This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

Redirected to http://go.microsoft.com/?69157" when opening chrome

75 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

ADD A REPLY
 
 
Hello, 
 
Thank you for taking the time to read. Google chrome has been difficult with me for the past few days. 
 
Whenever I open Google Chrome, it redirects me to http://go.microsoft.com/?69157
 
Things I have considered & tried: Rkill, Malwarebytes, Extensions (removed them, turned them off etc), Ublock Origins on (or off for the test). Settings - On Startup - Open the new tab page. Logged off my google profile, cleared cache, Settings - Advanced - Reset and clean up (tried both, clean up computer & Restore settings).
 
Here is a link of people talking about having the exact same issue: https://www.reddit.com/r/chrome/comments/a08eus/google_chrome_keeps_starting_up_with/?sort=top(wasn't my thread, but just found it)
 
They uninstalled chrome and it still does it to them. What is happening, why is it happening to some of us and how to fix it? I hope you guys can help! Thanks in advance :)
 
(I did have the ads by pa too on google but now they disappeared… The microsoft redirect is still happening, though.)

 

Hello Jevykur and welcome to the Bleeping Computer forum.

My name is Satchfan and I would be glad to help you with your computer problem.

Please read the following guidelines which will help to make cleaning your machine easier:

  • please follow all instructions in the order posted
  • please continue to review my answers until I tell you your machine appears to be clear. Absence of symptoms does not mean that everything is clear
  • all logs/reports, etc. must be posted in Notepad. Please ensure that word wrap is unchecked. In Notepad click Format, uncheck Word wrap if it is checked
  • if you don't understand something, please don't hesitate to ask for clarification before proceeding
  • the fixes are specific to your problem and should only be used for this issue on this machine.
  • please reply within 3 days. If you do not reply within this period I will post a reminder but topics with no reply in 4 days will be closed!

IMPORTANT:

Please DO NOT install/uninstall any programs unless asked to.
Please DO NOT run any scans other than those requested

===================================================

Note: Please run these in the order given in the instructions.

===================================================

Download and run AdwCleaner

Download AdwCleaner from here and save it to your desktop.

  • run AdwCleaner by clicking on Scan
  • when it has finished, leave everything that was found checked, (ticked), then click on Clean
  • if it asks to reboot, allow the reboot
  • on reboot a log will be produced; please attach the content of the log to your next reply.

===================================================

Run Farbar Recovery Scan Tool

Please download Farbar Recovery Scan Tool and save it to your Desktop.

Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.

  • right click to run as administrator (XP users click run after receipt of Windows Security Warning - Open File). When the tool opens click Yes to disclaimer.
  • press Scan button
  • it will produce a log called Frst.txt in the same directory the tool is run from
  • please copy and paste log back here.
  • the first time the tool is run it generates another log (Addition.txt - also located in the same directory as FRST.exe/FRST64.exe). Please also paste that along with the Frst.txt into your reply.

Logs to include with next post:

AdwCleaner log
Frst.txt
Addition.txt


Thanks

Satchfan

 

Thank you for the reply!

 

 

 

AdwCleaner log:

 

# ——————————-
# Malwarebytes AdwCleaner 7.2.5.0
# ——————————-
# Build:    11-26-2018
# Database: 2018-11-30.1 (Cloud)
# Support:  https://www.malwarebytes.com/support
#
# ——————————-
# Mode: Clean
# ——————————-
# Start:    12-02-2018
# Duration: 00:00:16
# OS:       Windows 10 Home
# Cleaned:  47
# Failed:   0
 
 
***** [ Services ] *****
 
No malicious services cleaned.
 
***** [ Folders ] *****
 
Deleted       C:\ProgramData\itranslator
Deleted       C:\Users\legros\APPDATA\LOCALLOW\DELTA
Deleted       C:\Program Files (x86)\OSTotoSoft
Deleted       C:\OSTotoFolder
Deleted       C:\Program Files (x86)\ss helper
Deleted       C:\Users\legros\AppData\Roaming\SendSpace
Deleted       C:\Users\legros\AppData\Roaming\iPumper
 
***** [ Files ] *****
 
Deleted       C:\Windows\uninstaller.exe
Deleted       C:\END
 
***** [ DLL ] *****
 
No malicious DLLs cleaned.
 
***** [ WMI ] *****
 
No malicious WMI cleaned.
 
***** [ Shortcuts ] *****
 
No malicious shortcuts cleaned.
 
***** [ Tasks ] *****
 
Deleted       C:\Windows\System32\Tasks\Driver Booster Scheduler
 
***** [ Registry ] *****
 
Deleted       HKU\S-1-5-18\SOFTWARE\530dcd8e16fee17
Deleted       HKCU\SOFTWARE\530dcd8e16fee17
Deleted       HKU\.DEFAULT\SOFTWARE\530dcd8e16fee17
Deleted       HKLM\Software\Wow6432Node\530dcd8e16fee17
Deleted       HKU\S-1-5-18\Software\ByteFence
Deleted       HKU\.DEFAULT\Software\ByteFence
Deleted       HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Reason\ReasonByteFence
Deleted       HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION|ByteFence.exe
Deleted       HKCU\Software\OSTotoSoft
Deleted       HKLM\Software\Wow6432Node\OSTotoSoft
Deleted       HKCU\Software\csastats
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Run|Web Companion
Deleted       HKCU\Software\TeleCharger
Deleted       HKLM\Software\Wow6432Node\SP Global
Deleted       HKCU\Software\Escolade
Deleted       HKCU\Software\2.6.1339.144
Deleted       HKLM\Software\Wow6432Node\Classes\TypeLib\{39A37965-0A96-43A3-870E-821FE5C84B0B}
Deleted       HKLM\Software\Classes\TypeLib\{39A37965-0A96-43A3-870E-821FE5C84B0B}
Deleted       HKLM\Software\Wow6432Node\Classes\Interface\{65416821-217D-44BD-9C61-F53398FB1B46}
Deleted       HKLM\Software\Classes\Interface\{65416821-217D-44BD-9C61-F53398FB1B46}
Deleted       HKLM\Software\Classes\CLSID\{65416821-217D-44BD-9C61-F53398FB1B46}
Deleted       HKLM\Software\Classes\Prod.cap
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EA3307A1-2A99-4D70-8C0A-8136091E1C10} 
Deleted       HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Driver Booster Scheduler
Deleted       HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\st.chatango.com
Deleted       HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\chatango.com
Deleted       HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\st.chatango.com
Deleted       HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\chatango.com
Deleted       HKLM\Software\Reimage
Deleted       HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{C03EFCB4-5546-4D87-9523-C6815B9129FA}
Deleted       HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{59F37D10-AABA-420A-ADFF-3441982DC011}
Deleted       HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{12BD9908-E47A-4009-BB88-B2D80E6252AA}
Deleted       HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{87117459-7CF0-499E-8AF7-F0BEA42D155B}
Deleted       HKCU\Software\Lavasoft\Web Companion
Deleted       HKLM\Software\Wow6432Node\Lavasoft\Web Companion
Deleted       HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com
 
***** [ Chromium (and derivatives) ] *****
 
Deleted       Avira SafeSearch Plus
 
***** [ Chromium URLs ] *****
 
No malicious Chromium URLs cleaned.
 
***** [ Firefox (and derivatives) ] *****
 
No malicious Firefox entries cleaned.
 
***** [ Firefox URLs ] *****
 
No malicious Firefox URLs cleaned.
 
 
*************************
 
[+] Delete Tracing Keys
[+] Reset Winsock
 
*************************
 
AdwCleaner[S00].txt - [5770 octets] - [02/12/2018 19:14:52]
 
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
 
===================================================
 
 
Frst.txt
 
Résultats d'analyse de  Farbar Recovery Scan Tool (FRST) (x64) Version: 01.12.2018 01
Exécuté par legros (administrateur) sur HOWDY-PC (02-12-2018 19:28:35)
Exécuté depuis C:\Users\legros\Downloads
Profils chargés: legros (Profils disponibles: legros)
Platform: Windows 10 Home Version 1803 17134.407 (X64) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: Chrome)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
 
==================== Processus (Avec liste blanche) =================
 
(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)
 
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(DTS) C:\Program Files\Realtek\Audio\HDA\DTSAudioService64.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1810.5-0\MsMpEng.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Malwarebytes) C:\Users\legros\Downloads\adwcleaner_7.2.5.0.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1810.5-0\NisSrv.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
() C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18082.13811.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(f.lux Software LLC) C:\Users\legros\AppData\Local\FluxSoftware\Flux\flux.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.10314.31700.1000_x64__8wekyb3d8bbwe\Office16\OfficeHubTaskHost.exe
(Nota Inc.) C:\Program Files (x86)\Gyazo\GyStation.exe
(Mega Limited) C:\Users\legros\AppData\Local\MEGAsync\MEGAsync.exe
(Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.PeopleExperienceHost_cw5n1h2txyewy\PeopleExperienceHost.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Microsoft Corporation) C:\Program Files\rempl\sedsvc.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
 
==================== Registre (Avec liste blanche) ===========================
 
(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)
 
HKLM\…\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Corporation)
HKLM\…\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9235936 2018-02-22] (Realtek Semiconductor)
HKLM\…\Run: [RtHDVBg_DTS] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1493984 2018-02-22] (Realtek Semiconductor)
HKLM\…\Run: [AdobeAAMUpdater-1.0] => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
HKLM\…\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2670056 2018-09-10] (Adobe Systems, Incorporated)
HKLM-x32\…\Run: [JMB36X IDE Setup] => C:\Windows\RaidTool\xInsIDE.exe [43632 2010-01-19] ()
HKLM-x32\…\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKU\S-1-5-19\…\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
HKU\S-1-5-20\…\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3208992 2018-10-13] (Valve Corporation)
HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [18630056 2018-09-13] (Piriform Ltd)
HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\Run: [Gyazo] => C:\Program Files (x86)\Gyazo\GyStation.exe [5077792 2017-05-16] (Nota Inc.)
HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\Run: [Chromium] => c:\users\legros\appdata\local\chromium\application\chrome.exe [829440 2017-02-15] (The Chromium Authors)
HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\Run: [f.lux] => C:\Users\legros\AppData\Local\FluxSoftware\Flux\flux.exe [1820168 2018-10-24] (f.lux Software LLC)
HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\Policies\system: [DontDisplayLogonHoursWarnings] 1
Startup: C:\Users\legros\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2018-02-03]
ShortcutTarget: MEGAsync.lnk -> C:\Users\legros\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited)
CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
 
==================== Internet (Avec liste blanche) ====================
 
(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)
 
Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{a2336082-2fa5-47a8-8803-7344b469b34e}: [DhcpNameServer] 192.168.1.1
 
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID;=131780690177703066&GUID;=57326B71-A0CD-43A8-8016-94E5813ED940
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = 
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = 
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = 
HKU\S-1-5-21-548831312-2294392190-3545656745-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID;=131780690177831496&GUID;=57326B71-A0CD-43A8-8016-94E5813ED940
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-548831312-2294392190-3545656745-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO: SalePlus -> {377e3a60-7070-4ee5-8f7a-b0204a51426b} -> C:\Program Files (x86)\SalePlus\Fx9AhcbgKBz2tq.x64.dll => Pas de fichier
BHO-x32: SalePlus -> {377e3a60-7070-4ee5-8f7a-b0204a51426b} -> C:\Program Files (x86)\SalePlus\Fx9AhcbgKBz2tq.dll => Pas de fichier
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-04-10] (Oracle Corporation)
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-03-13] (Atheros Commnucations)
BHO-x32: AviraBrowserSafety.BrowserSafety -> {c3c77255-42c0-499f-b664-6e981a0b1647} -> C:\Windows\SysWOW64\mscoree.dll [2018-04-12] (Microsoft Corporation)
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-04-10] (Oracle Corporation)
DPF: HKLM-x32 {74DBCB52-F298-4110-951D-AD2FF67BC8AB} hxxp://www.nvidia.com/content/DriverDownload/nforce/NvidiaSmartScan.cab
Handler-x32: abs - {E00957BD-D0E1-4eb9-A025-7743FDC8B27B} - C:\Windows\SysWOW64\mscoree.dll [2018-04-12] (Microsoft Corporation)
 
Edge: 
======
Edge Extension: (uBlock Origin) -> EdgeExtension_37833NikRollsuBlockOrigin_f8jsg5mm64m62 => C:\Program Files\WindowsApps\37833NikRolls.uBlockOrigin_1.15.24.0_neutral__f8jsg5mm64m62 [2018-04-11]
 
FireFox:
========
FF ProfilePath: C:\Users\legros\AppData\Roaming\Mozilla\Firefox\Profiles\wz8t9aco.default [2018-12-02]
FF Homepage: Mozilla\Firefox\Profiles\wz8t9aco.default -> about:home
FF NewTab: Mozilla\Firefox\Profiles\wz8t9aco.default -> about:newtab
FF Extension: (Avira Browser Safety) - C:\Users\legros\AppData\Roaming\Mozilla\Firefox\Profiles\wz8t9aco.default\Extensions\[removed] [2015-07-26] [Legacy] [non signé]
FF SearchPlugin: C:\Users\legros\AppData\Roaming\Mozilla\Firefox\Profiles\wz8t9aco.default\searchplugins\bing-lavasoft-ff59.xml [2018-05-17]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_31_0_0_153.dll [2018-11-20] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_31_0_0_153.dll [2018-11-20] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-04-10] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-04-10] (Oracle Corporation)
FF Plugin-x32: @ngm.nexoneu.com/NxGame -> C:\ProgramData\NexonEU\NGM\npNxGameEU.dll [2013-12-20] (Nexon)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2018-07-30] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2018-07-30] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-18] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-18] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-08-09] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-08-09] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-08-09] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-08-09] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-08-09] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-08-09] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-548831312-2294392190-3545656745-1000: @soe.sony.com/installer,version=1.0.3 -> C:\Users\legros\AppData\LocalLow\Sony Online Entertainment\npsoe.dll [2012-03-19] ()
FF Plugin HKU\S-1-5-21-548831312-2294392190-3545656745-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\legros\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-02-20] (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-548831312-2294392190-3545656745-1000: jpl.nasa.gov/NASAEyes -> C:\Users\legros\AppData\Roaming\JPL-NASA-Caltech\NASA's Eyes\npNASAEyes.dll [2017-08-11] (Jet Propulsion Laboratory)
FF Plugin HKU\S-1-5-21-548831312-2294392190-3545656745-1000: thehappycloud.com/HappyCloudPlugin -> C:\ProgramData\HappyCloud\Application\npHappyCloudPlugin.dll [2013-01-08] (The Happy Cloud)
FF Plugin HKU\S-1-5-21-548831312-2294392190-3545656745-1000: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [Pas de fichier]
 
Chrome: 
=======
CHR DefaultProfile: Default
CHR StartupUrls: Default -> "hxxp://google.com/ncr"
CHR Profile: C:\Users\legros\AppData\Local\Google\Chrome\User Data\Default [2018-12-02]
CHR Extension: (Google Drive) - C:\Users\legros\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-08-26]
CHR Extension: (YouTube) - C:\Users\legros\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-08-26]
CHR Extension: (Honey) - C:\Users\legros\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmnlcjabgnpnenekpadlanbbkooimhnj [2018-11-15]
CHR Extension: (NoCountryRedirect (NCR)) - C:\Users\legros\AppData\Local\Google\Chrome\User Data\Default\Extensions\ciboebddidackjicoeoiigdnbmchkdll [2018-11-30]
CHR Extension: (uBlock Origin) - C:\Users\legros\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2018-09-28]
CHR Extension: (Imagus) - C:\Users\legros\AppData\Local\Google\Chrome\User Data\Default\Extensions\immpkjjlgappgfkkfieppnmlhakdmaab [2018-11-30]
CHR Extension: (Avira SafeSearch Plus) - C:\Users\legros\AppData\Local\Google\Chrome\User Data\Default\Extensions\ipmkfpcnmccejididiaagpgchgjfajgp [2018-12-02]
CHR Extension: (Grammarly for Chrome) - C:\Users\legros\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2018-11-30]
CHR Extension: (Pas de nom) - C:\Users\legros\AppData\Local\Google\Chrome\User Data\Default\Extensions\mafbdhjdkjnoafhfelkjpchpaepjknad [2018-11-28]
CHR Extension: (Chrome Web Store Payments) - C:\Users\legros\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
CHR Extension: (Gmail) - C:\Users\legros\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-08-26]
CHR Extension: (Chrome Media Router) - C:\Users\legros\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-11-01]
CHR Profile: C:\Users\legros\AppData\Local\Google\Chrome\User Data\Guest Profile [2018-11-28]
CHR HKLM\…\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\…\Chrome\Extension: [ipmkfpcnmccejididiaagpgchgjfajgp] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\…\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\…\Chrome\Extension: [ipmkfpcnmccejididiaagpgchgjfajgp] - hxxps://clients2.google.com/service/update2/crx
 
==================== Services (Avec liste blanche) ====================
 
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
 
"QZBXgBSDLcAil" => service n'a pas pu être déverrouillé. <==== ATTENTION
 
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2910696 2018-09-10] (Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2704872 2018-09-10] (Adobe Systems, Incorporated)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6076936 2018-10-23] ()
R2 DTSAudioService; C:\Program Files\Realtek\Audio\HDA\DTSAudioService64.exe [218760 2018-02-22] (DTS)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [781440 2018-08-12] (EasyAntiCheat Ltd)
U2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2018-06-11] (Hi-Rez Studios) [Fichier non signé]
R2 igfxCUIService1.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [328608 2015-07-30] (Intel Corporation)
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [3916368 2016-01-09] (INCA Internet Co., Ltd.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [786800 2018-11-16] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [786800 2018-11-16] (NVIDIA Corporation)
S4 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [495616 2018-03-10] ()
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1810.5-0\NisSrv.exe [3917016 2018-10-23] (Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1810.5-0\MsMpEng.exe [114208 2018-10-23] (Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
 
===================== Pilotes (Avec liste blanche) ======================
 
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
 
S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2017-08-16] (Disc Soft Ltd)
S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2017-08-16] (Disc Soft Ltd)
R3 e1cexpress; C:\WINDOWS\system32\DRIVERS\e1c65x64.sys [472016 2017-08-17] (Intel Corporation)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-10-24] (REALiX™)
R3 Neo_VPN; C:\WINDOWS\System32\drivers\Neo6_x64_VPN.sys [37824 2018-05-30] (SoftEther Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_52ac7eb8f32780d5\nvlddmkm.sys [17211376 2018-08-01] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2018-10-25] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [70024 2018-10-01] (NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [74576 2018-10-01] (NVIDIA Corporation)
R1 SeLow; C:\WINDOWS\system32\DRIVERS\SeLow_x64.sys [50624 2018-05-31] (SoftEther Corporation)
S3 tap-tb-0901; C:\WINDOWS\System32\DRIVERS\tap-tb-0901.sys [38656 2014-08-12] (The OpenVPN Project)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46184 2018-10-23] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [328696 2018-10-23] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [60408 2018-10-23] (Microsoft Corporation)
S3 xhunter1; C:\WINDOWS\xhunter1.sys [48656 2018-05-31] (Wellbia.com Co., Ltd.)
R1 ZAM_Guard; C:\WINDOWS\System32\drivers\zamguard64.sys [203680 2018-11-28] (Zemana Ltd.)
S3 BRDriver64_1_3_3_E02B25FC; \??\C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [X]
U3 idsvc; pas de ImagePath
R4 NetfilterSvc; \??\C:\WINDOWS\iNetfilterSvc [X]
U5 QZBXgBSDLcAil;  <==== ATTENTION: Service verrouillé
S1 ZAM; \??\C:\WINDOWS\System32\drivers\zam64.sys [X]
 
==================== NetSvcs (Avec liste blanche) ===================
 
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
 
 
==================== Un mois - Créés - fichiers et dossiers ========
 
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
 
2018-12-02 19:28 - 2018-12-02 19:29 - 000021161 _____ C:\Users\legros\Downloads\FRST.txt
2018-12-02 19:28 - 2018-12-02 19:28 - 000000000 ____D C:\FRST
2018-12-02 19:26 - 2018-12-02 19:27 - 002417152 _____ (Farbar) C:\Users\legros\Downloads\FRST64.exe
2018-12-02 19:17 - 2018-12-02 19:17 - 000070152 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\iNetfilterSvc
2018-12-02 19:17 - 2018-12-02 19:17 - 000000000 ____D C:\ProgramData\itranslator
2018-12-02 19:14 - 2018-12-02 19:15 - 000000000 ____D C:\AdwCleaner
2018-12-02 19:13 - 2018-12-02 19:13 - 007321808 _____ (Malwarebytes) C:\Users\legros\Downloads\adwcleaner_7.2.5.0.exe
2018-12-02 18:10 - 2018-12-02 18:10 - 000060762 _____ C:\Users\legros\Downloads\Duros_RP.txt
2018-12-02 18:10 - 2018-12-02 18:10 - 000060762 _____ C:\Users\legros\Downloads\Duros_RP (1).txt
2018-11-30 18:57 - 2018-11-30 18:57 - 000060143 _____ C:\Users\legros\Downloads\Supernatural - 14x07 - Unhuman Nature.SVA.COLORED.English.HI.C.updated.Addic7ed.com.srt
2018-11-29 18:02 - 2018-11-29 18:02 - 005112480 _____ (Husdawg, LLC) C:\Users\legros\Downloads\Detection (3).exe
2018-11-29 18:02 - 2018-11-29 18:02 - 005112480 _____ (Husdawg, LLC) C:\Users\legros\Downloads\Detection (2).exe
2018-11-29 18:01 - 2018-11-29 18:01 - 005112480 _____ (Husdawg, LLC) C:\Users\legros\Downloads\Detection (1).exe
2018-11-29 18:00 - 2018-11-29 18:00 - 005112480 _____ (Husdawg, LLC) C:\Users\legros\Downloads\Detection.exe
2018-11-29 01:18 - 2018-11-29 01:18 - 000044154 _____ C:\Users\legros\Downloads\Black Lightning - 02x07 - The Book of Blood_ Chapter Three_ The Sange.SVA.English.HI.C.updated.Addic7ed.com.srt
2018-11-28 18:01 - 2018-11-28 18:01 - 000000000 ____D C:\ProgramData\Autodesk
2018-11-28 00:32 - 2018-12-02 19:29 - 000044317 _____ C:\WINDOWS\ZAM_Guard.krnl.trace
2018-11-28 00:32 - 2018-11-28 17:01 - 000000000 ____D C:\Program Files (x86)\Zemana AntiMalware
2018-11-28 00:32 - 2018-11-28 01:07 - 000047144 _____ C:\WINDOWS\ZAM.krnl.trace
2018-11-28 00:32 - 2018-11-28 00:32 - 000203680 _____ (Zemana Ltd.) C:\WINDOWS\system32\Drivers\zamguard64.sys
2018-11-28 00:31 - 2018-11-28 00:31 - 006625600 _____ (Zemana Ltd. ) C:\Users\legros\Downloads\Zemana.AntiMalware.Setup.exe
2018-11-28 00:31 - 2018-11-28 00:31 - 000000000 ____D C:\Users\legros\AppData\Local\Zemana
2018-11-27 23:20 - 2018-11-27 23:20 - 000000000 ____D C:\Users\legros\AppData\Local\mbam
2018-11-27 23:19 - 2018-11-27 23:19 - 000000000 ____D C:\Users\legros\AppData\Local\mbamtray
2018-11-27 23:19 - 2018-11-27 23:19 - 000000000 ____D C:\ProgramData\Malwarebytes
2018-11-27 23:18 - 2018-11-27 23:18 - 080638384 _____ (Malwarebytes ) C:\Users\legros\Downloads\mb3-setup-consumer-3.6.1.2711-1.0.482-1.0.8039.exe
2018-11-27 23:12 - 2018-11-27 23:23 - 000002126 _____ C:\Users\legros\Desktop\Rkill.txt
2018-11-27 23:12 - 2018-11-27 23:12 - 001802704 _____ (Bleeping Computer, LLC) C:\Users\legros\Downloads\rkill.exe
2018-11-27 21:44 - 2018-11-27 23:57 - 000000000 ____D C:\WINDOWS\SSL
2018-11-27 21:44 - 2018-11-27 21:44 - 000000000 ____D C:\WINDOWS\nss
2018-11-27 21:25 - 2018-11-27 21:25 - 005311368 _____ C:\Users\legros\Downloads\Shirma rousse gimme shelter.mp4
2018-11-27 19:44 - 2018-11-27 19:44 - 000786952 _____ C:\ProgramData\QZBXgBSDLcAil
2018-11-27 19:29 - 2018-11-27 19:31 - 000000000 ____D C:\Users\legros\Documents\STAR WARS Battlefront II
2018-11-27 17:47 - 2018-11-27 17:49 - 063362344 _____ (Electronic Arts) C:\Users\legros\Downloads\OriginThinSetup.exe
2018-11-26 18:19 - 2018-11-26 18:19 - 000056023 _____ C:\Users\legros\Downloads\Charmed (2018) - 01x07 - Out of Scythe.SVA.English.HI.C.updated.Addic7ed.com.srt
2018-11-26 18:17 - 2018-11-26 18:19 - 224718714 _____ C:\Users\legros\Downloads\Charmed.2018.S01E07.HDTV.x264-SVA.mkv.mp4
2018-11-26 05:02 - 2018-11-26 05:02 - 000055802 _____ C:\Users\legros\Downloads\Supergirl - 04x07 - Rather the Fallen Angel.HDTV.SVA.English.HI.C.updated.Addic7ed.com.srt
2018-11-26 04:55 - 2018-11-26 04:56 - 444734984 _____ C:\Users\legros\Downloads\Supergirl.S04E07.720p.HDTV.x264-AVS.mkv.mp4.mp4
2018-11-26 01:16 - 2018-11-26 01:16 - 000022916 _____ C:\Users\legros\Downloads\14c20027b5bd7b516154ffdbd6c35eea36c84693.dlc
2018-11-25 01:47 - 2018-11-25 01:47 - 000015536 _____ C:\Users\legros\Downloads\ae8ceef1f18aa9e6f6a29acab43706fc70ef8180.dlc
2018-11-23 21:37 - 2018-11-23 21:43 - 626110035 _____ C:\Users\legros\Downloads\Fallen.2016.720p.BrRip.2CH.x265.HEVC-PSA.rar
2018-11-20 21:45 - 2018-11-20 22:54 - 000000000 ____D C:\Users\legros\AppData\Local\CLO
2018-11-20 21:26 - 2018-11-20 21:26 - 000001139 _____ C:\Users\Public\Desktop\Marvelous Designer 7 Enterprise.lnk
2018-11-20 21:26 - 2018-11-20 21:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Marvelous Designer 7 Enterprise
2018-11-20 21:24 - 2018-11-20 21:38 - 000000000 ____D C:\Program Files\Marvelous Designer 7 Enterprise
2018-11-20 21:24 - 2018-11-20 21:24 - 000000000 ____D C:\Users\Public\Documents\MarvelousDesigner
2018-11-20 21:19 - 2018-05-24 02:37 - 000000000 ____D C:\Users\legros\Documents\Marvelous Designer 7.5 Enterprise 4.1.99.32511 Multilingual (x64)
2018-11-20 20:58 - 2018-11-20 21:17 - 685475490 _____ C:\Users\legros\Downloads\Marvelous Designer 7.5 Enterprise 4.1.99.32511 Multilingual (x64).rar
2018-11-20 20:52 - 2018-11-20 20:52 - 000015667 _____ C:\Users\legros\Downloads\Marvelous.Designer.7.Enterprise.v3.2.126.31037.Multilingual.x64-P2P.torrent
2018-11-20 02:16 - 2018-11-20 02:16 - 000064263 _____ C:\Users\legros\Downloads\Charmed (2018) - 01x06 - Kappa Spirit.TBS.English.HI.C.updated.Addic7ed.com.srt
2018-11-20 02:05 - 2018-11-20 02:12 - 774914478 _____ C:\Users\legros\Downloads\charmed.2018.s01e06.720p.web.h264-tbs.mkv
2018-11-18 01:49 - 2018-11-18 01:49 - 134962335 _____ C:\Users\legros\Downloads\The.Good.Place.S03E08.Don't.Let.The.Good.Life.Pass.You.By.720p.WEBRip.2CH.x265.HEVC-PSA.rar
2018-11-17 12:05 - 2018-11-17 12:05 - 000000000 ____D C:\Program Files\rempl
2018-11-16 13:08 - 2018-11-16 13:30 - 2636763930 _____ C:\Users\legros\Downloads\dynasties.s01e01.1080p.hdtv.h264-qpel.mkv
2018-11-15 18:00 - 2018-11-15 18:00 - 000057704 _____ C:\Users\legros\Downloads\The Gifted - 02x07 - no Mercy.TBS.English.HI.C.updated.Addic7ed.com.srt
2018-11-15 12:40 - 2018-11-15 12:54 - 1642146444 _____ C:\Users\legros\Downloads\the.gifted.s02e07.1080p.web.x264-tbs.mkv
2018-11-15 09:06 - 2018-11-17 00:00 - 000834960 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2018-11-15 09:06 - 2018-11-17 00:00 - 000179600 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2018-11-14 22:00 - 2018-11-14 22:00 - 000044438 _____ C:\Users\legros\Downloads\Black Lightning - 02x05 - The Book of Blood_ Chapter One_ Requiem.SVA.English.HI.C.orig.Addic7ed.com.srt
2018-11-14 21:31 - 2018-11-14 21:32 - 524288000 _____ C:\Users\legros\Downloads\Black.Lightning.S02E05.1080p.WEB.h264-TBS.mkv.part4.rar
2018-11-14 21:31 - 2018-11-14 21:32 - 432458897 _____ C:\Users\legros\Downloads\Black.Lightning.S02E05.1080p.WEB.h264-TBS.mkv.part5.rar
2018-11-14 21:31 - 2018-11-14 21:31 - 524288000 _____ C:\Users\legros\Downloads\Black.Lightning.S02E05.1080p.WEB.h264-TBS.mkv.part3.rar
2018-11-14 21:30 - 2018-11-14 21:31 - 524288000 _____ C:\Users\legros\Downloads\Black.Lightning.S02E05.1080p.WEB.h264-TBS.mkv.part2.rar
2018-11-14 21:30 - 2018-11-14 21:31 - 524288000 _____ C:\Users\legros\Downloads\Black.Lightning.S02E05.1080p.WEB.h264-TBS.mkv.part1.rar
2018-11-14 12:48 - 2018-11-01 12:46 - 002394960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2018-11-14 12:48 - 2018-11-01 12:45 - 004527776 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2018-11-14 12:48 - 2018-11-01 12:45 - 001617320 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2018-11-14 12:48 - 2018-11-01 12:45 - 001376672 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2018-11-14 12:48 - 2018-11-01 12:31 - 006602240 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2018-11-14 12:48 - 2018-11-01 12:29 - 012710400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2018-11-14 12:48 - 2018-11-01 12:28 - 004491264 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2018-11-14 12:48 - 2018-11-01 12:28 - 003649024 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2018-11-14 12:48 - 2018-11-01 12:27 - 000878592 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2018-11-14 12:48 - 2018-11-01 10:59 - 005669888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2018-11-14 12:48 - 2018-11-01 10:56 - 011902464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2018-11-14 12:48 - 2018-11-01 10:52 - 002892800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2018-11-14 12:48 - 2018-11-01 10:15 - 023861760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2018-11-14 12:48 - 2018-11-01 10:13 - 019525120 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2018-11-14 12:48 - 2018-11-01 08:39 - 001035256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2018-11-14 12:48 - 2018-11-01 08:28 - 001221432 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2018-11-14 12:48 - 2018-11-01 08:28 - 001029944 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2018-11-14 12:48 - 2018-11-01 08:27 - 001017152 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2adec.dll
2018-11-14 12:48 - 2018-11-01 08:26 - 007432120 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2018-11-14 12:48 - 2018-11-01 08:26 - 003291640 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2018-11-14 12:48 - 2018-11-01 08:26 - 003180080 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2018-11-14 12:48 - 2018-11-01 08:25 - 009089848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2018-11-14 12:48 - 2018-11-01 08:25 - 007520088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2018-11-14 12:48 - 2018-11-01 08:25 - 004404912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2018-11-14 12:48 - 2018-11-01 08:25 - 002822456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2018-11-14 12:48 - 2018-11-01 08:25 - 002571320 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2018-11-14 12:48 - 2018-11-01 08:25 - 002371296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2018-11-14 12:48 - 2018-11-01 08:25 - 001934808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2018-11-14 12:48 - 2018-11-01 08:25 - 001784680 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2018-11-14 12:48 - 2018-11-01 08:25 - 001288920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2018-11-14 12:48 - 2018-11-01 08:09 - 025855488 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2018-11-14 12:48 - 2018-11-01 08:03 - 003397120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2018-11-14 12:48 - 2018-11-01 08:01 - 022716416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2018-11-14 12:48 - 2018-11-01 08:01 - 009084928 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2018-11-14 12:48 - 2018-11-01 08:01 - 007057408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2018-11-14 12:48 - 2018-11-01 08:00 - 008189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2018-11-14 12:48 - 2018-11-01 08:00 - 006031360 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2018-11-14 12:48 - 2018-11-01 08:00 - 003392000 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2018-11-14 12:48 - 2018-11-01 07:58 - 007573504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2018-11-14 12:48 - 2018-11-01 07:58 - 004867072 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2018-11-14 12:48 - 2018-11-01 07:58 - 004383744 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2018-11-14 12:48 - 2018-11-01 07:57 - 003381248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll
2018-11-14 12:48 - 2018-11-01 07:57 - 002825728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2018-11-14 12:48 - 2018-11-01 07:57 - 001804288 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2018-11-14 12:48 - 2018-11-01 07:57 - 000808448 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2018-11-14 12:48 - 2018-11-01 07:56 - 001768448 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2018-11-14 12:48 - 2018-11-01 07:56 - 001395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2018-11-14 12:48 - 2018-11-01 07:55 - 002738688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2018-11-14 12:48 - 2018-11-01 07:54 - 001023488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2018-11-14 12:48 - 2018-11-01 07:54 - 000943616 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll
2018-11-14 12:48 - 2018-11-01 07:54 - 000916480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2018-11-14 12:48 - 2018-11-01 07:53 - 002248192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2018-11-14 12:48 - 2018-11-01 07:53 - 001373696 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2018-11-14 12:48 - 2018-11-01 07:53 - 001159680 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2018-11-14 12:48 - 2018-11-01 05:50 - 000861712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2adec.dll
2018-11-14 12:48 - 2018-11-01 05:48 - 006039064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2018-11-14 12:48 - 2018-11-01 05:48 - 004790184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2018-11-14 12:48 - 2018-11-01 05:48 - 002478872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2018-11-14 12:48 - 2018-11-01 05:48 - 002331480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2018-11-14 12:48 - 2018-11-01 05:47 - 006570368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2018-11-14 12:48 - 2018-11-01 05:47 - 001980776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2018-11-14 12:48 - 2018-11-01 05:47 - 001379792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2018-11-14 12:48 - 2018-11-01 05:47 - 001020064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2018-11-14 12:48 - 2018-11-01 05:40 - 022015488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2018-11-14 12:48 - 2018-11-01 05:35 - 019403776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2018-11-14 12:48 - 2018-11-01 05:34 - 002700288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2018-11-14 12:48 - 2018-11-01 05:33 - 006661632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2018-11-14 12:48 - 2018-11-01 05:33 - 003711488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2018-11-14 12:48 - 2018-11-01 05:31 - 005307904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2018-11-14 12:48 - 2018-11-01 05:30 - 005883904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2018-11-14 12:48 - 2018-11-01 05:30 - 005775872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2018-11-14 12:48 - 2018-11-01 05:27 - 001627648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2018-11-14 12:48 - 2018-10-21 14:00 - 021386368 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2018-11-14 12:48 - 2018-10-21 14:00 - 001516120 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2018-11-14 12:48 - 2018-10-21 13:46 - 013572096 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2018-11-14 12:48 - 2018-10-21 13:46 - 004393472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2018-11-14 12:48 - 2018-10-21 12:38 - 001322376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2018-11-14 12:48 - 2018-10-21 12:37 - 020381808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2018-11-14 12:48 - 2018-10-21 12:28 - 012501504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2018-11-14 12:48 - 2018-10-21 08:48 - 005602456 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2018-11-14 12:48 - 2018-10-21 08:45 - 003283512 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreUIComponents.dll
2018-11-14 12:48 - 2018-10-21 08:45 - 000607136 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2018-11-14 12:48 - 2018-10-21 08:28 - 016592384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2018-11-14 12:48 - 2018-10-21 08:22 - 004710912 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2018-11-14 12:48 - 2018-10-21 08:19 - 002487088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2018-11-14 12:48 - 2018-10-21 08:19 - 001620776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2018-11-14 12:48 - 2018-10-21 08:19 - 000505616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2018-11-14 12:48 - 2018-10-21 08:17 - 001826816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2018-11-14 12:48 - 2018-10-21 08:17 - 001668096 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdprt.dll
2018-11-14 12:48 - 2018-10-21 08:16 - 002584576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2018-11-14 12:48 - 2018-10-21 08:16 - 002368512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2018-11-14 12:48 - 2018-10-21 08:15 - 003212800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2018-11-14 12:48 - 2018-10-21 08:15 - 002904064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2018-11-14 12:48 - 2018-10-21 08:14 - 002224640 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2018-11-14 12:48 - 2018-10-21 08:14 - 001854976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2018-11-14 12:48 - 2018-10-21 08:14 - 001097216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2018-11-14 12:48 - 2018-10-21 08:09 - 013873664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2018-11-14 12:48 - 2018-10-21 08:02 - 002966528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2018-11-14 12:47 - 2018-11-01 12:49 - 000348160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2018-11-14 12:47 - 2018-11-01 12:32 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2018-11-14 12:47 - 2018-11-01 12:30 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2018-11-14 12:47 - 2018-11-01 12:30 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msisip.dll
2018-11-14 12:47 - 2018-11-01 12:29 - 000073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll
2018-11-14 12:47 - 2018-11-01 12:28 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\prnntfy.dll
2018-11-14 12:47 - 2018-11-01 12:27 - 001121792 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2018-11-14 12:47 - 2018-11-01 12:26 - 001364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2018-11-14 12:47 - 2018-11-01 12:26 - 000503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2018-11-14 12:47 - 2018-11-01 12:26 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2018-11-14 12:47 - 2018-11-01 12:25 - 000577024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2018-11-14 12:47 - 2018-11-01 11:09 - 001027000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2018-11-14 12:47 - 2018-11-01 10:56 - 000226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prnntfy.dll
2018-11-14 12:47 - 2018-11-01 10:56 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msisip.dll
2018-11-14 12:47 - 2018-11-01 10:54 - 003397632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2018-11-14 12:47 - 2018-11-01 10:54 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2018-11-14 12:47 - 2018-11-01 10:53 - 000908288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2018-11-14 12:47 - 2018-11-01 08:38 - 000269336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2018-11-14 12:47 - 2018-11-01 08:37 - 000272408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll
2018-11-14 12:47 - 2018-11-01 08:28 - 001062712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2018-11-14 12:47 - 2018-11-01 08:28 - 000566568 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2018-11-14 12:47 - 2018-11-01 08:28 - 000134968 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2018-11-14 12:47 - 2018-11-01 08:28 - 000076088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2018-11-14 12:47 - 2018-11-01 08:27 - 000491200 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2018-11-14 12:47 - 2018-11-01 08:26 - 001363536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2018-11-14 12:47 - 2018-11-01 08:25 - 001456728 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2018-11-14 12:47 - 2018-11-01 08:25 - 001257880 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2018-11-14 12:47 - 2018-11-01 08:25 - 001209888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2018-11-14 12:47 - 2018-11-01 08:25 - 001190248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2018-11-14 12:47 - 2018-11-01 08:25 - 001140672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2018-11-14 12:47 - 2018-11-01 08:25 - 000982592 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2018-11-14 12:47 - 2018-11-01 08:25 - 000885968 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2018-11-14 12:47 - 2018-11-01 08:25 - 000793080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2018-11-14 12:47 - 2018-11-01 08:25 - 000713472 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2018-11-14 12:47 - 2018-11-01 08:25 - 000594224 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2018-11-14 12:47 - 2018-11-01 08:25 - 000463672 _____ (Microsoft Corporation) C:\WINDOWS\system32\coml2.dll
2018-11-14 12:47 - 2018-11-01 08:25 - 000413720 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2018-11-14 12:47 - 2018-11-01 08:25 - 000412984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2018-11-14 12:47 - 2018-11-01 08:25 - 000375824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys
2018-11-14 12:47 - 2018-11-01 08:25 - 000268088 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2018-11-14 12:47 - 2018-11-01 08:25 - 000261000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2018-11-14 12:47 - 2018-11-01 08:03 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmtask.exe
2018-11-14 12:47 - 2018-11-01 08:02 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmapi.dll
2018-11-14 12:47 - 2018-11-01 08:02 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
2018-11-14 12:47 - 2018-11-01 08:00 - 000433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2018-11-14 12:47 - 2018-11-01 08:00 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2018-11-14 12:47 - 2018-11-01 07:59 - 000322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2018-11-14 12:47 - 2018-11-01 07:59 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2018-11-14 12:47 - 2018-11-01 07:59 - 000192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll
2018-11-14 12:47 - 2018-11-01 07:59 - 000176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WPTaskScheduler.dll
2018-11-14 12:47 - 2018-11-01 07:59 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\dab.dll
2018-11-14 12:47 - 2018-11-01 07:58 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2018-11-14 12:47 - 2018-11-01 07:58 - 000273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2018-11-14 12:47 - 2018-11-01 07:58 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2018-11-14 12:47 - 2018-11-01 07:58 - 000149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2018-11-14 12:47 - 2018-11-01 07:57 - 002364928 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll
2018-11-14 12:47 - 2018-11-01 07:57 - 001708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSPhotography.dll
2018-11-14 12:47 - 2018-11-01 07:57 - 000898560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2018-11-14 12:47 - 2018-11-01 07:57 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2018-11-14 12:47 - 2018-11-01 07:57 - 000835584 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2018-11-14 12:47 - 2018-11-01 07:57 - 000726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2018-11-14 12:47 - 2018-11-01 07:57 - 000356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll
2018-11-14 12:47 - 2018-11-01 07:57 - 000281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2018-11-14 12:47 - 2018-11-01 07:57 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2018-11-14 12:47 - 2018-11-01 07:56 - 002929664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2018-11-14 12:47 - 2018-11-01 07:56 - 002172928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2018-11-14 12:47 - 2018-11-01 07:56 - 000506880 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2018-11-14 12:47 - 2018-11-01 07:55 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2018-11-14 12:47 - 2018-11-01 07:55 - 000684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2018-11-14 12:47 - 2018-11-01 07:54 - 001679360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2018-11-14 12:47 - 2018-11-01 07:54 - 001551360 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2018-11-14 12:47 - 2018-11-01 07:54 - 001264640 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2018-11-14 12:47 - 2018-11-01 07:54 - 001225216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2018-11-14 12:47 - 2018-11-01 07:54 - 000895488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2018-11-14 12:47 - 2018-11-01 07:54 - 000884736 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2018-11-14 12:47 - 2018-11-01 07:54 - 000796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2018-11-14 12:47 - 2018-11-01 07:54 - 000606208 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2018-11-14 12:47 - 2018-11-01 07:53 - 000889344 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2018-11-14 12:47 - 2018-11-01 07:53 - 000542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2018-11-14 12:47 - 2018-11-01 07:53 - 000406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2018-11-14 12:47 - 2018-11-01 06:39 - 000001310 _____ C:\WINDOWS\system32\tcbres.wim
2018-11-14 12:47 - 2018-11-01 06:08 - 002417952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2018-11-14 12:47 - 2018-11-01 05:50 - 000786288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2018-11-14 12:47 - 2018-11-01 05:48 - 001805656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2018-11-14 12:47 - 2018-11-01 05:48 - 001011872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2018-11-14 12:47 - 2018-11-01 05:48 - 000880248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2018-11-14 12:47 - 2018-11-01 05:48 - 000384520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coml2.dll
2018-11-14 12:47 - 2018-11-01 05:47 - 000581600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll
2018-11-14 12:47 - 2018-11-01 05:47 - 000567256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2018-11-14 12:47 - 2018-11-01 05:47 - 000129304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2018-11-14 12:47 - 2018-11-01 05:32 - 006647296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2018-11-14 12:47 - 2018-11-01 05:31 - 000288768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2018-11-14 12:47 - 2018-11-01 05:30 - 002449408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll
2018-11-14 12:47 - 2018-11-01 05:30 - 001361408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSPhotography.dll
2018-11-14 12:47 - 2018-11-01 05:30 - 000561152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2018-11-14 12:47 - 2018-11-01 05:30 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2018-11-14 12:47 - 2018-11-01 05:30 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2018-11-14 12:47 - 2018-11-01 05:29 - 002258944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2018-11-14 12:47 - 2018-11-01 05:29 - 001986560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll
2018-11-14 12:47 - 2018-11-01 05:29 - 001862656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2018-11-14 12:47 - 2018-11-01 05:29 - 000848384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2018-11-14 12:47 - 2018-11-01 05:29 - 000608768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2018-11-14 12:47 - 2018-11-01 05:29 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2018-11-14 12:47 - 2018-11-01 05:29 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll
2018-11-14 12:47 - 2018-11-01 05:28 - 001348096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll
2018-11-14 12:47 - 2018-11-01 05:28 - 001000448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2018-11-14 12:47 - 2018-11-01 05:28 - 000978944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2018-11-14 12:47 - 2018-11-01 05:27 - 000856576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2018-11-14 12:47 - 2018-11-01 05:27 - 000713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll
2018-11-14 12:47 - 2018-11-01 05:27 - 000678400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2018-11-14 12:47 - 2018-11-01 05:27 - 000534016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2018-11-14 12:47 - 2018-11-01 05:26 - 000795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll
2018-11-14 12:47 - 2018-11-01 05:26 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2018-11-14 12:47 - 2018-11-01 05:26 - 000345088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2018-11-14 12:47 - 2018-10-21 14:00 - 001639560 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2018-11-14 12:47 - 2018-10-21 14:00 - 000790416 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2018-11-14 12:47 - 2018-10-21 14:00 - 000396304 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2018-11-14 12:47 - 2018-10-21 13:59 - 000766480 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll
2018-11-14 12:47 - 2018-10-21 13:59 - 000236728 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll
2018-11-14 12:47 - 2018-10-21 13:45 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2018-11-14 12:47 - 2018-10-21 13:44 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2018-11-14 12:47 - 2018-10-21 13:44 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\INETRES.dll
2018-11-14 12:47 - 2018-10-21 13:43 - 000345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2018-11-14 12:47 - 2018-10-21 13:43 - 000276992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wisp.dll
2018-11-14 12:47 - 2018-10-21 13:43 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2018-11-14 12:47 - 2018-10-21 13:42 - 001127936 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll
2018-11-14 12:47 - 2018-10-21 13:42 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2018-11-14 12:47 - 2018-10-21 13:42 - 000592896 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguagesCpl.dll
2018-11-14 12:47 - 2018-10-21 13:42 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll
2018-11-14 12:47 - 2018-10-21 13:41 - 001180672 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2018-11-14 12:47 - 2018-10-21 12:38 - 000662312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2018-11-14 12:47 - 2018-10-21 12:38 - 000660480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicensingWinRT.dll
2018-11-14 12:47 - 2018-10-21 12:38 - 000221216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditionUpgradeManagerObj.dll
2018-11-14 12:47 - 2018-10-21 12:37 - 001626656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2018-11-14 12:47 - 2018-10-21 12:28 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\INETRES.dll
2018-11-14 12:47 - 2018-10-21 12:23 - 000622080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2018-11-14 12:47 - 2018-10-21 12:23 - 000523264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserLanguagesCpl.dll
2018-11-14 12:47 - 2018-10-21 12:22 - 002405888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2018-11-14 12:47 - 2018-10-21 12:22 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wisp.dll
2018-11-14 12:47 - 2018-10-21 10:29 - 001008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MixedRealityCapture.dll
2018-11-14 12:47 - 2018-10-21 09:44 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MixedRealityCapture.dll
2018-11-14 12:47 - 2018-10-21 08:47 - 000368440 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2018-11-14 12:47 - 2018-10-21 08:46 - 000717112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2018-11-14 12:47 - 2018-10-21 08:46 - 000709936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2018-11-14 12:47 - 2018-10-21 08:46 - 000611640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2018-11-14 12:47 - 2018-10-21 08:46 - 000560136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2018-11-14 12:47 - 2018-10-21 08:46 - 000497864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2018-11-14 12:47 - 2018-10-21 08:46 - 000171024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2018-11-14 12:47 - 2018-10-21 08:45 - 002719032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2018-11-14 12:47 - 2018-10-21 08:45 - 001946208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2018-11-14 12:47 - 2018-10-21 08:45 - 001098064 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2018-11-14 12:47 - 2018-10-21 08:45 - 000185120 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2018-11-14 12:47 - 2018-10-21 08:45 - 000175624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2018-11-14 12:47 - 2018-10-21 08:45 - 000139792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2018-11-14 12:47 - 2018-10-21 08:45 - 000058088 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2018-11-14 12:47 - 2018-10-21 08:21 - 001589248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2018-11-14 12:47 - 2018-10-21 08:21 - 000123424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2018-11-14 12:47 - 2018-10-21 08:20 - 000424000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2018-11-14 12:47 - 2018-10-21 08:20 - 000295224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2018-11-14 12:47 - 2018-10-21 08:20 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\spacebridge.dll
2018-11-14 12:47 - 2018-10-21 08:20 - 000141312 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2018-11-14 12:47 - 2018-10-21 08:20 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcimage.dll
2018-11-14 12:47 - 2018-10-21 08:19 - 001130768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2018-11-14 12:47 - 2018-10-21 08:19 - 000514560 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2018-11-14 12:47 - 2018-10-21 08:19 - 000463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2018-11-14 12:47 - 2018-10-21 08:19 - 000409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2018-11-14 12:47 - 2018-10-21 08:19 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2018-11-14 12:47 - 2018-10-21 08:19 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Diagnostics.dll
2018-11-14 12:47 - 2018-10-21 08:19 - 000137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2018-11-14 12:47 - 2018-10-21 08:19 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys
2018-11-14 12:47 - 2018-10-21 08:19 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ofdeploy.exe
2018-11-14 12:47 - 2018-10-21 08:19 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthAvrcpAppSvc.dll
2018-11-14 12:47 - 2018-10-21 08:19 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhf.sys
2018-11-14 12:47 - 2018-10-21 08:19 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2018-11-14 12:47 - 2018-10-21 08:18 - 000761344 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2018-11-14 12:47 - 2018-10-21 08:18 - 000461824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Activities.dll
2018-11-14 12:47 - 2018-10-21 08:18 - 000395264 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthAvctpSvc.dll
2018-11-14 12:47 - 2018-10-21 08:18 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\scecli.dll
2018-11-14 12:47 - 2018-10-21 08:18 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2018-11-14 12:47 - 2018-10-21 08:18 - 000130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\officecsp.dll
2018-11-14 12:47 - 2018-10-21 08:18 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll
2018-11-14 12:47 - 2018-10-21 08:17 - 000787456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2018-11-14 12:47 - 2018-10-21 08:17 - 000625152 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2018-11-14 12:47 - 2018-10-21 08:17 - 000473600 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2018-11-14 12:47 - 2018-10-21 08:17 - 000311296 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthAvrcp.dll
2018-11-14 12:47 - 2018-10-21 08:17 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2018-11-14 12:47 - 2018-10-21 08:16 - 001535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2018-11-14 12:47 - 2018-10-21 08:16 - 000847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2018-11-14 12:47 - 2018-10-21 08:16 - 000514048 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2018-11-14 12:47 - 2018-10-21 08:16 - 000323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2018-11-14 12:47 - 2018-10-21 08:15 - 000743936 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintRenderAPIHost.DLL
2018-11-14 12:47 - 2018-10-21 08:15 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2018-11-14 12:47 - 2018-10-21 08:14 - 001919488 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2018-11-14 12:47 - 2018-10-21 08:14 - 001034752 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2018-11-14 12:47 - 2018-10-21 08:14 - 000932352 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2018-11-14 12:47 - 2018-10-21 08:14 - 000632320 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2018-11-14 12:47 - 2018-10-21 08:14 - 000453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2018-11-14 12:47 - 2018-10-21 08:14 - 000311296 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2018-11-14 12:47 - 2018-10-21 08:02 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spacebridge.dll
2018-11-14 12:47 - 2018-10-21 08:01 - 001189376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2018-11-14 12:47 - 2018-10-21 08:01 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Diagnostics.dll
2018-11-14 12:47 - 2018-10-21 08:00 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scecli.dll
2018-11-14 12:47 - 2018-10-21 07:59 - 000602112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2018-11-14 12:47 - 2018-10-21 07:58 - 001124352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdprt.dll
2018-11-14 12:47 - 2018-10-21 07:58 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2018-11-14 12:47 - 2018-10-21 07:58 - 000230912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2018-11-14 12:47 - 2018-10-21 07:57 - 002611200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2018-11-14 12:47 - 2018-10-21 06:59 - 000806320 _____ C:\WINDOWS\SysWOW64\locale.nls
2018-11-14 12:47 - 2018-10-21 06:59 - 000806320 _____ C:\WINDOWS\system32\locale.nls
2018-11-14 12:47 - 2018-04-28 05:02 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2018-11-13 20:03 - 2018-11-13 20:03 - 000069840 _____ C:\Users\legros\Downloads\DC's Legends of Tomorrow - 04x04 - Wet Hot American Bummer.SVA.English.HI.C.updated.Addic7ed.com.srt
2018-11-13 14:08 - 2018-12-02 19:13 - 000000000 ____D C:\Users\legros\AppData\Local\Firestorm
2018-11-13 14:04 - 2018-11-13 14:04 - 000001234 _____ C:\Users\Public\Desktop\Firestorm-Release.lnk
2018-11-13 14:04 - 2018-11-13 14:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firestorm-Release
2018-11-13 14:02 - 2018-11-13 14:04 - 000000000 ____D C:\Program Files (x86)\Firestorm-Release
2018-11-13 13:18 - 2018-11-13 13:19 - 107883901 _____ C:\Users\legros\Downloads\Phoenix-Firestorm-Release-5-1-7-55786_Setup (5).exe
2018-11-12 13:57 - 2018-11-12 13:57 - 001696053 _____ C:\Users\legros\Downloads\Unconfirmed 705406.crdownload
2018-11-12 06:07 - 2018-11-12 06:07 - 139438633 _____ C:\Users\legros\Downloads\FOXY STORE.mp4
2018-11-10 16:01 - 2018-11-10 16:01 - 028306987 _____ C:\Users\legros\Downloads\y2mate.com - marco_polo_mei_lin_lotus_fight_scene_kb8Ikuru9eQ_720p.mp4
2018-11-10 06:55 - 2018-11-10 06:55 - 000039132 _____ C:\Users\legros\Downloads\The Good Place - 03x07 - The Worst Possible Use of Free Will.S03E08.HDTV.x264-SVA_AVS.English.C.orig.Addic7ed.com.srt
2018-11-10 03:35 - 2018-11-25 00:31 - 000000000 ____D C:\Program Files (x86)\Destiny 2
2018-11-09 12:40 - 2018-11-09 12:40 - 019064487 _____ C:\Users\legros\Downloads\Deja vu beyonce.mp4
2018-11-09 12:39 - 2018-11-09 12:39 - 000018816 _____ C:\Users\legros\Downloads\legacies.s01.e03.episode.1.3.(2018).eng.1cd.(7535801).zip
2018-11-09 12:27 - 2018-11-09 12:52 - 3076322555 _____ C:\Users\legros\Downloads\O.K.2018.720p.NF.WEB-DL.DDP5.1.H264-CMRG.mkv
2018-11-09 12:07 - 2018-11-09 12:10 - 034717550 _____ C:\Users\legros\Downloads\Beyoncé -Survivor (Live The Beyoncé Experience).mp4
2018-11-09 05:50 - 2018-11-09 05:50 - 000054956 _____ C:\Users\legros\Downloads\Supernatural - 14x05 - Nightmare Logic.SVA.English.HI.C.orig.Addic7ed.com.srt
2018-11-09 05:35 - 2018-11-09 05:43 - 915516673 _____ C:\Users\legros\Downloads\Supernatural.S14E05.720p.HDTV.x264-SVA.mkv
2018-11-09 04:22 - 2018-11-09 04:22 - 000048010 _____ C:\Users\legros\Downloads\American Horror Story - 08x09 - Fire and Reign.TBS.English.HI.C.orig.Addic7ed.com.srt
2018-11-09 04:19 - 2018-11-09 04:25 - 747600858 _____ C:\Users\legros\Downloads\american.horror.story.s08e09.720p.webrip.x264-tbs.mkv
2018-11-08 04:37 - 2018-11-08 04:37 - 000000144 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2018-11-07 11:28 - 2018-11-07 11:28 - 000000451 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2018-11-06 21:08 - 2018-11-06 21:08 - 000071970 _____ C:\Users\legros\Downloads\DC's Legends of Tomorrow - 04x03 - Dancing Queen.KILLERS.English.HI.C.updated.Addic7ed.com.srt
2018-11-06 20:54 - 2018-11-06 21:03 - 1145827808 _____ C:\Users\legros\Downloads\DCs.Legends.of.Tomorrow.S04E03.720p.HDTV.x264-KILLERS.mkv
2018-11-04 20:22 - 2018-11-04 20:28 - 024440942 _____ C:\Users\legros\Downloads\DESTINYS CHILD LOSE MY BREATH Atlanta.mp4
2018-11-04 04:55 - 2018-11-04 04:55 - 000034823 _____ C:\Users\legros\Downloads\A Discovery Of Witches - 01x08 - Episode 8.INTERNAL.1080p.HDTV.x264-FaiLED.English.C.orig.Addic7ed.com.srt
2018-11-04 04:14 - 2018-11-04 04:39 - 1508938581 _____ C:\Users\legros\Downloads\a.discovery.of.witches.s01e08.internal.1080p.hdtv.x264-failed.mkv
2018-11-04 00:44 - 2018-11-04 00:44 - 005794813 _____ C:\Users\legros\Downloads\alone celine.mp4
2018-11-04 00:43 - 2018-11-04 00:43 - 037729864 _____ C:\Users\legros\Downloads\Donna Summer - I Feel Love [Studio Version].mp4
2018-11-04 00:43 - 2018-11-04 00:43 - 010691174 _____ C:\Users\legros\Downloads\Vicki Sue Robinson - Turn the Beat Around (Audio).mp4
2018-11-04 00:42 - 2018-11-04 00:42 - 015652134 _____ C:\Users\legros\Downloads\The Get Down - Clip- 'Turn The Beat Around' - Netflix.mp4
2018-11-04 00:41 - 2018-11-04 00:41 - 025439363 _____ C:\Users\legros\Downloads\The Get Down - There But for the Grace of God Go I (Official Scene).mp4
2018-11-04 00:40 - 2018-11-04 00:40 - 008865719 _____ C:\Users\legros\Downloads\Mylene Cruz (Herizen Guardiola) & The Soul Madonnas - Toy Box (Audio) ft. Herizen.mp4
2018-11-04 00:39 - 2018-11-04 00:39 - 060454293 _____ C:\Users\legros\Downloads\[MV] BOL4(볼빨간사춘기) _ Travel(여행).mp4
2018-11-04 00:38 - 2018-11-04 00:38 - 051103338 _____ C:\Users\legros\Downloads\Rae Sremmurd, Swae Lee, Slim Jxmmi - Powerglide ft. Juicy J.mp4
2018-11-04 00:38 - 2018-11-04 00:38 - 050741829 _____ C:\Users\legros\Downloads\Beyoncé - Love On Top (Live - OTR Tour).mp4
2018-11-04 00:38 - 2018-11-04 00:38 - 022825066 _____ C:\Users\legros\Downloads\Kelly Clarkson - Meaning of Life [Official Video].mp4
2018-11-04 00:37 - 2018-11-04 00:37 - 016869151 _____ C:\Users\legros\Downloads\Nicki Minaj - Chun Li (Lyric Video) HD.mp4
2018-11-04 00:36 - 2018-11-04 00:36 - 017085129 _____ C:\Users\legros\Downloads\Beyonce -  Sweet dreams (are made of this) live at Glastonbury.mp4
2018-11-04 00:34 - 2018-11-04 00:34 - 007492982 _____ C:\Users\legros\Downloads\OTR beyonce holy grail.mp4
2018-11-04 00:33 - 2018-11-04 00:33 - 010401243 _____ C:\Users\legros\Downloads\Upgrade u beyonce.mp4
2018-11-04 00:33 - 2018-11-04 00:33 - 008577414 _____ C:\Users\legros\Downloads\Freakum  dress beyonce.mp4
2018-11-04 00:33 - 2018-11-04 00:33 - 005418207 _____ C:\Users\legros\Downloads\Check on it beyonce.mp4
2018-11-04 00:32 - 2018-11-04 00:32 - 046344082 _____ C:\Users\legros\Downloads\Beyoncé - Dance for You (Video).mp4
2018-11-04 00:31 - 2018-11-04 00:31 - 007044757 _____ C:\Users\legros\Downloads\Beyoncé - Run The World (Girls) [Lyrics] HD.mp4
2018-11-04 00:30 - 2018-11-04 00:30 - 006932571 _____ C:\Users\legros\Downloads\Beyoncé - Why Don't You Love Me Lyrics Video.mp4
2018-11-04 00:30 - 2018-11-04 00:30 - 006511555 _____ C:\Users\legros\Downloads\Duffy - Mercy (Lyrics).mp4
2018-11-04 00:29 - 2018-11-04 00:29 - 011905858 _____ C:\Users\legros\Downloads\Girl on fire ( Lyrics ) Alicia Keys feat. Nicki Minaj  ♥.mp4
2018-11-04 00:29 - 2018-11-04 00:29 - 008079910 _____ C:\Users\legros\Downloads\irreplaceable beyonce.mp4
2018-11-04 00:28 - 2018-11-04 00:28 - 012215636 _____ C:\Users\legros\Downloads\Ego beyonce.mp4
2018-11-04 00:28 - 2018-11-04 00:28 - 005312463 _____ C:\Users\legros\Downloads\O.T. Genasis - Everybody Mad (feat. Beyoncé).mp4
2018-11-04 00:27 - 2018-11-04 00:27 - 011859772 _____ C:\Users\legros\Downloads\If I were a boy beyonce.mp4
2018-11-04 00:27 - 2018-11-04 00:27 - 009687198 _____ C:\Users\legros\Downloads\Beyonce Listen.mp4
2018-11-04 00:25 - 2018-11-04 00:25 - 006895582 _____ C:\Users\legros\Downloads\Beyonce halo.mp4
2018-11-04 00:22 - 2018-11-04 00:22 - 013481786 _____ C:\Users\legros\Downloads\Little Mix - Move (Lyrics + Pictures).mp4
2018-11-04 00:21 - 2018-11-04 00:21 - 034660653 _____ C:\Users\legros\Downloads\Jessie J - Laserlight ft. David Guetta.mp4
2018-11-04 00:21 - 2018-11-04 00:21 - 007309570 _____ C:\Users\legros\Downloads\Ella Henderson - Ghost Lyrics.mp4
2018-11-04 00:21 - 2018-11-04 00:21 - 005848427 _____ C:\Users\legros\Downloads\Star - I Bring Me (Audio).mp4
2018-11-04 00:20 - 2018-11-04 00:20 - 046794766 _____ C:\Users\legros\Downloads\Jessie J - Flashlight (from Pitch Perfect 2).mp4
2018-11-04 00:20 - 2018-11-04 00:20 - 006388511 _____ C:\Users\legros\Downloads\Saturdays ego.mp4
2018-11-04 00:20 - 2018-11-04 00:20 - 005032681 _____ C:\Users\legros\Downloads\Saturdays work.mp4
2018-11-04 00:19 - 2018-11-04 00:19 - 005095475 _____ C:\Users\legros\Downloads\The Saturdays - Higher - Lyrics.mp4
2018-11-04 00:18 - 2018-11-04 00:18 - 012334902 _____ C:\Users\legros\Downloads\Beyonce & JAY-Z - APEST (LYRICS) Ft. The Carters.mp4
2018-11-04 00:17 - 2018-11-04 00:17 - 041951484 _____ C:\Users\legros\Downloads\Jessie J - It’s My Party.mp4
2018-11-04 00:17 - 2018-11-04 00:17 - 015498741 _____ C:\Users\legros\Downloads\Anna wintour - azealia.mp4
2018-11-03 18:16 - 2018-11-03 18:17 - 000043968 _____ C:\Users\legros\Downloads\Titans (2018) - 01x04 - Doom Patrol.DCU.WEBRip-NTb.English.HI.C.updated.Addic7ed.com.srt
2018-11-03 06:53 - 2018-11-03 07:04 - 1421725428 _____ C:\Users\legros\Downloads\Titans.S01E04.1080p.WEBRip.x264-eSc.mkv
2018-11-02 21:50 - 2018-11-02 21:50 - 056210256 _____ C:\Users\legros\Downloads\Synaesthesia Auditiva_320kbps_Masters.zip
2018-11-02 21:01 - 2018-11-02 21:01 - 000057857 _____ C:\Users\legros\Downloads\Legacies - 01x02 - Some People Just Want To Watch The World Burn.SVA.English.HI.C.orig.Addic7ed.com.srt
2018-11-02 05:53 - 2018-11-02 05:58 - 650336933 _____ C:\Users\legros\Downloads\Marvel's.Daredevil.S03E13.A.New.Napkin.1080p.10bit.WEBRip.6CH.x265.HEVC-PSA.rar
2018-11-02 05:43 - 2018-11-02 05:48 - 555888703 _____ C:\Users\legros\Downloads\Marvel's.Daredevil.S03E12.One.Last.Shot.1080p.10bit.WEBRip.6CH.x265.HEVC-PSA.rar
 
==================== Un mois - Modifiés - fichiers et dossiers ========
 
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
 
2018-12-02 19:27 - 2018-04-12 00:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2018-12-02 19:26 - 2017-08-13 00:01 - 000000000 ____D C:\ProgramData\NVIDIA
2018-12-02 19:25 - 2017-06-20 10:03 - 000000000 ____D C:\Program Files (x86)\Hi-Rez Studios
2018-12-02 19:17 - 2018-05-03 01:45 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2018-12-02 19:16 - 2018-04-11 22:04 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2018-12-02 19:13 - 2014-07-16 23:12 - 000000000 ____D C:\Users\legros\AppData\Local\Battle.net
2018-12-02 19:03 - 2014-07-16 23:12 - 000000000 ____D C:\Program Files (x86)\Battle.net
2018-12-02 19:00 - 2018-05-03 01:05 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2018-12-02 18:53 - 2018-07-17 23:51 - 000000000 ____D C:\WINDOWS\Minidump
2018-12-02 18:06 - 2018-05-03 01:45 - 000003028 _____ C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC (legros)
2018-12-02 08:40 - 2018-05-03 01:18 - 000000000 ____D C:\Users\legros
2018-12-02 06:31 - 2018-04-12 00:30 - 000000000 ____D C:\WINDOWS\CbsTemp
2018-12-02 06:11 - 2018-03-08 21:34 - 000000000 ____D C:\Users\legros\Documents\Nouveau dossier
2018-12-02 06:11 - 2016-11-07 12:54 - 000000000 ____D C:\Users\legros\Documents\MEGAsync Downloads
2018-12-01 20:39 - 2013-03-11 04:38 - 000000000 ____D C:\Users\legros\AppData\Local\CrashDumps
2018-12-01 20:35 - 2017-08-13 00:01 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2018-12-01 20:35 - 2016-10-24 18:11 - 000001443 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2018-12-01 20:34 - 2018-05-31 20:17 - 000003976 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-12-01 20:34 - 2018-05-31 20:17 - 000003940 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-12-01 20:34 - 2018-05-31 20:16 - 000004308 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-12-01 20:34 - 2018-05-31 20:16 - 000004106 _____ C:\WINDOWS\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-12-01 20:34 - 2018-04-12 00:36 - 000000000 ____D C:\WINDOWS\INF
2018-12-01 20:34 - 2017-08-13 00:00 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2018-12-01 20:34 - 2017-08-13 00:00 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2018-12-01 20:33 - 2018-05-31 20:16 - 000003926 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-12-01 20:33 - 2018-05-31 20:16 - 000003926 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-12-01 20:33 - 2018-05-31 20:16 - 000003926 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-12-01 20:33 - 2018-05-31 20:16 - 000003894 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-12-01 20:33 - 2018-05-31 20:16 - 000003866 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-12-01 20:33 - 2018-05-31 20:16 - 000003858 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-12-01 20:33 - 2018-05-31 20:16 - 000003654 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-12-01 18:34 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\AppReadiness
2018-12-01 18:27 - 2018-04-12 00:38 - 000000000 ___HD C:\Program Files\WindowsApps
2018-11-30 23:37 - 2013-03-19 16:05 - 000000000 ____D C:\Users\legros\AppData\Roaming\vlc
2018-11-29 18:02 - 2018-05-03 03:28 - 000000000 ____D C:\Users\legros\AppData\Local\D3DSCache
2018-11-28 18:17 - 2018-02-15 12:24 - 000000000 ____D C:\Program Files (x86)\Ubisoft
2018-11-28 18:17 - 2014-07-20 21:02 - 000000000 ____D C:\Users\legros\AppData\Local\Ubisoft Game Launcher
2018-11-28 18:08 - 2014-12-04 19:58 - 000000000 ____D C:\Users\legros\AppData\Local\Glyph
2018-11-28 18:08 - 2014-12-04 19:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glyph
2018-11-28 18:06 - 2013-06-27 13:54 - 000000000 ____D C:\Users\legros\Documents\My Games
2018-11-28 18:04 - 2013-03-07 09:21 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2018-11-28 18:01 - 2013-09-02 07:53 - 000000000 ____D C:\Program Files\Common Files\Autodesk Shared
2018-11-28 17:15 - 2017-12-07 15:45 - 000000000 ____D C:\Users\legros\AppData\Local\Packages
2018-11-28 17:02 - 2013-07-28 05:57 - 000000000 ____D C:\ProgramData\McAfee
2018-11-28 01:15 - 2013-09-30 13:56 - 000000000 ____D C:\Games
2018-11-28 01:12 - 2014-12-04 19:58 - 000000000 ____D C:\ProgramData\Glyph
2018-11-28 01:05 - 2018-04-05 23:45 - 000001237 _____ C:\Users\legros\Desktop\Chromium.lnk
2018-11-28 01:05 - 2018-04-05 23:45 - 000001237 _____ C:\Users\legros\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chromium.lnk
2018-11-28 00:02 - 2018-07-29 00:43 - 000000000 ____D C:\Users\legros\AppData\Local\Marap
2018-11-28 00:02 - 2018-06-24 23:44 - 000000000 ____D C:\Users\legros\AppData\Local\Kocogeg
2018-11-27 23:12 - 2018-04-13 23:11 - 000000000 ____D C:\Users\legros\Desktop\rkill
2018-11-27 23:08 - 2016-11-26 06:44 - 000000000 ____D C:\Users\legros\AppData\Roaming\discord
2018-11-27 21:52 - 2015-10-08 01:59 - 000000000 ____D C:\ProgramData\Origin
2018-11-27 19:37 - 2018-09-02 17:52 - 000000000 ____D C:\ProgramData\plugcfg
2018-11-27 18:01 - 2015-09-03 01:01 - 000003615 _____ C:\Users\legros\Desktop\Hellest.txt
2018-11-27 17:04 - 2010-11-21 04:27 - 000592416 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2018-11-26 22:19 - 2016-05-05 10:14 - 000000000 ____D C:\Program Files (x86)\Overwatch
2018-11-26 22:12 - 2013-03-07 11:58 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-11-26 22:12 - 2013-03-07 11:58 - 000002258 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-11-26 01:36 - 2018-03-08 20:48 - 000000000 ____D C:\Users\legros\AppData\Local\JDownloader v2.0
2018-11-21 14:38 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2018-11-20 22:29 - 2018-05-17 00:56 - 000000000 ____D C:\Users\legros\AppData\Roaming\uTorrent
2018-11-20 14:46 - 2018-05-03 01:45 - 000004748 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player NPAPI Notifier
2018-11-20 14:46 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2018-11-20 14:46 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\Macromed
2018-11-18 19:29 - 2017-08-18 04:04 - 000000000 ____D C:\Users\legros\AppData\Roaming\Firestorm
2018-11-16 12:55 - 2018-05-31 20:17 - 002864496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2018-11-16 12:55 - 2018-05-31 20:17 - 002264432 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2018-11-16 12:55 - 2018-05-31 20:17 - 001322864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll
2018-11-16 10:50 - 2018-05-03 01:45 - 000003364 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-548831312-2294392190-3545656745-1000
2018-11-16 10:50 - 2018-05-03 01:18 - 000002442 _____ C:\Users\legros\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2018-11-16 10:50 - 2017-08-13 00:53 - 000000000 ___RD C:\Users\legros\OneDrive
2018-11-15 20:28 - 2017-04-18 10:03 - 000001951 _____ C:\WINDOWS\NvTelemetryContainerRecovery.bat
2018-11-15 09:47 - 2017-06-01 02:20 - 000000000 ____D C:\Program Files (x86)\Overwatch Test
2018-11-15 09:10 - 2018-05-03 01:13 - 001967594 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2018-11-15 09:10 - 2018-04-12 17:18 - 000863824 _____ C:\WINDOWS\system32\perfh00C.dat
2018-11-15 09:10 - 2018-04-12 17:18 - 000181984 _____ C:\WINDOWS\system32\perfc00C.dat
2018-11-15 09:07 - 2017-12-07 16:12 - 000000000 ___RD C:\Users\legros\3D Objects
2018-11-15 09:07 - 2017-08-13 00:47 - 000000000 __RHD C:\Users\Public\AccountPictures
2018-11-15 09:04 - 2018-05-03 01:05 - 000259920 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2018-11-14 22:46 - 2018-04-12 00:38 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2018-11-14 22:46 - 2018-04-12 00:38 - 000000000 ___SD C:\WINDOWS\system32\F12
2018-11-14 22:46 - 2018-04-12 00:38 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2018-11-14 22:46 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\TextInput
2018-11-14 22:46 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2018-11-14 22:46 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\ShellExperiences
2018-11-14 22:46 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\bcastdvr
2018-11-14 13:12 - 2013-08-01 16:44 - 000000000 ____D C:\WINDOWS\system32\MRT
2018-11-14 13:08 - 2013-03-07 11:16 - 137810048 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2018-11-13 19:06 - 2014-01-14 06:13 - 000000000 ____D C:\Users\legros\AppData\LocalLow\Adobe
2018-11-11 17:03 - 2017-06-09 22:21 - 000000000 ____D C:\Program Files (x86)\Steam
2018-11-11 13:38 - 2016-06-26 20:55 - 000000000 ____D C:\Users\legros\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2018-11-08 04:40 - 2017-08-27 22:30 - 000002199 _____ C:\Users\legros\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\f.lux.lnk
2018-11-06 14:05 - 2013-03-07 10:11 - 000000000 ____D C:\Program Files\Intel
2018-11-06 14:05 - 2013-03-07 09:18 - 000000000 ____D C:\Program Files (x86)\Intel
 
==================== Fichiers à la racine de certains dossiers =======
 
2015-06-04 23:09 - 2015-06-04 23:09 - 000000000 ___RH () C:\Users\legros\AppData\Roaming\563c0764fa989bfa09aa0ca11916508a2
2018-01-28 16:45 - 2018-01-28 16:45 - 000016715 _____ () C:\Users\legros\AppData\Roaming\Renobohafe
2018-04-06 23:43 - 2018-08-06 23:43 - 000000318 _____ () C:\Users\legros\AppData\Roaming\WB.CFG
2015-09-05 15:16 - 2015-09-05 15:16 - 000003584 _____ () C:\Users\legros\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2018-01-30 17:44 - 2018-01-31 17:44 - 000000052 _____ () C:\Users\legros\AppData\Local\dtJTdtJTdt
2013-10-04 12:46 - 2013-10-04 12:46 - 000000000 ___SH () C:\Users\legros\AppData\Local\LumaEmu
2018-09-28 19:15 - 2018-11-13 18:57 - 000001640 _____ () C:\Users\legros\AppData\Local\oobelibMkey.log
2018-04-16 00:44 - 2018-04-16 00:44 - 000000218 _____ () C:\Users\legros\AppData\Local\recently-used.xbel
2018-02-02 03:09 - 2018-04-05 06:22 - 000007602 _____ () C:\Users\legros\AppData\Local\Resmon.ResmonCfg
2008-02-05 13:28 - 2008-02-05 13:28 - 000000051 _____ () C:\Users\legros\AppData\Local\setup.txt
2013-03-07 10:45 - 2013-03-07 10:45 - 000017408 _____ () C:\Users\legros\AppData\Local\WebpageIcons.db
 
Certains fichiers dans TEMP:
====================
2018-11-28 17:08 - 2013-01-18 23:51 - 000015752 _____ (Autodesk, Inc.) C:\Users\legros\AppData\Local\Temp\AcDeltree.exe
 
==================== Bamital & volsnap ======================
 
(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)
 
C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement
C:\WINDOWS\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement
 
LastRegBack: 2018-05-03 01:05
 
==================== Fin de FRST.txt ============================
 
Addition.txt
 
Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 01.12.2018 01
Exécuté par legros (02-12-2018 19:30:42)
Exécuté depuis C:\Users\legros\Downloads
Windows 10 Home Version 1803 17134.407 (X64) (2018-05-03 00:47:40)
Mode d'amorçage: Normal
==========================================================
 
 
==================== Comptes: =============================
 
Administrateur (S-1-5-21-548831312-2294392190-3545656745-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-548831312-2294392190-3545656745-503 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-548831312-2294392190-3545656745-1005 - Limited - Enabled)
Invité (S-1-5-21-548831312-2294392190-3545656745-501 - Limited - Disabled)
legros (S-1-5-21-548831312-2294392190-3545656745-1000 - Administrator - Enabled) => C:\Users\legros
Tehya (S-1-5-21-548831312-2294392190-3545656745-1007 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-548831312-2294392190-3545656745-504 - Limited - Disabled)
 
==================== Centre de sécurité ========================
 
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)
 
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Programmes installés ======================
 
(Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.)
 
µTorrent (HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\uTorrent) (Version: 3.5.4.44520 - BitTorrent Inc.)
Adobe Flash Player 31 NPAPI (HKLM-x32\…\Adobe Flash Player NPAPI) (Version: 31.0.0.153 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.23) - Français (HKLM-x32\…\{AC76BA86-7AD7-1036-7B44-AB0000000001}) (Version: 11.0.23 - Adobe Systems Incorporated)
Akamai NetSession Interface (HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\Akamai) (Version:  - Akamai Technologies, Inc)
Apple Application Support (HKLM-x32\…\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.)
Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\…\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.14.1.0 - Asmedia Technology)
Autodesk Backburner 2014 (HKLM-x32\…\{3D347E6D-5A03-4342-B5BA-6A771885F379}) (Version: 14.0.0.0 - Autodesk, Inc.)
Avira Browser Safety (HKLM-x32\…\{9E10EA90-5E97-43B7-A246-FC7B4F5E9493}) (Version: 1.4.5.509 - Avira Operations GmbH & Co KG)
Bandisoft MPEG-1 Decoder (HKLM-x32\…\BandiMPEG1) (Version:  - )
Battle.net (HKLM-x32\…\Battle.net) (Version:  - Blizzard Entertainment)
Bluetooth Win7 Suite (64) (HKLM\…\{230D1595-57DA-4933-8C4E-375797EBB7E1}) (Version: 7.2.0.65 - Atheros Communications)
CCleaner (HKLM\…\CCleaner) (Version: 5.46 - Piriform)
CrystalDiskInfo 7.6.0 (HKLM-x32\…\CrystalDiskInfo_is1) (Version: 7.6.0 - Crystal Dew World)
Destiny 2 (HKLM-x32\…\Destiny 2) (Version:  - Blizzard Entertainment)
Discord (HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\Discord) (Version: 0.0.301 - Discord Inc.)
DisplayDriverAnalyzer (HKLM\…\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 398.82 - NVIDIA Corporation) Hidden
Dragon Age: Inquisition (HKLM-x32\…\Dragon Age: Inquisition_is1) (Version:  - )
Epic Games Launcher (HKLM-x32\…\{210AFD22-5ABF-48FD-AB9F-91B36E102CD8}) (Version: 1.1.135.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\…\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
f.lux (HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\Flux) (Version:  - f.lux Software LLC)
Firestorm-Release (HKLM-x32\…\Firestorm-Release) (Version: 5.1.7.55786 - The Phoenix Firestorm Project, Inc.)
Game of Thrones: A Telltale Games Series - Episodes 1-6 (HKLM-x32\…\Game of Thrones: A Telltale Games Series - Episodes 1-6_is1) (Version:  - )
Google Chrome (HKLM-x32\…\Google Chrome) (Version: 70.0.3538.110 - Google Inc.)
Google Update Helper (HKLM-x32\…\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden
Grammarly (HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\GrammarlyForWindows) (Version: 1.5.43 - Grammarly)
Happy Cloud Client (HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\HappyCloud) (Version: 1.374 - Happy Cloud, Inc.)
HiPatch (HKLM-x32\…\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF000}) (Version: 5.1.6.3 - Hi-Rez Studios)
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\…\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
Imaging And Configuration Designer (HKLM-x32\…\{32F4ED94-E65C-6163-EE86-F4D0550DC4B5}) (Version: 10.1.16299.15 - Microsoft) Hidden
Imaging Designer (HKLM-x32\…\{F310C432-1A2B-151D-FF0B-3651352448DD}) (Version: 10.1.16299.15 - Microsoft) Hidden
Imaging Tools Support (HKLM-x32\…\{9F257400-1142-9DA7-08B1-3C7943367929}) (Version: 10.1.16299.15 - Microsoft) Hidden
Intel(R) Management Engine Components (HKLM\…\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.6.1194 - Intel Corporation)
Intel(R) Network Connections 15.6.25.0 (HKLM\…\PROSetDX) (Version: 15.6.25.0 - Intel)
Java 8 Update 40 (HKLM-x32\…\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation)
JDownloader 2 (HKLM\…\jdownloader2) (Version: 2.0 - AppWork GmbH)
JMicron JMB36X Driver (HKLM-x32\…\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}) (Version: 1.17.58.2 - JMicron Technology Corp.)
join.me (HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\JoinMe) (Version: 2.2.0.838 - LogMeIn, Inc.)
Kit de déploiement et d’évaluation Windows - Windows 10 (HKLM-x32\…\{75ed7648-6cdf-4e09-b2fe-41e985652c96}) (Version: 10.1.16299.15 - Microsoft Corporation)
Kits Configuration Installer (HKLM-x32\…\{86E59C8F-61D5-1782-A3CE-60AE7E4D7791}) (Version: 10.1.16299.15 - Microsoft) Hidden
Launcher Prerequisites (x64) (HKLM-x32\…\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
marvell 91xx driver (HKLM-x32\…\MagniDriver) (Version: 1.0.0.1045 - Marvell)
Marvelous Designer 7 Enterprise (HKLM-x32\…\Marvelous Designer 7 Enterprise) (Version:  - CLO Virtual Fashion Inc.)
Marvel's Guardians of the Galaxy (HKLM-x32\…\Marvel's Guardians of the Galaxy_is1) (Version:  - )
MEGAsync (HKLM-x32\…\MEGAsync) (Version:  - Mega Limited)
Microsoft OneDrive (HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\OneDriveSetup.exe) (Version: 18.192.0920.0015 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\…\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\…\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\…\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\…\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\…\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\…\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\…\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\…\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\…\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\…\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\…\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\…\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\…\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\…\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\…\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\…\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\…\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\…\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\…\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 RC Redistributable (x64) - 14.0.22816 (HKLM-x32\…\{e2495eb6-cca8-47aa-91ea-3410ca44d7b7}) (Version: 14.0.22816.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\…\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\…\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Mises à jour NVIDIA 34.0.0.0 (HKLM\…\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 34.0.0.0 - NVIDIA Corporation) Hidden
NCSOFT Game Launcher (HKLM-x32\…\NCLauncher_NCWest) (Version:  - NCSOFT)
NVAPI Monitor plugin for NvContainer (HKLM\…\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.12 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.16.0.122 (HKLM\…\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.16.0.122 - NVIDIA Corporation)
NVIDIA Logiciel système PhysX 9.17.0524 (HKLM\…\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
NVIDIA Pilote 3D Vision 398.82 (HKLM\…\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 398.82 - NVIDIA Corporation)
NVIDIA Pilote audio HD : 1.3.37.4 (HKLM\…\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.37.4 - NVIDIA Corporation)
NVIDIA Pilote du contrôleur 3D Vision 390.41 (HKLM\…\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 390.41 - NVIDIA Corporation)
NVIDIA Pilote graphique 398.82 (HKLM\…\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 398.82 - NVIDIA Corporation)
Outlast (HKLM-x32\…\1207660064_is1) (Version: 2.1.0.8 - GOG.com)
Overwatch (HKLM-x32\…\Overwatch) (Version:  - Blizzard Entertainment)
Overwatch Test (HKLM-x32\…\Overwatch Test) (Version:  - Blizzard Entertainment)
Panneau de configuration NVIDIA 398.82 (HKLM\…\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 398.82 - NVIDIA Corporation) Hidden
Rainmeter (HKLM-x32\…\Rainmeter) (Version: 4.1 r2989 - Rainmeter)
Realtek High Definition Audio Driver (HKLM-x32\…\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8264 - Realtek Semiconductor Corp.)
Should I Remove It (HKLM-x32\…\{4E62123C-4C0D-4123-A8A2-C0103B92D7EA}) (Version: 1.0.4 - Reason Software Company Inc.) Hidden
Should I Remove It (HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\Should I Remove It 1.0.4) (Version: 1.0.4 - Reason Software Company Inc.)
SOE Web Installer (HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\SOE Web Installer) (Version: 1.0.3.171 - Sony Online Entertainment)
Steam (HKLM-x32\…\Steam) (Version: 2.10.91.91 - Valve Corporation)
System Requirements Lab CYRI (HKLM-x32\…\{F3FCB08B-E752-444D-86A0-0634A4F3B23D}) (Version: 6.0.8.0 - Husdawg, LLC)
TechPowerUp GPU-Z (HKLM-x32\…\TechPowerUp GPU-Z) (Version:  - TechPowerUp)
Toolkit Documentation (HKLM-x32\…\{4F1CF127-7D11-A617-1903-F9D1BD67ADBE}) (Version: 10.1.16299.15 - Microsoft) Hidden
UEV Tools on amd64 (HKLM\…\{1C1569F3-6D84-7CBC-74E9-ED8E8E4406FB}) (Version: 10.1.16299.15 - Microsoft) Hidden
Unity Web Player (HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\UnityWebPlayer) (Version:  - Unity Technologies ApS)
univcredist (HKLM-x32\…\{2d9d4a60-1d22-46c1-84bb-1de04b4715d7}) (Version: 1.0.0.0 - Motiga)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\…\{C5FDDED7-DEC7-48B4-AFD8-DFB8A0FD199A}) (Version: 2.51.0.0 - Microsoft Corporation)
User State Migration Tool (HKLM-x32\…\{BDC283D5-0912-BF8F-5318-4A78E4E73BFB}) (Version: 10.1.16299.15 - Microsoft) Hidden
VLC media player (HKLM-x32\…\VLC media player) (Version: 3.0.4 - VideoLAN)
Vulkan Run Time Libraries 1.0.3.0 (HKLM\…\VulkanRT1.0.3.0) (Version: 1.0.3.0 - LunarG, Inc.)
WinRAR 5.40 (32-bit) (HKLM-x32\…\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
WP_CPTT_NT-x86-fre (HKLM-x32\…\{14E97994-108F-C421-5701-D1A9E22BF8C0}) (Version: 10.1.16299.15 - Microsoft) Hidden
WPT Redistributables (HKLM-x32\…\{CDE75AD7-EBEA-AD99-FD02-0586D4D4C47D}) (Version: 10.1.16299.15 - Microsoft) Hidden
WPTx64 (HKLM-x32\…\{39D259B7-9ECF-65EB-66ED-5344F3E1E7B2}) (Version: 10.1.16299.15 - Microsoft) Hidden
 
==================== Personnalisé CLSID (Avec liste blanche): ==========================
 
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
 
CustomCLSID: HKU\S-1-5-21-548831312-2294392190-3545656745-1000_Classes\CLSID\{227b5f99-edba-470b-a626-92fd7cda0cff}\InprocServer32 -> C:\Windows\system32\dfshim.dll (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\legros\AppData\Local\MEGAsync\ShellExtX64.dll [2017-10-18] ()
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\legros\AppData\Local\MEGAsync\ShellExtX64.dll [2017-10-18] ()
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\legros\AppData\Local\MEGAsync\ShellExtX64.dll [2017-10-18] ()
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> Pas de fichier
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\legros\AppData\Local\MEGAsync\ShellExtX64.dll [2017-10-18] ()
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\legros\AppData\Local\MEGAsync\ShellExtX64.dll [2017-10-18] ()
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\legros\AppData\Local\MEGAsync\ShellExtX64.dll [2017-10-18] ()
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\legros\AppData\Local\MEGAsync\ShellExtX64.dll [2017-10-18] ()
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2016-08-14] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2016-08-14] (Alexander Roshal)
ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\legros\AppData\Local\MEGAsync\ShellExtX64.dll [2017-10-18] ()
ContextMenuHandlers3: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> Pas de fichier
ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\legros\AppData\Local\MEGAsync\ShellExtX64.dll [2017-10-18] ()
ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\legros\AppData\Local\MEGAsync\ShellExtX64.dll [2017-10-18] ()
ContextMenuHandlers5: [DreamScene] -> {BE800AEB-A440-4B63-94CD-AA6B43647DF9} => C:\WINDOWS\System32\DreamScene.dll [2014-03-15] (Microsoft Corporation)
ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} =>  -> Pas de fichier
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} =>  -> Pas de fichier
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2015-07-30] (Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2018-07-30] (NVIDIA Corporation)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2016-08-14] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2016-08-14] (Alexander Roshal)
 
==================== Tâches planifiées (Avec liste blanche) =============
 
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
 
Task: {02A7C32C-5F45-445F-AB1C-61397CF12D53} - System32\Tasks\Avira\System Speedup\TestScheduler => C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe
Task: {03A066A8-35CA-4D2A-84AC-BD968C503A7A} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe
Task: {09C171DF-64B9-4922-8AA8-A4069629F493} - System32\Tasks\AdobeGCInvoker-1.0-HOWDY-PC-legros => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2018-09-10] (Adobe Systems, Incorporated)
Task: {10C02880-C99A-4759-86B4-64F2E8B27827} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2018-11-16] (NVIDIA Corporation)
Task: {10FC09CF-2417-46FD-8CB6-943A975A62EB} - System32\Tasks\AdobeAAMUpdater-1.0-HOWDY-PC-legros => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe
Task: {12EB1BC5-1832-4F01-9700-36F2250995F6} - System32\Tasks\{A5B9A73C-B6BB-40E9-8D98-9C82EA93E1A7} => C:\Program Files (x86)\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivboot.exe
Task: {16A91B17-D8DF-414D-B530-20366F7E3F95} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe
Task: {19A3B254-4140-4AC7-845F-5B6826959BB6} - System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-11-16] (NVIDIA Corporation)
Task: {21354F81-1031-4380-B220-93ABA136C846} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-548831312-2294392190-3545656745-1000 => C:\Users\legros\AppData\Local\MEGAsync\MEGAupdater.exe [2018-01-15] (Mega Limited)
Task: {27059664-F789-4E31-88C2-B14C94C208A3} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {29074633-794F-4098-A11B-688A4254343A} - System32\Tasks\{0CED573B-2833-407C-A379-5443A3695443} => C:\Program Files (x86)\Black Desert Online\Black Desert Online Launcher.exe
Task: {2B14A0C6-026A-4270-84A2-990AEF4EC565} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {2F7368A1-D319-4B06-A409-B8E54338ECDE} - System32\Tasks\Avira\System Speedup\Delayed Startup\All users\2 => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2018-02-22] (Realtek Semiconductor)
Task: {30754450-723B-4ECC-BC5B-7D2DCA153979} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {32C28CF3-58D5-4FEC-B3F0-229B3AA707BA} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe
Task: {369F2189-68E0-4691-8389-83D11372AC13} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {3A22B13A-7CE1-4DBE-8440-39124B65873D} - \AdobeFlashPlayerUpdate -> Pas de fichier <==== ATTENTION
Task: {3A5BEEFA-27FA-40AB-AF5D-1E85109D5C2C} - System32\Tasks\Avira\System Speedup\Delayed Startup\legros\2 => C:\Users\legros\AppData\Local\FluxSoftware\Flux\flux.exe [2018-10-24] (f.lux Software LLC) <==== ATTENTION
Task: {3CA1A871-F212-49FF-81F6-CBBDE143BC4D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1810.5-0\MpCmdRun.exe [2018-10-23] (Microsoft Corporation)
Task: {495D0493-7F27-4B5C-8A55-FFC1F10563AF} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {4B53AAE1-24E1-4665-814C-375E7D322F89} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2018-09-13] (Piriform Ltd)
Task: {4E5DFFDD-5138-41D4-8D58-E355498D6062} - System32\Tasks\Avira\System Speedup\SpeedupSysTray => C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.UI.Systray.exe
Task: {50815427-A7E6-47D8-B28F-FCB2843FFB63} - System32\Tasks\{A83DCE83-6335-4736-8871-9FB0BCE2BE59} => C:\Program Files (x86)\Black Desert Online\Black Desert Online Launcher.exe
Task: {57391F33-59C3-4535-8D2D-F4F084784E76} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-11-16] (NVIDIA Corporation)
Task: {5F7E4B15-17FD-44B7-BF2D-5FF422940ACA} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2018-11-16] (NVIDIA Corporation)
Task: {65B85F6F-35B3-4459-A179-28255D5B7B25} - System32\Tasks\Microsoft\Windows\HelloFace\FODCleanupTask => C:\WINDOWS\System32\WinBioPlugIns\FaceFodUninstaller.exe [2018-04-12] ()
Task: {6F4CD478-FE6B-49D6-9B42-383B623C5DC4} - System32\Tasks\GyazoUpdateTaskMachineDaily => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2017-05-16] ()
Task: {6F7976A6-E162-4801-BA3B-D36A24622906} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {714CA897-890D-4B34-B17E-7FE77138133A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1810.5-0\MpCmdRun.exe [2018-10-23] (Microsoft Corporation)
Task: {74C66E07-378E-49DD-8FFB-B9C401639A3F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
Task: {7F8DB819-8206-4954-8C9C-9FA3ED386B66} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1810.5-0\MpCmdRun.exe [2018-10-23] (Microsoft Corporation)
Task: {88A29CAE-BCAE-4527-A73E-AE6C28CB0727} - System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-11-16] (NVIDIA Corporation)
Task: {8A694A74-4B6B-4E00-8867-313A11DBA5A8} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {8B0AABC5-0CAC-4AAE-B8D9-75DD1193EE68} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe
Task: {8CAEB7D7-A9BA-42B8-88E7-EB2E414EFCCE} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-11-16] (NVIDIA Corporation)
Task: {91F6FF73-9454-42DC-9794-99DF9493FD3F} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-11-16] (NVIDIA Corporation)
Task: {94A734EB-5C0F-45C3-922E-F81ADE60BF73} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {95D738D9-A6C4-4B97-B277-EBED52D628A3} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
Task: {96E3C0C7-7507-451A-83B5-A8A067BE3584} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2018-11-16] (NVIDIA Corporation)
Task: {9749D0D1-3751-4DDE-8775-36999D43755F} - System32\Tasks\GyazoUpdateTaskMachine => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2017-05-16] ()
Task: {A507FB93-2C40-4D2C-9F68-BD81A3E48A1D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {A759BFC5-1C83-4780-B3EE-0B2B069BABA1} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {A7AA8A6B-6C07-4D51-A70F-685369021F1F} - System32\Tasks\Driver Booster SkipUAC (legros) => C:\Program Files (x86)\IObit\Driver Booster\4.5.0\DriverBooster.exe [2017-07-28] (IObit)
Task: {A7D966D8-6B8C-4FC2-96B5-3CFB8AC77B96} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-11-16] (NVIDIA Corporation)
Task: {A97CB512-63C8-448F-8F07-22FBE21B7BBF} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe
Task: {AB1101D0-ACAA-441D-B6D4-BF387BB28C25} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {AC1EAB25-8AE4-4496-AE7E-79EFFBADE8E4} - System32\Tasks\Avira\System Speedup\Delayed Startup\legros\1 => C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe <==== ATTENTION
Task: {AC639451-0A36-44EA-9934-429D9BF4A5CA} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-11-16] (NVIDIA Corporation)
Task: {AECF6CF9-DDA3-48D8-BDF6-5BEE20DA5B3C} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe
Task: {AF68083A-7696-4F19-98CA-0B1008BD6047} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {B1377551-CEB7-4BBE-81E3-4AD4567B7F3D} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {B193DD38-E538-4FA5-A5B3-A2C8EF4A77A9} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_153_Plugin.exe [2018-11-20] (Adobe Systems Incorporated)
Task: {B4A7B21F-2F87-4BCE-AFDD-DA7FE7597663} - System32\Tasks\{26C1E085-563E-4598-AF9A-3C2D0318AB16} => C:\Windows\system32\pcalua.exe -a C:\Users\legros\AppData\Local\Temp\VSD55E4.tmp\DotNetFx35Client\DotNetFx35ClientSetup.exe -d C:\Users\legros\Downloads -c /lang:enu /passive /norestart <==== ATTENTION
Task: {B6B4051F-1896-4E2F-A8CC-78E5C01B1E43} - System32\Tasks\Avira\System Speedup\Delayed Startup\legros\3 => C:\Program Files (x86)\Gyazo\GyStation.exe [2017-05-16] (Nota Inc.) <==== ATTENTION
Task: {C7D8FB20-BB7B-47F8-9543-919F962C081D} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
Task: {CAC3C17A-FE2B-472A-83F0-8C256B86715E} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {D2345770-5CCD-42AC-B0BB-88BE674F73F7} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {D3832473-AB77-4289-BB7E-FDDFC152EB81} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-11-20] (Adobe Systems Incorporated)
Task: {D608A77B-130A-4199-AC53-67D9B6D5E3F5} - System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-11-16] (NVIDIA Corporation)
Task: {D6444196-C9BB-4E58-AE1F-56D2F1BD9A7E} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe
Task: {D7AED063-D116-4599-BF2B-EE14AA168A74} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {DE8917E2-827C-491F-B762-B9F702256260} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {E05FD75C-132F-4717-A4F6-6FDA8CA04084} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1810.5-0\MpCmdRun.exe [2018-10-23] (Microsoft Corporation)
Task: {E5AC6DBC-356F-41B8-9CE7-329F4FC2734F} - \AdobeFlashPlayerUpdate 2 -> Pas de fichier <==== ATTENTION
Task: {E7F16611-B2A0-48B5-BCCF-C7D879F279E2} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2018-09-13] (Piriform Ltd)
Task: {E809A222-7FB7-44B2-AF44-4ECDB97955EA} - System32\Tasks\Avira Safe Shopping Updater => C:\Program Files (x86)\Avira\Safe Shopping\\Updater\Updater.exe
Task: {EF57EEA7-4AFA-4706-BB87-B420378D0B5C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.)
Task: {F0DB5E43-B657-4DB5-B9AC-DF06DC713794} - System32\Tasks\Avira\System Speedup\Delayed Startup\All users\1 => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [2011-03-13] (Atheros Commnucations)
Task: {F3716143-6B49-4E19-A4FE-419F7745AEAA} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {F72FD83A-B5D2-4C13-B688-CBF027E978F3} - System32\Tasks\Avira Browser Safety Updater Task => C:\Program Files (x86)\Avira\Browser Safety\AviraBrowserSafetyUpdater.exe [2015-03-11] (Avira Operations GmbH & Co. KG)
Task: {FE07990D-E703-4B46-9FDD-81C709ECC867} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
 
(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)
 
 
==================== Raccourcis & WMI ========================
 
(Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.)
 
 
==================== Modules chargés (Avec liste blanche) ==============
 
2018-05-31 20:16 - 2018-11-16 12:55 - 001314672 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2018-04-12 00:34 - 2018-04-12 00:34 - 000491744 _____ () C:\Windows\System32\InputHost.dll
2018-04-12 00:34 - 2018-04-12 00:34 - 000472064 _____ () C:\Windows\ShellExperiences\TileControl.dll
2018-04-12 00:34 - 2018-04-12 00:34 - 002759168 _____ () C:\Windows\ShellComponents\TaskFlowUI.dll
2018-11-14 12:48 - 2018-11-01 07:55 - 002185216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2018-10-27 06:47 - 2018-10-27 06:47 - 035118592 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18082.13811.0_x64__8wekyb3d8bbwe\Video.UI.exe
2018-10-27 06:47 - 2018-10-27 06:47 - 000290816 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18082.13811.0_x64__8wekyb3d8bbwe\SharedUI.dll
2018-10-27 06:47 - 2018-10-27 06:47 - 005987328 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18082.13811.0_x64__8wekyb3d8bbwe\EntCommon.dll
2017-09-26 10:36 - 2017-09-26 10:36 - 003553704 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18082.13811.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll
2018-10-27 06:47 - 2018-10-27 06:47 - 009064448 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18082.13811.0_x64__8wekyb3d8bbwe\EntPlat.dll
2018-06-29 05:32 - 2018-06-29 05:32 - 001922224 _____ () C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.10314.31700.1000_x64__8wekyb3d8bbwe\Microsoft.Applications.Telemetry.Windows.dll
2018-11-26 22:12 - 2018-11-16 06:43 - 005020504 _____ () C:\Program Files (x86)\Google\Chrome\Application\70.0.3538.110\libglesv2.dll
2018-11-26 22:12 - 2018-11-16 06:43 - 000116056 _____ () C:\Program Files (x86)\Google\Chrome\Application\70.0.3538.110\libegl.dll
2018-11-14 12:47 - 2018-11-01 07:53 - 002068480 _____ () C:\Windows\ShellExperiences\PeopleCommonControls.dll
2018-04-12 00:34 - 2018-04-12 00:34 - 001465856 _____ () C:\Windows\ShellExperiences\PeopleBarFlyout.dll
2018-06-12 20:56 - 2018-06-08 09:55 - 003037184 _____ () C:\Windows\ShellExperiences\WindowsInternal.People.PeoplePicker.dll
2017-09-10 21:51 - 2017-09-10 21:51 - 000798208 _____ () C:\Users\legros\AppData\Local\MEGAsync\libsodium.dll
 
==================== Alternate Data Streams (Avec liste blanche) =========
 
(Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.)
 
AlternateDataStreams: C:\Users\legros\AppData\Local\Temp:$DATA [16]
AlternateDataStreams: C:\Users\Public\AppData:CSM [480]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [470]
 
==================== Mode sans échec (Avec liste blanche) ===================
 
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
 
==================== Association (Avec liste blanche) ===============
 
(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.)
 
 
==================== Internet Explorer sites de confiance/sensibles ===============
 
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.)
 
IE trusted site: HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\clonewarsadventures.com -> clonewarsadventures.com
IE trusted site: HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\freerealms.com -> freerealms.com
IE trusted site: HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\localhost -> localhost
IE trusted site: HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\soe.com -> soe.com
IE trusted site: HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\sony.com -> sony.com
 
==================== Hosts contenu: ==========================
 
(Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.)
 
2017-09-29 14:46 - 2017-08-17 07:49 - 000002054 _____ C:\WINDOWS\system32\Drivers\etc\hosts
 
0.0.0.1 mssplus.mcafee.com
0.0.0.0 0.0.0.0 # fix for traceroute and netstat display anomaly
0.0.0.0 tracking.opencandy.com.s3.amazonaws.com
0.0.0.0 media.opencandy.com
0.0.0.0 cdn.opencandy.com
0.0.0.0 tracking.opencandy.com
0.0.0.0 api.opencandy.com
0.0.0.0 api.recommendedsw.com
0.0.0.0 installer.betterinstaller.com
0.0.0.0 installer.filebulldog.com
0.0.0.0 d3oxtn1x3b8d7i.cloudfront.net
0.0.0.0 inno.bisrv.com
0.0.0.0 nsis.bisrv.com
0.0.0.0 cdn.file2desktop.com
0.0.0.0 cdn.goateastcach.us
0.0.0.0 cdn.guttastatdk.us
0.0.0.0 cdn.inskinmedia.com
0.0.0.0 cdn.insta.oibundles2.com
0.0.0.0 cdn.insta.playbryte.com
0.0.0.0 cdn.llogetfastcach.us
0.0.0.0 cdn.montiera.com
0.0.0.0 cdn.msdwnld.com
0.0.0.0 cdn.mypcbackup.com
0.0.0.0 cdn.ppdownload.com
0.0.0.0 cdn.riceateastcach.us
0.0.0.0 cdn.shyapotato.us
0.0.0.0 cdn.solimba.com
0.0.0.0 cdn.tuto4pc.com
0.0.0.0 cdn.appround.biz
0.0.0.0 cdn.bigspeedpro.com
 
==================== Autres zones ============================
 
(Actuellement, il n'y a pas de correction automatique pour cette section.)
 
HKU\S-1-5-21-548831312-2294392190-3545656745-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\legros\AppData\Roaming\Rainmeter\Layouts\dark rest\Wallpaper.bmp
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (Pas de fichier)
Le Pare-feu est activé.
 
==================== MSCONFIG/TASK MANAGER éléments désactivés ==
 
Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.
 
MSCONFIG\Services: BstHdAndroidSvc => 2
MSCONFIG\Services: BstHdLogRotatorSvc => 2
MSCONFIG\Services: BstHdPlusAndroidSvc => 2
MSCONFIG\Services: NGS => 2
MSCONFIG\Services: Origin Client Service => 2
MSCONFIG\Services: Origin Web Helper Service => 2
MSCONFIG\Services: Steam Client Service => 2
HKLM\…\StartupApproved\Run32: => "APSDaemon"
HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-548831312-2294392190-3545656745-1000\…\StartupApproved\Run: => "Chromium"
 
==================== RèglesPare-feu (Avec liste blanche) ===============
 
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
 
FirewallRules: [{51CC0806-D887-48C6-B87B-4BA8504EEBA6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RNR\ShooterGame\Binaries\Win64\RadicalHeights.exe
FirewallRules: [{84297908-FAA9-4F4C-9FA9-8E934843F645}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RNR\ShooterGame\Binaries\Win64\RadicalHeights.exe
FirewallRules: [UDP Query User{7F9FD60B-3BD0-4ABD-B963-E50050B23540}C:\program files (x86)\deluge\deluge.exe] => (Allow) C:\program files (x86)\deluge\deluge.exe
FirewallRules: [TCP Query User{CA271966-D290-45C4-89E3-4CBC2DCCDD0B}C:\program files (x86)\deluge\deluge.exe] => (Allow) C:\program files (x86)\deluge\deluge.exe
FirewallRules: [{AF631B26-7239-4671-AEAE-8A5A614E8541}] => (Allow) C:\Users\legros\AppData\Roaming\BitTorrent\BitTorrent.exe
FirewallRules: [{4B4D3D00-DAE7-43F5-9F1B-6B9085497A0C}] => (Allow) C:\Users\legros\AppData\Roaming\BitTorrent\BitTorrent.exe
FirewallRules: [{28501A9E-0EBF-4479-B83F-62F1EAC2031F}] => (Allow) C:\Users\legros\AppData\Local\Chromium\Application\chrome.exe
FirewallRules: [UDP Query User{7DE26C1E-A5BB-4EC6-853F-3C669DF66E77}C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe
FirewallRules: [TCP Query User{5674FA26-96DD-4AEB-A551-4836B2FC16F2}C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe
FirewallRules: [{B104BE0E-1F37-4172-A75D-348ADEFB7086}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\EvolveGame\bin64_SteamRetail\Evolve.exe
FirewallRules: [{2D92F325-1741-47C1-A3E3-7FC25C607E5F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\EvolveGame\bin64_SteamRetail\Evolve.exe
FirewallRules: [{FF269EAC-4DEE-41C0-838C-93519DF9EA86}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Jedi Academy\GameData\jamp.exe
FirewallRules: [{028E502F-67F1-457F-BD14-95D28432C163}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Jedi Academy\GameData\jamp.exe
FirewallRules: [{ED604510-1478-4C71-B03E-68747940486A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Jedi Academy\GameData\jasp.exe
FirewallRules: [{699F0E4F-EE74-4CC3-B427-3FA5F95FFE1B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Jedi Academy\GameData\jasp.exe
FirewallRules: [{368805FA-B605-4638-B478-4364CED6B64D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Amnesia The Dark Descent\Launcher.exe
FirewallRules: [{C1D3490C-FD58-477C-9D06-564FA8BB46B5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Amnesia The Dark Descent\Launcher.exe
FirewallRules: [{B6BC62D4-DA22-4769-B889-1055A5B31AE9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Amnesia The Dark Descent\Amnesia.exe
FirewallRules: [{C72289C8-EE8F-4531-96FB-C6297E667A9C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Amnesia The Dark Descent\Amnesia.exe
FirewallRules: [{031E6B4F-9324-4C7C-A973-99C3E6AFCD31}] => (Allow) C:\Program Files (x86)\BlueStacks\HD-Player.exe
FirewallRules: [UDP Query User{5060459E-DE0B-473E-B3B8-B277F09429CB}C:\program files\firestorm-releasex64\slvoice.exe] => (Allow) C:\program files\firestorm-releasex64\slvoice.exe
FirewallRules: [TCP Query User{C1541865-6CD5-43D2-B1CB-9F30565FD3C1}C:\program files\firestorm-releasex64\slvoice.exe] => (Allow) C:\program files\firestorm-releasex64\slvoice.exe
FirewallRules: [{F607AA41-A815-4296-A45B-5CDD97D67612}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix.exe
FirewallRules: [{13A698CD-13CA-41C2-A02E-6B93CDD7A558}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix.exe
FirewallRules: [{F6F613A9-603F-4465-A359-2DE12B63CBF5}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe
FirewallRules: [{87FA31C2-B8FA-4902-B83D-5E8B5E89FEDE}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe
FirewallRules: [{8D02511A-C979-4626-80B0-7879127FDD4C}] => (Allow) C:\Users\legros\Downloads\BlackDesert_Downloader.exe
FirewallRules: [{D6CE8DA8-BB83-46C6-8C7A-4FE0F70FF094}] => (Allow) C:\Users\legros\Downloads\BlackDesert_Launcher.exe
FirewallRules: [{8BF032E8-9EC4-4BDB-B3DD-745B7A207513}] => (Allow) C:\Users\legros\Downloads\bin64\BlackDesert64.exe
FirewallRules: [{D69F75C1-9B28-4539-B654-81F8F52139D2}] => (Allow) C:\Users\legros\Downloads\bin\BlackDesert32.exe
FirewallRules: [UDP Query User{E1BA9A62-6F3D-4B63-A47B-7E6115432D38}C:\program files (x86)\heroes of the storm\versions\base61552\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base61552\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{71BC6E6B-7B18-4F10-B4B3-4D67343AC2FB}C:\program files (x86)\heroes of the storm\versions\base61552\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base61552\heroesofthestorm_x64.exe
FirewallRules: [{61C6F489-B13E-4E20-85AD-C82A6EE1D736}] => (Allow) C:\Program Files\Easeware\DriverEasy\DriverEasy.exe
FirewallRules: [UDP Query User{89CD1246-A7DE-4079-B0C3-08EC0BF4A891}C:\program files (x86)\steam\steamapps\common\smite\binaries\win32\smite.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\smite\binaries\win32\smite.exe
FirewallRules: [TCP Query User{B7135568-F9F1-46C1-8A89-E391C54A0CEF}C:\program files (x86)\steam\steamapps\common\smite\binaries\win32\smite.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\smite\binaries\win32\smite.exe
FirewallRules: [UDP Query User{A8700A7B-F2E4-4664-AB9B-ACA3A1E7CB41}C:\gog games\outlast\binaries\win64\olgame.exe] => (Allow) C:\gog games\outlast\binaries\win64\olgame.exe
FirewallRules: [TCP Query User{9C1D0372-B2D8-461A-9C25-F397C2A6B731}C:\gog games\outlast\binaries\win64\olgame.exe] => (Allow) C:\gog games\outlast\binaries\win64\olgame.exe
FirewallRules: [UDP Query User{70DBCBC5-314F-407A-B857-D9535F2BB1A6}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [TCP Query User{3B0C3F13-EEEC-4A37-B2C3-28C3EDA67AC1}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [UDP Query User{5D1F3B4F-29B1-498E-BFE2-A1F545D21342}C:\program files (x86)\bethesda.net launcher\games\quakechampions\client\bin\pc\quakechampions.exe] => (Allow) C:\program files (x86)\bethesda.net launcher\games\quakechampions\client\bin\pc\quakechampions.exe
FirewallRules: [TCP Query User{26147E8C-327C-4829-B733-ECBAD59221B6}C:\program files (x86)\bethesda.net launcher\games\quakechampions\client\bin\pc\quakechampions.exe] => (Allow) C:\program files (x86)\bethesda.net launcher\games\quakechampions\client\bin\pc\quakechampions.exe
FirewallRules: [UDP Query User{41938B23-C921-46C6-9383-CF01FA6DA045}C:\program files (x86)\overwatch test\overwatch.exe] => (Allow) C:\program files (x86)\overwatch test\overwatch.exe
FirewallRules: [TCP Query User{3C8F801F-7990-4631-84C8-E40A06FB73DD}C:\program files (x86)\overwatch test\overwatch.exe] => (Allow) C:\program files (x86)\overwatch test\overwatch.exe
FirewallRules: [{53D80A82-98EE-4E70-8534-DEB03147C481}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe
FirewallRules: [{9FC6C7FC-B01B-4CFB-B05B-45AE015076D1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Tools\Launcher.exe
FirewallRules: [{E04D883C-C990-4B97-8290-3E627DC3CA44}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{A4D18429-AD36-4895-941D-610C9FD8FB19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{E27C65CF-B969-45EC-8D80-C7A55AAC90BB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{FBF11A8D-C25B-47FD-9A20-D8438777DBDA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{EE2A35CD-393C-4417-AE8F-2274E055D502}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe
FirewallRules: [{2D1807C2-A13E-4E83-A626-19D7DC4B7C42}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Tools\Launcher.exe
FirewallRules: [{7B914B53-9737-4968-9360-F21D01CE71B7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{51F60FB1-FF59-458C-832C-18E476929FE9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe
FirewallRules: [{3F6A44D0-671F-4DCE-8B94-AC0B0B787EC4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe
FirewallRules: [{AA19FC4B-303D-43F4-898D-7F41CDBD65CF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe
FirewallRules: [UDP Query User{F53EE39D-6262-4627-A7C8-09D5E780054B}C:\program files (x86)\steam\steamapps\common\warface\mycomgames\mycomgames.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\warface\mycomgames\mycomgames.exe
FirewallRules: [TCP Query User{317209ED-E3BC-4A0D-A77F-D87677E85DA0}C:\program files (x86)\steam\steamapps\common\warface\mycomgames\mycomgames.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\warface\mycomgames\mycomgames.exe
FirewallRules: [UDP Query User{D51CDCA0-B338-491B-927A-93EB2E9C5F28}C:\program files (x86)\steam\steamapps\common\dirty bomb\binaries\win32\shootergame-win32-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dirty bomb\binaries\win32\shootergame-win32-shipping.exe
FirewallRules: [TCP Query User{E21D98DF-DB0C-4867-A4B5-EE13A5E0EC42}C:\program files (x86)\steam\steamapps\common\dirty bomb\binaries\win32\shootergame-win32-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dirty bomb\binaries\win32\shootergame-win32-shipping.exe
FirewallRules: [UDP Query User{8740D6CB-5302-4AF3-8102-EFBC5D8F9AE0}C:\program files (x86)\steam\steamapps\common\absolver beta\theplaines\binaries\win64\theplaines-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\absolver beta\theplaines\binaries\win64\theplaines-win64-shipping.exe
FirewallRules: [TCP Query User{9866E037-667F-45A6-8C37-B607A21DF916}C:\program files (x86)\steam\steamapps\common\absolver beta\theplaines\binaries\win64\theplaines-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\absolver beta\theplaines\binaries\win64\theplaines-win64-shipping.exe
FirewallRules: [UDP Query User{67F792BC-357F-4F13-9D4E-BDDA835D8480}C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe
FirewallRules: [TCP Query User{96EC313D-1400-457E-8403-1DAA31D27B5D}C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe
FirewallRules: [{0C0ED274-F297-482F-9551-E4CC5D93F630}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{ED6E5471-A0EC-4CA1-B06E-5E57EC2E26DD}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [UDP Query User{3AB3CF11-5CA5-4E2D-BD24-9D7EBD891AC3}C:\program files (x86)\heroes of the storm\versions\base53965\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base53965\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{E0105F5F-1FFA-4E9D-87F7-78AF9F792846}C:\program files (x86)\heroes of the storm\versions\base53965\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base53965\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{C1031004-A92C-4BAF-84AA-0A274D269A48}C:\program files (x86)\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{9B7A3842-1241-4AE3-835C-3EB8A0734168}C:\program files (x86)\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{E47A5FFD-718A-490A-8CDB-C1A919F0C9EA}C:\program files (x86)\heroes of the storm\versions\base53275\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base53275\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{DB184923-9A73-4D08-B0E6-254B6BD48282}C:\program files (x86)\heroes of the storm\versions\base53275\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base53275\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{CEFAB597-B76F-4927-84CA-347BBC6DCA0A}C:\program files (x86)\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{5FD2FDFD-0F54-46B4-A00E-CF54D76B0BBF}C:\program files (x86)\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{38288FB1-8225-4195-ADC6-9947BEDE40D5}C:\program files (x86)\heroes of the storm\versions\base52860\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base52860\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{1F94967C-0919-41E0-99A3-7CAFFF856961}C:\program files (x86)\heroes of the storm\versions\base52860\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base52860\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{DC98C975-354B-4709-90C0-E8DD740B8CE5}C:\program files (x86)\gazillion entertainment\marvel heroes game\unrealengine3\binaries\win64\marvelheroes2016.exe] => (Allow) C:\program files (x86)\gazillion entertainment\marvel heroes game\unrealengine3\binaries\win64\marvelheroes2016.exe
FirewallRules: [TCP Query User{6E2D4598-2085-4A6B-90BD-992D61175882}C:\program files (x86)\gazillion entertainment\marvel heroes game\unrealengine3\binaries\win64\marvelheroes2016.exe] => (Allow) C:\program files (x86)\gazillion entertainment\marvel heroes game\unrealengine3\binaries\win64\marvelheroes2016.exe
FirewallRules: [UDP Query User{15271431-B232-4542-9E9D-0DFA9FEB0EBC}C:\mygames\revelation online\game\tianyu.exe] => (Allow) C:\mygames\revelation online\game\tianyu.exe
FirewallRules: [TCP Query User{28709C1E-FE8B-4DD2-8D6F-0520F4BEFCD3}C:\mygames\revelation online\game\tianyu.exe] => (Allow) C:\mygames\revelation online\game\tianyu.exe
FirewallRules: [{EBEDD4E4-A18A-454F-A361-8A29CE955D6E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{E48C1067-774C-488B-9151-611DC314BB48}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{A5B2151F-3249-46EB-A301-DA97CF0AFA23}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{AB443569-7C8F-4DB6-A2F9-7C37027705A7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{17430F38-D047-4C4D-A211-62B9FA22CAC7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [UDP Query User{00E03CD7-7ED6-45C5-A9D3-A193F59A85C4}C:\program files\firestormos-releasex64\slvoice.exe] => (Allow) C:\program files\firestormos-releasex64\slvoice.exe
FirewallRules: [TCP Query User{B9372F63-27D2-4E48-B021-A4ADFC6E94E7}C:\program files\firestormos-releasex64\slvoice.exe] => (Allow) C:\program files\firestormos-releasex64\slvoice.exe
FirewallRules: [UDP Query User{C43FE889-62F7-43F3-8175-8E985ABC9CD5}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [TCP Query User{B2A0230C-BB8B-4CD4-9881-C740E6A7C89E}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [UDP Query User{6E3F550E-0F99-4032-B32F-73C226EAD866}C:\program files (x86)\black desert online\bin64\blackdesert64.exe] => (Allow) C:\program files (x86)\black desert online\bin64\blackdesert64.exe
FirewallRules: [TCP Query User{1DB23CDB-732F-4A6A-940E-3F7B130E83AB}C:\program files (x86)\black desert online\bin64\blackdesert64.exe] => (Allow) C:\program files (x86)\black desert online\bin64\blackdesert64.exe
FirewallRules: [{05817C28-28D8-46DE-A7A0-B1AF65CA466F}] => (Allow) C:\Program Files (x86)\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivlauncher.exe
FirewallRules: [{33481B2D-5F3B-4726-A856-2903BB0B0C54}] => (Allow) C:\Program Files (x86)\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivlauncher.exe
FirewallRules: [{5733AEB2-B3C7-4DCE-BE66-B21D13BE6033}] => (Allow) C:\Program Files (x86)\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivboot.exe
FirewallRules: [{43EBA0CB-A1F2-4AC4-83A1-8CCB5D6B80F5}] => (Allow) C:\Program Files (x86)\SquareEnix\FINAL FANTASY XIV - A Realm Reborn\boot\ffxivboot.exe
FirewallRules: [{F6944C17-D2B3-4C14-AB2E-02BF975E1EEA}] => (Block) C:\program files\alchemyviewer\voice\slvoice.exe
FirewallRules: [{3905CE53-4732-4519-926A-2D1983908631}] => (Block) C:\program files\alchemyviewer\voice\slvoice.exe
FirewallRules: [UDP Query User{FFBF21AA-8FF0-418A-B1EF-43F044DABCFF}C:\program files\alchemyviewer\voice\slvoice.exe] => (Allow) C:\program files\alchemyviewer\voice\slvoice.exe
FirewallRules: [TCP Query User{3147218D-42DF-4E58-977B-F0898357884F}C:\program files\alchemyviewer\voice\slvoice.exe] => (Allow) C:\program files\alchemyviewer\voice\slvoice.exe
FirewallRules: [{4378BEA3-FC20-45BA-B237-36E994424A83}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{A9F01A8B-21EE-4FEF-85B6-94991CD363D8}] => (Block) C:\program files (x86)\turbine\the lord of the rings online\lotroclient.exe
FirewallRules: [{28D7C430-75E7-47CA-A9B1-EB86C1AF3360}] => (Block) C:\program files (x86)\turbine\the lord of the rings online\lotroclient.exe
FirewallRules: [UDP Query User{BD388E32-3838-4EF8-9FAB-4F184A2A177B}C:\program files (x86)\turbine\the lord of the rings online\lotroclient.exe] => (Allow) C:\program files (x86)\turbine\the lord of the rings online\lotroclient.exe
FirewallRules: [TCP Query User{0F1B37B0-441A-4DDB-93D5-F7F2F65FF183}C:\program files (x86)\turbine\the lord of the rings online\lotroclient.exe] => (Allow) C:\program files (x86)\turbine\the lord of the rings online\lotroclient.exe
FirewallRules: [{3BD078F9-CCB6-4AE4-AE7D-CDE40A146EF7}] => (Block) C:\program files (x86)\firestormos-release\slvoice.exe
FirewallRules: [{8B87A230-368C-45F3-9EE8-A47FAEF9A2CF}] => (Block) C:\program files (x86)\firestormos-release\slvoice.exe
FirewallRules: [UDP Query User{7363D206-D5B4-46BF-8F14-0757B7C53A51}C:\program files (x86)\firestormos-release\slvoice.exe] => (Allow) C:\program files (x86)\firestormos-release\slvoice.exe
FirewallRules: [TCP Query User{07896659-3105-4A60-BA91-8550186DCBDB}C:\program files (x86)\firestormos-release\slvoice.exe] => (Allow) C:\program files (x86)\firestormos-release\slvoice.exe
FirewallRules: [{ED5B7B54-65EE-4552-BC3B-9C47E3485626}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [{DC1E8E5F-CCC1-46E5-A8BB-40D293AF89F1}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [UDP Query User{6284031A-6103-4D14-B1BF-5BC82BCB333F}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [TCP Query User{A4502635-7AD3-40EE-982F-1A6FEE8DA919}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [{07A07E56-8225-455F-ABEE-A2CE8849B29F}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [{5CC5F509-D008-405A-92D8-B43B0CFD2A97}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [UDP Query User{F33E643C-0F5E-4BA4-AF33-02145E730B4D}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [TCP Query User{6343FA2E-58BA-455A-94A6-F3EFACCACEAD}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [{8C96D8F2-CE02-49D8-B85D-8DF8AAE88FF0}] => (Block) C:\nexon\library\icarus\appdata\bin64\launcher.exe
FirewallRules: [{DD644B5A-BA3D-498A-96F3-AF1A274DAE17}] => (Block) C:\nexon\library\icarus\appdata\bin64\launcher.exe
FirewallRules: [UDP Query User{35ADF8FD-D41C-44DE-BBCA-F8AC1AAFF491}C:\nexon\library\icarus\appdata\bin64\launcher.exe] => (Allow) C:\nexon\library\icarus\appdata\bin64\launcher.exe
FirewallRules: [TCP Query User{06A918C5-4625-4D5B-9C4F-25EA0C52D383}C:\nexon\library\icarus\appdata\bin64\launcher.exe] => (Allow) C:\nexon\library\icarus\appdata\bin64\launcher.exe
FirewallRules: [{66FD60B1-7AC0-4367-A45B-618EEB2C4695}] => (Block) C:\users\legros\appdata\roaming\spotify\spotify.exe
FirewallRules: [{6A6D04C7-A6CD-4E8D-B0C0-47CEC8994BF1}] => (Block) C:\users\legros\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{F772F505-7B0B-453D-8DC4-CDA8519F4399}C:\users\legros\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\legros\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{B727A050-0221-492D-87E5-E8452C55024A}C:\users\legros\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\legros\appdata\roaming\spotify\spotify.exe
FirewallRules: [{62771E4D-D3CA-4443-B47D-199004197CE7}] => (Block) C:\program files (x86)\secondlifeprojectbento\slvoice.exe
FirewallRules: [{ECF849CE-5E31-4ADC-A94D-DB3207D34646}] => (Block) C:\program files (x86)\secondlifeprojectbento\slvoice.exe
FirewallRules: [UDP Query User{B15855EB-C024-4E4C-BCBB-2BC7284BE60E}C:\program files (x86)\secondlifeprojectbento\slvoice.exe] => (Allow) C:\program files (x86)\secondlifeprojectbento\slvoice.exe
FirewallRules: [TCP Query User{60105D22-4FB0-4930-AE83-0115139D2457}C:\program files (x86)\secondlifeprojectbento\slvoice.exe] => (Allow) C:\program files (x86)\secondlifeprojectbento\slvoice.exe
FirewallRules: [{E53D327A-CAE0-498A-94CF-93F9DA8012B5}] => (Block) C:\program files (x86)\neverwinter_en\neverwinter\live\gameclient.exe
FirewallRules: [{2391925B-B71D-4357-BEA5-D9AE267BF608}] => (Block) C:\program files (x86)\neverwinter_en\neverwinter\live\gameclient.exe
FirewallRules: [UDP Query User{D273034F-CACD-43C4-8F27-AF2B97583078}C:\program files (x86)\neverwinter_en\neverwinter\live\gameclient.exe] => (Allow) C:\program files (x86)\neverwinter_en\neverwinter\live\gameclient.exe
FirewallRules: [TCP Query User{3A1A973B-F3EC-4D98-90B8-D295879ED31B}C:\program files (x86)\neverwinter_en\neverwinter\live\gameclient.exe] => (Allow) C:\program files (x86)\neverwinter_en\neverwinter\live\gameclient.exe
FirewallRules: [{F72EA8E6-5543-40CB-83F9-67FCDB3F18D7}] => (Block) C:\program files (x86)\star vault\mortal online\mortal online launcher.exe
FirewallRules: [{5521656D-5F26-47B6-8A58-A5FCBF94D811}] => (Block) C:\program files (x86)\star vault\mortal online\mortal online launcher.exe
FirewallRules: [UDP Query User{30CF7666-380D-4752-A74C-E4C55EA1D50E}C:\program files (x86)\star vault\mortal online\mortal online launcher.exe] => (Allow) C:\program files (x86)\star vault\mortal online\mortal online launcher.exe
FirewallRules: [TCP Query User{AB2E12F6-5F5F-4622-B7AB-F8FFE5D2165D}C:\program files (x86)\star vault\mortal online\mortal online launcher.exe] => (Allow) C:\program files (x86)\star vault\mortal online\mortal online launcher.exe
FirewallRules: [{A18F9694-53A3-4067-91F2-1A5EBD5CF3EE}] => (Block) C:\program files\comicrack\comicrack.exe
FirewallRules: [{389B42F5-B0DF-4CCA-BCAD-B261631A0B12}] => (Block) C:\program files\comicrack\comicrack.exe
FirewallRules: [UDP Query User{3328918E-F131-4A95-AB55-4AF22CD090B7}C:\program files\comicrack\comicrack.exe] => (Allow) C:\program files\comicrack\comicrack.exe
FirewallRules: [TCP Query User{DD9D1063-F794-419C-80A9-FC42BAEEDCE2}C:\program files\comicrack\comicrack.exe] => (Allow) C:\program files\comicrack\comicrack.exe
FirewallRules: [{C34C663F-FBCE-4003-983A-2BE94CD80EC9}] => (Block) C:\users\legros\appdata\local\akamai\netsession_win.exe
FirewallRules: [{A8574403-CEEF-4B77-8491-BD323A83A0F4}] => (Block) C:\users\legros\appdata\local\akamai\netsession_win.exe
FirewallRules: [UDP Query User{FCA2148E-9818-433E-9B8F-0106D7292BF7}C:\users\legros\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\legros\appdata\local\akamai\netsession_win.exe
FirewallRules: [TCP Query User{33AC250E-6B1B-4334-823B-7CFF4EA79ED6}C:\users\legros\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\legros\appdata\local\akamai\netsession_win.exe
FirewallRules: [{887D138A-B6B0-41A1-90E3-72845825FF5F}] => (Allow) C:\Users\legros\Downloads\BlackDesert_Downloader.exe
FirewallRules: [{44005586-6E5D-408C-9A85-8E241EA3B0CF}] => (Allow) C:\Users\legros\Downloads\BlackDesert_Launcher.exe
FirewallRules: [{0A9FDB73-2EE3-4790-8EAC-65991691F966}] => (Allow) C:\Users\legros\Downloads\bin64\BlackDesert64.exe
FirewallRules: [{492A8F1C-1112-4765-AE7A-DE7614FF79A0}] => (Allow) C:\Users\legros\Downloads\bin\BlackDesert32.exe
FirewallRules: [{6A1A633A-941A-4F63-A61D-FB4DA6CD1C39}] => (Block) C:\program files (x86)\hearthstone\hearthstone.exe
FirewallRules: [{3A782FA5-69C9-4C03-8ED2-24946C366B36}] => (Block) C:\program files (x86)\hearthstone\hearthstone.exe
FirewallRules: [UDP Query User{78FEAD90-8890-47CD-9CD7-96BB4A1DBC79}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe
FirewallRules: [TCP Query User{F89543E6-6EAD-439C-A4A1-B66798DE90FF}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe
FirewallRules: [{0D5FC6FE-DA23-45B4-93ED-B130645083B3}] => (Allow) C:\Users\legros\Downloads\BlackDesert_Downloader.exe
FirewallRules: [{8116277E-D8AF-436B-86C3-778DB79776A2}] => (Allow) C:\Users\legros\Downloads\BlackDesert_Launcher.exe
FirewallRules: [{7AF6D9B7-77C3-49E0-A19F-C94BE2C2CA36}] => (Allow) C:\Users\legros\Downloads\bin64\BlackDesert64.exe
FirewallRules: [{0E45F394-EB5A-4C14-9104-F9EDC7873ED1}] => (Allow) C:\Users\legros\Downloads\bin\BlackDesert32.exe
FirewallRules: [UDP Query User{8BFB35C2-A333-4B31-80C7-3D5E5E96EC71}C:\program files (x86)\firestorm-release\slvoice.exe] => (Block) C:\program files (x86)\firestorm-release\slvoice.exe
FirewallRules: [TCP Query User{5EAEE432-44C9-45C2-9FF8-A0C71F7737D5}C:\program files (x86)\firestorm-release\slvoice.exe] => (Block) C:\program files (x86)\firestorm-release\slvoice.exe
FirewallRules: [{9C658781-E19E-4D0E-84BC-B2C4221609CF}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe
FirewallRules: [{B37D659C-DECE-4FC8-9D9B-211D4838495C}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe
FirewallRules: [{42A6490F-56DF-46C8-AA67-E23D40E28284}] => (Allow) C:\Users\legros\AppData\Local\Warframe\Downloaded\Public\Tools\RemoteCrashSender.exe
FirewallRules: [{D9460137-577F-4E98-9809-D75D169892D0}] => (Allow) C:\Users\legros\AppData\Local\Warframe\Downloaded\Public\Tools\Launcher.exe
FirewallRules: [{E3AE6FF7-05A7-4C8D-81C0-B95D1E4624C6}] => (Allow) C:\Users\legros\AppData\Local\Warframe\Downloaded\Public\Warframe.x64.exe
FirewallRules: [{BAC9AF81-287C-4F8A-846E-BD215EFF82F2}] => (Allow) C:\Users\legros\AppData\Local\Warframe\Downloaded\Public\Warframe.exe
FirewallRules: [{BC53498C-2090-4C08-AC43-80998685CC8A}] => (Allow) C:\Users\legros\AppData\Local\Warframe\Downloaded\Public\Warframe.x64.exe
FirewallRules: [{074D8931-222E-404F-BD59-CCCBB32186EC}] => (Allow) C:\Users\legros\AppData\Local\Warframe\Downloaded\Public\Warframe.exe
FirewallRules: [{074C134C-1DFB-4202-81B2-702951C971DB}] => (Allow) C:\Users\legros\AppData\Local\Warframe\Downloaded\Public\Tools\RemoteCrashSender.exe
FirewallRules: [{44BE586A-AFCD-439E-BA41-5C3EE32CFD8E}] => (Allow) C:\Users\legros\AppData\Local\Warframe\Downloaded\Public\Tools\Launcher.exe
FirewallRules: [{EAAA0025-D226-4D17-9197-582380D0EDE9}] => (Allow) C:\Users\legros\AppData\Local\Warframe\Downloaded\Public\Warframe.x64.exe
FirewallRules: [{66365F17-F835-43A6-8863-145E7ACE963C}] => (Allow) C:\Users\legros\AppData\Local\Warframe\Downloaded\Public\Warframe.exe
FirewallRules: [{A615C28D-52E9-45A0-A789-CE402098B177}] => (Allow) C:\Users\legros\AppData\Local\Warframe\Downloaded\Public\Warframe.x64.exe
FirewallRules: [{40D50C3E-2458-4514-90C6-70D5794E4B96}] => (Allow) C:\Users\legros\AppData\Local\Warframe\Downloaded\Public\Warframe.exe
FirewallRules: [UDP Query User{CBEF9EF1-0BE0-44FE-A2F6-23201DA2A27B}C:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe] => (Block) C:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe
FirewallRules: [TCP Query User{7E859E10-375F-4892-9F05-E647A3A2DB68}C:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe] => (Block) C:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe
FirewallRules: [{353ABD42-E3BA-4ED1-95A2-4CC968D303B5}] => (Block) C:\users\legros\appdata\local\mycomgames\mycomgames.exe
FirewallRules: [{20D20523-F0F8-40C8-BF9C-0A05B17DD735}] => (Block) C:\users\legros\appdata\local\mycomgames\mycomgames.exe
FirewallRules: [UDP Query User{BF1D05B4-0F59-411D-83EE-91B9A6CD3991}C:\users\legros\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\legros\appdata\local\mycomgames\mycomgames.exe
FirewallRules: [TCP Query User{2DECBBD7-0CCA-4082-BC32-144AA8234FD2}C:\users\legros\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\legros\appdata\local\mycomgames\mycomgames.exe
FirewallRules: [{03E6C32C-CB20-4944-8F57-547AAAA465E5}] => (Allow) C:\Program Files\360\360 Internet Security\UpTip.exe
FirewallRules: [{9110529B-E526-4332-9557-88299316B1A4}] => (Allow) C:\Program Files\360\360 Internet Security\UpTip.exe
FirewallRules: [UDP Query User{56BB55DA-C056-43FA-88E4-D736E832D446}C:\program files\360\360 internet security\360sdupd.exe] => (Block) C:\program files\360\360 internet security\360sdupd.exe
FirewallRules: [TCP Query User{C69929FE-0390-4020-9054-44444FD5B6C2}C:\program files\360\360 internet security\360sdupd.exe] => (Block) C:\program files\360\360 internet security\360sdupd.exe
FirewallRules: [UDP Query User{7227E266-D9B2-403A-932C-3C149EF43C89}C:\program files (x86)\java\jre1.8.0_40\bin\jp2launcher.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_40\bin\jp2launcher.exe
FirewallRules: [TCP Query User{DD46492F-057C-4C6D-B0F3-321CA43054A2}C:\program files (x86)\java\jre1.8.0_40\bin\jp2launcher.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_40\bin\jp2launcher.exe
FirewallRules: [UDP Query User{32275A09-4F7E-46EB-9099-EBCCC7ADC71A}C:\users\legros\appdata\local\apps\2.0\to0px3zg.ygd\mmm8mbl5.ygo\pars..tion_64beb0e316f56ed6_0001.0000_95d80110f719365a\parsecclient.exe] => (Allow) C:\users\legros\appdata\local\apps\2.0\to0px3zg.ygd\mmm8mbl5.ygo\pars..tion_64beb0e316f56ed6_0001.0000_95d80110f719365a\parsecclient.exe
FirewallRules: [TCP Query User{4719E495-BA1E-4221-92E0-223435169BC8}C:\users\legros\appdata\local\apps\2.0\to0px3zg.ygd\mmm8mbl5.ygo\pars..tion_64beb0e316f56ed6_0001.0000_95d80110f719365a\parsecclient.exe] => (Allow) C:\users\legros\appdata\local\apps\2.0\to0px3zg.ygd\mmm8mbl5.ygo\pars..tion_64beb0e316f56ed6_0001.0000_95d80110f719365a\parsecclient.exe
FirewallRules: [{2A78FCB9-4157-4361-AA5C-8E749CC0CB0D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe
FirewallRules: [{F4176BC9-EDE9-49EC-AE9A-438FE932CF19}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe
FirewallRules: [{FBDF2ABB-8792-46F0-BEDF-73B240580A8F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe
FirewallRules: [{3F2D0A7F-092F-41C6-AC29-8722689D3441}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe
FirewallRules: [{B9DA9928-513C-4BC3-B1DE-57FF395A8727}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3688\Agent.exe
FirewallRules: [{39B137BE-C658-47B1-88B1-92A12E501420}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3688\Agent.exe
FirewallRules: [{035DD2AD-14D7-4C9D-A1CB-C8D3A80D1EBF}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3669\Agent.exe
FirewallRules: [{79FE8BFE-2DCA-4AD9-9DAC-38D9040462EB}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3669\Agent.exe
FirewallRules: [{A70DE56A-4A13-4084-82EF-D9D82DC80E32}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3668\Agent.exe
FirewallRules: [{0530696C-383E-42E9-AB35-AC1791AC57B9}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3668\Agent.exe
FirewallRules: [UDP Query User{739C67A2-977D-4F38-BE25-1CC8DF3A6F0B}C:\program files (x86)\java\jre1.8.0_25\bin\jp2launcher.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_25\bin\jp2launcher.exe
FirewallRules: [TCP Query User{747285CA-CAD8-41CE-B52F-822CB8894BED}C:\program files (x86)\java\jre1.8.0_25\bin\jp2launcher.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_25\bin\jp2launcher.exe
FirewallRules: [UDP Query User{DD52F164-FC3F-42BB-AA95-8211FDDDC0C6}C:\program files (x86)\zenimax online\launcher\bethesda.net_launcher.exe] => (Allow) C:\program files (x86)\zenimax online\launcher\bethesda.net_launcher.exe
FirewallRules: [TCP Query User{5360FF88-1F53-479A-8481-635FA5553ACD}C:\program files (x86)\zenimax online\launcher\bethesda.net_launcher.exe] => (Allow) C:\program files (x86)\zenimax online\launcher\bethesda.net_launcher.exe
FirewallRules: [UDP Query User{4EC7943F-61F6-480B-B4DD-0E90AC3BC35A}C:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe] => (Allow) C:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe
FirewallRules: [TCP Query User{BAA32D70-9BDB-4688-868B-8A801D8837A4}C:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe] => (Allow) C:\program files (x86)\ncwest\nclauncher\ncupdatehelper.exe
FirewallRules: [{8229F4A5-37C3-4F13-A5FE-9644D18403D4}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe
FirewallRules: [{ABFD1AA5-DA23-4676-B725-FDA0DD1D6E16}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe
FirewallRules: [{3F3DF75A-BDB1-4889-AA72-C9D684A2CC83}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3632\Agent.exe
FirewallRules: [{211D4A07-2416-4B0C-9D42-726E831F60D8}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3632\Agent.exe
FirewallRules: [{92DD4556-62A5-4921-AF1D-26CA6B95E5EE}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{FFB64C47-B11C-4A82-AA89-88C5B2F2DCC3}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{5008002B-01E0-4546-9C7B-DAA777A9E036}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{D8822DA7-6ADF-4048-808B-32E80CE01397}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{DD2AAF38-DEEB-45C9-ABF9-F53968EF1275}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe
FirewallRules: [{55D7E62B-72B1-4A16-AD0F-CFD266B75E6D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe
FirewallRules: [{DF5B66A5-A5E1-47F4-A76B-76ACE88F1F7C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3507\Agent.exe
FirewallRules: [{7DB5C68F-B109-49B7-A904-3FAB94D8BD87}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3507\Agent.exe
FirewallRules: [{6B74561C-0191-4149-8379-EC79770141F6}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe
FirewallRules: [{56D07289-0359-456A-97A5-949D2BC55542}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe
FirewallRules: [{BC601F79-4586-4DA9-B2B9-790EA7830331}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3454\Agent.exe
FirewallRules: [{899A595D-D1F2-4C03-98D6-176FC00764A8}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3454\Agent.exe
FirewallRules: [{1A4DFB0A-843B-46E4-A73F-38FFB407DCE1}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3427\Agent.exe
FirewallRules: [{50B574E4-2DFE-4CF3-A07C-617AFA283A0C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3427\Agent.exe
FirewallRules: [{E5112269-BD23-4BC0-9C02-CC30C1E4511D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3372\Agent.exe
FirewallRules: [{15B49371-EB53-4B34-A11E-0993B9C93522}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3372\Agent.exe
FirewallRules: [{088CD39A-CC24-441C-B130-E56F3D19F1DC}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3346\Agent.exe
FirewallRules: [{9A74DD0E-1076-408D-9DC4-DB0CC1888365}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3346\Agent.exe
FirewallRules: [{BFD92C65-FBBC-4F09-A1EA-6E6AED20D752}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3334\Agent.exe
FirewallRules: [{7160074B-31B9-4D15-8B8D-9BA86FD22EBD}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3334\Agent.exe
FirewallRules: [{30A7550A-CCFF-4028-8380-2227A51540F6}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3332\Agent.exe
FirewallRules: [{DC2F4598-F9AC-472F-AFD6-C2F081510995}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3332\Agent.exe
FirewallRules: [{E8C72ECC-30B1-4196-AB44-A5CAE510B741}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3323\Agent.exe
FirewallRules: [{B95F23EF-CB8D-44FC-81E9-9C8D80F5A112}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3323\Agent.exe
FirewallRules: [{3B39D4F0-9AE2-4E2D-A631-9936578D369B}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3322\Agent.exe
FirewallRules: [{F63B8260-8A15-4C0F-B59C-2D87F7EA053A}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3322\Agent.exe
FirewallRules: [{94C866B5-5A3C-4952-9BCF-53D3AA8971B8}] => (Allow) C:\Program Files\360\360 Internet Security\safemon\360Tray.exe
FirewallRules: [{B32015BA-DA9C-42CC-A9B3-BF7EE9B61DB0}] => (Allow) C:\Program Files\360\360 Internet Security\safemon\360Tray.exe
FirewallRules: [{39465686-17B6-47F8-80CC-29D6413C2C77}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3286\Agent.exe
FirewallRules: [{BBDE35C3-8992-47A6-AF0D-6591AF61D7A3}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3286\Agent.exe
FirewallRules: [{D25A4916-2801-4921-83CB-A27215A378D6}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3235\Agent.exe
FirewallRules: [{9D9A4F0C-CBDD-4152-A9A7-36D3EB221B3D}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3235\Agent.exe
FirewallRules: [{55B1F572-279F-463E-B91F-20B5BF939BF5}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3182\Agent.exe
FirewallRules: [{087D9592-0779-4839-864B-B1F6CA678B20}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3182\Agent.exe
FirewallRules: [{8561F14A-A33A-40AE-92A4-3FB0419176C1}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{30F98FAE-6DF3-434B-B9A0-D14B58DBB35F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{2551E38E-BA83-4870-B076-A0ED7CC91D52}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{7D147A21-54F5-4266-B323-80A66796EDB9}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{07033602-ECC0-429C-896A-EE0AE7C168AC}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3147\Agent.exe
FirewallRules: [{2503D2F9-D44C-4042-8B92-887890461B56}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3147\Agent.exe
FirewallRules: [{BB850706-5DAB-480B-861D-D7C062004C47}] => (Allow) C:\Program Files\360\360 Internet Security\safemon\360Tray.exe
FirewallRules: [{F743E39C-9C15-4E99-8F2C-DF5F78C0A460}] => (Allow) C:\Program Files\360\360 Internet Security\safemon\360Tray.exe
FirewallRules: [{19926F92-5455-43EE-8805-51460E58F2F1}] => (Block) C:\program files (x86)\perfect world entertainment\neverwinter_en\neverwinter\live\gameclient.exe
FirewallRules: [{4C7DE32F-D174-4BE6-8E70-35B378B96DD0}] => (Block) C:\program files (x86)\perfect world entertainment\neverwinter_en\neverwinter\live\gameclient.exe
FirewallRules: [UDP Query User{E3E047EA-E140-4F18-90D6-F9EE2BC194E3}C:\program files (x86)\perfect world entertainment\neverwinter_en\neverwinter\live\gameclient.exe] => (Allow) C:\program files (x86)\perfect world entertainment\neverwinter_en\neverwinter\live\gameclient.exe
FirewallRules: [TCP Query User{B3AF10F4-DB7F-474E-AC36-257E9741D285}C:\program files (x86)\perfect world entertainment\neverwinter_en\neverwinter\live\gameclient.exe] => (Allow) C:\program files (x86)\perfect world entertainment\neverwinter_en\neverwinter\live\gameclient.exe
FirewallRules: [UDP Query User{5C67DAD2-FFD8-4550-8B3F-65A64C71E568}C:\users\legros\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\legros\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [TCP Query User{2E5BBBDE-7B27-47DD-B869-FE966ECD7004}C:\users\legros\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\legros\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{6403EE51-ACD9-4E2A-B159-3477092CD91A}C:\program files\singularity\slvoice.exe] => (Allow) C:\program files\singularity\slvoice.exe
FirewallRules: [TCP Query User{97801BEC-28E2-4E14-B26D-11A706241EBF}C:\program files\singularity\slvoice.exe] => (Allow) C:\program files\singularity\slvoice.exe
FirewallRules: [UDP Query User{B5F6A6AA-A59F-4149-9D3C-AE32F573A51F}C:\users\legros\downloads\prototype 2 pc full game + radnet dlc ^^nosteam^^\prototype 2\prototype2.exe] => (Allow) C:\users\legros\downloads\prototype 2 pc full game + radnet dlc ^^nosteam^^\prototype 2\prototype2.exe
FirewallRules: [TCP Query User{6E8F2F7E-0A66-4268-8949-5579621CE5B1}C:\users\legros\downloads\prototype 2 pc full game + radnet dlc ^^nosteam^^\prototype 2\prototype2.exe] => (Allow) C:\users\legros\downloads\prototype 2 pc full game + radnet dlc ^^nosteam^^\prototype 2\prototype2.exe
FirewallRules: [UDP Query User{15237D88-AC13-46ED-9952-F2D0AA93F140}C:\users\legros\downloads\utorrent (1).exe] => (Allow) C:\users\legros\downloads\utorrent (1).exe
FirewallRules: [TCP Query User{DC81548E-42B1-425A-943E-28D621F77CA2}C:\users\legros\downloads\utorrent (1).exe] => (Allow) C:\users\legros\downloads\utorrent (1).exe
FirewallRules: [UDP Query User{95E1BDE3-BE82-4D4C-94B4-4F7E6437AC50}C:\program files (x86)\darkstorm\slvoice.exe] => (Block) C:\program files (x86)\darkstorm\slvoice.exe
FirewallRules: [TCP Query User{D3385E05-83E3-4690-AAD0-F3F683D67130}C:\program files (x86)\darkstorm\slvoice.exe] => (Block) C:\program files (x86)\darkstorm\slvoice.exe
FirewallRules: [{870FC3E0-8A0B-42AB-8A39-4F77DF7EE9D7}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
FirewallRules: [UDP Query User{7613B7F2-0B86-45B6-A440-9B0141596FA6}C:\program files (x86)\firestorm-beta\slvoice.exe] => (Block) C:\program files (x86)\firestorm-beta\slvoice.exe
FirewallRules: [TCP Query User{D29F34CB-09FA-4CCF-B61E-98B65A3EFAE4}C:\program files (x86)\firestorm-beta\slvoice.exe] => (Block) C:\program files (x86)\firestorm-beta\slvoice.exe
FirewallRules: [UDP Query User{A6DD4442-EA7C-4C0A-853F-DC41AEDE8FD7}C:\program files\singularity\slvoice.exe] => (Block) C:\program files\singularity\slvoice.exe
FirewallRules: [TCP Query User{FA27217B-FACE-48E4-8EB9-AB1753E1F6C9}C:\program files\singularity\slvoice.exe] => (Block) C:\program files\singularity\slvoice.exe
FirewallRules: [UDP Query User{8B4D43CA-5C71-431A-857A-A8756CE2521E}C:\program files (x86)\inworldzbeta\iwvoice.exe] => (Block) C:\program files (x86)\inworldzbeta\iwvoice.exe
FirewallRules: [TCP Query User{AA65283C-D3EA-4A4F-B691-FCF8B442FA69}C:\program files (x86)\inworldzbeta\iwvoice.exe] => (Block) C:\program files (x86)\inworldzbeta\iwvoice.exe
FirewallRules: [{A472BBA5-AD97-4EF3-8033-1DDB6DB57D94}] => (Allow) C:\Nexon\Vindictus EU\en-EU\NMService.exe
FirewallRules: [{51729CFE-BACB-4685-B782-BF7D76C7051A}] => (Allow) C:\Nexon\Vindictus EU\en-EU\NMService.exe
FirewallRules: [{E0FFF928-8B5A-4C11-B557-37D0C44AB829}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe
FirewallRules: [{53AD6CF6-045E-4BA9-BE40-7CA60EFCA60F}] => (Allow) C:\ProgramData\NexonEU\NGM\NGM.exe
FirewallRules: [{1FF42B3B-EB40-420F-B776-8A995EE07436}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2380\Agent.exe
FirewallRules: [{5C306C97-E336-4B40-A4E2-506AED862211}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2380\Agent.exe
FirewallRules: [UDP Query User{869B691A-584F-40A3-A783-41F85AEC38C5}C:\gunz2\gunz2_europe.exe] => (Allow) C:\gunz2\gunz2_europe.exe
FirewallRules: [TCP Query User{D9C26446-54CE-4253-BE96-8191CCE31B06}C:\gunz2\gunz2_europe.exe] => (Allow) C:\gunz2\gunz2_europe.exe
FirewallRules: [UDP Query User{775B21AD-1FC7-4A97-94DF-A935C7631447}C:\users\legros\desktop\incognito-the end\slvoice.exe] => (Block) C:\users\legros\desktop\incognito-the end\slvoice.exe
FirewallRules: [TCP Query User{20B4560E-49AB-4AFA-845A-6E8C447D8BB4}C:\users\legros\desktop\incognito-the end\slvoice.exe] => (Block) C:\users\legros\desktop\incognito-the end\slvoice.exe
FirewallRules: [{A8B97E72-23D2-4DA5-BE6E-3EE6195736EC}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2328\Agent.exe
FirewallRules: [{793B10EE-FB54-405A-8838-950D1DC8F819}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2328\Agent.exe
FirewallRules: [UDP Query User{CE4D743B-4A32-4EBA-9011-DC96BEA48750}C:\program files (x86)\gazillion entertainment\marvel heroes game\unrealengine3\binaries\win32\marvelgame.exe] => (Allow) C:\program files (x86)\gazillion entertainment\marvel heroes game\unrealengine3\binaries\win32\marvelgame.exe
FirewallRules: [TCP Query User{D4022DC4-29E1-4296-9ECD-8E905FB27A95}C:\program files (x86)\gazillion entertainment\marvel heroes game\unrealengine3\binaries\win32\marvelgame.exe] => (Allow) C:\program files (x86)\gazillion entertainment\marvel heroes game\unrealengine3\binaries\win32\marvelgame.exe
FirewallRules: [UDP Query User{2F2BD02F-DD9A-46D8-8AF5-7612895FAC75}C:\program files (x86)\secondlifeviewer\slvoice.exe] => (Allow) C:\program files (x86)\secondlifeviewer\slvoice.exe
FirewallRules: [TCP Query User{56C3974C-4D98-4C52-A04B-A11ECE31CE9E}C:\program files (x86)\secondlifeviewer\slvoice.exe] => (Allow) C:\program files (x86)\secondlifeviewer\slvoice.exe
FirewallRules: [{B8590DA3-0EC1-4572-95BE-87C80F286EDE}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2045\Agent.exe
FirewallRules: [{EE04A7F5-FB55-4637-B01E-6D9ECAE47118}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2045\Agent.exe
FirewallRules: [{8D682626-B930-4605-BEE6-8CC23952EF67}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1544\Agent.exe
FirewallRules: [{068664C5-504E-4931-92E8-8A305228F1B8}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1544\Agent.exe
FirewallRules: [UDP Query User{3BF25D9B-01EC-4E33-A619-478B47EA4CE2}C:\users\public\sony online entertainment\installed games\dc universe online\unreal3\binaries\win32\dcgame.exe] => (Block) C:\users\public\sony online entertainment\installed games\dc universe online\unreal3\binaries\win32\dcgame.exe
FirewallRules: [TCP Query User{B365D069-351F-4396-A784-84FFA65C7A52}C:\users\public\sony online entertainment\installed games\dc universe online\unreal3\binaries\win32\dcgame.exe] => (Block) C:\users\public\sony online entertainment\installed games\dc universe online\unreal3\binaries\win32\dcgame.exe
FirewallRules: [UDP Query User{88910ECF-3CAC-4112-8A0F-FA7B70FD7209}C:\users\legros\downloads\prototype 2 pc full game + radnet dlc ^^nosteam^^\prototype 2\prototype2.exe] => (Allow) C:\users\legros\downloads\prototype 2 pc full game + radnet dlc ^^nosteam^^\prototype 2\prototype2.exe
FirewallRules: [TCP Query User{96BD52F9-B547-47B1-B407-24CDE1358984}C:\users\legros\downloads\prototype 2 pc full game + radnet dlc ^^nosteam^^\prototype 2\prototype2.exe] => (Allow) C:\users\legros\downloads\prototype 2 pc full game + radnet dlc ^^nosteam^^\prototype 2\prototype2.exe
FirewallRules: [{F18AB8D4-B270-4093-AD2D-E560A95592D3}] => (Allow) C:\Program Files (x86)\LucasArts\Star Wars The Force Unleashed 2\SWTFU2.exe
FirewallRules: [{46A55772-1B7A-4958-9667-C9EB326E47D4}] => (Allow) C:\Program Files (x86)\LucasArts\Star Wars The Force Unleashed 2\SWTFU2.exe
FirewallRules: [UDP Query User{9FA458CF-1E54-45C3-9349-123D5246F0FF}C:\program files (x86)\java\jre7\bin\java.exe] => (Allow) C:\program files (x86)\java\jre7\bin\java.exe
FirewallRules: [TCP Query User{BC0A1B21-2319-41F0-B000-F9737CD467D5}C:\program files (x86)\java\jre7\bin\java.exe] => (Allow) C:\program files (x86)\java\jre7\bin\java.exe
FirewallRules: [UDP Query User{83F01A7C-22CC-48B5-8CB6-410BE7B98EF4}C:\program files (x86)\singularity\slvoice.exe] => (Block) C:\program files (x86)\singularity\slvoice.exe
FirewallRules: [TCP Query User{F7737FB3-88C2-4F50-BD31-4FEAE11D9E4A}C:\program files (x86)\singularity\slvoice.exe] => (Block) C:\program files (x86)\singularity\slvoice.exe
FirewallRules: [{B9E7ACA3-7877-4A9C-9ED4-B1ABB2B126F4}] => (Block) C:\program files\autodesk\maya2014\bin\maya.exe
FirewallRules: [{786F2FDB-A861-4F69-BD59-F4620752FA9D}] => (Block) C:\program files\autodesk\maya2014\bin\maya.exe
FirewallRules: [UDP Query User{A754EC69-CBB1-4658-B966-818247EBADDE}C:\program files\autodesk\maya2014\bin\maya.exe] => (Allow) C:\program files\autodesk\maya2014\bin\maya.exe
FirewallRules: [TCP Query User{E5478702-4BC9-4137-926B-C229E803BE76}C:\program files\autodesk\maya2014\bin\maya.exe] => (Allow) C:\program files\autodesk\maya2014\bin\maya.exe
FirewallRules: [{364EDB0A-C48A-4AEC-96D8-EBDD1EABA17F}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\server.exe
FirewallRules: [{392D4EF7-8DD4-43E4-B3B2-E16CAE81A0C8}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\server.exe
FirewallRules: [{DE537E09-0B64-4925-A77B-45BFA32A40A9}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\manager.exe
FirewallRules: [{45E579BE-D0AD-4C4A-886A-9C16DB69B709}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\manager.exe
FirewallRules: [{59411067-AA60-4A8A-A6B6-115D7C44BC59}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\monitor.exe
FirewallRules: [{2545CA85-74BD-45AA-95D1-18F3AEA56276}] => (Allow) C:\Program Files (x86)\Autodesk\Backburner\monitor.exe
FirewallRules: [{67AD6164-2BD0-47E7-980F-F8A06D2ED14F}] => (Allow) C:\Program Files\Ventrilo\Ventrilo.exe
FirewallRules: [{2784DF09-DC47-40E5-BA6D-6CE2F0B8D337}] => (Allow) C:\Program Files\Ventrilo\Ventrilo.exe
FirewallRules: [UDP Query User{9C1FBB2B-1907-42AD-B2E3-123583CC7680}C:\users\public\sony online entertainment\installed games\dc universe online\unreal3\binaries\win32\dcgame.exe] => (Allow) C:\users\public\sony online entertainment\installed games\dc universe online\unreal3\binaries\win32\dcgame.exe
FirewallRules: [TCP Query User{3676B4D2-5AC3-448C-9DC2-557EF2020AAF}C:\users\public\sony online entertainment\installed games\dc universe online\unreal3\binaries\win32\dcgame.exe] => (Allow) C:\users\public\sony online entertainment\installed games\dc universe online\unreal3\binaries\win32\dcgame.exe
FirewallRules: [UDP Query User{23AFC1BB-A273-4FC0-AF6B-53A1AF8364E8}C:\program files (x86)\darkstorm\slvoice.exe] => (Block) C:\program files (x86)\darkstorm\slvoice.exe
FirewallRules: [TCP Query User{D723C575-4B7E-42D2-84E4-CB7460B35711}C:\program files (x86)\darkstorm\slvoice.exe] => (Block) C:\program files (x86)\darkstorm\slvoice.exe
FirewallRules: [{2F652A56-6F30-4765-99B9-1D32CF4E45FA}] => (Allow) C:\Program Files\METAbolt (64 bit)\METAbolt.exe
FirewallRules: [{BCA2B99C-4A7A-4AD0-A08F-7F9F79F73372}] => (Allow) C:\Program Files\METAbolt (64 bit)\METAbolt Auto Updater.exe
FirewallRules: [UDP Query User{60CD3782-8621-446E-ADC5-DE3B0C4E1514}C:\users\public\games\cryptic studios\neverwinter\live\gameclient.exe] => (Allow) C:\users\public\games\cryptic studios\neverwinter\live\gameclient.exe
FirewallRules: [TCP Query User{1C90114F-EF8F-41A7-B98B-CCE0959B58B1}C:\users\public\games\cryptic studios\neverwinter\live\gameclient.exe] => (Allow) C:\users\public\games\cryptic studios\neverwinter\live\gameclient.exe
FirewallRules: [UDP Query User{8526EE97-6904-44F6-BB84-01AE65604490}C:\program files (x86)\google\chrome\application\chrome.exe] => (Block) C:\program files (x86)\google\chrome\application\chrome.exe
FirewallRules: [TCP Query User{96C40CFE-F2B9-4B24-ABE4-9E40FD154EC3}C:\program files (x86)\google\chrome\application\chrome.exe] => (Block) C:\program files (x86)\google\chrome\application\chrome.exe
FirewallRules: [{B926634D-81EA-4F39-93DE-D19114486B8D}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{1A67ABF6-E8C2-4FE5-B751-528D2935A440}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{B2FAC4CF-F721-4F15-AB9C-D6D7B4C3EEF4}] => (Block) C:\program files (x86)\guild wars 2\gw2.exe
FirewallRules: [{5C5729AB-308D-4CB2-95EB-73F0D0E29697}] => (Block) C:\program files (x86)\guild wars 2\gw2.exe
FirewallRules: [UDP Query User{8C9789E5-AED0-4EDF-8A3F-73282C47AAD5}C:\program files (x86)\guild wars 2\gw2.exe] => (Allow) C:\program files (x86)\guild wars 2\gw2.exe
FirewallRules: [TCP Query User{08CE46E9-E57F-4FAD-BD75-60AD07640ED8}C:\program files (x86)\guild wars 2\gw2.exe] => (Allow) C:\program files (x86)\guild wars 2\gw2.exe
FirewallRules: [UDP Query User{C6AF7276-3E9B-4654-8C35-C07C4BF787F9}C:\users\legros\appdata\local\temp\gw2.exe] => (Allow) C:\users\legros\appdata\local\temp\gw2.exe
FirewallRules: [TCP Query User{D2F63A20-CB47-466D-874C-3BDFC3508E58}C:\users\legros\appdata\local\temp\gw2.exe] => (Allow) C:\users\legros\appdata\local\temp\gw2.exe
FirewallRules: [UDP Query User{F9354177-E7E5-4A93-9EAB-AB52002CC8E8}C:\users\public\sony online entertainment\installed games\planetside 2 psg\planetside2.exe] => (Allow) C:\users\public\sony online entertainment\installed games\planetside 2 psg\planetside2.exe
FirewallRules: [TCP Query User{E7779108-3867-4083-A65F-B2CC88371BE8}C:\users\public\sony online entertainment\installed games\planetside 2 psg\planetside2.exe] => (Allow) C:\users\public\sony online entertainment\installed games\planetside 2 psg\planetside2.exe
FirewallRules: [{DB696307-A529-416B-99D4-F334F409281B}] => (Allow) C:\ProgramData\HappyCloud\Cache\TERA\Client\Binaries\TERA.exe
FirewallRules: [{3E2DB692-16AA-4E9A-9233-7B5B3B51A23F}] => (Allow) C:\ProgramData\HappyCloud\Cache\TERA\Client\Binaries\TERA.exe
FirewallRules: [{03DD2C2A-8C9C-4731-877E-1D9A8A62FE1C}] => (Allow) C:\ProgramData\HappyCloud\Cache\TERA\Client\TL.exe
FirewallRules: [{F524F3ED-BDFE-425B-BE37-7C03CC1457E1}] => (Allow) C:\ProgramData\HappyCloud\Cache\TERA\Client\TL.exe
FirewallRules: [{512A1FC2-D64E-44A7-AF62-62FFC115E087}] => (Allow) C:\ProgramData\HappyCloud\Cache\TERA\TERA-Launcher.exe
FirewallRules: [{672B8C2E-2155-4A3D-B2F6-9B778AF825C5}] => (Allow) C:\ProgramData\HappyCloud\Cache\TERA\TERA-Launcher.exe
FirewallRules: [UDP Query User{5463EFFE-53E0-4218-B8AC-16CB227CBC2A}C:\program files (x86)\singularity\slvoice.exe] => (Allow) C:\program files (x86)\singularity\slvoice.exe
FirewallRules: [TCP Query User{8D250205-ECFB-43C0-964D-489DF7925442}C:\program files (x86)\singularity\slvoice.exe] => (Allow) C:\program files (x86)\singularity\slvoice.exe
FirewallRules: [UDP Query User{E367681D-E1DE-4AE2-A03C-17E54DF36EA5}C:\program files (x86)\java\jre7\bin\java.exe] => (Allow) C:\program files (x86)\java\jre7\bin\java.exe
FirewallRules: [TCP Query User{1F8A5EC3-3F1C-413E-A65C-D6780D89BD96}C:\program files (x86)\java\jre7\bin\java.exe] => (Allow) C:\program files (x86)\java\jre7\bin\java.exe
FirewallRules: [UDP Query User{0A4B8737-6829-43B2-B25C-D081A76E60D9}C:\program files (x86)\secondlifeviewer\slvoice.exe] => (Allow) C:\program files (x86)\secondlifeviewer\slvoice.exe
FirewallRules: [TCP Query User{34EDF31B-729A-4750-8464-F0E18F935A1C}C:\program files (x86)\secondlifeviewer\slvoice.exe] => (Allow) C:\program files (x86)\secondlifeviewer\slvoice.exe
FirewallRules: [{84219B72-3CAD-4E69-B197-9AB7518BEFBB}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe
FirewallRules: [{8654B3AF-9540-445C-B915-95DDC0077B80}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe
FirewallRules: [{3D1454DC-6A49-40E7-BD1B-776A58B5471E}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.5.0\DriverBooster.exe
FirewallRules: [{6753E4AE-917E-45BF-B2A1-4D4574267692}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.5.0\DriverBooster.exe
FirewallRules: [{BF72EF0B-1465-4458-8758-77299B5D42FB}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.5.0\DBDownloader.exe
FirewallRules: [{D8668CA0-D7EA-477B-91C5-051E151AB458}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.5.0\DBDownloader.exe
FirewallRules: [{04C13C1C-AA02-4692-92A2-B31939BCE482}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.5.0\AutoUpdate.exe
FirewallRules: [{EDC363FC-3F05-4AE0-8B89-1FFCB1E34417}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.5.0\AutoUpdate.exe
FirewallRules: [{4A564EBB-ACB4-4C3F-A987-60F4E4B20C0F}] => (Allow) C:\Users\legros\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{FC2681D7-EA8B-4CFA-87D9-03E15ED8A338}] => (Allow) C:\Users\legros\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{0A4D4CD4-2FD6-446C-BE30-C2B2991CBCCA}C:\program files (x86)\firestormos-private-desktop-qs2m6h6\slvoice.exe] => (Allow) C:\program files (x86)\firestormos-private-desktop-qs2m6h6\slvoice.exe
FirewallRules: [UDP Query User{40C5CB45-86DB-4F8E-9A61-A13EFE8366E4}C:\program files (x86)\firestormos-private-desktop-qs2m6h6\slvoice.exe] => (Allow) C:\program files (x86)\firestormos-private-desktop-qs2m6h6\slvoice.exe
FirewallRules: [TCP Query User{EE4C1333-64E0-446D-A639-22FAF15DA1F7}C:\program files (x86)\destiny 2\destiny2.exe] => (Allow) C:\program files (x86)\destiny 2\destiny2.exe
FirewallRules: [UDP Query User{AC7DC604-1AEB-4A15-9673-0EE448931108}C:\program files (x86)\destiny 2\destiny2.exe] => (Allow) C:\program files (x86)\destiny 2\destiny2.exe
FirewallRules: [TCP Query User{9F5EACCA-AB00-48C5-B087-28DBC327A08E}C:\program files (x86)\steam\steamapps\common\gigantic\arc\arcchat.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\gigantic\arc\arcchat.exe
FirewallRules: [UDP Query User{87A6819A-8D64-4AE4-A6FF-7351F3343268}C:\program files (x86)\steam\steamapps\common\gigantic\arc\arcchat.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\gigantic\arc\arcchat.exe
FirewallRules: [TCP Query User{84EA3B91-084D-4523-94C9-8595B7E6C444}C:\program files (x86)\steam\steamapps\common\gigantic\binaries\win64\rxgame-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\gigantic\binaries\win64\rxgame-win64-shipping.exe
FirewallRules: [UDP Query User{96CACDBF-98B4-49FE-A0B3-95440EA7071E}C:\program files (x86)\steam\steamapps\common\gigantic\binaries\win64\rxgame-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\gigantic\binaries\win64\rxgame-win64-shipping.exe
FirewallRules: [{5AD71A82-CBD9-412B-A7BC-B0E74EEE387D}] => (Allow) C:\Program Files\SoftEther VPN Client\vpncmgr.exe
FirewallRules: [{FC19545E-FF3F-40DA-837B-03B2C4243559}] => (Allow) C:\Program Files\SoftEther VPN Client\vpnclient.exe
FirewallRules: [{5962A4EA-CB76-444C-971F-D5E5211CDB01}] => (Allow) C:\Program Files\SoftEther VPN Client\vpnclient_x64.exe
FirewallRules: [{4C56A7AF-F147-4ED5-A4F0-B90E6312AD71}] => (Allow) C:\Program Files\SoftEther VPN Client\vpncmgr_x64.exe
FirewallRules: [{B4E36ECA-CF8D-4306-8D98-F2C31EF26522}] => (Allow) C:\Program Files\SoftEther VPN Client\vpncmd.exe
FirewallRules: [{B11E825D-12A5-4B08-8397-F699DF96877D}] => (Allow) C:\Program Files\SoftEther VPN Client\vpncmd_x64.exe
FirewallRules: [TCP Query User{0486CB94-903A-49D5-B524-742D84249DA2}C:\gameon\bless\binaries\win64\bless.exe] => (Allow) C:\gameon\bless\binaries\win64\bless.exe
FirewallRules: [UDP Query User{90A46869-1CC9-4349-8890-0C649BF9F0FD}C:\gameon\bless\binaries\win64\bless.exe] => (Allow) C:\gameon\bless\binaries\win64\bless.exe
FirewallRules: [{0E20D4BF-EF32-4448-8CDA-A140560C65AE}] => (Block) C:\gameon\bless\binaries\win64\bless.exe
FirewallRules: [{0D4ADF86-4E26-41F9-B5C1-59D12E0B693A}] => (Block) C:\gameon\bless\binaries\win64\bless.exe
FirewallRules: [{CF9F3606-F010-4CEA-954E-365D0E57D34C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{FA4C28E2-9032-4504-BCAB-116E9A58B1FD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [TCP Query User{3030B7FF-E9F7-4A4A-951E-D46D59B0DD57}C:\program files (x86)\steam\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\realm royale\binaries\win64\realm.exe
FirewallRules: [UDP Query User{36081EDC-1778-44FE-BB1C-FE216A7BE2EF}C:\program files (x86)\steam\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\realm royale\binaries\win64\realm.exe
FirewallRules: [TCP Query User{889578FB-E1FA-4D1B-8260-CA11A0C07EB5}C:\program files (x86)\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe
FirewallRules: [UDP Query User{878D5564-16A0-4D79-A1FB-4E180B999FFA}C:\program files (x86)\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe
FirewallRules: [TCP Query User{E7912980-7EB5-464E-94E1-6532096C9135}C:\program files (x86)\steam\steamapps\common\for honor\forhonor.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\for honor\forhonor.exe
FirewallRules: [UDP Query User{393336E8-3669-4449-A154-E7C002CCDB29}C:\program files (x86)\steam\steamapps\common\for honor\forhonor.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\for honor\forhonor.exe
FirewallRules: [{EE606500-3572-45AC-9C18-9574769F101D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe
FirewallRules: [{19278970-C4E4-40B9-A6D6-47102727B199}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\killingfloor2\Binaries\Win64\KFGame.exe
FirewallRules: [{AF1DD668-6F8B-466B-87B6-E3650988F6F1}] => (Allow) C:\Program Files (x86)\OSTotoSoft\DriverTalent\DriverTalent.exe
FirewallRules: [{50065C4E-6EFE-461E-8FB0-043B3CC68BC5}] => (Allow) C:\Program Files (x86)\OSTotoSoft\DriverTalent\LDrvSvc.dll
FirewallRules: [{AA32BE75-1491-4F74-8C6A-AEAA04852E43}] => (Allow) C:\Program Files (x86)\OSTotoSoft\DriverTalent\download\MiniThunderPlatform.exe
FirewallRules: [{39A67C8F-8A4D-4A73-A436-C8DBC8D659DD}] => (Allow) C:\Program Files (x86)\OSTotoSoft\DriverTalent\DTLService.exe
FirewallRules: [TCP Query User{9EC8C7D7-7E52-4652-B280-91D265731B70}C:\users\legros\appdata\local\gamecenter\gamecenter.exe] => (Allow) C:\users\legros\appdata\local\gamecenter\gamecenter.exe
FirewallRules: [UDP Query User{0D5B1905-C5AE-4B09-84DE-FAC22079F5DA}C:\users\legros\appdata\local\gamecenter\gamecenter.exe] => (Allow) C:\users\legros\appdata\local\gamecenter\gamecenter.exe
FirewallRules: [{12A411CC-D244-46DB-9209-E73631F2C801}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Deceit\bin\win_x64\Deceit.exe
FirewallRules: [{955EDF57-2600-4BB5-8429-5474D7BE3444}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Deceit\bin\win_x64\Deceit.exe
FirewallRules: [TCP Query User{F3997CEF-832B-419D-B91D-36D47106854D}C:\program files (x86)\steam\steamapps\common\hunt showdown\bin\win_x64\huntgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\hunt showdown\bin\win_x64\huntgame.exe
FirewallRules: [UDP Query User{A3A18E61-F036-49DF-A215-52D0DE9D6CF4}C:\program files (x86)\steam\steamapps\common\hunt showdown\bin\win_x64\huntgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\hunt showdown\bin\win_x64\huntgame.exe
FirewallRules: [{A8C2B19D-EF37-4CBD-87DC-66B590F0B4FF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Paladins\Binaries\Win32\HirezBridge.exe
FirewallRules: [{57818199-E4C8-4245-B55B-1ECCC97D88D7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Paladins\Binaries\Win32\HirezBridge.exe
FirewallRules: [TCP Query User{D71B53DC-F3B0-4F0B-9289-009C8C272C23}C:\program files (x86)\steam\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\paladins\binaries\win64\paladins.exe
FirewallRules: [UDP Query User{2D252A3A-F0F1-4BAC-9E98-0CDE6783E1B4}C:\program files (x86)\steam\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\paladins\binaries\win64\paladins.exe
FirewallRules: [{E814E07B-74C3-4F33-9A73-6CB1D2ABC9DE}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
FirewallRules: [{BDE0D1E9-0EC2-45D7-91E2-1C25A7FCA420}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
FirewallRules: [{AA759901-71A1-4FB9-9C26-85DE3869BDEC}] => (Allow) C:\Users\legros\Downloads\bin\BlackDesert32.exe
FirewallRules: [{77C5A2A6-A214-4AEE-A959-F7A289E33838}] => (Allow) C:\Users\legros\Downloads\bin64\BlackDesert64.exe
FirewallRules: [{0DE762F9-7466-43AA-BFCE-13AFADF1FBC4}] => (Allow) C:\Users\legros\Downloads\BlackDesert_Launcher.exe
FirewallRules: [{09605A55-B0AF-4E0D-B828-0AC7E7BCFC81}] => (Allow) C:\Users\legros\Downloads\BlackDesert_Downloader.exe
FirewallRules: [{A4598C6B-9D60-44FE-BC72-2EE0FDE8FE0A}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe
FirewallRules: [{044BFF2A-A007-407E-BB83-8D728F4B5248}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe
FirewallRules: [{D6BAA0AD-668C-454A-B81D-E2773078BC41}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bless Online\Launcher\BlessLauncher.exe
FirewallRules: [{63F02B2C-6899-4040-8522-1F4CA08F219F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bless Online\Launcher\BlessLauncher.exe
FirewallRules: [TCP Query User{5B30782F-A187-4B51-A3A4-20C8312EF10B}C:\program files (x86)\world of warcraft\utils\wowvoiceproxy.exe] => (Allow) C:\program files (x86)\world of warcraft\utils\wowvoiceproxy.exe
FirewallRules: [UDP Query User{255F7A41-B774-43C7-825E-6D6E5EAE88D1}C:\program files (x86)\world of warcraft\utils\wowvoiceproxy.exe] => (Allow) C:\program files (x86)\world of warcraft\utils\wowvoiceproxy.exe
FirewallRules: [TCP Query User{C2533CFD-BEB7-4046-B17D-10DACAD25240}C:\program files (x86)\steam\steamapps\common\bless online\binaries\win64\bless.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\bless online\binaries\win64\bless.exe
FirewallRules: [UDP Query User{FB467555-271C-4C6F-9954-B6CEB89E7C9D}C:\program files (x86)\steam\steamapps\common\bless online\binaries\win64\bless.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\bless online\binaries\win64\bless.exe
FirewallRules: [{2336C339-6AC1-47E7-ADD3-77849A9867A4}] => (Block) %ProgramFiles%\Marvelous Designer 7 Enterprise\MarvelousDesigner7_Enterprise_x64.exe
FirewallRules: [{E2EB30EA-09EF-497C-AC2E-907462E44552}] => (Block) %ProgramFiles%\Marvelous Designer 7 Enterprise\MarvelousDesigner7_Enterprise_x64.exe
FirewallRules: [{0C5B51A1-9CC9-46CB-B66D-C72391A7DA7D}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{0CD635E1-89BE-4D37-91B9-4F6418DC573C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{A45690B3-F592-4BEA-8C5C-D674163E44A6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{BF5C5BDA-F72F-42DE-B26D-AB8B38A7CF36}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{C253B460-4769-4E45-BFAA-1E3FD4E0F5D9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
 
==================== Points de restauration =========================
 
21-11-2018 23:05:01 Programme d’installation pour les modules Windows
23-11-2018 01:04:22 Programme d’installation pour les modules Windows
24-11-2018 03:04:01 Programme d’installation pour les modules Windows
25-11-2018 05:04:38 Programme d’installation pour les modules Windows
26-11-2018 17:04:49 Programme d’installation pour les modules Windows
27-11-2018 19:10:47 Programme d’installation pour les modules Windows
29-11-2018 01:02:00 Programme d’installation pour les modules Windows
30-11-2018 03:02:54 Programme d’installation pour les modules Windows
01-12-2018 05:03:54 Programme d’installation pour les modules Windows
02-12-2018 06:30:31 Programme d’installation pour les modules Windows
 
==================== Éléments en erreur du Gestionnaire de périphériques =============
 
 
==================== Erreurs du Journal des événements: =========================
 
Erreurs Application:
==================
Error: (12/02/2018 07:04:53 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: HOWDY-PC)
Description: httphttp-2147467263
 
Error: (12/02/2018 06:25:41 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: HOWDY-PC)
Description: httphttp-2147467263
 
Error: (12/02/2018 06:25:40 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: HOWDY-PC)
Description: httphttp-2147467263
 
Error: (12/02/2018 06:23:12 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: HOWDY-PC)
Description: httphttp-2147467263
 
Error: (12/02/2018 06:23:11 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: HOWDY-PC)
Description: httphttp-2147467263
 
Error: (12/02/2018 06:06:39 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: HOWDY-PC)
Description: httphttp-2147467263
 
Error: (12/02/2018 06:05:28 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: HOWDY-PC)
Description: httphttp-2147467263
 
Error: (12/02/2018 07:22:48 AM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: HOWDY-PC)
Description: httphttp-2147467263
 
 
Erreurs système:
=============
Error: (12/02/2018 07:27:56 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT)
Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Exécution pour l’application serveur COM avec le CLSID 
Windows.SecurityCenter.WscBrokerManager
 et l’APPID 
Non disponible
 au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Error: (12/02/2018 07:26:50 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Le service Gestionnaire des cartes téléchargées est en attente de démarrage.
 
Error: (12/02/2018 07:22:33 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Le service Service de transfert intelligent en arrière-plan est en attente de démarrage.
 
Error: (12/02/2018 07:21:44 PM) (Source: DCOM) (EventID: 10016) (User: HOWDY-PC)
Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 et l’APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 au SID HOWDY-PC\legros de l’utilisateur (S-1-5-21-548831312-2294392190-3545656745-1000) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Error: (12/02/2018 07:19:18 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT)
Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 et l’APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Error: (12/02/2018 07:19:18 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT)
Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 et l’APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Error: (12/02/2018 07:18:13 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Le service NetTcpActivator dépend du service NetTcpPortSharing qui n’a pas pu démarrer en raison de l’erreur : 
Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle.
 
Error: (12/02/2018 07:18:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service NetTcpPortSharing n’a pas pu démarrer en raison de l’erreur : 
Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle.
 
 
Windows Defender:
===================================
Date: 2018-11-29 01:08:39.470
Description: 
L’analyse Antivirus Windows Defender a été arrêtée avant la fin.
ID de l’analyse : {D00795BB-7030-4C11-B13E-02DC765B97F9}
Type de l’analyse : Logiciel anti-programme malveillant
Paramètres de l’analyse : Analyse rapide
Utilisateur : AUTORITE NT\Système
 
Date: 2018-11-29 01:06:34.811
Description: 
L’analyse Antivirus Windows Defender a été arrêtée avant la fin.
ID de l’analyse : {C7C4F64A-B868-4E9E-B25E-B01912F3D04D}
Type de l’analyse : Logiciel anti-programme malveillant
Paramètres de l’analyse : Analyse rapide
Utilisateur : AUTORITE NT\Système
 
Date: 2018-11-26 18:10:43.943
Description: 
Antivirus Windows Defender a détecté un logiciel malveillant ou potentiellement indésirable.
Pour plus d’informations, reportez-vous aux éléments suivants :
Nom : Trojan:Win32/Spursint.F!cl
ID : 2147717281
Gravité : Grave
Catégorie : Cheval de Troie
Chemin : file:_C:\Users\legros\Downloads\Charmed.2018.S01E07.Out.of.Scythe.720p.WEBRip.2CH.x265.HEVC-PSA (1).rar; webfile:_C:\Users\legros\Downloads\Charmed.2018.S01E07.Out.of.Scythe.720p.WEBRip.2CH.x265.HEVC-PSA (1).rar|http://s9.cloudyfiles.me:8080/d/xhsmqzvxp7c26xze3lxzvxu4miqi45wfk6ucp4clxxgnreaxlmszuata63qatfujyej23bog/Charmed.2018.S01E07.Out.of.Scythe.720p.WEBRip.2CH.x265.HEVC-PSA.rar|pid:16108,ProcessStart:131877194003052358
Origine de la détection : Internet
Type de détection : Chemin rapide
Source de détection : Téléchargements et pièces jointes
Utilisateur : HOWDY-PC\legros
Nom du processus : Unknown
Version de la signature : AV: 1.281.844.0, AS: 1.281.844.0, NIS: 1.281.844.0
Version du moteur : AM: 1.1.15400.5, NIS: 1.1.15400.5
 
Date: 2018-11-23 00:49:58.707
Description: 
Antivirus Windows Defender a rencontré une erreur lors d la mise à jour des signatures.
Nouvelle version de la signature : 
Version précédente de la signature : 1.281.598.0
Source de mise à jour : Serveur Microsoft Update
Type de signature : Anti-virus
Type de mise à jour : Complet
Utilisateur : AUTORITE NT\Système
Version actuelle du moteur : 
Version précédente du moteur : 1.1.15400.5
Code d’erreur : 0x80072efd
Description de l’erreur : Impossible d’établir une connexion avec le serveur 
 
CodeIntegrity:
===================================
 
Date: 2018-11-27 23:46:47.805
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
 
Date: 2018-11-27 23:46:47.684
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
 
Date: 2018-11-27 23:46:47.684
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
 
Date: 2018-11-06 01:50:36.234
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Bluetooth Suite\AthCopyHook.dll that did not meet the Microsoft signing level requirements.
 
Date: 2018-11-06 01:50:36.233
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Bluetooth Suite\AthCopyHook.dll that did not meet the Microsoft signing level requirements.
 
Date: 2018-11-04 06:28:20.088
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Bluetooth Suite\AthCopyHook.dll that did not meet the Microsoft signing level requirements.
 
Date: 2018-11-04 06:28:20.072
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Bluetooth Suite\AthCopyHook.dll that did not meet the Microsoft signing level requirements.
 
Date: 2018-10-05 21:53:31.993
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Bluetooth Suite\AthCopyHook.dll that did not meet the Microsoft signing level requirements.
 
==================== Infos Mémoire =========================== 
 
Processeur: Intel(R) Core(TM) i7-3770K CPU @ 3.50GHz
Pourcentage de mémoire utilisée: 40%
Mémoire physique - RAM - totale: 8159.15 MB
Mémoire physique - RAM - disponible: 4871.39 MB
Mémoire virtuelle totale: 11871.15 MB
Mémoire virtuelle disponible: 8319.94 MB
 
==================== Lecteurs ================================
 
Drive c: () (Fixed) (Total:1396.58 GB) (Free:521.75 GB) NTFS
 
\\?\Volume{7d4a169c-b572-416f-b827-b7f95ef12d13}\ () (Fixed) (Total:0.46 GB) (Free:0.06 GB) NTFS
\\?\Volume{860dde9f-b46e-4bae-b9f2-207f64883a2c}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
 
==================== MBR & Table des partitions ==================
 
========================================================
Disk: 0 (Size: 1397.3 GB) (Disk ID: 3CF78908)
 
Partition: GPT.
 
==================== Fin de Addition.txt ============================
 

It’s possible that your computer has been severely compromised and I’m not going to attempt to clean everything found by FRST but I would like you to run some additional scans to confirm a few things.

You need to move Farbar Recovery Scan Tool to your desktop otherwise fixes will not work.

  • go to your Downloads folder and locate FRST64
  • right click and select Cut
  • go to an empty spot on your desktop, right click and select Paste

Farbar Recovery Scan Tool should now be on your desktop.

================================================

Run Farbar Recovery Scan Tool

Open notepad. Please copy the contents of the code box below and paste it into Notepad.

CloseProcesses:
Unlock: C:\ProgramData\QZBXgBSDLcAil
C:\ProgramData\QZBXgBSDLcAil
Hosts:
EmptyTemp:

NOTE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

  • save the files as fixlist.txt in the same folder as FRST – NOTE: It's important that both files, FRST and fixlist.txt are in the same location or the fix will not work
  • run FRST64 then click Fix just once and wait
  • it will create a log on your desktop, (Fixlog.txt); please post it to your reply.

================================================

Run RogueKiller

IMPORTANT: Please remove any usb or external drives from the computer and close all running programs before you run this scan!

Download RogueKiller to your desktop

  • for Windows Vista/7/8/10, right click -> run as administrator, for XP simply double-click on RogueKiller.exe
  • click on Scan
  • if a Windows opens to explain what [PUM's] are, please read it
  • when it has finished, click on Open Report
  • click on Export Txt and save the file on your Desktop as RKreport.txt
  • copy/paste the content in your next post
  • NOTE: DO NOT attempt to remove anything that the scan detects –everything that is reported is not necessarily bad

===================================================

Run CKScanner

Download CKScanner by askey127 from here & save it to your Desktop.

  • double-click CKScanner.exe then click Search For Files
  • when the cursor hourglass disappears, click Save List To File
  • a message box will verify the file saved
  • double-click the CKFiles.txt icon on your desktop then copy/paste the contents in your next reply.

Logs to include with next post:

Fixlog.txt
RKreport.txt
CKFiles.txt


Thanks

Satchfan

 

Hi Jevykur

It has been several days since I sent my last reply about computer problem.

Please let me know if you are having problems and still need help.

Thanks

Satchfan

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI