Results 1 to 9 of 9

Thread: aswmbr makes bsod on all computers in safe & normal mode - continue debug infected co

  1. #1
    Junior Member
    Join Date
    Apr 2020
    Posts
    5

    Default aswmbr makes bsod on all computers in safe & normal mode - continue debug infected co

    Hi all,

    we can't scan with aswmbr, it's causes a bsod at safe & normal modes, on all computers,
    i try as administrator the bsod of aswmbr persists,

    only the frst is enough:

    hi all,

    i need to uninstall ad-aware,
    and i have bugs & malwares installed on all my comodo virtual desktops: the containment & the secure shopping, which makes impossibility to make online shopping

    bugs & malwares in the infected virtual desktop of containment (comodo sandbox)--:
    -reimage
    -yara editor trial
    -diffview trial
    -techtoolstore->privazer
    -tuneup360
    -audio/video to exe
    -registry first aid
    -smart privacy cleaner
    -if/when i try again to reinstall the virtual desktop of comodo sandbox: impossible->error of installation of microsoft siverlight

    and the bugs & infections installed in the virtual desktop of comodo secure shopping:
    -pchelpsoft pc cleaner
    -spyhunter
    -radiorage en page d'accueil
    -systools pdf bates numberer
    -wondershare 1-click pc care

    internet problem on galaxy book pc,
    the icon of livebox wifi displays connected/connexion ok,
    but if i come on/go to various internet browsers
    i have error of connexion at every web sites


    the frst & addition logs here:

    R?sultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 19-04-2020
    Ex?cut? par nalb fait moins peur (administrateur) sur DESKTOP-LLBRHBP (SAMSUNG ELECTRONICS CO., LTD. Galaxy Book 12) (25-04-2020 14:19:38)
    Ex?cut? depuis C:\Users\nalb fait moins peur\Desktop
    Profils charg?s: nalb fait moins peur (Profils disponibles: nalb fait moins peur)
    Platform: Windows 10 Home Version 1709 16299.64 (X64) Langue: Fran?ais (France)
    Navigateur par d?faut: "C:\Program Files (x86)\UCBrowser\Application\UCBrowser.exe" -- "%1"
    Mode d'amor?age: Normal
    Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic...ery-scan-tool/

    ==================== Processus (Avec liste blanche) =================

    (Si un ?l?ment est inclus dans le fichier fixlist.txt, le processus sera arr?t?. Le fichier ne sera pas d?plac?.)

    (Auslogics Labs Pty Ltd -> Au˜slogics) C:\Program Files (x86)\Auslogics\BoostSpeed\TabAllTools.exe
    (Auslogics Labs Pty Ltd -> Au˜slogics) C:\Program Files (x86)\Auslogics\BoostSpeed\TabOneClickScanner.exe
    (Auslogics Labs Pty Ltd -> Ausl˜ogics) C:\Program Files (x86)\Auslogics\BoostSpeed\TabMaintain.exe
    (Auslogics Labs Pty Ltd -> Ausl˜ogics) C:\Program Files (x86)\Auslogics\BoostSpeed\TabReports.exe
    (Auslogics Labs Pty Ltd -> Auslo˜gics) C:\Program Files (x86)\Auslogics\BoostSpeed\Integrator.exe
    (Auslogics Labs Pty Ltd -> Auslo˜gics) C:\Program Files (x86)\Auslogics\BoostSpeed\TabCleanUp.exe
    (Auslogics Labs Pty Ltd -> Auslo˜gics) C:\Program Files (x86)\Auslogics\BoostSpeed\TabDashboard.exe
    (Auslogics Labs Pty Ltd -> Auslo˜gics) C:\Program Files (x86)\Auslogics\BoostSpeed\TabProtect.exe
    (Auslogics Labs Pty Ltd -> Auslog˜ics) C:\Program Files (x86)\Auslogics\BoostSpeed\TabOptimize.exe
    (Auslogics Labs Pty Ltd -> Auslogi˜cs) C:\Program Files (x86)\Auslogics\BoostSpeed\TabCareCenter.exe
    (Comodo Security Solutions -> COMODO) D:\Antivirus install?s\COMODO\COMODO Internet Security\cavwp.exe
    (Comodo Security Solutions -> COMODO) D:\Antivirus install?s\COMODO\COMODO Internet Security\cis.exe <2>
    (Comodo Security Solutions, Inc. -> Comodo) C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
    (Comodo Security Solutions, Inc. -> COMODO) D:\Antivirus install?s\COMODO\COMODO Internet Security\cmdagent.exe <2>
    (Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 20.0\avp.exe
    (Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 20.0\avpui.exe
    (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
    (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
    (SAMSUNG ELECTRONICS CO,.LTD. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Show Window\Show Window.exe
    Impossible d'acc?der au processus -> ShellExperienceHost.exe

    ==================== Registre (Avec liste blanche) ===================

    (Si un ?l?ment est inclus dans le fichier fixlist.txt, l'?l?ment de Registre sera restaur? ? la valeur par d?faut ou supprim?. Le fichier ne sera pas d?plac?.)

    HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmdS.exe [185648 2020-04-02] (ESET, spol. s r.o. -> ESET)
    HKLM\...\RunOnce: [Reset user default settings] => F:\4 - moby dawn Anti-JJAD apps for repair & fix internet\2TheLoo\2THELOO\RebootExecx64.exe Reset_UDS S-1-5-21-867250633-51197164-4155923770-1001
    HKLM\...\RunOnce: [*Reset_CHKDSK] => "F:\4 - moby dawn Anti-JJAD apps for repair & fix internet\2TheLoo\2THELOO\RebootExecx64.exe" Reset_CHKDSK
    HKLM\...\RunOnce: [*Configure immunization] => C:\ProgramData\UVK\Immunization\RebootExec.exe [1184824 2020-04-08] (Da Silva Alfr?do -> Carifred)
    HKU\S-1-5-21-867250633-51197164-4155923770-1001\...\Policies\Explorer: [NoViewContextMenu] 0
    HKU\S-1-5-18\...\RunOnce: [Application Restart #0] => C:\Windows\System32\osk.exe [620032 2017-09-29] (Microsoft Windows -> Microsoft Corporation)
    CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
    CHR HKU\S-1-5-21-867250633-51197164-4155923770-1001\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

    ==================== T?ches planifi?es (Avec liste blanche) ============

    (Si un ?l?ment est inclus dans le fichier fixlist.txt, il sera supprim? du Registre. Le fichier ne sera pas d?plac?, sauf s'il est inscrit s?par?ment.)

    Task: {20B5760E-7821-4F5F-9B35-92217717F265} - System32\Tasks\TweakBit\PCRepairKit\Start PCRepairKit automatic scanning => F:\4 - moby dawn Anti-JJAD apps for repair & fix internet\TweakBit.PCRepairKit.2.0.0.55435.Portable\TweakBit.PCRepairKit.2.0.0.55435.Portable\App\ProgramFiles\PCRepairKit.exe <==== ATTENTION
    Task: {2CB4C956-7E52-4DFD-8B5B-44F6D75EA923} - System32\Tasks\COMODO\COMODO Telemetry {18AD3DFA-30C0-4B5F-84F7-F1870B1A4921} => D:\Antivirus install?s\COMODO\COMODO Internet Security\cis.exe [13059536 2019-10-17] (Comodo Security Solutions -> COMODO)
    Task: {2D58B741-E8B6-42EB-A4D0-B09797756A25} - System32\Tasks\Auslogics\BoostSpeed\Start BoostSpeed on nalb fait moins peur logon => C:\Program Files (x86)\Auslogics\BoostSpeed\Integrator.exe [4502448 2020-04-15] (Auslogics Labs Pty Ltd -> Auslo˜gics)
    Task: {326E93AC-B2A8-43D3-BD18-A4353DB92903} - System32\Tasks\SecTimeSync\TimeSyncInit => C:\Windows\SecTimeSync.exe [1630256 2013-08-23] (Samsung Electronics CO., LTD. -> Samsung Electronics CO., LTD.)
    Task: {5690DE54-A38F-4E31-9639-7AC08C96BC3F} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [816960 2017-09-20] (Intel(R) Trust Services -> Intel(R) Corporation)
    Task: {5E9A66DB-8353-48D6-B079-1478AD1CA2C9} - System32\Tasks\Samsung\SRS\SRS Logon => C:\Program Files\Samsung\Recovery\SRSMessages.exe [4193008 2017-02-01] (Samsung Electronics CO., LTD. -> Samsung Electronics)
    Task: {6296F0BF-E65C-46A6-ACF0-C4B903DB4BA1} - System32\Tasks\ShowWindow => C:\Program Files (x86)\Show Window\Show Window.exe [1204312 2017-11-10] (SAMSUNG ELECTRONICS CO,.LTD. -> Samsung Electronics Co., Ltd.)
    Task: {70FDDDBF-A650-446A-97B1-CBACEE37C3FA} - System32\Tasks\COMODO\COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10} => D:\Antivirus install?s\COMODO\COMODO Internet Security\cis.exe [13059536 2019-10-17] (Comodo Security Solutions -> COMODO)
    Task: {915B0D60-790D-4C12-A460-AA772D1C14DF} - System32\Tasks\TweakBit\PCRepairKit\Start PCRepairKit оn logon => F:\4 - moby dawn Anti-JJAD apps for repair & fix internet\TweakBit.PCRepairKit.2.0.0.55435.Portable\TweakBit.PCRepairKit.2.0.0.55435.Portable\App\ProgramFiles\PCRepairKit.exe <==== ATTENTION
    Task: {D647B121-6D64-4CF2-967C-88706A64BD1F} - System32\Tasks\Mozilla\Firefox Developer Edition Default Browser Agent CA9422711AE1A81C => C:\Program Files\Firefox Developer Edition\default-browser-agent.exe do-task
    Task: {EB28D338-3A13-48C8-8FB8-36F23AAD73F8} - System32\Tasks\COMODO\COMODO CMC {06A09C0F-DD9C-4191-A670-71115CD78627} => D:\Antivirus install?s\COMODO\COMODO Internet Security\cfpconfg.exe [5701072 2019-10-17] (Comodo Security Solutions -> COMODO)
    Task: {F5F3EBD6-8497-4D97-88BF-7DE05E64629E} - System32\Tasks\COMODO\COMODO Maintenance {947247B5-026A-4437-9371-770782BE839D} => D:\Antivirus install?s\COMODO\COMODO Internet Security\cfpconfg.exe [5701072 2019-10-17] (Comodo Security Solutions -> COMODO)
    Task: {F63D8C6B-9C18-4B00-AF77-79E57CD73828} - System32\Tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} => D:\Antivirus install?s\COMODO\COMODO Internet Security\cfpconfg.exe [5701072 2019-10-17] (Comodo Security Solutions -> COMODO)
    Task: {FA12A9F7-5F29-4B71-B598-F5AF41B6206B} - System32\Tasks\COMODO\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22} => D:\Antivirus install?s\COMODO\COMODO Internet Security\cfpconfg.exe [5701072 2019-10-17] (Comodo Security Solutions -> COMODO)
    Task: {FE4B226B-917B-4B53-AFA8-02C26D3DDDDC} - System32\Tasks\COMODO\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59} => D:\Antivirus install?s\COMODO\COMODO Internet Security\cfpconfg.exe [5701072 2019-10-17] (Comodo Security Solutions -> COMODO)

    (Si un ?l?ment est inclus dans le fichier fixlist.txt, le fichier t?che (.job) sera d?plac?. Le fichier ex?cut? par la t?che ne sera pas d?plac?.)

    Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe

    ==================== Internet (Avec liste blanche) ====================

    (Si un ?l?ment est inclus dans le fichier fixlist.txt, s'il s'agit d'un ?l?ment du Registre, il sera supprim? ou restaur? ? la valeur par d?faut.)

    Winsock: Catalog5 08 C:\Windows\SysWOW64\wlidnsp.dll [42496 2017-09-29] (Microsoft Windows -> Microsoft Corporation)
    Winsock: Catalog5 09 C:\Windows\SysWOW64\wlidnsp.dll [42496 2017-09-29] (Microsoft Windows -> Microsoft Corporation)
    Winsock: Catalog5-x64 08 C:\Windows\system32\wlidnsp.dll [65536 2017-09-29] (Microsoft Windows -> Microsoft Corporation)
    Winsock: Catalog5-x64 09 C:\Windows\system32\wlidnsp.dll [65536 2017-09-29] (Microsoft Windows -> Microsoft Corporation)
    Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
    Tcpip\..\Interfaces\{e7a3896f-b4aa-4931-ba43-7ed6d96a98e9}: [DhcpNameServer] 192.168.1.1
    Tcpip\..\Interfaces\{f50edc6b-48d3-4afc-aa15-d2b174c99391}: [NameServer] 8.8.8.8,8.8.4.4

    Internet Explorer:
    ==================
    HKU\S-1-5-21-867250633-51197164-4155923770-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com/
    HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://go.microsoft.com/fwlink/p/?LinkId=255141
    HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
    HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
    HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
    HKU\S-1-5-21-867250633-51197164-4155923770-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
    SearchScopes: HKLM -> DefaultScope {7B5E17A5-1DFB-4269-9519-177F01849132} URL =
    SearchScopes: HKU\S-1-5-21-867250633-51197164-4155923770-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
    SearchScopes: HKU\S-1-5-21-867250633-51197164-4155923770-1001 -> {3CB12E97-BDDF-4488-8C61-217335DD319F} URL = hxxps://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?}
    SearchScopes: HKU\S-1-5-21-867250633-51197164-4155923770-1001 -> {EF641CB9-A500-480E-ABFC-370E51010B2B} URL = hxxps://search.yahoo.com/search?p={searchTerms}&b={startPage?}&fr=ie8
    Toolbar: HKU\S-1-5-21-867250633-51197164-4155923770-1001 -> Pas de nom - {EF293C5A-9F37-49FD-91C4-2B867063FC54} - Pas de fichier
    Toolbar: HKU\S-1-5-21-867250633-51197164-4155923770-1001 -> Foxit PhantomPDF Create PDF ToolBar - {BFD9D8A8-57FF-488A-B919-065EC77CF82F} - C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin_x64.dll [2020-04-09] (FOXIT SOFTWARE INC. -> )

    FireFox:
    ========
    FF DefaultProfile: 6qvfh5c0.default
    FF ProfilePath: C:\Users\nalb fait moins peur\AppData\Roaming\Mozilla\Firefox\Profiles\6qvfh5c0.default [2020-04-23]
    FF ProfilePath: C:\Users\nalb fait moins peur\AppData\Roaming\Mozilla\Firefox\Profiles\f8sb4j7h.dev-edition-default [2020-04-25]
    FF HKLM-x32\...\Firefox\Extensions: [FFExtnHTML2PDF@foxitsoftware.com] - C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\FirefoxAddin\FFExtnHTML2PDF.xpi
    FF Extension: (Foxit PDF Creator) - C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\FirefoxAddin\FFExtnHTML2PDF.xpi [2019-12-26] []
    FF HKLM-x32\...\Firefox\Extensions: [FireFoxNew-WebExtensions@foxitsoftware.com] - C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\FirefoxAddin\FireFoxNew-WebExtensions@foxitsoftware.com.xpi
    FF Extension: (Foxit PDF Creator) - C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\FirefoxAddin\FireFoxNew-WebExtensions@foxitsoftware.com.xpi [2019-12-26]
    FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll [2017-03-31] (Adobe Systems, Inc.) [Fichier non sign?]
    FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2020-04-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
    FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2020-04-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
    FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2020-04-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
    FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [2020-04-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
    StartMenuInternet: Firefox-CA9422711AE1A81C - C:\Program Files\Firefox Developer Edition\firefox.exe

    ==================== Services (Avec liste blanche) ===================

    (Si un ?l?ment est inclus dans le fichier fixlist.txt, il sera supprim? du Registre. Le fichier ne sera pas d?plac?, sauf s'il est inscrit s?par?ment.)

    S4 AtherosSvc; C:\Windows\system32\DRIVERS\AdminService.exe [421800 2017-11-08] (Qualcomm Atheros -> Windows (R) Win 7 DDK provider)
    R2 AVP20.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 20.0\avp.exe [357416 2019-03-21] (Kaspersky Lab -> AO Kaspersky Lab)
    S4 Backupper Service; C:\Program Files (x86)\AOMEI\AOMEI Backupper 5.7.0\ABService.exe [889384 2020-04-18] (AOMEI International Network Limited -> AOMEI Tech Co., Ltd.)
    R2 CmdAgent; D:\Antivirus install?s\COMODO\COMODO Internet Security\cmdagent.exe [11326912 2019-10-21] (Comodo Security Solutions, Inc. -> COMODO)
    R2 CmdAgentProt; D:\Antivirus install?s\COMODO\COMODO Internet Security\cmdagent.exe [11326912 2019-10-21] (Comodo Security Solutions, Inc. -> COMODO)
    R3 cmdvirth; D:\Antivirus install?s\COMODO\COMODO Internet Security\cmdvirth.exe [2649040 2019-10-17] (Comodo Security Solutions -> COMODO)
    S4 csssrv; C:\Program Files (x86)\COMODO\COMODO Secure Shopping\csssrv64.exe [4054248 2019-08-21] (Comodo Security Solutions, Inc. -> COMODO)
    S4 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [439104 2020-03-18] (Digital Wave Ltd -> Digital Wave Ltd)
    R2 DragonUpdater; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2253776 2019-06-20] (Comodo Security Solutions, Inc. -> Comodo)
    S4 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2358784 2020-04-02] (ESET, spol. s r.o. -> ESET)
    S3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2358784 2020-04-02] (ESET, spol. s r.o. -> ESET)
    S4 esifsvc; C:\Windows\system32\Intel\DPTF\esif_uf.exe [2218032 2016-12-15] (Intel Corporation -> Intel Corporation)
    S4 Expert PDF 14; C:\Program Files\Expert PDF 14\ws.exe [1985136 2019-11-28] (Avanquest UK Ltd -> Avanquest Software)
    S4 Expert PDF 14 Update Service; C:\Program Files\Expert PDF 14\updater-ws.exe [1631344 2019-11-28] (Avanquest UK Ltd -> Avanquest Software)
    S4 Grip sensor Reset service; C:\windows\system32\GripResetService.exe [21504 2017-01-13] (Samsung Electronics) [Fichier non sign?]
    S4 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [742704 2017-09-20] (Intel(R) Trust Services -> Intel(R) Corporation)
    S4 Intel(R) TPM Provisioning Service; C:\Program Files\Intel\iCLS Client\TPMProvisioningService.exe [668472 2017-09-20] (Intel(R) Trust Services -> Intel(R) Corporation)
    S4 isesrv; C:\Program Files (x86)\COMODO\Internet Security Essentials\isesrv.exe [1044176 2019-01-29] (Comodo Security Solutions, Inc. -> COMODO)
    S4 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [213648 2017-10-26] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation)
    S3 klvssbridge64_20.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 20.0\x64\vssbridge64.exe [438928 2019-03-21] (Kaspersky Lab -> AO Kaspersky Lab)
    S4 KSDE4.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 4.0\ksde.exe [619752 2019-03-21] (Kaspersky Lab -> AO Kaspersky Lab)
    S4 MdmLdrSvc; C:\Windows\System32\MdmLdrSvc.exe [448616 2017-11-13] (Microsoft Windows Hardware Compatibility Publisher -> Samsung Electronics Co.,Ltd.)
    S4 PanelManagerSvc; C:\Windows\System32\PanelManagerSvc.exe [384464 2017-05-11] (Microsoft Windows Hardware Compatibility Publisher -> )
    S4 RCD; C:\Windows\System32\RCDService.exe [471144 2017-11-13] (Microsoft Windows Hardware Compatibility Publisher -> Samsung Electronics Co.,Ltd.)
    S4 SafiService; C:\Windows\System32\DriverStore\FileRepository\safidrv.inf_amd64_0e89535d35916282\SafiService.exe [62568 2017-10-09] (Microsoft Windows Hardware Compatibility Publisher -> )
    S4 Samsung Pen Service; C:\Program Files (x86)\Samsung\Air Command\SamsungPenService.exe [51832 2017-09-28] (Microsoft Windows Hardware Compatibility Publisher -> )
    S4 Samsung System Service; C:\Program Files (x86)\Samsung\Samsung System Agent\SamsungSystemService.exe [172632 2017-08-29] (SAMSUNG ELECTRONICS CO,.LTD. -> Samsung Electronics Co., Ltd.)
    S4 TeraCopyService; C:\Program Files\TeraCopy\TeraCopyService.exe [110416 2017-05-05] (Code Sector -> Code Sector)
    S4 uvnc_service; D:\Applications install?es\UltraVNC\UltraVNC Edition Nathalie En Makeupdirecdar\WinVNC.exe [1978648 2014-07-31] (uvnc bvba -> UltraVNC)
    S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [355304 2017-09-29] (Microsoft Corporation -> Microsoft Corporation)
    S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [105944 2017-09-29] (Microsoft Corporation -> Microsoft Corporation)
    S4 WlSarService; C:\windows\system32\WlSarService.exe [55808 2017-05-19] (Samsung Electronics Co., Ltd.) [Fichier non sign?]

    ===================== Pilotes (Avec liste blanche) ===================

    (Si un ?l?ment est inclus dans le fichier fixlist.txt, il sera supprim? du Registre. Le fichier ne sera pas d?plac?, sauf s'il est inscrit s?par?ment.)

    R0 ambakdrv; C:\Windows\System32\ambakdrv.sys [51120 2016-12-21] (CHENGDU AOMEI Tech Co., Ltd. -> )
    R2 ammntdrv; C:\Windows\system32\ammntdrv.sys [171952 2016-12-21] (CHENGDU AOMEI Tech Co., Ltd. -> )
    S3 ampa; C:\Windows\system32\ampa.sys [38320 2017-02-28] (CHENGDU AOMEI Tech Co., Ltd. -> )
    R2 amwrtdrv; C:\Windows\system32\amwrtdrv.sys [38320 2017-09-01] (CHENGDU AOMEI Tech Co., Ltd. -> )
    R1 AntiLog32; C:\Windows\system32\drivers\AntiLog64.sys [49752 2020-04-23] (Zemana Ltd. -> Zemana Ltd.)
    R3 AppNodeEnum; C:\Windows\system32\DRIVERS\AppNodeEnum.sys [26976 2017-08-30] (WDKTestCert jy.ahn,130269026254766932 -> )
    R1 AutoSave; C:\Windows\System32\DRIVERS\AutoSave.sys [36896 2009-08-13] (Avanquest North America Inc. -> Avanquest)
    S3 avc3; C:\Windows\System32\DRIVERS\avc3.sys [1605376 2016-11-23] (Bitdefender SRL -> BitDefender)
    S3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [878072 2016-11-23] (Bitdefender SRL -> BitDefender)
    R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [179376 2018-08-16] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
    R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [169864 2018-08-16] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
    R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [44488 2018-08-16] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
    R3 BcmGnssBus; C:\Windows\System32\drivers\BcmGnssBus.sys [130696 2017-01-16] (Broadcom Corporation -> Broadcom Corporation)
    S0 cmdboot; C:\Windows\System32\DRIVERS\cmdboot.sys [17872 2019-03-18] (Microsoft Windows Early Launch Anti-malware Publisher -> COMODO)
    R1 cmdcss; C:\Windows\system32\drivers\cmdcss.sys [125000 2018-02-28] (Comodo Security Solutions, Inc. -> COMODO)
    R1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys [38848 2019-10-16] (Comodo Security Solutions, Inc. -> COMODO)
    R1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [841408 2019-10-16] (Comodo Security Solutions, Inc. -> COMODO)
    R1 cmdhlp; C:\Windows\system32\DRIVERS\cmdhlp.sys [47080 2019-10-16] (Comodo Security Solutions, Inc. -> COMODO)
    R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [246912 2019-02-16] (Kaspersky Lab -> AO Kaspersky Lab)
    S3 ddmdrv; C:\Windows\system32\ddmdrv.sys [35760 2016-12-27] (CHENGDU AOMEI Tech Co., Ltd. -> )
    R3 dptf_acpi; C:\Windows\System32\drivers\dptf_acpi.sys [72576 2016-12-15] (Intel Corporation -> Intel Corporation)
    R3 dptf_cpu; C:\Windows\System32\drivers\dptf_cpu.sys [67968 2016-12-15] (Intel Corporation -> Intel Corporation)
    R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [154336 2020-04-02] (ESET, spol. s r.o. -> ESET)
    S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [15800 2020-04-01] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
    R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [188872 2020-04-02] (ESET, spol. s r.o. -> ESET)
    R1 epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [115960 2020-04-02] (ESET, spol. s r.o. -> ESET)
    R3 esif_lf; C:\Windows\system32\DRIVERS\esif_lf.sys [355200 2016-12-15] (Intel Corporation -> Intel Corporation)
    R3 iaLPSS2_GPIO2; C:\Windows\System32\drivers\iaLPSS2_GPIO2.sys [89912 2016-10-26] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation)
    R0 ignis; C:\Windows\System32\drivers\ignis.sys [300840 2016-08-15] (Bitdefender SRL -> Bitdefender)
    R3 IMX241; C:\Windows\System32\drivers\imx241.sys [154528 2017-03-19] (Intel Corporation -> Intel Corporation)
    R3 IMX258; C:\Windows\System32\drivers\imx258.sys [167840 2017-03-19] (Intel Corporation -> Intel Corporation)
    R1 inspect; C:\Windows\system32\DRIVERS\inspect.sys [129208 2019-10-16] (Comodo Security Solutions, Inc. -> COMODO)
    R1 isedrv; C:\Windows\system32\drivers\isedrv.sys [63256 2018-08-30] (Comodo Security Solutions, Inc. -> COMODO)
    R3 keycrypt; C:\Windows\System32\DRIVERS\KeyCrypt64.sys [76520 2014-12-30] (Zemana Ltd. -> Zemana Ltd.)
    R0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [79768 2020-04-11] (Kaspersky Lab -> AO Kaspersky Lab)
    R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [145504 2020-04-11] (Kaspersky Lab -> AO Kaspersky Lab)
    R1 kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [93312 2019-03-12] (Kaspersky Lab -> AO Kaspersky Lab)
    S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [37816 2020-04-11] (Microsoft Windows Early Launch Anti-malware Publisher -> AO Kaspersky Lab)
    R3 klflt; C:\Windows\system32\DRIVERS\klflt.sys [251800 2020-04-11] (Kaspersky Lab -> AO Kaspersky Lab)
    R1 klgse; C:\Windows\System32\DRIVERS\klgse.sys [586496 2020-01-27] (Kaspersky Lab -> AO Kaspersky Lab)
    R1 klhk; C:\Windows\system32\DRIVERS\klhk.sys [1163216 2020-01-24] (Kaspersky Lab -> AO Kaspersky Lab)
    R3 klids; C:\ProgramData\Kaspersky Lab\AVP20.0\Bases\klids.sys [214592 2020-04-21] (Kaspersky Lab -> AO Kaspersky Lab)
    R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [998296 2020-04-11] (Kaspersky Lab -> AO Kaspersky Lab)
    R1 klim6; C:\Windows\system32\DRIVERS\klim6.sys [58192 2019-03-19] (Kaspersky Lab -> AO Kaspersky Lab)
    R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [79760 2020-04-11] (Kaspersky Lab -> AO Kaspersky Lab)
    R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [59512 2019-03-18] (Kaspersky Lab -> AO Kaspersky Lab)
    R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [51328 2019-03-13] (Kaspersky Lab -> AO Kaspersky Lab)
    S3 klpnpflt; C:\Windows\system32\DRIVERS\klpnpflt.sys [45904 2019-03-10] (Kaspersky Lab -> AO Kaspersky Lab)
    R3 kltap; C:\Windows\System32\drivers\kltap.sys [48592 2018-03-16] (AnchorFree Inc -> The OpenVPN Project)
    R0 klupd_klif_arkmon; C:\Windows\System32\Drivers\klupd_klif_arkmon.sys [256752 2020-04-21] (Kaspersky Lab -> AO Kaspersky Lab)
    R3 klupd_klif_kimul; C:\Windows\System32\Drivers\klupd_klif_kimul.sys [99152 2020-04-21] (Kaspersky Lab -> AO Kaspersky Lab)
    R3 klupd_klif_klark; C:\Windows\System32\Drivers\klupd_klif_klark.sys [309968 2020-04-23] (Kaspersky Lab -> AO Kaspersky Lab)
    R0 klupd_klif_klbg; C:\Windows\System32\Drivers\klupd_klif_klbg.sys [117496 2020-04-21] (Kaspersky Lab -> AO Kaspersky Lab)
    R3 klupd_klif_mark; C:\Windows\System32\Drivers\klupd_klif_mark.sys [206880 2020-04-23] (Kaspersky Lab -> AO Kaspersky Lab)
    R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [105600 2019-03-05] (Kaspersky Lab -> AO Kaspersky Lab)
    R1 klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [211048 2020-04-11] (Kaspersky Lab -> AO Kaspersky Lab)
    R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [232344 2020-04-11] (Kaspersky Lab -> AO Kaspersky Lab)
    S3 MdmIf; C:\Windows\System32\Drivers\MdmIf.sys [38816 2017-11-13] (WDKTestCert MBBDriverBuild,131533048005359657 -> Samsung Electronics Co., Ltd.)
    S3 ModemCtrl; C:\Windows\System32\drivers\ModemCtrl.sys [44480 2017-11-13] (WDKTestCert MBBDriverBuild,131533048005359657 -> Samsung Electronics Co., Ltd.)
    R3 PenS2Helper; C:\Windows\system32\DRIVERS\PenS2Helper.sys [45808 2017-09-28] (Microsoft Windows Hardware Compatibility Publisher -> )
    R3 Qcamain10x64; C:\Windows\System32\drivers\Qcamain10x64.sys [2328488 2017-11-08] (Qualcomm Atheros -> Qualcomm Atheros, Inc.)
    R1 SafiDrv; C:\Windows\System32\drivers\SafiDrv.sys [43136 2017-10-09] (Windows Phone OEM Root 2013 (TEST ONLY) -> Samsung Electronics Co.,Ltd.)
    R1 SAMOPanel; C:\Windows\system32\DRIVERS\SAMOPanel.sys [137168 2017-05-11] (Microsoft Windows Hardware Compatibility Publisher -> Samsung Electronics Co.,Ltd.)
    R3 TchS2Helper; C:\Windows\System32\drivers\TchS2Helper.sys [30840 2017-02-02] (Microsoft Windows Hardware Compatibility Publisher -> )
    S3 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [485512 2016-04-28] (Bitdefender SRL -> BitDefender S.R.L.)
    U5 UnlockerDriver5; D:\Applications install?es\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] (Empty Loop -> )
    R3 VirtualButtons; C:\Windows\System32\drivers\VirtualButtons.sys [42000 2016-10-31] (Intel(R) Software -> Intel Corporation)
    S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44608 2017-09-29] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
    S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [309144 2017-09-29] (Microsoft Windows -> Microsoft Corporation)
    S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119192 2017-09-29] (Microsoft Windows -> Microsoft Corporation)
    S3 wmbclass; C:\Windows\System32\drivers\wmbclass.sys [337920 2017-09-29] (Microsoft Windows -> Microsoft Corporation)
    S1 epp; \??\K:\EEK\bin64\epp.sys [X]
    S3 WinRing0_1_2_0; \??\C:\Users\nalb fait moins peur\AppData\Local\Temp\tmpBF01.tmp [X] <==== ATTENTION

    ==================== NetSvcs (Avec liste blanche) ===================

    (Si un ?l?ment est inclus dans le fichier fixlist.txt, il sera supprim? du Registre. Le fichier ne sera pas d?plac?, sauf s'il est inscrit s?par?ment.)


    ==================== Trois mois (cr??s) ===================

    (Si un ?l?ment est inclus dans le fichier fixlist.txt, le fichier/dossier sera d?plac?.)

    2020-04-25 14:32 - 2020-04-25 14:32 - 000001651 _____ C:\Users\nalb fait moins peur\Desktop\Radeon Software Adrenalin 2019 Virtuel.lnk
    2020-04-25 14:31 - 2020-04-25 14:31 - 000001589 _____ C:\Users\nalb fait moins peur\Desktop\pctuneupmaestro_setup Virtuel.lnk
    2020-04-25 14:29 - 2020-04-25 14:29 - 000001587 _____ C:\Users\nalb fait moins peur\Desktop\pccleanmaestro_setup Virtuel.lnk
    2020-04-25 14:28 - 2020-04-25 14:28 - 000001587 _____ C:\Users\nalb fait moins peur\Desktop\O&O ShutUp10 Virtuel.lnk
    2020-04-25 14:27 - 2020-04-25 14:27 - 000001649 _____ C:\Users\nalb fait moins peur\Desktop\Setup Application Virtuel.lnk
    2020-04-25 14:24 - 2020-04-25 14:24 - 000001417 _____ C:\Users\nalb fait moins peur\Desktop\Readiris 17 build 9 cd19_004 Virtuel.lnk
    2020-04-25 14:24 - 2020-04-25 14:24 - 000001397 _____ C:\Users\nalb fait moins peur\Desktop\MAGIX VR-X Player setup Virtuel.lnk
    2020-04-25 14:23 - 2020-04-25 14:23 - 000001471 _____ C:\Users\nalb fait moins peur\Desktop\PackageTracer.lnk
    2020-04-25 14:23 - 2020-04-25 14:23 - 000001409 _____ C:\Users\nalb fait moins peur\Desktop\HD Video Player Setup Virtuel.lnk
    2020-04-25 14:22 - 2020-04-25 14:22 - 000001519 _____ C:\Users\nalb fait moins peur\Desktop\CloseAll Setup Virtuel.lnk
    2020-04-25 14:21 - 2020-04-25 14:21 - 000001529 _____ C:\Users\nalb fait moins peur\Desktop\Adds classic shell features to Windows 7 and Windows 8 Virtuel.lnk
    2020-04-25 14:04 - 2020-04-25 14:04 - 000002264 _____ C:\Users\Public\Desktop\Tweaking.com - Registry Backup.lnk
    2020-04-25 14:03 - 2020-04-25 14:04 - 000016677 _____ C:\Windows\Tweaking.com - Registry Backup Setup Log.txt
    2020-04-25 14:03 - 2020-04-25 14:03 - 000000000 ____D C:\Program Files (x86)\Tweaking.com
    2020-04-25 14:03 - 2020-04-25 09:27 - 005198336 _____ (AVAST Software) C:\Users\nalb fait moins peur\Desktop\aswMBR.exe
    2020-04-25 13:34 - 2020-04-25 14:11 - 000836062 _____ C:\Windows\ntbtlog.txt
    2020-04-25 13:34 - 2020-04-25 13:34 - 000000214 _____ C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job
    2020-04-25 04:03 - 2020-04-25 04:03 - 000000000 ___HD C:\$WINDOWS.~BT
    2020-04-25 03:58 - 2020-04-25 03:58 - 000055243 _____ C:\Users\nalb fait moins peur\Desktop\Shortcut_Module_25_04_2020_03_58_52.txt
    2020-04-25 03:07 - 2020-04-25 03:58 - 000055243 _____ C:\Shortcut_Module_25_04_2020_03_58_52.txt
    2020-04-25 00:25 - 2020-04-25 02:01 - 000060024 ____N C:\AdsFix.txt
    2020-04-25 00:23 - 2020-04-25 00:23 - 000000000 ____D C:\Users\nalb fait moins peur\Desktop\mbar
    2020-04-25 00:19 - 2020-04-24 20:46 - 005726104 _____ (SOSVirus) C:\Users\nalb fait moins peur\Desktop\AdsFix.exe
    2020-04-25 00:12 - 2020-04-25 00:14 - 000001179 _____ C:\Users\nalb fait moins peur\Desktop\Registry First Aid, the easy powerful registry maintenance p Virtuel.lnk
    2020-04-24 19:45 - 2020-04-24 19:45 - 000001217 _____ C:\Users\nalb fait moins peur\Desktop\TweakBit PCRepairKit Portable Launcher Virtuel.lnk
    2020-04-24 19:44 - 2020-04-24 19:44 - 000001223 _____ C:\Users\nalb fait moins peur\Desktop\Boris FX Continuum Plug-ins for Cyberlink Setup Virtuel.lnk
    2020-04-24 19:44 - 2020-04-24 19:44 - 000001179 _____ C:\Users\nalb fait moins peur\Desktop\Disk Analyzer Pro Virtuel.lnk
    2020-04-24 19:44 - 2020-04-24 19:44 - 000001175 _____ C:\Users\nalb fait moins peur\Desktop\AdsFix Virtuel.lnk
    2020-04-24 19:43 - 2020-04-24 19:43 - 000001221 _____ C:\Users\nalb fait moins peur\Desktop\Windows UltraUXThemePatcher Virtuel.lnk
    2020-04-24 19:42 - 2020-04-24 19:42 - 000001277 _____ C:\Users\nalb fait moins peur\Desktop\Tweaking.lnk
    2020-04-24 19:42 - 2020-04-24 19:42 - 000001253 _____ C:\Users\nalb fait moins peur\Desktop\Restore Point Creator Virtuel.lnk
    2020-04-24 19:41 - 2020-04-24 19:41 - 000001231 _____ C:\Users\nalb fait moins peur\Desktop\PC Pitstop Scheduler Service Virtuel.lnk
    2020-04-24 19:40 - 2020-04-24 19:40 - 000001261 _____ C:\Users\nalb fait moins peur\Desktop\ManageActivation Virtuel.lnk
    2020-04-24 19:40 - 2020-04-24 19:40 - 000001197 _____ C:\Users\nalb fait moins peur\Desktop\Notepad3 Virtuel.lnk
    2020-04-24 19:40 - 2020-04-24 19:40 - 000001197 _____ C:\Users\nalb fait moins peur\Desktop\MiniPath 1 Build 161 Virtuel.lnk
    2020-04-24 19:38 - 2020-04-24 19:38 - 000001265 _____ C:\Users\nalb fait moins peur\Desktop\System Monitor Virtuel.lnk
    2020-04-24 19:38 - 2020-04-24 19:38 - 000001225 _____ C:\Users\nalb fait moins peur\Desktop\wondershare-mobiletrans_setup_full1352.lnk
    2020-04-24 19:38 - 2020-04-24 19:38 - 000001187 _____ C:\Users\nalb fait moins peur\Desktop\noclone Virtuel.lnk
    2020-04-24 19:37 - 2020-04-24 19:37 - 000001245 _____ C:\Users\nalb fait moins peur\Desktop\Everything Setup Virtuel.lnk
    2020-04-24 19:37 - 2020-04-24 19:37 - 000001209 _____ C:\Users\nalb fait moins peur\Desktop\epm_free_installer Virtuel.lnk
    2020-04-24 19:37 - 2020-04-24 19:37 - 000001189 _____ C:\Users\nalb fait moins peur\Desktop\KpRm By Kernel-Panik Virtuel.lnk
    2020-04-24 19:37 - 2020-04-24 19:37 - 000001179 _____ C:\Users\nalb fait moins peur\Desktop\Junkware Removal Tool Virtuel.lnk
    2020-04-24 19:36 - 2020-04-24 19:36 - 000001203 _____ C:\Users\nalb fait moins peur\Desktop\Diag_portable64 Virtuel.lnk
    2020-04-24 19:36 - 2020-04-24 19:36 - 000001197 _____ C:\Users\nalb fait moins peur\Desktop\Removal tools cleaner Virtuel.lnk
    2020-04-24 19:35 - 2020-04-24 19:35 - 000001219 _____ C:\Users\nalb fait moins peur\Desktop\Farbar Recovery Scan Tool Virtuel.lnk
    2020-04-24 19:34 - 2020-04-24 19:34 - 000001203 _____ C:\Users\nalb fait moins peur\Desktop\UVK - Ultra Virus Killer Portable Virtuel.lnk
    2020-04-24 19:33 - 2020-04-24 19:33 - 000001285 _____ C:\Users\nalb fait moins peur\Desktop\Continuum Online Documentation Virtuel.lnk
    2020-04-24 19:33 - 2020-04-24 19:33 - 000001259 _____ C:\Users\nalb fait moins peur\Desktop\youtubevideouploader Virtuel.lnk
    2020-04-24 19:33 - 2020-04-24 19:33 - 000001255 _____ C:\Users\nalb fait moins peur\Desktop\Wise YouTube Downloader Virtuel.lnk
    2020-04-24 19:32 - 2020-04-24 19:32 - 000001255 _____ C:\Users\nalb fait moins peur\Desktop\Wise Folder Hider Virtuel.lnk
    2020-04-24 19:32 - 2020-04-24 19:32 - 000001255 _____ C:\Users\nalb fait moins peur\Desktop\Winamp Installer Virtuel.lnk
    2020-04-24 19:32 - 2020-04-24 19:32 - 000001247 _____ C:\Users\nalb fait moins peur\Desktop\WinRAR archiver Virtuel.lnk
    2020-04-24 19:31 - 2020-04-24 19:31 - 000001299 _____ C:\Users\nalb fait moins peur\Desktop\ultracopier-windows-x86_64-2.2.3.lnk
    2020-04-24 19:31 - 2020-04-24 19:31 - 000001233 _____ C:\Users\nalb fait moins peur\Desktop\Verbose Text to Speech Virtuel.lnk
    2020-04-24 19:30 - 2020-04-24 19:30 - 000001309 _____ C:\Users\nalb fait moins peur\Desktop\MAGIX Video deluxe (en-US) Virtuel.lnk
    2020-04-24 19:30 - 2020-04-24 19:30 - 000001259 _____ C:\Users\nalb fait moins peur\Desktop\Wondershare TidyMyMusic Setup Virtuel.lnk
    2020-04-24 19:30 - 2020-04-24 19:30 - 000001249 _____ C:\Users\nalb fait moins peur\Desktop\TeraCopy Setup Virtuel.lnk
    2020-04-24 19:30 - 2020-04-24 19:30 - 000001243 _____ C:\Users\nalb fait moins peur\Desktop\UCheck Installer Virtuel.lnk
    2020-04-24 19:29 - 2020-04-24 19:29 - 000001253 _____ C:\Users\nalb fait moins peur\Desktop\tb_free_installer Virtuel.lnk
    2020-04-24 19:28 - 2020-04-25 00:11 - 000001205 _____ C:\Users\nalb fait moins peur\Desktop\Protect your privacy by finding and deleting all traces of y Virtuel.lnk
    2020-04-24 19:28 - 2020-04-24 19:28 - 000001261 _____ C:\Users\nalb fait moins peur\Desktop\Start Menu Reviver Virtuel.lnk
    2020-04-24 19:27 - 2020-04-24 19:27 - 000001265 _____ C:\Users\nalb fait moins peur\Desktop\QuickDiag Virtuel.lnk
    2020-04-24 19:27 - 2020-04-24 19:27 - 000001251 _____ C:\Users\nalb fait moins peur\Desktop\Soft4Boost Update Checker Setup Virtuel.lnk
    2020-04-24 19:27 - 2020-04-24 19:27 - 000001235 _____ C:\Users\nalb fait moins peur\Desktop\MiniTool MovieMaker Setup Virtuel.lnk
    2020-04-24 19:26 - 2020-04-24 19:26 - 000001285 _____ C:\Users\nalb fait moins peur\Desktop\KeepVid Music Tag Editor Setup Virtuel.lnk
    2020-04-24 19:26 - 2020-04-24 19:26 - 000001285 _____ C:\Users\nalb fait moins peur\Desktop\Free YouTube Uploader Setup Virtuel.lnk
    2020-04-24 19:26 - 2020-04-24 19:26 - 000001251 _____ C:\Users\nalb fait moins peur\Desktop\Malwarebytes Anti-Rootkit Virtuel.lnk
    2020-04-24 19:25 - 2020-04-24 19:25 - 000001261 _____ C:\Users\nalb fait moins peur\Desktop\wondershare-filmora_setup_full846.lnk
    2020-04-24 19:25 - 2020-04-24 19:25 - 000001249 _____ C:\Users\nalb fait moins peur\Desktop\Avanquest Connection Manager Virtuel.lnk
    2020-04-24 19:25 - 2020-04-24 19:25 - 000001237 _____ C:\Users\nalb fait moins peur\Desktop\Microsoft .NET Framework 4.5.lnk
    2020-04-24 19:25 - 2020-04-24 19:25 - 000001235 _____ C:\Users\nalb fait moins peur\Desktop\FastMove Setup Virtuel.lnk
    2020-04-24 19:24 - 2020-04-24 19:24 - 000001265 _____ C:\Users\nalb fait moins peur\Desktop\Removable Media Antivirus.lnk
    2020-04-24 19:24 - 2020-04-24 19:24 - 000001251 _____ C:\Users\nalb fait moins peur\Desktop\Driver Easy Setup Virtuel.lnk
    2020-04-24 19:24 - 2020-04-24 19:24 - 000001249 _____ C:\Users\nalb fait moins peur\Desktop\eCarteBleue_LBP Virtuel.lnk
    2020-04-24 19:23 - 2020-04-24 19:23 - 000001289 _____ C:\Users\nalb fait moins peur\Desktop\Cigati Windows Backup Recovery(Demo) v19.lnk
    2020-04-24 19:23 - 2020-04-24 19:23 - 000001271 _____ C:\Users\nalb fait moins peur\Desktop\ Virtuel.lnk
    2020-04-24 19:23 - 2020-04-24 19:23 - 000001247 _____ C:\Users\nalb fait moins peur\Desktop\SysInfoTools BKF Repair(Demo) v4.lnk
    2020-04-24 19:23 - 2020-04-24 19:23 - 000001239 _____ C:\Users\nalb fait moins peur\Desktop\SysTools BKF Recovery v6.lnk
    2020-04-24 19:23 - 2020-04-24 19:23 - 000001235 _____ C:\Users\nalb fait moins peur\Desktop\DiffView Virtuel.lnk
    2020-04-24 19:22 - 2020-04-24 19:22 - 000001285 _____ C:\Users\nalb fait moins peur\Desktop\20327.MessengerHub.16.2003.lnk
    2020-04-24 19:22 - 2020-04-24 19:22 - 000001263 _____ C:\Users\nalb fait moins peur\Desktop\Aryson BKF Repair(Demo) v17.lnk
    2020-04-24 19:21 - 2020-04-24 19:41 - 000001221 _____ C:\Users\nalb fait moins peur\Desktop\Setup_Uninstall Virtuel.lnk
    2020-04-24 19:19 - 2020-04-24 19:19 - 000001269 _____ C:\Users\nalb fait moins peur\Desktop\ZHPCleaner Virtuel.lnk
    2020-04-24 19:18 - 2020-04-24 19:18 - 000001329 _____ C:\Users\nalb fait moins peur\Desktop\ultracopier-windows-x86_64-2.2.4.lnk
    2020-04-24 19:18 - 2020-04-24 19:18 - 000001275 _____ C:\Users\nalb fait moins peur\Desktop\ESET Online Scanner Virtuel.lnk
    2020-04-24 19:16 - 2020-04-24 19:16 - 000001279 _____ C:\Users\nalb fait moins peur\Desktop\EnigmaSoft Installer Virtuel.lnk
    2020-04-24 19:13 - 2020-04-24 19:13 - 000001281 _____ C:\Users\nalb fait moins peur\Desktop\RoboForm Installer and Uninstaller Virtuel.lnk
    2020-04-24 19:09 - 2020-04-24 19:09 - 000001259 _____ C:\Users\nalb fait moins peur\Desktop\SysTools PDF Bates Numberer Setup Virtuel.lnk
    2020-04-24 19:05 - 2020-04-24 23:58 - 000011878 _____ C:\Users\nalb fait moins peur\Downloads\crash.dmp
    2020-04-24 18:56 - 2020-04-24 18:56 - 000001289 _____ C:\Users\nalb fait moins peur\Desktop\NiceCopier Setup Virtuel.lnk
    2020-04-24 18:56 - 2020-04-24 18:56 - 000001255 _____ C:\Users\nalb fait moins peur\Desktop\Setup Launcher Virtuel.lnk
    2020-04-24 18:55 - 2020-04-24 18:55 - 000001297 _____ C:\Users\nalb fait moins peur\Desktop\IObit Software Updater Virtuel.lnk
    2020-04-24 18:54 - 2020-04-24 18:54 - 000001291 _____ C:\Users\nalb fait moins peur\Desktop\inPixio Photo Studio Virtuel.lnk
    2020-04-24 18:53 - 2020-04-24 18:53 - 000001281 _____ C:\Users\nalb fait moins peur\Desktop\Expert PDF 14 Installer Virtuel.lnk
    2020-04-24 18:47 - 2020-04-24 18:47 - 000001289 _____ C:\Users\nalb fait moins peur\Desktop\AutoSave Essentials 3.lnk
    2020-04-24 18:47 - 2020-04-24 18:47 - 000001265 _____ C:\Users\nalb fait moins peur\Desktop\Copy Handler Setup Virtuel.lnk
    2020-04-24 18:45 - 2020-04-24 18:45 - 000001297 _____ C:\Users\nalb fait moins peur\Desktop\Unlocker1.9.lnk
    2020-04-24 18:41 - 2020-04-24 18:41 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\VirtualStore
    2020-04-24 18:39 - 2020-04-24 18:39 - 000001285 _____ C:\Users\nalb fait moins peur\Desktop\AntiLogger Installation Virtuel.lnk
    2020-04-24 18:37 - 2020-04-24 18:37 - 000000000 ____D C:\Windows\AppReadiness
    2020-04-24 18:37 - 2020-04-24 18:37 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\PanelManager
    2020-04-24 18:37 - 2020-04-24 18:37 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\LoopBackService
    2020-04-24 16:43 - 2020-04-24 16:43 - 000001967 _____ C:\Users\Public\Desktop\Configure immunization.lnk
    2020-04-24 16:37 - 2020-04-24 16:37 - 000000000 ____D C:\MATS
    2020-04-24 15:36 - 2020-04-24 15:36 - 000000000 ___RH C:\Windows\SysWOW64\Drivers\hfile.txt
    2020-04-24 15:29 - 2020-04-24 15:29 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\DBG
    2020-04-24 14:14 - 2020-04-25 04:06 - 000000000 ____D C:\Windows\CbsTemp
    2020-04-24 13:57 - 2020-04-24 13:57 - 000000000 ____D C:\Windows\SysWOW64\Adobe
    2020-04-24 13:56 - 2020-04-24 13:56 - 000000000 ____D C:\Windows\SysWOW64\directx
    2020-04-24 13:23 - 2020-04-24 13:24 - 000000000 ____D C:\AdwCleaner
    2020-04-24 13:16 - 2020-04-24 16:40 - 000000000 ____D C:\Program Files\SUPERAntiSpyware
    2020-04-24 13:16 - 2020-04-24 13:16 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\SUPERAntiSpyware.com
    2020-04-24 13:16 - 2020-04-24 13:16 - 000000000 ____D C:\ProgramData\SUPERSetup
    2020-04-24 13:16 - 2020-04-24 13:16 - 000000000 ____D C:\ProgramData\SUPERAntiSpyware.com
    2020-04-24 13:08 - 2020-04-24 13:08 - 000000000 ____D C:\Program Files\Malwarebytes
    2020-04-24 13:07 - 2020-04-25 04:07 - 000000000 ____D C:\Windows\Panther
    2020-04-24 13:05 - 2020-04-24 16:43 - 000054572 _____ C:\Users\nalb fait moins peur\Desktop\Ultra Virus Killer Report.htm
    2020-04-24 13:05 - 2020-04-24 13:05 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\MultipleRebootScheduler
    2020-04-24 13:01 - 2020-04-24 13:01 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\2Browse
    2020-04-24 12:51 - 2020-04-25 03:32 - 000000000 ____D C:\ProgramData\Ultra Adware Killer
    2020-04-24 12:30 - 2020-04-24 12:30 - 000002162 _____ C:\Users\nalb fait moins peur\AppData\Roaming\Microsoft\Windows\Start Menu\Complete Internet Repair.lnk
    2020-04-24 12:30 - 2020-04-24 12:30 - 000002138 _____ C:\Users\Public\Desktop\Complete Internet Repair.lnk
    2020-04-24 12:30 - 2020-04-24 12:30 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\Rizonesoft
    2020-04-24 12:30 - 2020-04-24 12:30 - 000000000 ____D C:\Program Files\Rizonesoft
    2020-04-24 12:07 - 2020-04-24 12:07 - 000000000 ____D C:\Windows\system32\Tasks\TweakBit
    2020-04-24 12:06 - 2020-04-24 12:06 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\TweakBit
    2020-04-24 12:06 - 2020-04-24 12:06 - 000000000 ____D C:\ProgramData\TweakBit
    2020-04-24 12:06 - 2020-04-24 12:06 - 000000000 ____D C:\ProgramData\TEMP
    2020-04-24 12:06 - 2020-04-24 12:06 - 000000000 ____D C:\ProgramData\BSD
    2020-04-24 09:16 - 2020-04-24 16:37 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\ElevatedDiagnostics
    2020-04-24 09:14 - 2020-04-24 11:57 - 000677304 ____N C:\QuickDiag.txt
    2020-04-24 09:14 - 2020-04-24 09:25 - 000000000 ____D C:\QuickDiag
    2020-04-24 08:43 - 2020-04-24 08:43 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\RoboForm
    2020-04-24 08:42 - 2020-04-24 08:42 - 000000000 ____D C:\Program Files (x86)\Siber Systems
    2020-04-24 08:41 - 2020-04-24 08:41 - 023962760 _____ (Siber Systems) C:\Users\nalb fait moins peur\Downloads\RoboForm-Setup-displ.exe
    2020-04-24 08:11 - 2020-04-24 08:11 - 000002105 _____ C:\Users\Public\Desktop\Boost mode manager.lnk
    2020-04-24 08:11 - 2020-04-24 08:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RSUPPORT
    2020-04-24 08:11 - 2020-04-24 08:11 - 000000000 ____D C:\Program Files (x86)\RSUPPORT
    2020-04-24 08:08 - 2020-04-24 08:08 - 013694016 _____ (RSUPPORT ) C:\Users\nalb fait moins peur\Downloads\boostModeManager.exe
    2020-04-24 08:07 - 2020-04-24 08:11 - 045741832 _____ (RSUPPORT ) C:\Users\nalb fait moins peur\Downloads\mobizen.exe
    2020-04-24 07:58 - 2020-04-24 07:58 - 000000764 _____ C:\Users\nalb fait moins peur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
    2020-04-24 07:58 - 2020-04-24 07:58 - 000000665 _____ C:\Users\nalb fait moins peur\Desktop\ESET Online Scanner.lnk
    2020-04-24 07:57 - 2020-04-24 07:57 - 014566496 _____ (ESET spol. s r.o.) C:\Users\nalb fait moins peur\Downloads\esetonlinescanner.exe
    2020-04-23 20:08 - 2020-04-24 19:19 - 000001315 _____ C:\Users\nalb fait moins peur\Desktop\Tech tool store Virtuel.lnk
    2020-04-23 20:08 - 2020-04-23 20:15 - 000000000 ____D C:\Users\nalb fait moins peur\Downloads\Tech tool store tools
    2020-04-23 20:08 - 2020-04-23 20:08 - 000001275 _____ C:\Users\nalb fait moins peur\Desktop\Audio_Video To Exe Virtuel.lnk
    2020-04-23 20:07 - 2020-04-23 20:07 - 000001269 _____ C:\Users\nalb fait moins peur\Desktop\Adlice DiffView Installer Virtuel.lnk
    2020-04-23 20:06 - 2020-04-23 20:06 - 000001273 _____ C:\Users\nalb fait moins peur\Desktop\YaraEditor Installer Virtuel.lnk
    2020-04-23 20:05 - 2020-04-24 19:17 - 000001275 _____ C:\Users\nalb fait moins peur\Desktop\tuneup360_full798 Virtuel.lnk
    2020-04-23 19:58 - 2020-04-23 19:58 - 006230072 _____ (Carifred) C:\Users\nalb fait moins peur\Downloads\TechToolStore.exe
    2020-04-23 19:51 - 2020-04-23 19:53 - 032176568 _____ (Adlice Software ) C:\Users\nalb fait moins peur\Downloads\DiffView_setup.exe
    2020-04-23 19:49 - 2020-04-23 19:51 - 025249976 _____ (Adlice Software ) C:\Users\nalb fait moins peur\Downloads\YaraEditor_setup.exe
    2020-04-23 19:47 - 2020-04-23 19:47 - 004661048 _____ (Wondershare Software Co.,Ltd ) C:\Users\nalb fait moins peur\Downloads\tuneup360_full798.exe.part
    2020-04-23 19:47 - 2020-04-23 19:47 - 000000000 _____ C:\Users\nalb fait moins peur\Downloads\tuneup360_full798.exe
    2020-04-23 19:45 - 2020-04-25 00:20 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\Mozilla
    2020-04-23 19:45 - 2020-04-25 00:20 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\LocalLow\Mozilla
    2020-04-23 19:45 - 2020-04-24 14:11 - 000000000 ____D C:\Program Files\Firefox Developer Edition
    2020-04-23 19:45 - 2020-04-23 19:45 - 000001035 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox Developer Edition.lnk
    2020-04-23 19:45 - 2020-04-23 19:45 - 000001023 _____ C:\Users\Public\Desktop\Firefox Developer Edition.lnk
    2020-04-23 19:45 - 2020-04-23 19:45 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
    2020-04-23 19:45 - 2020-04-23 19:45 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\Mozilla
    2020-04-23 19:45 - 2020-04-23 19:45 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
    2020-04-23 19:42 - 2020-04-23 19:42 - 000312192 _____ (Mozilla) C:\Users\nalb fait moins peur\Downloads\Firefox Installer.exe
    2020-04-23 19:41 - 2020-04-23 19:42 - 004661048 _____ (Wondershare Software Co.,Ltd ) C:\Users\nalb fait moins peur\Downloads\Non confirm? 220114.crdownload
    2020-04-23 19:40 - 2020-04-23 19:40 - 000001259 _____ C:\Users\nalb fait moins peur\Desktop\Internet Explorer Virtuel.lnk
    2020-04-23 19:35 - 2020-04-24 14:11 - 000000000 ____D C:\Program Files (x86)\SysTools PDF Bates Numberer
    2020-04-23 19:35 - 2020-04-23 19:35 - 005597568 _____ (SysTools Software Pvt Ltd ) C:\Users\nalb fait moins peur\Downloads\pdf-bates.exe
    2020-04-23 19:35 - 2020-04-23 19:35 - 000001210 _____ C:\Users\Public\Desktop\SysTools PDF Bates Numberer.lnk
    2020-04-23 19:35 - 2020-04-23 19:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SysTools PDF Bates Numberer
    2020-04-23 19:18 - 2020-04-23 19:18 - 000000000 ____D C:\Program Files (x86)\Wondershare
    2020-04-23 19:16 - 2020-04-23 19:26 - 000000000 _____ C:\Users\nalb fait moins peur\Downloads\Wondershare-1-Click-PC-Care_7.5.0.exe
    2020-04-23 18:42 - 2020-04-25 03:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EnigmaSoft
    2020-04-23 18:42 - 2020-04-23 18:42 - 000000000 ____D C:\sh5ldr
    2020-04-23 18:42 - 2020-04-23 18:42 - 000000000 ____D C:\ProgramData\EnigmaSoft Limited
    2020-04-23 18:40 - 2020-04-23 18:40 - 000000000 ____D C:\Program Files\EnigmaSoft
    2020-04-23 18:36 - 2020-04-23 18:36 - 000000000 _____ C:\Users\nalb fait moins peur\Downloads\Non confirm? 981661.crdownload
    2020-04-23 18:09 - 2020-04-23 18:10 - 000000042 _____ C:\Windows\SysWOW64\guid.dat
    2020-04-23 18:07 - 2020-04-23 18:07 - 000057449 _____ C:\Windows\system32\NOTICE_mod
    2020-04-23 17:42 - 2020-04-25 13:33 - 000041470 _____ C:\Windows\system32\IMX258_REAR.aiqd
    2020-04-23 17:42 - 2020-04-25 13:33 - 000041470 _____ C:\Windows\system32\IMX241_FRONT.aiqd
    2020-04-23 17:39 - 2020-04-23 17:39 - 000122565 _____ C:\Users\nalb fait moins peur\Desktop\Shortcut_Module_23_04_2020_17_39_54.txt
    2020-04-23 17:18 - 2020-04-24 16:37 - 000004202 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{39A10AB5-6F0F-487A-9864-317876E5E65F}
    2020-04-23 16:17 - 2020-04-23 17:39 - 000122565 ____N C:\Shortcut_Module_23_04_2020_17_39_54.txt
    2020-04-23 16:17 - 2020-04-23 16:17 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\SafiAgent
    2020-04-23 16:13 - 2020-04-23 16:13 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\Avanquest
    2020-04-23 15:42 - 2020-04-23 15:42 - 000002169 _____ C:\Users\Public\Desktop\AutoSave Essentials.lnk
    2020-04-23 15:42 - 2020-04-23 15:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoSave Essentials
    2020-04-23 15:42 - 2020-04-23 15:42 - 000000000 ____D C:\ProgramData\Avanquest Software
    2020-04-23 15:42 - 2020-04-23 15:42 - 000000000 ____D C:\Program Files (x86)\Avanquest
    2020-04-23 14:41 - 2020-04-25 03:58 - 000000000 ____D C:\Shortcut_Module
    2020-04-23 13:43 - 2020-04-23 13:43 - 000049752 _____ (Zemana Ltd.) C:\Windows\system32\Drivers\AntiLog64.sys
    2020-04-23 13:43 - 2020-04-23 13:43 - 000000000 ___DC C:\ProgramData\{F35646A3-C04F-41A5-9259-C283F5B0AFFA}
    2020-04-23 13:42 - 2020-04-24 16:40 - 000000000 ____D C:\Program Files (x86)\AntiLogger
    2020-04-23 13:42 - 2020-04-23 13:42 - 000001101 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Expert PDF 14.lnk
    2020-04-23 13:42 - 2020-04-23 13:42 - 000000982 _____ C:\Users\Public\Desktop\AntiLogger.lnk
    2020-04-23 13:42 - 2020-04-23 13:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Expert PDF 14
    2020-04-23 13:42 - 2020-04-23 13:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AntiLogger
    2020-04-23 13:38 - 2020-04-23 13:42 - 000000000 ____D C:\Program Files\Expert PDF 14
    2020-04-23 13:38 - 2020-04-23 13:41 - 000000000 ____D C:\Program Files (x86)\Expert PDF 14
    2020-04-23 13:38 - 2020-04-23 13:38 - 000000000 ____D C:\Users\nalb fait moins peur\Documents\Expert PDF
    2020-04-23 13:36 - 2020-04-23 13:36 - 010413312 _____ (Avanquest Software) C:\Users\nalb fait moins peur\Downloads\AutoSaveEssentials_trial.exe
    2020-04-23 13:36 - 2020-04-23 13:36 - 010413312 _____ (Avanquest Software) C:\Users\nalb fait moins peur\Desktop\AutoSaveEssentials_trial.exe
    2020-04-23 13:33 - 2020-04-24 09:02 - 000000000 ____D C:\ProgramData\Expert PDF 14
    2020-04-23 13:33 - 2020-04-23 13:33 - 012303432 _____ (Avanquest Software) C:\Users\nalb fait moins peur\Downloads\Expert_PDF_Installer.exe
    2020-04-23 13:33 - 2020-04-23 13:33 - 012303432 _____ (Avanquest Software) C:\Users\nalb fait moins peur\Desktop\Expert_PDF_Installer.exe
    2020-04-23 13:31 - 2020-04-23 13:43 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\Zemana
    2020-04-23 13:31 - 2020-04-23 13:31 - 000000000 ____D C:\Windows\SysWOW64\ZALSDK_uninst
    2020-04-23 13:31 - 2020-04-23 13:31 - 000000000 ____D C:\Program Files (x86)\KeyCryptSDK
    2020-04-23 13:31 - 2014-12-30 13:31 - 007039960 _____ (Zemana Ltd.) C:\Windows\SysWOW64\ZALSDKCore.dll
    2020-04-23 13:31 - 2014-12-30 13:31 - 000076520 _____ (Zemana Ltd.) C:\Windows\system32\Drivers\KeyCrypt64.sys
    2020-04-23 13:29 - 2020-04-23 13:29 - 014740016 _____ (Zemana Ltd. ) C:\Users\nalb fait moins peur\Downloads\Zemana_AntiLogger_AQFR.exe
    2020-04-23 13:29 - 2020-04-23 13:29 - 014740016 _____ (Zemana Ltd. ) C:\Users\nalb fait moins peur\Desktop\Zemana_AntiLogger_AQFR.exe
    2020-04-23 13:26 - 2020-04-23 13:26 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\Macromedia
    2020-04-23 13:25 - 2020-04-23 13:25 - 000001360 _____ C:\Users\nalb fait moins peur\Desktop\inPixio Photo Studio 10.lnk
    2020-04-23 13:25 - 2020-04-23 13:25 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\inPixio
    2020-04-23 13:25 - 2020-04-23 13:25 - 000000000 ____D C:\Program Files (x86)\inPixio
    2020-04-23 13:24 - 2020-04-23 13:25 - 003187112 _____ (inPixio) C:\Users\nalb fait moins peur\Downloads\InPixio_PhotoStudio_FR_FT.exe
    2020-04-23 13:24 - 2020-04-23 13:25 - 003187112 _____ (inPixio) C:\Users\nalb fait moins peur\Desktop\InPixio_PhotoStudio_FR_FT.exe
    2020-04-23 13:21 - 2020-04-24 12:57 - 000000000 ____D C:\Program Files (x86)\UCBrowser
    2020-04-23 13:19 - 2020-04-23 13:26 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\UCBrowser
    2020-04-23 13:16 - 2020-04-23 13:16 - 000000000 ____D C:\ProgramData\ByteFence
    2020-04-23 13:15 - 2020-04-23 13:15 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\SYSSU
    2020-04-23 13:10 - 2020-04-23 13:21 - 000000140 _____ C:\Windows\Reimage.ini
    2020-04-23 13:04 - 2020-04-23 13:04 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\GoodgameEmpire_GG
    2020-04-23 13:03 - 2020-04-23 13:03 - 001346824 _____ (Avanquest Software ) C:\Users\nalb fait moins peur\Desktop\Smart-Privacy-Cleaner.exe
    2020-04-23 12:51 - 2020-04-23 12:51 - 002637824 _____ C:\Users\nalb fait moins peur\Desktop\shortcut-module.exe
    2020-04-23 12:40 - 2020-04-23 12:40 - 000001201 _____ C:\Users\Public\Desktop\AOMEI Partition Assistant Standard Edition (Fran?ais) 8.7.lnk
    2020-04-23 12:40 - 2020-04-23 12:40 - 000001024 ____N C:\AMTAG.BIN
    2020-04-23 12:40 - 2020-04-23 12:40 - 000000482 _____ C:\Windows\GA_OF.dat
    2020-04-23 12:40 - 2020-04-23 12:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Partition Assistant Standard Edition 8.7
    2020-04-23 12:40 - 2016-12-27 18:45 - 000035760 _____ C:\Windows\system32\ddmdrv.sys
    2020-04-23 12:40 - 2016-12-27 18:45 - 000033200 _____ C:\Windows\SysWOW64\ddmdrv.sys
    2020-04-23 12:40 - 2016-09-29 09:44 - 001298584 _____ C:\Windows\ddmmain.exe
    2020-04-23 12:39 - 2020-04-23 12:44 - 000000000 ____D C:\Program Files (x86)\AOMEI Partition Assistant
    2020-04-23 12:39 - 2020-03-24 16:53 - 002184744 _____ C:\Windows\ampa.exe
    2020-04-23 12:39 - 2017-02-28 14:20 - 000038320 _____ C:\Windows\SysWOW64\ampa.sys
    2020-04-23 12:39 - 2017-02-28 14:20 - 000038320 _____ C:\Windows\system32\ampa.sys
    2020-04-23 11:31 - 2020-04-24 13:22 - 000028272 _____ C:\Windows\system32\Drivers\truesight.sys
    2020-04-23 11:28 - 2020-04-24 13:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller
    2020-04-23 11:28 - 2020-04-24 13:20 - 000000000 ____D C:\Program Files\RogueKiller
    2020-04-23 11:18 - 2020-04-24 17:46 - 000000208 _____ C:\Windows\SysWOW64\AbBakConfig.dat
    2020-04-23 11:18 - 2020-04-24 17:46 - 000000150 _____ C:\Windows\SysWOW64\winsevr.dat
    2020-04-23 11:16 - 2017-09-01 18:12 - 000038320 _____ C:\Windows\system32\amwrtdrv.sys
    2020-04-23 11:16 - 2016-12-21 22:54 - 000051120 _____ C:\Windows\system32\ambakdrv.sys
    2020-04-23 11:16 - 2016-12-21 22:52 - 000171952 _____ C:\Windows\system32\ammntdrv.sys
    2020-04-23 11:15 - 2020-04-23 11:15 - 000000000 ____D C:\Program Files (x86)\AOMEI
    2020-04-23 11:04 - 2020-04-23 11:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Software Updater
    2020-04-23 10:57 - 2020-04-23 11:05 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\LocalLow\IObit
    2020-04-23 10:57 - 2020-04-23 10:57 - 000000000 ____D C:\Program Files (x86)\IObit
    2020-04-23 10:56 - 2020-04-23 17:24 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\IObit
    2020-04-23 10:40 - 2020-04-25 14:21 - 004327046 _____ C:\Windows\system32\Drivers\fvstore.dat
    2020-04-23 10:19 - 2020-04-23 10:21 - 012356104 _____ (IObit ) C:\Users\nalb fait moins peur\Downloads\iobit-software-updater-setup.exe
    2020-04-23 10:19 - 2020-04-23 10:21 - 012356104 _____ (IObit ) C:\Users\nalb fait moins peur\Desktop\iobit-software-updater-setup.exe
    2020-04-23 09:25 - 2020-04-23 09:25 - 000012288 _____ C:\Windows\SysWOW64\antimalware.unwanted_products.product_registry.kvdb
    2020-04-23 09:25 - 2020-04-23 09:25 - 000012288 _____ C:\Windows\SysWOW64\antimalware.unwanted_products.browser_extension_registry.kvdb
    2020-04-23 09:14 - 2020-04-24 13:18 - 000000000 ____D C:\Users\nalb fait moins peur\Desktop\unlocker-1-9-2
    2020-04-23 09:14 - 2020-04-23 09:14 - 000000000 ____D C:\Users\nalb fait moins peur\Downloads\unlocker-1-9-2
    2020-04-23 09:13 - 2020-04-23 09:13 - 001039290 _____ C:\Users\nalb fait moins peur\Downloads\unlocker-1-9-2.zip
    2020-04-23 09:13 - 2020-04-23 09:13 - 001039290 _____ C:\Users\nalb fait moins peur\Desktop\unlocker-1-9-2.zip
    2020-04-23 09:02 - 2020-04-23 09:02 - 000346112 _____ C:\Users\nalb fait moins peur\Downloads\Unlocker_1.9.2.msi
    2020-04-23 09:02 - 2020-04-23 09:02 - 000346112 _____ C:\Users\nalb fait moins peur\Desktop\Unlocker_1.9.2.msi
    2020-04-23 08:54 - 2020-04-24 14:11 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\Copy Handler
    2020-04-23 08:54 - 2020-04-23 08:54 - 007729656 _____ (J?zef Starosczyk ) C:\Users\nalb fait moins peur\Downloads\chsetup-1.44.exe
    2020-04-23 08:54 - 2020-04-23 08:54 - 007729656 _____ (J?zef Starosczyk ) C:\Users\nalb fait moins peur\Desktop\chsetup-1.44.exe
    2020-04-23 08:54 - 2020-04-23 08:54 - 000000857 _____ C:\Users\nalb fait moins peur\Desktop\Copy Handler.lnk
    2020-04-23 08:54 - 2020-04-23 08:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Copy Handler
    2020-04-23 08:54 - 2020-04-23 08:54 - 000000000 ____D C:\Program Files\Copy Handler
    2020-04-23 08:49 - 2020-04-23 08:51 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\NiceCopier
    2020-04-23 08:47 - 2020-04-23 08:49 - 000000000 ____D C:\Program Files (x86)\NiceCopier
    2020-04-23 08:47 - 2020-04-23 08:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NiceCopier
    2020-04-23 08:46 - 2020-04-23 08:46 - 011417191 _____ ( ) C:\Users\nalb fait moins peur\Downloads\NiceCopierSetup_15.02.27.exe
    2020-04-23 08:46 - 2020-04-23 08:46 - 011417191 _____ ( ) C:\Users\nalb fait moins peur\Desktop\NiceCopierSetup_15.02.27.exe
    2020-04-23 07:54 - 2020-04-23 07:54 - 015780508 _____ C:\Users\nalb fait moins peur\Downloads\ultracopier-windows-x86_64-2.2.4.0-setup (1).exe
    2020-04-23 07:54 - 2020-04-23 07:54 - 015780508 _____ C:\Users\nalb fait moins peur\Desktop\ultracopier-windows-x86_64-2.2.4.0-setup (1).exe
    2020-04-23 07:51 - 2020-04-23 07:51 - 015780508 _____ C:\Users\nalb fait moins peur\Downloads\ultracopier-windows-x86_64-2.2.4.0-setup.exe
    2020-04-23 07:51 - 2020-04-23 07:51 - 015780508 _____ C:\Users\nalb fait moins peur\Desktop\ultracopier-windows-x86_64-2.2.4.0-setup.exe
    2020-04-23 07:31 - 2020-04-23 07:31 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\Marcin_Szeniak
    2020-04-23 07:26 - 2020-04-24 14:11 - 000000000 ____D C:\Program Files\BCUninstaller
    2020-04-23 07:26 - 2020-04-23 07:26 - 000000913 _____ C:\Users\Public\Desktop\BCUninstaller.lnk
    2020-04-23 07:26 - 2020-04-23 07:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BCUninstaller
    2020-04-23 07:24 - 2020-04-23 07:24 - 006137720 _____ (Marcin Szeniak ) C:\Users\nalb fait moins peur\Downloads\BCUninstaller_4.16_setup.exe
    2020-04-23 07:24 - 2020-04-23 07:24 - 006137720 _____ (Marcin Szeniak ) C:\Users\nalb fait moins peur\Desktop\BCUninstaller_4.16_setup.exe
    2020-04-23 07:23 - 2020-04-24 07:58 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\ESET
    2020-04-22 21:51 - 2020-04-22 21:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
    2020-04-22 21:51 - 2020-04-22 21:51 - 000000000 ____D C:\Program Files\ESET
    2020-04-22 17:09 - 2020-04-24 14:11 - 000000000 ____D C:\ProgramData\tmp
    2020-04-22 17:09 - 2020-04-22 17:09 - 000000739 _____ C:\Users\Public\Desktop\Logiciel de cr?ation CEWE.lnk
    2020-04-22 17:09 - 2020-04-22 17:09 - 000000733 _____ C:\Users\Public\Desktop\IMPORTATEUR PHOTOS CEWE.lnk
    2020-04-22 17:09 - 2020-04-22 17:09 - 000000718 _____ C:\Users\Public\Desktop\GALERIE PHOTO CEWE.lnk
    2020-04-22 17:09 - 2020-04-22 17:09 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\CEF
    2020-04-22 17:09 - 2020-04-22 17:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logiciel de cr?ation CEWE
    2020-04-22 17:09 - 2020-04-22 17:09 - 000000000 ____D C:\ProgramData\hps
    2020-04-21 17:34 - 2020-04-25 00:22 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\TeraCopy
    2020-04-21 17:34 - 2020-04-21 17:34 - 000001725 _____ C:\ProgramData\Microsoft\Windows\Start Menu\TeraCopy.lnk
    2020-04-21 17:34 - 2020-04-21 17:34 - 000000853 _____ C:\Users\nalb fait moins peur\Desktop\TeraCopy.lnk
    2020-04-21 17:34 - 2020-04-21 17:34 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\Obsidium
    2020-04-21 17:34 - 2020-04-21 17:34 - 000000000 ____D C:\Users\nalb fait moins peur\.obs32
    2020-04-21 17:34 - 2020-04-21 17:34 - 000000000 ____D C:\Program Files\TeraCopy
    2020-04-21 16:55 - 2020-04-24 13:20 - 000000859 _____ C:\Users\Public\Desktop\RogueKiller.lnk
    2020-04-21 16:55 - 2020-04-23 11:17 - 000001280 _____ C:\Users\Public\Desktop\AOMEI Backupper Standard.lnk
    2020-04-21 16:55 - 2020-04-23 11:04 - 000001399 _____ C:\Users\Public\Desktop\IObit Software Updater.lnk
    2020-04-21 16:55 - 2020-04-21 16:55 - 000000000 ____D C:\Users\nalbf\OneDrive
    2020-04-21 16:55 - 2020-04-21 16:55 - 000000000 ____D C:\Users\nalbf\MicrosoftEdgeBackups
    2020-04-21 16:55 - 2020-04-21 16:55 - 000000000 ____D C:\Users\nalbf\IntelGraphicsProfiles
    2020-04-21 16:55 - 2020-04-21 05:48 - 202304800 _____ C:\Users\nalbf\Downloads\Power2Go_13.0.0718.0b_Essential_Essential_P2G190705-02.exe
    2020-04-21 16:55 - 2020-04-21 05:48 - 000002502 _____ C:\Users\Public\Desktop\O&O DiskImage Professional.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000002268 _____ C:\Users\Public\Desktop\Adaware Antivirus.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000002187 _____ C:\Users\Public\Desktop\WD Backup.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000002088 _____ C:\Users\Public\Desktop\MyPhoneExplorer.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000002085 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000002052 _____ C:\Users\Public\Desktop\SeaMonkey.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000001986 _____ C:\Users\Public\Desktop\Zoner Photo Studio X.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000001983 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000001905 _____ C:\Users\Public\Desktop\Bitwarden.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000001833 _____ C:\Users\Public\Desktop\ownCloud.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000001830 _____ C:\Users\Public\Desktop\MultiCommander (x64).lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000001719 _____ C:\Users\Public\Desktop\Bandizip.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000001368 _____ C:\Users\Public\Desktop\Paragon Partition Manager? 17 CE.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000001260 _____ C:\Users\Public\Desktop\Advanced SystemCare.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000001239 _____ C:\Users\Public\Desktop\Wise Folder Hider.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000001239 _____ C:\Users\Public\Desktop\Ashampoo UnInstaller 8.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000001191 _____ C:\Users\Public\Desktop\ProtonVPN.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000001188 _____ C:\Users\Public\Desktop\Wise PC 1stAid.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000001179 _____ C:\Users\Public\Desktop\COMODO Internet Security Complete.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000001164 _____ C:\Users\Public\Desktop\ALLPlayer Remote Control.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000001065 _____ C:\Users\Public\Desktop\Stereoscopic Player.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000001050 _____ C:\Users\Public\Desktop\Notepad++.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000001050 _____ C:\Users\Public\Desktop\eMule.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000001050 _____ C:\Users\Public\Desktop\BleachBit.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000001044 _____ C:\Users\Public\Desktop\Mumble.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000001020 _____ C:\Users\Public\Desktop\Autorun Organizer.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000001011 _____ C:\Users\Public\Desktop\Advanced IP Scanner.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000001008 _____ C:\Users\Public\Desktop\Waterfox.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000000990 _____ C:\Users\Public\Desktop\MiniTool Partition Wizard.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000000954 _____ C:\Users\Public\Desktop\WinUAE.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000000954 _____ C:\Users\Public\Desktop\Firefox.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000000912 _____ C:\Users\Public\Desktop\Basilisk.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000000885 _____ C:\Users\Public\Desktop\Minimal ADB and Fastboot.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000000851 _____ C:\Users\Public\Desktop\PotPlayer 64 bit.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000000799 _____ C:\Users\Public\Desktop\FastMove.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000000798 _____ C:\Users\Public\Desktop\UCheck.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000000772 _____ C:\Users\Public\Desktop\Bandicam.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000000739 _____ C:\Users\Public\Desktop\ISO to USB.lnk
    2020-04-21 16:55 - 2020-04-21 05:48 - 000000221 _____ C:\Users\Public\Desktop\Ashampoo Deals.url
    2020-04-21 16:55 - 2020-04-21 05:48 - 000000000 ____D C:\Users\nalbf\ultracopier
    2020-04-21 16:55 - 2020-04-21 05:48 - 000000000 ____D C:\Users\nalbf\My Drivers
    2020-04-21 16:54 - 2020-04-21 16:54 - 000000000 ____D C:\Users\nalbf\Documents\Screencast-O-Matic
    2020-04-21 16:54 - 2020-04-21 16:54 - 000000000 ____D C:\Users\nalbf\Documents\MAGIX Downloads
    2020-04-21 16:54 - 2020-04-21 16:54 - 000000000 ____D C:\Users\nalbf\Documents\intermar'shit de l'art du moine anti-bug framo mac ux themepack
    2020-04-21 16:54 - 2020-04-21 16:54 - 000000000 ____D C:\Users\nalbf\Documents\install
    2020-04-21 16:54 - 2020-04-21 16:54 - 000000000 ____D C:\Users\nalbf\Documents\Freemake
    2020-04-21 16:54 - 2020-04-21 16:54 - 000000000 ____D C:\Users\nalbf\Documents\efi64
    2020-04-21 16:54 - 2020-04-21 16:54 - 000000000 ____D C:\Users\nalbf\Documents\EFI
    2020-04-21 16:54 - 2020-04-21 16:54 - 000000000 ____D C:\Users\nalbf\Documents\Daniusoft Video to Creative Zen Converter
    2020-04-21 16:54 - 2020-04-21 16:54 - 000000000 ____D C:\Users\nalbf\Documents\Daniusoft Digital Video Converter
    2020-04-21 16:54 - 2020-04-21 05:47 - 003296640 _____ (Nicolas Coolman) C:\Users\nalbf\Desktop\ZHPCleaner.exe
    2020-04-21 16:54 - 2020-04-21 05:47 - 003275648 _____ (Nicolas Coolman) C:\Users\nalbf\Desktop\ZHPDiag3.exe
    2020-04-21 16:54 - 2020-04-21 05:47 - 000498392 _____ C:\Users\nalbf\Desktop\ZHPDiag.html
    2020-04-21 16:54 - 2020-04-21 05:47 - 000405022 _____ C:\Users\nalbf\Desktop\ZHPDiag.txt
    2020-04-21 16:54 - 2020-04-21 05:47 - 000032827 _____ C:\Users\nalbf\Documents\seaflog.txt
    2020-04-21 16:54 - 2020-04-21 05:47 - 000000875 _____ C:\Users\nalbf\Desktop\ZHPCleaner.lnk
    2020-04-21 16:54 - 2020-04-21 05:47 - 000000865 _____ C:\Users\nalbf\Desktop\ZHPSuite.lnk
    2020-04-21 16:54 - 2020-04-21 05:47 - 000000000 ____D C:\Users\nalbf\Documents\FOUND.000
    2020-04-21 16:54 - 2020-04-21 05:47 - 000000000 ____D C:\Users\nalbf\Documents\Daniusoft Video Converter Free
    2020-04-21 16:54 - 2020-04-21 05:47 - 000000000 ____D C:\Users\nalbf\Documents\Daniusoft Media Converter
    2020-04-21 16:53 - 2020-04-21 05:47 - 233823928 _____ (Anthropics Technology Ltd. ) C:\Users\nalbf\Desktop\PortraitProTrialSetup64.exe
    2020-04-21 16:53 - 2020-04-21 05:47 - 005942808 _____ (SafelyRemove.com ) C:\Users\nalbf\Desktop\usbsafelyremovesetup_6-2-1.exe
    2020-04-21 16:53 - 2020-04-21 05:47 - 004200336 _____ (WiseCleaner.com ) C:\Users\nalbf\Desktop\WDCFree_10.2.7.778.exe
    2020-04-21 16:53 - 2020-04-21 05:47 - 002784062 _____ C:\Users\nalbf\Desktop\reportrogue.txt
    2020-04-21 16:53 - 2020-04-21 05:47 - 001803464 _____ (NoVirusThanks Company Srl ) C:\Users\nalbf\Desktop\win_update_stop_setup.exe
    2020-04-21 16:53 - 2020-04-21 05:47 - 000156537 _____ C:\Users\nalbf\Desktop\Shortcut.txt
    2020-04-21 16:53 - 2020-04-21 05:47 - 000064494 _____ C:\Users\nalbf\Desktop\UsbFix_Report.txt
    2020-04-21 16:53 - 2020-04-21 05:47 - 000040169 _____ C:\Users\nalbf\Desktop\ZHPCleaner (S).html
    2020-04-21 16:53 - 2020-04-21 05:47 - 000036028 _____ C:\Users\nalbf\Desktop\ZHPCleaner (R).html
    2020-04-21 16:53 - 2020-04-21 05:47 - 000026249 _____ C:\Users\nalbf\Desktop\ZHPCleaner (S).txt
    2020-04-21 16:53 - 2020-04-21 05:47 - 000023329 _____ C:\Users\nalbf\Desktop\ZHPCleaner (R).txt
    2020-04-21 16:53 - 2020-04-21 05:47 - 000002126 _____ C:\Users\nalbf\Desktop\Slowin' Killer.lnk
    2020-04-21 16:53 - 2020-04-21 05:47 - 000001916 _____ C:\Users\nalbf\Desktop\UsbFix Anti-Malware.lnk
    2020-04-21 16:53 - 2020-04-21 05:47 - 000001222 _____ C:\Users\nalbf\Desktop\Slowin' Killer - Analyser (1).lnk
    2020-04-21 16:53 - 2020-04-21 05:47 - 000001066 _____ C:\Users\nalbf\Desktop\Tweaking.com - Windows Repair.lnk
    2020-04-21 16:53 - 2020-04-21 05:47 - 000000573 _____ C:\Users\nalbf\Desktop\Update Checker.lnk
    2020-04-21 16:51 - 2020-04-21 05:47 - 202438080 _____ (Anthropics Technology Ltd. ) C:\Users\nalbf\Desktop\PortraitProBodyTrialSetup64.exe
    2020-04-21 16:51 - 2020-04-21 05:47 - 018747808 _____ (ArcSoft) C:\Users\nalbf\Desktop\perfect365_retail_tbyb_all.exe
    2020-04-21 16:51 - 2020-04-21 05:47 - 000000979 _____ C:\Users\nalbf\Desktop\PortraitPro 19 Trial.lnk
    2020-04-21 16:50 - 2020-04-21 05:47 - 080206072 _____ (CHENGDU YIWO Tech Development Co., Ltd ) C:\Users\nalbf\Desktop\goback_installer.exe
    2020-04-21 16:50 - 2020-04-21 05:47 - 002829048 _____ C:\Users\nalbf\Desktop\npp.7.Installer.exe
    2020-04-21 16:50 - 2020-04-21 05:47 - 000002163 _____ C:\Users\nalbf\Desktop\HomeByMe.lnk
    2020-04-21 16:50 - 2020-04-21 05:47 - 000002148 _____ C:\Users\nalbf\Desktop\Nettoyer la m?moire.lnk
    2020-04-21 16:50 - 2020-04-21 05:47 - 000001409 _____ C:\Users\nalbf\Desktop\Navigateur Opera.lnk
    2020-04-21 16:50 - 2020-04-21 05:47 - 000001021 _____ C:\Users\nalbf\Desktop\IM-Magic Partition Resizer Free.lnk
    2020-04-21 16:49 - 2020-04-21 05:47 - 080051488 _____ (CHENGDU YIWO Tech Development Co., Ltd ) C:\Users\nalbf\Desktop\goback.exe
    2020-04-21 16:48 - 2020-04-21 05:47 - 008196784 _____ (Malwarebytes) C:\Users\nalbf\Desktop\AdwCleaner.exe
    2020-04-21 16:48 - 2020-04-21 05:47 - 002434048 _____ (Farbar) C:\Users\nalbf\Desktop\FRST64-2.1.exe
    2020-04-21 16:48 - 2020-04-21 05:47 - 002281472 _____ (Farbar) C:\Users\nalbf\Desktop\FRST64.exe
    2020-04-21 16:48 - 2020-04-21 05:47 - 001174200 _____ (CyberLink) C:\Users\nalbf\Desktop\CyberLink_Power2Go_Downloader.exe
    2020-04-21 16:48 - 2020-04-21 05:47 - 000824530 _____ C:\Users\nalbf\Desktop\dcsetup_1.7.1645.exe
    2020-04-21 16:48 - 2020-04-21 05:47 - 000250314 _____ C:\Users\nalbf\Desktop\FRST.txt
    2020-04-21 16:48 - 2020-04-21 05:47 - 000002784 _____ C:\Users\nalbf\Desktop\FSS.txt
    2020-04-21 16:48 - 2020-04-21 05:47 - 000002385 _____ C:\Users\nalbf\Desktop\facebook.lnk
    2020-04-21 16:48 - 2020-04-21 05:47 - 000001488 _____ C:\Users\nalbf\Desktop\Daniusoft DVD & Video Converter Pack.lnk
    2020-04-21 16:48 - 2020-04-21 05:47 - 000001473 _____ C:\Users\nalbf\Desktop\Daniusoft Video to Creative Zen Converter.lnk
    2020-04-21 16:48 - 2020-04-21 05:47 - 000001456 _____ C:\Users\nalbf\Desktop\Daniusoft Digital Video Converter.lnk
    2020-04-21 16:48 - 2020-04-21 05:47 - 000001414 _____ C:\Users\nalbf\Desktop\Daniusoft Video Converter Free.lnk
    2020-04-21 16:48 - 2020-04-21 05:47 - 000001404 _____ C:\Users\nalbf\Desktop\Daniusoft Navigator.lnk
    2020-04-21 16:48 - 2020-04-21 05:47 - 000001397 _____ C:\Users\nalbf\Desktop\Fixlog.txt
    2020-04-21 16:48 - 2020-04-21 05:47 - 000001349 _____ C:\Users\nalbf\Desktop\Daniusoft Media Converter.lnk
    2020-04-21 16:48 - 2020-04-21 05:47 - 000001232 _____ C:\Users\nalbf\Desktop\Donner votre avis sur Slowin' Killer.lnk
    2020-04-21 16:48 - 2020-04-21 05:47 - 000001072 _____ C:\Users\nalbf\Desktop\CyberGhost 7.lnk
    2020-04-21 16:48 - 2020-04-21 05:47 - 000000906 _____ C:\Users\nalbf\Desktop\Clean Disk With 1-Click.lnk
    2020-04-21 16:47 - 2020-04-21 05:47 - 000070203 _____ C:\Users\nalbf\Desktop\Addition.txt
    2020-04-21 16:45 - 2020-04-21 16:46 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\ZHP
    2020-04-21 16:45 - 2020-04-21 16:45 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\WZDT
    2020-04-21 16:45 - 2020-04-21 16:45 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\Wise PC 1stAid
    2020-04-21 16:45 - 2020-04-21 16:45 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\Wise Disk Cleaner
    2020-04-21 16:45 - 2020-04-21 16:45 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\WinZip
    2020-04-21 16:45 - 2020-04-21 16:45 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\vlc
    2020-04-21 16:45 - 2020-04-21 16:45 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\USBSafelyRemove
    2020-04-21 16:45 - 2020-04-21 16:45 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\TransferSupport
    2020-04-21 16:45 - 2020-04-21 16:45 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\TeraCopy
    2020-04-21 16:45 - 2020-04-21 16:45 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\Remo
    2020-04-21 16:45 - 2020-04-21 05:47 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\Wise Memory Optimzer
    2020-04-21 16:45 - 2020-04-21 05:47 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\SYSSU
    2020-04-21 16:43 - 2020-04-21 16:44 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\PowerSuite Golden
    2020-04-21 16:43 - 2020-04-21 16:43 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\PotPlayerMini64
    2020-04-21 16:36 - 2020-04-23 17:28 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\IObit
    2020-04-21 16:36 - 2020-04-21 16:36 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\Opera Software
    2020-04-21 16:36 - 2020-04-21 16:36 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\Notepad++
    2020-04-21 16:36 - 2020-04-21 16:36 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\Mozilla
    2020-04-21 16:36 - 2020-04-21 16:36 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
    2020-04-21 16:36 - 2020-04-21 16:36 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ultracopier
    2020-04-21 16:36 - 2020-04-21 16:36 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tweaking.com
    2020-04-21 16:36 - 2020-04-21 16:36 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LinuxLive USB Creator
    2020-04-21 16:36 - 2020-04-21 16:36 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IM-Magic Partition Resizer Free
    2020-04-21 16:36 - 2020-04-21 16:36 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AC3Filter
    2020-04-21 16:36 - 2020-04-21 16:36 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\MAGIX
    2020-04-21 16:36 - 2020-04-21 16:36 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\Macromedia
    2020-04-21 16:36 - 2020-04-21 05:45 - 000002401 _____ C:\Users\nalbf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
    2020-04-21 16:36 - 2020-04-21 05:45 - 000002149 _____ C:\Users\nalbf\AppData\Roaming\Microsoft\Windows\Start Menu\HomeByMe.lnk
    2020-04-21 16:36 - 2020-04-21 05:45 - 000001393 _____ C:\Users\nalbf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk
    2020-04-21 16:36 - 2020-04-21 05:45 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\Nico Mak Computing
    2020-04-21 16:35 - 2020-04-21 16:36 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\HDDR
    2020-04-21 16:35 - 2020-04-21 16:35 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\DVDVideoSoft
    2020-04-21 16:35 - 2020-04-21 16:35 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\Daum
    2020-04-21 16:35 - 2020-04-21 16:35 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\Avanquest
    2020-04-21 16:35 - 2020-04-21 16:35 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\Anthropics
    2020-04-21 16:35 - 2020-04-21 16:35 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\Aimersoft
    2020-04-21 16:35 - 2020-04-21 16:35 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\Adobe
    2020-04-21 16:35 - 2020-04-21 16:35 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\5 - 10Crem, Meca, frac avec best-of LFS Hyper, 3?5Rem & Anti-JJAD & UEFM
    2020-04-21 16:35 - 2020-04-21 16:35 - 000000000 ____D C:\Users\nalbf\AppData\LocalLow\SquareClock.Production_HBMV1
    2020-04-21 16:35 - 2020-04-21 16:35 - 000000000 ____D C:\Users\nalbf\AppData\LocalLow\IObit
    2020-04-21 16:35 - 2020-04-21 16:35 - 000000000 ____D C:\Users\nalbf\AppData\LocalLow\Intel
    2020-04-21 16:35 - 2020-04-21 16:35 - 000000000 ____D C:\Users\nalbf\AppData\Local\ZHP
    2020-04-21 16:35 - 2020-04-21 16:35 - 000000000 ____D C:\Users\nalbf\AppData\Local\Zemana
    2020-04-21 16:35 - 2020-04-21 16:35 - 000000000 ____D C:\Users\nalbf\AppData\Local\Wondershare
    2020-04-21 16:35 - 2020-04-21 05:45 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\FastMove
    2020-04-21 16:35 - 2020-04-21 05:45 - 000000000 ____D C:\Users\nalbf\AppData\Roaming\5014fc57708f
    2020-04-21 16:33 - 2020-04-23 17:27 - 000000000 ____D C:\Users\nalbf\AppData\Local\WebLaunchRecorder
    2020-04-21 16:33 - 2020-04-21 05:45 - 000000000 ____D C:\Users\nalbf\AppData\Local\VirtualStore
    2020-04-21 16:23 - 2020-04-21 16:23 - 000000000 ____D C:\Users\nalbf\AppData\Local\SquareClock.Production_HBMV1
    2020-04-21 16:23 - 2020-04-21 16:23 - 000000000 ____D C:\Users\nalbf\AppData\Local\SIB
    2020-04-21 16:23 - 2020-04-21 16:23 - 000000000 ____D C:\Users\nalbf\AppData\Local\Screencast-O-Matic-v2
    2020-04-21 16:23 - 2020-04-21 16:23 - 000000000 ____D C:\Users\nalbf\AppData\Local\SafiAgent
    2020-04-21 16:23 - 2020-04-21 16:23 - 000000000 ____D C:\Users\nalbf\AppData\Local\Publishers
    2020-04-21 16:22 - 2020-04-21 16:22 - 000000000 ____D C:\Users\nalbf\AppData\Local\Packages
    2020-04-21 16:22 - 2020-04-21 05:43 - 000000000 ____D C:\Users\nalbf\AppData\Local\PlaceholderTileLogoFolder
    2020-04-21 16:22 - 2020-04-21 05:43 - 000000000 ____D C:\Users\nalbf\AppData\Local\PanelManager
    2020-04-21 16:20 - 2020-04-21 16:20 - 000000000 ____D C:\Users\nalbf\AppData\Local\Opera Software
    2020-04-21 16:20 - 2020-04-21 16:20 - 000000000 ____D C:\Users\nalbf\AppData\Local\MicrosoftEdge
    2020-04-21 16:18 - 2020-04-21 16:18 - 000000000 ____D C:\Users\nalbf\AppData\Local\Intel
    2020-04-21 16:18 - 2020-04-21 16:18 - 000000000 ____D C:\Users\nalbf\AppData\Local\Google
    2020-04-21 16:18 - 2020-04-21 16:18 - 000000000 ____D C:\Users\nalbf\AppData\Local\FreemakeAudioConverter
    2020-04-21 16:18 - 2020-04-21 16:18 - 000000000 ____D C:\Users\nalbf\AppData\Local\ElevatedDiagnostics
    2020-04-21 16:18 - 2020-04-21 16:18 - 000000000 ____D C:\Users\nalbf\AppData\Local\Downloaded Installations
    2020-04-21 16:18 - 2020-04-21 16:18 - 000000000 ____D C:\Users\nalbf\AppData\Local\CyberGhost
    2020-04-21 16:18 - 2020-04-21 16:18 - 000000000 ____D C:\Users\nalbf\AppData\Local\CrashRpt
    2020-04-21 16:18 - 2020-04-21 16:18 - 000000000 ____D C:\Users\nalbf\AppData\Local\Crashpad
    2020-04-21 16:18 - 2020-04-21 16:18 - 000000000 ____D C:\Users\nalbf\AppData\Local\ConnectedDevicesPlatform
    2020-04-21 16:18 - 2020-04-21 16:18 - 000000000 ____D C:\Users\nalbf\AppData\Local\Comms
    2020-04-21 16:18 - 2020-04-21 16:18 - 000000000 ____D C:\Users\nalbf\AppData\Local\Avg
    2020-04-21 16:18 - 2020-04-21 16:18 - 000000000 ____D C:\Users\nalbf\AppData\Local\ArcSoft
    2020-04-21 16:18 - 2020-04-21 16:18 - 000000000 ____D C:\Users\nalbf\AppData\Local\Anthropics
    2020-04-21 16:18 - 2020-04-21 16:18 - 000000000 ____D C:\Users\nalbf\AppData\Local\Aimersoft
    2020-04-21 16:18 - 2020-04-21 16:18 - 000000000 ____D C:\Users\nalbf\3D Objects
    2020-04-21 16:18 - 2020-04-21 16:18 - 000000000 ____D C:\Users\nalbf\.cache
    2020-04-21 16:18 - 2020-04-21 05:48 - 042030736 _____ C:\Users\nalbf\vlc-3.0.8-win64.exe
    2020-04-21 16:18 - 2020-04-21 05:48 - 013654880 _____ (Corel Corporation) C:\Users\nalbf\wzip.exe
    2020-04-21 16:18 - 2020-04-21 05:48 - 006499200 _____ (WinZip International LLC ) C:\Users\nalbf\wzdt1.exe
    2020-04-21 16:18 - 2020-04-21 05:48 - 001880064 _____ C:\Users\nalbf\vpnshield.8.9.0.msi
    2020-04-21 16:18 - 2020-04-21 05:48 - 000347584 _____ (Big Nerd Software, LLC) C:\Users\nalbf\WebLaunchRecorder.exe
    2020-04-21 16:18 - 2020-04-21 05:45 - 000007168 _____ C:\Users\nalbf\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    2020-04-21 16:18 - 2020-04-21 05:42 - 000000000 ____D C:\Users\nalbf\AppData\Local\LoopBackService
    2020-04-21 16:18 - 2020-04-21 05:42 - 000000000 ____D C:\Users\nalbf\AppData\Local\DBG
    2020-04-21 16:18 - 2020-04-21 05:42 - 000000000 ____D C:\Users\nalbf\AppData\Local\CrashDumps
    2020-04-21 16:17 - 2020-04-21 05:48 - 038949480 _____ (Tweaking.com) C:\Users\nalbf\tweaking.com_windows_repair_aio_setup.exe
    2020-04-21 16:17 - 2020-04-21 05:48 - 016910904 _____ (Carifred) C:\Users\nalbf\UVKInstaller.exe
    2020-04-21 16:17 - 2020-04-21 05:48 - 006730832 _____ (Corel Corporation) C:\Users\nalbf\StartMenuReviverSetup.exe
    2020-04-21 16:17 - 2020-04-21 05:48 - 005942808 _____ (SafelyRemove.com ) C:\Users\nalbf\usbsafelyremovesetup_6-2-1.exe
    2020-04-21 16:17 - 2020-04-21 05:48 - 004773088 _____ (SOSVirus) C:\Users\nalbf\usbfix-11-022.exe
    2020-04-21 16:17 - 2020-04-21 05:48 - 004773088 _____ (SOSVirus) C:\Users\nalbf\usbfix-11-022 (1).exe
    2020-04-21 16:17 - 2020-04-21 05:48 - 001256960 _____ C:\Users\nalbf\Slowin Killer.exe
    2020-04-21 16:17 - 2020-04-21 05:48 - 000498868 _____ (C_XX) C:\Users\nalbf\seaf_1.exe
    2020-04-21 16:16 - 2020-04-21 05:48 - 025122016 _____ (Remo Software ) C:\Users\nalbf\remo-recover-windows.exe
    2020-04-21 16:16 - 2020-04-21 05:48 - 014848528 _____ (Remo Software ) C:\Users\nalbf\remo-video-repair.exe
    2020-04-21 16:16 - 2020-04-21 05:48 - 014713968 _____ (Remo Software ) C:\Users\nalbf\remo-duplicate-photos-remover.exe
    2020-04-21 16:16 - 2020-04-21 05:48 - 011990152 _____ (Remo Software ) C:\Users\nalbf\remo-shredder.exe
    2020-04-21 16:16 - 2020-04-21 05:48 - 009719168 _____ (Remo Software ) C:\Users\nalbf\remo-repair-mov.exe
    2020-04-21 16:16 - 2020-04-21 05:48 - 009628512 _____ (Remo Software ) C:\Users\nalbf\remo-repair-avi.exe
    2020-04-21 16:16 - 2020-04-21 05:48 - 008687968 _____ (Remo Software ) C:\Users\nalbf\remo-drive-wipe.exe
    2020-04-21 16:16 - 2020-04-21 05:48 - 001193016 _____ (Akeo Consulting) C:\Users\nalbf\rufus-3.9.exe
    2020-04-21 16:15 - 2020-04-21 05:48 - 029938400 _____ (Remo Software ) C:\Users\nalbf\remo-convert-ost-to-pst.exe
    2020-04-21 16:15 - 2020-04-21 05:48 - 028698504 _____ (Kakao) C:\Users\nalbf\PotPlayerSetup64.exe
    2020-04-21 16:15 - 2020-04-21 05:48 - 006160320 _____ (LinuxLive USB Creator) C:\Users\nalbf\LinuxLive USB Creator 2.9.4.exe
    2020-04-21 16:15 - 2020-04-21 05:48 - 002478832 _____ (Opera Software) C:\Users\nalbf\OperaSetup.exe
    2020-04-21 16:15 - 2020-04-21 05:48 - 000000020 _____ C:\Users\nalbf\ntuser.ini
    2020-04-21 16:14 - 2020-04-21 05:48 - 012526777 _____ (Daniusoft Software ) C:\Users\nalbf\daniusoft-video-converter-free_full592.exe
    2020-04-21 16:14 - 2020-04-21 05:48 - 010674176 _____ C:\Users\nalbf\HFS4WIN.msi
    2020-04-21 16:14 - 2020-04-21 05:48 - 008717092 _____ (Daniusoft Software ) C:\Users\nalbf\daniu-video-creativezen_full228.exe
    2020-04-21 16:14 - 2020-04-21 05:48 - 005873160 _____ (Xceed Software Inc. 1-450-442-2626 info@xceedsoft.com www.xceedsoft.com) C:\Users\nalbf\Input-Synaptics-Touchpad-Version-A11.exe
    2020-04-21 16:14 - 2020-04-21 05:48 - 005360859 _____ (INFORAD Ltd ) C:\Users\nalbf\Inforad-Manager.exe
    2020-04-21 16:14 - 2020-04-21 05:48 - 004950448 _____ (InFixi IT Solutions MSG to vCard Converter ) C:\Users\nalbf\Infixi-MSG-Contact-to-vCard-Converter.exe
    2020-04-21 16:14 - 2020-04-21 05:48 - 003626690 _____ (InFixi IT Solutions ) C:\Users\nalbf\Infixi-OST-Converter-Software.exe
    2020-04-21 16:14 - 2020-04-21 05:48 - 001600240 _____ (SquareClock SAS) C:\Users\nalbf\HomeByMe.exe
    2020-04-21 16:14 - 2020-04-21 05:48 - 000000000 _____ C:\Users\nalbf\INF-Tool-Lite.EXE
    2020-04-21 16:13 - 2020-04-21 05:48 - 032525405 _____ (Daniusoft Software ) C:\Users\nalbf\daniu-dvd-video-converter-pack.exe
    2020-04-21 16:13 - 2020-04-21 05:48 - 011247322 _____ (Daniusoft Software ) C:\Users\nalbf\daniu-digital-media-converter_full286.exe
    2020-04-21 16:13 - 2020-04-21 05:48 - 009948972 _____ (Daniusoft Software ) C:\Users\nalbf\daniu-digital-video-converter_full295.exe
    2020-04-21 16:13 - 2020-04-21 05:48 - 004998272 _____ (Daniusoft Software ) C:\Users\nalbf\daniu-dvd-copy_full248_sm151382.exe
    2020-04-21 16:13 - 2020-04-21 05:48 - 002485182 _____ (Codyssey.com) C:\Users\nalbf\CodySafe_Sigma_Setup.exe
    2020-04-21 16:12 - 2020-04-21 05:48 - 017669784 _____ (Ashampoo GmbH & Co. KG ) C:\Users\nalbf\ashampoo_hdd_control_3_3.20.00_sm.exe
    2020-04-21 16:12 - 2020-04-21 05:48 - 000118488 _____ (CyberGhost S.A.) C:\Users\nalbf\cgsetup_fr_h99XP5KL4u56dv7SDwdE.exe
    2020-04-21 16:11 - 2020-04-25 04:51 - 000000000 ____D C:\Users\nalbf
    2020-04-21 16:11 - 2020-04-21 16:11 - 000000000 ____D C:\Users\lfshy\MicrosoftEdgeBackups
    2020-04-21 16:11 - 2020-04-21 16:11 - 000000000 ____D C:\Users\lfshy\IntelGraphicsProfiles
    2020-04-21 16:11 - 2020-04-21 16:11 - 000000000 ____D C:\Users\L?a Lynnlo Torres\Program Files (x86)
    2020-04-21 16:11 - 2020-04-21 16:11 - 000000000 ____D C:\Users\L?a Lynnlo Torres
    2020-04-21 16:11 - 2020-04-21 05:48 - 009530592 _____ (Innovative Solutions ) C:\Users\nalbf\Advanced_Uninstaller12.exe
    2020-04-21 16:11 - 2020-04-21 05:48 - 002554928 _____ (Innovative Solutions ) C:\Users\nalbf\advanced_task_manager_5_6.exe
    2020-04-21 16:11 - 2020-04-21 05:42 - 008342660 _____ C:\Users\lfshy\Downloads\SkinPack Windows Core OS.sfx.exe
    2020-04-21 16:11 - 2020-04-21 05:42 - 003431296 _____ (Nicolas Coolman) C:\Users\lfshy\Downloads\ZHPSuite.exe
    2020-04-21 16:11 - 2020-04-21 05:42 - 000000000 ____D C:\Users\lfshy\OneDrive
    2020-04-21 16:10 - 2020-04-21 05:42 - 177755696 _____ (Paragon Software GmbH) C:\Users\lfshy\Downloads\Paragon-1081-FRU_WinInstallDemo_x64_17.9.1_000.exe
    2020-04-21 16:10 - 2020-04-21 05:42 - 013261072 _____ (Corel Corporation) C:\Users\lfshy\Downloads\InstallSafeSetup.exe
    2020-04-21 16:10 - 2020-04-21 05:42 - 002920384 _____ (Kaspersky) C:\Users\lfshy\Downloads\kav20.0.14.1085abcdefr_21462.exe
    2020-04-21 16:10 - 2020-04-21 05:42 - 000738498 _____ C:\Users\lfshy\Downloads\JDqhpAE5dJn_reportrogue.txt
    2020-04-21 16:09 - 2020-04-21 16:09 - 000000000 ____D C:\Users\lfshy\Documents\CisReport_x64_v12.1.0.6914_20200420-204443
    2020-04-21 16:09 - 2020-04-21 16:09 - 000000000 ____D C:\Users\lfshy\Desktop\mbar
    2020-04-21 16:09 - 2020-04-21 05:42 - 061197060 _____ (Avanquest Software ) C:\Users\lfshy\Downloads\digital-video-duplicator_1_16766.exe
    2020-04-21 16:09 - 2020-04-21 05:42 - 037270584 _____ C:\Users\lfshy\Desktop\RogueKiller_portable64.exe
    2020-04-21 16:09 - 2020-04-21 05:42 - 012677712 _____ (Webminds, Inc. ) C:\Users\lfshy\Downloads\fm_setup.exe
    2020-04-21 16:09 - 2020-04-21 05:42 - 005724056 _____ (SOSVirus) C:\Users\lfshy\Desktop\AdsFix.exe
    2020-04-21 16:09 - 2020-04-21 05:42 - 004430007 _____ (foobar2000.org) C:\Users\lfshy\Downloads\foobar2000_v1.5.3.exe
    2020-04-21 16:09 - 2020-04-21 05:42 - 003013268 _____ C:\Users\lfshy\Desktop\rk rapport a dieseldutchou.txt
    2020-04-21 16:09 - 2020-04-21 05:42 - 001055936 _____ (Adobe) C:\Users\lfshy\Downloads\CyberLink PowerDVD 20 Build 1519 Crack
    2020-04-21 16:09 - 2020-04-21 05:42 - 000393448 _____ C:\Users\lfshy\Desktop\ZHPDiag.html
    2020-04-21 16:09 - 2020-04-21 05:42 - 000319146 _____ C:\Users\lfshy\Desktop\ZHPDiag.txt
    2020-04-21 16:09 - 2020-04-21 05:42 - 000013936 _____ C:\Users\lfshy\Documents\CisReport_x64_v12.1.0.6914_20200420-204443.zip
    2020-04-21 16:09 - 2020-04-21 05:42 - 000013008 _____ C:\Users\lfshy\Desktop\System Info.htm
    2020-04-21 16:09 - 2020-04-21 05:42 - 000002772 _____ C:\Users\lfshy\Documents\DiskInfo.txt
    2020-04-21 16:09 - 2020-04-21 05:42 - 000001627 _____ C:\Users\lfshy\Desktop\Update Windows.lnk
    2020-04-21 16:09 - 2020-04-21 05:42 - 000001159 _____ C:\Users\lfshy\Desktop\Privacy Reviver.lnk
    2020-04-21 16:09 - 2020-04-21 05:42 - 000000865 _____ C:\Users\lfshy\Desktop\ZHPSuite.lnk
    2020-04-21 16:09 - 2020-04-21 05:42 - 000000714 _____ C:\Users\lfshy\Desktop\AdsFix_Restauration Systeme.lnk
    2020-04-21 16:09 - 2020-04-21 05:42 - 000000603 _____ C:\Users\lfshy\Desktop\Smart Privacy Cleaner.lnk
    2020-04-21 16:09 - 2020-04-21 05:42 - 000000574 _____ C:\Users\lfshy\Desktop\COMODO TrustConnect (VPN).lnk
    2020-04-21 16:09 - 2020-04-21 05:42 - 000000279 _____ C:\Users\lfshy\Downloads\CyberLink PowerDVD 20 Build 1519 Crack_0814673230.exe.lzkzbaz.partial
    2020-04-21 16:09 - 2020-04-21 05:42 - 000000234 _____ C:\Users\lfshy\Desktop\AdsFix_Reboot.txt
    2020-04-21 16:08 - 2020-04-21 05:42 - 000001824 _____ C:\Users\lfshy\Desktop\adaware_Report_Custom_Manual_19-04-2020 233140.xml
    2020-04-21 16:06 - 2020-04-24 14:11 - 000000000 ____D C:\Users\lfshy\AppData\Local\PrivacyReviver
    2020-04-21 16:06 - 2020-04-21 16:06 - 000000000 ____D C:\Users\lfshy\AppData\Roaming\ZHP
    2020-04-21 16:06 - 2020-04-21 16:06 - 000000000 ____D C:\Users\lfshy\AppData\Roaming\MultipleRebootScheduler
    2020-04-21 16:06 - 2020-04-21 16:06 - 000000000 ____D C:\Users\lfshy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UltraUXThemePatcher
    2020-04-21 16:06 - 2020-04-21 16:06 - 000000000 ____D C:\Users\lfshy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Privacy Reviver
    2020-04-21 16:06 - 2020-04-21 16:06 - 000000000 ____D C:\Users\lfshy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Goodgame Big Farm
    2020-04-21 16:06 - 2020-04-21 16:06 - 000000000 ____D C:\Users\lfshy\AppData\Roaming\FastMove
    2020-04-21 16:06 - 2020-04-21 16:06 - 000000000 ____D C:\Users\lfshy\AppData\Roaming\Comodo
    2020-04-21 16:06 - 2020-04-21 16:06 - 000000000 ____D C:\Users\lfshy\AppData\Roaming\Avast Software
    2020-04-21 16:06 - 2020-04-21 16:06 - 000000000 ____D C:\Users\lfshy\AppData\Roaming\Adobe
    2020-04-21 16:06 - 2020-04-21 16:06 - 000000000 ____D C:\Users\lfshy\AppData\Roaming\adaware
    2020-04-21 16:06 - 2020-04-21 16:06 - 000000000 ____D C:\Users\lfshy\AppData\Local\ZHP
    2020-04-21 16:06 - 2020-04-21 16:06 - 000000000 ____D C:\Users\lfshy\AppData\Local\SafiAgent
    2020-04-21 16:06 - 2020-04-21 16:06 - 000000000 ____D C:\Users\lfshy\AppData\Local\Publishers
    2020-04-21 16:06 - 2020-04-21 05:41 - 000000000 ____D C:\Users\lfshy\AppData\Local\PanelManager
    2020-04-21 16:05 - 2020-04-24 13:10 - 000153312 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
    2020-04-21 16:02 - 2020-04-21 16:04 - 000000000 ____D C:\Users\lfshy\AppData\Local\Packages
    2020-04-21 16:02 - 2020-04-21 16:02 - 000000000 ____D C:\Users\lfshy\AppData\Local\MicrosoftEdge
    2020-04-21 16:00 - 2020-04-21 16:00 - 000000000 ____D C:\Users\lfshy\AppData\Local\Google
    2020-04-21 16:00 - 2020-04-21 16:00 - 000000000 ____D C:\Users\lfshy\AppData\Local\ElevatedDiagnostics
    2020-04-21 16:00 - 2020-04-21 16:00 - 000000000 ____D C:\Users\lfshy\AppData\Local\ConnectedDevicesPlatform
    2020-04-21 16:00 - 2020-04-21 05:40 - 000000000 ____D C:\Users\lfshy\AppData\Local\LoopBackService
    2020-04-21 16:00 - 2020-04-21 05:40 - 000000000 ____D C:\Users\lfshy\AppData\Local\CrashDumps
    2020-04-21 15:59 - 2020-04-21 16:11 - 000000000 ____D C:\Users\lfshy
    2020-04-21 15:59 - 2020-04-21 15:59 - 000000000 ____D C:\Users\lfshy\AppData\Local\Comodo
    2020-04-21 15:59 - 2020-04-21 15:59 - 000000000 ____D C:\Users\lfshy\AppData\Local\Comms
    2020-04-21 15:59 - 2020-04-21 15:59 - 000000000 ____D C:\Users\lfshy\AppData\Local\CEF
    2020-04-21 15:59 - 2020-04-21 15:59 - 000000000 ____D C:\Users\lfshy\AppData\Local\ArcSoft
    2020-04-21 15:59 - 2020-04-21 15:59 - 000000000 ____D C:\Users\lfshy\AppData\Local\AdAwareUpdater
    2020-04-21 15:59 - 2020-04-21 15:59 - 000000000 ____D C:\Users\lfshy\AppData\Local\AdAwareDesktop
    2020-04-21 15:59 - 2020-04-21 15:59 - 000000000 ____D C:\Users\lfshy\3D Objects
    2020-04-21 15:59 - 2020-04-21 15:59 - 000000000 ____D C:\Users\d?pannage iPod\MicrosoftEdgeBackups
    2020-04-21 15:59 - 2020-04-21 15:59 - 000000000 ____D C:\Users\d?pannage iPod\IntelGraphicsProfiles
    2020-04-21 15:59 - 2020-04-21 05:42 - 000000020 _____ C:\Users\lfshy\ntuser.ini
    2020-04-21 15:59 - 2020-04-21 05:40 - 107752112 _____ (DigiDNA ) C:\Users\d?pannage iPod\Downloads\iMazing2forWindows.exe.i6oeglh.partial
    2020-04-21 15:59 - 2020-04-21 05:40 - 012488704 _____ C:\Users\d?pannage iPod\Downloads\SibSetup.msi
    2020-04-21 15:59 - 2020-04-21 05:40 - 000000000 ____D C:\Users\d?pannage iPod\OneDrive
    2020-04-21 15:58 - 2020-04-21 15:58 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Roaming\StartMenuX
    2020-04-21 15:58 - 2020-04-21 15:58 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Roaming\QtProject
    2020-04-21 15:58 - 2020-04-21 15:58 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Roaming\QFX Software
    2020-04-21 15:58 - 2020-04-21 15:58 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Roaming\Neos Eureka S.r.l
    2020-04-21 15:58 - 2020-04-21 15:58 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Roaming\MiniTool ShadowMaker
    2020-04-21 15:58 - 2020-04-21 15:58 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Roaming\Bitdefender
    2020-04-21 15:58 - 2020-04-21 15:58 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Roaming\AVAST Software
    2020-04-21 15:58 - 2020-04-21 15:58 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Roaming\Adobe
    2020-04-21 15:58 - 2020-04-21 15:58 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Local\SIB
    2020-04-21 15:58 - 2020-04-21 15:58 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Local\SafiAgent
    2020-04-21 15:58 - 2020-04-21 15:58 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Local\Publishers
    2020-04-21 15:58 - 2020-04-21 05:40 - 008237744 _____ (Malwarebytes) C:\Users\d?pannage iPod\Downloads\adwcleaner_8.0.1.exe
    2020-04-21 15:58 - 2020-04-21 05:40 - 005975960 _____ (SOSVirus) C:\Users\d?pannage iPod\Desktop\AdsFix.exe
    2020-04-21 15:58 - 2020-04-21 05:40 - 000914432 _____ (Igor Pavlov) C:\Users\d?pannage iPod\Desktop\7z.dll
    2020-04-21 15:58 - 2020-04-21 05:40 - 000163840 _____ (Igor Pavlov) C:\Users\d?pannage iPod\Desktop\7z.exe
    2020-04-21 15:58 - 2020-04-21 05:40 - 000002484 _____ C:\Users\d?pannage iPod\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
    2020-04-21 15:58 - 2020-04-21 05:40 - 000001381 _____ C:\Users\d?pannage iPod\Downloads\adware.txt
    2020-04-21 15:58 - 2020-04-21 05:40 - 000001381 _____ C:\Users\d?pannage iPod\Desktop\adware.txt
    2020-04-21 15:58 - 2020-04-21 05:40 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Local\VirtualStore
    2020-04-21 15:58 - 2020-04-21 05:40 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Local\PanelManager
    2020-04-21 15:56 - 2020-04-21 15:58 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Local\Packages
    2020-04-21 15:56 - 2020-04-21 15:56 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Local\OneDrive
    2020-04-21 15:56 - 2020-04-21 15:56 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Local\MicrosoftEdge
    2020-04-21 15:52 - 2020-04-21 15:59 - 000000000 ____D C:\Users\d?pannage iPod
    2020-04-21 15:52 - 2020-04-21 15:52 - 000000000 ____D C:\Users\didinser recs 5rem 2\OneDrive
    2020-04-21 15:52 - 2020-04-21 15:52 - 000000000 ____D C:\Users\didinser recs 5rem 2\NCH Software Suite
    2020-04-21 15:52 - 2020-04-21 15:52 - 000000000 ____D C:\Users\didinser recs 5rem 2\MicrosoftEdgeBackups
    2020-04-21 15:52 - 2020-04-21 15:52 - 000000000 ____D C:\Users\didinser recs 5rem 2\IntelGraphicsProfiles
    2020-04-21 15:52 - 2020-04-21 15:52 - 000000000 ____D C:\Users\didinser recs 5rem 2\Downloads\MEmu Download
    2020-04-21 15:52 - 2020-04-21 15:52 - 000000000 ____D C:\Users\didinser recs 5rem 2\Downloads\ChipGenius_v4_18_0203
    2020-04-21 15:52 - 2020-04-21 15:52 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Local\mbamtray
    2020-04-21 15:52 - 2020-04-21 15:52 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Local\Comms
    2020-04-21 15:52 - 2020-04-21 15:52 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Local\CEF
    2020-04-21 15:52 - 2020-04-21 15:52 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Local\ACD Systems
    2020-04-21 15:52 - 2020-04-21 05:40 - 000000020 _____ C:\Users\d?pannage iPod\ntuser.ini
    2020-04-21 15:52 - 2020-04-21 05:39 - 000000000 ____D C:\Users\didinser recs 5rem 2\Voisinage r?seau
    2020-04-21 15:52 - 2020-04-21 05:39 - 000000000 ____D C:\Users\didinser recs 5rem 2\Voisinage d'impression
    2020-04-21 15:52 - 2020-04-21 05:39 - 000000000 ____D C:\Users\didinser recs 5rem 2\ultracopier
    2020-04-21 15:52 - 2020-04-21 05:39 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Local\LoopBackService
    2020-04-21 15:52 - 2020-04-21 05:39 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Local\DBG
    2020-04-21 15:52 - 2020-04-21 05:39 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Local\CrashDumps
    2020-04-21 15:52 - 2020-04-21 05:39 - 000000000 ____D C:\Users\d?pannage iPod\AppData\Local\ConnectedDevicesPlatform
    2020-04-21 15:52 - 2020-04-21 05:39 - 000000000 ____D C:\Users\d?pannage iPod\3D Objects
    2020-04-21 15:52 - 2020-04-21 05:38 - 000000000 ____D C:\Users\didinser recs 5rem 2\Mod?les
    2020-04-21 15:52 - 2020-04-21 05:38 - 000000000 ____D C:\Users\didinser recs 5rem 2\Mes documents
    2020-04-21 15:52 - 2020-04-21 05:38 - 000000000 ____D C:\Users\didinser recs 5rem 2\Menu D?marrer
    2020-04-21 15:52 - 2020-04-21 05:37 - 000000000 ____D C:\Users\didinser recs 5rem 2\Downloads\Stardock
    2020-04-21 15:52 - 2020-04-21 05:37 - 000000000 ____D C:\Users\didinser recs 5rem 2\Downloads\SHAREit
    2020-04-21 15:52 - 2020-04-21 05:37 - 000000000 ____D C:\Users\didinser recs 5rem 2\Downloads\EXE
    2020-04-21 15:51 - 2020-04-21 05:38 - 403558086 _____ C:\Users\didinser recs 5rem 2\Downloads\X-10023210CLPDUx64.rar
    2020-04-21 15:51 - 2020-04-21 05:38 - 027679136 _____ (Wondershare ) C:\Users\didinser recs 5rem 2\Downloads\wondershare-player-7175.exe
    2020-04-21 15:51 - 2020-04-21 05:38 - 006499200 _____ (WinZip International LLC ) C:\Users\didinser recs 5rem 2\Downloads\wzdt1.exe
    2020-04-21 15:51 - 2020-04-21 05:38 - 000329800 _____ (Adlice Software) C:\Users\didinser recs 5rem 2\Downloads\WhyIGotInfected.exe
    2020-04-21 15:50 - 2020-04-21 05:38 - 047857952 _____ (Adlice Software ) C:\Users\didinser recs 5rem 2\Downloads\RogueKiller_setup.exe
    2020-04-21 15:50 - 2020-04-21 05:38 - 028698504 _____ (Kakao) C:\Users\didinser recs 5rem 2\Downloads\PotPlayerSetup64.exe
    2020-04-21 15:50 - 2020-04-21 05:38 - 025734328 _____ (Adlice Software ) C:\Users\didinser recs 5rem 2\Downloads\UCheck_setup.exe
    2020-04-21 15:50 - 2020-04-21 05:38 - 015778178 _____ C:\Users\didinser recs 5rem 2\Downloads\ultracopier-windows-x86_64-2.2.3.3-setup.exe
    2020-04-21 15:50 - 2020-04-21 05:38 - 005129590 _____ C:\Users\didinser recs 5rem 2\Downloads\systweak software up_1879538406.zip
    2020-04-21 15:50 - 2020-04-21 05:38 - 001784649 _____ (pendrivelinux.com) C:\Users\didinser recs 5rem 2\Downloads\Universal-USB-Installer-1.9.9.0.exe
    2020-04-21 15:49 - 2020-04-21 05:38 - 036886528 _____ C:\Users\didinser recs 5rem 2\Downloads\Morae_Recorder.msi
    2020-04-21 15:49 - 2020-04-21 05:38 - 014178840 _____ (Malwarebytes Corp.) C:\Users\didinser recs 5rem 2\Downloads\mbar-1.10.3.1001.exe
    2020-04-21 15:49 - 2020-04-21 05:38 - 004901376 _____ (Moo0) C:\Users\didinser recs 5rem 2\Downloads\Moo0 SystemMonitor v1.83 Installer.exe
    2020-04-21 15:49 - 2020-04-21 05:38 - 002670632 _____ (O&O Software GmbH) C:\Users\didinser recs 5rem 2\Downloads\OODiskImageProfessional15ENU.exe
    2020-04-21 15:49 - 2020-04-21 05:38 - 001727980 _____ (isotousb.com ) C:\Users\didinser recs 5rem 2\Downloads\isotousb_setup.exe
    2020-04-21 15:49 - 2020-04-21 05:38 - 001601024 _____ (Mobatek) C:\Users\didinser recs 5rem 2\Downloads\MobaLiveCD_v2.1.exe
    2020-04-21 15:49 - 2020-04-21 05:38 - 001458416 _____ C:\Users\didinser recs 5rem 2\Downloads\mobiletrans_setup_full5793.exe
    2020-04-21 15:49 - 2020-04-21 05:38 - 001053464 _____ (Samuel Rodberg ) C:\Users\didinser recs 5rem 2\Downloads\minimal_adb_fastboot_v1.4.3_setup.exe
    2020-04-21 15:48 - 2020-04-21 05:38 - 052498664 _____ (Mozilla) C:\Users\didinser recs 5rem 2\Downloads\Firefox Setup 75.0.exe
    2020-04-21 15:48 - 2020-04-21 05:38 - 028203272 _____ (Digital Wave Ltd ) C:\Users\didinser recs 5rem 2\Downloads\FreeVideoToJPGConverter_5.0.101.201_d.exe
    2020-04-21 15:47 - 2020-04-23 12:45 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\Comodo
    2020-04-21 15:47 - 2020-04-21 05:38 - 049421200 _____ (Mozilla) C:\Users\didinser recs 5rem 2\Downloads\Firefox Setup 68.7.0esr.exe
    2020-04-21 15:46 - 2020-04-21 05:38 - 033901704 _____ (Disc Soft Ltd) C:\Users\didinser recs 5rem 2\Downloads\DTPro830-0759.exe
    2020-04-21 15:45 - 2020-04-21 05:37 - 179802716 _____ C:\Users\didinser recs 5rem 2\Downloads\CyberLink_MakeupDirector_Deluxe_2.0_Portable.rar
    2020-04-21 15:45 - 2020-04-21 05:37 - 061197060 _____ (Avanquest Software ) C:\Users\didinser recs 5rem 2\Downloads\digital-video-duplicator_1_16766.exe
    2020-04-21 15:45 - 2020-04-21 05:37 - 001174272 _____ (CyberLink) C:\Users\didinser recs 5rem 2\Downloads\CyberLink_PowerDVD_Downloader.exe
    2020-04-21 15:45 - 2020-04-21 05:37 - 001174272 _____ (CyberLink) C:\Users\didinser recs 5rem 2\Downloads\CyberLink_PowerDVD_Downloader(2).exe
    2020-04-21 15:45 - 2020-04-21 05:37 - 001174272 _____ (CyberLink) C:\Users\didinser recs 5rem 2\Downloads\CyberLink_PowerDVD_Downloader(1).exe
    2020-04-21 15:45 - 2020-04-21 05:37 - 000246457 _____ C:\Users\didinser recs 5rem 2\Downloads\ChipGenius_v4_18_0203.zip
    2020-04-21 15:44 - 2020-04-21 05:37 - 075578072 _____ (Ashampoo GmbH & Co. KG ) C:\Users\didinser recs 5rem 2\Downloads\ashampoo_zip_pro_3_3.0.30_sm.exe
    2020-04-21 15:44 - 2020-04-21 05:37 - 019707888 _____ (Bandicam Company) C:\Users\didinser recs 5rem 2\Downloads\bdcamsetup.exe
    2020-04-21 15:44 - 2020-04-21 05:37 - 006137720 _____ (Marcin Szeniak ) C:\Users\didinser recs 5rem 2\Downloads\BCUninstaller_4.16_setup.exe
    2020-04-21 15:42 - 2020-04-21 15:42 - 000000000 ____D C:\Users\didinser recs 5rem 2\Documents\Wondershare Filmora 9
    2020-04-21 15:42 - 2020-04-21 15:42 - 000000000 ____D C:\Users\didinser recs 5rem 2\Documents\Supersonic Download Accelerator
    2020-04-21 15:42 - 2020-04-21 15:42 - 000000000 ____D C:\Users\didinser recs 5rem 2\Documents\MAGIX Downloads
    2020-04-21 15:42 - 2020-04-21 15:42 - 000000000 ____D C:\Users\didinser recs 5rem 2\Documents\Freemake
    2020-04-21 15:42 - 2020-04-21 15:42 - 000000000 ____D C:\Users\didinser recs 5rem 2\Documents\DVDFab11
    2020-04-21 15:42 - 2020-04-21 15:42 - 000000000 ____D C:\Users\didinser recs 5rem 2\Documents\Bandicam
    2020-04-21 15:42 - 2020-04-21 15:42 - 000000000 ____D C:\Users\didinser recs 5rem 2\Desktop\YoutubeVideoUploader
    2020-04-21 15:42 - 2020-04-21 15:42 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Zoom
    2020-04-21 15:42 - 2020-04-21 05:37 - 001456913 _____ C:\Users\didinser recs 5rem 2\Desktop\kprm-20200415161616.txt
    2020-04-21 15:42 - 2020-04-21 05:37 - 000625501 _____ C:\Users\didinser recs 5rem 2\Documents\jeune fille.pdf
    2020-04-21 15:42 - 2020-04-21 05:37 - 000002308 _____ C:\Users\didinser recs 5rem 2\Desktop\Discord.lnk
    2020-04-21 15:42 - 2020-04-21 05:37 - 000002192 _____ C:\Users\didinser recs 5rem 2\Desktop\HomeByMe.lnk
    2020-04-21 15:42 - 2020-04-21 05:37 - 000001786 _____ C:\Users\didinser recs 5rem 2\Desktop\DVDFab 11 Mini (x64).lnk
    2020-04-21 15:42 - 2020-04-21 05:37 - 000001744 _____ C:\Users\didinser recs 5rem 2\Desktop\DVDFab 11 (x64).lnk
    2020-04-21 15:42 - 2020-04-21 05:37 - 000001739 _____ C:\Users\didinser recs 5rem 2\Documents\DiskImage.lnk
    2020-04-21 15:42 - 2020-04-21 05:37 - 000001563 _____ C:\Users\didinser recs 5rem 2\Desktop\Pre_Scan_Restore.lnk
    2020-04-21 15:42 - 2020-04-21 05:37 - 000001396 _____ C:\Users\didinser recs 5rem 2\Desktop\CyberLink Power2Go Essential.lnk
    2020-04-21 15:42 - 2020-04-21 05:37 - 000001334 _____ C:\Users\didinser recs 5rem 2\Desktop\Amazon Music.lnk
    2020-04-21 15:42 - 2020-04-21 05:37 - 000001238 _____ C:\Users\didinser recs 5rem 2\Desktop\Moo0 Enregistreur audio 1.49.lnk
    2020-04-21 15:42 - 2020-04-21 05:37 - 000001224 _____ C:\Users\didinser recs 5rem 2\Desktop\blender.lnk
    2020-04-21 15:42 - 2020-04-21 05:37 - 000001183 _____ C:\Users\didinser recs 5rem 2\Desktop\Pre_Scan_Donate.lnk
    2020-04-21 15:42 - 2020-04-21 05:37 - 000001072 _____ C:\Users\didinser recs 5rem 2\Desktop\DiskCheckup.lnk
    2020-04-21 15:42 - 2020-04-21 05:37 - 000001018 _____ C:\Users\didinser recs 5rem 2\Desktop\Chercher tout.lnk
    2020-04-21 15:42 - 2020-04-21 05:37 - 000000947 _____ C:\Users\didinser recs 5rem 2\Desktop\Moo0 Moniteur Syst?me 1.83.lnk
    2020-04-21 15:42 - 2020-04-21 05:37 - 000000829 _____ C:\Users\didinser recs 5rem 2\Desktop\RMPrepUSB.lnk
    2020-04-21 15:42 - 2020-04-21 05:37 - 000000785 _____ C:\Users\didinser recs 5rem 2\Desktop\NTLite.lnk
    2020-04-21 15:42 - 2020-04-21 05:37 - 000000000 ____D C:\Users\didinser recs 5rem 2\Documents\Mes vid?os
    2020-04-21 15:42 - 2020-04-21 05:37 - 000000000 ____D C:\Users\didinser recs 5rem 2\Documents\Mes images
    2020-04-21 15:42 - 2020-04-21 05:37 - 000000000 ____D C:\Users\didinser recs 5rem 2\Documents\Ma musique
    2020-04-21 15:39 - 2020-04-23 18:47 - 000000000 ____D C:\Program Files\Microsoft Silverlight
    2020-04-21 15:39 - 2020-04-23 18:47 - 000000000 ____D C:\Program Files (x86)\Microsoft Silverlight
    2020-04-21 15:39 - 2020-04-21 15:39 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\ZHP
    2020-04-21 15:39 - 2020-04-21 15:39 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\WZDT
    2020-04-21 15:39 - 2020-04-21 15:39 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\WinZip
    2020-04-21 15:39 - 2020-04-21 15:39 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Western Digital
    2020-04-21 15:37 - 2020-04-21 15:37 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Waterfox
    2020-04-21 15:37 - 2020-04-21 15:37 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\VMware
    2020-04-21 15:37 - 2020-04-21 15:37 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\vlc
    2020-04-21 15:36 - 2020-04-21 15:36 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\SYSSU
    2020-04-21 15:36 - 2020-04-21 15:36 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\SPEXD
    2020-04-21 15:36 - 2020-04-21 15:36 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\QtProject
    2020-04-21 15:36 - 2020-04-21 15:36 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\ProtonVPN AG
    2020-04-21 15:36 - 2020-04-21 15:36 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\PDF reDirect
    2020-04-21 15:36 - 2020-04-21 15:36 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\ownCloud
    2020-04-21 15:36 - 2020-04-21 15:36 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Opera Software
    2020-04-21 15:36 - 2020-04-21 15:36 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Notepad++
    2020-04-21 15:36 - 2020-04-21 05:36 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Spotify
    2020-04-21 15:36 - 2020-04-21 05:36 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Nico Mak Computing
    2020-04-21 15:36 - 2020-04-21 05:36 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\NCH Software
    2020-04-21 15:35 - 2020-04-23 17:15 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\IObit
    2020-04-21 15:35 - 2020-04-21 15:36 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Mozilla
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VobSub
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ultracopier
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RMPrepUSB
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PNotes.NET
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Moo0
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Everything
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DVDFab 11 (x64)
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blender
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon Music
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AC3Filter
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\MAGIX
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Macromedia
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Jumping Bytes
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\HDDR
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\GRETECH
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\FreeGrabApp
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\foobar2000
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Everything
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\DVDVideoSoft
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Dropbox
    2020-04-21 15:35 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\DriverPack Cloud
    2020-04-21 15:35 - 2020-04-21 05:36 - 000002194 _____ C:\Users\didinser recs 5rem 2\AppData\Roaming\Microsoft\Windows\Start Menu\HomeByMe.lnk
    2020-04-21 15:35 - 2020-04-21 05:36 - 000001185 _____ C:\Users\didinser recs 5rem 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon Music.lnk
    2020-04-21 15:35 - 2020-04-21 05:36 - 000000915 _____ C:\Users\didinser recs 5rem 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MediaInfo.lnk
    2020-04-21 15:35 - 2020-04-21 05:36 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEmu
    2020-04-21 15:35 - 2020-04-21 05:36 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
    2020-04-21 15:34 - 2020-04-21 15:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\discord
    2020-04-21 15:34 - 2020-04-21 15:34 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\DFFXR
    2020-04-21 15:34 - 2020-04-21 15:34 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Daum
    2020-04-21 15:34 - 2020-04-21 15:34 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\ChemTable Software
    2020-04-21 15:34 - 2020-04-21 15:34 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Bandicam Company
    2020-04-21 15:34 - 2020-04-21 15:34 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\AVG
    2020-04-21 15:34 - 2020-04-21 15:34 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\AquaSnap
    2020-04-21 15:34 - 2020-04-21 15:34 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Anvsoft
    2020-04-21 15:34 - 2020-04-21 15:34 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\AIMP
    2020-04-21 15:34 - 2020-04-21 15:34 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Adobe
    2020-04-21 15:34 - 2020-04-21 15:34 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\ActiveX
    2020-04-21 15:34 - 2020-04-21 15:34 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\LocalLow\Temp
    2020-04-21 15:34 - 2020-04-21 15:34 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\LocalLow\SquareClock.Production_HBMV1
    2020-04-21 15:34 - 2020-04-21 15:34 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\LocalLow\Mozilla
    2020-04-21 15:34 - 2020-04-21 05:37 - 000000514 _____ C:\Users\didinser recs 5rem 2\AppData\Roaming\3Youtube Uploader Pro
    2020-04-21 15:34 - 2020-04-21 05:36 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Cloud Tuneup Pro
    2020-04-21 15:34 - 2020-04-21 05:36 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\Avanquest
    2020-04-21 15:34 - 2020-04-21 05:36 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Roaming\3eb3b3492003
    2020-04-21 15:33 - 2020-04-21 15:33 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\LocalLow\IObit
    2020-04-21 15:33 - 2020-04-21 15:33 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\LocalLow\Intel
    2020-04-21 15:33 - 2020-04-21 15:33 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\LocalLow\Adobe
    2020-04-21 15:33 - 2020-04-21 15:33 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Zoom
    2020-04-21 15:33 - 2020-04-21 15:33 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Zemana
    2020-04-21 15:33 - 2020-04-21 15:33 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\youtube-uploader.com
    2020-04-21 15:33 - 2020-04-21 15:33 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Wondershare
    2020-04-21 15:30 - 2020-04-21 15:30 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Waterfox
    2020-04-21 15:30 - 2020-04-21 05:35 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\VirtualStore
    2020-04-21 15:20 - 2020-04-21 15:20 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\SquirrelTemp
    2020-04-21 15:20 - 2020-04-21 15:20 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\SquareClock.Production_HBMV1
    2020-04-21 15:20 - 2020-04-21 15:20 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\SIB
    2020-04-21 15:20 - 2020-04-21 15:20 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\SHAREit Technologies
    2020-04-21 15:20 - 2020-04-21 15:20 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\SafiAgent
    2020-04-21 15:20 - 2020-04-21 15:20 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Publishers
    2020-04-21 15:20 - 2020-04-21 15:20 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\ProtonVPN
    2020-04-21 15:20 - 2020-04-21 05:34 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\SumatraPDF
    2020-04-21 15:20 - 2020-04-21 05:33 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\RealVNC
    2020-04-21 15:20 - 2020-04-21 05:33 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\PanelManager
    2020-04-21 15:17 - 2020-04-21 15:20 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Packages
    2020-04-21 15:15 - 2020-04-21 15:17 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Mozilla
    2020-04-21 15:15 - 2020-04-21 15:15 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Microvirt
    2020-04-21 15:15 - 2020-04-21 15:15 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\MicrosoftEdge
    2020-04-21 15:13 - 2020-04-23 17:06 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Innovative Solutions
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\mbamtray
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\mbam
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Intel
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\FreemakeVideoConverter
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\FluxSoftware
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Epic Privacy Browser
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\eMule
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Dropbox
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Downloaded Installations
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Discord
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\CyberLink
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\CrashRpt
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Crashpad
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\ConnectedDevicesPlatform
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Comms
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Chromium
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\ChemTable Software
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\CEF
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\cache
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\bitwarden-updater
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Avira
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Avg
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Audials
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Ashampoo Movie Studio Pro 3
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Ashampoo
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\ArcSoft
    2020-04-21 15:13 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\app
    2020-04-21 15:13 - 2020-04-21 05:32 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\LoopBackService
    2020-04-21 15:13 - 2020-04-21 05:32 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Historique
    2020-04-21 15:13 - 2020-04-21 05:31 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\DBG
    2020-04-21 15:13 - 2020-04-21 05:31 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\CrashDumps
    2020-04-21 15:13 - 2020-04-21 05:31 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Copy Handler
    2020-04-21 15:12 - 2020-04-23 17:05 - 000000000 ____D C:\Users\didinser recs 5rem 2
    2020-04-21 15:12 - 2020-04-21 15:13 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Amazon Music
    2020-04-21 15:12 - 2020-04-21 15:12 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Aimersoft
    2020-04-21 15:12 - 2020-04-21 15:12 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\AdvertisingPopup
    2020-04-21 15:12 - 2020-04-21 15:12 - 000000000 ____D C:\Users\didinser recs 5rem 2\AppData\Local\Adobe
    2020-04-21 15:12 - 2020-04-21 15:12 - 000000000 ____D C:\Users\didinser recs 5rem 2\3D Objects
    2020-04-21 15:12 - 2020-04-21 15:12 - 000000000 ____D C:\Users\didinser recs 5rem 2\.MemuHyperv
    2020-04-21 15:12 - 2020-04-21 15:12 - 000000000 ____D C:\Users\didinser recs 5rem 2\.cache
    2020-04-21 15:12 - 2020-04-21 15:12 - 000000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
    2020-04-21 15:12 - 2020-04-21 15:12 - 000000000 ____D C:\Users\Default\AppData\Roaming\Avanquest
    2020-04-21 15:12 - 2020-04-21 15:12 - 000000000 ____D C:\Users\Default\AppData\Local\Kaspersky Lab
    2020-04-21 15:12 - 2020-04-21 15:12 - 000000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
    2020-04-21 15:12 - 2020-04-21 15:12 - 000000000 ____D C:\Users\Default User\AppData\Roaming\Avanquest
    2020-04-21 15:12 - 2020-04-21 15:12 - 000000000 ____D C:\Users\Default User\AppData\Local\Kaspersky Lab
    2020-04-21 15:12 - 2020-04-21 05:39 - 003429248 _____ (Nicolas Coolman) C:\Users\didinser recs 5rem 2\ZHPSuite.exe
    2020-04-21 15:12 - 2020-04-21 05:39 - 000000020 _____ C:\Users\didinser recs 5rem 2\ntuser.ini
    2020-04-21 15:12 - 2020-04-21 05:31 - 000000000 ____D C:\Users\didinser recs 5rem 2\.QtWebEngineProcess
    2020-04-21 15:12 - 2020-04-21 05:31 - 000000000 ____D C:\Users\didinser recs 5rem 2\.AdvertisingPopup
    2020-04-21 15:03 - 2020-04-21 15:03 - 000000000 ____D C:\Users\barro\AppData\Local\Comms
    2020-04-21 15:03 - 2020-04-21 15:03 - 000000000 ____D C:\Users\barro\AppData\Local\CEF
    2020-04-21 15:03 - 2020-04-21 15:03 - 000000000 ____D C:\Users\barro\AppData\Local\Alternative anti-TFM 2
    2020-04-21 15:03 - 2020-04-21 15:03 - 000000000 ____D C:\Users\barro\AppData\Local\Adobe
    2020-04-21 15:03 - 2020-04-21 15:03 - 000000000 ____D C:\Users\barro\3D Objects
    2020-04-21 15:03 - 2020-04-21 15:03 - 000000000 ____D C:\Users\barro\.swt
    2020-04-21 15:03 - 2020-04-21 15:03 - 000000000 ____D C:\Users\barro
    2020-04-21 15:03 - 2020-04-21 15:03 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\OneDrive
    2020-04-21 15:03 - 2020-04-21 15:03 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\MicrosoftEdgeBackups
    2020-04-21 15:03 - 2020-04-21 15:03 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\IntelGraphicsProfiles
    2020-04-21 15:03 - 2020-04-21 15:03 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\Dropbox
    2020-04-21 15:03 - 2020-04-21 05:29 - 008396591 _____ C:\Users\barro\Downloads\free-ios-ads-remover-2-1-0-0.exe.reco
    2020-04-21 15:03 - 2020-04-21 05:29 - 008396591 _____ C:\Users\barro\Downloads\free-ios-ads-remover-2-1-0-0.exe (2).reco
    2020-04-21 15:03 - 2020-04-21 05:29 - 006780598 _____ C:\Users\barro\Downloads\dolfga-music.exe.reco
    2020-04-21 15:03 - 2020-04-21 05:29 - 003242190 _____ C:\Users\barro\Downloads\winrar-x64-571fr.exe.bora
    2020-04-21 15:03 - 2020-04-21 05:29 - 001030744 _____ C:\Users\barro\Downloads\dillo-3.0.5.zip.bora
    2020-04-21 15:03 - 2020-04-21 05:29 - 000000000 ____D C:\Users\barro\OneDrive
    2020-04-21 15:03 - 2020-04-21 05:29 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\Voisinage r?seau
    2020-04-21 15:03 - 2020-04-21 05:29 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\Voisinage d'impression
    2020-04-21 15:03 - 2020-04-21 05:29 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\Mod?les
    2020-04-21 15:03 - 2020-04-21 05:29 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\Mes documents
    2020-04-21 15:03 - 2020-04-21 05:29 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\Menu D?marrer
    2020-04-21 15:03 - 2020-04-21 05:29 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\Downloads\Video
    2020-04-21 15:03 - 2020-04-21 05:29 - 000000000 _____ C:\Users\barro\Downloads\86310d2f-c0fa-40f9-ab94-fd2cc4cdcbbf.tmp.vir
    2020-04-21 15:02 - 2020-04-21 15:02 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\Downloads\geek
    2020-04-21 15:02 - 2020-04-21 05:29 - 035086184 _____ (Microsoft Corporation) C:\Users\antifondance B Kin S-Vot 10Crem\Downloads\OneDriveSetup.exe
    2020-04-21 15:02 - 2020-04-21 05:29 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\Downloads\Compressed
    2020-04-21 15:01 - 2020-04-23 17:05 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\Desktop\playlists
    2020-04-21 15:01 - 2020-04-21 15:01 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\AppData\Roaming\QFX Software
    2020-04-21 15:01 - 2020-04-21 15:01 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\AppData\Roaming\IrfanView
    2020-04-21 15:01 - 2020-04-21 15:01 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\AppData\Roaming\Adobe
    2020-04-21 15:01 - 2020-04-21 15:01 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\AppData\Local\Publishers
    2020-04-21 15:01 - 2020-04-21 05:29 - 008323304 _____ (Tonec Inc.) C:\Users\antifondance B Kin S-Vot 10Crem\Downloads\idman636build1.exe
    2020-04-21 15:01 - 2020-04-21 05:29 - 005975960 _____ (SOSVirus) C:\Users\antifondance B Kin S-Vot 10Crem\Desktop\AdsFix.exe
    2020-04-21 15:01 - 2020-04-21 05:29 - 003255680 _____ (Nicolas Coolman) C:\Users\antifondance B Kin S-Vot 10Crem\Desktop\ZHPDiag3.exe
    2020-04-21 15:01 - 2020-04-21 05:29 - 001604128 _____ () C:\Users\antifondance B Kin S-Vot 10Crem\Downloads\Everything-1.4.1.935.x64-Setup.exe
    2020-04-21 15:01 - 2020-04-21 05:29 - 000001450 _____ C:\Users\antifondance B Kin S-Vot 10Crem\Desktop\Microsoft Edge.lnk
    2020-04-21 15:01 - 2020-04-21 05:29 - 000001331 _____ C:\Users\antifondance B Kin S-Vot 10Crem\Desktop\Dropbox.lnk
    2020-04-21 15:01 - 2020-04-21 05:29 - 000001105 _____ C:\Users\antifondance B Kin S-Vot 10Crem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
    2020-04-21 15:01 - 2020-04-21 05:29 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\Documents\Mes vid?os
    2020-04-21 15:01 - 2020-04-21 05:29 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\Documents\Mes images
    2020-04-21 15:01 - 2020-04-21 05:29 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\Documents\Ma musique
    2020-04-21 15:01 - 2020-04-21 05:29 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
    2020-04-21 15:01 - 2020-04-21 05:29 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\AppData\Local\VirtualStore
    2020-04-21 15:00 - 2020-04-21 15:01 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\AppData\Local\Packages
    2020-04-21 15:00 - 2020-04-21 15:00 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\AppData\Local\OneDrive
    2020-04-21 15:00 - 2020-04-21 15:00 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\AppData\Local\MicrosoftEdge
    2020-04-21 14:59 - 2020-04-21 15:03 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem
    2020-04-21 14:59 - 2020-04-21 14:59 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\AppData\Local\ConnectedDevicesPlatform
    2020-04-21 14:59 - 2020-04-21 14:59 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\AppData\Local\Comms
    2020-04-21 14:59 - 2020-04-21 14:59 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\AppData\Local\ACD Systems
    2020-04-21 14:59 - 2020-04-21 14:59 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\3D Objects
    2020-04-21 14:59 - 2020-04-21 05:28 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\AppData\Local\LoopBackService
    2020-04-21 14:59 - 2020-04-21 05:28 - 000000000 ____D C:\Users\antifondance B Kin S-Vot 10Crem\AppData\Local\Historique
    2020-04-21 14:55 - 2020-04-21 05:53 - 000000174 _____ C:\Users\desktop(1).ini
    2020-04-21 14:55 - 2020-04-21 05:53 - 000000135 _____ C:\Users\antifondance
    2020-04-21 14:55 - 2020-04-21 05:53 - 000000035 _____ C:\Users\didinser
    2020-04-21 14:53 - 2020-04-24 14:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF reDirect v2
    2020-04-21 14:53 - 2020-04-24 14:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft
    2020-04-21 14:53 - 2020-04-24 12:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ownCloud
    2020-04-21 14:53 - 2020-04-24 12:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool Partition Wizard 12
    2020-04-21 14:53 - 2020-04-24 12:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Todo Backup 12.0
    2020-04-21 14:53 - 2020-04-24 12:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 20
    2020-04-21 14:53 - 2020-04-24 12:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
    2020-04-21 14:53 - 2020-04-24 12:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoIt v3
    2020-04-21 14:53 - 2020-04-24 12:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AquaSnap
    2020-04-21 14:53 - 2020-04-24 12:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\8GadgetPack
    2020-04-21 14:53 - 2020-04-24 12:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
    2020-04-21 14:53 - 2020-04-23 19:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
    2020-04-21 14:53 - 2020-04-23 11:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Backupper
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VoodooShield
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Ninja
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Start Menu X
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PortraitPro 19 Trial
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mumble
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool Partition Wizard 11
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minimal ADB and Fastboot
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LAV Filters
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ISO to USB
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iMobie
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hasleo WinToUSB
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMule
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\e-Carte Bleue La Banque Postale
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDFab 11 (x64)
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Daum
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ChrisPC Free Ads Blocker
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CamStudio 2.7
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BleachBit
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bandicam
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aTube Catcher
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ALLPlayer Remote Control
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AirCopy
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced IP Scanner v2
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\adaware
    2020-04-21 14:53 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\3dtv.at Stereoscopic Player
    2020-04-21 14:53 - 2020-04-21 05:22 - 000001020 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Waterfox.lnk
    2020-04-21 14:53 - 2020-04-21 05:22 - 000000966 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
    2020-04-21 14:53 - 2020-04-21 05:22 - 000000781 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastMove.lnk
    2020-04-21 14:52 - 2020-04-21 05:22 - 000001992 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Zoner Photo Studio X.lnk
    2020-04-21 14:52 - 2020-04-21 05:22 - 000001917 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitwarden.lnk
    2020-04-21 14:52 - 2020-04-21 05:22 - 000001560 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced Uninstaller PRO 12.lnk
    2020-04-21 14:52 - 2020-04-21 05:22 - 000000924 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Basilisk.lnk
    2020-04-21 13:21 - 2020-04-23 03:22 - 000001670 _____ C:\Windows\system32\bddel.dat
    2020-04-21 13:15 - 2020-04-21 13:15 - 000000000 ____D C:\alternatives adlice diag et CCleaner cloud pour inventer BNAN Anti-TFM2 14Rem session
    2020-04-21 12:59 - 2020-04-25 00:46 - 000000000 ____D C:\AdsFix
    2020-04-21 12:59 - 2020-04-21 13:15 - 000000000 ____D C:\alternatives achats cb 2016-2020 sauvetage windows7 setup disk for acer aspire one d255
    2020-04-21 12:59 - 2020-04-21 12:59 - 000000000 ____D C:\Aimersoft Video Converter Ultimate
    2020-04-21 12:59 - 2020-04-21 12:59 - 000000000 ____D C:\afaamfuw & anaamfuw finalis d?di? u bouton 3
    2020-04-21 12:59 - 2020-04-21 04:45 - 000000000 ____D C:\AdwCleaner + usbfix,,sosvirus apps,,memu setup,,debug internet anti-nathalie sit on mc flury amoureuses
    2020-04-21 12:55 - 2020-04-21 12:57 - 000000000 ____D C:\$360Section sauvetage power2go system recovery disks
    2020-04-21 12:55 - 2020-04-21 12:55 - 000000000 ____D C:\Users\Public\Thunder Network
    2020-04-21 12:55 - 2020-04-21 12:55 - 000000000 ____D C:\Users\Public\Speedup Sessions
    2020-04-21 12:55 - 2020-04-21 05:48 - 070157072 _____ (WhatsApp) C:\Users\Public\Downloads\WhatsAppSetup_64_is.exe
    2020-04-21 12:54 - 2020-04-21 05:48 - 039455912 _____ (PandoraTV) C:\Users\Public\Downloads\KMPlayer_4.2.1.1.8_is.exe
    2020-04-21 12:54 - 2020-04-21 05:48 - 036730328 _____ (LINE Corporation) C:\Users\Public\Downloads\LineInst_5.0.0.1380_is.exe
    2020-04-21 12:53 - 2020-04-21 12:53 - 000000000 ____D C:\Users\Public\Documents\Wondershare
    2020-04-21 12:53 - 2020-04-21 12:53 - 000000000 ____D C:\Users\Public\Documents\Paragon Software
    2020-04-21 12:53 - 2020-04-21 12:53 - 000000000 ____D C:\Users\Public\Documents\Paragon
    2020-04-21 12:53 - 2020-04-21 12:53 - 000000000 ____D C:\Users\Public\Documents\CyberLink
    2020-04-21 12:53 - 2020-04-21 12:53 - 000000000 ____D C:\Users\Public\Documents\BVRP Software
    2020-04-21 12:53 - 2020-04-21 12:53 - 000000000 ____D C:\Users\Public\Documents\Baidu
    2020-04-21 12:53 - 2020-04-21 12:53 - 000000000 ____D C:\Users\Public\Documents\Ashampoo
    2020-04-21 12:53 - 2020-04-21 12:53 - 000000000 ____D C:\Users\Public\Documents\Aimersoft
    2020-04-21 12:53 - 2020-04-21 05:48 - 000000000 ____D C:\Users\Public\Documents\RegRunInfo
    2020-04-21 12:52 - 2020-04-21 12:52 - 000000000 ____D C:\Users\Public\CyberLink
    2020-04-21 12:52 - 2020-04-21 12:52 - 000000000 ____D C:\Users\Public\BlueStacks
    2020-04-21 12:47 - 2020-04-21 12:50 - 000035867 _____ C:\Users\nalb fait moins peur\Desktop\Addition.txt
    2020-04-21 12:39 - 2020-04-25 14:30 - 000027886 _____ C:\Users\nalb fait moins peur\Desktop\FRST.txt
    2020-04-21 12:39 - 2020-04-21 12:39 - 000000000 ____D C:\Users\nalb fait moins peur\Desktop\FRST-OlderVersion
    2020-04-21 12:38 - 2020-04-25 14:29 - 000000000 ____D C:\FRST
    2020-04-21 12:36 - 2020-04-21 12:39 - 002281984 _____ (Farbar) C:\Users\nalb fait moins peur\Desktop\FRST64.exe
    2020-04-21 12:09 - 2020-04-21 12:09 - 000062712 _____ C:\Users\nalb fait moins peur\Desktop\ZHPCleaner-[R]-21042020-12_05_58.html
    2020-04-21 12:09 - 2020-04-21 12:09 - 000000000 ____D C:\Users\nalb fait moins peur\Desktop\ZHPCleaner-[R]-21042020-12_05_58_files
    2020-04-21 12:06 - 2020-04-21 12:05 - 000035662 _____ C:\Users\nalb fait moins peur\Desktop\ZHPCleaner (R).html
    2020-04-21 12:05 - 2020-04-21 12:05 - 000022241 _____ C:\Users\nalb fait moins peur\Desktop\ZHPCleaner (R).txt
    2020-04-21 12:03 - 2020-04-21 12:03 - 000069714 _____ C:\Users\nalb fait moins peur\Desktop\ZHPCleaner-[S]-21042020-12_00_45.html
    2020-04-21 12:03 - 2020-04-21 12:03 - 000000000 ____D C:\Users\nalb fait moins peur\Desktop\ZHPCleaner-[S]-21042020-12_00_45_files
    2020-04-21 12:00 - 2020-04-21 12:00 - 000039302 _____ C:\Users\nalb fait moins peur\Desktop\ZHPCleaner (S).html
    2020-04-21 12:00 - 2020-04-21 12:00 - 000024786 _____ C:\Users\nalb fait moins peur\Desktop\ZHPCleaner (S).txt
    2020-04-21 11:41 - 2020-04-24 16:43 - 000000000 ____D C:\ProgramData\UVK
    2020-04-21 11:41 - 2020-04-21 11:41 - 000000000 ____D C:\ProgramData\Wondershare
    2020-04-21 11:41 - 2020-04-21 11:41 - 000000000 ____D C:\ProgramData\WinZip
    2020-04-21 11:41 - 2020-04-21 11:41 - 000000000 ____D C:\ProgramData\Western Digital
    2020-04-21 11:41 - 2020-04-21 11:41 - 000000000 ____D C:\ProgramData\Web Installer
    2020-04-21 11:41 - 2020-04-21 11:41 - 000000000 ____D C:\ProgramData\VoodooShield
    2020-04-21 11:41 - 2020-04-21 11:41 - 000000000 ____D C:\ProgramData\VMware
    2020-04-21 11:41 - 2020-04-21 11:41 - 000000000 ____D C:\ProgramData\{4C13979D-F8C4-41F2-B4D5-07A2A4FB8F6B}
    2020-04-21 11:41 - 2020-04-21 05:12 - 000000000 ____D C:\ProgramFiles
    2020-04-21 11:41 - 2020-04-21 05:12 - 000000000 ____D C:\ProgramData\Waterfox
    2020-04-21 11:41 - 2020-04-21 05:12 - 000000000 ____D C:\ProgramData\{28A0149C-0088-6CE4-58D0-44CCB0389C14}
    2020-04-21 11:40 - 2020-04-21 11:40 - 000000000 ____D C:\ProgramData\USBSRService
    2020-04-21 11:40 - 2020-04-21 11:40 - 000000000 ____D C:\ProgramData\UCheck
    2020-04-21 11:40 - 2020-04-21 11:40 - 000000000 ____D C:\ProgramData\Tweaking
    2020-04-21 11:40 - 2020-04-21 11:40 - 000000000 ____D C:\ProgramData\ToastGenerator
    2020-04-21 11:40 - 2020-04-21 11:40 - 000000000 ____D C:\ProgramData\Tech Tool Store
    2020-04-21 11:40 - 2020-04-21 11:40 - 000000000 ____D C:\ProgramData\SystemAcCrux
    2020-04-21 11:40 - 2020-04-21 11:40 - 000000000 ____D C:\ProgramData\SVG_Client
    2020-04-21 11:40 - 2020-04-21 11:40 - 000000000 ____D C:\ProgramData\SUPPORTDIR
    2020-04-21 11:40 - 2020-04-21 11:40 - 000000000 ____D C:\ProgramData\SquirrelMachineInstalls
    2020-04-21 11:40 - 2020-04-21 11:40 - 000000000 ____D C:\ProgramData\SimulationExams.com
    2020-04-21 11:40 - 2020-04-21 05:12 - 000000000 ____D C:\ProgramData\UniqueId
    2020-04-21 11:40 - 2020-04-21 05:12 - 000000000 ____D C:\ProgramData\TEMP.BackupByPortableAppC
    2020-04-21 11:40 - 2020-04-21 05:12 - 000000000 ____D C:\ProgramData\StartMenuX
    2020-04-21 11:26 - 2020-04-21 11:26 - 000000000 ____D C:\Windows\system32\Tasks\Auslogics
    2020-04-21 11:12 - 2020-04-21 11:12 - 000001225 _____ C:\Users\Public\Desktop\Xirrus Wi-Fi Inspector.lnk
    2020-04-21 11:12 - 2020-04-21 11:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xirrus
    2020-04-21 11:08 - 2020-04-21 11:09 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\Ketarin
    2020-04-21 11:06 - 2020-04-21 11:06 - 000001100 _____ C:\Users\nalb fait moins peur\Desktop\UltraVNC Viewer.lnk
    2020-04-21 11:06 - 2020-04-21 11:06 - 000001089 _____ C:\Users\nalb fait moins peur\Desktop\UltraVNC Server.lnk
    2020-04-21 11:06 - 2020-04-21 11:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraVNC
    2020-04-21 10:59 - 2020-04-21 10:59 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\Xirrus
    2020-04-21 10:56 - 2020-04-21 10:56 - 000001374 _____ C:\Users\nalb fait moins peur\Desktop\Auslogics Windows Slimmer.lnk
    2020-04-21 10:54 - 2020-04-21 11:25 - 000001331 _____ C:\Users\nalb fait moins peur\Desktop\Auslogics BoostSpeed 11.lnk
    2020-04-21 10:54 - 2020-04-21 10:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics
    2020-04-21 10:51 - 2020-04-21 10:54 - 000000000 ____D C:\Program Files (x86)\Auslogics
    2020-04-21 10:50 - 2020-04-21 10:54 - 000000000 ____D C:\ProgramData\Auslogics
    2020-04-21 10:47 - 2020-04-24 12:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit PhantomPDF
    2020-04-21 10:47 - 2020-04-21 10:47 - 000001162 _____ C:\Users\Public\Desktop\Foxit PhantomPDF.lnk
    2020-04-21 10:46 - 2020-04-24 09:10 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\Foxit Software
    2020-04-21 10:38 - 2020-04-21 10:38 - 000000000 ____D C:\Program Files (x86)\Foxit Software
    2020-04-21 10:32 - 2020-04-21 10:32 - 000000000 ____D C:\Users\Public\Foxit Software
    2020-04-21 10:31 - 2020-04-22 17:12 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\Ashampoo
    2020-04-21 10:30 - 2020-04-21 10:30 - 000000989 _____ C:\Users\nalb fait moins peur\Desktop\Ashampoo MP3 Cover Finder.lnk
    2020-04-21 10:30 - 2020-04-21 10:30 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ashampoo
    2020-04-21 10:30 - 2020-04-21 10:30 - 000000000 ____D C:\ProgramData\Ashampoo
    2020-04-21 10:24 - 2020-04-21 10:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
    2020-04-21 10:24 - 2020-04-21 05:48 - 000001368 _____ C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
    2020-04-21 10:18 - 2020-04-21 10:23 - 000000000 ____D C:\Program Files (x86)\DVDVideoSoft
    2020-04-21 10:18 - 2020-04-21 10:19 - 000000000 ____D C:\Program Files (x86)\FreeCodecPack
    2020-04-21 10:17 - 2020-04-21 10:27 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\DVDVideoSoft
    2020-04-21 09:55 - 2020-04-21 09:55 - 000000890 _____ C:\Users\nalb fait moins peur\Desktop\ZHPCleaner.lnk
    2020-04-21 09:53 - 2020-04-23 18:58 - 000000000 ____D C:\ProgramData\RogueKiller
    2020-04-21 09:52 - 2020-04-23 11:05 - 000000000 ____D C:\ProgramData\ProductData
    2020-04-21 09:52 - 2020-04-21 09:52 - 000000000 ____D C:\ProgramData\QFX Software
    2020-04-21 09:52 - 2020-04-21 09:52 - 000000000 ____D C:\ProgramData\PDVD
    2020-04-21 09:52 - 2020-04-21 09:52 - 000000000 ____D C:\ProgramData\Paragon Software
    2020-04-21 09:52 - 2020-04-21 09:52 - 000000000 ____D C:\ProgramData\Paragon
    2020-04-21 09:52 - 2020-04-21 09:52 - 000000000 ____D C:\ProgramData\Packages
    2020-04-21 09:52 - 2020-04-21 05:07 - 000000000 ____D C:\ProgramData\PlugCache
    2020-04-21 09:51 - 2020-04-21 09:51 - 000000000 ____D C:\ProgramData\Oracle
    2020-04-21 09:51 - 2020-04-21 09:51 - 000000000 ____D C:\ProgramData\OO Software
    2020-04-21 09:51 - 2020-04-21 09:51 - 000000000 ____D C:\ProgramData\NCH Software
    2020-04-21 09:51 - 2020-04-21 09:51 - 000000000 ____D C:\ProgramData\Mr Blade Designs
    2020-04-21 09:51 - 2020-04-21 09:51 - 000000000 ____D C:\ProgramData\Mozilla
    2020-04-21 09:51 - 2020-04-21 05:07 - 000000000 ____D C:\ProgramData\Nico Mak Computing
    2020-04-21 09:46 - 2020-04-21 09:46 - 000000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
    2020-04-21 09:45 - 2020-04-21 09:45 - 003297152 _____ (Nicolas Coolman) C:\Users\nalb fait moins peur\Downloads\ZHPCleaner (1).exe
    2020-04-21 09:45 - 2020-04-21 09:45 - 003297152 _____ (Nicolas Coolman) C:\Users\nalb fait moins peur\Desktop\ZHPCleaner (1).exe
    2020-04-21 09:44 - 2020-04-21 12:05 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\ZHP
    2020-04-21 09:44 - 2020-04-21 09:44 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\ZHP
    2020-04-21 09:41 - 2020-04-23 09:20 - 000000000 ____D C:\ProgramData\Kingsoft
    2020-04-21 09:41 - 2020-04-21 09:42 - 000000000 ____D C:\ProgramData\Malwarebytes
    2020-04-21 09:41 - 2020-04-21 09:41 - 000000000 ____D C:\ProgramData\LogiShrd
    2020-04-21 09:41 - 2020-04-21 05:05 - 000000000 ____D C:\ProgramData\Lamia
    2020-04-21 09:36 - 2020-04-25 04:47 - 000000000 ____D C:\Users\nalb fait moins peur\Desktop\LFS Hyper-Anti-JJAD-UEFM Suite v123
    2020-04-21 09:34 - 2020-04-24 12:21 - 000000000 ____D C:\Users\nalb fait moins peur\Desktop\LFS Hyper-Anti-JJAD-UEFM Suite 365 v1.0
    2020-04-21 09:34 - 2018-08-16 17:41 - 000179376 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
    2020-04-21 09:34 - 2018-08-16 17:41 - 000169864 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
    2020-04-21 09:34 - 2018-08-16 17:41 - 000044488 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
    2020-04-21 09:30 - 2020-04-21 09:46 - 000000000 ____D C:\Windows\system32\MRT
    2020-04-21 09:30 - 2020-04-21 09:30 - 121542864 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
    2020-04-21 09:24 - 2020-04-22 21:51 - 000000000 ____D C:\ProgramData\ESET
    2020-04-21 09:24 - 2020-04-21 09:24 - 000000000 ____D C:\ProgramData\IObit
    2020-04-21 09:24 - 2020-04-21 09:24 - 000000000 ____D C:\ProgramData\install_clap
    2020-04-21 09:24 - 2020-04-21 09:24 - 000000000 ____D C:\ProgramData\install_backup
    2020-04-21 09:24 - 2020-04-21 09:24 - 000000000 ____D C:\ProgramData\HitmanPro
    2020-04-21 09:24 - 2020-04-21 09:24 - 000000000 ____D C:\ProgramData\GRETECH
    2020-04-21 09:24 - 2020-04-21 09:24 - 000000000 ____D C:\ProgramData\GraphicsType
    2020-04-21 09:24 - 2020-04-21 09:24 - 000000000 ____D C:\ProgramData\GlarySoft
    2020-04-21 09:24 - 2020-04-21 09:24 - 000000000 ____D C:\ProgramData\Gemma
    2020-04-21 09:24 - 2020-04-21 09:24 - 000000000 ____D C:\ProgramData\F-Secure
    2020-04-21 09:24 - 2020-04-21 09:24 - 000000000 ____D C:\ProgramData\Freemake
    2020-04-21 09:24 - 2020-04-21 09:24 - 000000000 ____D C:\ProgramData\FileOpen
    2020-04-21 09:24 - 2020-04-21 09:24 - 000000000 ____D C:\ProgramData\FastMove
    2020-04-21 09:24 - 2020-04-21 09:24 - 000000000 ____D C:\ProgramData\Emsisoft
    2020-04-21 09:24 - 2020-04-21 09:24 - 000000000 ____D C:\ProgramData\EdrawSoft
    2020-04-21 09:24 - 2020-04-21 09:24 - 000000000 ____D C:\ProgramData\Easy Duplicate Finder
    2020-04-21 09:24 - 2020-04-21 09:24 - 000000000 ____D C:\ProgramData\DiffView
    2020-04-21 09:24 - 2020-04-21 09:24 - 000000000 ____D C:\ProgramData\didinser recs 5rem 2
    2020-04-21 09:24 - 2020-04-21 09:24 - 000000000 ____D C:\ProgramData\CyberLink
    2020-04-21 09:24 - 2020-04-21 09:24 - 000000000 ____D C:\ProgramData\Corel
    2020-04-21 09:24 - 2020-04-21 05:02 - 000000000 ____D C:\ProgramData\Immunet
    2020-04-21 09:23 - 2020-04-21 09:23 - 000000000 ____D C:\ProgramData\CLSK
    2020-04-21 09:23 - 2020-04-21 09:23 - 000000000 ____D C:\ProgramData\Chemtable Software
    2020-04-21 09:23 - 2020-04-21 09:23 - 000000000 ____D C:\ProgramData\BVRP Software
    2020-04-21 09:23 - 2020-04-21 09:23 - 000000000 ____D C:\ProgramData\Bitdefender Agent
    2020-04-21 09:23 - 2020-04-21 09:23 - 000000000 ____D C:\ProgramData\BDLogging
    2020-04-21 09:23 - 2020-04-21 09:23 - 000000000 ____D C:\ProgramData\Bates
    2020-04-21 09:23 - 2020-04-21 09:23 - 000000000 ____D C:\ProgramData\Avira
    2020-04-21 09:23 - 2020-04-21 05:01 - 000000000 ____D C:\ProgramData\cache
    2020-04-21 09:22 - 2020-04-21 09:23 - 000000000 ____D C:\ProgramData\AVG
    2020-04-21 09:22 - 2020-04-21 09:22 - 000000000 ____D C:\ProgramData\AVAST Software
    2020-04-21 09:22 - 2020-04-21 09:22 - 000000000 ____D C:\ProgramData\Avanquest
    2020-04-21 09:22 - 2020-04-21 09:22 - 000000000 ____D C:\ProgramData\Atc
    2020-04-21 09:22 - 2020-04-21 09:22 - 000000000 ____D C:\ProgramData\ArcSoft
    2020-04-21 09:22 - 2020-04-21 09:22 - 000000000 ____D C:\ProgramData\Apple Computer
    2020-04-21 09:22 - 2020-04-21 09:22 - 000000000 ____D C:\ProgramData\Apple
    2020-04-21 09:22 - 2020-04-21 09:22 - 000000000 ____D C:\ProgramData\AomeiBR
    2020-04-21 09:22 - 2020-04-21 09:22 - 000000000 ____D C:\ProgramData\Aomei
    2020-04-21 09:22 - 2020-04-21 09:22 - 000000000 ____D C:\ProgramData\ALLPlayer
    2020-04-21 09:22 - 2020-04-21 09:22 - 000000000 ____D C:\ProgramData\Aimersoft
    2020-04-21 09:22 - 2020-04-21 09:22 - 000000000 ____D C:\ProgramData\Adobe
    2020-04-21 09:22 - 2020-04-21 05:01 - 000000000 ____D C:\ProgramData\AquaSnap
    2020-04-21 09:22 - 2019-03-28 08:35 - 000087296 _____ (Microsoft Corporation) C:\Windows\system32\vcruntime140_clr0400.dll
    2020-04-21 09:22 - 2019-03-28 08:35 - 000083768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vcruntime140_clr0400.dll
    2020-04-21 09:21 - 2019-03-28 11:11 - 000029232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aspnet_counters.dll
    2020-04-21 09:21 - 2019-03-28 11:11 - 000017968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr100_clr0400.dll
    2020-04-21 09:21 - 2019-03-28 11:09 - 000032816 _____ (Microsoft Corporation) C:\Windows\system32\aspnet_counters.dll
    2020-04-21 09:21 - 2019-03-28 11:09 - 000017968 _____ (Microsoft Corporation) C:\Windows\system32\msvcr100_clr0400.dll
    2020-04-21 09:21 - 2019-03-28 08:35 - 000772176 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase_clr0400.dll
    2020-04-21 09:21 - 2019-03-28 08:35 - 000702400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase_clr0400.dll
    2020-04-21 09:21 - 2019-03-28 08:35 - 000622832 _____ (Microsoft Corporation) C:\Windows\system32\msvcp140_clr0400.dll
    2020-04-21 09:21 - 2019-03-28 08:35 - 000433448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp140_clr0400.dll
    2020-04-21 09:20 - 2020-04-23 16:48 - 000000000 ____D C:\Program Files\CUAssistant
    2020-04-21 09:20 - 2020-04-21 09:20 - 000000000 ____D C:\Program Files\rempl
    2020-04-21 09:19 - 2018-06-08 14:09 - 000130808 _____ (Microsoft Corporation) C:\Windows\system32\osrss.dll
    2020-04-21 09:19 - 2017-12-08 00:13 - 001008640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InstallService.dll
    2020-04-21 09:19 - 2017-12-08 00:10 - 001313792 _____ (Microsoft Corporation) C:\Windows\system32\InstallService.dll
    2020-04-21 09:09 - 2020-04-21 09:22 - 000000000 ____D C:\ProgramData\ADiag
    2020-04-21 09:09 - 2020-04-21 09:09 - 000000000 ____D C:\ProgramData\adaware
    2020-04-21 09:09 - 2020-04-21 09:09 - 000000000 ____D C:\ProgramData\Acebyte
    2020-04-21 09:09 - 2020-04-21 09:09 - 000000000 ____D C:\ProgramData\Abelssoft
    2020-04-21 09:09 - 2020-04-21 09:09 - 000000000 ____D C:\ProgramData\ABBYY
    2020-04-21 09:09 - 2020-04-21 09:09 - 000000000 ____D C:\ProgramData\360Quarant
    2020-04-21 09:09 - 2020-04-21 09:09 - 000000000 ____D C:\BNAN PLUS LONG C BEI
    2020-04-21 09:09 - 2020-04-21 09:09 - 000000000 ____D C:\BCUninstaller
    2020-04-21 09:09 - 2020-04-21 09:09 - 000000000 ____D C:\Ashampoo Droid Screenshot
    2020-04-21 09:09 - 2020-04-21 09:09 - 000000000 ____D C:\Ashampoo Backup
    2020-04-21 09:09 - 2020-04-21 09:09 - 000000000 ____D C:\Ashampoo
    2020-04-21 09:09 - 2020-04-21 05:28 - 000813740 _____ C:\ProgramData\cl.1579418035.bdinstall.v2.bin
    2020-04-21 09:09 - 2020-04-21 05:28 - 000406864 _____ C:\ProgramData\cl.uninstall.1579681754.bdinstall.v2.bin
    2020-04-21 09:09 - 2020-04-21 05:28 - 000107624 _____ C:\ProgramData\cl.1579681818.bdinstall.v2.bin
    2020-04-21 09:09 - 2020-04-21 05:28 - 000102940 _____ C:\ProgramData\agent.1579417490.bdinstall.v2.bin
    2020-04-21 09:09 - 2020-04-21 05:28 - 000102308 _____ C:\ProgramData\cl.kit.1579418024.bdinstall.v2.bin
    2020-04-21 09:09 - 2020-04-21 05:28 - 000075180 _____ C:\ProgramData\agent.update.1579441777.bdinstall.v2.bin
    2020-04-21 09:09 - 2020-04-21 05:28 - 000073817 _____ C:\ProgramData\vpn.1579441738.bdinstall.bin
    2020-04-21 09:09 - 2020-04-21 05:28 - 000063589 _____ C:\ProgramData\dm.1579441695.bdinstall.bin
    2020-04-21 09:09 - 2020-04-21 05:28 - 000045924 _____ C:\ProgramData\agent.uninstall.1579681800.bdinstall.v2.bin
    2020-04-21 09:09 - 2020-04-21 05:28 - 000042004 _____ C:\ProgramData\agent.1579783488.13888.v2.bin
    2020-04-21 09:09 - 2020-04-21 05:28 - 000042004 _____ C:\ProgramData\agent.1579760988.9144.v2.bin
    2020-04-21 09:09 - 2020-04-21 05:28 - 000042004 _____ C:\ProgramData\agent.1579714760.9016.v2.bin
    2020-04-21 09:09 - 2020-04-21 05:28 - 000042004 _____ C:\ProgramData\agent.1579700723.10212.v2.bin
    2020-04-21 09:09 - 2020-04-21 05:28 - 000040329 _____ C:\ProgramData\vpn.uninstall.1579681824.bdinstall.bin
    2020-04-21 09:09 - 2020-04-21 05:28 - 000038141 _____ C:\ProgramData\dm.uninstall.1579681771.bdinstall.bin
    2020-04-21 09:09 - 2020-04-21 05:28 - 000020355 _____ C:\ProgramData\dm.1579681806.bdinstall.bin
    2020-04-21 09:09 - 2020-04-21 05:28 - 000000290 _____ C:\ProgramData\ntuser.pol
    2020-04-21 09:09 - 2020-04-21 05:28 - 000000115 _____ C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc
    2020-04-21 09:09 - 2020-04-21 04:57 - 000000000 ____D C:\program files (x64)
    2020-04-21 09:09 - 2020-04-21 04:54 - 000000000 ____D C:\beyonce feat. aaliyah - der de am?lie, lynnlo, l?a & no?mie demandes sur emsisoft & cie forums et r?paration internet galaxy book
    2020-04-21 09:09 - 2020-04-21 04:54 - 000000000 ____D C:\AVG_Remover
    2020-04-21 08:28 - 2020-04-22 17:30 - 000000000 ___HD C:\VTRoot
    2020-04-21 08:22 - 2020-04-24 14:11 - 000000000 ____D C:\Program Files (x86)\MajorAV
    2020-04-21 08:22 - 2020-04-23 06:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MajorAV
    2020-04-21 08:22 - 2020-04-22 15:48 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\MajorAV
    2020-04-21 08:15 - 2020-04-21 08:15 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\0install.net
    2020-04-21 08:15 - 2020-04-21 08:15 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\0install.net
    2020-04-21 08:07 - 2020-04-23 16:18 - 000309968 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_klark.sys
    2020-04-21 08:06 - 2020-04-23 16:18 - 000206880 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_mark.sys
    2020-04-21 08:06 - 2020-04-21 08:06 - 000256752 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_arkmon.sys
    2020-04-21 08:06 - 2020-04-21 08:06 - 000117496 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_klbg.sys
    2020-04-21 07:51 - 2020-04-25 14:20 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\CrashDumps
    2020-04-21 07:51 - 2020-04-24 09:21 - 001474832 _____ C:\Windows\system32\Drivers\sfi.dat
    2020-04-21 07:51 - 2020-04-21 07:51 - 000001179 _____ C:\Users\Public\Desktop\COMODO Internet Security Premium.lnk
    2020-04-21 07:51 - 2020-04-21 07:51 - 000000000 ____D C:\Windows\system32\Tasks\COMODO
    2020-04-21 07:50 - 2020-04-21 05:48 - 000002138 _____ C:\Users\Public\Desktop\Comodo Secure Shopping.lnk
    2020-04-21 07:50 - 2019-08-21 08:02 - 000454616 _____ (COMODO) C:\Windows\system32\cssguard64.dll
    2020-04-21 07:50 - 2019-08-21 08:02 - 000341224 _____ (COMODO) C:\Windows\system32\cmdkbdcss64.dll
    2020-04-21 07:50 - 2019-08-21 08:02 - 000337856 _____ (COMODO) C:\Windows\SysWOW64\cssguard32.dll
    2020-04-21 07:50 - 2019-08-21 08:02 - 000262376 _____ (COMODO) C:\Windows\SysWOW64\cmdkbdcss32.dll
    2020-04-21 07:50 - 2019-03-18 16:22 - 000017872 _____ (COMODO) C:\Windows\system32\Drivers\cmdboot.sys
    2020-04-21 07:50 - 2019-01-29 10:42 - 000254440 _____ (COMODO) C:\Windows\system32\iseguard64.dll
    2020-04-21 07:50 - 2019-01-29 10:42 - 000205024 _____ (COMODO) C:\Windows\SysWOW64\iseguard32.dll
    2020-04-21 07:50 - 2018-08-30 00:55 - 000063256 _____ (COMODO) C:\Windows\system32\Drivers\isedrv.sys
    2020-04-21 07:50 - 2018-02-28 08:11 - 000125000 _____ (COMODO) C:\Windows\system32\Drivers\cmdcss.sys
    2020-04-21 07:49 - 2020-04-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo
    2020-04-21 07:49 - 2020-04-21 07:49 - 000001253 _____ C:\Users\Public\Desktop\Kaspersky Secure Connection.lnk
    2020-04-21 07:49 - 2020-04-21 07:49 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\Comodo
    2020-04-21 07:49 - 2020-04-21 07:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Secure Connection
    2020-04-21 07:49 - 2020-04-21 07:49 - 000000000 ____D C:\Program Files\Common Files\AV
    2020-04-21 07:49 - 2020-04-21 05:48 - 000002185 _____ C:\Users\Public\Desktop\Comodo Dragon.lnk
    2020-04-21 07:48 - 2020-04-21 07:50 - 000000000 ____D C:\Program Files (x86)\Comodo
    2020-04-21 07:48 - 2020-04-21 07:48 - 000099152 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_kimul.sys
    2020-04-21 07:48 - 2020-04-21 07:48 - 000002170 _____ C:\Users\Public\Desktop\Kaspersky Total Security.lnk
    2020-04-21 07:48 - 2020-04-21 07:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Total Security
    2020-04-21 07:48 - 2013-05-06 08:13 - 000110176 _____ (Kaspersky Lab ZAO) C:\Windows\system32\klfphc.dll
    2020-04-21 07:47 - 2020-04-25 14:26 - 000000000 ____D C:\ProgramData\Kaspersky Lab
    2020-04-21 07:47 - 2020-04-21 07:48 - 000000000 ____D C:\Program Files (x86)\Kaspersky Lab
    2020-04-21 07:47 - 2020-04-11 09:48 - 000998296 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klif.sys
    2020-04-21 07:47 - 2020-04-11 09:48 - 000251800 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klflt.sys
    2020-04-21 07:41 - 2020-04-21 14:51 - 000000000 ____D C:\ProgramData\Comodo
    2020-04-21 07:41 - 2020-04-21 07:41 - 000000000 ____D C:\ProgramData\Shared Space
    2020-04-21 07:37 - 2020-04-21 07:37 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\Lavasoft
    2020-04-21 07:36 - 2020-04-21 10:32 - 000000000 ____D C:\ProgramData\Kaspersky Lab Setup Files
    2020-04-21 07:35 - 2020-04-23 07:22 - 000000000 ____D C:\Users\nalb fait moins peur\Downloads\scripts
    2020-04-21 07:35 - 2020-04-23 07:22 - 000000000 ____D C:\Users\nalb fait moins peur\Desktop\scripts
    2020-04-21 07:35 - 2020-04-21 07:35 - 000000000 ____D C:\ProgramData\BitDefender
    2020-04-21 07:34 - 2020-04-21 07:34 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\LavasoftStatistics
    2020-04-21 07:33 - 2020-04-24 17:46 - 000001252 _____ C:\Users\Public\Desktop\Ad-Aware Antivirus.lnk
    2020-04-21 07:33 - 2020-04-21 07:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
    2020-04-21 07:32 - 2020-04-21 07:32 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\Lavasoft
    2020-04-21 07:32 - 2020-04-21 07:32 - 000000000 ____D C:\ProgramData\Lavasoft
    2020-04-21 07:32 - 2020-04-21 07:32 - 000000000 ____D C:\Program Files\Common Files\Lavasoft
    2020-04-21 07:24 - 2019-02-13 08:33 - 001909560 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll
    2020-04-21 07:24 - 2018-06-29 10:09 - 000170496 _____ (Microsoft Corporation) C:\Windows\system32\wuuhosdeployment.dll
    2020-04-21 07:24 - 2018-06-29 09:58 - 000462336 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
    2020-04-21 07:24 - 2018-06-13 23:14 - 000033792 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
    2020-04-21 07:24 - 2018-06-13 23:02 - 002786304 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
    2020-04-21 07:24 - 2018-06-08 08:07 - 000400896 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
    2020-04-21 07:24 - 2018-06-08 08:02 - 000253440 _____ (Microsoft Corporation) C:\Windows\system32\domgmt.dll
    2020-04-21 07:24 - 2018-06-08 07:57 - 001345024 _____ (Microsoft Corporation) C:\Windows\system32\dosvc.dll
    2020-04-21 07:24 - 2018-05-11 23:54 - 001300992 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll
    2020-04-21 07:24 - 2018-05-04 11:37 - 000278448 _____ (Microsoft Corporation) C:\Windows\system32\Notifier.exe
    2020-04-21 07:24 - 2018-05-03 08:19 - 000496640 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll
    2020-04-21 07:24 - 2018-03-30 05:44 - 000030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
    2020-04-21 07:24 - 2018-03-30 05:43 - 000067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
    2020-04-21 07:24 - 2018-03-30 05:36 - 000825856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
    2020-04-21 07:24 - 2018-03-30 05:35 - 000858112 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
    2020-04-21 07:24 - 2018-03-30 05:35 - 000249856 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
    2020-04-21 07:24 - 2018-03-30 05:33 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
    2020-04-21 07:24 - 2018-03-30 05:33 - 000065024 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
    2020-04-21 07:24 - 2018-03-30 05:25 - 001055744 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
    2020-04-21 07:24 - 2018-03-13 07:25 - 001346560 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
    2020-04-21 07:24 - 2018-03-01 09:30 - 000264040 _____ (Microsoft Corporation) C:\Windows\system32\MusNotifyIcon.exe
    2020-04-21 07:24 - 2018-03-01 08:03 - 000065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usoapi.dll
    2020-04-21 07:24 - 2018-03-01 07:53 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\musdialoghandlers.dll
    2020-04-21 07:24 - 2018-03-01 07:53 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\usoapi.dll
    2020-04-21 07:24 - 2018-03-01 07:53 - 000039424 _____ (Microsoft Corporation) C:\Windows\system32\UsoClient.exe
    2020-04-21 07:24 - 2018-02-10 06:45 - 000115200 _____ (Microsoft Corporation) C:\Windows\system32\updatepolicy.dll
    2020-04-21 07:24 - 2018-02-10 06:42 - 000098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\updatepolicy.dll
    2020-04-21 07:24 - 2017-11-26 15:26 - 000048112 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
    2020-04-21 07:24 - 2017-11-26 14:35 - 000057856 _____ (Microsoft Corporation) C:\Windows\system32\wuautoappupdate.dll
    2020-04-21 07:18 - 2020-04-21 07:18 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\Comms
    2020-04-21 07:16 - 2020-04-21 07:17 - 000000000 ___RD C:\Users\nalb fait moins peur\OneDrive
    2020-04-21 07:15 - 2020-04-21 07:15 - 000000000 ____D C:\Users\nalb fait moins peur\MicrosoftEdgeBackups
    2020-04-21 07:14 - 2020-04-25 14:13 - 000000000 ____D C:\Users\nalb fait moins peur
    2020-04-21 07:14 - 2020-04-24 18:37 - 000000000 __SHD C:\Users\nalb fait moins peur\IntelGraphicsProfiles
    2020-04-21 07:14 - 2020-04-23 07:57 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\Packages
    2020-04-21 07:14 - 2020-04-21 07:45 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\Publishers
    2020-04-21 07:14 - 2020-04-21 07:15 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\MicrosoftEdge
    2020-04-21 07:14 - 2020-04-21 07:14 - 000000020 ___SH C:\Users\nalb fait moins peur\ntuser.ini
    2020-04-21 07:14 - 2020-04-21 07:14 - 000000000 ___RD C:\Users\nalb fait moins peur\3D Objects
    2020-04-21 07:14 - 2020-04-21 07:14 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Roaming\Adobe
    2020-04-21 07:14 - 2020-04-21 07:14 - 000000000 ____D C:\Users\nalb fait moins peur\AppData\Local\ConnectedDevicesPlatform
    2020-04-21 07:12 - 2020-04-21 07:12 - 000000000 _____ C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
    2020-04-21 00:09 - 2020-04-21 00:09 - 000000000 _____ C:\Windows\system32\Drivers\144D_SAMSUNG_na_Galaxy Book 12_P04H.mrk
    2020-04-11 09:48 - 2020-04-11 09:48 - 000232344 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\kneps.sys
    2020-04-11 09:48 - 2020-04-11 09:48 - 000211048 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klwtp.sys
    2020-04-11 09:48 - 2020-04-11 09:48 - 000145504 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klbackupflt.sys
    2020-04-11 09:48 - 2020-04-11 09:48 - 000079768 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klbackupdisk.sys
    2020-04-11 09:48 - 2020-04-11 09:48 - 000079760 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klkbdflt.sys
    2020-04-11 09:48 - 2020-04-11 09:48 - 000037816 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klelam.sys
    2020-04-02 13:43 - 2020-04-02 13:43 - 000188872 _____ (ESET) C:\Windows\system32\Drivers\ehdrv.sys
    2020-04-02 13:43 - 2020-04-02 13:43 - 000154336 _____ (ESET) C:\Windows\system32\Drivers\eamonm.sys
    2020-04-02 13:43 - 2020-04-02 13:43 - 000115960 _____ (ESET) C:\Windows\system32\Drivers\epfwwfp.sys
    2020-04-01 15:27 - 2020-04-01 15:27 - 000015800 _____ (ESET) C:\Windows\system32\Drivers\eelam.sys

    ==================== Trois mois (modifi?s) ==================

    (Si un ?l?ment est inclus dans le fichier fixlist.txt, le fichier/dossier sera d?plac?.)

    2020-04-25 14:24 - 2017-12-08 00:46 - 002245482 _____ C:\Windows\system32\PerfStringBackup.INI
    2020-04-25 14:24 - 2017-12-07 15:15 - 001071484 _____ C:\Windows\system32\perfh00C.dat
    2020-04-25 14:24 - 2017-12-07 15:15 - 000238874 _____ C:\Windows\system32\perfc00C.dat
    2020-04-25 14:17 - 2017-12-08 00:39 - 000000006 ____H C:\Windows\Tasks\SA.DAT
    2020-04-25 14:17 - 2017-12-08 00:39 - 000000000 ____D C:\Windows\system32\SleepStudy
    2020-04-25 14:13 - 2017-09-29 15:44 - 000000000 ____D C:\Windows\INF
    2020-04-25 13:33 - 2017-09-29 10:45 - 000524288 _____ C:\Windows\system32\config\BBI
    2020-04-25 09:37 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\system32\NDF
    2020-04-25 04:06 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\rescache
    2020-04-25 04:04 - 2017-12-07 15:11 - 000000000 ____D C:\Windows\SysWOW64\XPSViewer
    2020-04-25 04:04 - 2017-09-29 16:41 - 000000000 ____D C:\Windows\SysWOW64\winrm
    2020-04-25 04:04 - 2017-09-29 16:41 - 000000000 ____D C:\Windows\SysWOW64\WCN
    2020-04-25 04:04 - 2017-09-29 16:41 - 000000000 ____D C:\Windows\SysWOW64\slmgr
    2020-04-25 04:04 - 2017-09-29 16:41 - 000000000 ____D C:\Windows\SysWOW64\Printing_Admin_Scripts
    2020-04-25 04:04 - 2017-09-29 16:41 - 000000000 ____D C:\Windows\system32\winrm
    2020-04-25 04:04 - 2017-09-29 16:41 - 000000000 ____D C:\Windows\system32\WCN
    2020-04-25 04:04 - 2017-09-29 16:41 - 000000000 ____D C:\Windows\system32\slmgr
    2020-04-25 04:04 - 2017-09-29 16:41 - 000000000 ____D C:\Windows\system32\Printing_Admin_Scripts
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ___SD C:\Windows\system32\F12
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ___SD C:\Windows\system32\dsc
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ___SD C:\Windows\system32\DiagSvcs
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\SysWOW64\oobe
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\SysWOW64\MUI
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\SysWOW64\F12
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\SysWOW64\Dism
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\SysWOW64\DiagSvcs
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\SysWOW64\com
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\system32\SystemResetPlatform
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\system32\oobe
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\system32\MUI
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\system32\migwiz
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\system32\com
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\PolicyDefinitions
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\IME
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\Help
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ____D C:\Program Files\Windows Photo Viewer
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ____D C:\Program Files\Windows Defender
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ____D C:\Program Files\Common Files\system
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
    2020-04-25 04:04 - 2017-09-29 15:46 - 000000000 ____D C:\Program Files (x86)\Windows Defender
    2020-04-25 04:04 - 2017-09-29 10:45 - 000000000 ____D C:\Windows\system32\Sysprep
    2020-04-25 04:04 - 2017-09-29 10:45 - 000000000 ____D C:\Windows\system32\Dism
    2020-04-25 04:04 - 2017-09-29 10:45 - 000000000 ____D C:\Windows\servicing
    2020-04-24 17:49 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\DeliveryOptimization
    2020-04-24 17:46 - 2017-12-07 08:00 - 000000000 ____D C:\Program Files\Intel
    2020-04-24 15:37 - 2017-09-29 15:46 - 000000000 __RHD C:\Users\Public\Libraries
    2020-04-24 14:11 - 2017-12-07 15:12 - 000000000 ____D C:\Windows\MSetup
    2020-04-24 14:11 - 2017-12-07 08:00 - 000000000 ____D C:\Windows\RSTLog
    2020-04-24 13:59 - 2017-09-29 15:46 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
    2020-04-24 13:57 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\SysWOW64\Macromed
    2020-04-23 19:56 - 2013-01-04 15:56 - 000000156 _____ C:\Users\nalb fait moins peur\Downloads\settings.ini
    2020-04-23 19:56 - 2013-01-03 16:21 - 006753280 _____ (Fatih Kodak) C:\Users\nalb fait moins peur\Downloads\AudioVideo_To_Exe.exe
    2020-04-23 18:10 - 2017-12-07 07:47 - 000000000 ____D C:\ProgramData\CacheWrite
    2020-04-23 16:48 - 2017-12-07 08:06 - 000000000 ____D C:\Program Files (x86)\Show Window
    2020-04-23 07:57 - 2017-09-29 15:46 - 000000000 ____D C:\Program Files\WindowsApps
    2020-04-22 21:52 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\ELAMBKUP
    2020-04-22 03:35 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\appcompat
    2020-04-21 14:55 - 2017-12-07 08:00 - 000000000 ____D C:\ProgramData\Package Cache
    2020-04-21 12:52 - 2017-12-08 00:42 - 000000000 ___RD C:\Users\Public\AccountPictures
    2020-04-21 11:51 - 2017-09-29 15:46 - 000000000 __RSD C:\Windows\media
    2020-04-21 11:51 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\security
    2020-04-21 11:51 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\Registration
    2020-04-21 09:24 - 2017-12-07 08:00 - 000000000 ____D C:\ProgramData\Intel
    2020-04-21 07:48 - 2017-09-29 10:45 - 000032768 _____ C:\Windows\system32\config\ELAM
    2020-04-21 07:04 - 2017-12-07 08:05 - 000000000 ____D C:\ProgramData\Samsung
    2020-04-21 06:55 - 2017-09-29 15:46 - 000028672 _____ C:\Windows\system32\config\BCD-Template
    2020-04-21 05:28 - 2017-12-07 08:10 - 000003004 _____ C:\ProgramData\MakeMarkerFile.xml
    2020-04-21 05:22 - 2017-09-29 15:43 - 000002349 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immersive Control Panel.lnk
    2020-04-21 00:10 - 2017-09-29 15:46 - 000000000 ____D C:\Windows\system32\WinBioDatabase
    2020-04-21 00:09 - 2017-12-07 08:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
    2020-04-21 00:04 - 2017-12-07 08:06 - 000002268 _____ C:\Windows\system32\Tasks\ShowWindow
    2020-04-21 00:04 - 2017-12-07 08:00 - 000003118 _____ C:\Windows\system32\Tasks\Intel PTT EK Recertification

    ==================== Fichiers ? la racine de certains dossiers ========

    2020-04-21 15:12 - 2020-04-21 05:39 - 003429248 _____ (Nicolas Coolman) C:\Users\didinser recs 5rem 2\ZHPSuite.exe
    2020-04-21 16:11 - 2020-04-21 05:48 - 002554928 _____ (Innovative Solutions ) C:\Users\nalbf\advanced_task_manager_5_6.exe
    2020-04-21 16:11 - 2020-04-21 05:48 - 009530592 _____ (Innovative Solutions ) C:\Users\nalbf\Advanced_Uninstaller12.exe
    2020-04-21 16:12 - 2020-04-21 05:48 - 017669784 _____ (Ashampoo GmbH & Co. KG ) C:\Users\nalbf\ashampoo_hdd_control_3_3.20.00_sm.exe
    2020-04-21 16:12 - 2020-04-21 05:48 - 000118488 _____ (CyberGhost S.A.) C:\Users\nalbf\cgsetup_fr_h99XP5KL4u56dv7SDwdE.exe
    2020-04-21 16:13 - 2020-04-21 05:48 - 002485182 _____ (Codyssey.com) C:\Users\nalbf\CodySafe_Sigma_Setup.exe
    2020-04-21 16:13 - 2020-04-21 05:48 - 011247322 _____ (Daniusoft Software ) C:\Users\nalbf\daniu-digital-media-converter_full286.exe
    2020-04-21 16:13 - 2020-04-21 05:48 - 009948972 _____ (Daniusoft Software ) C:\Users\nalbf\daniu-digital-video-converter_full295.exe
    2020-04-21 16:13 - 2020-04-21 05:48 - 004998272 _____ (Daniusoft Software ) C:\Users\nalbf\daniu-dvd-copy_full248_sm151382.exe
    2020-04-21 16:13 - 2020-04-21 05:48 - 032525405 _____ (Daniusoft Software ) C:\Users\nalbf\daniu-dvd-video-converter-pack.exe
    2020-04-21 16:14 - 2020-04-21 05:48 - 008717092 _____ (Daniusoft Software ) C:\Users\nalbf\daniu-video-creativezen_full228.exe
    2020-04-21 16:14 - 2020-04-21 05:48 - 012526777 _____ (Daniusoft Software ) C:\Users\nalbf\daniusoft-video-converter-free_full592.exe
    2020-04-21 16:14 - 2020-04-21 05:48 - 001600240 _____ (SquareClock SAS) C:\Users\nalbf\HomeByMe.exe
    2020-04-21 16:14 - 2020-04-21 05:48 - 000000000 _____ () C:\Users\nalbf\INF-Tool-Lite.EXE
    2020-04-21 16:14 - 2020-04-21 05:48 - 004950448 _____ (InFixi IT Solutions MSG to vCard Converter ) C:\Users\nalbf\Infixi-MSG-Contact-to-vCard-Converter.exe
    2020-04-21 16:14 - 2020-04-21 05:48 - 003626690 _____ (InFixi IT Solutions ) C:\Users\nalbf\Infixi-OST-Converter-Software.exe
    2020-04-21 16:14 - 2020-04-21 05:48 - 005360859 _____ (INFORAD Ltd ) C:\Users\nalbf\Inforad-Manager.exe
    2020-04-21 16:14 - 2020-04-21 05:48 - 005873160 _____ (Xceed Software Inc. 1-450-442-2626 info@xceedsoft.com www.xceedsoft.com) C:\Users\nalbf\Input-Synaptics-Touchpad-Version-A11.exe
    2020-04-21 16:15 - 2020-04-21 05:48 - 006160320 _____ (LinuxLive USB Creator) C:\Users\nalbf\LinuxLive USB Creator 2.9.4.exe
    2020-04-21 16:15 - 2020-04-21 05:48 - 002478832 _____ (Opera Software) C:\Users\nalbf\OperaSetup.exe
    2020-04-21 16:15 - 2020-04-21 05:48 - 028698504 _____ (Kakao) C:\Users\nalbf\PotPlayerSetup64.exe
    2020-04-21 16:15 - 2020-04-21 05:48 - 029938400 _____ (Remo Software ) C:\Users\nalbf\remo-convert-ost-to-pst.exe
    2020-04-21 16:16 - 2020-04-21 05:48 - 008687968 _____ (Remo Software ) C:\Users\nalbf\remo-drive-wipe.exe
    2020-04-21 16:16 - 2020-04-21 05:48 - 014713968 _____ (Remo Software ) C:\Users\nalbf\remo-duplicate-photos-remover.exe
    2020-04-21 16:16 - 2020-04-21 05:48 - 025122016 _____ (Remo Software ) C:\Users\nalbf\remo-recover-windows.exe
    2020-04-21 16:16 - 2020-04-21 05:48 - 009628512 _____ (Remo Software ) C:\Users\nalbf\remo-repair-avi.exe
    2020-04-21 16:16 - 2020-04-21 05:48 - 009719168 _____ (Remo Software ) C:\Users\nalbf\remo-repair-mov.exe
    2020-04-21 16:16 - 2020-04-21 05:48 - 011990152 _____ (Remo Software ) C:\Users\nalbf\remo-shredder.exe
    2020-04-21 16:16 - 2020-04-21 05:48 - 014848528 _____ (Remo Software ) C:\Users\nalbf\remo-video-repair.exe
    2020-04-21 16:16 - 2020-04-21 05:48 - 001193016 _____ (Akeo Consulting) C:\Users\nalbf\rufus-3.9.exe
    2020-04-21 16:17 - 2020-04-21 05:48 - 000498868 _____ (C_XX) C:\Users\nalbf\seaf_1.exe
    2020-04-21 16:17 - 2020-04-21 05:48 - 001256960 _____ () C:\Users\nalbf\Slowin Killer.exe
    2020-04-21 16:17 - 2020-04-21 05:48 - 006730832 _____ (Corel Corporation) C:\Users\nalbf\StartMenuReviverSetup.exe
    2020-04-21 16:17 - 2020-04-21 05:48 - 038949480 _____ (Tweaking.com) C:\Users\nalbf\tweaking.com_windows_repair_aio_setup.exe
    2020-04-21 16:17 - 2020-04-21 05:48 - 004773088 _____ (SOSVirus) C:\Users\nalbf\usbfix-11-022 (1).exe
    2020-04-21 16:17 - 2020-04-21 05:48 - 004773088 _____ (SOSVirus) C:\Users\nalbf\usbfix-11-022.exe
    2020-04-21 16:17 - 2020-04-21 05:48 - 005942808 _____ (SafelyRemove.com ) C:\Users\nalbf\usbsafelyremovesetup_6-2-1.exe
    2020-04-21 16:17 - 2020-04-21 05:48 - 016910904 _____ (Carifred) C:\Users\nalbf\UVKInstaller.exe
    2020-04-21 16:18 - 2020-04-21 05:48 - 042030736 _____ () C:\Users\nalbf\vlc-3.0.8-win64.exe
    2020-04-21 16:18 - 2020-04-21 05:48 - 000347584 _____ (Big Nerd Software, LLC) C:\Users\nalbf\WebLaunchRecorder.exe
    2020-04-21 16:18 - 2020-04-21 05:48 - 006499200 _____ (WinZip International LLC ) C:\Users\nalbf\wzdt1.exe
    2020-04-21 16:18 - 2020-04-21 05:48 - 013654880 _____ (Corel Corporation) C:\Users\nalbf\wzip.exe

    ==================== SigCheckExt =========================

    2017-12-07 08:05 - 2017-01-13 12:10 - 000021504 _____ (Samsung Electronics) C:\Windows\system32\GripResetService.exe
    2017-05-19 09:38 - 2017-05-19 09:38 - 000055808 _____ (Samsung Electronics Co., Ltd.) C:\Windows\system32\WlSarService.exe
    2020-04-23 12:40 - 2016-09-29 09:44 - 001298584 _____ C:\Windows\ddmmain.exe
    2017-12-07 08:10 - 2012-08-06 07:14 - 001731072 _____ (Samsung Electronics) C:\Windows\MSetCaller.exe
    2020-04-21 15:01 - 2020-04-21 05:29 - 005975960 _____ (SOSVirus) C:\Users\antifondance B Kin S-Vot 10Crem\Desktop\AdsFix.exe
    2020-04-21 15:01 - 2020-04-21 05:29 - 003255680 _____ (Nicolas Coolman) C:\Users\antifondance B Kin S-Vot 10Crem\Desktop\ZHPDiag3.exe
    2020-04-21 15:12 - 2020-04-21 05:39 - 003429248 _____ (Nicolas Coolman) C:\Users\didinser recs 5rem 2\ZHPSuite.exe
    2020-04-21 15:45 - 2020-04-21 05:37 - 061197060 _____ (Avanquest Software ) C:\Users\didinser recs 5rem 2\Downloads\digital-video-duplicator_1_16766.exe
    2020-04-21 15:49 - 2020-04-21 05:38 - 001727980 _____ (isotousb.com ) C:\Users\didinser recs 5rem 2\Downloads\isotousb_setup.exe
    2020-04-21 15:49 - 2020-04-21 05:38 - 001053464 _____ (Samuel Rodberg ) C:\Users\didinser recs 5rem 2\Downloads\minimal_adb_fastboot_v1.4.3_setup.exe
    2020-04-21 15:49 - 2020-04-21 05:38 - 001601024 _____ (Mobatek) C:\Users\didinser recs 5rem 2\Downloads\MobaLiveCD_v2.1.exe
    2020-04-21 15:49 - 2020-04-21 05:38 - 004901376 _____ (Moo0) C:\Users\didinser recs 5rem 2\Downloads\Moo0 SystemMonitor v1.83 Installer.exe
    2020-04-21 15:50 - 2020-04-21 05:38 - 015778178 _____ C:\Users\didinser recs 5rem 2\Downloads\ultracopier-windows-x86_64-2.2.3.3-setup.exe
    2020-04-21 15:50 - 2020-04-21 05:38 - 001784649 _____ (pendrivelinux.com) C:\Users\didinser recs 5rem 2\Downloads\Universal-USB-Installer-1.9.9.0.exe
    2020-04-21 15:58 - 2020-04-21 05:40 - 000914432 _____ (Igor Pavlov) C:\Users\d?pannage iPod\Desktop\7z.dll
    2020-04-21 15:58 - 2020-04-21 05:40 - 000163840 _____ (Igor Pavlov) C:\Users\d?pannage iPod\Desktop\7z.exe
    2020-04-21 15:58 - 2020-04-21 05:40 - 005975960 _____ (SOSVirus) C:\Users\d?pannage iPod\Desktop\AdsFix.exe
    2020-04-21 16:09 - 2020-04-21 05:42 - 005724056 _____ (SOSVirus) C:\Users\lfshy\Desktop\AdsFix.exe
    2020-04-21 16:09 - 2020-04-21 05:42 - 061197060 _____ (Avanquest Software ) C:\Users\lfshy\Downloads\digital-video-duplicator_1_16766.exe
    2020-04-21 16:09 - 2020-04-21 05:42 - 004430007 _____ (foobar2000.org) C:\Users\lfshy\Downloads\foobar2000_v1.5.3.exe
    2020-04-21 16:11 - 2020-04-21 05:42 - 008342660 _____ C:\Users\lfshy\Downloads\SkinPack Windows Core OS.sfx.exe
    2020-04-21 16:11 - 2020-04-21 05:42 - 003431296 _____ (Nicolas Coolman) C:\Users\lfshy\Downloads\ZHPSuite.exe
    2020-04-25 00:19 - 2020-04-24 20:46 - 005726104 _____ (SOSVirus) C:\Users\nalb fait moins peur\Desktop\AdsFix.exe
    2020-04-25 14:03 - 2020-04-25 09:27 - 005198336 _____ (AVAST Software) C:\Users\nalb fait moins peur\Desktop\aswMBR.exe
    2020-04-21 12:36 - 2020-04-21 12:39 - 002281984 _____ (Farbar) C:\Users\nalb fait moins peur\Desktop\FRST64.exe
    2020-04-23 08:46 - 2020-04-23 08:46 - 011417191 _____ ( ) C:\Users\nalb fait moins peur\Desktop\NiceCopierSetup_15.02.27.exe
    2020-04-23 12:51 - 2020-04-23 12:51 - 002637824 _____ C:\Users\nalb fait moins peur\Desktop\shortcut-module.exe
    2020-04-23 07:54 - 2020-04-23 07:54 - 015780508 _____ C:\Users\nalb fait moins peur\Desktop\ultracopier-windows-x86_64-2.2.4.0-setup (1).exe
    2020-04-23 07:51 - 2020-04-23 07:51 - 015780508 _____ C:\Users\nalb fait moins peur\Desktop\ultracopier-windows-x86_64-2.2.4.0-setup.exe
    2020-04-21 09:45 - 2020-04-21 09:45 - 003297152 _____ (Nicolas Coolman) C:\Users\nalb fait moins peur\Desktop\ZHPCleaner (1).exe
    2013-01-03 16:21 - 2020-04-23 19:56 - 006753280 _____ (Fatih Kodak) C:\Users\nalb fait moins peur\Downloads\AudioVideo_To_Exe.exe
    2020-04-23 08:46 - 2020-04-23 08:46 - 011417191 _____ ( ) C:\Users\nalb fait moins peur\Downloads\NiceCopierSetup_15.02.27.exe
    2020-04-23 19:47 - 2020-04-23 19:47 - 000000000 _____ C:\Users\nalb fait moins peur\Downloads\tuneup360_full798.exe
    2020-04-23 07:54 - 2020-04-23 07:54 - 015780508 _____ C:\Users\nalb fait moins peur\Downloads\ultracopier-windows-x86_64-2.2.4.0-setup (1).exe
    2020-04-23 07:51 - 2020-04-23 07:51 - 015780508 _____ C:\Users\nalb fait moins peur\Downloads\ultracopier-windows-x86_64-2.2.4.0-setup.exe
    2020-04-23 19:16 - 2020-04-23 19:26 - 000000000 _____ C:\Users\nalb fait moins peur\Downloads\Wondershare-1-Click-PC-Care_7.5.0.exe
    2020-04-21 09:45 - 2020-04-21 09:45 - 003297152 _____ (Nicolas Coolman) C:\Users\nalb fait moins peur\Downloads\ZHPCleaner (1).exe
    2020-04-21 16:13 - 2020-04-21 05:48 - 002485182 _____ (Codyssey.com) C:\Users\nalbf\CodySafe_Sigma_Setup.exe
    2020-04-21 16:13 - 2020-04-21 05:48 - 011247322 _____ (Daniusoft Software ) C:\Users\nalbf\daniu-digital-media-converter_full286.exe
    2020-04-21 16:13 - 2020-04-21 05:48 - 009948972 _____ (Daniusoft Software ) C:\Users\nalbf\daniu-digital-video-converter_full295.exe
    2020-04-21 16:13 - 2020-04-21 05:48 - 004998272 _____ (Daniusoft Software ) C:\Users\nalbf\daniu-dvd-copy_full248_sm151382.exe
    2020-04-21 16:13 - 2020-04-21 05:48 - 032525405 _____ (Daniusoft Software ) C:\Users\nalbf\daniu-dvd-video-converter-pack.exe
    2020-04-21 16:14 - 2020-04-21 05:48 - 008717092 _____ (Daniusoft Software ) C:\Users\nalbf\daniu-video-creativezen_full228.exe
    2020-04-21 16:14 - 2020-04-21 05:48 - 012526777 _____ (Daniusoft Software ) C:\Users\nalbf\daniusoft-video-converter-free_full592.exe
    2020-04-21 16:14 - 2020-04-21 05:48 - 001600240 _____ (SquareClock SAS) C:\Users\nalbf\HomeByMe.exe
    2020-04-21 16:14 - 2020-04-21 05:48 - 000000000 _____ C:\Users\nalbf\INF-Tool-Lite.EXE
    2020-04-21 16:14 - 2020-04-21 05:48 - 004950448 _____ (InFixi IT Solutions MSG to vCard Converter ) C:\Users\nalbf\Infixi-MSG-Contact-to-vCard-Converter.exe
    2020-04-21 16:14 - 2020-04-21 05:48 - 003626690 _____ (InFixi IT Solutions ) C:\Users\nalbf\Infixi-OST-Converter-Software.exe
    2020-04-21 16:14 - 2020-04-21 05:48 - 005360859 _____ (INFORAD Ltd ) C:\Users\nalbf\Inforad-Manager.exe
    2020-04-21 16:14 - 2020-04-21 05:48 - 005873160 _____ (Xceed Software Inc. 1-450-442-2626 info@xceedsoft.com www.xceedsoft.com) C:\Users\nalbf\Input-Synaptics-Touchpad-Version-A11.exe
    2020-04-21 16:15 - 2020-04-21 05:48 - 006160320 _____ (LinuxLive USB Creator) C:\Users\nalbf\LinuxLive USB Creator 2.9.4.exe
    2020-04-21 16:17 - 2020-04-21 05:48 - 000498868 _____ (C_XX) C:\Users\nalbf\seaf_1.exe
    2020-04-21 16:17 - 2020-04-21 05:48 - 001256960 _____ C:\Users\nalbf\Slowin Killer.exe
    2020-04-21 16:17 - 2020-04-21 05:48 - 004773088 _____ (SOSVirus) C:\Users\nalbf\usbfix-11-022 (1).exe
    2020-04-21 16:17 - 2020-04-21 05:48 - 004773088 _____ (SOSVirus) C:\Users\nalbf\usbfix-11-022.exe
    2020-04-21 16:18 - 2020-04-21 05:48 - 013654880 _____ (Corel Corporation) C:\Users\nalbf\wzip.exe
    2020-04-21 16:48 - 2020-04-21 05:47 - 000824530 _____ C:\Users\nalbf\Desktop\dcsetup_1.7.1645.exe
    2020-04-21 16:48 - 2020-04-21 05:47 - 002434048 _____ (Farbar) C:\Users\nalbf\Desktop\FRST64-2.1.exe
    2020-04-21 16:48 - 2020-04-21 05:47 - 002281472 _____ (Farbar) C:\Users\nalbf\Desktop\FRST64.exe
    2020-04-21 16:49 - 2020-04-21 05:47 - 080051488 _____ (CHENGDU YIWO Tech Development Co., Ltd ) C:\Users\nalbf\Desktop\goback.exe
    2020-04-21 16:50 - 2020-04-21 05:47 - 080206072 _____ (CHENGDU YIWO Tech Development Co., Ltd ) C:\Users\nalbf\Desktop\goback_installer.exe
    2020-04-21 16:54 - 2020-04-21 05:47 - 003296640 _____ (Nicolas Coolman) C:\Users\nalbf\Desktop\ZHPCleaner.exe
    2020-04-21 16:54 - 2020-04-21 05:47 - 003275648 _____ (Nicolas Coolman) C:\Users\nalbf\Desktop\ZHPDiag3.exe
    2020-04-21 12:54 - 2020-04-21 05:48 - 039455912 _____ (PandoraTV) C:\Users\Public\Downloads\KMPlayer_4.2.1.1.8_is.exe
    2020-04-21 12:55 - 2020-04-21 05:48 - 070157072 _____ (WhatsApp) C:\Users\Public\Downloads\WhatsAppSetup_64_is.exe

    ==================== SigCheck ============================

    (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas ? la v?rification.)


    ==================== BCD ================================

    Gestionnaire de d�marrage du microprogramme
    -------------------------------------------
    identificateur {fwbootmgr}
    displayorder {bootmgr}
    {a3dd3d5e-86ee-11ea-810e-806e6f6e6963}
    {a3dd3d5f-86ee-11ea-810e-806e6f6e6963}
    {a3dd3d60-86ee-11ea-810e-806e6f6e6963}
    {a3dd3d61-86ee-11ea-810e-806e6f6e6963}
    {a3dd3d62-86ee-11ea-810e-806e6f6e6963}
    {e114784f-8352-11ea-8104-806e6f6e6963}
    timeout 2

    Gestionnaire de d�marrage Windows
    ---------------------------------
    identificateur {bootmgr}
    device partition=\Device\HarddiskVolume1
    path \EFI\MICROSOFT\BOOT\BOOTMGFW.EFI
    description Windows Boot Manager
    locale fr-FR
    inherit {globalsettings}
    default {current}
    resumeobject {4fbf1acb-838c-11ea-880f-9494adb48974}
    displayorder {current}
    toolsdisplayorder {memdiag}
    timeout 30

    Application logicielle (101fffff)
    --------------------------------
    identificateur {a3dd3d5e-86ee-11ea-810e-806e6f6e6963}
    description UEFI: Intenso Slim Line 1100

    Application logicielle (101fffff)
    --------------------------------
    identificateur {a3dd3d5f-86ee-11ea-810e-806e6f6e6963}
    description UEFI: General USB Flash Disk 1.00

    Application logicielle (101fffff)
    --------------------------------
    identificateur {a3dd3d60-86ee-11ea-810e-806e6f6e6963}
    description UEFI: TOSHIBA TransMemory 1.00

    Application logicielle (101fffff)
    --------------------------------
    identificateur {a3dd3d61-86ee-11ea-810e-806e6f6e6963}
    description UEFI: TOSHIBA

    Application logicielle (101fffff)
    --------------------------------
    identificateur {a3dd3d62-86ee-11ea-810e-806e6f6e6963}
    device partition=M:
    description UEFI: Intenso Slim Line 1100

    Application logicielle (101fffff)
    --------------------------------
    identificateur {e114784f-8352-11ea-8104-806e6f6e6963}
    description EassosRestoreBoot

    Chargeur de d�marrage Windows
    -----------------------------
    identificateur {current}
    device partition=C:
    path \Windows\system32\winload.efi
    description Windows 10
    locale fr-FR
    inherit {bootloadersettings}
    recoverysequence {4fbf1acd-838c-11ea-880f-9494adb48974}
    displaymessageoverride Recovery
    recoveryenabled Yes
    isolatedcontext Yes
    allowedinmemorysettings 0x15000075
    osdevice partition=C:
    systemroot \Windows
    resumeobject {4fbf1acb-838c-11ea-880f-9494adb48974}
    nx OptIn
    bootmenupolicy Standard

    Chargeur de d�marrage Windows
    -----------------------------
    identificateur {4fbf1acd-838c-11ea-880f-9494adb48974}
    device ramdisk=[\Device\HarddiskVolume7]\Recovery\WindowsRE\Winre.wim,{4fbf1ace-838c-11ea-880f-9494adb48974}
    path \windows\system32\winload.efi
    description Windows Recovery Environment
    locale en-us
    inherit {bootloadersettings}
    displaymessage Recovery
    osdevice ramdisk=[\Device\HarddiskVolume7]\Recovery\WindowsRE\Winre.wim,{4fbf1ace-838c-11ea-880f-9494adb48974}
    systemroot \windows
    nx OptIn
    bootmenupolicy Standard
    winpe Yes

    Reprendre � partir de la mise en veille prolong�e
    -------------------------------------------------
    identificateur {4fbf1acb-838c-11ea-880f-9494adb48974}
    device partition=C:
    path \Windows\system32\winresume.efi
    description Windows Resume Application
    locale fr-FR
    inherit {resumeloadersettings}
    recoverysequence {4fbf1acd-838c-11ea-880f-9494adb48974}
    recoveryenabled Yes
    isolatedcontext Yes
    allowedinmemorysettings 0x15000075
    filedevice partition=C:
    filepath \hiberfil.sys
    bootmenupolicy Standard
    debugoptionenabled No

    Testeur de m�moire Windows
    --------------------------
    identificateur {memdiag}
    device partition=\Device\HarddiskVolume1
    path \EFI\Microsoft\Boot\memtest.efi
    description Windows Memory Diagnostic
    locale fr-FR
    inherit {globalsettings}
    badmemoryaccess Yes

    Param�tres EMS
    --------------
    identificateur {emssettings}
    bootems No

    Param�tres du d�bogueur
    -----------------------
    identificateur {dbgsettings}
    debugtype Local

    Erreurs de m�moire RAM
    ----------------------
    identificateur {badmemory}
    badmemorylist 0x10007

    Param�tres globaux
    ------------------
    identificateur {globalsettings}
    inherit {dbgsettings}
    {emssettings}
    {badmemory}
    integrityservices Enable

    Param�tres du chargeur de d�marrage
    -----------------------------------
    identificateur {bootloadersettings}
    inherit {globalsettings}
    {hypervisorsettings}

    Param�tres de l'hyperviseur
    -------------------
    identificateur {hypervisorsettings}
    hypervisordebugtype Serial
    hypervisordebugport 1
    hypervisorbaudrate 115200

    Param�tres du chargeur de reprise
    ---------------------------------
    identificateur {resumeloadersettings}
    inherit {globalsettings}

    Options de p�riph�rique
    -----------------------
    identificateur {4fbf1ace-838c-11ea-880f-9494adb48974}
    description Windows Recovery
    ramdisksdidevice partition=\Device\HarddiskVolume7
    ramdisksdipath \Recovery\WindowsRE\boot.sdi

    ==================== Fin de FRST.txt ========================

    R?sultats de l'Analyse suppl?mentaire de Farbar Recovery Scan Tool (x64) Version: 19-04-2020
    Ex?cut? par nalb fait moins peur (25-04-2020 14:35:48)
    Ex?cut? depuis C:\Users\nalb fait moins peur\Desktop
    Windows 10 Home Version 1709 16299.64 (X64) (2020-04-20 22:08:57)
    Mode d'amor?age: Normal
    ==========================================================


    ==================== Comptes: =============================

    Administrateur (S-1-5-21-867250633-51197164-4155923770-500 - Administrator - Disabled)
    DefaultAccount (S-1-5-21-867250633-51197164-4155923770-503 - Limited - Disabled)
    Invit? (S-1-5-21-867250633-51197164-4155923770-501 - Limited - Disabled)
    nalb fait moins peur (S-1-5-21-867250633-51197164-4155923770-1001 - Administrator - Enabled) => C:\Users\nalb fait moins peur
    WDAGUtilityAccount (S-1-5-21-867250633-51197164-4155923770-504 - Limited - Disabled)

    ==================== Centre de s?curit? ========================

    (Si un ?l?ment est inclus dans le fichier fixlist.txt, il sera supprim?.)

    AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    AV: Ad-Aware Antivirus (Disabled - Up to date) {B0CC18C6-E527-6EE6-874C-9D19920E5619}
    AV: COMODO Antivirus (Disabled - Up to date) {05AFA9EE-1ABD-A226-D250-B41671D7635C}
    AV: Kaspersky Total Security (Enabled - Up to date) {0AB30972-4BAC-7BEE-CBCA-B8F9E68797D8}
    AV: ESET Security (Disabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}
    AS: Kaspersky Total Security (Enabled - Up to date) {B1D2E896-6D96-7460-F17A-838B9D00DD65}
    AS: Ad-Aware Antivirus (Disabled - Up to date) {0BADF922-C31D-6168-BDFC-A66BE9891CA4}
    AS: COMODO Advanced Protection (Enabled - Up to date) {BECE480A-3C87-ADA8-E8E0-8F640A5029E1}
    AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    FW: Kaspersky Total Security (Enabled) {32888857-01C3-7AB6-E095-11CC1854D0A3}
    FW: COMODO Firewall (Enabled) {3D9428CB-50D2-A37E-F90F-1D238F042427}
    FW: Ad-Aware Firewall (Disabled) {88F799E3-AF48-6FBE-AC13-342C6CDD1162}

    ==================== Programmes install?s ======================

    (Seuls les logiciels publicitaires ('adware') avec la marque 'cach?' ('Hidden') sont susceptibles d'?tre ajout?s au fichier fixlist.txt pour qu'ils ne soient plus masqu?s. Les programmes publicitaires devront ?tre d?sinstall?s manuellement.)

    Ad-Aware Antivirus (HKLM\...\{AD9CEBD6-442D-4979-9D1D-E1050F2E272D}_AdAwareUpdater) (Version: 11.15.1046.10613 - Lavasoft)
    AdAwareInstaller (HKLM\...\{D88BC069-BFFF-4442-91EC-198EF2B764FE}) (Version: 11.15.1046.10613 - Lavasoft) Hidden
    AdAwareProxyEngine (HKLM\...\{7F7C8AE0-961B-4AED-B99A-D9BE29C0F24C}) (Version: 1.0.0.8 - Lavasoft) Hidden
    AdAwareUpdater (HKLM\...\{AD9CEBD6-442D-4979-9D1D-E1050F2E272D}) (Version: 11.15.1046.10613 - Lavasoft) Hidden
    Adobe Shockwave Player 12.2 (HKLM-x32\...\{39EA6AA6-F891-4D70-867D-839DA49948D2}) (Version: 12.2.9.199 - Adobe Systems, Inc)
    Air Command (HKLM-x32\...\{5493FC89-21E8-4D88-BCA1-4D33F1410968}) (Version: 1.0.38 - Samsung Electronics Co., Ltd.)
    AntiLogger (HKLM-x32\...\{014534FF-1D46-4A77-9B48-29EFD145995B}) (Version: 1.9.3.603 - Zemana Ltd.) Hidden
    AntiLogger (HKLM-x32\...\AntiLogger) (Version: - Zemana Ltd.)
    AntimalwareEngine (HKLM\...\{20334FA5-6CD5-48FC-B5F9-D34D75E07845}) (Version: 3.0.129.0 - Lavasoft) Hidden
    AntispamEngine (HKLM\...\{2CAC4882-997E-4F61-8D5F-5E11E3FC7177}) (Version: 2.5.0.320 - Lavasoft) Hidden
    AOMEI Backupper Standard (HKLM-x32\...\{A83692F5-3E9B-4E95-9E7E-B5DF5536CE9D}_is1) (Version: - AOMEI Technology Co., Ltd.)
    AOMEI Partition Assistant Standard Edition 8.7 (HKLM-x32\...\{02F850ED-FD0E-4ED1-BE0B-54981f5BD3D4}_is1) (Version: - AOMEI Technology Co., Ltd.)
    Ashampoo MP3 Cover Finder v.1.0.17 (HKLM-x32\...\{5A842CF6-7E61-52D7-C64C-2F20E9D408F1}_is1) (Version: 1.0.17 - Ashampoo GmbH & Co. KG)
    Auslogics BoostSpeed 11 (HKLM-x32\...\{7216871F-869E-437C-B9BF-2A13F2DCE63F}_is1) (Version: 11.4.0.3 - Auslogics Labs Pty Ltd)
    Auslogics Windows Slimmer (HKLM-x32\...\{86650065-31B6-49E0-A179-559DF1EBAB26}_is1) (Version: 2.4.0.2 - Auslogics Labs Pty Ltd)
    AutoSave Essentials (HKLM-x32\...\{EAB8D189-1F5A-4902-A4C4-2ACC1549288A}) (Version: 3.50.0000 - Avanquest)
    AvcEngine (HKLM\...\{3E5BEF30-3962-4B47-AECA-937B6CBB0A68}) (Version: 3.12.15976.0 - Lavasoft) Hidden
    BCUninstaller (HKLM\...\{f4fef76c-1aa9-441c-af7e-d27f58d898d1}_is1) (Version: 4.16.0.38993 - Marcin Szeniak)
    Boost mode manager (HKLM-x32\...\{17154B8D-5829-4ED5-A120-2E03DC6FB0C6}) (Version: 1.0.0.3 - RSUPPORT)
    Comodo Dragon (HKLM-x32\...\Comodo Dragon) (Version: 75.0.3770.100 - Comodo)
    COMODO Internet Security Premium (HKLM\...\{567591EE-85F7-4E4D-AE28-FD65FCF4F201}) (Version: 12.1.0.6914 - COMODO Security Solutions Inc.) Hidden
    COMODO Internet Security Premium (HKLM\...\COMODO Internet Security) (Version: 12.1.0.6914 - COMODO Security Solutions Inc.)
    COMODO Secure Shopping (HKLM-x32\...\{D15DF9B0-3A98-4BEF-B7D5-FC3AEA478445}) (Version: 1.4.159.0 - COMODO) Hidden
    COMODO Secure Shopping (HKLM-x32\...\Comodo Secure_Shopping_list_uninstall) (Version: 1.4.478445.159 - Comodo)
    Complete Internet Repair 5.2.3.4066 (HKLM\...\Complete Internet Repair_is1) (Version: 5.2.3.4066 - Rizonesoft)
    Copy Handler 1.44 (HKLM\...\{9CF6A157-F0E8-4216-B229-C0CA8204BE2C}_is1) (Version: 1.44 - J?zef Starosczyk)
    ESET Security (HKLM\...\{0C3F76CB-98AA-49B1-9B72-CD040E3E17E8}) (Version: 13.1.21.0 - ESET, spol. s r.o.)
    Expert PDF 14 (HKLM-x32\...\Expert PDF 14) (Version: 14.0.21.1607 - Avanquest UK Ltd)
    Expert PDF 14 View Module (HKLM\...\{5A3751AC-4A67-40D1-AD46-834C78A4E97C}) (Version: 14.0.28.3456 - Avanquest Software) Hidden
    Firefox Developer Edition 76.0 (x64 fr) (HKLM\...\Firefox Developer Edition 76.0 (x64 fr)) (Version: 76.0 - Mozilla)
    FirewallEngine (HKLM\...\{AAF4B2C1-2E27-46EF-9B9E-2B2130F056F3}) (Version: 2.0.0.20 - Lavasoft) Hidden
    Foxit PhantomPDF (HKLM-x32\...\{7eba4c1a-7d9c-11ea-841a-54bf64a63c26}) (Version: 9.7.2.29539 - Foxit Software Inc.) Hidden
    Foxit PhantomPDF (HKLM-x32\...\{8e1c8a69-c745-4055-b78e-72f9352aae6b}) (Version: 9.7.2.29539 - Foxit Software Inc.)
    Free Studio (HKLM-x32\...\Free Studio_is1) (Version: 6.7.1.316 - Digital Wave Ltd)
    Goodgame Empire (HKLM-x32\...\Goodgame Empire) (Version: - )
    inPixio Photo Studio 10 Demo (HKLM-x32\...\{12D62CD9-8A74-44f4-B18D-1C6DA3487178}) (Version: 10.00 - inPixio)
    Intel(R) Chipset Device Software (HKLM-x32\...\{bb0592a7-5772-4736-9d55-2402740085db}) (Version: 10.1.1.38 - Intel(R) Corporation) Hidden
    Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1052 - Intel Corporation)
    Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 21.20.16.4599 - Intel Corporation)
    Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 15.2.3.1031 - Intel Corporation)
    Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.47.715.0 - Intel Corporation) Hidden
    Intel(R) Trusted Connect Services Client (HKLM-x32\...\{2b32b7d0-4f9f-47c8-adb7-807e6cb2fb75}) (Version: 1.47.715.0 - Intel Corporation) Hidden
    Intel(R) Virtual Buttons (HKLM-x32\...\1992736F-C90A-481C-B21B-EE34CAD07387) (Version: 1.1.1.22 - Intel Corporation)
    Internet Security Essentials (HKLM-x32\...\ComodoIse) (Version: 1.6.472587.185 - Comodo)
    Kaspersky Secure Connection (HKLM-x32\...\{145AE349-477A-45E5-A57C-5F5BF2BB5775}) (Version: 20.0.14.1085 - Kaspersky) Hidden
    Kaspersky Secure Connection (HKLM-x32\...\InstallWIX_{145AE349-477A-45E5-A57C-5F5BF2BB5775}) (Version: 20.0.14.1085 - Kaspersky)
    Kaspersky Total Security (HKLM-x32\...\{D891550B-ACFE-4797-B368-BCFC434BBEB1}) (Version: 20.0.14.1085 - Kaspersky) Hidden
    Kaspersky Total Security (HKLM-x32\...\InstallWIX_{D891550B-ACFE-4797-B368-BCFC434BBEB1}) (Version: 20.0.14.1085 - Kaspersky)
    KeyCrypt SDK version 1.8.1.199 (HKLM-x32\...\{5575EADE-4685-4E15-A9CD-6036BC2A3F75}_is1) (Version: 1.8.1.199 - Zemana Ltd.)
    Logiciel de cr?ation CEWE (HKLM-x32\...\Logiciel de cr?ation CEWE) (Version: 6.4.7 - CEWE Stiftung u Co. KGaA)
    MajorAV 5.2.6 (HKLM-x32\...\{642E50F4-EC7E-4978-8EA4-284E044E9643}_is1) (Version: 5.2.6 - MajorAV Software Co., Ltd)
    Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 1.0.0.0 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
    Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
    Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
    Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 76.0 - Mozilla)
    NiceCopier (HKLM-x32\...\NiceCopier_is1) (Version: 15.02.27 - )
    OnlineThreatsEngine (HKLM\...\{26F31E12-3722-45FD-903B-49012286BB4C}) (Version: 3.0.1.23 - Lavasoft) Hidden
    Qualcomm Atheros 11ac Wireless LAN Installer (HKLM-x32\...\{20CA507E-24AA-4741-87CF-CC1B250790B7}) (Version: 11.0.10454 - Qualcomm)
    Qualcomm Atheros Bluetooth Installer (64) (HKLM\...\{628988B4-3FA5-4EA6-BAA3-DA640F6718BD}) (Version: 10.0.0.448 - Qualcomm Atheros)
    Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8261 - Realtek Semiconductor Corp.)
    RogueKiller version 14.4.0.0 (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 14.4.0.0 - Adlice Software)
    S Agent (HKLM\...\{0052BF58-5307-4F7D-A379-8F4EC9212FA8}) (Version: 1.1.58 - Samsung Electronics Co., Ltd.) Hidden
    Samsung Recovery (HKLM\...\{D21EED26-59C0-4315-BDCC-D682496465E9}) (Version: 7.3.0 - Samsung Electronics Co., Ltd.)
    Samsung System Agent (HKLM-x32\...\{CDB4F12C-2E9E-48CC-8591-663964C1BAE3}) (Version: 1.0.48 - Samsung Electronics Co., Ltd.) Hidden
    Show Window (HKLM-x32\...\{87A08690-781E-4A8E-8300-775A2EA02932}) (Version: 1.0.0.30 - Samsung Electronics Co., Ltd.)
    SysTools PDF Bates Numberer v3.5 (HKLM-x32\...\{8B438F56-F6B0-4A48-8753-EA84E536E5D5}_is1) (Version: - SysTools Software Pvt. Ltd.)
    TeraCopy version 3.26 (HKLM\...\TeraCopy_is1) (Version: 3.26 - Code Sector)
    Tweaking.com - Registry Backup (HKLM-x32\...\Tweaking.com - Registry Backup) (Version: 3.5.3 - Tweaking.com)
    UltraVnc (HKLM\...\Ultravnc2_is1) (Version: 1.2.0.1 - uvnc bvba)
    Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{32DC821E-4A7D-4878-BEE8-337FA153D7F2}) (Version: 2.63.0.0 - Microsoft Corporation) Hidden
    Update for Windows 10 for x64-based Systems (KB4480730) (HKLM\...\{3BAE4496-6F6C-4330-A8AA-B93D3D346FA5}) (Version: 2.53.0.0 - Microsoft Corporation)
    Vulkan Run Time Libraries 1.0.33.0 (HKLM\...\VulkanRT1.0.33.0) (Version: 1.0.33.0 - LunarG, Inc.)
    WlSarService (HKLM\...\{C0C78593-1CF0-4CD8-A80C-191FE561F5A5}) (Version: 1.0.0.7 - Samsung Electronics Co., Ltd.) Hidden
    Wondershare 1-Click PC Care (Version 7.5.0) (HKLM-x32\...\{C1F2EF4E-CDAA-9B4C-A934-911D4B0D12KB}_is1) (Version: 7.5.0 - Wondershare, Inc.)
    Xirrus Wi-Fi Inspector (HKLM-x32\...\{BBB21AB1-2C45-435D-A05A-B563072E7B9B}) (Version: 1.2.1.4 - Xirrus)

    Packages:
    =========
    Book Param?tres -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCoLtd.GalaxySetting_1.0.60.0_x64__wyx1vj98g3asy [2020-04-21] (Samsung Electronics Co, Ltd.)
    Extension vid?o MPEG-2 -> C:\Program Files\WindowsApps\Microsoft.MPEG2VideoExtension_1.0.22661.0_x64__8wekyb3d8bbwe [2020-04-21] (Microsoft Corporation)
    Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-04-21] (Microsoft Corporation) [MS Ad]
    Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-04-21] (Microsoft Corporation) [MS Ad]
    MSN M?t?o -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-04-21] (Microsoft Corporation) [MS Ad]
    Samsung Flow -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCoLtd.SamsungFlux_4.5.17.0_x64__wyx1vj98g3asy [2020-04-21] (Samsung Electronics Co, Ltd.)
    Samsung Notes -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCoLtd.SamsungNotes_3.10.342.0_x64__wyx1vj98g3asy [2020-04-21] (Samsung Electronics Co, Ltd.)

    ==================== Personnalis? CLSID (Avec liste blanche): ==============

    (Si un ?l?ment est inclus dans le fichier fixlist.txt, il sera supprim? du Registre. Le fichier ne sera pas d?plac?, sauf s'il est inscrit s?par?ment.)

    SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\Windows\system32\wpdshserviceobj.dll (Microsoft Windows -> Microsoft Corporation)
    SSODL-x32: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\Windows\SysWOW64\wpdshserviceobj.dll (Microsoft Windows -> Microsoft Corporation)
    ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> Pas de fichier
    ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Pas de fichier
    ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> Pas de fichier
    ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Pas de fichier
    ContextMenuHandlers1: [chext] -> {E7A4C2DA-F3AF-4145-AC19-E3B215306A54} => -> Pas de fichier
    ContextMenuHandlers1: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => D:\Antivirus install?s\COMODO\COMODO Internet Security\cavshell.dll [2019-10-17] (Comodo Security Solutions -> COMODO)
    ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-04-02] (ESET, spol. s r.o. -> ESET)
    ContextMenuHandlers1: [ExpertPDF14_ManagerExt] -> {009115E7-90FC-44D3-8B84-513363783B7C} => C:\Program Files\Expert PDF 14\context-menu.dll [2019-11-28] (Avanquest UK Ltd -> Avanquest Software)
    ContextMenuHandlers1: [Foxit_ConvertToPDF] -> {C5269811-4A29-4818-A4BB-111F9FC63A5F} => C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x64.dll [2020-04-09] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
    ContextMenuHandlers1: [Kaspersky Anti-Virus 20.0] -> {6E1B4453-548D-4C43-A4AB-DE8D1D3DE17B} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 20.0\x64\ShellEx.dll [2020-04-21] (Kaspersky Lab -> AO Kaspersky Lab)
    ContextMenuHandlers1: [Open With EncryptionMenu] -> {A470F8CF-A1E8-4f65-8335-227475AA5C46} => -> Pas de fichier
    ContextMenuHandlers1: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> )
    ContextMenuHandlers2: [AdAwareContextMenu] -> {5B64240D-5B36-4B9F-A75F-4925B6A53D5B} => -> Pas de fichier
    ContextMenuHandlers2: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => D:\Antivirus install?s\COMODO\COMODO Internet Security\cavshell.dll [2019-10-17] (Comodo Security Solutions -> COMODO)
    ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-04-02] (ESET, spol. s r.o. -> ESET)
    ContextMenuHandlers2: [Kaspersky Anti-Virus 20.0] -> {6E1B4453-548D-4C43-A4AB-DE8D1D3DE17B} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 20.0\x64\ShellEx.dll [2020-04-21] (Kaspersky Lab -> AO Kaspersky Lab)
    ContextMenuHandlers2: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> )
    ContextMenuHandlers3: [AdAwareContextMenu] -> {5B64240D-5B36-4B9F-A75F-4925B6A53D5B} => -> Pas de fichier
    ContextMenuHandlers3: [UnlockerShellExtension] -> {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} => D:\Applications install?es\Unlocker\UnlockerCOM.dll [2010-07-15] (Empty Loop -> )
    ContextMenuHandlers4: [chext] -> {E7A4C2DA-F3AF-4145-AC19-E3B215306A54} => -> Pas de fichier
    ContextMenuHandlers4: [Kaspersky Anti-Virus 20.0] -> {6E1B4453-548D-4C43-A4AB-DE8D1D3DE17B} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 20.0\x64\ShellEx.dll [2020-04-21] (Kaspersky Lab -> AO Kaspersky Lab)
    ContextMenuHandlers4: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> )
    ContextMenuHandlers5: [chext] -> {E7A4C2DA-F3AF-4145-AC19-E3B215306A54} => -> Pas de fichier
    ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier
    ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\windows\System32\DriverStore\FileRepository\ki120832.inf_amd64_2ded2fe16badb11a\igfxDTCM.dll [2017-02-19] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
    ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Pas de fichier
    ContextMenuHandlers6: [chext] -> {E7A4C2DA-F3AF-4145-AC19-E3B215306A54} => -> Pas de fichier
    ContextMenuHandlers6: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => D:\Antivirus install?s\COMODO\COMODO Internet Security\cavshell.dll [2019-10-17] (Comodo Security Solutions -> COMODO)
    ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-04-02] (ESET, spol. s r.o. -> ESET)
    ContextMenuHandlers6: [Foxit_ConvertToPDF] -> {C5269811-4A29-4818-A4BB-111F9FC63A5F} => C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x64.dll [2020-04-09] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
    ContextMenuHandlers6: [Kaspersky Anti-Virus 20.0] -> {6E1B4453-548D-4C43-A4AB-DE8D1D3DE17B} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 20.0\x64\ShellEx.dll [2020-04-21] (Kaspersky Lab -> AO Kaspersky Lab)
    ContextMenuHandlers6: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> )
    ContextMenuHandlers6: [UnlockerShellExtension] -> {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} => D:\Applications install?es\Unlocker\UnlockerCOM.dll [2010-07-15] (Empty Loop -> )

    ==================== Codecs (Avec liste blanche) ====================

    ==================== Raccourcis & WMI ========================

    (Les ?l?ments sont susceptibles d'?tre inscrits dans le fichier fixlist.txt afin d'?tre supprim?s ou restaur?s.)

    Shortcut: C:\Users\nalb fait moins peur\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Firefox Developer Edition.lnk -> C:\Program Files\Firefox Developer Edition\firefox.exe (Mozilla Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox Developer Edition.lnk -> C:\Program Files\Firefox Developer Edition\firefox.exe (Mozilla Corporation)
    Shortcut: C:\Users\Public\Desktop\Firefox Developer Edition.lnk -> C:\Program Files\Firefox Developer Edition\firefox.exe (Mozilla Corporation)

    ==================== Modules charg?s (Avec liste blanche) =============


    ==================== Alternate Data Streams (Avec liste blanche) ========

    ==================== Mode sans ?chec (Avec liste blanche) ==================

    (Si un ?l?ment est inclus dans le fichier fixlist.txt, il sera supprim? du Registre. Le "AlternateShell" sera restaur?.)

    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\LavasoftAdAwareService11 => ""="Service"
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\msiserver => ""="Service"
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\LavasoftAdAwareService11 => ""="Service"
    HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\msiserver => ""="Service"

    ==================== Association (Avec liste blanche) =================

    ==================== Internet Explorer sites de confiance/sensibles ==========

    ==================== Hosts contenu: =========================

    (Si n?cessaire, la commande Hosts: peut ?tre incluse dans le fichier fixlist.txt afin de r?initialiser le fichier hosts.)

    2017-09-29 15:46 - 2020-04-24 13:26 - 000000795 __RSH C:\Windows\system32\drivers\etc\hosts
    127.0.0.1 localhost

    ==================== Autres zones ===========================

    (Actuellement, il n'y a pas de correction automatique pour cette section.)

    HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\AOMEI\AOMEI Backupper 5.7.0
    HKU\S-1-5-21-867250633-51197164-4155923770-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Samsung\Samsung_wallpaper.png
    DNS Servers: Le m?dia n'est pas connect? ? internet.
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
    Le Pare-feu est activ?.

    Network Binding:
    =============
    Connexion r?seau Bluetooth: COMODO Internet Security Firewall Driver -> inspect (enabled)
    Ethernet: COMODO Internet Security Firewall Driver -> inspect (enabled)
    Wi-Fi: COMODO Internet Security Firewall Driver -> inspect (enabled)

    ==================== MSCONFIG/TASK MANAGER ?l?ments d?sactiv?s ==

    (Si un ?l?ment est inclus dans le fichier fixlist.txt, il sera supprim?.)

    MSCONFIG\Services: AtherosSvc => 2
    MSCONFIG\Services: Backupper Service => 2
    MSCONFIG\Services: cphs => 3
    MSCONFIG\Services: cplspcon => 2
    MSCONFIG\Services: csssrv => 2
    MSCONFIG\Services: DigitalWave.Update.Service => 2
    MSCONFIG\Services: ekrn => 2
    MSCONFIG\Services: EsgShKernel => 2
    MSCONFIG\Services: esifsvc => 2
    MSCONFIG\Services: Expert PDF 14 => 3
    MSCONFIG\Services: Expert PDF 14 Update Service => 2
    MSCONFIG\Services: Grip sensor Reset service => 2
    MSCONFIG\Services: igfxCUIService2.0.0.0 => 2
    MSCONFIG\Services: Intel(R) Capability Licensing Service TCP IP Interface => 3
    MSCONFIG\Services: Intel(R) TPM Provisioning Service => 2
    MSCONFIG\Services: isesrv => 2
    MSCONFIG\Services: jhi_service => 2
    MSCONFIG\Services: KSDE4.0 => 2
    MSCONFIG\Services: LavasoftAdAwareService11 => 2
    MSCONFIG\Services: MdmLdrSvc => 2
    MSCONFIG\Services: MozillaMaintenance => 3
    MSCONFIG\Services: PanelManagerSvc => 2
    MSCONFIG\Services: RCD => 2
    MSCONFIG\Services: SafiService => 2
    MSCONFIG\Services: Samsung Pen Service => 2
    MSCONFIG\Services: Samsung System Service => 2
    MSCONFIG\Services: ShMonitor => 2
    MSCONFIG\Services: TeraCopyService => 2
    MSCONFIG\Services: uvnc_service => 2
    MSCONFIG\Services: WlSarService => 2

    ==================== R?glesPare-feu (Avec liste blanche) ================

    (Si un ?l?ment est inclus dans le fichier fixlist.txt, il sera supprim? du Registre. Le fichier ne sera pas d?plac?, sauf s'il est inscrit s?par?ment.)

    FirewallRules: [{CA046180-4FEA-4E49-943C-0578B4F26C95}] => (Allow) F:\4 - moby dawn Anti-JJAD apps for repair & fix internet\2TheLoo\2THELOO\UVK_en64.exe Pas de fichier
    FirewallRules: [{F9ECE669-9ACB-489B-AFE8-6F52A956D64B}] => (Allow) F:\4 - moby dawn Anti-JJAD apps for repair & fix internet\2TheLoo\2THELOO\UVK_en64.exe Pas de fichier
    FirewallRules: [{B89AC569-B3CF-4854-BAC2-145A6743DAF6}] => (Allow) C:\Program Files (x86)\Samsung\Samsung System Agent\SamsungSystemAgent.exe (SAMSUNG ELECTRONICS CO,.LTD. -> Samsung Electronics Co., Ltd.)
    FirewallRules: [{B7FF0961-6B61-44CF-9AE0-9BD955A87035}] => (Allow) C:\Program Files (x86)\AOMEI\AOMEI Backupper 5.7.0\ABService.exe (AOMEI International Network Limited -> AOMEI Tech Co., Ltd.)
    FirewallRules: [{62FBBE01-4B72-4EF3-AF55-6E9FD23A4DCD}] => (Allow) C:\Program Files (x86)\AOMEI\AOMEI Backupper 5.7.0\ABService.exe (AOMEI International Network Limited -> AOMEI Tech Co., Ltd.)

    ==================== Points de restauration =========================

    24-04-2020 16:36:47 Installed Microsoft Solution - B4164D8C-3813-495A-BBBC-BA51D122A226
    24-04-2020 16:40:05 Ultra Virus Killer Post Repair Restore Point

    ==================== ?l?ments en erreur du Gestionnaire de p?riph?riques ============

    Name: SX9310 Proximity
    Description: SX9310 Proximity
    Class Guid: {5175d334-c371-4806-b3ba-71fd53c9258d}
    Manufacturer: Samsung Electronics Co., Ltd.
    Service: WUDFRd
    Problem: : Windows cannot initialize the device driver for this hardware. (Code 37)
    Resolution: The driver returned failure from its DriverEntry routine. Uninstall the driver, and then click "Scan for hardware changes" to reinstall or upgrade the driver.

    Name: BH1733 Ambient Light Sensor
    Description: BH1733 Ambient Light Sensor
    Class Guid: {5175d334-c371-4806-b3ba-71fd53c9258d}
    Manufacturer: Samsung Electronics Co., Ltd.
    Service: WUDFRd
    Problem: : Windows cannot initialize the device driver for this hardware. (Code 37)
    Resolution: The driver returned failure from its DriverEntry routine. Uninstall the driver, and then click "Scan for hardware changes" to reinstall or upgrade the driver.

    Name: SASKUTIL
    Description: SASKUTIL
    Class Guid: {8ecc055d-047f-11d1-a537-0000f8753ed1}
    Manufacturer:
    Service: SASKUTIL
    Problem: : Windows cannot start this hardware device because its configuration information (in the registry) is incomplete or damaged. (Code 19)
    Resolution: A registry problem was detected.
    This can occur when more than one service is defined for a device, if there is a failure opening the service subkey, or if the driver name cannot be obtained from the service subkey. Try these options:
    On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
    Click "Uninstall", and then click "Scan for hardware changes" to load a usable driver.

    Name: Samsung System Agent Device
    Description: Samsung System Agent Device
    Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318}
    Manufacturer: Samsung Electronics Co., Ltd.
    Service: WUDFRd
    Problem: : Windows cannot initialize the device driver for this hardware. (Code 37)
    Resolution: The driver returned failure from its DriverEntry routine. Uninstall the driver, and then click "Scan for hardware changes" to reinstall or upgrade the driver.

    Name: Broadcom GNSS 4752 Geolocation Sensor
    Description: Broadcom GNSS 4752 Geolocation Sensor
    Class Guid: {5175d334-c371-4806-b3ba-71fd53c9258d}
    Manufacturer: Broadcom Corporation
    Service: WUDFRd
    Problem: : Windows cannot initialize the device driver for this hardware. (Code 37)
    Resolution: The driver returned failure from its DriverEntry routine. Uninstall the driver, and then click "Scan for hardware changes" to reinstall or upgrade the driver.

    Name: SASDIFSV
    Description: SASDIFSV
    Class Guid: {8ecc055d-047f-11d1-a537-0000f8753ed1}
    Manufacturer:
    Service: SASDIFSV
    Problem: : Windows cannot start this hardware device because its configuration information (in the registry) is incomplete or damaged. (Code 19)
    Resolution: A registry problem was detected.
    This can occur when more than one service is defined for a device, if there is a failure opening the service subkey, or if the driver name cannot be obtained from the service subkey. Try these options:
    On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
    Click "Uninstall", and then click "Scan for hardware changes" to load a usable driver.

    Name: Samsung OSD Device
    Description: Samsung OSD Device
    Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318}
    Manufacturer: Samsung Electronics Co., Ltd.
    Service: WUDFRd
    Problem: : Windows cannot initialize the device driver for this hardware. (Code 37)
    Resolution: The driver returned failure from its DriverEntry routine. Uninstall the driver, and then click "Scan for hardware changes" to reinstall or upgrade the driver.


    ==================== Erreurs du Journal des ?v?nements: ========================

    Erreurs Application:
    ==================
    Error: (04/25/2020 02:34:53 PM) (Source: MsiInstaller) (EventID: 11500) (User: DESKTOP-LLBRHBP)
    Description: Produit : Readiris 17 -- Erreur 1500. Une autre installation est en cours. Vous devez la terminer avant de poursuivre cette installation.

    Error: (04/25/2020 02:34:53 PM) (Source: MsiInstaller) (EventID: 11500) (User: DESKTOP-LLBRHBP)
    Description: Produit : Readiris 17 -- Erreur 1500. Une autre installation est en cours. Vous devez la terminer avant de poursuivre cette installation.

    Error: (04/25/2020 02:26:51 PM) (Source: Application Hang) (EventID: 1002) (User: )
    Description: Le programme iexplore.exe version 11.0.16299.15 a cess? d'interagir avec Windows et a ?t? ferm?. Pour d?terminer si des informations suppl?mentaires sont disponibles, consultez l'historique du probl?me dans le panneau de configuration S?curit? et maintenance.

    ID de processus*: 26e4

    Heure de d?but*: 01d61afcc02af3f0

    Heure de fin*: 19

    Chemin d'acc?s de l'application : C:\Program Files\internet explorer\iexplore.exe

    ID de rapport : 5b91e3bd-8c28-42ed-81d7-f13e28d4af88

    Nom complet du package d?faillant*:

    ID de l'application relative au package d?faillant*:

    Error: (04/25/2020 02:26:32 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: Nom de l?application d?faillante IEXPLORE.EXE, version : 11.0.16299.15, horodatage : 0x091f43e7
    Nom du module d?faillant : msIso.dll, version : 11.0.16299.15, horodatage : 0x8cecfa4c
    Code d?exception : 0xc0000409
    D?calage d?erreur : 0x00015dbb
    ID du processus d?faillant : 0x27c0
    Heure de d?but de l?application d?faillante : 0x01d61afcc09a0dec
    Chemin d?acc?s de l?application d?faillante : C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
    Chemin d?acc?s du module d?faillant: C:\Windows\SYSTEM32\msIso.dll
    ID de rapport : 4d5d35f0-b6c2-4ea0-83d6-599bcdbcd03f
    Nom complet du package d?faillant*:
    ID de l?application relative au package d?faillant*:

    Error: (04/25/2020 02:25:41 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: Nom de l?application d?faillante IEXPLORE.EXE, version : 11.0.16299.15, horodatage : 0x091f43e7
    Nom du module d?faillant : msIso.dll, version : 11.0.16299.15, horodatage : 0x8cecfa4c
    Code d?exception : 0xc0000409
    D?calage d?erreur : 0x00015dbb
    ID du processus d?faillant : 0x7a0
    Heure de d?but de l?application d?faillante : 0x01d61afca1d68dab
    Chemin d?acc?s de l?application d?faillante : C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
    Chemin d?acc?s du module d?faillant: C:\Windows\SYSTEM32\msIso.dll
    ID de rapport : bf4449fc-dd5e-4aec-ace8-a8c5b329e500
    Nom complet du package d?faillant*:
    ID de l?application relative au package d?faillant*:

    Error: (04/25/2020 02:24:50 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: Nom de l?application d?faillante IEXPLORE.EXE, version : 11.0.16299.15, horodatage : 0x091f43e7
    Nom du module d?faillant : msIso.dll, version : 11.0.16299.15, horodatage : 0x8cecfa4c
    Code d?exception : 0xc0000409
    D?calage d?erreur : 0x00015dbb
    ID du processus d?faillant : 0x2520
    Heure de d?but de l?application d?faillante : 0x01d61afc82f3489f
    Chemin d?acc?s de l?application d?faillante : C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
    Chemin d?acc?s du module d?faillant: C:\Windows\SYSTEM32\msIso.dll
    ID de rapport : 70d01799-b4e2-4897-8d67-d91bbe27813e
    Nom complet du package d?faillant*:
    ID de l?application relative au package d?faillant*:

    Error: (04/25/2020 02:22:15 PM) (Source: System Restore) (EventID: 8193) (User: )
    Description: ?chec de la cr?ation d?un point de restauration (Processus = C:\Windows\system32\msiexec.exe /V*; Description = Installed Classic Shell*; Erreur = 0x80042302).

    Error: (04/25/2020 02:22:15 PM) (Source: VSS) (EventID: 8193) (User: )
    Description: Erreur du service de clich? instantan? des volumes : erreur lors de l?appel de la routine CoCreateInstance. hr = 0x80070424, Le service sp?cifi? n?existe pas en tant que service install?.
    .


    Op?ration*:
    Instanciation du serveur VSS en cours


    Erreurs syst?me:
    =============
    Error: (04/25/2020 02:28:18 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
    Description: Le d?passement de d?lai (30000 millisecondes) a ?t? atteint lors de l?attente de la r?ponse transactionnelle du service WSearch.

    Error: (04/25/2020 02:27:48 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
    Description: Le d?passement de d?lai (30000 millisecondes) a ?t? atteint lors de l?attente de la r?ponse transactionnelle du service WSearch.

    Error: (04/25/2020 02:26:30 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-LLBRHBP)
    Description: Le serveur {0002DF01-0000-0000-C000-000000000046} ne s?est pas enregistr? sur DCOM avant la fin du temps imparti.

    Error: (04/25/2020 02:25:39 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-LLBRHBP)
    Description: Le serveur {0002DF01-0000-0000-C000-000000000046} ne s?est pas enregistr? sur DCOM avant la fin du temps imparti.

    Error: (04/25/2020 02:20:15 PM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-LLBRHBP)
    Description: DCOM a re?u l?erreur ?*1068*? lors de la tentative de d?marrage du service cdpsvc avec les arguments ?*Non disponible*? pour ex?cuter le serveur*:
    {21F282D1-A881-49E1-9A3A-26E44E39B86C}

    Error: (04/25/2020 02:20:15 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
    Description: Le service Service de plateforme des appareils connect?s d?pend du service Service Broker pour les connexions r?seau qui n?a pas pu d?marrer en raison de l?erreur*:
    Apr?s d?marrage, le service s?est arr?t? dans un ?tat d?attente.

    Error: (04/25/2020 02:20:15 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
    Description: Le service Service Broker pour les connexions r?seau est en attente de d?marrage.

    Error: (04/25/2020 02:17:59 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-LLBRHBP)
    Description: Le serveur Microsoft.Windows.Cortana_1.9.6.16299_neutral_neutral_cw5n1h2txyewy!CortanaUI ne s?est pas enregistr? sur DCOM avant la fin du temps imparti.


    CodeIntegrity:
    ===================================

    Date: 2020-04-25 14:27:19.634
    Description:
    Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\cssguard64.dll that did not meet the Windows signing level requirements.

    Date: 2020-04-25 14:27:19.629
    Description:
    Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

    Date: 2020-04-25 14:27:19.406
    Description:
    Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\cssguard64.dll that did not meet the Windows signing level requirements.

    Date: 2020-04-25 14:27:19.399
    Description:
    Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

    Date: 2020-04-25 14:17:16.385
    Description:
    Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\cssguard64.dll that did not meet the Windows signing level requirements.

    Date: 2020-04-25 14:17:16.317
    Description:
    Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\SysWOW64\guard32.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

    Date: 2020-04-25 14:17:16.306
    Description:
    Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

    Date: 2020-04-25 14:17:16.163
    Description:
    Code Integrity determined that a process (\Device\HarddiskVolume5\Antivirus install?s\COMODO\COMODO Internet Security\cmdagent.exe) attempted to load \Device\HarddiskVolume5\Antivirus install?s\COMODO\COMODO Internet Security\CmdWRHlp.dll that did not meet the Custom 3 / Antimalware signing level requirements.

    ==================== Infos M?moire ===========================

    BIOS: American Megatrends Inc. P04HAC.000.180220.WY.1219 02/20/2018
    Carte m?re: SAMSUNG ELECTRONICS CO., LTD. SM-W720NZKBXEF
    Processeur: Intel(R) Core(TM) i5-7200U CPU @ 2.50GHz
    Pourcentage de m?moire utilis?e: 76%
    M?moire physique - RAM - totale: 3997.93 MB
    M?moire physique - RAM - disponible: 944.93 MB
    M?moire virtuelle totale: 6508.45 MB
    M?moire virtuelle disponible: 2200.54 MB

    ==================== Lecteurs ================================

    Drive c: () (Fixed) (Total:84.52 GB) (Free:2.52 GB) NTFS
    Drive d: (placard foobar2000 AIMP CONFISQU) (Fixed) (Total:22.46 GB) (Free:0.18 GB) NTFS
    Drive e: (Windows RE) (Fixed) (Total:0.24 GB) (Free:0.02 GB) NTFS
    Drive f: (future wdet) (Removable) (Total:59.5 GB) (Free:1.59 GB) exFAT
    Drive g: (FTV 96 ELEVATORS 22CASSIGN) (Fixed) (Total:19 GB) (Free:7.58 GB) NTFS
    Drive h: (VERBATIM HD) (Fixed) (Total:7369.87 GB) (Free:2290.66 GB) NTFS ==>[syst?me avec composants d'amor?age (obtenu depuis lecteur)]
    Drive i: (CLONEZILLA) (Removable) (Total:1.86 GB) (Free:0.4 GB) FAT32
    Drive j: (FUTURE WDET) (Fixed) (Total:63.04 GB) (Free:5.14 GB) exFAT
    Drive l: (VERBATIM) (Removable) (Total:29.28 GB) (Free:13.46 GB) FAT32
    Drive m: (FORENS OU C) (Removable) (Total:3.86 GB) (Free:0.13 GB) FAT32

    \\?\Volume{a720762f-d2fc-4e11-b0fc-82a94b2e88a9}\ (SYSTEM) (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
    \\?\Volume{b17c539b-5452-4e91-b82f-fb2dc616c338}\ (Windows RE) (Fixed) (Total:0.49 GB) (Free:0.47 GB) NTFS
    \\?\Volume{ce29ef87-8ee2-4624-a514-2a4806d3b314}\ (SAMSUNG_REC2) (Fixed) (Total:10.31 GB) (Free:1.25 GB) NTFS
    \\?\Volume{d48a4231-6c35-4220-4173-636c65706975}\ (SAMSUNG_REC) (Fixed) (Total:1 GB) (Free:0.17 GB) FAT32

    ==================== MBR & Table des partitions ====================

    ==========================================================
    Disk: 0 (Size: 119.2 GB) (Disk ID: 26EA9241)

    Partition: GPT.

    ==========================================================
    Disk: 2 (Size: 7452 GB) (Disk ID: C8AA1957)

    Partition: GPT.

    ==========================================================
    Disk: 3 (Size: 14.5 GB) (Disk ID: 61DCBDCC)
    Partition 1: (Active) - (Size=3.9 GB) - (Type=EF)

    ==========================================================
    Disk: 4 (Size: 1.9 GB) (Disk ID: 555925CE)
    Partition 1: (Active) - (Size=1.9 GB) - (Type=0B)

    ==========================================================
    Disk: 5 (Size: 29.3 GB) (Disk ID: 03E21CAD)
    Partition 1: (Active) - (Size=29.3 GB) - (Type=0B)

    ==========================================================
    Disk: 6 (Protective MBR) (Size: 14.9 GB) (Disk ID: 00000000)

    Partition: GPT.

    ==========================================================
    Disk: 7 (Size: 7.2 GB) (Disk ID: 726246BA)
    Partition 1: (Active) - (Size=7.2 GB) - (Type=0B)

    ==========================================================
    Disk: 8 (Size: 29.4 GB) (Disk ID: 0203CF9B)
    Partition 1: (Active) - (Size=29.4 GB) - (Type=07 NTFS)

    ==========================================================
    Disk: 9 (MBR Code: Windows 7/8/10) (Size: 14.4 GB) (Disk ID: 04907CB9)
    Partition 1: (Not Active) - (Size=14.3 GB) - (Type=07 NTFS)
    Partition 2: (Active) - (Size=102 MB) - (Type=1B)
    Attempted reading MBR returned 0 bytes.
    Could not read MBR for disk 10.

    ==================== Fin de Addition.txt =======================

    Thanks...

  2. #2
    Security Expert-emeritus Juliet's Avatar
    Join Date
    Feb 2007
    Location
    Deep South
    Posts
    4,084

    Default

    I can see many things happening here.

    You have downloaded to many security apps, these security programs cannot be executed at the same time, or keep your computer safe.
    It can only slow down your system which allows these apps to fight for space and resources.
    Disable all but one or chose which one to keep and delete the others.

    COMODO Internet Security
    Kaspersky Total Security 20.
    BitDefender
    Avira
    Ad-Aware Antivirus/Ad-Aware Firewall
    ESET Security


    ~~~~~~~~~~~~~~~~~~~~~~~~~`

    TweakBit PCRepairKit is a "system optimizer". These so-called "system optimizers" use intentional false positives to convince users that their systems have problems. Then they try to sell you their software, claiming it will remove these problems.
    More information can be found on our https://blog.malwarebytes.com/cyberc...tal-snake-oil/

    PC TuneUp Maestro (by CompuClever) is a potentially unwanted program, which is advertised as a system optimizer
    https://malwaretips.com/blogs/remove...y-compuclever/

    Smart PC Care PUP is a potentially unwanted program, scans a computer it will list a variety of detected issues, but state that you need to first purchase a license before you can fix them.
    https://www.bleepingcomputer.com/vir...rt-pc-care-pup

    Press the Windows Key + R. This will open the Run box.
    Type Appwiz.cpl and click OK.

    A list of installed programs will appear. Uninstall the below programs in bold by selecting them and clicking Uninstall:
    TweakBit PCRepairKit
    PC TuneUp Maestro
    Smart PC Care


    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~`

    Start Farbar Recovery Scan Tool with Administrator privileges
    (Right click on the FRST icon and select Run as administrator)

    highlight on the text below and select Copy.
    beginning with Start:: and finishing with End::
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

    Highlight the entire content of the quote box below and select Copy.


    Start::
    CloseProcesses:
    CreateRestorePoint:
    CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
    CHR HKU\S-1-5-21-867250633-51197164-4155923770-1001\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
    Task: {915B0D60-790D-4C12-A460-AA772D1C14DF} - System32\Tasks\TweakBit\PCRepairKit\Start PCRepairKit оn logon => F:\4 - moby dawn Anti-JJAD apps for repair & fix internet\TweakBit.PCRepairKit.2.0.0.55435.Portable\TweakBit.PCRepairKit.2.0.0.55435.Portable\App\ProgramFiles\PCRepairKit.exe <==== ATTENTION
    Task: {20B5760E-7821-4F5F-9B35-92217717F265} - System32\Tasks\TweakBit\PCRepairKit\Start PCRepairKit automatic scanning => F:\4 - moby dawn Anti-JJAD apps for repair & fix internet\TweakBit.PCRepairKit.2.0.0.55435.Portable\TweakBit.PCRepairKit.2.0.0.55435.Portable\App\ProgramFiles\PCRepairKit.exe <==== ATTENTION
    HKU\S-1-5-21-867250633-51197164-4155923770-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
    SearchScopes: HKLM -> DefaultScope {7B5E17A5-1DFB-4269-9519-177F01849132} URL =
    SearchScopes: HKU\S-1-5-21-867250633-51197164-4155923770-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
    SearchScopes: HKU\S-1-5-21-867250633-51197164-4155923770-1001 -> {EF641CB9-A500-480E-ABFC-370E51010B2B} URL = hxxps://search.yahoo.com/search?p={searchTerms}&b={startPage?}&fr=ie8
    Toolbar: HKU\S-1-5-21-867250633-51197164-4155923770-1001 -> Pas de nom - {EF293C5A-9F37-49FD-91C4-2B867063FC54} - Pas de fichier
    S1 epp; \??\K:\EEK\bin64\epp.sys [X]
    S3 WinRing0_1_2_0; \??\C:\Users\nalb fait moins peur\AppData\Local\Temp\tmpBF01.tmp [X] <==== ATTENTION
    ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> Pas de fichier
    ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Pas de fichier
    ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> Pas de fichier
    ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Pas de fichier
    ContextMenuHandlers1: [chext] -> {E7A4C2DA-F3AF-4145-AC19-E3B215306A54} => -> Pas de fichier
    ContextMenuHandlers1: [Open With EncryptionMenu] -> {A470F8CF-A1E8-4f65-8335-227475AA5C46} => -> Pas de fichier
    ContextMenuHandlers3: [AdAwareContextMenu] -> {5B64240D-5B36-4B9F-A75F-4925B6A53D5B} => -> Pas de fichier
    ContextMenuHandlers4: [chext] -> {E7A4C2DA-F3AF-4145-AC19-E3B215306A54} => -> Pas de fichier
    ContextMenuHandlers5: [chext] -> {E7A4C2DA-F3AF-4145-AC19-E3B215306A54} => -> Pas de fichier
    ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier
    ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Pas de fichier
    ContextMenuHandlers6: [chext] -> {E7A4C2DA-F3AF-4145-AC19-E3B215306A54} => -> Pas de fichier
    FirewallRules: [{CA046180-4FEA-4E49-943C-0578B4F26C95}] => (Allow) F:\4 - moby dawn Anti-JJAD apps for repair & fix internet\2TheLoo\2THELOO\UVK_en64.exe Pas de fichier
    FirewallRules: [{F9ECE669-9ACB-489B-AFE8-6F52A956D64B}] => (Allow) F:\4 - moby dawn Anti-JJAD apps for repair & fix internet\2TheLoo\2THELOO\UVK_en64.exe Pas de fichier
    EmptyTemp:
    C:\Windows\Temp\*.*
    End::
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


    Start FRST (FRST64) with Administrator privileges
    Press the Fix button. FRST will process the lines copied above from the clipboard.
    When finished, a log file Fixlog.txt will pop up and saved in the same location the tool was ran from.

    Please copy and paste its contents in your next reply.
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

    Many tools I recommend you use to help me find problems you have already downloaded and used, but you post no logs for me to read.
    What I would like to see is that you uninstall these tools and download fresh updated versions.

    Download and run AdwCleaner

    Download AdwCleaner from here and save it to your desktop.

    • run AdwCleaner by clicking on Scan Now
    • when it has finished, leave everything that was found checked, (ticked), then click on Clean and Repair
    • if it asks to reboot, allow the reboot
    • on reboot, click on View Log File; please attach the content of the log to your next reply.

    ==================

    Click Open Malwarebyte Free
    Under Scanner select Scheduled scans
    Select Advanced scanners
    Select Custom Scan select Configure Scan
    Place a check mark in Scan for rootkits and place a check mark on the C: drive and your external drives to be scanned
    Click Scan
    When completed click View Report
    Click Export, then Export to TXT
    Save the file onto your desktop as MBAM.txt
    Copy and paste the contents of the file in your reply.

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~`

    Please allow these tools to locate and quarantine/delete what they find.

    Post these 3 logs when finished.
    Windows Insider MVP Consumer Security 2009 - 2017
    Please do not PM me for Malware help, we all benefit from posting on the open board.

  3. #3
    Junior Member
    Join Date
    Apr 2020
    Posts
    5

    Default

    Résultats de correction de Farbar Recovery Scan Tool (x64) Version: 10.02.2019 01
    Exécuté par nalb fait moins peur (27-04-2020 00:02:27) Run:1
    Exécuté depuis H:\Download
    Profils chargés: nalb fait moins peur (Profils disponibles: nalb fait moins peur)
    Mode d'amorçage: Normal
    ==============================================

    fixlist contenu:
    *****************
    CloseProcesses:
    CreateRestorePoint:
    CHR HKLMSOFTWAREPoliciesGoogle: Restriction <==== ATTENTION
    CHR HKUS-1-5-21-867250633-51197164-4155923770-1001SOFTWAREPoliciesGoogle: Restriction <==== ATTENTION
    Task: {915B0D60-790D-4C12-A460-AA772D1C14DF} - System32TasksTweakBitPCRepairKitStart PCRepairKit ?n logon => F:4 - moby dawn Anti-JJAD apps for repair & fix internetTweakBit.PCRepairKit.2.0.0.55435.PortableTweakBit.PCRepairKit.2.0.0.55435.PortableAppProgramFilesPCRepairKit.exe <==== ATTENTION
    Task: {20B5760E-7821-4F5F-9B35-92217717F265} - System32TasksTweakBitPCRepairKitStart PCRepairKit automatic scanning => F:4 - moby dawn Anti-JJAD apps for repair & fix internetTweakBit.PCRepairKit.2.0.0.55435.PortableTweakBit.PCRepairKit.2.0.0.55435.PortableAppProgramFilesPCRepairKit.exe <==== ATTENTION
    HKUS-1-5-21-867250633-51197164-4155923770-1001SOFTWAREPoliciesMicrosoftInternet Explorer: Restriction <==== ATTENTION
    SearchScopes: HKLM -> DefaultScope {7B5E17A5-1DFB-4269-9519-177F01849132} URL =
    SearchScopes: HKUS-1-5-21-867250633-51197164-4155923770-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
    SearchScopes: HKUS-1-5-21-867250633-51197164-4155923770-1001 -> {EF641CB9-A500-480E-ABFC-370E51010B2B} URL = hxxps://search.yahoo.com/search?p={searchTerms}&b={startPage?}&fr=ie8
    Toolbar: HKUS-1-5-21-867250633-51197164-4155923770-1001 -> Pas de nom - {EF293C5A-9F37-49FD-91C4-2B867063FC54} - Pas de fichier
    S1 epp; ??K:EEKbin64epp.sys [X]
    S3 WinRing0_1_2_0; ??C:Usersnalb fait moins peurAppDataLocalTemptmpBF01.tmp [X] <==== ATTENTION
    ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> Pas de fichier
    ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Pas de fichier
    ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> Pas de fichier
    ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Pas de fichier
    ContextMenuHandlers1: [chext] -> {E7A4C2DA-F3AF-4145-AC19-E3B215306A54} => -> Pas de fichier
    ContextMenuHandlers1: [Open With EncryptionMenu] -> {A470F8CF-A1E8-4f65-8335-227475AA5C46} => -> Pas de fichier
    ContextMenuHandlers3: [AdAwareContextMenu] -> {5B64240D-5B36-4B9F-A75F-4925B6A53D5B} => -> Pas de fichier
    ContextMenuHandlers4: [chext] -> {E7A4C2DA-F3AF-4145-AC19-E3B215306A54} => -> Pas de fichier
    ContextMenuHandlers5: [chext] -> {E7A4C2DA-F3AF-4145-AC19-E3B215306A54} => -> Pas de fichier
    ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier
    ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Pas de fichier
    ContextMenuHandlers6: [chext] -> {E7A4C2DA-F3AF-4145-AC19-E3B215306A54} => -> Pas de fichier
    FirewallRules: [{CA046180-4FEA-4E49-943C-0578B4F26C95}] => (Allow) F:4 - moby dawn Anti-JJAD apps for repair & fix internet2TheLoo2THELOOUVK_en64.exe Pas de fichier
    FirewallRules: [{F9ECE669-9ACB-489B-AFE8-6F52A956D64B}] => (Allow) F:4 - moby dawn Anti-JJAD apps for repair & fix internet2TheLoo2THELOOUVK_en64.exe Pas de fichier
    EmptyTemp:
    C:WindowsTemp*.*

    *****************

    Processus fermé avec succès.
    Le Point de restauration a été créé avec succès.
    CHR HKLMSOFTWAREPoliciesGoogle: Restriction <==== ATTENTION => Erreur: Pas de correction automatique trouvée pour cet élément.
    CHR HKUS-1-5-21-867250633-51197164-4155923770-1001SOFTWAREPoliciesGoogle: Restriction <==== ATTENTION => Erreur: Pas de correction automatique trouvée pour cet élément.
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{915B0D60-790D-4C12-A460-AA772D1C14DF}" => supprimé(es) avec succès
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{915B0D60-790D-4C12-A460-AA772D1C14DF}" => supprimé(es) avec succès
    "C:\Windows\System32TasksTweakBitPCRepairKitStart PCRepairKit ?n logon" => non trouvé(e)
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\TreeTask: {915B0D60-790D-4C12-A460-AA772D1C14DF} - System32TasksTweakBitPCRepairKitStart PCRepairKit ?n logon => F:4 - moby dawn Anti-JJAD apps for repair & fix internetTweakBit.PCRepairKit.2.0.0.55435.PortableTweakBit.PCRepairKit.2.0.0.55435.PortableAppProgramFilesPCRepairKit.exe <==== ATTENTION => impossible ? supprimer. ErrorCode1: 0xC000000D
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{20B5760E-7821-4F5F-9B35-92217717F265}" => supprimé(es) avec succès
    "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{20B5760E-7821-4F5F-9B35-92217717F265}" => supprimé(es) avec succès
    "C:\Windows\System32TasksTweakBitPCRepairKitStart PCRepairKit automatic scanning" => non trouvé(e)
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\TreeTask: {20B5760E-7821-4F5F-9B35-92217717F265} - System32TasksTweakBitPCRepairKitStart PCRepairKit automatic scanning => F:4 - moby dawn Anti-JJAD apps for repair & fix internetTweakBit.PCRepairKit.2.0.0.55435.PortableTweakBit.PCRepairKit.2.0.0.55435.PortableAppProgramFilesPCRepairKit.exe <==== ATTENTION => impossible ? supprimer. ErrorCode1: 0xC000000D
    HKUS-1-5-21-867250633-51197164-4155923770-1001SOFTWAREPoliciesMicrosoftInternet Explorer: Restriction <==== ATTENTION => Erreur: Pas de correction automatique trouvée pour cet élément.
    HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => valeur restauré(es) avec succès
    "\\SearchScopes: HKUS-1-5-21-867250633-51197164-4155923770-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" => non trouvé(e)
    "\\SearchScopes: HKUS-1-5-21-867250633-51197164-4155923770-1001 -> {EF641CB9-A500-480E-ABFC-370E51010B2B} URL = hxxps://search.yahoo.com/search?p={searchTerms}&b={startPage?}&fr=ie8" => non trouvé(e)
    "\\{EF293C5A-9F37-49FD-91C4-2B867063FC54}" => non trouvé(e)
    HKLM\Software\Classes\CLSID\{EF293C5A-9F37-49FD-91C4-2B867063FC54} => non trouvé(e)
    HKLM\System\CurrentControlSet\Services\epp => supprimé(es) avec succès
    epp => service supprimé(es) avec succès
    HKLM\System\CurrentControlSet\Services\WinRing0_1_2_0 => supprimé(es) avec succès
    WinRing0_1_2_0 => service supprimé(es) avec succès
    HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ FileSyncEx => supprimé(es) avec succès
    HKLM\Software\Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => non trouvé(e)
    HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\7-Zip => supprimé(es) avec succès
    HKLM\Software\Classes\CLSID\{23170F69-40C1-278A-1000-000100020000} => non trouvé(e)
    HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ANotepad++64 => supprimé(es) avec succès
    HKLM\Software\Classes\CLSID\{B298D29A-A6ED-11DE-BA8C-A68E55D89593} => non trouvé(e)
    HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\BriefcaseMenu => supprimé(es) avec succès
    HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D} => supprimé(es) avec succès
    HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\chext => supprimé(es) avec succès
    HKLM\Software\Classes\CLSID\{E7A4C2DA-F3AF-4145-AC19-E3B215306A54} => non trouvé(e)
    HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\Open With EncryptionMenu => supprimé(es) avec succès
    HKLM\Software\Classes\CLSID\{A470F8CF-A1E8-4f65-8335-227475AA5C46} => non trouvé(e)
    HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\AdAwareContextMenu => supprimé(es) avec succès
    HKLM\Software\Classes\CLSID\{5B64240D-5B36-4B9F-A75F-4925B6A53D5B} => non trouvé(e)
    HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\chext => supprimé(es) avec succès
    HKLM\Software\Classes\CLSID\{E7A4C2DA-F3AF-4145-AC19-E3B215306A54} => non trouvé(e)
    HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\chext => supprimé(es) avec succès
    HKLM\Software\Classes\CLSID\{E7A4C2DA-F3AF-4145-AC19-E3B215306A54} => non trouvé(e)
    HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => supprimé(es) avec succès
    HKLM\Software\Classes\CLSID\{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => non trouvé(e)
    HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\BriefcaseMenu => supprimé(es) avec succès
    HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D} => non trouvé(e)
    HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\chext => supprimé(es) avec succès
    HKLM\Software\Classes\CLSID\{E7A4C2DA-F3AF-4145-AC19-E3B215306A54} => non trouvé(e)
    "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CA046180-4FEA-4E49-943C-0578B4F26C95}" => non trouvé(e)
    "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F9ECE669-9ACB-489B-AFE8-6F52A956D64B}" => non trouvé(e)
    C:WindowsTemp*.* => Erreur: Pas de correction automatique trouvée pour cet élément.

    =========== EmptyTemp: ==========

    BITS transfer queue => 6578176 B
    DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 12725158 B
    Java, Flash, Steam htmlcache => 0 B
    Windows/system/drivers => 403472 B
    Edge => 18391885 B
    Chrome => 0 B
    Firefox => 26695849 B
    Opera => 0 B

    Temp, IE cache, history, cookies, recent:
    Default => 0 B
    Users => 0 B
    ProgramData => 0 B
    Public => 0 B
    systemprofile => 0 B
    systemprofile32 => 0 B
    LocalService => 23098 B
    NetworkService => 91790 B
    nalb fait moins peur => 77262925 B

    RecycleBin => 0 B
    EmptyTemp: => 135.6 MB données temporaires supprimées.

    ================================


    Le système a dû redémarrer.

    ==== Fin de Fixlog 00:03:10 ==== below.


    I keep comodo and adaware in real-time, the others anti-virus disabled,

    I keep comodo because of issues of virtual desktop detailed below

    I have bugs & malwares installed on all my comodo virtual desktops: the containment & the secure shopping, which makes impossibility to make online shopping

    bugs & malwares in the infected virtual desktop of containment (comodo sandbox)--:
    -reimage
    -yara editor trial
    -diffview trial
    -techtoolstore->privazer
    -tuneup360
    -audio/video to exe
    -registry first aid
    -smart privacy cleaner
    -if/when i try again to reinstall the virtual desktop of comodo sandbox: impossible->error of installation of microsoft siverlight

    and the bugs & infections installed in the virtual desktop of comodo secure shopping:
    -pchelpsoft pc cleaner
    -spyhunter
    -radiorage en page d'accueil
    -systools pdf bates numberer
    -wondershare 1-click pc care

    J problem on galaxy book pc,
    the icon of livebox wifi displays connected/connexion ok,
    but if i come on/go to various internet browsers
    i have error of connexion at every web sites


    the adwcleaner here

    # -------------------------------
    # Malwarebytes AdwCleaner 8.0.4.0
    # -------------------------------
    # Build: 04-03-2020
    # Database: 2020-04-03.1 (Local)
    # Support: https://www.malwarebytes.com/support
    #
    # -------------------------------
    # Mode: Clean
    # -------------------------------
    # Start: 04-27-2020
    # Duration: 00:00:33
    # OS: Windows 10 Home
    # Cleaned: 44
    # Failed: 0


    ***** [ Services ] *****

    No malicious services cleaned.

    ***** [ Folders ] *****

    Deleted C:\Program Files (x86)\Auslogics\BoostSpeed
    Deleted C:\Program Files (x86)\UCBrowser
    Deleted C:\ProgramData\Auslogics\BoostSpeed
    Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics\BoostSpeed
    Deleted C:\ProgramData\TweakBit
    Deleted C:\Users\didinser recs 5rem 2\AppData\Roaming\IObit\Advanced SystemCare
    Deleted C:\Users\lfshy\AppData\Local\PrivacyReviver
    Deleted C:\Users\lfshy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Privacy Reviver
    Deleted C:\Users\nalb fait moins peur\AppData\Local\UCBrowser
    Deleted C:\Users\nalb fait moins peur\AppData\Roaming\TweakBit
    Deleted C:\Windows\System32\Tasks\Auslogics\BoostSpeed
    Deleted C:\Windows\System32\Tasks\TweakBit

    ***** [ Files ] *****

    Deleted C:\Users\Public\Desktop\ASHAMPOO DEALS.URL
    Deleted C:\Users\lfshy\Desktop\Privacy Reviver.lnk
    Deleted C:\Users\lfshy\Desktop\Smart Privacy Cleaner.lnk
    Deleted C:\Windows\Reimage.ini

    ***** [ DLL ] *****

    No malicious DLLs cleaned.

    ***** [ WMI ] *****

    No malicious WMI cleaned.

    ***** [ Shortcuts ] *****

    No malicious shortcuts cleaned.

    ***** [ Tasks ] *****

    No malicious tasks cleaned.

    ***** [ Registry ] *****

    Deleted HKLM\SOFTWARE\Classes\.crx\OpenWithProgids|UCHTML.AssocFile.CRX
    Deleted HKLM\SOFTWARE\Classes\.htm\OpenWithProgids|UCHTML.AssocFile.HTM
    Deleted HKLM\SOFTWARE\Classes\.html\OpenWithProgids|UCHTML.AssocFile.HTML
    Deleted HKLM\SOFTWARE\Classes\.mht\OpenWithProgids|UCHTML.AssocFile.MHT
    Deleted HKLM\SOFTWARE\Classes\.shtm\OpenWithProgids|UCHTML.AssocFile.SHTM
    Deleted HKLM\SOFTWARE\Classes\.shtml\OpenWithProgids|UCHTML.AssocFile.SHTML
    Deleted HKLM\SOFTWARE\Classes\.webp\OpenWithProgids|UCHTML.AssocFile.WEBP
    Deleted HKLM\SOFTWARE\Classes\.xht\OpenWithProgids|UCHTML.AssocFile.XHT
    Deleted HKLM\SOFTWARE\Classes\.xhtml\OpenWithProgids|UCHTML.AssocFile.XHTML
    Deleted HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL
    Deleted HKLM\SOFTWARE\Classes\UCHTML
    Deleted HKLM\SOFTWARE\Classes\UCHTML.AssocFile.CRX
    Deleted HKLM\SOFTWARE\Classes\UCHTML.AssocFile.HTM
    Deleted HKLM\SOFTWARE\Classes\UCHTML.AssocFile.HTML
    Deleted HKLM\SOFTWARE\Classes\UCHTML.AssocFile.MHT
    Deleted HKLM\SOFTWARE\Classes\UCHTML.AssocFile.SHTM
    Deleted HKLM\SOFTWARE\Classes\UCHTML.AssocFile.SHTML
    Deleted HKLM\SOFTWARE\Classes\UCHTML.AssocFile.WEBP
    Deleted HKLM\SOFTWARE\Classes\UCHTML.AssocFile.XHT
    Deleted HKLM\SOFTWARE\Classes\UCHTML.AssocFile.XHTML
    Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\TweakBit
    Deleted HKLM\Software\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A}
    Deleted HKLM\Software\Wow6432Node\Auslogics\BoostSpeed
    Deleted HKLM\Software\Wow6432Node\\Classes\AppID\REI_AxControl.DLL
    Deleted HKLM\Software\Wow6432Node\\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A}
    Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{7216871F-869E-437C-B9BF-2A13F2DCE63F}_is1

    ***** [ Chromium (and derivatives) ] *****

    No malicious Chromium entries cleaned.

    ***** [ Chromium URLs ] *****

    No malicious Chromium URLs cleaned.

    ***** [ Firefox (and derivatives) ] *****

    No malicious Firefox entries cleaned.

    ***** [ Firefox URLs ] *****

    No malicious Firefox URLs cleaned.

    ***** [ Hosts File Entries ] *****

    No malicious hosts file entries cleaned.

    ***** [ Preinstalled Software ] *****

    Deleted Preinstalled.SamsungSAgent Folder C:\Program Files\SAMSUNG\S AGENT
    Deleted Preinstalled.SamsungSAgent Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{0052BF58-5307-4F7D-A379-8F4EC9212FA8}


    *************************

    [+] remove_folder_Auslogics
    [+] remove_folder_Auslogics(2)
    [+] remove_folder_Auslogics(3)
    [+] remove_folder_Auslogics(4)
    [+] remove_regKey_Auslogics
    [+] Delete IFEO
    [+] Delete Prefetch
    [+] Delete Tracing Keys
    [+] Reset BITS
    [+] Reset Windows Firewall
    [+] Reset Hosts File
    [+] Reset IPSec
    [+] Reset Chromium Policies
    [+] Reset IE Policies
    [+] Reset Proxy Settings
    [+] Reset TCP/IP
    [+] Reset Winsock

    *************************

    AdwCleaner[S00].txt - [8041 octets] - [24/04/2020 13:25:10]
    AdwCleaner_Debug.log - [27420 octets] - [27/04/2020 05:16:31]
    AdwCleaner[S01].txt - [5277 octets] - [27/04/2020 05:17:05]

    ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C01].txt ##########

    Malwarebytes can't launch because of internet bug mentioned below
    problem on galaxy book pc,
    the icon of livebox wifi displays connected/connexion ok,
    but if i come on/go to various internet browsers
    i have error of connexion at every web sites


    Wi-Fi can't work in safe mode with networking and safe mode,

    Thanks...

  4. #4
    Security Expert-emeritus Juliet's Avatar
    Join Date
    Feb 2007
    Location
    Deep South
    Posts
    4,084

    Default

    Disabling different antivirus/security internet packages may not be enough as Antivirus and anti-malware products often leave their drivers active in the background, which means that they are still running and are present on the system despite you disabling that component of the product.

    I think there will be issues here I cannot help with but will try to help. From what I can see coming in the logs is not much related to malware but from devices now not working as they should.

    Possible many of the problems are coming from Comodo internet security.

    You have many errors showing through the scan logs of drivers, and hardware problems, and with Comodo internet security.

    Date: 2020-04-25 14:27:19.634
    Description:
    Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\cssguard64.dll that did not meet the Windows signing level requirements.

    Date: 2020-04-25 14:27:19.629
    Description:
    Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


    Name: Broadcom GNSS 4752 Geolocation Sensor
    Description: Broadcom GNSS 4752 Geolocation Sensor
    Class Guid: {5175d334-c371-4806-b3ba-71fd53c9258d}
    Manufacturer: Broadcom Corporation
    Service: WUDFRd
    Problem: : Windows cannot initialize the device driver for this hardware. (Code 37)
    Resolution: The driver returned failure from its DriverEntry routine. Uninstall the driver, and then click "Scan for hardware changes" to reinstall or upgrade the driver.


    Steps to Reboot a Router and Modem

    Unplug the router and the modem. ...
    Wait at least 30 seconds. ...
    Plug in the modem. ...
    Wait at least 60 seconds. ...
    Plug in the router. ...
    Wait at least 2 minutes. ...
    When the router and modem restart, test to see if the problem went away.

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~`
    Try the below to see if some of these errors can be fixed with the tool from Microsoft.
    run the System File Checker utility: https://answers.microsoft.com/en-us/...c-695b60477a93

    Open Start, type: CMD
    Right click CMD
    Click Run as administrator

    At the Command Prompt, type: sfc /SCANNOW
    This will check for any integrity violations

    Restart your system



    If Comodo has quarantined items you want removed or it makes your computer unusable you will have to connect to the help forums for Comodo internet security.

    https://forums.comodo.com/virusmalwa...istance-b58.0/
    Comodo help forums, also https://forums.comodo.com/

    https://malwaretips.com/threads/como...eleased.91443/
    scroll down to post #18

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~`

    If you have already run the scanner below, please go to your add/remove programs list and uninstall first.

    ********************
    ESET Online Scanner

    Download ESET Online Scanner and save it to your desktop.
    • Right-click on esetonlinescanner_enu.exe and select Run as Administrator.
    • When the tool opens, click Get Started.
    • Read and accept the license agreement.
    • At the Welcome to ESET Online Scanner window, click Get Started.
    • Select whether you would like to send anonymous data to ESET.
    • Note: if you see the "Welcome Back to ESET Online Scanner" screen, click Computer Scan > Full Scan.
    • Click on the Full Scan option.
    • Select Enable ESET to detect and remove potentially unwanted applications, then click Start scan.
    • ESET will now begin scanning your computer. This may take some time.
    • When the scan is finished and if threats have been detected, select Save scan log. Save it to your desktop as eset.txt. Click on Continue.
    • ESET Online Scanner may ask if you'd like to turn on the Periodic Scan feature. Click on Continue.
    • On the next screen, you can leave feedback about the program if you wish. Check the box for Delete application data on closing. If you left feedback, click Submit and continue. If not, Close without feedback.
    • Open the scan log on your desktop (eset.txt) and copy and paste its contents into your next reply.

    -------------
    Windows Insider MVP Consumer Security 2009 - 2017
    Please do not PM me for Malware help, we all benefit from posting on the open board.

  5. #5
    Junior Member
    Join Date
    Apr 2020
    Posts
    5

    Default

    I keep comodo, ad aware partially Uninstaller,
    The others are deleted by gegeel tech toolkit

    I launched sfx scannow, then twice sfc but sfc can't launch it's 1 second prompt but auto close one second later

    I rebooted my live box orange

    But I can't use eset online scanner because internet bug persist

  6. #6
    Security Expert-emeritus Juliet's Avatar
    Join Date
    Feb 2007
    Location
    Deep South
    Posts
    4,084

    Default

    Try running the sfc /SCANNOW command from within Safe Mode.



    But I can't use eset online scanner because internet bug persist
    You will have to post a help toic at the Comodo forums for help with this I have no knowledge of what to do.

    ESET Security scan is already on your computer. You can attempt to uninstall it then try to redownload and run a new scan.

    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Try to temporarily disable Comodo and see if it can connnect?, then re-enable security.


    https://www.tenforums.com/tutorials/...s-windows.html

    scroll down to Code 37 Windows cannot initialize the device driver for this hardware. (Code 37)

    Name: Broadcom GNSS 4752 Geolocation Sensor <== is the driver not working.
    Windows Insider MVP Consumer Security 2009 - 2017
    Please do not PM me for Malware help, we all benefit from posting on the open board.

  7. #7
    Junior Member
    Join Date
    Apr 2020
    Posts
    5

    Default

    I try to run sfc scannow I safe mode and uninstl reimage repair,

    Try to disable comodo and re run eset online scanner,

    Try to un install ad aware and jelly bean key finder,

    But the internet problem persists

  8. #8
    Security Expert-emeritus Juliet's Avatar
    Join Date
    Feb 2007
    Location
    Deep South
    Posts
    4,084

    Default

    Since you posted for help as boucher de france first here at
    https://support.emsisoft.com/topic/3...tual-desktops/

    and Kevin Zoll responded before I did, I'm going to close this topic and let you continue in that help post you created. This will help prevent confusion and wasted time.
    Windows Insider MVP Consumer Security 2009 - 2017
    Please do not PM me for Malware help, we all benefit from posting on the open board.

  9. #9
    Member of Team Spybot tashi's Avatar
    Join Date
    Oct 2005
    Location
    USA
    Posts
    30,955

    Default

    Thank you Juliet.

    The FAQ

    "Posters who start topics at multiple sites for their PC problem waste valuable volunteer resources as our analysts assist people at several forums. Reading logs and the research involved takes time.
    Worse scenario would be to run fixes given at one site unbeknown to the person helping the same user elsewhere. If you have already requested help at another site choose where you wish to continue and advise all parties."
    Microsoft MVP Reconnect 2018-
    Windows Insider MVP 2016-2018
    Microsoft Consumer Security MVP 2006-2016

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •