Format du document : text/plain
Prévisualisation
Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x86) Version: 03-10-2016
Exécuté par thierry (administrateur) sur THIERRY (04-10-2016 16:24:34)
Exécuté depuis C:\Users\thierry\Downloads
Profils chargés: thierry (Profils disponibles: thierry)
Platform: Microsoft Windows 10 Professionnel Version 1511 (X86) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: Edge)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processus (Avec liste blanche) =================
(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)
(AMD) C:\Windows\System32\atieclxx.exe
(SurfRight B.V.) C:\Program Files\HitmanPro\hmpsched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Antivirus\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Antivirus\avguard.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
() C:\Windows\System32\NMSAccessU.exe
(Malwarebytes) C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
(Malwarebytes) C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
(Steganos Software GmbH) C:\Program Files\Steganos Online Shield\OnlineShieldService.exe
(TomTom) C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.31.5\GoogleCrashHandler.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Antivirus\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\Antivirus\avgnt.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXE
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x86__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.23941.0_x86__8wekyb3d8bbwe\Video.UI.exe
() C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1608.2213.0_x86__8wekyb3d8bbwe\Calculator.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Farbar) C:\Users\thierry\Downloads\FRST(1).exe
==================== Registre (Avec liste blanche) ====================
(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe [7545088 2015-06-24] (Realtek Semiconductor)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.)
HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [2311112 2015-07-23] (Logitech, Inc.)
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\Antivirus\avgnt.exe [830064 2016-09-15] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [SSBkgdUpdate] => C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [210472 2006-10-25] (Nuance Communications, Inc.)
HKLM\...\Run: [PaperPort PTD] => C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe [30248 2007-05-08] (Nuance Communications, Inc.)
HKLM\...\Run: [IndexSearch] => C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe [46632 2007-05-08] (Nuance Communications, Inc.)
HKLM\...\Run: [PPort11reminder] => "C:\Program Files\ScanSoft\PaperPort\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\Ereg.ini
HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\x86\CLIStart.exe [748744 2015-11-04] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [Avira SystrayStartTrigger] => C:\Program Files\Avira\Launcher\Avira.SystrayStartTrigger.exe [60136 2016-08-19] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [164152 2016-09-09] (Apple Inc.)
HKLM\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2015-07-02] (Logitech, Inc.)
HKU\S-1-5-21-2807656418-178127624-1379146843-1001\...\Run: [TomTomHOME.exe] => C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe [248176 2015-07-13] (TomTom)
HKU\S-1-5-21-2807656418-178127624-1379146843-1001\...\Run: [CCleaner Monitoring] => D:\Program Files\CCleaner\CCleaner.exe [6453528 2015-07-17] (Piriform Ltd)
HKU\S-1-5-21-2807656418-178127624-1379146843-1001\...\Run: [iCloudServices] => C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2016-07-08] (Apple Inc.)
HKU\S-1-5-21-2807656418-178127624-1379146843-1001\...\Run: [ApplePhotoStreams] => C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [67896 2016-07-08] (Apple Inc.)
HKU\S-1-5-21-2807656418-178127624-1379146843-1001\...\Run: [iCloudDrive] => C:\Program Files\Common Files\Apple\Internet Services\iCloudDrive.exe [110392 2016-07-08] (Apple Inc.)
HKU\S-1-5-21-2807656418-178127624-1379146843-1001\...\Run: [LinkMagic for magicolor 2590MF] => [X]
HKU\S-1-5-21-2807656418-178127624-1379146843-1001\...\Run: [ISUSPM] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [213936 2006-03-20] (Macrovision Corporation)
HKU\S-1-5-21-2807656418-178127624-1379146843-1001\...\Run: [ApowersoftScreenRecorder] => C:\Program Files\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe [3330712 2016-03-18] (Apowersoft)
HKU\S-1-5-21-2807656418-178127624-1379146843-1001\...\Run: [nppApplication] => "C:\Users\thierry\AppData\Roaming\NotepadPlusPlusApp\nppApplication.exe"
HKU\S-1-5-21-2807656418-178127624-1379146843-1001\...\Run: [001d4454] => C:\Users\thierry\AppData\Local\Temp\world-super-ext.exe <===== ATTENTION
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\STK02N 2.3 PNP Monitor.lnk [2016-05-23]
ShortcutTarget: STK02N 2.3 PNP Monitor.lnk -> C:\Windows\STK02N\STK02NM.exe (Syntek Ltd.)
GroupPolicy: Restriction - Chrome <======= ATTENTION
==================== Internet (Avec liste blanche) ====================
(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{0c10d952-1efd-4693-bf7e-a70ba60883d6}: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{a948deeb-72e2-4be2-ae5a-d991f4844ac6}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKU\S-1-5-21-2807656418-178127624-1379146843-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.fr/
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2016-05-17] (Google Inc.)
BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2015-07-23] (Logitech, Inc.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2016-05-17] (Google Inc.)
Toolbar: HKU\S-1-5-21-2807656418-178127624-1379146843-1001 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2016-05-17] (Google Inc.)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-02] (Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-02] (Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-02] (Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2016-10-02] (Microsoft Corporation)
FireFox:
========
FF DefaultProfile: es9re0ow.default
FF ProfilePath: C:\Users\thierry\AppData\Roaming\TomTom\HOME\Profiles\i521fe5v.default [2016-05-27]
FF Extension: (Map status indicator) - C:\Program Files\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com [2015-09-18] [non signé]
FF ProfilePath: C:\Users\thierry\AppData\Roaming\Mozilla\Firefox\Profiles\es9re0ow.default [2016-10-04]
FF Homepage: Mozilla\Firefox\Profiles\es9re0ow.default -> hxxps://news.sfr.fr/actualites/
FF Extension: (Avira Browser Safety) - C:\Users\thierry\AppData\Roaming\Mozilla\Firefox\Profiles\es9re0ow.default\Extensions\abs@avira.com [2016-10-03]
FF Extension: (Browser Exels) - C:\Users\thierry\AppData\Roaming\Mozilla\Firefox\Profiles\es9re0ow.default\Extensions\browsermodulecorp@browcorporation.org.xpi [2016-10-04]
FF Extension: (Google Translator for Firefox) - C:\Users\thierry\AppData\Roaming\Mozilla\Firefox\Profiles\es9re0ow.default\Extensions\translator@zoli.bod.xpi [2016-04-27]
FF HKLM\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2015-08-11] [non signé]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_23_0_0_162.dll [2016-09-15] ()
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google)
FF Plugin: @google.com/zxwebplugin -> C:\Windows\system32\nptvswebplugin.dll [2014-10-29] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50709.0\npctrl.dll [2016-07-11] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> D:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-10-02] (Microsoft Corporation)
FF Plugin: @tenvis.com/vlc,version=2.1.5 -> C:\Program Files\TENVIS EasySetup\plug-in\LT\LT_Trd_Lib\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-07] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-07] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> d:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-06-30] (Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default [2016-10-04]
CHR Extension: (Google Docs) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-08-07]
CHR Extension: (Google Drive) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-02]
CHR Extension: (YouTube) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-03]
CHR Extension: (Recherche Google) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-02]
CHR Extension: (Google Sheets) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-08-07]
CHR Extension: (Bureau à distance Google Chrome) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2016-07-05]
CHR Extension: (Google Docs hors connexion) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-04-11]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-11]
CHR Extension: (Fast search) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbdpajcdgknpendpmecafmopknefafha [2016-10-04]
CHR Extension: (Gmail) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-08-07]
CHR Extension: (Chrome Media Router) - C:\Users\thierry\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-08-04]
==================== Services (Avec liste blanche) ====================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [284872 2015-11-04] (Advanced Micro Devices, Inc.)
S2 AntiVirMailService; C:\Program Files\Avira\Antivirus\avmailc7.exe [989696 2016-09-15] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files\Avira\Antivirus\sched.exe [470600 2016-09-15] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\Antivirus\avguard.exe [470600 2016-09-15] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files\Avira\Antivirus\avwebg7.exe [1454720 2016-09-15] (Avira Operations GmbH & Co. KG)
R2 Avira.ServiceHost; C:\Program Files\Avira\Launcher\Avira.ServiceHost.exe [324304 2016-08-19] (Avira Operations GmbH & Co. KG)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2129088 2016-09-25] (Microsoft Corporation)
R2 HitmanProScheduler; C:\Program Files\HitmanPro\hmpsched.exe [113632 2016-10-04] (SurfRight B.V.)
R2 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes)
R2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes)
R2 NMSAccess; C:\WINDOWS\system32\NMSAccessU.exe [71096 2009-01-12] ()
R2 Online Shield Starter Service; C:\Program Files\Steganos Online Shield\OnlineShieldService.exe [345136 2015-07-09] (Steganos Software GmbH)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [7032080 2016-05-12] (TeamViewer GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [280376 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23264 2016-09-07] (Microsoft Corporation)
===================== Pilotes (Avec liste blanche) ======================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
R2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\i386\AODDriver2.sys [50400 2014-02-11] (Advanced Micro Devices)
R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [120968 2016-07-28] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [149760 2016-07-28] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [44208 2015-12-15] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\WINDOWS\system32\DRIVERS\avnetflt.sys [66872 2016-06-08] (Avira Operations GmbH & Co. KG)
S3 EsgScanner; C:\WINDOWS\System32\DRIVERS\EsgScanner.sys [19984 2016-10-04] ()
R3 LEqdUsb; C:\WINDOWS\System32\Drivers\LEqdUsb.Sys [52368 2015-06-18] (Logitech, Inc.)
R3 LHidEqd; C:\WINDOWS\System32\Drivers\LHidEqd.Sys [20240 2015-06-18] (Logitech, Inc.)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [24448 2016-03-10] (Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [170200 2016-10-04] (Malwarebytes)
R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [53120 2016-03-10] (Malwarebytes Corporation)
R3 MTsensor; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [5810 2004-08-13] ()
R3 rt640x86; C:\WINDOWS\System32\drivers\rt640x86.sys [494080 2015-10-30] (Realtek )
S3 tap0901; C:\WINDOWS\system32\DRIVERS\tap0901.sys [35288 2013-11-22] (The OpenVPN Project)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [37400 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [246104 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [98648 2015-10-30] (Microsoft Corporation)
S3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [163328 2015-10-30] (Microsoft Corporation)
==================== NetSvcs (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
==================== Un mois - Créés - fichiers et dossiers ========
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2016-10-04 16:24 - 2016-10-04 16:24 - 00018077 _____ C:\Users\thierry\Downloads\FRST.txt
2016-10-04 16:24 - 2016-10-04 16:24 - 00000000 ____D C:\FRST
2016-10-04 16:23 - 2016-10-04 16:24 - 01754624 _____ (Farbar) C:\Users\thierry\Downloads\FRST(1).exe
2016-10-04 16:23 - 2016-10-04 16:23 - 01754624 _____ (Farbar) C:\Users\thierry\Downloads\FRST.exe
2016-10-04 15:56 - 2016-10-04 15:56 - 00448512 _____ (OldTimer Tools) C:\Users\thierry\Downloads\TFC.exe
2016-10-04 15:37 - 2016-10-04 15:38 - 00388608 _____ (Trend Micro Inc.) C:\Users\thierry\Downloads\HijackThis.exe
2016-10-04 15:33 - 2016-10-04 15:35 - 00000000 ____D C:\AdwCleaner
2016-10-04 15:32 - 2016-10-04 15:33 - 03861056 _____ C:\Users\thierry\Downloads\adwcleaner_6.020.exe
2016-10-04 15:32 - 2016-10-04 15:32 - 00000148 _____ C:\Users\thierry\Desktop\Nouveau document texte (2).txt
2016-10-04 15:27 - 2016-10-04 15:27 - 00000405 _____ C:\DelFix.txt
2016-10-04 15:14 - 2016-10-04 15:14 - 00509384 _____ (Mozilla Corporation) C:\Users\thierry\Downloads\firefox.exe
2016-10-04 15:14 - 2016-10-04 15:14 - 00001186 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-10-04 15:14 - 2016-10-04 15:14 - 00001174 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2016-10-04 15:14 - 2016-10-04 15:14 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2016-10-04 15:14 - 2016-10-04 15:14 - 00000000 ____D C:\Program Files\Mozilla Firefox
2016-10-04 15:13 - 2016-10-04 15:14 - 43721008 _____ C:\Users\thierry\Downloads\Firefox-Setup-49-0-1-FR.exe
2016-10-04 15:01 - 2016-10-04 15:01 - 00000290 __RSH C:\Users\thierry\ntuser.pol
2016-10-04 14:54 - 2016-10-04 14:54 - 00001572 __RSH C:\ProgramData\ntuser.pol
2016-10-04 14:53 - 2016-10-04 14:53 - 00001046 _____ C:\Users\thierry\Desktop\Play Travian.lnk
2016-10-04 14:53 - 2016-10-04 14:53 - 00001044 _____ C:\Users\thierry\Desktop\Play WarThunder.lnk
2016-10-04 14:53 - 2016-10-04 14:53 - 00000000 ____D C:\Users\thierry\ReportSender
2016-10-04 14:53 - 2016-10-04 14:53 - 00000000 ____D C:\Users\thierry\AppData\Local\YTBMusicBox
2016-10-04 14:53 - 2016-10-04 14:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YTB Music Box
2016-10-04 14:53 - 2016-10-04 14:53 - 00000000 ____D C:\Program Files\YTBMusicBox
2016-10-04 14:52 - 2016-10-04 14:52 - 00000000 ____D C:\Users\thierry\Downloads\Reimage_Pc_Repair_2016_Crack_License_Key_Full_Do
2016-10-04 14:51 - 2016-10-04 14:51 - 03000244 _____ C:\Users\thierry\Downloads\Reimage_Pc_Repair_2016_Crack_License_Key_Full_Do.zip
2016-10-04 14:44 - 2016-10-04 14:45 - 00604928 _____ (Reimage) C:\Users\thierry\Downloads\ReimageRepair.exe
2016-10-04 14:35 - 2016-10-04 14:35 - 410711850 _____ C:\WINDOWS\MEMORY.DMP
2016-10-04 14:35 - 2016-10-04 14:35 - 00148676 _____ C:\WINDOWS\Minidump\100416-10640-01.dmp
2016-10-04 14:35 - 2016-10-04 14:35 - 00000000 ____D C:\WINDOWS\Minidump
2016-10-04 14:34 - 2016-10-04 15:04 - 00012872 _____ (SurfRight B.V.) C:\WINDOWS\system32\bootdelete.exe
2016-10-04 14:14 - 2016-10-04 14:34 - 00001308 _____ C:\WINDOWS\system32\.crusader
2016-10-04 14:04 - 2016-10-04 14:31 - 00000000 ____D C:\Program Files\HitmanPro
2016-10-04 14:04 - 2016-10-04 14:04 - 00002010 _____ C:\Users\Public\Desktop\HitmanPro.lnk
2016-10-04 14:04 - 2016-10-04 14:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro
2016-10-04 14:03 - 2016-10-04 15:07 - 00000000 ____D C:\ProgramData\HitmanPro
2016-10-04 11:26 - 2016-10-04 11:26 - 00019984 _____ C:\WINDOWS\system32\Drivers\EsgScanner.sys
2016-10-04 11:04 - 2016-10-04 11:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016
2016-10-04 10:59 - 2016-10-04 10:59 - 00000000 ____D C:\Users\thierry\AppData\Roaming\BrowserModule
2016-10-04 10:58 - 2016-10-04 11:09 - 00000000 ____D C:\Users\thierry\AppData\Roaming\NotepadPlusPlusApp
2016-10-02 22:37 - 2016-10-02 22:39 - 00000000 ____D C:\Users\thierry\Desktop\Nouveau dossier
2016-10-01 20:36 - 2016-10-01 20:36 - 00000353 _____ C:\Users\thierry\Desktop\recu_paiement_1475344367.txt
2016-09-27 20:10 - 2016-10-04 10:35 - 00001763 _____ C:\Users\thierry\Documents\starburn.txt
2016-09-27 20:10 - 2016-09-27 20:10 - 00000000 ____D C:\ProgramData\Wondershare
2016-09-27 20:06 - 2016-10-04 10:36 - 00000000 ____D C:\Users\thierry\Documents\Wondershare Filmora
2016-09-27 20:06 - 2016-09-27 20:06 - 00000000 ____D C:\Users\thierry\AppData\Local\Wondershare
2016-09-27 20:03 - 2016-09-27 20:06 - 00000000 ____D C:\Users\Public\Documents\Wondershare
2016-09-26 10:12 - 2016-09-26 10:17 - 00000000 ____D C:\Users\thierry\Desktop\xs
2016-09-25 09:49 - 2016-09-25 09:49 - 00085744 _____ (Microsoft Corporation) C:\WINDOWS\system32\vcruntime140.dll
2016-09-25 09:46 - 2016-09-25 09:46 - 00244504 _____ (Microsoft Corporation) C:\WINDOWS\system32\concrt140.dll
2016-09-25 09:45 - 2016-09-25 09:45 - 00443632 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp140.dll
2016-09-25 09:45 - 2016-09-25 09:45 - 00271104 _____ (Microsoft Corporation) C:\WINDOWS\system32\vccorlib140.dll
2016-09-23 11:32 - 2016-09-23 11:32 - 00000000 ____D C:\Users\thierry\Desktop\site
2016-09-23 11:08 - 2016-09-23 11:08 - 00003817 _____ C:\Users\thierry\Desktop\index10.php
2016-09-19 17:11 - 2016-10-02 20:06 - 00001822 _____ C:\Users\Public\Desktop\iTunes.lnk
2016-09-19 17:11 - 2016-10-02 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2016-09-19 17:11 - 2016-09-19 17:11 - 00000000 ____D C:\Program Files\iTunes
2016-09-19 17:11 - 2016-09-19 17:11 - 00000000 ____D C:\Program Files\iPod
2016-09-19 17:08 - 2016-09-19 17:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2016-09-19 08:43 - 2016-09-19 08:43 - 00000000 ____D C:\Users\thierry\AppData\Local\TempOfficeC2RC789DA25-3619-48A0-8B5D-E483AED08547
2016-09-16 03:26 - 2016-09-07 07:39 - 01862000 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-09-16 03:26 - 2016-09-07 07:39 - 01051584 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-09-16 03:26 - 2016-09-07 07:39 - 00601744 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2016-09-16 03:26 - 2016-09-07 07:39 - 00138960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2016-09-16 03:26 - 2016-09-07 07:37 - 00100704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2016-09-16 03:26 - 2016-09-07 07:24 - 00355672 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll
2016-09-16 03:26 - 2016-09-07 07:22 - 01824264 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-09-16 03:26 - 2016-09-07 07:12 - 00727752 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2016-09-16 03:26 - 2016-09-07 07:08 - 00042920 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2016-09-16 03:26 - 2016-09-07 07:07 - 01951848 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll
2016-09-16 03:26 - 2016-09-07 06:31 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2016-09-16 03:26 - 2016-09-07 06:30 - 18676224 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-09-16 03:26 - 2016-09-07 06:29 - 19350016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-09-16 03:26 - 2016-09-07 06:29 - 00439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-09-16 03:26 - 2016-09-07 06:28 - 01762816 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2016-09-16 03:26 - 2016-09-07 06:28 - 00385536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2016-09-16 03:26 - 2016-09-07 06:27 - 00957440 _____ (Microsoft Corporation) C:\WINDOWS\system32\srmclient.dll
2016-09-16 03:26 - 2016-09-07 06:27 - 00481792 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx.dll
2016-09-16 03:26 - 2016-09-07 06:26 - 02050048 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-09-16 03:26 - 2016-09-07 06:26 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-09-16 03:26 - 2016-09-07 06:26 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-09-16 03:26 - 2016-09-07 06:26 - 00501760 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-09-16 03:26 - 2016-09-07 06:25 - 01526272 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-09-16 03:26 - 2016-09-07 06:25 - 00952320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-09-16 03:26 - 2016-09-07 06:24 - 01028608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-09-16 03:26 - 2016-09-07 06:24 - 00785920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2016-09-16 03:26 - 2016-09-07 06:22 - 12134400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-09-16 03:26 - 2016-09-07 06:21 - 00620544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsFilt.dll
2016-09-16 03:26 - 2016-09-07 06:19 - 03663360 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-09-16 03:26 - 2016-09-07 06:19 - 03555840 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2016-09-16 03:26 - 2016-09-07 06:18 - 01735680 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-09-16 03:26 - 2016-09-07 06:17 - 01902592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-09-16 03:26 - 2016-09-07 06:17 - 00854016 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2016-09-16 03:26 - 2016-09-07 06:15 - 05659136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-09-16 03:26 - 2016-09-07 06:15 - 01900544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-09-16 03:26 - 2016-09-07 06:15 - 01626112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-09-16 03:26 - 2016-09-07 06:15 - 01249280 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2016-09-16 03:26 - 2016-09-07 06:14 - 06743040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-09-16 03:26 - 2016-09-07 06:11 - 03065344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2016-09-16 03:26 - 2016-09-07 06:09 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll
2016-09-16 03:26 - 2016-09-07 03:15 - 00445765 _____ C:\WINDOWS\system32\ApnDatabase.xml
2016-09-16 03:25 - 2016-09-07 07:41 - 00229216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-09-16 03:25 - 2016-09-07 07:40 - 01561392 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-09-16 03:25 - 2016-09-07 07:40 - 00876504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-09-16 03:25 - 2016-09-07 07:40 - 00771120 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-09-16 03:25 - 2016-09-07 07:39 - 05794144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-09-16 03:25 - 2016-09-07 07:39 - 00927080 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-09-16 03:25 - 2016-09-07 07:39 - 00845568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2016-09-16 03:25 - 2016-09-07 07:39 - 00628440 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2016-09-16 03:25 - 2016-09-07 07:39 - 00545432 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-09-16 03:25 - 2016-09-07 07:39 - 00354144 _____ (Microsoft Corporation) C:\WINDOWS\system32\halmacpi.dll
2016-09-16 03:25 - 2016-09-07 07:39 - 00354144 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2016-09-16 03:25 - 2016-09-07 07:37 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2016-09-16 03:25 - 2016-09-07 07:35 - 01174368 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-09-16 03:25 - 2016-09-07 07:35 - 00433504 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2016-09-16 03:25 - 2016-09-07 07:33 - 02885680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2016-09-16 03:25 - 2016-09-07 07:33 - 02026736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2016-09-16 03:25 - 2016-09-07 07:33 - 00986976 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-09-16 03:25 - 2016-09-07 07:33 - 00023776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-09-16 03:25 - 2016-09-07 07:25 - 00310112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-09-16 03:25 - 2016-09-07 07:24 - 02180128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-09-16 03:25 - 2016-09-07 07:24 - 01349632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2016-09-16 03:25 - 2016-09-07 07:24 - 01334680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2016-09-16 03:25 - 2016-09-07 07:24 - 01118200 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-09-16 03:25 - 2016-09-07 07:24 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-09-16 03:25 - 2016-09-07 07:24 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-09-16 03:25 - 2016-09-07 07:24 - 00709176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-09-16 03:25 - 2016-09-07 07:24 - 00511312 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2016-09-16 03:25 - 2016-09-07 07:24 - 00501600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-09-16 03:25 - 2016-09-07 07:24 - 00496360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmdev.dll
2016-09-16 03:25 - 2016-09-07 07:24 - 00451928 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-09-16 03:25 - 2016-09-07 07:23 - 00104800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys
2016-09-16 03:25 - 2016-09-07 07:22 - 02937384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-09-16 03:25 - 2016-09-07 07:22 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-09-16 03:25 - 2016-09-07 07:22 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-09-16 03:25 - 2016-09-07 07:21 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-09-16 03:25 - 2016-09-07 07:21 - 05240952 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-09-16 03:25 - 2016-09-07 07:21 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-09-16 03:25 - 2016-09-07 07:21 - 01300016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2016-09-16 03:25 - 2016-09-07 07:21 - 00613112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-09-16 03:25 - 2016-09-07 07:21 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-09-16 03:25 - 2016-09-07 07:20 - 05598832 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2016-09-16 03:25 - 2016-09-07 07:20 - 01355336 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2016-09-16 03:25 - 2016-09-07 07:20 - 01337680 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2016-09-16 03:25 - 2016-09-07 07:20 - 00836752 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2016-09-16 03:25 - 2016-09-07 07:20 - 00633192 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2016-09-16 03:25 - 2016-09-07 07:20 - 00569744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2016-09-16 03:25 - 2016-09-07 07:20 - 00036136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrameHost.exe
2016-09-16 03:25 - 2016-09-07 07:19 - 00995296 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2016-09-16 03:25 - 2016-09-07 07:19 - 00549728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2016-09-16 03:25 - 2016-09-07 07:19 - 00510872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2016-09-16 03:25 - 2016-09-07 07:19 - 00505136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-09-16 03:25 - 2016-09-07 07:19 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2016-09-16 03:25 - 2016-09-07 07:19 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-09-16 03:25 - 2016-09-07 07:13 - 02186856 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-09-16 03:25 - 2016-09-07 07:13 - 01865584 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2016-09-16 03:25 - 2016-09-07 07:12 - 02195632 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2016-09-16 03:25 - 2016-09-07 07:12 - 01712992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-09-16 03:25 - 2016-09-07 07:12 - 01522152 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-09-16 03:25 - 2016-09-07 07:12 - 01174008 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-09-16 03:25 - 2016-09-07 07:11 - 00381784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-09-16 03:25 - 2016-09-07 07:11 - 00180064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2016-09-16 03:25 - 2016-09-07 07:10 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\FileHistory.exe
2016-09-16 03:25 - 2016-09-07 07:08 - 28083144 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsRaw.dll
2016-09-16 03:25 - 2016-09-07 07:08 - 01861984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2016-09-16 03:25 - 2016-09-07 07:07 - 00403920 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMRServer.dll
2016-09-16 03:25 - 2016-09-07 07:07 - 00253080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll
2016-09-16 03:25 - 2016-09-07 06:47 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-09-16 03:25 - 2016-09-07 06:47 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2016-09-16 03:25 - 2016-09-07 06:46 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\olepro32.dll
2016-09-16 03:25 - 2016-09-07 06:43 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcl.dll
2016-09-16 03:25 - 2016-09-07 06:42 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2016-09-16 03:25 - 2016-09-07 06:42 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-09-16 03:25 - 2016-09-07 06:41 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-09-16 03:25 - 2016-09-07 06:41 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2016-09-16 03:25 - 2016-09-07 06:40 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-09-16 03:25 - 2016-09-07 06:40 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2016-09-16 03:25 - 2016-09-07 06:39 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-09-16 03:25 - 2016-09-07 06:39 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecureTimeAggregator.dll
2016-09-16 03:25 - 2016-09-07 06:39 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll
2016-09-16 03:25 - 2016-09-07 06:39 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-09-16 03:25 - 2016-09-07 06:38 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2016-09-16 03:25 - 2016-09-07 06:38 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-09-16 03:25 - 2016-09-07 06:38 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmprovhost.exe
2016-09-16 03:25 - 2016-09-07 06:38 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MTConfig.sys
2016-09-16 03:25 - 2016-09-07 06:37 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAuto.dll
2016-09-16 03:25 - 2016-09-07 06:37 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-09-16 03:25 - 2016-09-07 06:37 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\fodhelper.exe
2016-09-16 03:25 - 2016-09-07 06:37 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceassociation.dll
2016-09-16 03:25 - 2016-09-07 06:37 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAgent.dll
2016-09-16 03:25 - 2016-09-07 06:36 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
2016-09-16 03:25 - 2016-09-07 06:36 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsetup.dll
2016-09-16 03:25 - 2016-09-07 06:36 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MediaFoundation.DefaultPerceptionProvider.dll
2016-09-16 03:25 - 2016-09-07 06:36 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-09-16 03:25 - 2016-09-07 06:36 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-09-16 03:25 - 2016-09-07 06:36 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwcfg.dll
2016-09-16 03:25 - 2016-09-07 06:36 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2016-09-16 03:25 - 2016-09-07 06:35 - 09324032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmploc.DLL
2016-09-16 03:25 - 2016-09-07 06:35 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbemcomn.dll
2016-09-16 03:25 - 2016-09-07 06:35 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp
2016-09-16 03:25 - 2016-09-07 06:35 - 00205312 _____ (Microsoft Corporation) C:\WINDOWS\system32\oemlicense.dll
2016-09-16 03:25 - 2016-09-07 06:35 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbceip.dll
2016-09-16 03:25 - 2016-09-07 06:35 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcshext.dll
2016-09-16 03:25 - 2016-09-07 06:35 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\vsstrace.dll
2016-09-16 03:25 - 2016-09-07 06:35 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CheckNetIsolation.exe
2016-09-16 03:25 - 2016-09-07 06:34 - 00300032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcbase.dll
2016-09-16 03:25 - 2016-09-07 06:34 - 00267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2016-09-16 03:25 - 2016-09-07 06:34 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-09-16 03:25 - 2016-09-07 06:34 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDist.dll
2016-09-16 03:25 - 2016-09-07 06:34 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\cic.dll
2016-09-16 03:25 - 2016-09-07 06:34 - 00125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdrsvc.dll
2016-09-16 03:25 - 2016-09-07 06:34 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdshext.dll
2016-09-16 03:25 - 2016-09-07 06:34 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll
2016-09-16 03:25 - 2016-09-07 06:33 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-09-16 03:25 - 2016-09-07 06:33 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-09-16 03:25 - 2016-09-07 06:33 - 00290304 _____ (Microsoft Corporation) C:\WINDOWS\system32\WmpDui.dll
2016-09-16 03:25 - 2016-09-07 06:33 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2016-09-16 03:25 - 2016-09-07 06:33 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\prnntfy.dll
2016-09-16 03:25 - 2016-09-07 06:33 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-09-16 03:25 - 2016-09-07 06:33 - 00187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountCloudAP.dll
2016-09-16 03:25 - 2016-09-07 06:33 - 00164352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2016-09-16 03:25 - 2016-09-07 06:33 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Geolocation.dll
2016-09-16 03:25 - 2016-09-07 06:33 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2016-09-16 03:25 - 2016-09-07 06:32 - 06529024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2016-09-16 03:25 - 2016-09-07 06:32 - 00581632 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2016-09-16 03:25 - 2016-09-07 06:32 - 00465408 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-09-16 03:25 - 2016-09-07 06:32 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-09-16 03:25 - 2016-09-07 06:32 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.LowLevel.dll
2016-09-16 03:25 - 2016-09-07 06:32 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\azroleui.dll
2016-09-16 03:25 - 2016-09-07 06:32 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3ui.dll
2016-09-16 03:25 - 2016-09-07 06:32 - 00260096 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2016-09-16 03:25 - 2016-09-07 06:32 - 00213504 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll
2016-09-16 03:25 - 2016-09-07 06:32 - 00173056 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll
2016-09-16 03:25 - 2016-09-07 06:31 - 09920512 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-09-16 03:25 - 2016-09-07 06:31 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\system32\certmgr.dll
2016-09-16 03:25 - 2016-09-07 06:31 - 01496064 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2016-09-16 03:25 - 2016-09-07 06:31 - 00753664 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
2016-09-16 03:25 - 2016-09-07 06:31 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll
2016-09-16 03:25 - 2016-09-07 06:31 - 00541184 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2016-09-16 03:25 - 2016-09-07 06:31 - 00453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdmTmpl.dll
2016-09-16 03:25 - 2016-09-07 06:31 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\authfwcfg.dll
2016-09-16 03:25 - 2016-09-07 06:31 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-09-16 03:25 - 2016-09-07 06:31 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2016-09-16 03:25 - 2016-09-07 06:31 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack_win.dll
2016-09-16 03:25 - 2016-09-07 06:31 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2016-09-16 03:25 - 2016-09-07 06:31 - 00246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2016-09-16 03:25 - 2016-09-07 06:31 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2016-09-16 03:25 - 2016-09-07 06:31 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll
2016-09-16 03:25 - 2016-09-07 06:30 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2016-09-16 03:25 - 2016-09-07 06:30 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2016-09-16 03:25 - 2016-09-07 06:30 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\filemgmt.dll
2016-09-16 03:25 - 2016-09-07 06:30 - 00425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WalletService.dll
2016-09-16 03:25 - 2016-09-07 06:30 - 00395776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
2016-09-16 03:25 - 2016-09-07 06:30 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-09-16 03:25 - 2016-09-07 06:30 - 00309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\IPSECSVC.DLL
2016-09-16 03:25 - 2016-09-07 06:30 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2016-09-16 03:25 - 2016-09-07 06:30 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2016-09-16 03:25 - 2016-09-07 06:29 - 00442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dlnashext.dll
2016-09-16 03:25 - 2016-09-07 06:29 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2016-09-16 03:25 - 2016-09-07 06:29 - 00283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2016-09-16 03:25 - 2016-09-07 06:29 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-09-16 03:25 - 2016-09-07 06:29 - 00242688 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2016-09-16 03:25 - 2016-09-07 06:29 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsExt.dll
2016-09-16 03:25 - 2016-09-07 06:29 - 00230912 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-09-16 03:25 - 2016-09-07 06:28 - 04143104 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMM.dll
2016-09-16 03:25 - 2016-09-07 06:28 - 01226752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll
2016-09-16 03:25 - 2016-09-07 06:28 - 00879616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2016-09-16 03:25 - 2016-09-07 06:28 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll
2016-09-16 03:25 - 2016-09-07 06:28 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-09-16 03:25 - 2016-09-07 06:28 - 00674816 _____ (Microsoft Corporation) C:\WINDOWS\system32\MiracastReceiver.dll
2016-09-16 03:25 - 2016-09-07 06:28 - 00654336 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcsecproc_ssp.dll
2016-09-16 03:25 - 2016-09-07 06:28 - 00638976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmIndexer.dll
2016-09-16 03:25 - 2016-09-07 06:28 - 00611840 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-09-16 03:25 - 2016-09-07 06:28 - 00604160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2016-09-16 03:25 - 2016-09-07 06:28 - 00525312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
2016-09-16 03:25 - 2016-09-07 06:28 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll
2016-09-16 03:25 - 2016-09-07 06:28 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-09-16 03:25 - 2016-09-07 06:28 - 00413696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WLanConn.dll
2016-09-16 03:25 - 2016-09-07 06:28 - 00413184 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2016-09-16 03:25 - 2016-09-07 06:28 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2016-09-16 03:25 - 2016-09-07 06:28 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2016-09-16 03:25 - 2016-09-07 06:28 - 00355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\das.dll
2016-09-16 03:25 - 2016-09-07 06:28 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2016-09-16 03:25 - 2016-09-07 06:28 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
2016-09-16 03:25 - 2016-09-07 06:28 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-09-16 03:25 - 2016-09-07 06:28 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysdm.cpl
2016-09-16 03:25 - 2016-09-07 06:28 - 00284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2016-09-16 03:25 - 2016-09-07 06:28 - 00282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2016-09-16 03:25 - 2016-09-07 06:28 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2016-09-16 03:25 - 2016-09-07 06:27 - 01746944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssapi.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 00963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 00824832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 00792576 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 00765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 00708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 00651776 _____ (Microsoft Corporation) C:\WINDOWS\system32\comuid.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 00525824 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmsdk.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 00502272 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsvc.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 00153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSSync.dll
2016-09-16 03:25 - 2016-09-07 06:27 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2016-09-16 03:25 - 2016-09-07 06:26 - 01915392 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAJApi.dll
2016-09-16 03:25 - 2016-09-07 06:26 - 01588224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2016-09-16 03:25 - 2016-09-07 06:26 - 01537536 _____ (Microsoft Corporation) C:\WINDOWS\system32\pla.dll
2016-09-16 03:25 - 2016-09-07 06:26 - 01508352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmsipc.dll
2016-09-16 03:25 - 2016-09-07 06:26 - 01223168 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2016-09-16 03:25 - 2016-09-07 06:26 - 01117184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-09-16 03:25 - 2016-09-07 06:26 - 01035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrame.dll
2016-09-16 03:25 - 2016-09-07 06:26 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-09-16 03:25 - 2016-09-07 06:26 - 00826368 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-09-16 03:25 - 2016-09-07 06:26 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2016-09-16 03:25 - 2016-09-07 06:26 - 00740352 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-09-16 03:25 - 2016-09-07 06:26 - 00738816 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2016-09-16 03:25 - 2016-09-07 06:26 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2016-09-16 03:25 - 2016-09-07 06:26 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-09-16 03:25 - 2016-09-07 06:26 - 00706048 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2016-09-16 03:25 - 2016-09-07 06:26 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-09-16 03:25 - 2016-09-07 06:26 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2016-09-16 03:25 - 2016-09-07 06:26 - 00645632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2016-09-16 03:25 - 2016-09-07 06:26 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-09-16 03:25 - 2016-09-07 06:26 - 00482816 _____ (Microsoft Corporation) C:\WINDOWS\system32\duser.dll
2016-09-16 03:25 - 2016-09-07 06:26 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-09-16 03:25 - 2016-09-07 06:26 - 00233984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-09-16 03:25 - 2016-09-07 06:25 - 06296064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-09-16 03:25 - 2016-09-07 06:25 - 04404736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2016-09-16 03:25 - 2016-09-07 06:25 - 02578432 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2016-09-16 03:25 - 2016-09-07 06:25 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-09-16 03:25 - 2016-09-07 06:25 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-09-16 03:25 - 2016-09-07 06:25 - 01401856 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2016-09-16 03:25 - 2016-09-07 06:25 - 01388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2016-09-16 03:25 - 2016-09-07 06:25 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2016-09-16 03:25 - 2016-09-07 06:25 - 01228800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2016-09-16 03:25 - 2016-09-07 06:25 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-09-16 03:25 - 2016-09-07 06:25 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-09-16 03:25 - 2016-09-07 06:25 - 01043456 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2016-09-16 03:25 - 2016-09-07 06:25 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2016-09-16 03:25 - 2016-09-07 06:25 - 00759808 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2016-09-16 03:25 - 2016-09-07 06:25 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2016-09-16 03:25 - 2016-09-07 06:25 - 00509952 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-09-16 03:25 - 2016-09-07 06:25 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-09-16 03:25 - 2016-09-07 06:25 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\licensingdiag.exe
2016-09-16 03:25 - 2016-09-07 06:24 - 03695104 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2016-09-16 03:25 - 2016-09-07 06:24 - 01276928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2016-09-16 03:25 - 2016-09-07 06:24 - 01070592 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagperf.dll
2016-09-16 03:25 - 2016-09-07 06:24 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2016-09-16 03:25 - 2016-09-07 06:24 - 00783872 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-09-16 03:25 - 2016-09-07 06:24 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-09-16 03:25 - 2016-09-07 06:24 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-09-16 03:25 - 2016-09-07 06:24 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2016-09-16 03:25 - 2016-09-07 06:24 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2016-09-16 03:25 - 2016-09-07 06:23 - 01562112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmc.exe
2016-09-16 03:25 - 2016-09-07 06:23 - 01364480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2016-09-16 03:25 - 2016-09-07 06:23 - 01309696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdc.dll
2016-09-16 03:25 - 2016-09-07 06:23 - 00980480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winipcsecproc.dll
2016-09-16 03:25 - 2016-09-07 06:22 - 12585472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-09-16 03:25 - 2016-09-07 06:22 - 02106368 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2016-09-16 03:25 - 2016-09-07 06:22 - 01987072 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2016-09-16 03:25 - 2016-09-07 06:22 - 01552896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-09-16 03:25 - 2016-09-07 06:22 - 00778240 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-09-16 03:25 - 2016-09-07 06:22 - 00694272 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2016-09-16 03:25 - 2016-09-07 06:22 - 00628224 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe
2016-09-16 03:25 - 2016-09-07 06:21 - 02527232 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2016-09-16 03:25 - 2016-09-07 06:21 - 01183744 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2016-09-16 03:25 - 2016-09-07 06:21 - 01063936 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpedit.dll
2016-09-16 03:25 - 2016-09-07 06:21 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-09-16 03:25 - 2016-09-07 06:20 - 03196928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-09-16 03:25 - 2016-09-07 06:20 - 01044992 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll
2016-09-16 03:25 - 2016-09-07 06:20 - 00900096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe
2016-09-16 03:25 - 2016-09-07 06:20 - 00742400 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-09-16 03:25 - 2016-09-07 06:20 - 00683008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-09-16 03:25 - 2016-09-07 06:20 - 00581632 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2016-09-16 03:25 - 2016-09-07 06:20 - 00401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\StikyNot.exe
2016-09-16 03:25 - 2016-09-07 06:19 - 06471168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2016-09-16 03:25 - 2016-09-07 06:19 - 05325824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-09-16 03:25 - 2016-09-07 06:19 - 04078592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2016-09-16 03:25 - 2016-09-07 06:19 - 02798080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-09-16 03:25 - 2016-09-07 06:19 - 02102272 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2016-09-16 03:25 - 2016-09-07 06:19 - 01801216 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-09-16 03:25 - 2016-09-07 06:19 - 01072128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-09-16 03:25 - 2016-09-07 06:19 - 00515584 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2016-09-16 03:25 - 2016-09-07 06:19 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-09-16 03:25 - 2016-09-07 06:19 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\ImplatSetup.dll
2016-09-16 03:25 - 2016-09-07 06:18 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-09-16 03:25 - 2016-09-07 06:18 - 02973696 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-09-16 03:25 - 2016-09-07 06:18 - 01635840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
2016-09-16 03:25 - 2016-09-07 06:18 - 01609728 _____ (Microsoft Corporation) C:\WINDOWS\system32\PeerDistSvc.dll
2016-09-16 03:25 - 2016-09-07 06:18 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-09-16 03:25 - 2016-09-07 06:18 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-09-16 03:25 - 2016-09-07 06:17 - 03459584 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2016-09-16 03:25 - 2016-09-07 06:17 - 02880512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-09-16 03:25 - 2016-09-07 06:17 - 02679808 _____ (Microsoft Corporation) C:\WINDOWS\system32\netshell.dll
2016-09-16 03:25 - 2016-09-07 06:17 - 02062336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-09-16 03:25 - 2016-09-07 06:17 - 01931776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2016-09-16 03:25 - 2016-09-07 06:17 - 01502208 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-09-16 03:25 - 2016-09-07 06:17 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-09-16 03:25 - 2016-09-07 06:16 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-09-16 03:25 - 2016-09-07 06:16 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-09-16 03:25 - 2016-09-07 06:16 - 03671040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-09-16 03:25 - 2016-09-07 06:16 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2016-09-16 03:25 - 2016-09-07 06:16 - 02361856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcndmgr.dll
2016-09-16 03:25 - 2016-09-07 06:16 - 02217984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2016-09-16 03:25 - 2016-09-07 06:16 - 02155008 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-09-16 03:25 - 2016-09-07 06:16 - 01984000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2016-09-16 03:25 - 2016-09-07 06:16 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2016-09-16 03:25 - 2016-09-07 06:16 - 01194496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Phone.dll
2016-09-16 03:25 - 2016-09-07 06:16 - 01123328 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2016-09-16 03:25 - 2016-09-07 06:16 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-09-16 03:25 - 2016-09-07 06:16 - 00925184 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-09-16 03:25 - 2016-09-07 06:16 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgcpl.dll
2016-09-16 03:25 - 2016-09-07 06:16 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
2016-09-16 03:25 - 2016-09-07 06:16 - 00232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe
2016-09-16 03:25 - 2016-09-07 06:16 - 00232448 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe
2016-09-16 03:25 - 2016-09-07 06:15 - 02772480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2016-09-16 03:25 - 2016-09-07 06:15 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-09-16 03:25 - 2016-09-07 06:15 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2016-09-16 03:25 - 2016-09-07 06:15 - 01448960 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
2016-09-16 03:25 - 2016-09-07 06:15 - 00835072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-09-16 03:25 - 2016-09-07 06:15 - 00812544 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-09-16 03:25 - 2016-09-07 06:15 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2016-09-16 03:25 - 2016-09-07 06:15 - 00748032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-09-16 03:25 - 2016-09-07 06:15 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguagesCpl.dll
2016-09-16 03:25 - 2016-09-07 06:15 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll
2016-09-16 03:25 - 2016-09-07 06:14 - 03483648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2016-09-16 03:25 - 2016-09-07 06:14 - 02553856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-09-16 03:25 - 2016-09-07 06:14 - 02519552 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll
2016-09-16 03:25 - 2016-09-07 06:14 - 02177024 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2016-09-16 03:25 - 2016-09-07 06:14 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-09-16 03:25 - 2016-09-07 06:14 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-09-16 03:25 - 2016-09-07 06:14 - 01708032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-09-16 03:25 - 2016-09-07 06:14 - 00737792 _____ (Microsoft Corporation) C:\WINDOWS\system32\pmcsnap.dll
2016-09-16 03:25 - 2016-09-07 06:12 - 02632192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2016-09-16 03:25 - 2016-09-07 06:12 - 02180096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2016-09-16 03:25 - 2016-09-07 06:12 - 01075200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-09-16 03:25 - 2016-09-07 06:12 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-09-16 03:25 - 2016-09-07 06:12 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2016-09-16 03:25 - 2016-09-07 06:11 - 01106944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2016-09-16 03:25 - 2016-09-07 06:10 - 00942592 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-09-16 03:25 - 2016-09-07 06:10 - 00712704 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-09-16 03:25 - 2016-09-07 06:10 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\certca.dll
2016-09-16 03:25 - 2016-09-07 06:10 - 00438784 _____ (Microsoft Corporation) C:\WINDOWS\system32\DbgModel.dll
2016-09-16 03:25 - 2016-09-07 06:09 - 00824832 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2016-09-16 03:25 - 2016-09-07 06:09 - 00183296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2016-09-16 03:25 - 2016-09-07 06:09 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\msobjs.dll
2016-09-16 03:25 - 2016-08-03 08:27 - 01303744 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-09-16 03:25 - 2016-08-03 08:27 - 00081088 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-09-16 03:25 - 2016-08-03 08:27 - 00045760 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-09-16 03:25 - 2016-08-03 07:52 - 00083808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2016-09-16 03:25 - 2016-08-03 07:52 - 00034088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2016-09-16 03:25 - 2016-08-03 07:34 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-09-16 03:25 - 2016-08-03 07:33 - 00051128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2016-09-16 03:25 - 2016-08-03 07:32 - 00413024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2016-09-16 03:25 - 2016-08-03 07:32 - 00260448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-09-16 03:25 - 2016-08-03 07:30 - 00255168 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-09-16 03:25 - 2016-08-03 07:28 - 00139616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-09-16 03:25 - 2016-08-03 07:21 - 00483680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-09-16 03:25 - 2016-08-03 07:21 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-09-16 03:25 - 2016-08-03 07:18 - 00346464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2016-09-16 03:25 - 2016-08-03 06:57 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdlrecover.exe
2016-09-16 03:25 - 2016-08-03 06:48 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll
2016-09-16 03:25 - 2016-08-03 06:48 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2016-09-16 03:25 - 2016-08-03 06:47 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-09-16 03:25 - 2016-08-03 06:44 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2016-09-16 03:25 - 2016-08-03 06:44 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2016-09-16 03:25 - 2016-08-03 06:44 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2016-09-16 03:25 - 2016-08-03 06:43 - 00180736 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2016-09-16 03:25 - 2016-08-03 06:43 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthserv.dll
2016-09-16 03:25 - 2016-08-03 06:42 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2016-09-16 03:25 - 2016-08-03 06:41 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-09-16 03:25 - 2016-08-03 06:40 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-09-16 03:25 - 2016-08-03 06:39 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2016-09-16 03:25 - 2016-08-03 06:37 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-09-16 03:25 - 2016-08-03 06:37 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-09-16 03:25 - 2016-08-03 06:35 - 00396288 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-09-16 03:25 - 2016-08-03 06:35 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2016-09-16 03:25 - 2016-08-03 06:35 - 00178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtutil.exe
2016-09-16 03:25 - 2016-08-03 06:33 - 01152512 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-09-16 03:25 - 2016-08-03 06:32 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-09-16 03:25 - 2016-08-03 06:31 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-09-16 03:07 - 2016-09-16 03:07 - 00000000 ____D C:\Users\thierry\AppData\Local\TempOfficeC2R8AA4610A-8B72-4652-9823-11BD751D1331
2016-09-15 07:13 - 2016-09-15 07:13 - 00001171 _____ C:\Users\Public\Desktop\Avira Launcher.lnk
==================== Un mois - Modifiés - fichiers et dossiers ========
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2016-10-04 16:24 - 2015-08-06 13:09 - 00000000 ____D C:\Users\thierry\Documents\Fichiers Outlook
2016-10-04 15:47 - 2015-08-06 16:21 - 00170200 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-10-04 15:40 - 2015-10-30 17:07 - 01153316 _____ C:\WINDOWS\system32\perfh00C.dat
2016-10-04 15:40 - 2015-10-30 17:07 - 00254584 _____ C:\WINDOWS\system32\perfc00C.dat
2016-10-04 15:40 - 2015-08-07 06:48 - 00005430 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-10-04 15:36 - 2015-09-12 09:29 - 00000000 ___RD C:\Users\thierry\iCloudDrive
2016-10-04 15:36 - 2015-08-06 09:22 - 00001076 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-10-04 15:35 - 2015-12-11 13:47 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-10-04 15:35 - 2015-10-30 07:13 - 00786432 ___SH C:\WINDOWS\system32\config\BBI
2016-10-04 15:17 - 2016-08-01 13:37 - 00000000 ____D C:\Users\thierry\Desktop\cz
2016-10-04 15:17 - 2015-10-15 19:15 - 00000000 ____D C:\Users\thierry\Documents\ConvertXToDVD
2016-10-04 15:17 - 2015-08-07 23:08 - 00000000 ____D C:\Users\thierry\Desktop\JEEP
2016-10-04 15:17 - 2015-08-07 05:10 - 00000000 ____D C:\Users\thierry\Desktop\site.fr
2016-10-04 15:01 - 2015-12-11 13:41 - 00000000 ____D C:\Users\thierry
2016-10-04 14:54 - 2013-08-22 10:17 - 00000000 ____D C:\WINDOWS\system32\GroupPolicy
2016-10-04 14:43 - 2015-09-15 18:13 - 00000000 ____D C:\Users\thierry\AppData\Local\CrashDumps
2016-10-04 11:39 - 2016-05-24 11:02 - 00000000 ____D C:\Users\thierry\AppData\Roaming\TeamViewer
2016-10-04 11:39 - 2015-10-30 07:47 - 00000000 ____D C:\WINDOWS\INF
2016-10-04 11:39 - 2015-08-08 00:32 - 00000000 ____D C:\Users\thierry\AppData\Roaming\VSO
2016-10-04 11:14 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\Globalization
2016-10-04 11:04 - 2016-02-10 12:34 - 00000000 ____D C:\Program Files\Microsoft Office
2016-10-04 11:03 - 2015-12-11 13:40 - 00345176 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-10-04 08:29 - 2015-10-30 07:48 - 00000000 ___HD C:\Program Files\WindowsApps
2016-10-04 08:29 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-10-04 07:12 - 2015-08-06 11:15 - 00000622 _____ C:\Users\thierry\Desktop\Météo Cernay (68).website
2016-10-02 15:48 - 2015-10-15 19:13 - 00001041 _____ C:\Users\thierry\AppData\Roaming\vso_ts_preview.xml
2016-10-02 12:30 - 2015-08-07 09:26 - 00000000 ____D C:\Users\thierry\AppData\Roaming\vlc
2016-10-02 05:56 - 2015-10-30 07:48 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-10-02 05:56 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-10-02 05:56 - 2015-08-07 07:16 - 00002450 _____ C:\Users\thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-10-02 05:56 - 2015-08-07 07:14 - 00000000 ___RD C:\Users\thierry\OneDrive
2016-10-02 05:56 - 2015-08-06 15:09 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2016-10-02 03:28 - 2015-10-15 19:39 - 00000000 ____D C:\Users\thierry\AppData\Roaming\dvdcss
2016-09-29 17:20 - 2015-08-06 09:43 - 00000000 ___RD C:\Users\thierry\Desktop\divers
2016-09-29 08:41 - 2015-08-07 05:23 - 00002216 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-09-29 08:41 - 2015-08-07 05:23 - 00002204 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-09-29 03:07 - 2015-08-06 11:10 - 00000531 _____ C:\Users\thierry\Desktop\Annonces.website
2016-09-27 20:06 - 2015-08-06 09:01 - 00000000 ____D C:\Users\thierry\AppData\Local\AMD
2016-09-25 08:37 - 2015-08-07 04:50 - 00000000 ___RD C:\Users\thierry\Desktop\licence-meteo
2016-09-23 12:06 - 2015-08-07 04:44 - 00000000 ____D C:\Users\thierry\AppData\Roaming\FileZilla
2016-09-23 11:31 - 2016-04-16 17:56 - 00060851 _____ C:\Users\thierry\Desktop\ajax-dashboard.php
2016-09-21 09:00 - 2015-08-06 11:11 - 00000613 _____ C:\Users\thierry\Desktop\Météo Cernay.com.website
2016-09-19 17:39 - 2015-09-12 09:30 - 00000000 ____D C:\Users\thierry\AppData\Local\8231AC4B-7BAB-4E6C-91B1-2AB0C37E379D.aplzod
2016-09-19 17:11 - 2015-08-07 04:34 - 00000000 ____D C:\Program Files\Common Files\Apple
2016-09-19 08:59 - 2015-10-30 07:39 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-09-19 08:58 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-09-19 08:53 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-09-19 08:36 - 2015-08-06 11:10 - 00000446 _____ C:\Users\thierry\Desktop\clients.o2switch.fr.website
2016-09-18 20:55 - 2015-10-30 07:13 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-09-17 15:50 - 2016-02-10 12:39 - 00002472 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk
2016-09-17 15:50 - 2015-08-06 08:49 - 00000000 ____D C:\Users\thierry\AppData\Local\Packages
2016-09-16 03:44 - 2015-08-07 07:14 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-09-16 03:43 - 2015-09-11 20:37 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2016-09-16 03:42 - 2015-10-30 07:48 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-09-16 03:42 - 2015-10-30 07:48 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-09-16 03:42 - 2015-10-30 07:48 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-09-16 03:42 - 2015-10-30 07:48 - 00000000 ___RD C:\WINDOWS\DevicesFlow
2016-09-16 03:42 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-09-16 03:42 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\migwiz
2016-09-16 03:42 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-09-16 03:42 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Windows Defender
2016-09-16 03:42 - 2015-10-30 07:15 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2016-09-16 03:32 - 2015-08-06 09:25 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-09-16 03:28 - 2015-08-06 09:25 - 141747376 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-09-16 03:27 - 2015-09-11 20:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-09-16 03:26 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2016-09-16 03:17 - 2015-08-07 09:28 - 00001002 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-09-15 11:31 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-09-15 11:31 - 2015-08-07 09:28 - 00000000 ____D C:\Users\thierry\AppData\Local\Adobe
2016-09-15 07:15 - 2016-03-17 19:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2016-09-15 07:13 - 2015-12-11 13:40 - 00000000 ____D C:\ProgramData\Package Cache
2016-09-07 03:00 - 2015-10-30 07:49 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2016-09-07 03:00 - 2015-10-30 07:49 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
==================== Fichiers à la racine de certains dossiers =======
2015-10-15 19:13 - 2016-01-14 23:45 - 0007887 _____ () C:\Users\thierry\AppData\Roaming\pcouffin.cat
2015-10-15 19:13 - 2016-01-14 23:45 - 0001144 _____ () C:\Users\thierry\AppData\Roaming\pcouffin.inf
2015-10-15 19:13 - 2016-01-14 23:45 - 0000055 _____ () C:\Users\thierry\AppData\Roaming\pcouffin.log
2015-10-15 19:13 - 2016-10-02 15:48 - 0001041 _____ () C:\Users\thierry\AppData\Roaming\vso_ts_preview.xml
2015-12-11 13:41 - 2015-12-11 13:41 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
Certains fichiers dans TEMP:
====================
C:\Users\thierry\AppData\Local\Temp\avgnt.exe
==================== Bamital & volsnap ======================
(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)
C:\WINDOWS\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement
LastRegBack: 2016-02-16 23:46
==================== Fin de FRST.txt ============================