17:45 - 2015-10-21 17:46 - 00000000 ____D C:\Tool_Controler 2015-10-21 17:40 - 2015-10-21 17:40 - 01023120 _____ (Soft Web ) C:\Users\romai\Desktop\FileZilla_3.exe 2015-10-21 16:30 - 2015-10-21 16:30 - 00000000 ____D C:\Users\patri\AppData\Roaming\DropboxOEM 2015-10-21 13:18 - 2015-10-26 18:01 - 00000000 ____D C:\windows\LastGood 2015-10-21 13:18 - 2015-10-21 13:18 - 03933496 _____ (Logitech, Inc.) C:\windows\system32\LogiLDA.DLL 2015-10-21 13:18 - 2015-10-21 13:18 - 02458936 _____ (Logitech, Inc.) C:\windows\system32\LdaCx2.dll 2015-10-21 13:18 - 2015-10-21 13:18 - 00828872 _____ (Microsoft Corporation) C:\windows\system32\msvcr110.dll 2015-10-21 13:18 - 2015-10-21 13:18 - 00661448 _____ (Microsoft Corporation) C:\windows\system32\msvcp110.dll 2015-10-21 13:18 - 2015-10-21 13:18 - 00354264 _____ (Microsoft Corporation) C:\windows\system32\vccorlib110.dll 2015-10-21 13:08 - 2015-10-21 17:45 - 00002334 _____ C:\windows\setupact.log 2015-10-21 13:08 - 2015-10-21 13:08 - 00000000 _____ C:\windows\setuperr.log 2015-10-21 13:03 - 2015-10-21 13:04 - 00000000 ____D C:\Users\romai\Desktop\Devoir_java1 2015-10-21 13:01 - 2015-10-21 13:01 - 00000000 ____D C:\Users\romai\AppData\Local\NetBeans 2015-10-21 13:00 - 2015-10-21 13:01 - 00000000 ____D C:\Users\romai\AppData\Roaming\NetBeans 2015-10-21 09:19 - 2015-10-21 09:19 - 00000000 ____D C:\Users\patri\Desktop\Office 2015-10-21 09:17 - 2015-10-21 09:17 - 00000000 ____D C:\Users\romai\Desktop\Office 2015-10-21 09:16 - 2015-10-26 18:26 - 00000275 _____ C:\windows\WindowsUpdate.log 2015-10-21 09:05 - 2015-10-21 09:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Office 2015-10-21 09:01 - 2015-10-21 09:01 - 00000000 ____D C:\Users\romai\Desktop\Fond Ecran 2015-10-21 08:42 - 2015-10-21 08:42 - 00002870 _____ C:\windows\System32\Tasks\CCleanerSkipUAC 2015-10-21 08:41 - 2015-10-21 08:41 - 00000870 _____ C:\Users\Public\Desktop\CCleaner.lnk 2015-10-21 08:41 - 2015-10-21 08:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2015-10-21 08:41 - 2015-10-21 08:41 - 00000000 ____D C:\Program Files\CCleaner 2015-10-21 08:21 - 2015-10-21 08:22 - 00000000 ____D C:\Program Files\glassfish-4.1 2015-10-21 08:17 - 2015-10-21 08:17 - 00002115 _____ C:\Users\Public\Desktop\NetBeans IDE 8.0.2.lnk 2015-10-21 08:17 - 2015-10-21 08:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NetBeans 2015-10-21 08:15 - 2015-10-21 08:24 - 00000000 ____D C:\Program Files\NetBeans 8.0.2 2015-10-21 08:14 - 2015-10-21 08:15 - 00000000 ____D C:\Users\romai\.oracle_jre_usage 2015-10-21 08:14 - 2015-10-21 08:14 - 00110176 _____ (Oracle Corporation) C:\windows\system32\WindowsAccessBridge-64.dll 2015-10-21 08:14 - 2015-10-21 08:14 - 00000000 ____D C:\Users\romai\AppData\Roaming\Sun 2015-10-21 08:14 - 2015-10-21 08:14 - 00000000 ____D C:\ProgramData\Oracle 2015-10-21 08:14 - 2015-10-21 08:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-10-21 08:13 - 2015-10-21 08:14 - 00000000 ____D C:\Program Files\Java 2015-10-21 08:12 - 2015-10-21 08:12 - 00000000 ____D C:\Users\romai\AppData\LocalLow\Oracle 2015-10-20 14:16 - 2015-10-20 14:17 - 00000000 ____D C:\Users\romai\AppData\Local\GitHubVisualStudio 2015-10-20 13:15 - 2015-10-20 13:15 - 00000000 ____D C:\Program Files (x86)\Git 2015-10-20 13:12 - 2015-10-21 17:56 - 00000000 ____D C:\Users\romai\Documents\Visual Studio 2015 2015-10-20 13:10 - 2015-10-20 13:10 - 00000000 ____D C:\ProgramData\NuGet 2015-10-20 13:10 - 2015-10-20 13:10 - 00000000 ____D C:\Program Files (x86)\NuGet 2015-10-20 13:10 - 2015-10-20 13:10 - 00000000 ____D C:\Program Files (x86)\AppInsights 2015-10-20 12:48 - 2015-10-21 08:33 - 00000000 ____D C:\Users\romai\.nbi 2015-10-20 12:44 - 2015-10-20 12:48 - 00000000 ____D C:\Users\romai\AppData\Roaming\CodeBlocks 2015-10-20 12:43 - 2015-10-21 08:42 - 00000000 ____D C:\ProgramData\Unchecky 2015-10-20 12:43 - 2015-10-20 12:44 - 00000000 ____D C:\Users\romai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks 2015-10-20 12:43 - 2015-10-20 12:44 - 00000000 ____D C:\Program Files (x86)\CodeBlocks 2015-10-20 12:43 - 2015-10-20 12:43 - 00001167 _____ C:\Users\romai\Desktop\CodeBlocks.lnk 2015-10-20 12:43 - 2015-10-20 12:43 - 00001095 _____ C:\Users\Public\Desktop\Unchecky.lnk 2015-10-20 12:43 - 2015-10-20 12:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unchecky 2015-10-20 12:43 - 2015-10-20 12:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeBlocks 2015-10-20 12:43 - 2015-10-20 12:43 - 00000000 ____D C:\Program Files (x86)\Unchecky 2015-10-20 12:42 - 2015-10-20 12:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android SDK Tools 2015-10-20 12:42 - 2015-10-20 12:42 - 00000000 ____D C:\Program Files (x86)\Android 2015-10-20 12:41 - 2015-10-21 08:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit 2015-10-20 12:41 - 2015-10-20 12:41 - 00000000 ____D C:\Program Files (x86)\Java 2015-10-20 12:40 - 2015-10-20 12:40 - 00000000 ____D C:\Users\romai\AppData\Roaming\Macromedia 2015-10-20 12:40 - 2015-10-20 12:40 - 00000000 ____D C:\Users\romai\AppData\LocalLow\Sun 2015-10-20 12:40 - 2015-10-20 12:40 - 00000000 ____D C:\Users\romai\AppData\Local\Macromedia 2015-10-20 12:38 - 2015-10-20 12:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone SDK 8.0 2015-10-20 12:38 - 2015-10-20 12:38 - 00000000 ____D C:\55dd89b144274bb50e24bd0ab9e9 2015-10-20 12:36 - 2015-10-20 12:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-10-20 12:35 - 2015-10-20 12:36 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2015-10-20 12:35 - 2015-10-20 12:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 5 SDK - Français 2015-10-20 12:35 - 2015-10-20 12:35 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition 2015-10-20 12:35 - 2015-10-20 12:35 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2015-10-20 12:27 - 2015-10-20 13:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits 2015-10-20 12:27 - 2015-10-20 12:27 - 00000000 ____D C:\ProgramData\PreEmptive Solutions 2015-10-20 12:27 - 2015-10-20 12:27 - 00000000 ____D C:\Program Files (x86)\ShellDir 2015-10-20 12:27 - 2015-10-20 12:27 - 00000000 ____D C:\Program Files (x86)\Microsoft ASP.NET 2015-10-20 12:26 - 2015-10-20 12:26 - 00000000 ____D C:\ProgramData\Microsoft DNX 2015-10-20 12:26 - 2015-10-20 12:26 - 00000000 ____D C:\Program Files\Microsoft DNX 2015-10-20 12:23 - 2015-10-20 12:24 - 00000000 ____D C:\Program Files (x86)\Microsoft Web Tools 2015-10-20 12:20 - 2015-10-20 12:20 - 00000000 ____D C:\Program Files\IIS Express 2015-10-20 12:20 - 2015-10-20 12:20 - 00000000 ____D C:\Program Files (x86)\Microsoft Office365 Tools 2015-10-20 12:20 - 2015-10-20 12:20 - 00000000 ____D C:\Program Files (x86)\IIS Express 2015-10-20 12:19 - 2015-10-20 12:19 - 00000000 ____D C:\Program Files (x86)\Microsoft WCF Data Services 2015-10-20 12:18 - 2015-10-20 12:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Expression 2015-10-20 12:18 - 2015-10-20 12:18 - 00000000 ____D C:\Program Files\IIS 2015-10-20 12:18 - 2015-10-20 12:18 - 00000000 ____D C:\Program Files (x86)\IIS 2015-10-20 12:17 - 2015-10-20 12:17 - 00001505 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blend for Visual Studio 2015.lnk 2015-10-20 12:16 - 2015-10-20 12:38 - 00000000 ____D C:\Program Files (x86)\Windows Phone Kits 2015-10-20 12:16 - 2015-10-20 12:37 - 00000000 ____D C:\Program Files (x86)\Microsoft XDE 2015-10-20 12:16 - 2015-10-20 12:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Phone SDK 8.1 2015-10-20 12:16 - 2015-10-20 12:16 - 00000000 ____D C:\Program Files (x86)\Windows Phone Silverlight Kits 2015-10-20 12:14 - 2015-10-20 12:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2012 2015-10-20 12:14 - 2015-10-20 12:14 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 11.0 2015-10-20 12:10 - 2015-10-20 12:16 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 12.0 2015-10-20 12:10 - 2015-10-20 12:10 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 12.0 2015-10-20 12:10 - 2015-10-20 12:10 - 00000000 ____D C:\Program Files (x86)\HTML Help Workshop 2015-10-20 12:01 - 2015-10-20 12:02 - 00001481 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Test Manager 2015.lnk 2015-10-20 12:00 - 2015-10-20 13:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2015 2015-10-20 12:00 - 2015-10-20 12:33 - 00000000 ____D C:\Program Files (x86)\Windows Kits 2015-10-20 12:00 - 2015-10-20 12:00 - 00000000 ____D C:\windows\symbols 2015-10-20 12:00 - 2015-10-20 12:00 - 00000000 ____D C:\Program Files (x86)\Microsoft Help Viewer 2015-10-20 11:58 - 2015-07-09 20:53 - 00097280 _____ (Microsoft Corporation) C:\windows\SysWOW64\DxToolsReportGenerator.dll 2015-10-20 11:58 - 2015-07-09 20:36 - 00097280 _____ (Microsoft Corporation) C:\windows\system32\DxToolsReportGenerator.dll 2015-10-20 11:58 - 2015-07-09 19:49 - 01133056 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d11_3SDKLayers.dll 2015-10-20 11:58 - 2015-07-09 19:49 - 00644608 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d12SDKLayers.dll 2015-10-20 11:58 - 2015-07-09 19:48 - 06365696 _____ (Microsoft Corporation) C:\windows\SysWOW64\DXCaptureReplay.dll 2015-10-20 11:58 - 2015-07-09 19:40 - 01460736 _____ (Microsoft Corporation) C:\windows\system32\d3d11_3SDKLayers.dll 2015-10-20 11:58 - 2015-07-09 19:40 - 00875008 _____ (Microsoft Corporation) C:\windows\system32\d3d12SDKLayers.dll 2015-10-20 11:58 - 2015-07-09 19:39 - 00236544 _____ (Microsoft Corporation) C:\windows\SysWOW64\perf_gputiming.dll 2015-10-20 11:58 - 2015-07-09 19:38 - 08244736 _____ (Microsoft Corporation) C:\windows\system32\DXCaptureReplay.dll 2015-10-20 11:58 - 2015-07-09 19:31 - 03597312 _____ (Microsoft Corporation) C:\windows\SysWOW64\VsGraphicsRemoteEngine.exe 2015-10-20 11:58 - 2015-07-09 19:30 - 03680768 _____ (Microsoft Corporation) C:\windows\SysWOW64\VsGraphicsDesktopEngine.exe 2015-10-20 11:58 - 2015-07-09 19:28 - 02439168 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d12warp.dll 2015-10-20 11:58 - 2015-07-09 19:28 - 00916480 _____ (Microsoft Corporation) C:\windows\SysWOW64\VsGraphicsExperiment.dll 2015-10-20 11:58 - 2015-07-09 19:28 - 00761856 _____ (Microsoft Corporation) C:\windows\SysWOW64\DXToolsOfflineAnalysis.dll 2015-10-20 11:58 - 2015-07-09 19:28 - 00647680 _____ (Microsoft Corporation) C:\windows\SysWOW64\DXCap.exe 2015-10-20 11:58 - 2015-07-09 19:28 - 00308224 _____ (Microsoft Corporation) C:\windows\system32\perf_gputiming.dll 2015-10-20 11:58 - 2015-07-09 19:27 - 00336384 _____ (Microsoft Corporation) C:\windows\SysWOW64\d2d1debug3.dll 2015-10-20 11:58 - 2015-07-09 19:27 - 00130560 _____ (Microsoft Corporation) C:\windows\SysWOW64\DXToolsMonitor.dll 2015-10-20 11:58 - 2015-07-09 19:27 - 00119296 _____ (Microsoft Corporation) C:\windows\SysWOW64\VsGraphicsCapture.dll 2015-10-20 11:58 - 2015-07-09 19:27 - 00108544 _____ (Microsoft Corporation) C:\windows\SysWOW64\DXToolsReporting.dll 2015-10-20 11:58 - 2015-07-09 19:27 - 00059392 _____ (Microsoft Corporation) C:\windows\SysWOW64\VSD3DWARPDebug.dll 2015-10-20 11:58 - 2015-07-09 19:27 - 00059392 _____ (Microsoft Corporation) C:\windows\SysWOW64\VSD3DWARP12Debug.dll 2015-10-20 11:58 - 2015-07-09 19:27 - 00037376 _____ (Microsoft Corporation) C:\windows\SysWOW64\VsGraphicsProxyStub.dll 2015-10-20 11:58 - 2015-07-09 19:26 - 00346624 _____ (Windows (R) Win 7 DDK provider) C:\windows\SysWOW64\DXCpl.exe 2015-10-20 11:58 - 2015-07-09 19:24 - 00233984 _____ (Microsoft Corporation) C:\windows\SysWOW64\DXGIDebug.dll 2015-10-20 11:58 - 2015-07-09 19:21 - 04656128 _____ (Microsoft Corporation) C:\windows\system32\VsGraphicsRemoteEngine.exe 2015-10-20 11:58 - 2015-07-09 19:20 - 04751872 _____ (Microsoft Corporation) C:\windows\system32\VsGraphicsDesktopEngine.exe 2015-10-20 11:58 - 2015-07-09 19:18 - 03257856 _____ (Microsoft Corporation) C:\windows\system32\d3d12warp.dll 2015-10-20 11:58 - 2015-07-09 19:18 - 01069568 _____ (Microsoft Corporation) C:\windows\system32\DXToolsOfflineAnalysis.dll 2015-10-20 11:58 - 2015-07-09 19:18 - 00877568 _____ (Microsoft Corporation) C:\windows\system32\DXCap.exe 2015-10-20 11:58 - 2015-07-09 19:17 - 01203200 _____ (Microsoft Corporation) C:\windows\system32\VsGraphicsExperiment.dll 2015-10-20 11:58 - 2015-07-09 19:17 - 00413184 _____ (Microsoft Corporation) C:\windows\system32\d2d1debug3.dll 2015-10-20 11:58 - 2015-07-09 19:17 - 00173056 _____ (Microsoft Corporation) C:\windows\system32\DXToolsMonitor.dll 2015-10-20 11:58 - 2015-07-09 19:17 - 00159232 _____ (Microsoft Corporation) C:\windows\system32\DXToolsReporting.dll 2015-10-20 11:58 - 2015-07-09 19:17 - 00157184 _____ (Microsoft Corporation) C:\windows\system32\VsGraphicsCapture.dll 2015-10-20 11:58 - 2015-07-09 19:17 - 00083456 _____ (Microsoft Corporation) C:\windows\system32\VsGraphicsProxyStub.dll 2015-10-20 11:58 - 2015-07-09 19:16 - 00366592 _____ (Windows (R) Win 7 DDK provider) C:\windows\system32\DXCpl.exe 2015-10-20 11:58 - 2015-07-09 19:16 - 00077824 _____ (Microsoft Corporation) C:\windows\system32\VSD3DWARP12Debug.dll 2015-10-20 11:58 - 2015-07-09 19:16 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\VSD3DWARPDebug.dll 2015-10-20 11:58 - 2015-07-09 19:13 - 00343040 _____ (Microsoft Corporation) C:\windows\system32\DXGIDebug.dll 2015-10-20 11:57 - 2015-10-20 12:35 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server 2015-10-20 11:57 - 2015-10-20 12:34 - 00000000 ____D C:\Program Files\Microsoft SQL Server 2015-10-20 11:57 - 2015-10-20 12:01 - 00000000 ____D C:\windows\SysWOW64\1036 2015-10-20 11:57 - 2015-10-20 11:57 - 00001514 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2015.lnk 2015-10-20 11:57 - 2015-10-20 11:57 - 00000000 ____D C:\windows\SysWOW64\1033 2015-10-20 11:57 - 2015-10-20 11:57 - 00000000 ____D C:\windows\system32\1033 2015-10-20 11:54 - 2015-10-20 13:21 - 00000000 ____D C:\Program Files (x86)\Microsoft SDKs 2015-10-20 11:54 - 2015-10-20 13:12 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 14.0 2015-10-20 11:54 - 2015-10-20 11:57 - 00000000 ____D C:\windows\system32\1036 2015-10-20 11:54 - 2015-10-20 11:54 - 00000000 ____H C:\windows\system32\Drivers\Msft_User_SensorsSimulatorDriver_01_11_00.Wdf 2015-10-20 11:54 - 2015-10-20 11:54 - 00000000 ____D C:\Users\romai\AppData\LocalLow\Temp 2015-10-20 11:54 - 2015-10-20 11:54 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 14.0 2015-10-20 11:50 - 2015-10-20 14:14 - 00000000 ____D C:\ProgramData\VsTelemetry 2015-10-20 11:50 - 2015-10-20 11:50 - 14572000 _____ (Microsoft Corporation) C:\Users\romai\Downloads\mu_visual_cpp_redistributable_for_visual_studio_2015_x64_6837978.exe 2015-10-20 11:49 - 2015-10-20 11:50 - 00008861 _____ C:\Users\romai\Desktop\SecureDownloadManager.log 2015-10-20 11:48 - 2015-10-20 11:48 - 00000183 _____ C:\Users\romai\Desktop\100422556582.sdx 2015-10-20 11:48 - 2015-10-20 11:48 - 00000000 ____D C:\Users\romai\AppData\Roaming\e-academy Inc 2015-10-20 11:48 - 2015-10-20 11:48 - 00000000 ____D C:\Users\romai\AppData\Local\e-academy Inc 2015-10-20 11:37 - 2015-10-20 11:38 - 00000000 ____D C:\Users\romai\AppData\Roaming\DropboxOEM 2015-10-20 11:36 - 2015-10-20 11:42 - 00000000 ____D C:\Users\romai\AppData\Local\Mozilla 2015-10-20 11:36 - 2015-10-20 11:36 - 00000000 ____D C:\Users\romai\AppData\Roaming\Mozilla 2015-10-20 11:36 - 2015-10-20 11:36 - 00000000 ____D C:\Users\romai\AppData\Roaming\Greenshot 2015-10-20 11:36 - 2015-10-20 11:36 - 00000000 ____D C:\Users\romai\AppData\Local\Greenshot 2015-10-20 11:35 - 2015-10-20 11:35 - 00000000 ____D C:\Users\patri\Desktop\Fond Ecran 2015-10-20 10:20 - 2015-10-20 10:20 - 00000000 ____D C:\Users\patri\AppData\Roaming\AdobeUM 2015-10-20 10:20 - 2015-10-20 10:20 - 00000000 ____D C:\Users\patri\AppData\Local\Adobe 2015-10-20 10:11 - 2015-10-20 10:11 - 00000000 ____D C:\Program Files (x86)\proDAD 2015-10-20 10:05 - 2015-10-20 10:51 - 00000000 _____ C:\adorage-protocol.txt 2015-10-20 10:05 - 2015-10-20 10:05 - 00000000 ____D C:\Program Files (x86)\AdorageI-SAL 2015-10-20 10:03 - 2015-10-20 10:54 - 00000000 ____D C:\Program Files (x86)\QuickTime 2015-10-20 10:03 - 2015-10-20 10:03 - 00000000 ____D C:\ProgramData\QuickTime 2015-10-20 10:03 - 2002-01-23 17:10 - 00086016 _____ (MindVision) C:\windows\unvise32qt.exe 2015-10-20 09:56 - 2015-07-10 12:00 - 00082432 _____ (Microsoft Corporation) C:\windows\SysWOW64\ATL38a1.rra 2015-10-20 09:56 - 2006-03-21 01:39 - 01038848 _____ (Microsoft Corporation) C:\windows\SysWOW64\dbgh38df.rra 2015-10-20 09:54 - 2015-10-20 10:52 - 00000022 _____ C:\windows\VFO.INI 2015-10-20 09:54 - 2015-10-20 10:52 - 00000000 ____D C:\Program Files (x86)\DivX 2015-10-20 09:54 - 2015-10-20 09:54 - 00000107 _____ C:\AUTOEXEC.BAT 2015-10-20 09:54 - 2005-02-09 10:59 - 00014165 _____ (Pinnacle Systems GmbH) C:\windows\SysWOW64\Drivers\Pclepci.sys 2015-10-20 09:54 - 1998-06-17 16:07 - 00057344 _____ (Microsoft Corporation) C:\windows\SysWOW64\Mfc42loc.dll 2015-10-20 09:52 - 2015-10-20 10:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Studio 10 QuickStart 2015-10-20 09:52 - 2015-10-20 09:53 - 00000000 ____D C:\windows\Downloaded Installations 2015-10-20 09:52 - 2005-03-21 22:26 - 01047552 _____ (Microsoft Corporation) C:\windows\SysWOW64\MFC71u.DLL 2015-10-20 09:52 - 2003-11-21 15:48 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\MFC71DEU.DLL 2015-10-20 09:52 - 2003-11-21 15:48 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\MFC71ITA.DLL 2015-10-20 09:52 - 2003-11-21 15:48 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\MFC71FRA.DLL 2015-10-20 09:52 - 2003-11-21 15:48 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\MFC71ESP.DLL 2015-10-20 09:52 - 2003-11-21 15:48 - 00057344 _____ (Microsoft Corporation) C:\windows\SysWOW64\MFC71ENU.DLL 2015-10-20 09:52 - 2003-11-21 15:48 - 00049152 _____ (Microsoft Corporation) C:\windows\SysWOW64\MFC71KOR.DLL 2015-10-20 09:52 - 2003-11-21 15:48 - 00049152 _____ (Microsoft Corporation) C:\windows\SysWOW64\MFC71JPN.DLL 2015-10-20 09:52 - 2003-11-21 15:48 - 00045056 _____ (Microsoft Corporation) C:\windows\SysWOW64\MFC71CHT.DLL 2015-10-20 09:52 - 2003-11-21 15:48 - 00040960 _____ (Microsoft Corporation) C:\windows\SysWOW64\MFC71CHS.DLL 2015-10-20 09:52 - 2002-01-05 02:48 - 00974848 _____ (Microsoft Corporation) C:\windows\SysWOW64\MFC70.DLL 2015-10-20 09:52 - 2002-01-05 02:36 - 00964608 _____ (Microsoft Corporation) C:\windows\SysWOW64\MFC70U.DLL 2015-10-20 09:52 - 2002-01-05 01:38 - 00054784 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSVCI70.DLL 2015-10-20 09:45 - 2004-05-14 04:07 - 01060864 _____ (Microsoft Corporation) C:\windows\SysWOW64\MFC71.DLL 2015-10-20 09:45 - 2003-10-21 03:15 - 00499712 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSVCP71.DLL 2015-10-20 09:45 - 2003-10-20 07:38 - 00348160 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSVCR71.DLL 2015-10-20 09:45 - 2003-03-26 05:58 - 00487424 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSVCP70.DLL 2015-10-20 09:45 - 2003-03-19 04:05 - 00089088 ____N (Microsoft Corporation) C:\windows\SysWOW64\atl71.dll 2015-10-20 09:45 - 2003-02-04 04:08 - 00344064 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSVCR70.DLL 2015-10-20 09:45 - 2002-01-05 10:18 - 00084992 ____N (Microsoft Corporation) C:\windows\SysWOW64\ATL70.DLL 2015-10-20 09:44 - 2015-10-20 10:49 - 00000349 _____ C:\Users\Public\Documents\PCLECHAL.INI 2015-10-20 09:43 - 2015-10-20 10:52 - 00000000 ____D C:\Program Files (x86)\Pinnacle 2015-10-20 09:43 - 2015-10-20 09:43 - 00000000 ____D C:\ProgramData\Pinnacle 2015-10-19 17:28 - 2015-10-26 18:28 - 00000951 _____ C:\windows\Tasks\EPSON XP-710 Series Update {1A2E2169-99F2-43E7-836C-5CBFA161CB04}.job 2015-10-19 17:28 - 2015-10-26 18:28 - 00000765 _____ C:\windows\Tasks\EPSON XP-710 Series Invitation {1A2E2169-99F2-43E7-836C-5CBFA161CB04}.job 2015-10-19 17:28 - 2015-10-25 11:28 - 00000000 ____D C:\ProgramData\EPSON 2015-10-19 17:28 - 2015-10-19 17:28 - 00004148 _____ C:\windows\System32\Tasks\EPSON XP-710 Series Update {1A2E2169-99F2-43E7-836C-5CBFA161CB04} 2015-10-19 17:28 - 2015-10-19 17:28 - 00003970 _____ C:\windows\System32\Tasks\EPSON XP-710 Series Invitation {1A2E2169-99F2-43E7-836C-5CBFA161CB04} 2015-10-19 17:28 - 2015-10-19 17:28 - 00000000 ____D C:\Program Files\Common Files\EPSON 2015-10-19 10:42 - 2015-10-19 19:35 - 00002007 _____ C:\Users\patri\Desktop\Crédit Agricole.lnk 2015-10-19 10:39 - 2015-10-19 19:35 - 00002223 _____ C:\Users\patri\Desktop\Romain.lnk 2015-10-19 10:39 - 2015-10-19 19:35 - 00002174 _____ C:\Users\patri\Desktop\Caisse d'Epargne.lnk 2015-10-19 10:38 - 2015-10-19 19:34 - 00001978 _____ C:\Users\patri\Desktop\Budget-2015.lnk 2015-10-19 10:22 - 2015-10-19 16:28 - 00000000 ____D C:\Users\patri\AppData\Local\MicrosoftEdge 2015-10-19 10:07 - 2015-10-19 10:07 - 00000000 ____D C:\Users\patri\AppData\Roaming\LibreOffice 2015-10-19 10:06 - 2015-10-19 10:48 - 00000000 ____D C:\Users\patri\Desktop\Mes fichiers personnnels 2015-10-19 10:02 - 2015-10-19 10:17 - 00000000 ____D C:\Users\patri\AppData\Roaming\vlc 2015-10-19 10:02 - 2015-10-19 10:02 - 00001146 _____ C:\Users\Public\Desktop\VLC media player.lnk 2015-10-19 10:02 - 2015-10-19 10:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2015-10-19 10:02 - 2015-10-19 10:02 - 00000000 ____D C:\Program Files (x86)\VideoLAN 2015-10-19 09:50 - 2015-10-19 09:50 - 00000000 ____D C:\Users\patri\AppData\Roaming\Macromedia 2015-10-19 09:50 - 2015-10-19 09:50 - 00000000 ____D C:\Users\patri\AppData\Local\Macromedia 2015-10-19 09:35 - 2015-10-19 09:35 - 00001131 _____ C:\Users\patri\Desktop\XnView.lnk 2015-10-19 09:35 - 2015-10-19 09:35 - 00000832 _____ C:\Users\patri\Desktop\PeaZip.lnk 2015-10-19 09:33 - 2015-10-21 19:49 - 00000000 ____D C:\Users\patri\AppData\Roaming\SumatraPDF 2015-10-19 09:31 - 2015-10-19 09:31 - 00000000 ____D C:\Users\patri\AppData\Roaming\Greenshot 2015-10-19 09:31 - 2015-10-19 09:31 - 00000000 ____D C:\Users\patri\AppData\Local\Greenshot 2015-10-19 09:31 - 2015-10-19 09:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Greenshot 2015-10-19 09:31 - 2015-10-19 09:31 - 00000000 ____D C:\Program Files\Greenshot 2015-10-18 22:10 - 2015-10-18 22:10 - 00000000 ____D C:\Users\patri\AppData\Local\Hewlett-Packard 2015-10-18 21:32 - 2015-10-18 21:32 - 00000000 ____D C:\Users\patri\AppData\Local\NetworkTiles 2015-10-18 18:08 - 2015-10-21 09:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016 2015-10-18 18:08 - 2015-10-18 18:08 - 00002521 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk 2015-10-18 18:08 - 2015-10-18 18:08 - 00002521 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk 2015-10-18 18:08 - 2015-10-18 18:08 - 00002506 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk 2015-10-18 18:08 - 2015-10-18 18:08 - 00002504 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk 2015-10-18 18:08 - 2015-10-18 18:08 - 00002494 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk 2015-10-18 18:08 - 2015-10-18 18:08 - 00002494 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk 2015-10-18 18:08 - 2015-10-18 18:08 - 00002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk 2015-10-18 18:02 - 2015-10-18 18:02 - 00000000 ____D C:\Program Files\Microsoft Office 15 2015-10-18 18:01 - 2015-10-18 18:01 - 02883752 _____ (Microsoft Corporation) C:\Users\patri\Desktop\Setup.X86.fr-FR_O365HomePremRetail_e96e2d18-633d-4fed-bc64-6830a44fc8b1_TX_DB_.exe 2015-10-18 18:00 - 2015-10-25 20:39 - 00000000 ____D C:\Users\patri\OneDrive 2015-10-18 18:00 - 2015-10-21 09:12 - 00000000 ___HD C:\OneDriveTemp 2015-10-18 18:00 - 2015-10-18 18:00 - 00002385 _____ C:\Users\patri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2015-10-18 18:00 - 2015-10-18 18:00 - 00000000 ____D C:\Users\patri\AppData\Roaming\Hewlett-Packard 2015-10-18 17:58 - 2015-10-19 09:47 - 00000000 ____D C:\Users\patri\AppData\Local\Mozilla 2015-10-18 17:58 - 2015-10-18 17:58 - 00000000 ____D C:\Users\patri\AppData\Roaming\Mozilla 2015-10-18 17:58 - 2015-10-18 17:58 - 00000000 ____D C:\Users\patri\AppData\Roaming\ATI 2015-10-18 17:58 - 2015-10-18 17:58 - 00000000 ____D C:\Users\patri\AppData\Local\DropboxOEM 2015-10-18 17:58 - 2015-10-18 17:58 - 00000000 ____D C:\Users\patri\AppData\Local\CyberLink 2015-10-18 17:58 - 2015-10-18 17:58 - 00000000 ____D C:\Users\patri\AppData\Local\Comms 2015-10-18 17:58 - 2015-10-18 17:58 - 00000000 ____D C:\Users\patri\AppData\Local\ATI 2015-10-18 17:57 - 2015-10-18 18:15 - 00000000 ____D C:\Users\patri\AppData\Local\PackageStaging 2015-10-18 17:57 - 2015-10-18 17:57 - 00002383 _____ C:\Users\patri\Desktop\Protection bancaire.lnk 2015-10-18 17:57 - 2015-10-18 17:57 - 00000000 ____D C:\Users\patri\AppData\Local\Publishers 2015-10-18 17:56 - 2015-10-24 18:15 - 00000000 ____D C:\Users\patri\AppData\Local\Packages 2015-10-18 17:56 - 2015-10-20 10:19 - 00000000 ____D C:\Users\patri\AppData\Roaming\Adobe 2015-10-18 17:56 - 2015-10-20 10:19 - 00000000 ____D C:\Users\patri\AppData\Local\VirtualStore 2015-10-18 17:56 - 2015-10-18 18:00 - 00000000 ____D C:\Users\patri 2015-10-18 17:56 - 2015-10-18 17:56 - 00016148 _____ C:\windows\system32\DESKTOP-REDPR99_Patrick_HistoryPrediction.bin 2015-10-18 17:56 - 2015-10-18 17:56 - 00000020 ___SH C:\Users\patri\ntuser.ini 2015-10-18 17:56 - 2015-10-18 17:56 - 00000000 _SHDL C:\Users\patri\Voisinage réseau 2015-10-18 17:56 - 2015-10-18 17:56 - 00000000 _SHDL C:\Users\patri\Voisinage d'impression 2015-10-18 17:56 - 2015-10-18 17:56 - 00000000 _SHDL C:\Users\patri\Modèles 2015-10-18 17:56 - 2015-10-18 17:56 - 00000000 _SHDL C:\Users\patri\Menu Démarrer 2015-10-18 17:56 - 2015-10-18 17:56 - 00000000 _SHDL C:\Users\patri\Documents\Mes vidéos 2015-10-18 17:56 - 2015-10-18 17:56 - 00000000 _SHDL C:\Users\patri\Documents\Mes images 2015-10-18 17:56 - 2015-10-18 17:56 - 00000000 _SHDL C:\Users\patri\Documents\Ma musique 2015-10-18 17:56 - 2015-10-18 17:56 - 00000000 _SHDL C:\Users\patri\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2015-10-18 17:56 - 2015-10-18 17:56 - 00000000 _SHDL C:\Users\patri\AppData\Local\Historique 2015-10-18 17:56 - 2015-10-18 17:56 - 00000000 ___RD C:\Users\patri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-18 17:56 - 2015-10-18 17:56 - 00000000 ____D C:\Users\patri\AppData\Local\TileDataLayer 2015-10-18 17:56 - 2015-10-17 01:28 - 00000000 __RSD C:\Users\patri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2015-10-18 17:56 - 2015-10-17 01:28 - 00000000 ____D C:\Users\patri\Documents\hp.system.package.metadata 2015-10-18 17:56 - 2015-10-16 15:19 - 00000000 ___RD C:\Users\patri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-10-18 17:56 - 2015-10-16 15:19 - 00000000 ___RD C:\Users\patri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-10-18 17:56 - 2015-10-16 15:19 - 00000000 ____D C:\Users\patri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-10-18 17:39 - 2015-10-21 13:38 - 00000000 ____D C:\Users\romai\AppData\Local\MicrosoftEdge 2015-10-18 17:39 - 2015-10-18 17:39 - 00000000 ____D C:\Users\romai\AppData\Local\Comms 2015-10-18 17:37 - 2015-10-18 17:37 - 00002383 _____ C:\Users\romai\Desktop\Protection bancaire.lnk 2015-10-18 17:35 - 2015-10-18 17:35 - 00016148 _____ C:\windows\system32\DESKTOP-REDPR99_Defaut_HistoryPrediction.bin 2015-10-18 17:15 - 2015-10-18 17:15 - 00004154 _____ C:\windows\System32\Tasks\HPGenoobeReminder 2015-10-18 12:15 - 2015-10-18 12:15 - 00000000 ____D C:\windows\system32\SleepStudy 2015-10-18 12:04 - 2015-10-19 09:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PeaZip 2015-10-18 12:04 - 2015-10-19 09:35 - 00000000 ____D C:\Program Files\PeaZip 2015-10-18 12:02 - 2015-10-18 12:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 5.0 2015-10-18 12:02 - 2015-10-18 12:02 - 00000000 ____D C:\Program Files (x86)\LibreOffice 5 2015-10-18 11:55 - 2015-10-19 09:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XnView 2015-10-18 11:55 - 2015-10-19 09:35 - 00000000 ____D C:\Program Files (x86)\XnView 2015-10-18 11:51 - 2015-10-18 11:52 - 00000000 ____D C:\Program Files\XnViewMP 2015-10-18 11:51 - 2015-10-18 11:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XnViewMP 2015-10-18 11:35 - 2015-10-19 09:33 - 00002005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SumatraPDF.lnk 2015-10-18 11:35 - 2015-10-18 11:35 - 00000000 ____D C:\Program Files (x86)\SumatraPDF 2015-10-17 20:02 - 2015-10-17 20:02 - 00000000 ____D C:\Users\romai\AppData\Roaming\Hewlett-Packard 2015-10-17 20:00 - 2015-10-21 09:12 - 00000000 ____D C:\Users\romai\OneDrive 2015-10-17 20:00 - 2015-10-17 20:01 - 00002385 _____ C:\Users\romai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2015-10-17 20:00 - 2015-10-17 20:00 - 00000000 ____D C:\Users\romai\AppData\Local\DropboxOEM 2015-10-17 19:59 - 2015-10-17 19:59 - 00000000 ____D C:\Users\romai\AppData\Roaming\ATI 2015-10-17 19:59 - 2015-10-17 19:59 - 00000000 ____D C:\Users\romai\AppData\Local\Publishers 2015-10-17 19:59 - 2015-10-17 19:59 - 00000000 ____D C:\Users\romai\AppData\Local\NetworkTiles 2015-10-17 19:59 - 2015-10-17 19:59 - 00000000 ____D C:\Users\romai\AppData\Local\CyberLink 2015-10-17 19:59 - 2015-10-17 19:59 - 00000000 ____D C:\Users\romai\AppData\Local\ATI 2015-10-17 19:57 - 2015-10-21 08:14 - 00000000 ____D C:\Users\romai 2015-10-17 19:57 - 2015-10-20 11:39 - 00000000 ____D C:\Users\romai\AppData\Local\Packages 2015-10-17 19:57 - 2015-10-17 19:57 - 00000020 ___SH C:\Users\romai\ntuser.ini 2015-10-17 19:57 - 2015-10-17 19:57 - 00000000 _SHDL C:\Users\romai\Voisinage réseau 2015-10-17 19:57 - 2015-10-17 19:57 - 00000000 _SHDL C:\Users\romai\Voisinage d'impression 2015-10-17 19:57 - 2015-10-17 19:57 - 00000000 _SHDL C:\Users\romai\Modèles 2015-10-17 19:57 - 2015-10-17 19:57 - 00000000 _SHDL C:\Users\romai\Menu Démarrer 2015-10-17 19:57 - 2015-10-17 19:57 - 00000000 _SHDL C:\Users\romai\Documents\Mes vidéos 2015-10-17 19:57 - 2015-10-17 19:57 - 00000000 _SHDL C:\Users\romai\Documents\Mes images 2015-10-17 19:57 - 2015-10-17 19:57 - 00000000 _SHDL C:\Users\romai\Documents\Ma musique 2015-10-17 19:57 - 2015-10-17 19:57 - 00000000 _SHDL C:\Users\romai\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2015-10-17 19:57 - 2015-10-17 19:57 - 00000000 _SHDL C:\Users\romai\AppData\Local\Historique 2015-10-17 19:57 - 2015-10-17 19:57 - 00000000 ___RD C:\Users\romai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-17 19:57 - 2015-10-17 19:57 - 00000000 ____D C:\Users\romai\AppData\Roaming\Adobe 2015-10-17 19:57 - 2015-10-17 19:57 - 00000000 ____D C:\Users\romai\AppData\Local\VirtualStore 2015-10-17 19:57 - 2015-10-17 19:57 - 00000000 ____D C:\Users\romai\AppData\Local\TileDataLayer 2015-10-17 19:57 - 2015-10-17 01:28 - 00000000 __RSD C:\Users\romai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2015-10-17 19:57 - 2015-10-17 01:28 - 00000000 ____D C:\Users\romai\Documents\hp.system.package.metadata 2015-10-17 19:57 - 2015-10-16 15:19 - 00000000 ___RD C:\Users\romai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-10-17 19:57 - 2015-10-16 15:19 - 00000000 ___RD C:\Users\romai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-10-17 19:57 - 2015-10-16 15:19 - 00000000 ____D C:\Users\romai\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-10-17 19:46 - 2015-10-17 19:51 - 00000000 ____D C:\Users\romai\AppData\Roaming\Acronis 2015-10-17 19:45 - 2015-10-17 19:45 - 01057728 _____ (Acronis International GmbH) C:\windows\system32\Drivers\tib.sys 2015-10-17 19:45 - 2015-10-17 19:45 - 00553912 _____ (Acronis International GmbH) C:\windows\system32\Drivers\tnd.sys 2015-10-17 19:45 - 2015-10-17 19:45 - 00333280 _____ (Acronis International GmbH) C:\windows\system32\Drivers\snapman.sys 2015-10-17 19:45 - 2015-10-17 19:45 - 00323040 _____ (Acronis International GmbH) C:\windows\system32\Drivers\file_tracker.sys 2015-10-17 19:45 - 2015-10-17 19:45 - 00198088 _____ (Acronis International GmbH) C:\windows\system32\Drivers\tib_mounter.sys 2015-10-17 19:44 - 2015-10-21 09:43 - 00000000 ____D C:\ProgramData\Acronis 2015-10-17 19:44 - 2015-10-17 19:44 - 00160736 _____ (Acronis International GmbH) C:\windows\system32\Drivers\fltsrv.sys 2015-10-17 19:44 - 2015-10-17 19:44 - 00001293 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis True Image 2016.lnk 2015-10-17 19:44 - 2015-10-17 19:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis 2015-10-17 19:44 - 2015-10-17 19:44 - 00000000 ____D C:\Program Files (x86)\Acronis 2015-10-17 19:32 - 2015-10-26 18:37 - 00001002 _____ C:\windows\Tasks\Adobe Flash Player Updater.job 2015-10-17 19:32 - 2015-10-17 19:32 - 00003978 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater 2015-10-17 19:32 - 2015-10-17 19:32 - 00000000 ____D C:\Users\romai\AppData\Local\Adobe 2015-10-17 19:14 - 2015-10-17 19:16 - 00000000 ____D C:\windows\system32\MRT 2015-10-17 19:14 - 2015-10-02 11:09 - 143481208 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe 2015-10-17 19:12 - 2015-10-10 08:12 - 00078528 _____ (Microsoft Corporation) C:\windows\system32\acmigration.dll 2015-10-17 19:12 - 2015-10-10 07:40 - 21875712 _____ (Microsoft Corporation) C:\windows\system32\edgehtml.dll 2015-10-17 19:12 - 2015-10-10 07:07 - 18806272 _____ (Microsoft Corporation) C:\windows\SysWOW64\edgehtml.dll 2015-10-17 19:12 - 2015-10-06 04:03 - 16708608 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Xaml.dll 2015-10-17 19:12 - 2015-10-06 03:46 - 13027840 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Xaml.dll 2015-10-17 19:12 - 2015-10-01 05:01 - 01294352 _____ (Microsoft Corporation) C:\windows\system32\winload.efi 2015-10-17 19:12 - 2015-10-01 05:01 - 01123400 _____ (Microsoft Corporation) C:\windows\system32\winload.exe 2015-10-17 19:12 - 2015-10-01 05:01 - 01018568 _____ (Microsoft Corporation) C:\windows\system32\winresume.efi 2015-10-17 19:12 - 2015-10-01 05:01 - 00858408 _____ (Microsoft Corporation) C:\windows\system32\winresume.exe 2015-10-17 19:12 - 2015-10-01 05:00 - 08020320 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe 2015-10-17 19:12 - 2015-10-01 04:03 - 00757760 _____ (Microsoft Corporation) C:\windows\system32\fveapi.dll 2015-10-17 19:12 - 2015-09-25 05:01 - 02573768 _____ (Microsoft Corporation) C:\windows\system32\msxml6.dll 2015-10-17 19:12 - 2015-09-25 05:01 - 00498016 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbhub.sys 2015-10-17 19:12 - 2015-09-25 04:56 - 22322624 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll 2015-10-17 19:12 - 2015-09-25 04:52 - 00980832 _____ (Microsoft Corporation) C:\windows\system32\SecConfig.efi 2015-10-17 19:12 - 2015-09-25 04:33 - 01997336 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6.dll 2015-10-17 19:12 - 2015-09-25 04:26 - 20858360 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll 2015-10-17 19:12 - 2015-09-25 04:17 - 24595456 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll 2015-10-17 19:12 - 2015-09-25 04:11 - 00257024 _____ (Microsoft Corporation) C:\windows\system32\UserDataAccountApis.dll 2015-10-17 19:12 - 2015-09-25 04:11 - 00223232 _____ (Microsoft Corporation) C:\windows\system32\PhoneCallHistoryApis.dll 2015-10-17 19:12 - 2015-09-25 04:09 - 12504064 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll 2015-10-17 19:12 - 2015-09-25 04:07 - 01276416 _____ (Microsoft Corporation) C:\windows\system32\wifinetworkmanager.dll 2015-10-17 19:12 - 2015-09-25 04:04 - 02178560 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentServer.dll 2015-10-17 19:12 - 2015-09-25 04:04 - 00826880 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll 2015-10-17 19:12 - 2015-09-25 04:04 - 00771072 _____ (Microsoft Corporation) C:\windows\system32\Chakradiag.dll 2015-10-17 19:12 - 2015-09-25 04:03 - 00796160 _____ (Microsoft Corporation) C:\windows\system32\TokenBroker.dll 2015-10-17 19:12 - 2015-09-25 04:03 - 00576000 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll 2015-10-17 19:12 - 2015-09-25 04:02 - 07523840 _____ (Microsoft Corporation) C:\windows\system32\Chakra.dll 2015-10-17 19:12 - 2015-09-25 04:02 - 00949248 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll 2015-10-17 19:12 - 2015-09-25 04:02 - 00689152 _____ (Microsoft Corporation) C:\windows\system32\Windows.Security.Authentication.Web.Core.dll 2015-10-17 19:12 - 2015-09-25 04:02 - 00579072 _____ (Microsoft Corporation) C:\windows\system32\winlogon.exe 2015-10-17 19:12 - 2015-09-25 04:01 - 04792320 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll 2015-10-17 19:12 - 2015-09-25 04:01 - 03586560 _____ (Microsoft Corporation) C:\windows\system32\win32kfull.sys 2015-10-17 19:12 - 2015-09-25 04:00 - 01423872 _____ (Microsoft Corporation) C:\windows\system32\UserDataService.dll 2015-10-17 19:12 - 2015-09-25 04:00 - 01382400 _____ (Microsoft Corporation) C:\windows\system32\win32kbase.sys 2015-10-17 19:12 - 2015-09-25 04:00 - 00856576 _____ (Microsoft Corporation) C:\windows\system32\ContactApis.dll 2015-10-17 19:12 - 2015-09-25 04:00 - 00752640 _____ (Microsoft Corporation) C:\windows\system32\ChatApis.dll 2015-10-17 19:12 - 2015-09-25 03:59 - 01795072 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentExtensions.dll 2015-10-17 19:12 - 2015-09-25 03:59 - 01205248 _____ (Microsoft Corporation) C:\windows\system32\Unistore.dll 2015-10-17 19:12 - 2015-09-25 03:59 - 00720896 _____ (Microsoft Corporation) C:\windows\system32\EmailApis.dll 2015-10-17 19:12 - 2015-09-25 03:59 - 00685568 _____ (Microsoft Corporation) C:\windows\system32\AppointmentApis.dll 2015-10-17 19:12 - 2015-09-25 03:59 - 00590336 _____ (Microsoft Corporation) C:\windows\system32\MessagingDataModel2.dll 2015-10-17 19:12 - 2015-09-25 03:59 - 00288256 _____ (Microsoft Corporation) C:\windows\system32\PimIndexMaintenance.dll 2015-10-17 19:12 - 2015-09-25 03:59 - 00163840 _____ (Microsoft Corporation) C:\windows\system32\CallHistoryClient.dll 2015-10-17 19:12 - 2015-09-25 03:58 - 01871360 _____ (Microsoft Corporation) C:\windows\system32\msxml3.dll 2015-10-17 19:12 - 2015-09-25 03:48 - 19325952 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll 2015-10-17 19:12 - 2015-09-25 03:47 - 00195584 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDataAccountApis.dll 2015-10-17 19:12 - 2015-09-25 03:47 - 00172032 _____ (Microsoft Corporation) C:\windows\SysWOW64\PhoneCallHistoryApis.dll 2015-10-17 19:12 - 2015-09-25 03:38 - 03580416 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll 2015-10-17 19:12 - 2015-09-25 03:38 - 00650240 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll 2015-10-17 19:12 - 2015-09-25 03:38 - 00574464 _____ (Microsoft Corporation) C:\windows\SysWOW64\Chakradiag.dll 2015-10-17 19:12 - 2015-09-25 03:38 - 00504320 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll 2015-10-17 19:12 - 2015-09-25 03:37 - 00766976 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll 2015-10-17 19:12 - 2015-09-25 03:37 - 00613376 _____ (Microsoft Corporation) C:\windows\SysWOW64\TokenBroker.dll 2015-10-17 19:12 - 2015-09-25 03:37 - 00480256 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll 2015-10-17 19:12 - 2015-09-25 03:36 - 11262976 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll 2015-10-17 19:12 - 2015-09-25 03:36 - 05454848 _____ (Microsoft Corporation) C:\windows\SysWOW64\Chakra.dll 2015-10-17 19:12 - 2015-09-25 03:34 - 00928256 _____ (Microsoft Corporation) C:\windows\SysWOW64\Unistore.dll 2015-10-17 19:12 - 2015-09-25 03:34 - 00625152 _____ (Microsoft Corporation) C:\windows\SysWOW64\ContactApis.dll 2015-10-17 19:12 - 2015-09-25 03:34 - 00579584 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppointmentApis.dll 2015-10-17 19:12 - 2015-09-25 03:34 - 00557568 _____ (Microsoft Corporation) C:\windows\SysWOW64\ChatApis.dll 2015-10-17 19:12 - 2015-09-25 03:34 - 00525312 _____ (Microsoft Corporation) C:\windows\SysWOW64\EmailApis.dll 2015-10-17 19:12 - 2015-09-25 03:33 - 00131072 _____ (Microsoft Corporation) C:\windows\SysWOW64\CallHistoryClient.dll 2015-10-17 19:12 - 2015-09-25 03:32 - 01594368 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3.dll 2015-10-17 19:12 - 2015-09-25 03:32 - 00466432 _____ (Microsoft Corporation) C:\windows\SysWOW64\MessagingDataModel2.dll 2015-10-17 19:10 - 2015-08-20 07:06 - 00609592 _____ (Microsoft Corporation) C:\windows\system32\ci.dll 2015-10-17 18:51 - 2015-07-05 11:08 - 00300704 ____N (Microsoft Corporation) C:\windows\system32\MpSigStub.exe 2015-10-17 18:50 - 2015-10-17 18:50 - 00002133 _____ C:\Users\Public\Desktop\Kaspersky Total Security.lnk 2015-10-17 18:50 - 2015-10-17 18:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Total Security 2015-10-17 18:49 - 2015-10-26 18:03 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2015-10-17 18:49 - 2015-10-17 18:56 - 00817848 _____ (Kaspersky Lab ZAO) C:\windows\system32\Drivers\klif.sys 2015-10-17 18:49 - 2015-10-17 18:49 - 00000000 ____D C:\Program Files (x86)\Kaspersky Lab 2015-10-17 18:49 - 2015-06-29 14:37 - 00226480 _____ (Kaspersky Lab ZAO) C:\windows\system32\Drivers\klhk.sys 2015-10-17 18:49 - 2015-06-29 14:37 - 00159960 _____ (Kaspersky Lab ZAO) C:\windows\system32\Drivers\klflt.sys 2015-10-17 18:49 - 2013-05-06 07:13 - 00110176 _____ (Kaspersky Lab ZAO) C:\windows\system32\klfphc.dll 2015-10-17 18:43 - 2015-10-17 18:43 - 00000000 ___HD C:\kleaner.tmp 2015-10-17 18:30 - 2015-10-17 18:30 - 00000000 ____H C:\windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2015-10-17 11:08 - 2015-10-17 18:42 - 00000000 ____D C:\windows\System32\Tasks\McAfee 2015-10-17 11:05 - 2015-10-17 11:05 - 00000000 ____D C:\Program Files\Common Files\AV 2015-10-17 01:55 - 2015-10-17 01:55 - 00001235 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2015-10-17 01:55 - 2015-10-17 01:55 - 00001223 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2015-10-17 01:55 - 2015-10-17 01:55 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-10-17 01:55 - 2015-10-17 01:55 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-10-17 01:52 - 2015-10-17 01:52 - 00004176 _____ C:\windows\System32\Tasks\RegistrationModuleReminder_Welcome-S-1-5-21-601248458-4252691497-4015294055-1001 2015-10-17 01:52 - 2015-10-17 01:52 - 00000000 ____D C:\ProgramData\ATI 2015-10-17 01:50 - 2015-10-17 01:50 - 00000205 _____ C:\windows\insFileSpec 2015-10-17 01:49 - 2015-10-17 01:49 - 00016148 _____ C:\windows\system32\DESKTOP-REDPR99_defaultuser0_HistoryPrediction.bin 2015-10-17 01:49 - 2015-10-17 01:49 - 00000000 __RSH C:\windows\SysWOW64\Drivers\103C_HP_cPC_550-122nf_Y53316J_0U_QCZC5342LS8_E15WE3FRT602_4A_I2B2C_SHP_V1.01_BA0.03_T150716_W1101-0_L40C_M4022_J1000_7Intel_86C3_92.90_#150824_N10EC8168;10EC8179_Z_G80860412;10026665_Ohp DVDRAM GUB0N_DHWP3033.MRK 2015-10-17 01:49 - 2015-10-17 01:49 - 00000000 __RSH C:\windows\system32\Drivers\103C_HP_cPC_550-122nf_Y53316J_0U_QCZC5342LS8_E15WE3FRT602_4A_I2B2C_SHP_V1.01_BA0.03_T150716_W1101-0_L40C_M4022_J1000_7Intel_86C3_92.90_#150824_N10EC8168;10EC8179_Z_G80860412;10026665_Ohp DVDRAM GUB0N_DHWP3033.MRK 2015-10-17 01:48 - 2015-10-17 01:48 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\DropboxOEM 2015-10-17 01:47 - 2015-10-17 01:47 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\VirtualStore 2015-10-17 01:47 - 2015-10-17 01:47 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\TileDataLayer 2015-10-17 01:47 - 2015-10-17 01:47 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\Packages 2015-10-17 01:45 - 2015-10-17 01:47 - 00000000 ____D C:\Users\defaultuser0 2015-10-17 01:45 - 2015-10-17 01:45 - 00000020 ___SH C:\Users\defaultuser0\ntuser.ini 2015-10-17 01:45 - 2015-10-17 01:45 - 00000000 _SHDL C:\Users\defaultuser0\Voisinage réseau 2015-10-17 01:45 - 2015-10-17 01:45 - 00000000 _SHDL C:\Users\defaultuser0\Voisinage d'impression 2015-10-17 01:45 - 2015-10-17 01:45 - 00000000 _SHDL C:\Users\defaultuser0\Modèles 2015-10-17 01:45 - 2015-10-17 01:45 - 00000000 _SHDL C:\Users\defaultuser0\Menu Démarrer 2015-10-17 01:45 - 2015-10-17 01:45 - 00000000 _SHDL C:\Users\defaultuser0\Documents\Mes vidéos 2015-10-17 01:45 - 2015-10-17 01:45 - 00000000 _SHDL C:\Users\defaultuser0\Documents\Mes images 2015-10-17 01:45 - 2015-10-17 01:45 - 00000000 _SHDL C:\Users\defaultuser0\Documents\Ma musique 2015-10-17 01:45 - 2015-10-17 01:45 - 00000000 _SHDL C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2015-10-17 01:45 - 2015-10-17 01:45 - 00000000 _SHDL C:\Users\defaultuser0\AppData\Local\Historique 2015-10-17 01:45 - 2015-10-17 01:28 - 00000000 __RSD C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2015-10-17 01:45 - 2015-10-17 01:28 - 00000000 ____D C:\Users\defaultuser0\Documents\hp.system.package.metadata 2015-10-17 01:45 - 2015-10-16 15:19 - 00000000 ___RD C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-10-17 01:45 - 2015-10-16 15:19 - 00000000 ___RD C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-17 01:45 - 2015-10-16 15:19 - 00000000 ___RD C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-10-17 01:45 - 2015-10-16 15:19 - 00000000 ____D C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-10-17 01:40 - 2015-10-17 01:40 - 00023108 _____ C:\windows\system32\emptyregdb.dat 2015-10-17 01:40 - 2015-10-17 01:40 - 00000000 _SHDL C:\Users\Public\Documents\Mes vidéos 2015-10-17 01:40 - 2015-10-17 01:40 - 00000000 _SHDL C:\Users\Public\Documents\Mes images 2015-10-17 01:40 - 2015-10-17 01:40 - 00000000 _SHDL C:\Users\Public\Documents\Ma musique 2015-10-17 01:40 - 2015-10-17 01:40 - 00000000 _SHDL C:\Users\Default\Voisinage réseau 2015-10-17 01:40 - 2015-10-17 01:40 - 00000000 _SHDL C:\Users\Default\Voisinage d'impression 2015-10-17 01:40 - 2015-10-17 01:40 - 00000000 _SHDL C:\Users\Default\Modèles 2015-10-17 01:40 - 2015-10-17 01:40 - 00000000 _SHDL C:\Users\Default\Menu Démarrer 2015-10-17 01:40 - 2015-10-17 01:40 - 00000000 _SHDL C:\Users\Default\Documents\Mes vidéos 2015-10-17 01:40 - 2015-10-17 01:40 - 00000000 _SHDL C:\Users\Default\Documents\Mes images 2015-10-17 01:40 - 2015-10-17 01:40 - 00000000 _SHDL C:\Users\Default\Documents\Ma musique 2015-10-17 01:40 - 2015-10-17 01:40 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2015-10-17 01:40 - 2015-10-17 01:40 - 00000000 _SHDL C:\Users\Default\AppData\Local\Historique 2015-10-17 01:40 - 2015-10-17 01:40 - 00000000 _SHDL C:\Users\Default User\Documents\Mes vidéos 2015-10-17 01:40 - 2015-10-17 01:40 - 00000000 _SHDL C:\Users\Default User\Documents\Mes images 2015-10-17 01:40 - 2015-10-17 01:40 - 00000000 _SHDL C:\Users\Default User\Documents\Ma musique 2015-10-17 01:40 - 2015-10-17 01:40 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2015-10-17 01:40 - 2015-10-17 01:40 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Historique 2015-10-17 01:40 - 2015-10-17 01:40 - 00000000 _SHDL C:\ProgramData\Modèles 2015-10-17 01:40 - 2015-10-17 01:40 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programmes 2015-10-17 01:40 - 2015-10-17 01:40 - 00000000 _SHDL C:\ProgramData\Menu Démarrer 2015-10-17 01:40 - 2015-10-17 01:40 - 00000000 _SHDL C:\ProgramData\Bureau 2015-10-17 01:40 - 2015-10-17 01:40 - 00000000 _SHDL C:\Program Files\Fichiers communs 2015-10-17 01:33 - 2015-07-10 11:59 - 02718208 _____ (Microsoft Corporation) C:\windows\SysWOW64\PrintConfig.dll 2015-10-17 01:31 - 2015-10-21 09:15 - 00000006 ____H C:\windows\Tasks\SA.DAT 2015-10-17 01:28 - 2015-10-17 01:28 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2015-10-17 01:28 - 2015-10-17 01:28 - 00000000 ____D C:\Users\Default\Documents\hp.system.package.metadata 2015-10-17 01:28 - 2015-10-17 01:28 - 00000000 ____D C:\Users\Default User\Documents\hp.system.package.metadata 2015-10-17 01:18 - 2015-10-17 01:18 - 00000000 ____D C:\windows\system32\config\bbimigrate 2015-10-17 01:13 - 2015-10-26 18:37 - 00000180 _____ C:\windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2015-10-17 01:13 - 2015-10-17 01:18 - 00000000 ____D C:\Program Files\AMD 2015-10-17 01:13 - 2015-10-17 01:13 - 00007873 _____ C:\windows\system32\Drivers\rtkhdasetting.zip 2015-10-17 01:13 - 2015-10-17 01:13 - 00000200 _____ C:\windows\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat 2015-10-17 01:13 - 2015-10-17 01:13 - 00000000 ____D C:\windows\SysWOW64\RTCOM 2015-10-17 01:13 - 2015-10-17 01:13 - 00000000 ____D C:\windows\system32\SRSLabs 2015-10-17 01:13 - 2015-10-17 01:13 - 00000000 ____D C:\ProgramData\SoundResearch 2015-10-17 01:13 - 2015-10-17 01:13 - 00000000 ____D C:\Program Files\Realtek 2015-10-17 01:12 - 2015-10-26 17:51 - 00000000 ____D C:\Program Files\Intel 2015-10-17 01:12 - 2015-10-17 01:18 - 00000000 ____D C:\Intel 2015-10-17 01:06 - 2015-10-21 08:51 - 00498752 _____ C:\windows\system32\FNTCACHE.DAT 2015-10-16 18:05 - 2015-10-16 18:05 - 00000000 _____ C:\Recovery.txt 2015-10-16 15:31 - 2015-10-21 09:00 - 00000000 ___DC C:\windows\Panther 2015-10-16 15:30 - 2015-10-16 15:30 - 00028672 ___SH C:\windows\system32\config\BCD-Template.LOG 2015-10-16 15:30 - 2015-10-16 15:30 - 00008192 _____ C:\windows\system32\config\userdiff 2015-10-16 15:28 - 2015-10-16 15:28 - 00000000 ____D C:\windows\SysWOW64\sda 2015-10-16 15:27 - 2015-10-16 15:27 - 00000000 ____D C:\windows\Setup 2015-10-16 15:24 - 2015-10-20 12:38 - 00000000 ____D C:\Program Files (x86)\MSBuild 2015-10-16 15:24 - 2015-10-16 15:24 - 00000000 ____D C:\windows\SysWOW64\XPSViewer 2015-10-16 15:24 - 2015-10-16 15:24 - 00000000 ____D C:\windows\OCR 2015-10-16 15:24 - 2015-10-16 15:24 - 00000000 ____D C:\Program Files\Reference Assemblies 2015-10-16 15:24 - 2015-10-16 15:24 - 00000000 ____D C:\Program Files\MSBuild 2015-10-16 15:24 - 2015-10-16 15:24 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2015-10-16 15:23 - 2015-10-26 17:53 - 00893648 _____ C:\windows\system32\perfh00C.dat 2015-10-16 15:23 - 2015-10-26 17:53 - 00186642 _____ C:\windows\system32\perfc00C.dat 2015-10-16 15:23 - 2015-10-16 15:22 - 00350774 _____ C:\windows\system32\perfi00C.dat 2015-10-16 15:23 - 2015-10-16 15:22 - 00040528 _____ C:\windows\system32\perfd00C.dat 2015-10-16 15:22 - 2015-10-17 01:27 - 00000000 ____D C:\windows\SysWOW64\winrm 2015-10-16 15:22 - 2015-10-17 01:27 - 00000000 ____D C:\windows\SysWOW64\WCN 2015-10-16 15:22 - 2015-10-17 01:27 - 00000000 ____D C:\windows\SysWOW64\slmgr 2015-10-16 15:22 - 2015-10-17 01:27 - 00000000 ____D C:\windows\SysWOW64\Printing_Admin_Scripts 2015-10-16 15:22 - 2015-10-17 01:27 - 00000000 ____D C:\windows\system32\winrm 2015-10-16 15:22 - 2015-10-17 01:27 - 00000000 ____D C:\windows\system32\WCN 2015-10-16 15:22 - 2015-10-17 01:27 - 00000000 ____D C:\windows\system32\slmgr 2015-10-16 15:22 - 2015-10-17 01:27 - 00000000 ____D C:\windows\system32\Printing_Admin_Scripts 2015-10-16 15:22 - 2015-10-16 15:22 - 00000000 ____D C:\windows\SysWOW64\sysprep 2015-10-16 15:22 - 2015-10-16 15:22 - 00000000 ____D C:\windows\SysWOW64\fr 2015-10-16 15:22 - 2015-10-16 15:22 - 00000000 ____D C:\windows\SysWOW64\0409 2015-10-16 15:22 - 2015-10-16 15:22 - 00000000 ____D C:\windows\system32\fr 2015-10-16 15:22 - 2015-10-16 15:22 - 00000000 ____D C:\windows\system32\0409 2015-10-16 15:22 - 2015-10-16 15:22 - 00000000 ____D C:\windows\DigitalLocker 2015-10-16 15:20 - 2015-10-16 04:10 - 00810488 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe 2015-10-16 15:20 - 2015-10-16 04:10 - 00176632 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-10-16 15:19 - 2015-10-26 18:28 - 00000000 ____D C:\windows\system32\FxsTmp 2015-10-16 15:19 - 2015-10-26 17:46 - 00000000 ____D C:\windows\system32\sru 2015-10-16 15:19 - 2015-10-26 10:11 - 00000000 ____D C:\windows\appcompat 2015-10-16 15:19 - 2015-10-23 19:48 - 00000000 ____D C:\windows\AppReadiness 2015-10-16 15:19 - 2015-10-21 15:27 - 00000000 ____D C:\windows\rescache 2015-10-16 15:19 - 2015-10-20 12:34 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2015-10-16 15:19 - 2015-10-17 19:12 - 00000000 ____D C:\windows\system32\restore 2015-10-16 15:19 - 2015-10-17 18:49 - 00000000 ___HD C:\windows\ELAMBKUP 2015-10-16 15:19 - 2015-10-17 11:16 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-16 15:19 - 2015-10-17 11:16 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-16 15:19 - 2015-10-17 11:16 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-10-16 15:19 - 2015-10-17 11:15 - 00000000 ___SD C:\windows\SysWOW64\F12 2015-10-16 15:19 - 2015-10-17 11:15 - 00000000 ___SD C:\windows\system32\F12 2015-10-16 15:19 - 2015-10-17 11:15 - 00000000 ___RD C:\windows\PurchaseDialog 2015-10-16 15:19 - 2015-10-17 11:15 - 00000000 ____D C:\windows\system32\WinBioPlugIns 2015-10-16 15:19 - 2015-10-17 11:15 - 00000000 ____D C:\windows\system32\SystemResetPlatform 2015-10-16 15:19 - 2015-10-17 11:15 - 00000000 ____D C:\windows\system32\oobe 2015-10-16 15:19 - 2015-10-17 11:15 - 00000000 ____D C:\windows\system32\appraiser 2015-10-16 15:19 - 2015-10-17 11:15 - 00000000 ____D C:\windows\Provisioning 2015-10-16 15:19 - 2015-10-17 11:14 - 00000000 ____D C:\windows\L2Schemas 2015-10-16 15:19 - 2015-10-17 11:14 - 00000000 ____D C:\Program Files\Windows Journal 2015-10-16 15:19 - 2015-10-17 01:59 - 00000000 ____D C:\windows\system32\WinBioDatabase 2015-10-16 15:19 - 2015-10-17 01:50 - 00000000 ___RD C:\windows\PrintDialog 2015-10-16 15:19 - 2015-10-17 01:50 - 00000000 ___RD C:\windows\MiracastView 2015-10-16 15:19 - 2015-10-17 01:49 - 00000000 ___RD C:\windows\ImmersiveControlPanel 2015-10-16 15:19 - 2015-10-17 01:41 - 00000000 ____D C:\windows\Registration 2015-10-16 15:19 - 2015-10-17 01:40 - 00000000 ____D C:\Program Files\Windows NT 2015-10-16 15:19 - 2015-10-17 01:39 - 00000000 __RHD C:\Users\Public\Libraries 2015-10-16 15:19 - 2015-10-17 01:28 - 00000000 __RSD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2015-10-16 15:19 - 2015-10-17 01:28 - 00000000 __RSD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell 2015-10-16 15:19 - 2015-10-17 01:27 - 00000000 ___SD C:\windows\SysWOW64\DiagSvcs 2015-10-16 15:19 - 2015-10-17 01:27 - 00000000 ___SD C:\windows\system32\dsc 2015-10-16 15:19 - 2015-10-17 01:27 - 00000000 ___SD C:\windows\system32\DiagSvcs 2015-10-16 15:19 - 2015-10-17 01:27 - 00000000 ____D C:\windows\SysWOW64\oobe 2015-10-16 15:19 - 2015-10-17 01:27 - 00000000 ____D C:\windows\SysWOW64\en-GB 2015-10-16 15:19 - 2015-10-17 01:27 - 00000000 ____D C:\windows\system32\spool 2015-10-16 15:19 - 2015-10-17 01:27 - 00000000 ____D C:\windows\system32\inetsrv 2015-10-16 15:19 - 2015-10-17 01:27 - 00000000 ____D C:\windows\system32\en-GB 2015-10-16 15:19 - 2015-10-17 01:27 - 00000000 ____D C:\windows\PolicyDefinitions 2015-10-16 15:19 - 2015-10-17 01:27 - 00000000 ____D C:\windows\IME 2015-10-16 15:19 - 2015-10-17 01:27 - 00000000 ____D C:\windows\Help 2015-10-16 15:19 - 2015-10-17 01:22 - 00000000 ____D C:\ProgramData\USOPrivate 2015-10-16 15:19 - 2015-10-17 01:22 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2015-10-16 15:19 - 2015-10-17 01:20 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2015-10-16 15:19 - 2015-10-17 01:19 - 00000000 ____D C:\Program Files\Common Files\System 2015-10-16 15:19 - 2015-10-17 01:18 - 00000000 ____D C:\windows\system32\Recovery 2015-10-16 15:19 - 2015-10-17 01:15 - 00000000 ____D C:\windows\system32\Sysprep 2015-10-16 15:19 - 2015-10-16 18:04 - 00028672 _____ C:\windows\system32\config\BCD-Template 2015-10-16 15:19 - 2015-10-16 15:26 - 00000000 ____D C:\windows\SysWOW64\Dism 2015-10-16 15:19 - 2015-10-16 15:26 - 00000000 ____D C:\windows\system32\Dism 2015-10-16 15:19 - 2015-10-16 15:24 - 00000000 ____D C:\windows\SysWOW64\MUI 2015-10-16 15:19 - 2015-10-16 15:24 - 00000000 ____D C:\windows\system32\MUI 2015-10-16 15:19 - 2015-10-16 15:22 - 00000000 ____D C:\windows\SysWOW64\setup 2015-10-16 15:19 - 2015-10-16 15:22 - 00000000 ____D C:\windows\SysWOW64\Com 2015-10-16 15:19 - 2015-10-16 15:22 - 00000000 ____D C:\windows\system32\setup 2015-10-16 15:19 - 2015-10-16 15:22 - 00000000 ____D C:\windows\system32\migwiz 2015-10-16 15:19 - 2015-10-16 15:22 - 00000000 ____D C:\windows\system32\Com 2015-10-16 15:19 - 2015-10-16 15:22 - 00000000 ____D C:\Program Files\Windows Defender 2015-10-16 15:19 - 2015-10-16 15:22 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 __SHD C:\Program Files\Windows Sidebar 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 __RSD C:\windows\Media 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 __RHD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ___SD C:\windows\SysWOW64\Nui 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ___SD C:\windows\SysWOW64\Configuration 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ___SD C:\windows\system32\Nui 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ___SD C:\windows\system32\Configuration 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ___SD C:\Program Files\WindowsPowerShell 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ___SD C:\Program Files (x86)\WindowsPowerShell 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ___RD C:\windows\Offline Web Pages 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ___RD C:\windows\DesktopTileResources 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\Web 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\Vss 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\tracing 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\TAPI 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\zh-HK 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\WinMetadata 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\WindowsPowerShell 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\uk-UA 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\tr-TR 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\th-TH 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\sru 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\sr-Latn-RS 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\sr-Latn-CS 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\sppui 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\spp 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\Speech_OneCore 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\Speech 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\SMI 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\sl-SI 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\sk-SK 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\ro-RO 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\restore 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\Recovery 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\RasToast 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\ras 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\networklist 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\NDF 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\MsDtc 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\MSDRM 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\migwiz 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\Macromed 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\lv-LV 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\lt-LT 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\Licenses 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\Ipmi 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\InstallShield 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\InputMethod 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\inetsrv 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\IME 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\icsxml 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\hr-HR 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\he-IL 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\GroupPolicy 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\FxsTmp 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\fr-CA 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\et-EE 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\es-MX 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\downlevel 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\Bthprops 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\bg-BG 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\ar-SA 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\AppLocker 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SysWOW64\AdvancedInstallers 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SystemResources 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\zh-HK 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\WinMetadata 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\winevt 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\WindowsPowerShell 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\uk-UA 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\tr-TR 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\th-TH 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\sr-Latn-RS 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\sr-Latn-CS 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\sppui 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\spp 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\Speech_OneCore 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\Speech 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\sl-SI 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\sk-SK 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\SecureBootUpdates 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\ro-RO 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\RasToast 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\ras 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\ProximityToast 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\PointOfService 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\networklist 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\NDF 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\MsDtc 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\MSDRM 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\MailContactsCalendarSync 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\Macromed 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\lv-LV 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\lt-LT 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\Licenses 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\Ipmi 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\InputMethod 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\IME 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\icsxml 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\ias 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\hr-HR 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\he-IL 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\fr-CA 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\et-EE 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\es-MX 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\downlevel 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\config\Journal 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\Bthprops 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\bg-BG 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\ar-SA 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\AppLocker 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\AdvancedInstallers 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system\Speech 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\System 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\Speech_OneCore 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\Speech 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SKB 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\ShellNew 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\security 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\schemas 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\SchCache 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\Resources 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\PLA 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\Performance 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\LiveKernelReports 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\InputMethod 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\Globalization 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\Cursors 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\Branding 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\windows\addins 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\ProgramData\Comms 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\Program Files\Windows Portable Devices 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\Program Files\Windows Multimedia Platform 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\Program Files\Common Files\Services 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\Program Files (x86)\Windows NT 2015-10-16 15:19 - 2015-10-16 15:19 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform 2015-10-16 15:19 - 2015-10-16 15:17 - 00229888 _____ (Microsoft Corporation) C:\windows\system32\msclmd.dll 2015-10-16 15:19 - 2015-10-16 15:17 - 00215943 _____ C:\windows\SysWOW64\dssec.dat 2015-10-16 15:19 - 2015-10-16 15:17 - 00215943 _____ C:\windows\system32\dssec.dat 2015-10-16 15:19 - 2015-10-16 15:17 - 00208384 _____ (Microsoft Corporation) C:\windows\SysWOW64\msclmd.dll 2015-10-16 15:19 - 2015-10-16 15:17 - 00015462 _____ C:\windows\system32\OEMDefaultAssociations.xml 2015-10-16 15:19 - 2015-10-16 15:17 - 00008798 _____ C:\windows\SysWOW64\icrav03.rat 2015-10-16 15:19 - 2015-10-16 15:17 - 00008798 _____ C:\windows\system32\icrav03.rat 2015-10-16 15:19 - 2015-10-16 15:17 - 00003683 _____ C:\windows\system32\Drivers\etc\lmhosts.sam 2015-10-16 15:19 - 2015-10-16 15:17 - 00001988 _____ C:\windows\SysWOW64\ticrf.rat 2015-10-16 15:19 - 2015-10-16 15:17 - 00001988 _____ C:\windows\system32\ticrf.rat 2015-10-16 15:19 - 2015-10-16 15:17 - 00000858 _____ C:\windows\system32\DefaultQuestions.json 2015-10-16 15:19 - 2015-10-16 15:17 - 00000741 _____ C:\windows\SysWOW64\NOISE.DAT 2015-10-16 15:19 - 2015-10-16 15:17 - 00000741 _____ C:\windows\system32\NOISE.DAT 2015-10-16 15:12 - 2015-10-20 13:04 - 00000000 ____D C:\windows\CbsTemp 2015-10-16 15:09 - 2015-10-21 09:15 - 00524288 ___SH C:\windows\system32\config\BBI 2015-10-16 15:09 - 2015-10-17 18:49 - 00032768 ___SH C:\windows\system32\config\ELAM 2015-10-16 15:09 - 2015-10-17 01:50 - 00000000 _RSHD C:\system.sav 2015-10-16 15:09 - 2015-10-17 01:40 - 00000000 __RHD C:\Users\Default 2015-10-16 15:09 - 2015-10-16 15:22 - 00000000 ____D C:\windows\servicing 2015-10-16 15:09 - 2015-10-16 15:19 - 00000000 ____D C:\windows\system32\SMI 2015-10-16 15:09 - 2015-07-10 10:11 - 00000164 _____ C:\windows\system32\config\FP 2015-10-16 15:04 - 2015-10-16 18:05 - 00000000 ___HD C:\$SysReset 2015-10-02 17:21 - 2015-09-17 07:50 - 02464216 _____ (Microsoft Corporation) C:\windows\system32\mfcore.dll 2015-10-02 17:21 - 2015-09-17 07:50 - 01563392 _____ (Microsoft Corporation) C:\windows\system32\winmde.dll 2015-10-02 17:21 - 2015-09-17 07:49 - 06487248 _____ (Microsoft Corporation) C:\windows\system32\windows.storage.dll 2015-10-02 17:21 - 2015-09-17 07:49 - 01563472 _____ (Microsoft Corporation) C:\windows\system32\wmpmde.dll 2015-10-02 17:21 - 2015-09-17 07:49 - 00894256 _____ (Microsoft Corporation) C:\windows\system32\Drivers\Wdf01000.sys 2015-10-02 17:21 - 2015-09-17 07:48 - 02824248 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll 2015-10-02 17:21 - 2015-09-17 07:48 - 02494712 _____ C:\windows\system32\CoreUIComponents.dll 2015-10-02 17:21 - 2015-09-17 07:48 - 02432336 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys 2015-10-02 17:21 - 2015-09-17 07:48 - 02156400 _____ (Microsoft Corporation) C:\windows\system32\hevcdecoder.dll 2015-10-02 17:21 - 2015-09-17 07:48 - 01983824 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys 2015-10-02 17:21 - 2015-09-17 07:48 - 00809352 _____ (Microsoft Corporation) C:\windows\system32\CoreMessaging.dll 2015-10-02 17:21 - 2015-09-17 07:48 - 00784136 _____ (Microsoft Corporation) C:\windows\system32\mfsvr.dll 2015-10-02 17:21 - 2015-09-17 07:48 - 00555768 _____ (Microsoft Corporation) C:\windows\system32\directmanipulation.dll 2015-10-02 17:21 - 2015-09-17 07:48 - 00537080 _____ (Microsoft Corporation) C:\windows\system32\WWanAPI.dll 2015-10-02 17:21 - 2015-09-17 07:48 - 00476760 _____ (Microsoft Corporation) C:\windows\system32\MFCaptureEngine.dll 2015-10-02 17:21 - 2015-09-17 07:47 - 01397088 _____ (Microsoft Corporation) C:\windows\system32\LicenseManager.dll 2015-10-02 17:21 - 2015-09-17 07:44 - 00781976 _____ (Microsoft Corporation) C:\windows\system32\mfds.dll 2015-10-02 17:21 - 2015-09-17 07:43 - 00966416 _____ (Microsoft Corporation) C:\windows\system32\twinapi.appcore.dll 2015-10-02 17:21 - 2015-09-17 07:37 - 01295712 _____ (Microsoft Corporation) C:\windows\system32\wpx.dll 2015-10-02 17:21 - 2015-09-17 07:28 - 05120056 _____ (Microsoft Corporation) C:\windows\SysWOW64\windows.storage.dll 2015-10-02 17:21 - 2015-09-17 07:28 - 02154808 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfcore.dll 2015-10-02 17:21 - 2015-09-17 07:28 - 01357888 _____ (Microsoft Corporation) C:\windows\SysWOW64\winmde.dll 2015-10-02 17:21 - 2015-09-17 07:27 - 01766952 _____ C:\windows\SysWOW64\CoreUIComponents.dll 2015-10-02 17:21 - 2015-09-17 07:27 - 00454512 _____ (Microsoft Corporation) C:\windows\SysWOW64\directmanipulation.dll 2015-10-02 17:21 - 2015-09-17 07:26 - 02446648 _____ (Microsoft Corporation) C:\windows\SysWOW64\msmpeg2vdec.dll 2015-10-02 17:21 - 2015-09-17 07:26 - 00646672 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfsvr.dll 2015-10-02 17:21 - 2015-09-17 07:26 - 00428128 _____ (Microsoft Corporation) C:\windows\SysWOW64\WWanAPI.dll 2015-10-02 17:21 - 2015-09-17 07:25 - 00962400 _____ (Microsoft Corporation) C:\windows\SysWOW64\LicenseManager.dll 2015-10-02 17:21 - 2015-09-17 07:21 - 00658528 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfds.dll 2015-10-02 17:21 - 2015-09-17 07:20 - 00764416 _____ (Microsoft Corporation) C:\windows\SysWOW64\twinapi.appcore.dll 2015-10-02 17:21 - 2015-09-17 07:06 - 00467968 _____ (Microsoft Corporation) C:\windows\system32\MBMediaManager.dll 2015-10-02 17:21 - 2015-09-17 07:05 - 02226688 _____ (Microsoft Corporation) C:\windows\system32\NetworkMobileSettings.dll 2015-10-02 17:21 - 2015-09-17 07:04 - 07569408 _____ (Microsoft Corporation) C:\windows\system32\mos.dll 2015-10-02 17:21 - 2015-09-17 07:04 - 00910848 _____ (Microsoft Corporation) C:\windows\system32\SharedStartModel.dll 2015-10-02 17:21 - 2015-09-17 07:00 - 03248640 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.dll 2015-10-02 17:21 - 2015-09-17 07:00 - 02417664 _____ (Microsoft Corporation) C:\windows\system32\MFMediaEngine.dll 2015-10-02 17:21 - 2015-09-17 06:58 - 00503808 _____ (Microsoft Corporation) C:\windows\system32\tileobjserver.dll 2015-10-02 17:21 - 2015-09-17 06:57 - 02228736 _____ (Microsoft Corporation) C:\windows\system32\wlansvc.dll 2015-10-02 17:21 - 2015-09-17 06:57 - 00281600 _____ (Microsoft Corporation) C:\windows\system32\VEEventDispatcher.dll 2015-10-02 17:21 - 2015-09-17 06:56 - 00859136 _____ (Microsoft Corporation) C:\windows\system32\modernexecserver.dll 2015-10-02 17:21 - 2015-09-17 06:55 - 02236416 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll 2015-10-02 17:21 - 2015-09-17 06:55 - 01601536 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Speech.dll 2015-10-02 17:21 - 2015-09-17 06:54 - 03781120 _____ (Microsoft Corporation) C:\windows\system32\SettingsHandlers_nt.dll 2015-10-02 17:21 - 2015-09-17 06:54 - 00780288 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Store.dll 2015-10-02 17:21 - 2015-09-17 06:53 - 07055872 _____ (Microsoft Corporation) C:\windows\system32\BingMaps.dll 2015-10-02 17:21 - 2015-09-17 06:52 - 01181696 _____ (Microsoft Corporation) C:\windows\system32\wwansvc.dll 2015-10-02 17:21 - 2015-09-17 06:52 - 00591360 _____ (Microsoft Corporation) C:\windows\system32\wcmsvc.dll 2015-10-02 17:21 - 2015-09-17 06:52 - 00570880 _____ (Microsoft Corporation) C:\windows\system32\MbaeApi.dll 2015-10-02 17:21 - 2015-09-17 06:51 - 02660864 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Logon.dll 2015-10-02 17:21 - 2015-09-17 06:51 - 01203712 _____ (Microsoft Corporation) C:\windows\system32\Windows.Devices.Bluetooth.dll 2015-10-02 17:21 - 2015-09-17 06:49 - 02740224 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll 2015-10-02 17:21 - 2015-09-17 06:49 - 01290240 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Shell.dll 2015-10-02 17:21 - 2015-09-17 06:49 - 01010176 _____ (Microsoft Corporation) C:\windows\system32\RDXService.dll 2015-10-02 17:21 - 2015-09-17 06:48 - 02093056 _____ (Microsoft Corporation) C:\windows\system32\wlidsvc.dll 2015-10-02 17:21 - 2015-09-17 06:48 - 00517632 _____ (Microsoft Corporation) C:\windows\system32\NotificationController.dll 2015-10-02 17:21 - 2015-09-17 06:48 - 00408064 _____ (Microsoft Corporation) C:\windows\system32\CredProvDataModel.dll 2015-10-02 17:21 - 2015-09-17 06:47 - 00513536 _____ (Microsoft Corporation) C:\windows\system32\ngcsvc.dll 2015-10-02 17:21 - 2015-09-17 06:45 - 01331200 _____ (Microsoft Corporation) C:\windows\system32\UIAutomationCore.dll 2015-10-02 17:21 - 2015-09-17 06:45 - 00869376 _____ (Microsoft Corporation) C:\windows\system32\MapControlCore.dll 2015-10-02 17:21 - 2015-09-17 06:45 - 00627712 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.dll 2015-10-02 17:21 - 2015-09-17 06:44 - 00526336 _____ (Microsoft Corporation) C:\windows\system32\bisrv.dll 2015-10-02 17:21 - 2015-09-17 06:43 - 01213440 _____ (Microsoft Corporation) C:\windows\system32\RemoteNaturalLanguage.dll 2015-10-02 17:21 - 2015-09-17 06:43 - 00378368 _____ (Microsoft Corporation) C:\windows\system32\SystemEventsBrokerServer.dll 2015-10-02 17:21 - 2015-09-17 06:42 - 02646528 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.dll 2015-10-02 17:21 - 2015-09-17 06:40 - 06101504 _____ (Microsoft Corporation) C:\windows\SysWOW64\mos.dll 2015-10-02 17:21 - 2015-09-17 06:40 - 01918464 _____ (Microsoft Corporation) C:\windows\SysWOW64\MFMediaEngine.dll 2015-10-02 17:21 - 2015-09-17 06:40 - 01162240 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Speech.dll 2015-10-02 17:21 - 2015-09-17 06:39 - 00587264 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Store.dll 2015-10-02 17:21 - 2015-09-17 06:38 - 00058368 _____ (Microsoft Corporation) C:\windows\SysWOW64\usoapi.dll 2015-10-02 17:21 - 2015-09-17 06:37 - 00454656 _____ (Microsoft Corporation) C:\windows\SysWOW64\MbaeApi.dll 2015-10-02 17:21 - 2015-09-17 06:35 - 05079552 _____ (Microsoft Corporation) C:\windows\SysWOW64\BingMaps.dll 2015-10-02 17:21 - 2015-09-17 06:35 - 02207232 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll 2015-10-02 17:21 - 2015-09-17 06:35 - 01820160 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Logon.dll 2015-10-02 17:21 - 2015-09-17 06:35 - 00828928 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Devices.Bluetooth.dll 2015-10-02 17:21 - 2015-09-17 06:32 - 00336384 _____ (Microsoft Corporation) C:\windows\SysWOW64\CredProvDataModel.dll 2015-10-02 17:21 - 2015-09-17 06:29 - 01104384 _____ (Microsoft Corporation) C:\windows\SysWOW64\UIAutomationCore.dll 2015-10-02 17:21 - 2015-09-17 06:29 - 00677888 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapControlCore.dll 2015-10-02 17:21 - 2015-09-17 06:26 - 00899584 _____ (Microsoft Corporation) C:\windows\SysWOW64\RemoteNaturalLanguage.dll 2015-10-02 17:21 - 2015-09-17 06:16 - 00512000 _____ (Microsoft Corporation) C:\windows\SysWOW64\CoreMessaging.dll 2015-10-02 17:21 - 2015-09-13 03:05 - 02987520 _____ (Microsoft Corporation) C:\windows\system32\esent.dll 2015-10-02 17:21 - 2015-09-13 02:41 - 02639872 _____ (Microsoft Corporation) C:\windows\SysWOW64\esent.dll 2015-10-02 17:20 - 2015-09-19 06:14 - 00102304 _____ (Microsoft Corporation) C:\windows\system32\omadmapi.dll 2015-10-02 17:20 - 2015-09-17 07:50 - 00099664 _____ (Microsoft Corporation) C:\windows\system32\Drivers\pdc.sys 2015-10-02 17:20 - 2015-09-17 07:50 - 00088384 _____ (Microsoft Corporation) C:\windows\system32\remoteaudioendpoint.dll 2015-10-02 17:20 - 2015-09-17 07:49 - 00553808 _____ (Microsoft Corporation) C:\windows\system32\SettingSyncHost.exe 2015-10-02 17:20 - 2015-09-17 07:49 - 00501008 _____ (Microsoft Corporation) C:\windows\system32\AudioEng.dll 2015-10-02 17:20 - 2015-09-17 07:48 - 00584656 _____ (Microsoft Corporation) C:\windows\system32\mf.dll 2015-10-02 17:20 - 2015-09-17 07:48 - 00516448 _____ (Microsoft Corporation) C:\windows\system32\Drivers\USBHUB3.SYS 2015-10-02 17:20 - 2015-09-17 07:48 - 00505696 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgmms2.sys 2015-10-02 17:20 - 2015-09-17 07:48 - 00406864 _____ (Microsoft Corporation) C:\windows\system32\Drivers\FWPKCLNT.SYS 2015-10-02 17:20 - 2015-09-17 07:48 - 00395088 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgmms1.sys 2015-10-02 17:20 - 2015-09-17 07:48 - 00332624 _____ (Microsoft Corporation) C:\windows\system32\Drivers\fastfat.sys 2015-10-02 17:20 - 2015-09-17 07:48 - 00278352 _____ (Microsoft Corporation) C:\windows\system32\Drivers\sdbus.sys 2015-10-02 17:20 - 2015-09-17 07:48 - 00243760 _____ (Microsoft Corporation) C:\windows\system32\mfps.dll 2015-10-02 17:20 - 2015-09-17 07:37 - 01168736 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndis.sys 2015-10-02 17:20 - 2015-09-17 07:28 - 00441168 _____ (Microsoft Corporation) C:\windows\SysWOW64\SettingSyncHost.exe 2015-10-02 17:20 - 2015-09-17 07:28 - 00407608 _____ (Microsoft Corporation) C:\windows\SysWOW64\AudioSes.dll 2015-10-02 17:20 - 2015-09-17 07:28 - 00074880 _____ (Microsoft Corporation) C:\windows\SysWOW64\remoteaudioendpoint.dll 2015-10-02 17:20 - 2015-09-17 07:26 - 01895568 _____ (Microsoft Corporation) C:\windows\SysWOW64\hevcdecoder.dll 2015-10-02 17:20 - 2015-09-17 07:26 - 00508248 _____ (Microsoft Corporation) C:\windows\SysWOW64\mf.dll 2015-10-02 17:20 - 2015-09-17 07:26 - 00434376 _____ (Microsoft Corporation) C:\windows\SysWOW64\MFCaptureEngine.dll 2015-10-02 17:20 - 2015-09-17 07:11 - 00160256 _____ (Microsoft Corporation) C:\windows\system32\enrollmentapi.dll 2015-10-02 17:20 - 2015-09-17 07:10 - 00169984 _____ (Microsoft Corporation) C:\windows\system32\mdmregistration.dll 2015-10-02 17:20 - 2015-09-17 07:09 - 00269312 _____ (Microsoft Corporation) C:\windows\system32\provengine.dll 2015-10-02 17:20 - 2015-09-17 07:09 - 00143360 _____ (Microsoft Corporation) C:\windows\system32\provops.dll 2015-10-02 17:20 - 2015-09-17 07:08 - 00494592 _____ (Microsoft Corporation) C:\windows\system32\StoreAgent.dll 2015-10-02 17:20 - 2015-09-17 07:08 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\Windows.Speech.Pal.dll 2015-10-02 17:20 - 2015-09-17 07:08 - 00026624 _____ (Microsoft Corporation) C:\windows\system32\LicenseManagerShellext.exe 2015-10-02 17:20 - 2015-09-17 07:06 - 00690688 _____ (Microsoft Corporation) C:\windows\system32\CellularAPI.dll 2015-10-02 17:20 - 2015-09-17 07:06 - 00149504 _____ (Microsoft Corporation) C:\windows\system32\tetheringservice.dll 2015-10-02 17:20 - 2015-09-17 07:05 - 00483328 _____ (Microsoft Corporation) C:\windows\system32\OneDriveSettingSyncProvider.dll 2015-10-02 17:20 - 2015-09-17 07:04 - 00504320 _____ (Microsoft Corporation) C:\windows\system32\DataSenseHandlers.dll 2015-10-02 17:20 - 2015-09-17 07:03 - 00267776 _____ (Microsoft Corporation) C:\windows\system32\Windows.Internal.Management.dll 2015-10-02 17:20 - 2015-09-17 07:03 - 00187904 _____ (Microsoft Corporation) C:\windows\system32\provisioningcsp.dll 2015-10-02 17:20 - 2015-09-17 07:03 - 00154624 _____ (Microsoft Corporation) C:\windows\system32\dmcertinst.exe 2015-10-02 17:20 - 2015-09-17 07:03 - 00088064 _____ (Microsoft Corporation) C:\windows\system32\ngckeyenum.dll 2015-10-02 17:20 - 2015-09-17 07:03 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\DeviceEnroller.exe 2015-10-02 17:20 - 2015-09-17 07:02 - 00168960 _____ (Microsoft Corporation) C:\windows\system32\mdmmigrator.dll 2015-10-02 17:20 - 2015-09-17 07:02 - 00068096 _____ (Microsoft Corporation) C:\windows\system32\EnterpriseDesktopAppMgmtCSP.dll 2015-10-02 17:20 - 2015-09-17 07:00 - 00446976 _____ (Microsoft Corporation) C:\windows\system32\MapConfiguration.dll 2015-10-02 17:20 - 2015-09-17 07:00 - 00106496 _____ (Microsoft Corporation) C:\windows\system32\KeywordDetectorMsftSidAdapter.dll 2015-10-02 17:20 - 2015-09-17 06:57 - 00403456 _____ (Microsoft Corporation) C:\windows\system32\dmenrollengine.dll 2015-10-02 17:20 - 2015-09-17 06:57 - 00137728 _____ (Microsoft Corporation) C:\windows\system32\VEStoreEventHandlers.dll 2015-10-02 17:20 - 2015-09-17 06:56 - 00521728 _____ (Microsoft Corporation) C:\windows\system32\PsmServiceExtHost.dll 2015-10-02 17:20 - 2015-09-17 06:56 - 00317440 _____ (Microsoft Corporation) C:\windows\system32\configmanager2.dll 2015-10-02 17:20 - 2015-09-17 06:55 - 00671232 _____ (Microsoft Corporation) C:\windows\system32\WUDFx02000.dll 2015-10-02 17:20 - 2015-09-17 06:55 - 00366592 _____ (Microsoft Corporation) C:\windows\system32\wuuhext.dll 2015-10-02 17:20 - 2015-09-17 06:55 - 00346112 _____ (Microsoft Corporation) C:\windows\system32\ngccredprov.dll 2015-10-02 17:20 - 2015-09-17 06:55 - 00202240 _____ (Microsoft Corporation) C:\windows\system32\accountaccessor.dll 2015-10-02 17:20 - 2015-09-17 06:55 - 00121856 _____ (Microsoft Corporation) C:\windows\system32\dmcsps.dll 2015-10-02 17:20 - 2015-09-17 06:55 - 00120832 _____ (Microsoft Corporation) C:\windows\system32\omadmclient.exe 2015-10-02 17:20 - 2015-09-17 06:55 - 00073728 _____ (Microsoft Corporation) C:\windows\system32\wwancfg.dll 2015-10-02 17:20 - 2015-09-17 06:54 - 00324096 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-10-02 17:20 - 2015-09-17 06:52 - 06572032 _____ (Microsoft Corporation) C:\windows\system32\wwanmm.dll 2015-10-02 17:20 - 2015-09-17 06:52 - 01216512 _____ (Microsoft Corporation) C:\windows\system32\netcenter.dll 2015-10-02 17:20 - 2015-09-17 06:52 - 00856576 _____ (Microsoft Corporation) C:\windows\system32\MPSSVC.dll 2015-10-02 17:20 - 2015-09-17 06:52 - 00465920 _____ (Microsoft Corporation) C:\windows\system32\wwanconn.dll 2015-10-02 17:20 - 2015-09-17 06:52 - 00371712 _____ (Microsoft Corporation) C:\windows\system32\nlasvc.dll 2015-10-02 17:20 - 2015-09-17 06:52 - 00204800 _____ (Microsoft Corporation) C:\windows\system32\wcmcsp.dll 2015-10-02 17:20 - 2015-09-17 06:52 - 00162304 _____ (Microsoft Corporation) C:\windows\system32\SubscriptionMgr.dll 2015-10-02 17:20 - 2015-09-17 06:51 - 01812480 _____ (Microsoft Corporation) C:\windows\system32\pnidui.dll 2015-10-02 17:20 - 2015-09-17 06:51 - 01067520 _____ (Microsoft Corporation) C:\windows\system32\audiosrv.dll 2015-10-02 17:20 - 2015-09-17 06:51 - 00359936 _____ (Microsoft Corporation) C:\windows\system32\ncsi.dll 2015-10-02 17:20 - 2015-09-17 06:51 - 00145920 _____ (Microsoft Corporation) C:\windows\SysWOW64\mdmregistration.dll 2015-10-02 17:20 - 2015-09-17 06:50 - 00421888 _____ (Microsoft Corporation) C:\windows\system32\Windows.Internal.Bluetooth.dll 2015-10-02 17:20 - 2015-09-17 06:50 - 00320000 _____ (Microsoft Corporation) C:\windows\system32\Drivers\portcls.sys 2015-10-02 17:20 - 2015-09-17 06:50 - 00312832 _____ (Microsoft Corporation) C:\windows\system32\SensorsApi.dll 2015-10-02 17:20 - 2015-09-17 06:50 - 00221184 _____ (Microsoft Corporation) C:\windows\system32\LocationPeWiFi.dll 2015-10-02 17:20 - 2015-09-17 06:50 - 00204288 _____ (Microsoft Corporation) C:\windows\system32\LocationPeCell.dll 2015-10-02 17:20 - 2015-09-17 06:50 - 00036352 _____ (Microsoft Corporation) C:\windows\system32\Drivers\buttonconverter.sys 2015-10-02 17:20 - 2015-09-17 06:49 - 00439296 _____ (Microsoft Corporation) C:\windows\system32\LocationWebproxy.dll 2015-10-02 17:20 - 2015-09-17 06:49 - 00342016 _____ (Microsoft Corporation) C:\windows\system32\LocationGeofences.dll 2015-10-02 17:20 - 2015-09-17 06:49 - 00268800 _____ (Microsoft Corporation) C:\windows\system32\LocationFramework.dll 2015-10-02 17:20 - 2015-09-17 06:49 - 00215552 _____ (Microsoft Corporation) C:\windows\system32\LocationCrowdsource.dll 2015-10-02 17:20 - 2015-09-17 06:49 - 00176640 _____ (Microsoft Corporation) C:\windows\system32\LocationPeIP.dll 2015-10-02 17:20 - 2015-09-17 06:49 - 00095744 _____ (Microsoft Corporation) C:\windows\system32\LocationWiFiAdapter.dll 2015-10-02 17:20 - 2015-09-17 06:49 - 00041472 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Speech.Pal.dll 2015-10-02 17:20 - 2015-09-17 06:48 - 00387584 _____ (Microsoft Corporation) C:\windows\system32\LockAppBroker.dll 2015-10-02 17:20 - 2015-09-17 06:48 - 00347136 _____ (Microsoft Corporation) C:\windows\system32\ncryptprov.dll 2015-10-02 17:20 - 2015-09-17 06:48 - 00273920 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.LockScreen.dll 2015-10-02 17:20 - 2015-09-17 06:47 - 00371712 _____ (Microsoft Corporation) C:\windows\SysWOW64\OneDriveSettingSyncProvider.dll 2015-10-02 17:20 - 2015-09-17 06:47 - 00186880 _____ (Microsoft Corporation) C:\windows\system32\cloudAP.dll 2015-10-02 17:20 - 2015-09-17 06:46 - 00928256 _____ (Microsoft Corporation) C:\windows\system32\JpMapControl.dll 2015-10-02 17:20 - 2015-09-17 06:46 - 00621056 _____ (Microsoft Corporation) C:\windows\system32\enterprisecsps.dll 2015-10-02 17:20 - 2015-09-17 06:46 - 00414208 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentClient.dll 2015-10-02 17:20 - 2015-09-17 06:46 - 00224256 _____ (Microsoft Corporation) C:\windows\system32\KnobsCore.dll 2015-10-02 17:20 - 2015-09-17 06:46 - 00118272 _____ (Microsoft Corporation) C:\windows\system32\KnobsCsp.dll 2015-10-02 17:20 - 2015-09-17 06:46 - 00084480 _____ (Microsoft Corporation) C:\windows\system32\MDMAppInstaller.exe 2015-10-02 17:20 - 2015-09-17 06:46 - 00079872 _____ (Microsoft Corporation) C:\windows\system32\HttpsDataSource.dll 2015-10-02 17:20 - 2015-09-17 06:46 - 00030208 _____ (Microsoft Corporation) C:\windows\system32\syncmlhook.dll 2015-10-02 17:20 - 2015-09-17 06:45 - 00832512 _____ (Microsoft Corporation) C:\windows\system32\MapsStore.dll 2015-10-02 17:20 - 2015-09-17 06:45 - 00193024 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Internal.Management.dll 2015-10-02 17:20 - 2015-09-17 06:44 - 01844736 _____ (Microsoft Corporation) C:\windows\system32\workfolderssvc.dll 2015-10-02 17:20 - 2015-09-17 06:44 - 00599552 _____ (Microsoft Corporation) C:\windows\system32\wpnapps.dll 2015-10-02 17:20 - 2015-09-17 06:44 - 00274944 _____ (Microsoft Corporation) C:\windows\system32\syncutil.dll 2015-10-02 17:20 - 2015-09-17 06:43 - 00328704 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapConfiguration.dll 2015-10-02 17:20 - 2015-09-17 06:43 - 00185344 _____ (Microsoft Corporation) C:\windows\system32\psmsrv.dll 2015-10-02 17:20 - 2015-09-17 06:41 - 00217088 _____ (Microsoft Corporation) C:\windows\SysWOW64\VEEventDispatcher.dll 2015-10-02 17:20 - 2015-09-17 06:39 - 00247808 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-10-02 17:20 - 2015-09-17 06:36 - 01171456 _____ (Microsoft Corporation) C:\windows\SysWOW64\netcenter.dll 2015-10-02 17:20 - 2015-09-17 06:34 - 00253440 _____ (Microsoft Corporation) C:\windows\SysWOW64\SensorsApi.dll 2015-10-02 17:20 - 2015-09-17 06:32 - 00313856 _____ (Microsoft Corporation) C:\windows\SysWOW64\LockAppBroker.dll 2015-10-02 17:20 - 2015-09-17 06:32 - 00195072 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2015-10-02 17:20 - 2015-09-17 06:31 - 00268800 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncryptprov.dll 2015-10-02 17:20 - 2015-09-17 06:30 - 00311808 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppXDeploymentClient.dll 2015-10-02 17:20 - 2015-09-17 06:29 - 00701952 _____ (Microsoft Corporation) C:\windows\SysWOW64\JpMapControl.dll 2015-10-02 17:20 - 2015-09-17 06:29 - 00464896 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.dll 2015-10-02 17:20 - 2015-09-17 06:28 - 00473088 _____ (Microsoft Corporation) C:\windows\SysWOW64\wpnapps.dll 2015-09-27 00:50 - 2015-09-27 00:50 - 00625848 _____ (Microsoft Corporation) C:\windows\system32\msvcp140.dll 2015-09-27 00:50 - 2015-09-27 00:50 - 00381128 _____ (Microsoft Corporation) C:\windows\system32\vccorlib140.dll 2015-09-27 00:50 - 2015-09-27 00:50 - 00323792 _____ (Microsoft Corporation) C:\windows\system32\concrt140.dll 2015-09-27 00:50 - 2015-09-27 00:50 - 00079544 _____ (Microsoft Corporation) C:\windows\system32\vcruntime140.dll 2015-09-26 23:07 - 2015-09-26 23:07 - 00430264 _____ (Microsoft Corporation) C:\windows\SysWOW64\msvcp140.dll 2015-09-26 23:07 - 2015-09-26 23:07 - 00257736 _____ (Microsoft Corporation) C:\windows\SysWOW64\vccorlib140.dll 2015-09-26 23:07 - 2015-09-26 23:07 - 00234192 _____ (Microsoft Corporation) C:\windows\SysWOW64\concrt140.dll 2015-09-26 23:07 - 2015-09-26 23:07 - 00075960 _____ (Microsoft Corporation) C:\windows\SysWOW64\vcruntime140.dll ==================== Un mois - Modifiés - fichiers et dossiers ======== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2015-10-26 18:05 - 2015-08-24 08:34 - 00008112 _____ C:\windows\SysWOW64\RealtekWLAN.log 2015-10-26 17:53 - 2015-08-24 08:34 - 04641536 _____ (Realtek Semiconductor Corporation ) C:\windows\system32\Drivers\rtwlane.sys 2015-10-26 17:53 - 2015-07-16 17:03 - 00000000 ____D C:\SWSETUP 2015-10-26 17:53 - 2015-07-16 15:01 - 02040260 _____ C:\windows\system32\PerfStringBackup.INI 2015-10-26 17:51 - 2015-08-24 08:57 - 00322728 _____ C:\windows\SysWOW64\Gms.log 2015-10-26 17:51 - 2015-08-24 08:33 - 00000000 ____D C:\ProgramData\Intel 2015-10-26 17:49 - 2015-07-16 15:01 - 00000000 ____D C:\ProgramData\Package Cache 2015-10-26 17:47 - 2015-08-24 08:50 - 00000000 ____D C:\windows\Hewlett-Packard 2015-10-20 10:53 - 2015-08-24 08:32 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2015-10-19 11:08 - 2015-08-24 08:32 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2015-10-17 18:56 - 2015-06-29 14:37 - 00190648 _____ (Kaspersky Lab ZAO) C:\windows\system32\Drivers\kneps.sys 2015-10-17 18:42 - 2015-08-24 08:43 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection 2015-10-17 18:41 - 2015-07-10 10:05 - 00000000 ____D C:\Users\Default.migrated 2015-10-17 01:53 - 2015-08-24 08:32 - 00000000 ____D C:\windows\System32\Tasks\Hewlett-Packard 2015-10-17 01:53 - 2015-08-24 08:32 - 00000000 ____D C:\ProgramData\Hewlett-Packard 2015-10-17 01:52 - 2015-08-24 08:47 - 00000000 ____D C:\ProgramData\CyberLink 2015-10-17 01:50 - 2015-08-24 08:39 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools 2015-10-17 01:50 - 2015-08-24 08:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support 2015-10-17 01:23 - 2015-08-24 08:50 - 00000000 ____D C:\ProgramData\WildTangent 2015-10-17 01:23 - 2015-08-24 08:31 - 00000000 ____D C:\ProgramData\{C6FA530F-BB98-4D9F-BA00-45FD0698077C} 2015-10-17 01:22 - 2015-08-24 08:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 25 GB 2015-10-17 01:22 - 2015-08-24 08:51 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-10-17 01:22 - 2015-08-24 08:51 - 00000000 ____D C:\Program Files (x86)\WildGames 2015-10-17 01:22 - 2015-08-24 08:50 - 00000000 ____D C:\Program Files (x86)\WildTangent Games 2015-10-17 01:22 - 2015-08-24 08:48 - 00000000 ____D C:\ProgramData\SUPPORTDIR 2015-10-17 01:22 - 2015-08-24 08:45 - 00000000 ____D C:\ProgramData\Temp 2015-10-17 01:22 - 2015-08-24 08:45 - 00000000 ____D C:\ProgramData\install_clap 2015-10-17 01:22 - 2015-08-24 08:39 - 00000000 ___RD C:\Program Files (x86)\Online Services 2015-10-17 01:22 - 2015-08-24 08:38 - 00000000 ____D C:\ProgramData\Apple 2015-10-17 01:22 - 2015-08-24 08:34 - 00000000 ____D C:\Program Files (x86)\Realtek 2015-10-17 01:22 - 2015-08-24 08:31 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard 2015-10-17 01:22 - 2015-08-24 08:30 - 00000000 ____D C:\Program Files (x86)\HP 2015-10-17 01:22 - 2015-08-24 08:21 - 00000000 ____D C:\Program Files (x86)\Intel 2015-10-17 01:22 - 2015-07-16 15:02 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2015-10-17 01:22 - 2015-07-10 13:22 - 00000000 ____D C:\ProgramData\USOShared 2015-10-17 01:21 - 2015-08-24 08:52 - 00000000 ____D C:\Program Files (x86)\Dropbox 2015-10-17 01:21 - 2015-08-24 08:47 - 00000000 ____D C:\Program Files (x86)\Cyberlink 2015-10-17 01:21 - 2015-08-24 08:39 - 00000000 ____D C:\Program Files (x86)\Evernote 2015-10-17 01:21 - 2015-08-24 08:38 - 00000000 ____D C:\Program Files (x86)\Bonjour 2015-10-17 01:21 - 2015-08-24 08:37 - 00000000 ____D C:\Program Files (x86)\ATI Technologies 2015-10-17 01:20 - 2015-08-24 08:46 - 00000000 ____D C:\Program Files\CyberLink 2015-10-17 01:20 - 2015-08-24 08:40 - 00000000 ____D C:\Program Files\mcafee.com 2015-10-17 01:20 - 2015-08-24 08:39 - 00000000 ___RD C:\Program Files\Online Services 2015-10-17 01:20 - 2015-08-24 08:37 - 00000000 ____D C:\Program Files\HP 2015-10-17 01:20 - 2015-08-24 08:32 - 00000000 ____D C:\Program Files\Hewlett-Packard 2015-10-17 01:18 - 2015-08-24 08:38 - 00000000 ____D C:\Program Files\Bonjour 2015-10-17 01:18 - 2015-08-09 12:58 - 00000000 _RSHD C:\hp 2015-10-17 01:18 - 2015-07-16 15:01 - 00000000 ____D C:\inetpub 2015-10-16 18:04 - 2015-07-16 14:59 - 00000000 __SHD C:\Recovery ==================== Bamital & volsnap ================= (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) C:\windows\system32\winlogon.exe => Le fichier est signé numériquement C:\windows\system32\wininit.exe => Le fichier est signé numériquement C:\windows\explorer.exe => Le fichier est signé numériquement C:\windows\SysWOW64\explorer.exe => Le fichier est signé numériquement C:\windows\system32\svchost.exe => Le fichier est signé numériquement C:\windows\SysWOW64\svchost.exe => Le fichier est signé numériquement C:\windows\system32\services.exe => Le fichier est signé numériquement C:\windows\system32\User32.dll => Le fichier est signé numériquement C:\windows\SysWOW64\User32.dll => Le fichier est signé numériquement C:\windows\system32\userinit.exe => Le fichier est signé numériquement C:\windows\SysWOW64\userinit.exe => Le fichier est signé numériquement C:\windows\system32\rpcss.dll => Le fichier est signé numériquement C:\windows\system32\dnsapi.dll => Le fichier est signé numériquement C:\windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement C:\windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement LastRegBack: 2015-10-17 01:05 ==================== Fin de FRST.txt ============================