Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:09-08-2015
Ran by Nathan (administrator) on NATHAN (11-08-2015 12:53:01)
Running from C:\Users\Nathan\Desktop
Loaded Profiles: Nathan (Available Profiles: Nathan)
Platform: Windows 10 Home (X64) Language: Français (France)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe
(Intel(R) Corporation) C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(PhraseProfessor) C:\Program Files (x86)\PhraseProfessor_1.10.0.21\Service\ppsvc.exe
(Irrational Number Applications) C:\ProgramData\uWEEdoYLG\HHRKAvXURE.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(Microsoft Corporation) C:\Windows\System32\sihost.exe
(Microsoft Corporation) C:\Windows\System32\taskhostw.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe
(Microsoft Corporation) C:\Users\Nathan\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
() C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\ASUSWSLoader.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
(Microsoft Corporation) C:\Windows\System32\taskhostw.exe
(Microsoft Corporation) C:\Windows\System32\backgroundTaskHost.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.6106.42001.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6106.23501.0_x64__8wekyb3d8bbwe\OHub.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3350760 2015-07-14] (ELAN Microelectronics Corp.)
HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe [1691112 2015-03-12] (Bitdefender)
HKLM-x32\...\Run: [WebStorage] => C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\ASUSWSLoader.exe [63296 2014-08-20] ()
HKLM-x32\...\Run: [bdruninstaller] => "C:\Program Files\Common Files\Bitdefender\SetupInformation\downloader\setuplauncher.exe" /run:"C:\Program Files\Common Files\Bitdefender\SetupInformation\downloader\setupdownloader.exe" /args:"/after (the data entry has 9 more characters).
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-19\...\Run: [OneDriveSetup] => C:\Windows\SysWOW64\OneDriveSetup.exe [7805120 2015-07-10] (Microsoft Corporation)
HKU\S-1-5-20\...\Run: [OneDriveSetup] => C:\Windows\SysWOW64\OneDriveSetup.exe [7805120 2015-07-10] (Microsoft Corporation)
HKU\S-1-5-21-98695561-2770668175-831058641-1001\...\Run: [Bitdefender Wallet Agent] => C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe [790880 2015-01-15] (Bitdefender)
HKU\S-1-5-21-98695561-2770668175-831058641-1001\...\Run: [OneDrive] => C:\Users\Nathan\AppData\Local\Microsoft\OneDrive\OneDrive.exe [402632 2015-08-09] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Nathan\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll [2015-08-09] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Users\Nathan\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll [2015-08-09] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Users\Nathan\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll [2015-08-09] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Nathan\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll [2015-08-09] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Nathan\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll [2015-08-09] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7191} => C:\Program Files (x86)\Common Files\AWS\2.1.11.399\ASUSWSShellExt64.dll [2013-06-26] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D809} => C:\Program Files (x86)\Common Files\AWS\2.1.11.399\ASUSWSShellExt64.dll [2013-06-26] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4E} => C:\Program Files (x86)\Common Files\AWS\2.1.11.399\ASUSWSShellExt64.dll [2013-06-26] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [__SafeBox1] -> {152C96EB-288E-4EDC-B7C6-D21F8250ADF3} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll [2014-07-04] (Bitdefender)
ShellIconOverlayIdentifiers: [__SafeBox2] -> {342DAA0B-D796-460D-8566-901E08A1CCAD} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll [2014-07-04] (Bitdefender)
ShellIconOverlayIdentifiers: [__SafeBox3] -> {57595DAE-1AE1-4D97-A49E-67CBB53B52DF} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll [2014-07-04] (Bitdefender)
ShellIconOverlayIdentifiers: [__SafeBox4] -> {33816773-98AE-4723-ADE0-EBE54C8B5A67} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll [2014-07-04] (Bitdefender)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Nathan\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\FileSyncShell.dll [2015-08-09] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Users\Nathan\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\FileSyncShell.dll [2015-08-09] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Users\Nathan\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\FileSyncShell.dll [2015-08-09] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Nathan\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\FileSyncShell.dll [2015-08-09] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Nathan\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\FileSyncShell.dll [2015-08-09] (Microsoft Corporation)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
HKU\S-1-5-21-98695561-2770668175-831058641-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Bitdefender Wallet -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll [2015-01-28] (Bitdefender)
BHO-x32: Bitdefender Wallet -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll [2015-01-28] (Bitdefender)
Toolbar: HKLM - Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll [2015-01-28] (Bitdefender)
Toolbar: HKLM-x32 - Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll [2015-01-28] (Bitdefender)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{277aa8e1-d511-461a-b5db-c38965e32782}: [DhcpNameServer] 192.168.1.1 192.168.1.1

FireFox:
========
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2013-12-18] ()
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2013-12-18] ()
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-08-07] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-08-07] (Google Inc.)
FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2015\bdtbext
FF Extension: Bitdefender Antispam Toolbar - C:\Program Files\Bitdefender\Bitdefender 2015\bdtbext [2015-08-09]
FF HKLM-x32\...\Firefox\Extensions: [bdwteff@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwteff
FF Extension: Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwteff [2015-08-09]
FF HKLM-x32\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2015\bdtbext

Chrome:
=======
CHR Profile: C:\Users\Nathan\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-08-07]
CHR Extension: (Google Docs) - C:\Users\Nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-08-07]
CHR Extension: (Google Drive) - C:\Users\Nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-08-07]
CHR Extension: (YouTube) - C:\Users\Nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-08-07]
CHR Extension: (Google Search) - C:\Users\Nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-08-07]
CHR Extension: (Bitdefender Wallet) - C:\Users\Nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\fabcmochhfpldjekobfaaggijgohadih [2015-08-11]
CHR Extension: (Google Sheets) - C:\Users\Nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-08-07]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-08-07]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-07]
CHR Extension: (Gmail) - C:\Users\Nathan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-08-07]
CHR HKLM-x32\...\Chrome\Extension: [fabcmochhfpldjekobfaaggijgohadih] - https://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AJRouter; C:\Windows\System32\AJRouter.dll [23040 2015-07-10] (Microsoft Corporation)
R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe [71168 2014-08-20] (ASUS Cloud Corporation) [File not signed]
S3 BdDesktopParental; C:\Program Files\Bitdefender\Bitdefender 2015\bdparentalservice.exe [78144 2014-12-09] (Bitdefender)
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [326144 2015-07-10] (Microsoft Corporation)
S3 CDPSvc; C:\Windows\System32\CDPSvc.dll [134144 2015-07-10] (Microsoft Corporation)
R3 ClipSVC; C:\Windows\System32\ClipSVC.dll [658568 2015-08-08] (Microsoft Corporation)
R2 CoreMessagingRegistrar; C:\Windows\system32\coremessaging.dll [808856 2015-08-08] (Microsoft Corporation)
R2 CoreMessagingRegistrar; C:\Windows\SysWOW64\coremessaging.dll [510976 2015-08-08] (Microsoft Corporation)
S3 DcpSvc; C:\Windows\system32\dcpsvc.dll [196096 2015-07-10] (Microsoft Corporation)
S3 DevQueryBroker; C:\Windows\system32\DevQueryBroker.dll [33280 2015-07-10] (Microsoft Corporation)
S3 diagnosticshub.standardcollector.service; C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [27136 2015-07-10] (Microsoft Corporation)
S3 DmEnrollmentSvc; C:\Windows\system32\Windows.Internal.Management.dll [267776 2015-07-10] (Microsoft Corporation)
S3 DmEnrollmentSvc; C:\Windows\SysWOW64\Windows.Internal.Management.dll [193024 2015-07-10] (Microsoft Corporation)
R2 dmwappushservice; C:\Windows\system32\dmwappushsvc.dll [63488 2015-07-10] (Microsoft Corporation)
S2 DoSvc; C:\Windows\system32\dosvc.dll [1169408 2015-08-08] (Microsoft Corporation)
S3 DsSvc; C:\Windows\System32\DsSvc.dll [143872 2015-07-10] (Microsoft Corporation)
S3 embeddedmode; C:\Windows\System32\embeddedmodesvc.dll [87040 2015-07-10] (Microsoft Corporation)
S3 EntAppSvc; C:\Windows\system32\EnterpriseAppMgmtSvc.dll [275456 2015-07-10] (Microsoft Corporation)
R2 HHRKAvXURE; C:\ProgramData\uWEEdoYLG\HHRKAvXURE.exe [2732024 2015-08-07] (Irrational Number Applications)
S3 icssvc; C:\Windows\System32\tetheringservice.dll [148992 2015-08-08] (Microsoft Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [328624 2015-08-09] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-01] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-01] (Intel(R) Corporation)
S3 lfsvc; C:\Windows\System32\lfsvc.dll [27136 2015-07-10] (Microsoft Corporation)
S3 lfsvc; C:\Windows\SysWOW64\lfsvc.dll [22528 2015-07-10] (Microsoft Corporation)
R3 LicenseManager; C:\Windows\system32\LicenseManagerSvc.dll [21504 2015-07-10] (Microsoft Corporation)
S2 MapsBroker; C:\Windows\System32\moshost.dll [62464 2015-07-10] (Microsoft Corporation)
S3 NetSetupSvc; C:\Windows\System32\NetSetupSvc.dll [186368 2015-07-10] (Microsoft Corporation)
R3 NgcCtnrSvc; C:\Windows\System32\NgcCtnrSvc.dll [268800 2015-07-10] (Microsoft Corporation)
S3 NgcSvc; C:\Windows\system32\ngcsvc.dll [512000 2015-07-10] (Microsoft Corporation)
S2 OneSyncSvc; C:\Windows\System32\APHostService.dll [296960 2015-07-10] (Microsoft Corporation)
R2 OneSyncSvc_Session1; C:\WINDOWS\system32\svchost.exe [39856 2015-07-10] (Microsoft Corporation)
R2 OneSyncSvc_Session1; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 PimIndexMaintenanceSvc; C:\Windows\System32\PimIndexMaintenance.dll [289280 2015-07-10] (Microsoft Corporation)
R3 PimIndexMaintenanceSvc_Session1; C:\WINDOWS\system32\svchost.exe [39856 2015-07-10] (Microsoft Corporation)
R3 PimIndexMaintenanceSvc_Session1; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
R2 ppsvc_1.10.0.21; C:\Program Files (x86)\PhraseProfessor_1.10.0.21\Service\ppsvc.exe [300128 2015-07-28] (PhraseProfessor)
S3 RetailDemo; C:\Windows\system32\RDXService.dll [988672 2015-08-08] (Microsoft Corporation)
S4 SafeBox; C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe [94624 2013-07-08] (Bitdefender)
S3 SensorDataService; C:\Windows\System32\SensorDataService.exe [1031680 2015-08-08] (Microsoft Corporation)
S3 SensorService; C:\Windows\system32\SensorService.dll [229376 2015-08-08] (Microsoft Corporation)
S3 SmsRouter; C:\Windows\system32\SmsRouterSvc.dll [583680 2015-07-10] (Microsoft Corporation)
R3 StateRepository; C:\Windows\system32\windows.staterepository.dll [2674176 2015-07-10] (Microsoft Corporation)
R3 StateRepository; C:\Windows\SysWOW64\windows.staterepository.dll [2049024 2015-07-10] (Microsoft Corporation)
R2 tiledatamodelsvc; C:\Windows\system32\tileobjserver.dll [503808 2015-08-08] (Microsoft Corporation)
S3 UnistoreSvc; C:\Windows\System32\unistore.dll [1203200 2015-08-08] (Microsoft Corporation)
S3 UnistoreSvc; C:\Windows\SysWOW64\unistore.dll [925696 2015-08-08] (Microsoft Corporation)
R3 UnistoreSvc_Session1; C:\WINDOWS\System32\svchost.exe [39856 2015-07-10] (Microsoft Corporation)
R3 UnistoreSvc_Session1; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe [67320 2014-10-27] (Bitdefender)
S3 UserDataSvc; C:\Windows\System32\userdataservice.dll [1420288 2015-08-08] (Microsoft Corporation)
R3 UserDataSvc_Session1; C:\WINDOWS\system32\svchost.exe [39856 2015-07-10] (Microsoft Corporation)
R3 UserDataSvc_Session1; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
R2 UserManager; C:\Windows\System32\usermgr.dll [717312 2015-07-10] (Microsoft Corporation)
R3 UsoSvc; C:\Windows\system32\usocore.dll [343040 2015-08-08] (Microsoft Corporation)
S3 vmicvmsession; C:\Windows\System32\ICSvc.dll [506880 2015-07-10] (Microsoft Corporation)
R2 vsserv; C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe [1547936 2015-03-16] (Bitdefender)
S3 WalletService; C:\Windows\system32\WalletService.dll [504320 2015-07-10] (Microsoft Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
S3 WpnService; C:\Windows\system32\WpnService.dll [49152 2015-07-10] (Microsoft Corporation)
S3 XblAuthManager; C:\Windows\System32\XblAuthManager.dll [918016 2015-07-10] (Microsoft Corporation)
S3 XblGameSave; C:\Windows\System32\XblGameSave.dll [1149440 2015-07-10] (Microsoft Corporation)
S3 XboxNetApiSvc; C:\Windows\system32\XboxNetApiSvc.dll [1019392 2015-07-10] (Microsoft Corporation)
R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2014-02-25] (Atheros) [File not signed]

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\Windows\System32\drivers\athw10x.sys [4325544 2015-06-26] (Qualcomm Atheros Communications, Inc.)
S0 bdelam; C:\Windows\System32\drivers\bdelam.sys [23568 2013-09-08] (Bitdefender)
R1 BdfNdisf; C:\Windows\System32\DriverStore\FileRepository\netlwf.inf_amd64_47566fa3371097e5\bdfndisf6.sys [98768 2014-12-15] (BitDefender LLC)
S3 BDSandBox; C:\WINDOWS\system32\drivers\bdsandbox.sys [82824 2015-01-09] (BitDefender SRL)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [237568 2015-07-10] (Microsoft Corporation)
S3 buttonconverter; C:\Windows\System32\drivers\buttonconverter.sys [32256 2015-07-10] (Microsoft Corporation)
S3 CapImg; C:\Windows\System32\drivers\capimg.sys [116736 2015-07-10] (Microsoft Corporation)
S4 cnghwassist; C:\Windows\System32\DRIVERS\cnghwassist.sys [39264 2015-07-10] (Microsoft Corporation)
R3 CompositeBus; C:\Windows\System32\DriverStore\FileRepository\compositebus.inf_amd64_98334ba6e76853ba\CompositeBus.sys [39936 2015-07-10] (Microsoft Corporation)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3436896 2015-07-10] (QLogic Corporation)
R3 ETDSMBus; C:\Windows\System32\drivers\ETDSMBus.sys [31320 2015-07-14] (ELAN Microelectronic Corp.)
S3 fcvsc; C:\Windows\System32\drivers\fcvsc.sys [31232 2015-07-10] (Microsoft Corporation)
R1 FileCrypt; C:\Windows\System32\drivers\filecrypt.sys [83968 2015-07-10] (Microsoft Corporation)
S3 genericusbfn; C:\Windows\System32\drivers\genericusbfn.sys [20992 2015-07-10] (Microsoft Corporation)
R1 GpuEnergyDrv; C:\Windows\System32\drivers\gpuenergydrv.sys [8192 2015-07-10] (Microsoft Corporation)
R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [160544 2015-02-24] (BitDefender LLC)
S3 hidinterrupt; C:\Windows\System32\drivers\hidinterrupt.sys [50016 2015-07-10] (Microsoft Corporation)
S3 ibbus; C:\Windows\System32\drivers\ibbus.sys [424800 2015-07-10] (Mellanox)
S3 IoQos; C:\Windows\System32\drivers\ioqos.sys [26624 2015-07-10] (Microsoft Corporation)
R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [17280 2012-08-06] ( )
S0 LSI_SAS2i; C:\Windows\System32\drivers\lsi_sas2i.sys [104800 2015-07-10] (LSI Corporation)
S0 LSI_SAS3i; C:\Windows\System32\drivers\lsi_sas3i.sys [99168 2015-07-10] (Avago Technologies)
R0 MBI; C:\Windows\System32\drivers\MBI.sys [29464 2013-10-28] (Intel Corporation)
S0 megasas; C:\Windows\System32\drivers\megasas.sys [59744 2015-07-10] (Avago Technologies)
S3 mlx4_bus; C:\Windows\System32\drivers\mlx4_bus.sys [705376 2015-07-10] (Mellanox)
R2 MMCSS; C:\Windows\system32\drivers\mmcss.sys [48128 2015-07-10] (Microsoft Corporation)
S3 ndfltr; C:\Windows\System32\drivers\ndfltr.sys [76128 2015-07-10] (Mellanox)
S3 netvsc; C:\Windows\System32\drivers\netvsc.sys [94720 2015-07-10] (Microsoft Corporation)
S0 percsas2i; C:\Windows\System32\drivers\percsas2i.sys [58208 2015-07-10] (LSI Corporation)
S0 percsas3i; C:\Windows\System32\drivers\percsas3i.sys [58720 2015-07-10] (Avago Technologies)
R1 ppfd_vw_1_10_0_21; C:\Windows\System32\drivers\ppfd_vw_1_10_0_21.sys [57744 2015-07-28] (PhraseProfessor)
S3 ReFSv1; C:\Windows\System32\Drivers\ReFSv1.sys [934752 2015-08-08] (Microsoft Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [895256 2015-07-07] (Realtek )
R2 storqosflt; C:\Windows\System32\drivers\storqosflt.sys [61952 2015-07-10] (Microsoft Corporation)
S0 storufs; C:\Windows\System32\drivers\storufs.sys [40288 2015-07-10] (Microsoft Corporation)
R3 swenum; C:\Windows\System32\DriverStore\FileRepository\swenum.inf_amd64_2a699e44676b7781\swenum.sys [17760 2015-07-10] (Microsoft Corporation)
R2 trufos; C:\Windows\System32\DRIVERS\trufos.sys [452040 2014-10-15] (BitDefender S.R.L.)
R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2014-01-15] (Intel Corporation)
S3 UcmCx0101; C:\Windows\System32\Drivers\UcmCx.sys [61952 2015-07-10] (Microsoft Corporation)
S3 UcmUcsi; C:\Windows\System32\drivers\UcmUcsi.sys [46080 2015-08-08] (Microsoft Corporation)
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
S3 Ufx01000; C:\Windows\System32\drivers\ufx01000.sys [245088 2015-07-10] (Microsoft Corporation)
S3 UfxChipidea; C:\Windows\System32\drivers\UfxChipidea.sys [94048 2015-07-10] (Microsoft Corporation)
S3 ufxsynopsys; C:\Windows\System32\drivers\ufxsynopsys.sys [127840 2015-07-10] (Microsoft Corporation)
S3 UrsChipidea; C:\Windows\System32\drivers\urschipidea.sys [28512 2015-07-10] (Microsoft Corporation)
S3 UrsCx01000; C:\Windows\System32\drivers\urscx01000.sys [57696 2015-07-10] (Microsoft Corporation)
S3 UrsSynopsys; C:\Windows\System32\drivers\urssynopsys.sys [27488 2015-07-10] (Microsoft Corporation)
S3 vhf; C:\Windows\System32\drivers\vhf.sys [31744 2015-07-10] (Microsoft Corporation)
S3 wdiwifi; C:\Windows\System32\DRIVERS\wdiwifi.sys [685056 2015-07-10] (Microsoft Corporation)
R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
R0 WindowsTrustedRT; C:\Windows\System32\drivers\WindowsTrustedRT.sys [106520 2015-07-10] (Microsoft Corporation)
R0 WindowsTrustedRTProxy; C:\Windows\System32\drivers\WindowsTrustedRTProxy.sys [17944 2015-07-10] (Microsoft Corporation)
S3 WinMad; C:\Windows\System32\drivers\winmad.sys [26976 2015-07-10] (Mellanox)
S3 WinVerbs; C:\Windows\System32\drivers\winverbs.sys [59232 2015-07-10] (Mellanox)
S3 xboxgip; C:\Windows\System32\drivers\xboxgip.sys [222720 2015-07-10] (Microsoft Corporation)
S3 xinputhid; C:\Windows\System32\drivers\xinputhid.sys [25600 2015-07-10] (Microsoft Corporation)
U0 avc3; no ImagePath
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

NETSVC: dosvc -> C:\Windows\system32\dosvc.dll (Microsoft Corporation)
NETSVC: DcpSvc -> C:\Windows\system32\dcpsvc.dll (Microsoft Corporation)
NETSVC: NetSetupSvc -> C:\Windows\System32\NetSetupSvc.dll (Microsoft Corporation)
NETSVC: dmwappushservice -> C:\Windows\system32\dmwappushsvc.dll (Microsoft Corporation)
NETSVC: XblGameSave -> C:\Windows\System32\XblGameSave.dll (Microsoft Corporation)
NETSVC: XboxNetApiSvc -> C:\Windows\system32\XboxNetApiSvc.dll (Microsoft Corporation)
NETSVC: UsoSvc -> C:\Windows\system32\usocore.dll (Microsoft Corporation)
NETSVC: UserManager -> C:\Windows\System32\usermgr.dll (Microsoft Corporation)
NETSVC: DmEnrollmentSvc -> C:\Windows\system32\Windows.Internal.Management.dll (Microsoft Corporation)
NETSVC: XblAuthManager -> C:\Windows\System32\XblAuthManager.dll (Microsoft Corporation)
NETSVC: RetailDemo -> C:\Windows\system32\RDXService.dll (Microsoft Corporation)

==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-08-11 12:55 - 2015-08-11 12:55 - 00016148 _____ C:\WINDOWS\system32\NATHAN_Nathan_HistoryPrediction.bin
2015-08-11 12:53 - 2015-08-11 12:54 - 00028153 _____ C:\Users\Nathan\Desktop\FRST.txt
2015-08-11 12:52 - 2015-08-11 12:52 - 00000000 ___HD C:\OneDriveTemp
2015-08-10 21:48 - 2015-08-10 21:48 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2015-08-10 10:19 - 2015-08-10 10:19 - 00000000 ____D C:\Users\Nathan\AppData\Roaming\WildTangent
2015-08-10 09:46 - 2015-08-11 08:21 - 00000000 ____D C:\AdwCleaner
2015-08-10 09:44 - 2015-08-10 09:46 - 02248704 _____ C:\Users\Nathan\Desktop\AdwCleaner.exe
2015-08-10 09:22 - 2015-08-10 09:22 - 00000000 ____D C:\Users\Nathan\Desktop\FRST-OlderVersion
2015-08-10 09:11 - 2015-08-10 09:11 - 00000000 ____D C:\Users\Nathan\AppData\Local\Software
2015-08-10 09:11 - 2015-08-10 09:11 - 00000000 ____D C:\Program Files (x86)\Software
2015-08-10 09:07 - 2015-08-10 09:07 - 00000000 ____D C:\ProgramData\8a787ee00003848
2015-08-09 21:18 - 2015-08-11 12:53 - 00000000 ____D C:\FRST
2015-08-09 21:16 - 2015-08-10 09:22 - 02171392 _____ (Farbar) C:\Users\Nathan\Desktop\FRST64.exe
2015-08-09 16:29 - 2015-08-09 16:29 - 01306464 _____ (BitDefender) C:\WINDOWS\system32\Drivers\avc3.sys
2015-08-09 16:29 - 2015-08-09 16:29 - 00677104 _____ (BitDefender) C:\WINDOWS\system32\Drivers\avckf.sys
2015-08-09 16:29 - 2015-08-09 16:29 - 00262544 _____ (BitDefender) C:\WINDOWS\system32\Drivers\avchv.sys
2015-08-09 16:29 - 2015-08-09 16:29 - 00079192 _____ (BitDefender) C:\WINDOWS\system32\Drivers\bdvedisk.sys
2015-08-09 16:00 - 2015-08-09 16:00 - 00000290 __RSH C:\ProgramData\ntuser.pol
2015-08-09 15:58 - 2015-08-09 15:58 - 00000385 _____ C:\WINDOWS\system32\user_gensett.xml
2015-08-09 15:51 - 2015-08-09 15:51 - 00681525 _____ C:\ProgramData\1439127667.bdinstall.bin
2015-08-09 15:51 - 2015-08-09 15:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender 2015
2015-08-09 15:51 - 2015-01-09 11:59 - 00082824 _____ (BitDefender SRL) C:\WINDOWS\system32\Drivers\bdsandbox.sys
2015-08-09 15:41 - 2015-02-24 17:52 - 00160544 _____ (BitDefender LLC) C:\WINDOWS\system32\Drivers\gzflt.sys
2015-08-09 15:41 - 2014-10-15 17:14 - 00452040 _____ (BitDefender S.R.L.) C:\WINDOWS\system32\Drivers\trufos.sys
2015-08-09 15:31 - 2015-08-09 15:31 - 00000000 ____D C:\Users\Nathan\AppData\Local\NetworkTiles
2015-08-09 13:02 - 2015-07-05 12:08 - 00300704 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2015-08-09 12:14 - 2015-08-09 12:14 - 00000813 _____ C:\Users\Nathan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mathématique.lnk
2015-08-09 12:14 - 2015-08-09 12:14 - 00000785 _____ C:\Users\Nathan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Histoire.lnk
2015-08-09 12:13 - 2015-08-09 12:13 - 00000799 _____ C:\Users\Nathan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Géographie.lnk
2015-08-09 12:13 - 2015-08-09 12:13 - 00000785 _____ C:\Users\Nathan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Français.lnk
2015-08-09 12:13 - 2015-08-09 12:13 - 00000774 _____ C:\Users\Nathan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Anglais.lnk
2015-08-09 11:53 - 2015-08-09 11:53 - 00000000 ____D C:\Users\Nathan\AppData\Roaming\OpenOffice
2015-08-09 11:28 - 2015-08-09 12:16 - 00001160 _____ C:\Users\Nathan\Desktop\OpenOffice 4.1.1.lnk
2015-08-09 11:28 - 2015-08-09 11:28 - 00000000 ___SD C:\Users\Nathan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.1
2015-08-09 11:27 - 2015-08-09 11:27 - 00000000 ____D C:\Program Files (x86)\OpenOffice 4
2015-08-09 11:07 - 2015-08-09 11:12 - 62924460 _____ C:\Users\Nathan\Downloads\Apache_OpenOffice_4.1.1_Win_x86_install_fr.exe.7j74nnr.partial
2015-08-09 10:54 - 2015-08-09 16:15 - 00000000 ____D C:\Users\Nathan\AppData\Local\MicrosoftEdge
2015-08-09 10:53 - 2015-08-09 10:53 - 22914048 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 17846784 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdfcl32.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 11905432 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10iumd32.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 10574992 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdumdim32.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 08528896 _____ (Intel Corporation) C:\WINDOWS\system32\ig7icd64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 06512128 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\ig7icd32.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 04371888 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv4_0.exe
2015-08-09 10:53 - 2015-08-09 10:53 - 04368304 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv2_0.exe
2015-08-09 10:53 - 2015-08-09 10:53 - 04024384 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiAAC64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 03668784 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdusc32.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 02508288 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiVAD64.exe
2015-08-09 10:53 - 2015-08-09 10:53 - 02035712 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 01994240 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 01793024 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdrcl32.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 01766912 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 01468992 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiSecureSourceFilter64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 01156000 _____ (Intel Corporation) C:\WINDOWS\system32\iglhsip64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 01151840 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhsip32.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00969136 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIEx.exe
2015-08-09 10:53 - 2015-08-09 10:53 - 00865344 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiWinNextAgent64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00659512 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiAudioFilter64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00632832 _____ (Intel Corporation) C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00616512 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMux64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00555432 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyApp.exe
2015-08-09 10:53 - 2015-08-09 10:53 - 00554928 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyAppv2_0.exe
2015-08-09 10:53 - 2015-08-09 10:53 - 00467696 _____ (Intel Corporation) C:\WINDOWS\system32\igdmd64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00443312 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUMS64.exe
2015-08-09 10:53 - 2015-08-09 10:53 - 00409520 _____ (Intel Corporation) C:\WINDOWS\system32\CustomModeApp.exe
2015-08-09 10:53 - 2015-08-09 10:53 - 00409008 _____ (Intel Corporation) C:\WINDOWS\system32\CustomModeAppv2_0.exe
2015-08-09 10:53 - 2015-08-09 10:53 - 00392704 _____ (Intel Corporation) C:\WINDOWS\system32\igfxOSP.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00385536 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00378824 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmd32.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00374272 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00357952 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiSilenceFilter64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00329216 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdbcl32.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00295424 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelOpenCL32.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00264192 _____ C:\WINDOWS\system32\igfxCPL.cpl
2015-08-09 10:53 - 2015-08-09 10:53 - 00232960 _____ C:\WINDOWS\system32\igdde64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00229664 _____ (Intel Corporation) C:\WINDOWS\system32\iglhcp64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00223808 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUtils64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00204208 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe
2015-08-09 10:53 - 2015-08-09 10:53 - 00199096 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00194560 _____ C:\WINDOWS\SysWOW64\igdde32.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00194368 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhcp32.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00193536 _____ (Intel Corporation) C:\WINDOWS\system32\igfx11cmrt64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00191040 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiDDEAgent64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00171008 _____ C:\WINDOWS\system32\igdail64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00169368 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00164272 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe
2015-08-09 10:53 - 2015-08-09 10:53 - 00163840 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfx11cmrt32.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00152576 _____ C:\WINDOWS\SysWOW64\igdail32.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00141888 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMCUMD64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00107584 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiLogServer64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00102912 _____ C:\WINDOWS\system32\IccLibDll_x64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00095232 _____ C:\WINDOWS\system32\igfxCUIServicePS.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00078336 _____ ( ) C:\WINDOWS\system32\igfxDHLibv2_0.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00072704 _____ (Khronos Group) C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00069120 _____ (Khronos Group) C:\WINDOWS\SysWOW64\Intel_OpenCL_ICD32.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00068096 _____ ( ) C:\WINDOWS\system32\igfxDHLib.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00040712 _____ (Intel Corporation) C:\WINDOWS\system32\igfxexps.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00039424 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxexps32.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00019456 _____ ( ) C:\WINDOWS\system32\igfxDILib.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00018944 _____ ( ) C:\WINDOWS\system32\igfxEMLibv2_0.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00018944 _____ ( ) C:\WINDOWS\system32\igfxEMLib.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00018944 _____ ( ) C:\WINDOWS\system32\igfxDILibv2_0.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00013824 _____ ( ) C:\WINDOWS\system32\igfxLHMLibv2_0.dll
2015-08-09 10:53 - 2015-08-09 10:53 - 00013824 _____ ( ) C:\WINDOWS\system32\igfxLHMLib.dll
2015-08-09 10:51 - 2015-08-09 12:22 - 00000000 ____D C:\Users\Nathan\Desktop\Cours
2015-08-09 10:49 - 2015-08-09 10:49 - 00002417 _____ C:\Users\Nathan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-08-09 10:46 - 2015-08-09 10:46 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2015-08-09 10:44 - 2015-08-09 10:44 - 00000000 ____D C:\Users\Nathan\AppData\Local\Publishers
2015-08-09 10:43 - 2015-08-09 11:44 - 00000000 ____D C:\Users\Nathan\AppData\Local\Comms
2015-08-09 10:42 - 2015-08-09 12:35 - 00000451 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2015-08-09 10:42 - 2015-08-09 10:42 - 00000000 ____D C:\Users\Nathan\AppData\Local\TileDataLayer
2015-08-09 10:41 - 2015-08-09 10:41 - 00000020 ___SH C:\Users\Nathan\ntuser.ini
2015-08-08 22:44 - 2015-08-09 10:41 - 00000000 ___DC C:\WINDOWS\Panther
2015-08-08 22:39 - 2015-08-08 22:40 - 00000000 ____D C:\Windows.old
2015-08-08 22:37 - 2015-08-08 22:37 - 02646528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2015-08-08 22:37 - 2015-08-08 22:37 - 02150696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2015-08-08 22:37 - 2015-08-08 22:37 - 01914880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2015-08-08 22:37 - 2015-08-08 22:37 - 01561872 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2015-08-08 22:37 - 2015-08-08 22:37 - 01356368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2015-08-08 22:37 - 2015-08-08 22:37 - 01043968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Editing.dll
2015-08-08 22:37 - 2015-08-08 22:37 - 00896144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2015-08-08 22:37 - 2015-08-08 22:37 - 00877016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2015-08-08 22:37 - 2015-08-08 22:37 - 00713312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2015-08-08 22:37 - 2015-08-08 22:37 - 00569344 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2015-08-08 22:37 - 2015-08-08 22:37 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2015-08-08 22:37 - 2015-08-08 22:37 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2015-08-08 22:37 - 2015-08-08 22:37 - 00420352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe
2015-08-08 22:37 - 2015-08-08 22:37 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2015-08-08 22:37 - 2015-08-08 22:37 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 24591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 22319520 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 21873664 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 20854776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 19333632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 18803712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 16707072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 14241792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 13024256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 12589056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 12502016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 11557888 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 11260928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 09889792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 08020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 07569408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 07523328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 07051264 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 06488312 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 06305792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 06101504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 05118024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 05076480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 04791296 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 04760576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 04611584 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 04532304 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 04398080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 04350464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 04169728 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 04047288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 03780096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 03687936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 03620736 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 03589632 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-08-08 22:36 - 2015-08-08 22:36 - 03579904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 03443200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 03362816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 03248640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 03248128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 02878000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 02741760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 02662400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 02606080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 02558976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 02498808 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 02462136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 02446336 _____ C:\WINDOWS\system32\InputService.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 02416640 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 02415616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 02235904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 02224128 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 02207744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 02178560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 02147080 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 02125312 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 02116448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2015-08-08 22:36 - 2015-08-08 22:36 - 02112512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01983328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2015-08-08 22:36 - 2015-08-08 22:36 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01890304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01867160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01823232 _____ C:\WINDOWS\SysWOW64\InputService.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01822280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01773056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01769056 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01680896 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01643872 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01611264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01601024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01593856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01591856 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01562968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01533496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01521664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01420288 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01418240 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 01417216 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01411072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01396064 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01382912 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-08-08 22:36 - 2015-08-08 22:36 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01365072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01334784 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01294352 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2015-08-08 22:36 - 2015-08-08 22:36 - 01290752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01274880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01212928 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01203200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01203200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01201664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01200400 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01177600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01169408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01168736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2015-08-08 22:36 - 2015-08-08 22:36 - 01161728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01135312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 01123400 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 01112064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01101792 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01085776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01067520 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01061888 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01043872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01031680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 01025840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 01018568 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2015-08-08 22:36 - 2015-08-08 22:36 - 00991584 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00988672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00980832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2015-08-08 22:36 - 2015-08-08 22:36 - 00966424 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00962400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00934752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys
2015-08-08 22:36 - 2015-08-08 22:36 - 00925696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00916800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00902656 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00898560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00869376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00858408 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00850432 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00845664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00832512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00823336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00808856 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00801632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00799232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00783872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00783112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00762896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00750592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00705520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00700256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00695136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00677888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00658568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00654848 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00643616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00632168 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00630160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00607008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00606392 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00601344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-08-08 22:36 - 2015-08-08 22:36 - 00599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00594472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00593920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00589824 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efscore.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00584544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00578048 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Import.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00565088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2015-08-08 22:36 - 2015-08-08 22:36 - 00562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00542720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00539216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00527952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00521568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00521216 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00518144 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00516960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2015-08-08 22:36 - 2015-08-08 22:36 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00507696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00505696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2015-08-08 22:36 - 2015-08-08 22:36 - 00505344 _____ C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00501008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00498016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys
2015-08-08 22:36 - 2015-08-08 22:36 - 00495616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00487424 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00485888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00473088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00445240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppContracts.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00425824 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00416256 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00412672 _____ C:\WINDOWS\system32\diagtrack_win.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00407616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00407040 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00403968 _____ C:\WINDOWS\system32\diagtrack_wininternal.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00393568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2015-08-08 22:36 - 2015-08-08 22:36 - 00384000 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00365056 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00343040 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00335248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00333168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00328704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00325984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2015-08-08 22:36 - 2015-08-08 22:36 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV2.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00310784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00303616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemcpl.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00290312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00289248 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00285632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\systemcpl.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00265480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00263168 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00252768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00243760 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00242264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00242176 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00208736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumsvc.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\OmaDmAgent.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00181088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srumsvc.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys
2015-08-08 22:36 - 2015-08-08 22:36 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sendmail.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00097128 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00082616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcd.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsNativeApi.V2.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\setbcdlocale.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spbcd.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2015-08-08 22:36 - 2015-08-08 22:36 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys
2015-08-08 22:36 - 2015-08-08 22:36 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\unenrollhook.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00061280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2015-08-08 22:36 - 2015-08-08 22:36 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.PAL.Desktop.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmprc.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys
2015-08-08 22:36 - 2015-08-08 22:36 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hmkd.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\VoiceActivationManager.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VoiceActivationManager.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00032768 _____ C:\WINDOWS\system32\LicenseManagerApi.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\calc.exe
2015-08-08 22:36 - 2015-08-08 22:36 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2015-08-08 22:36 - 2015-08-08 22:36 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 _SHDL C:\Users\Public\Documents\Mes vidéos
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 _SHDL C:\Users\Public\Documents\Mes images
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 _SHDL C:\Users\Public\Documents\Ma musique
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 _SHDL C:\Users\Default\Voisinage réseau
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 _SHDL C:\Users\Default\Voisinage d'impression
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 _SHDL C:\Users\Default\Modèles
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 _SHDL C:\Users\Default\Menu Démarrer
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 _SHDL C:\Users\Default\Documents\Mes vidéos
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 _SHDL C:\Users\Default\Documents\Mes images
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 _SHDL C:\Users\Default\Documents\Ma musique
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 _SHDL C:\Users\Default\AppData\Local\Historique
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 _SHDL C:\Users\Default User\Documents\Mes vidéos
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 _SHDL C:\Users\Default User\Documents\Mes images
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 _SHDL C:\Users\Default User\Documents\Ma musique
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Historique
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 _SHDL C:\ProgramData\Modèles
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programmes
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 _SHDL C:\ProgramData\Menu Démarrer
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 _SHDL C:\ProgramData\Bureau
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 _SHDL C:\Program Files\Fichiers communs
2015-08-08 22:27 - 2015-08-08 22:27 - 00000000 __SHD C:\Recovery
2015-08-08 22:22 - 2015-08-08 22:22 - 00023108 _____ C:\WINDOWS\system32\emptyregdb.dat
2015-08-08 22:19 - 2015-08-11 08:31 - 04666070 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-08-08 22:16 - 2015-08-11 08:31 - 00797936 _____ C:\WINDOWS\system32\perfh010.dat
2015-08-08 22:16 - 2015-08-11 08:31 - 00150156 _____ C:\WINDOWS\system32\perfc010.dat
2015-08-08 22:16 - 2015-08-08 22:16 - 00000000 ____D C:\WINDOWS\SysWOW64\it
2015-08-08 22:16 - 2015-08-08 22:16 - 00000000 ____D C:\WINDOWS\system32\it
2015-08-08 22:16 - 2015-08-08 22:15 - 00340806 _____ C:\WINDOWS\system32\perfi010.dat
2015-08-08 22:16 - 2015-08-08 22:15 - 00039784 _____ C:\WINDOWS\system32\perfd010.dat
2015-08-08 22:13 - 2015-07-10 12:59 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2015-08-08 22:05 - 2015-08-08 22:05 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-08-08 22:05 - 2015-08-08 22:05 - 00000000 ____D C:\WINDOWS\SysWOW64\Drivers\en-GB
2015-08-08 22:05 - 2015-08-08 22:05 - 00000000 ____D C:\WINDOWS\system32\Drivers\en-GB
2015-08-08 22:05 - 2015-08-08 22:05 - 00000000 ____D C:\WINDOWS\en-GB
2015-08-08 22:01 - 2015-08-08 22:07 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2015-08-08 22:00 - 2015-08-11 08:20 - 00000000 ____D C:\Users\Nathan
2015-08-08 22:00 - 2015-08-09 10:42 - 00000000 ___RD C:\Users\Nathan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-08 22:00 - 2015-08-08 22:00 - 00000000 _SHDL C:\Users\Nathan\Voisinage réseau
2015-08-08 22:00 - 2015-08-08 22:00 - 00000000 _SHDL C:\Users\Nathan\Voisinage d'impression
2015-08-08 22:00 - 2015-08-08 22:00 - 00000000 _SHDL C:\Users\Nathan\Modèles
2015-08-08 22:00 - 2015-08-08 22:00 - 00000000 _SHDL C:\Users\Nathan\Menu Démarrer
2015-08-08 22:00 - 2015-08-08 22:00 - 00000000 _SHDL C:\Users\Nathan\Documents\Mes vidéos
2015-08-08 22:00 - 2015-08-08 22:00 - 00000000 _SHDL C:\Users\Nathan\Documents\Mes images
2015-08-08 22:00 - 2015-08-08 22:00 - 00000000 _SHDL C:\Users\Nathan\Documents\Ma musique
2015-08-08 22:00 - 2015-08-08 22:00 - 00000000 _SHDL C:\Users\Nathan\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2015-08-08 22:00 - 2015-08-08 22:00 - 00000000 _SHDL C:\Users\Nathan\AppData\Local\Historique
2015-08-08 22:00 - 2015-07-10 13:04 - 00000000 __RSD C:\Users\Nathan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
2015-08-08 22:00 - 2015-07-10 13:04 - 00000000 ___RD C:\Users\Nathan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-08-08 22:00 - 2015-07-10 13:04 - 00000000 ___RD C:\Users\Nathan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-08-08 22:00 - 2015-07-10 13:04 - 00000000 ____D C:\Users\Nathan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-08-08 21:56 - 2015-08-11 08:31 - 00761008 _____ C:\WINDOWS\system32\perfh007.dat
2015-08-08 21:56 - 2015-08-11 08:31 - 00153704 _____ C:\WINDOWS\system32\perfc007.dat
2015-08-08 21:56 - 2015-08-08 21:56 - 00000000 ____D C:\WINDOWS\SysWOW64\de
2015-08-08 21:56 - 2015-08-08 21:56 - 00000000 ____D C:\WINDOWS\system32\de
2015-08-08 21:56 - 2015-08-08 21:55 - 00305634 _____ C:\WINDOWS\system32\perfi007.dat
2015-08-08 21:56 - 2015-08-08 21:55 - 00040390 _____ C:\WINDOWS\system32\perfd007.dat
2015-08-08 21:55 - 2015-08-09 10:53 - 00072704 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2015-08-08 21:55 - 2015-08-09 10:53 - 00069120 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
2015-08-08 21:55 - 2015-08-08 22:02 - 00000000 ____D C:\Program Files\Intel
2015-08-08 21:55 - 2015-08-08 21:55 - 00191904 _____ C:\WINDOWS\system32\Drivers\RTWAVES40.dat
2015-08-08 21:55 - 2015-08-08 21:55 - 00006786 _____ C:\WINDOWS\system32\Drivers\rtwavesEFX.dat
2015-08-08 21:55 - 2015-08-08 21:55 - 00002626 _____ C:\WINDOWS\system32\Drivers\rtwavesMFX.dat
2015-08-08 21:55 - 2015-08-08 21:55 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_ETD_01009.Wdf
2015-08-08 21:55 - 2015-08-08 21:55 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2015-08-08 21:55 - 2015-08-08 21:55 - 00000000 ____D C:\WINDOWS\SysWOW64\sda
2015-08-08 21:55 - 2015-08-08 21:55 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2015-08-08 21:55 - 2015-08-08 21:55 - 00000000 ____D C:\Program Files\Realtek
2015-08-08 21:55 - 2015-08-08 21:55 - 00000000 ____D C:\Program Files\Common Files\Atheros
2015-08-08 21:54 - 2015-08-08 21:55 - 00000000 ____D C:\Program Files\Elantech
2015-08-08 21:47 - 2015-08-11 08:31 - 00805136 _____ C:\WINDOWS\system32\perfh013.dat
2015-08-08 21:47 - 2015-08-11 08:31 - 00158012 _____ C:\WINDOWS\system32\perfc013.dat
2015-08-08 21:47 - 2015-08-08 21:48 - 00030706 _____ C:\WINDOWS\system32\NetSetupMig.log
2015-08-08 21:47 - 2015-08-08 21:46 - 00347470 _____ C:\WINDOWS\system32\perfi013.dat
2015-08-08 21:47 - 2015-08-08 21:46 - 00045378 _____ C:\WINDOWS\system32\perfd013.dat
2015-08-08 21:46 - 2015-08-10 22:17 - 00020290 _____ C:\WINDOWS\PFRO.log
2015-08-08 21:46 - 2015-08-08 21:46 - 00000000 ____D C:\WINDOWS\SysWOW64\nl
2015-08-08 21:46 - 2015-08-08 21:46 - 00000000 ____D C:\WINDOWS\system32\nl
2015-08-08 21:37 - 2015-08-08 21:37 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2015-08-08 21:34 - 2015-08-08 22:16 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2015-08-08 21:34 - 2015-08-08 21:34 - 00000000 ____D C:\Program Files\Reference Assemblies
2015-08-08 21:34 - 2015-08-08 21:34 - 00000000 ____D C:\Program Files\MSBuild
2015-08-08 21:34 - 2015-08-08 21:34 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2015-08-08 21:34 - 2015-08-08 21:34 - 00000000 ____D C:\Program Files (x86)\MSBuild
2015-08-08 21:33 - 2015-06-17 19:10 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-08-08 21:33 - 2015-06-17 19:10 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-08 21:33 - 2015-06-17 19:10 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2015-08-08 21:33 - 2015-05-29 22:07 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2015-08-08 21:33 - 2015-05-29 22:07 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-08-08 21:33 - 2015-05-29 22:07 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2015-08-08 20:12 - 2015-08-08 22:25 - 00006654 _____ C:\WINDOWS\comsetup.log
2015-08-08 20:11 - 2015-08-08 22:26 - 00009528 _____ C:\WINDOWS\diagwrn.xml
2015-08-08 20:11 - 2015-08-08 22:26 - 00009528 _____ C:\WINDOWS\diagerr.xml
2015-08-08 19:50 - 2015-08-08 19:50 - 00027624 _____ C:\WINDOWS\system32\bddel.exe
2015-08-08 19:50 - 2015-08-08 19:50 - 00000792 _____ C:\WINDOWS\system32\bddel.dat
2015-08-08 16:23 - 2015-08-08 16:23 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2015-08-08 16:05 - 2015-08-08 16:06 - 00000000 ____D C:\Users\Nathan\Documents\désinfection
2015-08-08 16:02 - 2015-08-08 16:02 - 00000000 ____D C:\Users\Nathan\AppData\Local\Skype
2015-08-08 16:01 - 2015-08-08 16:02 - 00000000 ____D C:\Users\Nathan\AppData\Roaming\Skype
2015-08-08 16:01 - 2015-08-08 16:01 - 00000000 ____D C:\Users\Nathan\AppData\Local\Razer_Inc
2015-08-08 16:00 - 2015-08-08 22:02 - 00000000 ____D C:\Program Files (x86)\Razer
2015-08-08 16:00 - 2015-08-08 16:00 - 00000000 ____D C:\ProgramData\Razer
2015-08-08 15:58 - 2015-08-08 15:58 - 00000111 _____ C:\ProgramData\Microsoft.SqlServer.Compact.400.64.bc
2015-08-08 15:58 - 2015-08-08 15:58 - 00000000 ___RD C:\Users\Nathan\Documents\Fnac Cloud
2015-08-08 15:56 - 2015-08-08 15:56 - 00000385 _____ C:\Users\Nathan\AppData\Roaminguser_gensett.xml
2015-08-08 14:06 - 2015-08-08 22:21 - 00003628 _____ C:\WINDOWS\System32\Tasks\Bitdefender Update Product Data_A17FD818A96743FAB28AC221BEB4B2C8
2015-08-08 14:06 - 2015-08-08 14:06 - 00000000 ____D C:\Program Files\Common Files\AV
2015-08-08 13:38 - 2015-08-08 13:38 - 01048789 _____ C:\ProgramData\1439032826.bdinstall.bin
2015-08-08 13:35 - 2015-08-09 15:57 - 00000000 ____D C:\ProgramData\BDLogging
2015-08-08 13:35 - 2015-08-08 13:35 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_avchv_01009.Wdf
2015-08-08 13:35 - 2015-01-09 11:44 - 00074000 _____ (BitDefender SRL) C:\WINDOWS\SysWOW64\bdsandboxuiskin32.dll
2015-08-08 13:35 - 2014-12-15 18:04 - 00098768 _____ (BitDefender LLC) C:\WINDOWS\system32\Drivers\bdfndisf6.sys
2015-08-08 13:35 - 2013-09-08 20:04 - 00023568 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\bdelam.sys
2015-08-08 13:35 - 2007-04-11 11:11 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\capicom.dll
2015-08-08 13:24 - 2015-08-09 15:58 - 00000000 ____D C:\Users\Nathan\AppData\Roaming\Bitdefender
2015-08-08 13:20 - 2015-08-10 09:58 - 00000000 ____D C:\ProgramData\Bitdefender
2015-08-08 13:20 - 2015-08-09 15:41 - 00000000 ____D C:\Program Files\Bitdefender
2015-08-08 13:20 - 2015-08-08 14:06 - 00074000 _____ (BitDefender SRL) C:\WINDOWS\system32\bdsandboxuiskin32.dll
2015-08-08 13:20 - 2015-08-08 13:20 - 00000000 ____D C:\Users\Nathan\AppData\Roaming\QuickScan
2015-08-08 13:20 - 2015-01-09 11:44 - 00084848 _____ (BitDefender SRL) C:\WINDOWS\system32\BDSandBoxUISkin.dll
2015-08-08 13:20 - 2015-01-09 11:44 - 00033360 _____ (BitDefender SRL) C:\WINDOWS\system32\BDSandBoxUH.dll
2015-08-08 13:18 - 2015-08-09 18:16 - 00440797 _____ C:\Users\Nathan\AppData\Local\SocialSafe-Helper.log
2015-08-08 08:35 - 2015-08-09 15:41 - 00000000 ____D C:\Program Files\Common Files\Bitdefender
2015-08-08 08:34 - 2015-08-08 22:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SocialSafe
2015-08-08 08:34 - 2015-08-08 08:34 - 00000000 ____D C:\Users\Nathan\AppData\Roaming\com.1minus1.socialsafe.D675411CF670AA3EFAC13BDD847989BEDE2115E2.1
2015-08-08 08:32 - 2015-08-10 10:19 - 00000000 ____D C:\Program Files (x86)\Fnac
2015-08-08 08:32 - 2015-08-09 15:38 - 00001768 _____ C:\last.txt
2015-08-08 08:32 - 2015-08-09 15:34 - 00036864 _____ C:\WINDOWS\EP_UNINSTALL.EXE
2015-08-08 08:32 - 2015-08-08 08:32 - 00000000 ____D C:\Users\Nathan\AppData\Local\Pack Fnac
2015-08-08 08:32 - 2015-08-08 08:32 - 00000000 ____D C:\Users\Nathan\AppData\Local\Fnac
2015-08-08 08:18 - 2015-08-08 08:18 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2015-08-07 20:51 - 2015-08-08 08:54 - 00000000 ____D C:\WINDOWS\System32\Tasks\McAfee
2015-08-07 20:51 - 2015-06-29 10:03 - 00254792 _____ (McAfee, Inc.) C:\WINDOWS\system32\mfevtps.exe.8db5.deleteme
2015-08-07 20:50 - 2015-08-08 22:21 - 00004322 _____ C:\WINDOWS\System32\Tasks\PhraseProfessor Auto Updater 1.10.0.21 Pending Update
2015-08-07 20:50 - 2015-08-08 22:21 - 00004312 _____ C:\WINDOWS\System32\Tasks\PhraseProfessor Auto Updater 1.10.0.21 Core
2015-08-07 20:50 - 2015-08-07 20:50 - 00000000 ____D C:\Program Files (x86)\PhraseProfessor_1.10.0.21
2015-08-07 20:46 - 2015-08-07 20:46 - 00000000 ____D C:\ProgramData\Suumurssuafae
2015-08-07 20:45 - 2015-08-07 20:45 - 00000000 ____D C:\Program Files (x86)\2cf1aa2f-c472-42f3-b60b-af6ec2a6751e
2015-08-07 20:43 - 2015-08-08 22:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-08-07 20:41 - 2015-08-07 20:43 - 00000000 ____D C:\ProgramData\rWinManPror
2015-08-07 20:41 - 2015-08-07 20:42 - 00000000 ____D C:\ProgramData\uWEEdoYLG
2015-08-07 20:40 - 2015-08-11 12:52 - 00001090 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-08-07 20:40 - 2015-08-08 22:21 - 00004172 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2015-08-07 20:40 - 2015-08-08 22:21 - 00003936 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2015-08-07 20:40 - 2015-08-07 20:47 - 00001086 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-08-07 20:40 - 2015-08-07 20:43 - 00000000 ____D C:\Users\Nathan\AppData\Local\Google
2015-08-07 20:40 - 2015-08-07 20:43 - 00000000 ____D C:\Program Files (x86)\Google
2015-08-07 20:38 - 2015-08-07 20:38 - 00589608 _____ C:\Users\Nathan\Downloads\google chrome.exe
2015-08-07 20:23 - 2015-08-11 12:18 - 00003544 _____ C:\WINDOWS\System32\Tasks\ASUS Live Update1
2015-08-07 20:23 - 2015-08-11 12:18 - 00003534 _____ C:\WINDOWS\System32\Tasks\ASUS Live Update2
2015-08-07 20:23 - 2015-08-08 22:21 - 00003492 _____ C:\WINDOWS\System32\Tasks\Update Checker
2015-08-07 20:14 - 2015-08-11 08:15 - 00004156 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{BC44EC1C-6613-4C3C-9332-E4072892A08B}
2015-08-07 20:14 - 2015-08-09 11:13 - 00000000 __SHD C:\Users\Nathan\AppData\Local\EmieUserList
2015-08-07 20:14 - 2015-08-09 11:13 - 00000000 __SHD C:\Users\Nathan\AppData\Local\EmieSiteList
2015-08-07 20:10 - 2015-08-07 20:10 - 00000000 ____D C:\Users\Nathan\AppData\Local\GWX
2015-08-07 20:09 - 2015-08-11 12:52 - 00000000 ___RD C:\Users\Nathan\OneDrive
2015-08-07 20:08 - 2015-08-07 20:08 - 00000000 ____D C:\Users\Nathan\AppData\Roaming\WebStorage
2015-08-07 20:07 - 2015-08-08 22:21 - 00003702 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-98695561-2770668175-831058641-1001
2015-08-07 20:04 - 2015-08-11 12:52 - 00000126 _____ C:\Users\Nathan\AppData\Roaming\sp_data.sys
2015-08-07 20:04 - 2015-08-08 08:18 - 00000000 ____D C:\ProgramData\USBChargerPlus
2015-08-07 20:03 - 2015-08-07 20:03 - 00000000 ____D C:\Users\Nathan\Documents\Bluetooth Folder
2015-08-07 20:03 - 2015-08-07 20:03 - 00000000 ____D C:\Users\Nathan\AppData\Roaming\Macromedia
2015-08-07 20:03 - 2015-08-07 20:03 - 00000000 ____D C:\Users\Nathan\AppData\Roaming\Atheros
2015-08-07 20:03 - 2015-08-07 20:03 - 00000000 ____D C:\Users\Nathan\AppData\Local\BMExplorer
2015-08-07 20:01 - 2015-08-10 22:35 - 00000000 ____D C:\Users\Nathan\AppData\Local\Packages
2015-08-07 20:01 - 2015-08-07 20:01 - 00000184 _____ C:\WINDOWS\FixPatch.log
2015-08-07 20:01 - 2015-08-07 20:01 - 00000144 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2015-08-07 20:01 - 2015-08-07 20:01 - 00000000 ____D C:\Users\Nathan\AppData\Roaming\Adobe
2015-08-07 20:01 - 2015-08-07 20:01 - 00000000 ____D C:\Users\Nathan\AppData\Local\VirtualStore
2015-08-07 19:27 - 2015-03-14 03:51 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll
2015-08-07 19:25 - 2015-08-08 20:26 - 01536572 _____ C:\WINDOWS\WindowsUpdate (1).log
2015-07-30 22:46 - 2015-08-09 10:53 - 12334072 _____ (Intel Corporation) C:\WINDOWS\system32\igd10iumd64.dll
2015-07-30 22:46 - 2015-08-09 10:53 - 11053048 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll
2015-07-30 22:46 - 2015-08-09 10:53 - 04636616 _____ (Intel Corporation) C:\WINDOWS\system32\igdusc64.dll
2015-07-30 22:45 - 2015-08-09 10:53 - 03797968 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd64.sys
2015-07-30 22:45 - 2015-08-09 10:53 - 00678912 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDH.dll
2015-07-30 22:45 - 2015-08-09 10:53 - 00540080 _____ (Intel Corporation) C:\WINDOWS\system32\igfxEM.exe
2015-07-30 22:45 - 2015-08-09 10:53 - 00393648 _____ (Intel Corporation) C:\WINDOWS\system32\igfxTray.exe
2015-07-30 22:45 - 2015-08-09 10:53 - 00328624 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCUIService.exe
2015-07-30 22:45 - 2015-08-09 10:53 - 00290224 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe
2015-07-30 22:45 - 2015-08-09 10:53 - 00285184 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDI.dll
2015-07-30 22:45 - 2015-08-09 10:53 - 00261120 _____ (Intel Corporation) C:\WINDOWS\system32\igfxLHM.dll
2015-07-30 22:45 - 2015-08-09 10:53 - 00256944 _____ (Intel Corporation) C:\WINDOWS\system32\igfxHK.exe
2015-07-30 22:45 - 2015-08-09 10:53 - 00228864 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDTCM.dll
2015-07-30 22:45 - 2015-07-30 22:45 - 00191984 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCoIn_v4252.dll
2015-07-28 23:47 - 2015-07-28 23:47 - 00061328 _____ (PhraseProfessor) C:\WINDOWS\system32\Drivers\ppfd_vt_1_10_0_21.sys
2015-07-28 23:47 - 2015-07-28 23:47 - 00057744 _____ (PhraseProfessor) C:\WINDOWS\system32\Drivers\ppfd_vw_1_10_0_21.sys
2015-07-27 09:21 - 2015-07-27 09:21 - 00089104 _____ (Razer Inc) C:\WINDOWS\system32\RazerCoinstaller.dll
2015-07-14 06:57 - 2015-07-14 06:57 - 00477784 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\Drivers\ETD.sys
2015-07-14 06:57 - 2015-07-14 06:57 - 00081640 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\ETDCoInstaller.dll
2015-07-14 06:57 - 2015-07-14 06:57 - 00031320 _____ (ELAN Microelectronic Corp.) C:\WINDOWS\system32\Drivers\ETDSMBus.sys
2015-07-13 09:34 - 2015-07-13 09:34 - 01730328 _____ (Microsoft Corporation) C:\WINDOWS\system32\WdfCoInstaller01009.dll
2015-07-13 09:34 - 2015-07-13 09:34 - 00199896 _____ (Razer Inc) C:\WINDOWS\system32\Drivers\rzudd.sys

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-08-11 12:50 - 2015-07-10 14:22 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log
2015-08-11 12:50 - 2015-07-10 11:05 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2015-08-11 12:49 - 2015-07-10 14:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-08-11 12:49 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\sru
2015-08-11 12:49 - 2015-07-10 11:05 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-08-11 08:31 - 2015-07-10 18:24 - 00821020 _____ C:\WINDOWS\system32\perfh00C.dat
2015-08-11 08:31 - 2015-07-10 18:24 - 00154350 _____ C:\WINDOWS\system32\perfc00C.dat
2015-08-11 08:21 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-08-10 10:19 - 2014-10-29 08:26 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-08-10 10:19 - 2014-10-29 08:26 - 00000000 ____D C:\ProgramData\WildTangent
2015-08-10 08:38 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\appcompat
2015-08-09 15:56 - 2015-07-10 14:20 - 00226160 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-08-09 15:21 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2015-08-09 13:08 - 2015-07-10 12:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-08-09 13:07 - 2015-07-10 18:24 - 00000000 ____D C:\WINDOWS\OCR
2015-08-09 11:27 - 2013-08-22 15:25 - 00000226 _____ C:\WINDOWS\win.ini
2015-08-09 11:23 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\restore
2015-08-09 11:22 - 2015-07-10 14:20 - 00016391 _____ C:\WINDOWS\setupact.log
2015-08-09 10:44 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2015-08-09 10:44 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\PrintDialog
2015-08-09 10:44 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\MiracastView
2015-08-09 10:43 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2015-08-08 22:44 - 2015-07-10 13:04 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2015-08-08 22:39 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe
2015-08-08 22:39 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2015-08-08 22:39 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2015-08-08 22:39 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-08-08 22:39 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\Provisioning
2015-08-08 22:39 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2015-08-08 22:39 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\system32\Dism
2015-08-08 22:36 - 2015-07-10 13:06 - 00792568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-08-08 22:36 - 2015-07-10 13:06 - 00178168 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-08-08 22:35 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\rescache
2015-08-08 22:27 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Windows NT
2015-08-08 22:27 - 2015-07-10 11:05 - 00000000 __RHD C:\Users\Default
2015-08-08 22:25 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\Registration
2015-08-08 22:21 - 2015-02-09 22:27 - 00003096 _____ C:\WINDOWS\System32\Tasks\ASUS Splendid ACMON
2015-08-08 22:21 - 2015-02-09 22:19 - 00003648 _____ C:\WINDOWS\System32\Tasks\ASUS Smart Gesture Launcher
2015-08-08 22:21 - 2015-02-09 22:16 - 00003672 _____ C:\WINDOWS\System32\Tasks\ATK Package 36D18D69AFC3
2015-08-08 22:21 - 2015-02-09 22:13 - 00003700 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-98695561-2770668175-831058641-500
2015-08-08 22:19 - 2015-07-10 13:04 - 00000000 __RHD C:\Users\Public\Libraries
2015-08-08 22:16 - 2015-07-10 18:28 - 00000000 ____D C:\Program Files\Windows Journal
2015-08-08 22:16 - 2015-07-10 18:23 - 00000000 ____D C:\WINDOWS\SysWOW64\winrm
2015-08-08 22:16 - 2015-07-10 18:23 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN
2015-08-08 22:16 - 2015-07-10 18:23 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr
2015-08-08 22:16 - 2015-07-10 18:23 - 00000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2015-08-08 22:16 - 2015-07-10 18:23 - 00000000 ____D C:\WINDOWS\system32\winrm
2015-08-08 22:16 - 2015-07-10 18:23 - 00000000 ____D C:\WINDOWS\system32\WCN
2015-08-08 22:16 - 2015-07-10 18:23 - 00000000 ____D C:\WINDOWS\system32\slmgr
2015-08-08 22:16 - 2015-07-10 18:23 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2015-08-08 22:16 - 2015-07-10 13:04 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2015-08-08 22:16 - 2015-07-10 13:04 - 00000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2015-08-08 22:16 - 2015-07-10 13:04 - 00000000 ___SD C:\WINDOWS\system32\F12
2015-08-08 22:16 - 2015-07-10 13:04 - 00000000 ___SD C:\WINDOWS\system32\dsc
2015-08-08 22:16 - 2015-07-10 13:04 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2015-08-08 22:16 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2015-08-08 22:16 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\Com
2015-08-08 22:16 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\MUI
2015-08-08 22:16 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\migwiz
2015-08-08 22:16 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\Com
2015-08-08 22:16 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2015-08-08 22:16 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\IME
2015-08-08 22:16 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\Help
2015-08-08 22:16 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2015-08-08 22:16 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Windows Defender
2015-08-08 22:16 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Common Files\System
2015-08-08 22:16 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2015-08-08 22:16 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2015-08-08 22:16 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\servicing
2015-08-08 22:07 - 2015-07-10 13:05 - 00004362 _____ C:\WINDOWS\DtcInstall.log
2015-08-08 22:07 - 2015-02-09 22:12 - 00000000 ____D C:\Program Files (x86)\Bluetooth Suite
2015-08-08 22:07 - 2015-02-09 22:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek
2015-08-08 22:07 - 2014-10-29 08:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit PhantomPDF
2015-08-08 22:07 - 2014-10-29 08:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-08-08 22:07 - 2014-10-29 08:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
2015-08-08 22:06 - 2013-08-22 15:36 - 00000000 ____D C:\Users\Default.migrated
2015-08-08 22:05 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\en-GB
2015-08-08 22:05 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\en-GB
2015-08-08 22:04 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\zh-HK
2015-08-08 22:04 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\uk-UA
2015-08-08 22:04 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\tr-TR
2015-08-08 22:04 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\th-TH
2015-08-08 22:04 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\sr-Latn-RS
2015-08-08 22:04 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\sl-SI
2015-08-08 22:04 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\sk-SK
2015-08-08 22:04 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\ro-RO
2015-08-08 22:04 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2015-08-08 22:04 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2015-08-08 22:04 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\hr-HR
2015-08-08 22:04 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\he-IL
2015-08-08 22:04 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\et-EE
2015-08-08 22:04 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\bg-BG
2015-08-08 22:04 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\ar-SA
2015-08-08 22:04 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\zh-HK
2015-08-08 22:03 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\uk-UA
2015-08-08 22:03 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\tr-TR
2015-08-08 22:03 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\th-TH
2015-08-08 22:03 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\sr-Latn-RS
2015-08-08 22:03 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\spool
2015-08-08 22:03 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\sl-SI
2015-08-08 22:03 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\sk-SK
2015-08-08 22:03 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\ro-RO
2015-08-08 22:03 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\oobe
2015-08-08 22:03 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\lv-LV
2015-08-08 22:03 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\lt-LT
2015-08-08 22:03 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2015-08-08 22:03 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\hr-HR
2015-08-08 22:03 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\he-IL
2015-08-08 22:03 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\et-EE
2015-08-08 22:03 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2015-08-08 22:03 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2015-08-08 22:02 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\bg-BG
2015-08-08 22:02 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\ar-SA
2015-08-08 22:02 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\InputMethod
2015-08-08 22:02 - 2015-07-10 13:04 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-08-08 22:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\MediaViewer
2015-08-08 22:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\ADFS
2015-08-08 22:01 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\Recovery
2015-08-08 22:01 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\GroupPolicy
2015-08-08 21:57 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2015-08-08 20:12 - 2015-07-10 19:02 - 00000000 ___HD C:\$Windows.~BT
2015-08-08 08:55 - 2015-02-09 22:29 - 00000000 ____D C:\Program Files\mcafee
2015-08-08 08:55 - 2015-02-09 22:29 - 00000000 ____D C:\Program Files\Common Files\McAfee
2015-08-07 20:23 - 2014-10-29 08:25 - 00000000 ____D C:\Program Files (x86)\ASUS
2015-08-07 20:03 - 2015-02-09 22:18 - 00000000 ____D C:\ProgramData\Atheros
2015-08-07 20:01 - 2014-10-29 13:24 - 00000000 ____D C:\WINDOWS\Log

==================== Files in the root of some directories =======

2015-08-07 20:04 - 2015-08-11 12:52 - 0000126 _____ () C:\Users\Nathan\AppData\Roaming\sp_data.sys
2015-08-08 13:18 - 2015-08-09 18:16 - 0440797 _____ () C:\Users\Nathan\AppData\Local\SocialSafe-Helper.log
2015-08-08 13:38 - 2015-08-08 13:38 - 1048789 _____ () C:\ProgramData\1439032826.bdinstall.bin
2015-08-09 15:51 - 2015-08-09 15:51 - 0681525 _____ () C:\ProgramData\1439127667.bdinstall.bin
2015-08-08 21:55 - 2015-08-08 21:55 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2015-08-08 15:58 - 2015-08-08 15:58 - 0000111 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.400.64.bc
2014-10-29 08:25 - 2012-09-07 13:40 - 0000256 _____ () C:\ProgramData\SetStretch.cmd
2014-10-29 08:25 - 2009-07-22 12:04 - 0024576 _____ () C:\ProgramData\SetStretch.exe
2014-10-29 08:25 - 2012-09-07 13:37 - 0000103 _____ () C:\ProgramData\SetStretch.VBS

Files to move or delete:
====================
C:\ProgramData\SetStretch.VBS


Some files in TEMP:
====================
C:\Users\Nathan\AppData\Local\Temp\Quarantine.exe
C:\Users\Nathan\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-08-09 13:07

==================== End of log ============================