Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Computer might have a Malware?


  • Please log in to reply

#1
Zukolol

Zukolol

    New Member

  • Member
  • Pip
  • 7 posts
Hello, my computer has been having many freezes lately (completely stops doing anything for about 10 seconds). I figured it possibly was a driver related issue so I completely cleaned my NVidia drivers and reinstalled a fresh one, but it's still happening; also ran a defragmentation and disk/memory scan, but nothing wrong was found.
 
Unsure if that's relevant, but after performing sfc /scannow with the command prompt, "@AudioToastIcon.png" appeared in the console, googled it but found nothing about it.
 
Anyway, here are the FRST.txt and the Addition.txt. Please note that the scan was done in french even tho I've tried changing my computer language to english and redownloading the .exe, I didn't manage to change its language. If that's really an issue I guess I can translate the french sentences if needed.
 

Résultats d'analyse de  Farbar Recovery Scan Tool (FRST) (x64) Version: 12.05.2018
Exécuté par GUI (administrateur) sur DESKTOP-UL056C5 (12-05-2018 17:46:57)
Exécuté depuis C:\Users\GUI\Desktop
Profils chargés: GUI (Profils disponibles: GUI)
Platform: Windows 10 Home Version 1709 16299.431 (X64) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: Chrome)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processus (Avec liste blanche) =================
 
(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)
 
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Parsec) C:\Program Files\Parsec\pservice.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
() C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1813.286.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(GNE) C:\Users\GUI\Desktop\Tools\dual monitor\SwapScreen.exe
(ShareX Team) C:\Program Files\ShareX\ShareX.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
==================== Registre (Avec liste blanche) ===========================
 
(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)
 
HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9235936 2017-11-16] (Realtek Semiconductor)
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [98024 2018-03-28] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-21-4003686615-4269193129-2528438380-1001\...\Run: [GNE_SwapScreen] => C:\Users\GUI\Desktop\Tools\dual monitor\SwapScreen.exe [166912 2014-01-08] (GNE)
Startup: C:\Users\GUI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ShareX.lnk [2018-05-02]
ShortcutTarget: ShareX.lnk -> C:\Program Files\ShareX\ShareX.exe (ShareX Team)
 
==================== Internet (Avec liste blanche) ====================
 
(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)
 
Tcpip\Parameters: [DhcpNameServer] 192.168.0.254
Tcpip\..\Interfaces\{12ab01fb-67da-4d03-9e28-a36c5d062547}: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{e4e99d05-3fa5-4f09-81c6-4986807542a3}: [DhcpNameServer] 192.168.0.254
 
Internet Explorer:
==================
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = 
BHO: Pas de nom -> {27DD0F8B-3E0E-4ADC-A78A-66047E71ADC5} -> C:\Users\GUI\Downloads\OldNewExplorer64.dll [2017-08-16] (www.startisback.com)
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2018-03-29] (Microsoft Corporation)
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2017-08-13] (IvoSoft)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2017-08-24] (Adobe Systems Incorporated)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2017-08-24] (Adobe Systems Incorporated)
BHO-x32: Pas de nom -> {27DD0F8B-3E0E-4ADC-A78A-66047E71ADC5} -> C:\Users\GUI\Downloads\OldNewExplorer32.dll [2017-08-16] (www.startisback.com)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2018-03-29] (Microsoft Corporation)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2017-08-13] (IvoSoft)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2017-08-24] (Adobe Systems Incorporated)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2017-08-24] (Adobe Systems Incorporated)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2017-08-13] (IvoSoft)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2017-08-24] (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2017-08-13] (IvoSoft)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2017-08-24] (Adobe Systems Incorporated)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-03-29] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-03-29] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-03-29] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-03-29] (Microsoft Corporation)
 
FireFox:
========
FF ProfilePath: C:\Users\GUI\AppData\Roaming\Mozilla\Firefox\Profiles\htEukEjR.default [2018-05-12]
FF Session Restore: Mozilla\Firefox\Profiles\htEukEjR.default -> est activé.
FF Extension: (uBlock Origin) - C:\Users\GUI\AppData\Roaming\Mozilla\Firefox\Profiles\htEukEjR.default\Extensions\[email protected] [2018-05-03]
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2018-02-02]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_29_0_0_140.dll [2018-04-11] ()
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2018-04-24] (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_29_0_0_140.dll [2018-04-11] ()
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2018-03-29] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-03-03] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2018-05-07] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2018-05-07] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-14] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-14] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2018-02-22] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2018-04-24] (Adobe Systems)
 
Chrome: 
=======
CHR StartupUrls: Default -> "","hxxps://www.google.fr/"
CHR Session Restore: Default -> est activé.
CHR Profile: C:\Users\GUI\AppData\Local\Google\Chrome\User Data\Default [2018-05-12]
CHR Extension: (Slides) - C:\Users\GUI\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Docs) - C:\Users\GUI\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Google Drive) - C:\Users\GUI\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-09-17]
CHR Extension: (YouTube) - C:\Users\GUI\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-09-17]
CHR Extension: (uBlock Origin) - C:\Users\GUI\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2018-05-04]
CHR Extension: (Adobe Acrobat) - C:\Users\GUI\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-09-17]
CHR Extension: (Poe.trade ignore list) - C:\Users\GUI\AppData\Local\Google\Chrome\User Data\Default\Extensions\faapmfhhchgkfinplpkfemkfabngkioc [2018-03-12]
CHR Extension: (Full Page Screen Capture) - C:\Users\GUI\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdpohaocaechififmbbbbbknoalclacl [2018-05-09]
CHR Extension: (Sheets) - C:\Users\GUI\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Google Docs hors connexion) - C:\Users\GUI\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-09-17]
CHR Extension: (Page Ruler) - C:\Users\GUI\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlpkojjdgbllmedoapgfodplfhcbnbpn [2018-02-24]
CHR Extension: (Awesome Screenshot: Screen Video Recorder) - C:\Users\GUI\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlipoenfbbikpbjkfpfillcgkoblgpmj [2018-02-26]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\GUI\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
CHR Extension: (Gmail) - C:\Users\GUI\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-09-17]
CHR Extension: (Chrome Media Router) - C:\Users\GUI\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-04-28]
CHR Profile: C:\Users\GUI\AppData\Local\Google\Chrome\User Data\System Profile [2018-04-24]
CHR HKLM\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM\...\Chrome\Extension: [ipmkfpcnmccejididiaagpgchgjfajgp] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [ipmkfpcnmccejididiaagpgchgjfajgp] - hxxps://clients2.google.com/service/update2/crx
 
==================== Services (Avec liste blanche) ====================
 
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
 
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818128 2018-04-24] (Adobe Systems Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2319848 2018-01-05] (Adobe Systems, Incorporated)
S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [879128 2018-05-09] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [224472 2018-05-09] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [224472 2018-05-09] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1165320 2018-05-09] (Avira Operations GmbH & Co. KG)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2017-09-07] (Apple Inc.)
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [449240 2018-03-28] (Avira Operations GmbH & Co. KG)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [5745672 2018-04-25] ()
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8521384 2018-03-24] (Microsoft Corporation)
S3 Disc Soft Pro Bus Service; C:\Program Files\DAEMON Tools Pro\DiscSoftBusServicePro.exe [1446592 2017-01-18] (Disc Soft Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [774784 2018-03-16] (EasyAntiCheat Ltd)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [522688 2018-04-22] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [522688 2018-04-22] (NVIDIA Corporation)
R2 Parsec; C:\Program Files\Parsec\pservice.exe [190536 2018-03-20] (Parsec)
R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [189264 2017-07-20] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [355304 2017-09-29] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [105944 2017-09-29] (Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
 
===================== Pilotes (Avec liste blanche) ======================
 
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
 
R3 amdgpio2; C:\WINDOWS\System32\drivers\amdgpio2.sys [43400 2017-03-01] (Advanced Micro Devices, Inc)
R3 amdgpio3; C:\WINDOWS\System32\drivers\amdgpio3.sys [33144 2017-08-29] (Advanced Micro Devices, Inc)
S3 amdkmcsp; C:\WINDOWS\system32\DRIVERS\amdkmcsp.sys [101232 2017-06-16] (Advanced Micro Devices, Inc. )
R3 AMDPCIDev; C:\WINDOWS\System32\drivers\AMDPCIDev.sys [31112 2017-10-10] (Advanced Micro Devices)
R0 amdpsp; C:\WINDOWS\System32\DRIVERS\amdpsp.sys [243048 2017-06-16] (Advanced Micro Devices, Inc. )
R2 AMDRyzenMasterDriver1.0.0; C:\Program Files\AMD\RyzenMaster\bin\AMDRyzenMasterDriver.sys [70312 2017-03-27] (Advanced Micro Devices)
R0 avdevprot; C:\WINDOWS\System32\DRIVERS\avdevprot.sys [60920 2017-08-21] (Avira Operations GmbH & Co. KG)
R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [179376 2018-05-09] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [169864 2018-05-09] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [44488 2017-08-21] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\WINDOWS\system32\DRIVERS\avnetflt.sys [88488 2017-08-21] (Avira Operations GmbH & Co. KG)
R0 avusbflt; C:\WINDOWS\System32\Drivers\avusbflt.sys [38048 2017-08-21] (Avira Operations GmbH & Co. KG)
S3 BstkDrv; C:\Program Files (x86)\BlueStacks\BstkDrv.sys [269408 2017-11-27] (Bluestack System Inc. )
R3 dtproscsibus; C:\WINDOWS\System32\drivers\dtproscsibus.sys [30264 2017-09-17] (Disc Soft Ltd)
S3 Kinonih; C:\WINDOWS\System32\drivers\kinonih.sys [32256 2016-06-22] (Kinoni)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvlddmkm.sys [17168744 2018-05-08] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [31168 2018-04-22] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [59240 2018-04-24] (NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [58816 2018-05-07] (NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [604160 2017-09-29] (Realtek )
R3 rzendpt; C:\WINDOWS\System32\drivers\rzendpt.sys [50392 2015-10-26] (Razer Inc)
R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [45752 2017-07-19] (Razer, Inc.)
R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [139704 2017-08-19] (Razer, Inc.)
R3 ViGEmBus; C:\WINDOWS\System32\drivers\ViGEmBus.sys [53128 2018-01-19] (Benjamin Höglinger-Stelzer)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44608 2017-09-29] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [309144 2017-09-29] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [119192 2017-09-29] (Microsoft Corporation)
 
==================== NetSvcs (Avec liste blanche) ===================
 
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
 
 
==================== Un mois - Créés - fichiers et dossiers ========
 
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
 
2018-05-12 17:46 - 2018-05-12 17:47 - 000022049 _____ C:\Users\GUI\Desktop\FRST.txt
2018-05-12 17:28 - 2018-05-12 17:28 - 005200384 _____ (AVAST Software) C:\Users\GUI\Desktop\aswmbr.exe
2018-05-12 14:16 - 2018-05-12 14:17 - 000000000 ____D C:\AdwCleaner
2018-05-12 14:16 - 2018-05-12 14:16 - 007271632 _____ (Malwarebytes) C:\Users\GUI\Desktop\adwcleaner_7.1.1.exe
2018-05-12 14:05 - 2018-05-12 17:46 - 000000000 ____D C:\FRST
2018-05-12 14:05 - 2018-05-12 17:38 - 002404864 _____ (Farbar) C:\Users\GUI\Desktop\FRST64.exe
2018-05-12 13:44 - 2018-05-07 21:26 - 000132488 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
2018-05-12 13:43 - 2018-05-12 13:43 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2018-05-12 13:43 - 2018-03-02 04:04 - 000828216 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2018-05-12 13:43 - 2018-03-02 04:03 - 000960312 _____ C:\WINDOWS\system32\vulkan-1.dll
2018-05-12 13:43 - 2018-03-02 04:03 - 000683832 _____ C:\WINDOWS\system32\vulkaninfo.exe
2018-05-12 13:43 - 2018-03-02 04:03 - 000575800 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2018-05-12 13:42 - 2018-05-12 13:42 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2018-05-12 13:41 - 2018-05-08 23:22 - 001990688 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6439764.dll
2018-05-12 13:41 - 2018-05-08 23:22 - 001561504 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2018-05-12 13:41 - 2018-05-08 23:22 - 001467992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6439764.dll
2018-05-12 13:41 - 2018-05-08 23:22 - 001417816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2018-05-12 13:41 - 2018-05-08 23:22 - 001215576 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2018-05-12 13:41 - 2018-05-08 23:22 - 001091432 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2018-05-12 13:41 - 2018-05-08 23:22 - 000749928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll
2018-05-12 13:41 - 2018-05-08 23:22 - 000626776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2018-05-12 13:41 - 2018-05-08 23:22 - 000608704 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll
2018-05-12 13:41 - 2018-05-08 23:22 - 000517888 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2018-05-12 13:41 - 2018-05-08 23:21 - 040346984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2018-05-12 13:41 - 2018-05-08 23:21 - 035250776 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2018-05-12 13:41 - 2018-05-08 23:21 - 031273728 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2018-05-12 13:41 - 2018-05-08 23:21 - 025987296 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2018-05-12 13:41 - 2018-05-08 23:21 - 013725744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2018-05-12 13:41 - 2018-05-08 23:21 - 011271400 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2018-05-12 13:41 - 2018-05-08 23:21 - 004347832 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2018-05-12 13:41 - 2018-05-08 23:21 - 003758496 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2018-05-12 13:41 - 2018-05-08 23:21 - 001358536 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll
2018-05-12 13:41 - 2018-05-08 23:21 - 001349712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll
2018-05-12 13:41 - 2018-05-08 23:21 - 001157392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2018-05-12 13:41 - 2018-05-08 23:21 - 001070504 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll
2018-05-12 13:41 - 2018-05-08 23:21 - 001064424 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll
2018-05-12 13:41 - 2018-05-08 23:21 - 000904720 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2018-05-12 13:41 - 2018-05-08 23:21 - 000813912 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2018-05-12 13:41 - 2018-05-08 23:21 - 000652344 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2018-05-12 13:41 - 2018-05-08 23:21 - 000634576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll
2018-05-12 13:41 - 2018-05-08 23:20 - 017779440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2018-05-12 13:41 - 2018-05-08 23:20 - 015191088 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2018-05-11 10:43 - 2018-05-11 10:43 - 010865003 _____ C:\Users\GUI\Desktop\Wheel of fortune spinning the wheel.mp4
2018-05-10 19:54 - 2018-05-10 19:54 - 000036988 _____ C:\Users\GUI\Desktop\fullsizerender_0.jpeg
2018-05-10 13:40 - 2018-05-10 13:40 - 000003580 _____ C:\WINDOWS\System32\Tasks\AdobeGCInvoker-1.0-DESKTOP-UL056C5-GUI
2018-05-10 13:40 - 2018-05-10 13:40 - 000000000 ____D C:\Users\GUI\AppData\Roaming\NVIDIA
2018-05-09 10:19 - 2018-05-03 09:57 - 000599448 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2018-05-09 10:19 - 2018-05-03 09:43 - 000373664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2018-05-09 10:19 - 2018-05-03 09:37 - 000749984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2018-05-09 10:19 - 2018-05-03 09:37 - 000408992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2018-05-09 10:19 - 2018-05-03 09:36 - 000437664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2018-05-09 10:19 - 2018-05-03 08:31 - 002193688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2018-05-09 10:19 - 2018-05-03 08:26 - 001057824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2018-05-09 10:19 - 2018-05-03 08:18 - 000584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2018-05-09 10:19 - 2018-05-03 08:16 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserexport.exe
2018-05-09 10:19 - 2018-05-03 08:16 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2018-05-09 10:19 - 2018-05-03 08:16 - 000104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2018-05-09 10:19 - 2018-05-03 08:16 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2018-05-09 10:19 - 2018-05-03 08:16 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\credssp.dll
2018-05-09 10:19 - 2018-05-03 08:15 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll
2018-05-09 10:19 - 2018-05-03 08:12 - 000816128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2018-05-09 10:19 - 2018-05-03 08:11 - 000595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2018-05-09 10:19 - 2018-05-03 08:09 - 004723712 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2018-05-09 10:19 - 2018-05-03 08:09 - 003405824 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2018-05-09 10:19 - 2018-05-03 08:07 - 001822720 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2018-05-09 10:19 - 2018-05-03 08:02 - 000584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll
2018-05-09 10:19 - 2018-05-03 08:00 - 002902528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2018-05-09 10:19 - 2018-05-03 08:00 - 000473088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcSpecfc.dll
2018-05-09 10:19 - 2018-05-03 08:00 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2018-05-09 10:19 - 2018-05-03 07:59 - 018924544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2018-05-09 10:19 - 2018-05-03 07:58 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2018-05-09 10:19 - 2018-05-03 07:57 - 019354624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2018-05-09 10:19 - 2018-05-03 07:57 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSpkg.dll
2018-05-09 10:19 - 2018-05-03 07:57 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2018-05-09 10:19 - 2018-05-03 07:56 - 002677248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2018-05-09 10:19 - 2018-05-03 07:56 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2018-05-09 10:19 - 2018-05-03 07:56 - 000078336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2018-05-09 10:19 - 2018-05-03 07:55 - 000459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2018-05-09 10:19 - 2018-05-03 07:54 - 000365568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2018-05-09 10:19 - 2018-05-03 07:53 - 006060544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2018-05-09 10:19 - 2018-05-03 07:53 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2018-05-09 10:19 - 2018-05-03 07:52 - 003662848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2018-05-09 10:19 - 2018-05-03 07:52 - 000664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2018-05-09 10:19 - 2018-05-03 07:52 - 000463872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2018-05-09 10:19 - 2018-05-03 07:51 - 001560064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2018-05-09 10:19 - 2018-05-03 07:48 - 000328704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ninput.dll
2018-05-09 10:19 - 2018-04-16 00:04 - 000779952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2018-05-09 10:19 - 2018-04-15 23:49 - 001954056 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2018-05-09 10:19 - 2018-04-15 23:49 - 000382368 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2018-05-09 10:19 - 2018-04-15 23:47 - 000398744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2018-05-09 10:19 - 2018-04-15 23:33 - 000362904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2018-05-09 10:19 - 2018-04-15 23:32 - 001416392 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll
2018-05-09 10:19 - 2018-04-15 23:26 - 007384576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2018-05-09 10:19 - 2018-04-15 23:25 - 001430768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2018-05-09 10:19 - 2018-04-15 22:47 - 001615712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2018-05-09 10:19 - 2018-04-15 22:47 - 001490856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2018-05-09 10:19 - 2018-04-15 22:47 - 001433360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2018-05-09 10:19 - 2018-04-15 22:47 - 000649304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2018-05-09 10:19 - 2018-04-15 22:47 - 000311192 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2018-05-09 10:19 - 2018-04-15 22:38 - 001123464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll
2018-05-09 10:19 - 2018-04-15 22:34 - 006482664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2018-05-09 10:19 - 2018-04-15 22:14 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2018-05-09 10:19 - 2018-04-15 22:14 - 000133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2018-05-09 10:19 - 2018-04-15 22:14 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2018-05-09 10:19 - 2018-04-15 22:14 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2018-05-09 10:19 - 2018-04-15 22:12 - 017160704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2018-05-09 10:19 - 2018-04-15 22:12 - 013704704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2018-05-09 10:19 - 2018-04-15 22:12 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2018-05-09 10:19 - 2018-04-15 22:08 - 006576128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2018-05-09 10:19 - 2018-04-15 22:08 - 003181568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2018-05-09 10:19 - 2018-04-15 22:08 - 000246272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2018-05-09 10:19 - 2018-04-15 22:07 - 005195776 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2018-05-09 10:19 - 2018-04-15 22:07 - 000658432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2018-05-09 10:19 - 2018-04-15 22:07 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2018-05-09 10:19 - 2018-04-15 22:07 - 000225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2018-05-09 10:19 - 2018-04-15 22:06 - 011924480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2018-05-09 10:19 - 2018-04-15 22:06 - 000820224 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2018-05-09 10:19 - 2018-04-15 22:06 - 000377856 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2018-05-09 10:19 - 2018-04-15 22:05 - 000324608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2018-05-09 10:19 - 2018-04-15 22:04 - 002523136 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2018-05-09 10:19 - 2018-04-15 22:04 - 001342464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2018-05-09 10:19 - 2018-04-15 22:04 - 000982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2018-05-09 10:19 - 2018-04-15 22:03 - 002628608 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2018-05-09 10:19 - 2018-04-15 22:03 - 002413568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll
2018-05-09 10:19 - 2018-04-15 22:03 - 000826880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2018-05-09 10:19 - 2018-04-15 22:02 - 001669120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2018-05-09 10:19 - 2018-04-15 22:02 - 000462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2018-05-09 10:19 - 2018-04-15 22:00 - 000726016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2018-05-09 10:18 - 2018-05-03 09:56 - 001092016 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2018-05-09 10:18 - 2018-05-03 09:56 - 000924648 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2018-05-09 10:18 - 2018-05-03 09:54 - 000748448 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2018-05-09 10:18 - 2018-05-03 09:54 - 000608160 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2018-05-09 10:18 - 2018-05-03 09:53 - 000461216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2018-05-09 10:18 - 2018-05-03 09:53 - 000300448 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2018-05-09 10:18 - 2018-05-03 09:52 - 001568160 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2018-05-09 10:18 - 2018-05-03 09:52 - 001415296 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2018-05-09 10:18 - 2018-05-03 09:52 - 000137112 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2018-05-09 10:18 - 2018-05-03 09:51 - 001056152 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2018-05-09 10:18 - 2018-05-03 09:50 - 001206688 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2018-05-09 10:18 - 2018-05-03 09:50 - 000664992 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2018-05-09 10:18 - 2018-05-03 09:50 - 000423328 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2018-05-09 10:18 - 2018-05-03 09:50 - 000069536 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2018-05-09 10:18 - 2018-05-03 09:49 - 000035232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2018-05-09 10:18 - 2018-05-03 09:48 - 002002336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2018-05-09 10:18 - 2018-05-03 09:48 - 000793960 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2018-05-09 10:18 - 2018-05-03 09:48 - 000272288 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2018-05-09 10:18 - 2018-05-03 09:48 - 000077216 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2018-05-09 10:18 - 2018-05-03 09:47 - 008600472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2018-05-09 10:18 - 2018-05-03 09:47 - 001209760 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2018-05-09 10:18 - 2018-05-03 09:45 - 002395040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2018-05-09 10:18 - 2018-05-03 09:45 - 000711936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2018-05-09 10:18 - 2018-05-03 09:43 - 000702568 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2018-05-09 10:18 - 2018-05-03 09:41 - 000540064 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2018-05-09 10:18 - 2018-05-03 09:38 - 002574240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2018-05-09 10:18 - 2018-05-03 09:36 - 007675792 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2018-05-09 10:18 - 2018-05-03 09:36 - 002710736 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2018-05-09 10:18 - 2018-05-03 09:36 - 000247200 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2018-05-09 10:18 - 2018-05-03 09:35 - 002472864 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2018-05-09 10:18 - 2018-05-03 09:35 - 000358496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2018-05-09 10:18 - 2018-05-03 09:34 - 021356824 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2018-05-09 10:18 - 2018-05-03 09:34 - 000070864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2018-05-09 10:18 - 2018-05-03 09:32 - 001054280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2018-05-09 10:18 - 2018-05-03 08:44 - 000595448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2018-05-09 10:18 - 2018-05-03 08:43 - 000594056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2018-05-09 10:18 - 2018-05-03 08:39 - 000212896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2018-05-09 10:18 - 2018-05-03 08:36 - 025254400 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2018-05-09 10:18 - 2018-05-03 08:31 - 006092672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2018-05-09 10:18 - 2018-05-03 08:29 - 000285144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2018-05-09 10:18 - 2018-05-03 08:28 - 000061024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wldp.dll
2018-05-09 10:18 - 2018-05-03 08:25 - 020290248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2018-05-09 10:18 - 2018-05-03 08:19 - 003663360 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2018-05-09 10:18 - 2018-05-03 08:19 - 001300992 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2018-05-09 10:18 - 2018-05-03 08:19 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2018-05-09 10:18 - 2018-05-03 08:18 - 000400896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2018-05-09 10:18 - 2018-05-03 08:18 - 000206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2018-05-09 10:18 - 2018-05-03 08:18 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcSpecfc.dll
2018-05-09 10:18 - 2018-05-03 08:17 - 007545344 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2018-05-09 10:18 - 2018-05-03 08:16 - 023674880 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2018-05-09 10:18 - 2018-05-03 08:16 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadauthhelper.dll
2018-05-09 10:18 - 2018-05-03 08:16 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2018-05-09 10:18 - 2018-05-03 08:16 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\itss.dll
2018-05-09 10:18 - 2018-05-03 08:16 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2018-05-09 10:18 - 2018-05-03 08:15 - 000194048 _____ (Microsoft Corporation) C:\WINDOWS\system32\itircl.dll
2018-05-09 10:18 - 2018-05-03 08:15 - 000055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\imgutil.dll
2018-05-09 10:18 - 2018-05-03 08:14 - 000675328 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2018-05-09 10:18 - 2018-05-03 08:14 - 000623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2018-05-09 10:18 - 2018-05-03 08:14 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2018-05-09 10:18 - 2018-05-03 08:13 - 000276480 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2018-05-09 10:18 - 2018-05-03 08:13 - 000253440 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2018-05-09 10:18 - 2018-05-03 08:12 - 000672768 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2018-05-09 10:18 - 2018-05-03 08:12 - 000657408 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2018-05-09 10:18 - 2018-05-03 08:12 - 000403968 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll
2018-05-09 10:18 - 2018-05-03 08:09 - 008432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2018-05-09 10:18 - 2018-05-03 08:09 - 008068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2018-05-09 10:18 - 2018-05-03 08:09 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2018-05-09 10:18 - 2018-05-03 08:09 - 002784256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2018-05-09 10:18 - 2018-05-03 08:09 - 002086400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2018-05-09 10:18 - 2018-05-03 08:09 - 001856000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2018-05-09 10:18 - 2018-05-03 08:09 - 001548288 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2018-05-09 10:18 - 2018-05-03 08:09 - 001344000 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2018-05-09 10:18 - 2018-05-03 08:08 - 001597952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2018-05-09 10:18 - 2018-05-03 08:08 - 000808960 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2018-05-09 10:18 - 2018-05-03 08:06 - 003630080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2018-05-09 10:18 - 2018-05-03 08:05 - 001717248 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2018-05-09 10:18 - 2018-05-03 08:05 - 000483840 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvut.dll
2018-05-09 10:18 - 2018-05-03 08:05 - 000389120 _____ (Microsoft Corporation) C:\WINDOWS\system32\ninput.dll
2018-05-09 10:18 - 2018-05-03 08:04 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msisip.dll
2018-05-09 10:18 - 2018-05-03 08:03 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll
2018-05-09 10:18 - 2018-05-03 08:03 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2018-05-09 10:18 - 2018-05-03 08:03 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll
2018-05-09 10:18 - 2018-05-03 07:58 - 006467072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2018-05-09 10:18 - 2018-05-03 07:57 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\itircl.dll
2018-05-09 10:18 - 2018-05-03 07:57 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadauthhelper.dll
2018-05-09 10:18 - 2018-05-03 07:57 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\itss.dll
2018-05-09 10:18 - 2018-05-03 07:57 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credssp.dll
2018-05-09 10:18 - 2018-05-03 07:53 - 007813120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2018-05-09 10:18 - 2018-05-03 07:53 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2018-05-09 10:18 - 2018-05-03 07:51 - 002869760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2018-05-09 10:18 - 2018-05-03 07:50 - 001587712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2018-05-09 10:18 - 2018-05-03 07:50 - 001474560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2018-05-09 10:18 - 2018-05-03 07:49 - 003430400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2018-05-09 10:18 - 2018-05-03 07:48 - 001353728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2018-05-09 10:18 - 2018-05-03 07:48 - 000408576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrvut.dll
2018-05-09 10:18 - 2018-05-03 07:47 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msisip.dll
2018-05-09 10:18 - 2018-04-16 00:07 - 001463344 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2018-05-09 10:18 - 2018-04-16 00:03 - 000128408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2018-05-09 10:18 - 2018-04-15 23:57 - 000279968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2018-05-09 10:18 - 2018-04-15 23:51 - 002513920 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2018-05-09 10:18 - 2018-04-15 23:50 - 001925760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2018-05-09 10:18 - 2018-04-15 23:49 - 000563632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2018-05-09 10:18 - 2018-04-15 23:48 - 005859248 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2018-05-09 10:18 - 2018-04-15 23:48 - 001638424 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2018-05-09 10:18 - 2018-04-15 23:38 - 003180720 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2018-05-09 10:18 - 2018-04-15 23:38 - 000979360 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2018-05-09 10:18 - 2018-04-15 23:34 - 000230304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2018-05-09 10:18 - 2018-04-15 23:33 - 001269616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2018-05-09 10:18 - 2018-04-15 23:32 - 003904296 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2018-05-09 10:18 - 2018-04-15 23:30 - 002268024 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2018-05-09 10:18 - 2018-04-15 23:29 - 001873944 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2018-05-09 10:18 - 2018-04-15 23:29 - 001779936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2018-05-09 10:18 - 2018-04-15 23:29 - 000198440 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudStorageWizard.exe
2018-05-09 10:18 - 2018-04-15 23:28 - 000688064 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2018-05-09 10:18 - 2018-04-15 23:26 - 002711176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2018-05-09 10:18 - 2018-04-15 23:26 - 001506200 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2018-05-09 10:18 - 2018-04-15 23:25 - 000661920 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2018-05-09 10:18 - 2018-04-15 23:25 - 000327008 _____ (Microsoft Corporation) C:\WINDOWS\system32\shlwapi.dll
2018-05-09 10:18 - 2018-04-15 23:25 - 000092032 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudNotifications.exe
2018-05-09 10:18 - 2018-04-15 23:24 - 000063656 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidapi.dll
2018-05-09 10:18 - 2018-04-15 23:23 - 001101208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2018-05-09 10:18 - 2018-04-15 22:47 - 001929712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2018-05-09 10:18 - 2018-04-15 22:47 - 001323336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2018-05-09 10:18 - 2018-04-15 22:38 - 003485392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2018-05-09 10:18 - 2018-04-15 22:38 - 000444280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll
2018-05-09 10:18 - 2018-04-15 22:37 - 000747416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2018-05-09 10:18 - 2018-04-15 22:36 - 002386832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2018-05-09 10:18 - 2018-04-15 22:36 - 001575896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2018-05-09 10:18 - 2018-04-15 22:36 - 000832648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2018-05-09 10:18 - 2018-04-15 22:36 - 000543920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2018-05-09 10:18 - 2018-04-15 22:35 - 002462704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2018-05-09 10:18 - 2018-04-15 22:34 - 001524776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2018-05-09 10:18 - 2018-04-15 22:34 - 001456104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2018-05-09 10:18 - 2018-04-15 22:34 - 001017048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2018-05-09 10:18 - 2018-04-15 22:34 - 000572312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2018-05-09 10:18 - 2018-04-15 22:34 - 000279472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shlwapi.dll
2018-05-09 10:18 - 2018-04-15 22:34 - 000166408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudStorageWizard.exe
2018-05-09 10:18 - 2018-04-15 22:34 - 000077552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudNotifications.exe
2018-05-09 10:18 - 2018-04-15 22:34 - 000052248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appidapi.dll
2018-05-09 10:18 - 2018-04-15 22:16 - 003995136 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2018-05-09 10:18 - 2018-04-15 22:15 - 003490816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll
2018-05-09 10:18 - 2018-04-15 22:15 - 000674304 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockController.dll
2018-05-09 10:18 - 2018-04-15 22:14 - 000436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2018-05-09 10:18 - 2018-04-15 22:14 - 000250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2018-05-09 10:18 - 2018-04-15 22:14 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2018-05-09 10:18 - 2018-04-15 22:14 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProv2faHelper.dll
2018-05-09 10:18 - 2018-04-15 22:14 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceUpdateAgent.dll
2018-05-09 10:18 - 2018-04-15 22:14 - 000078336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProv2faHelper.dll
2018-05-09 10:18 - 2018-04-15 22:13 - 002890240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2018-05-09 10:18 - 2018-04-15 22:13 - 000084992 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2018-05-09 10:18 - 2018-04-15 22:12 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2018-05-09 10:18 - 2018-04-15 22:12 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2018-05-09 10:18 - 2018-04-15 22:11 - 000531456 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2018-05-09 10:18 - 2018-04-15 22:11 - 000301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountWAMExtension.dll
2018-05-09 10:18 - 2018-04-15 22:11 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerCsp.dll
2018-05-09 10:18 - 2018-04-15 22:11 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2018-05-09 10:18 - 2018-04-15 22:11 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srpapi.dll
2018-05-09 10:18 - 2018-04-15 22:11 - 000113664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BitLockerCsp.dll
2018-05-09 10:18 - 2018-04-15 22:11 - 000109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\eShims.dll
2018-05-09 10:18 - 2018-04-15 22:10 - 001576960 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2018-05-09 10:18 - 2018-04-15 22:10 - 001498112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2018-05-09 10:18 - 2018-04-15 22:10 - 000571904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ngccredprov.dll
2018-05-09 10:18 - 2018-04-15 22:10 - 000371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2018-05-09 10:18 - 2018-04-15 22:10 - 000363008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2018-05-09 10:18 - 2018-04-15 22:10 - 000316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbt.sys
2018-05-09 10:18 - 2018-04-15 22:10 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2018-05-09 10:18 - 2018-04-15 22:10 - 000225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovs.dll
2018-05-09 10:18 - 2018-04-15 22:10 - 000220672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountWAMExtension.dll
2018-05-09 10:18 - 2018-04-15 22:10 - 000218112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll
2018-05-09 10:18 - 2018-04-15 22:10 - 000192000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovs.dll
2018-05-09 10:18 - 2018-04-15 22:10 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidsvc.dll
2018-05-09 10:18 - 2018-04-15 22:10 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncPolicy.dll
2018-05-09 10:18 - 2018-04-15 22:09 - 000503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_User.dll
2018-05-09 10:18 - 2018-04-15 22:09 - 000408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2018-05-09 10:18 - 2018-04-15 22:09 - 000153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrowserSettingSync.dll
2018-05-09 10:18 - 2018-04-15 22:09 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2018-05-09 10:18 - 2018-04-15 22:09 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncPolicy.dll
2018-05-09 10:18 - 2018-04-15 22:09 - 000037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerUI.dll
2018-05-09 10:18 - 2018-04-15 22:08 - 000859648 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2018-05-09 10:18 - 2018-04-15 22:08 - 000703488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2018-05-09 10:18 - 2018-04-15 22:08 - 000627712 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2018-05-09 10:18 - 2018-04-15 22:08 - 000583680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.Schema.Shell.dll
2018-05-09 10:18 - 2018-04-15 22:08 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2018-05-09 10:18 - 2018-04-15 22:08 - 000490496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll
2018-05-09 10:18 - 2018-04-15 22:08 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockHostingFramework.dll
2018-05-09 10:18 - 2018-04-15 22:08 - 000358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2018-05-09 10:18 - 2018-04-15 22:08 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2018-05-09 10:18 - 2018-04-15 22:08 - 000181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\twext.dll
2018-05-09 10:18 - 2018-04-15 22:08 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingMonitor.dll
2018-05-09 10:18 - 2018-04-15 22:08 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2018-05-09 10:18 - 2018-04-15 22:07 - 012689920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2018-05-09 10:18 - 2018-04-15 22:07 - 008031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2018-05-09 10:18 - 2018-04-15 22:07 - 003367936 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll
2018-05-09 10:18 - 2018-04-15 22:07 - 001495552 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2018-05-09 10:18 - 2018-04-15 22:07 - 001425408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2018-05-09 10:18 - 2018-04-15 22:07 - 000837632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2018-05-09 10:18 - 2018-04-15 22:07 - 000792064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2018-05-09 10:18 - 2018-04-15 22:07 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2018-05-09 10:18 - 2018-04-15 22:07 - 000598528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2018-05-09 10:18 - 2018-04-15 22:07 - 000477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2018-05-09 10:18 - 2018-04-15 22:07 - 000406016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2018-05-09 10:18 - 2018-04-15 22:07 - 000386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll
2018-05-09 10:18 - 2018-04-15 22:07 - 000319488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll
2018-05-09 10:18 - 2018-04-15 22:07 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2018-05-09 10:18 - 2018-04-15 22:07 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll
2018-05-09 10:18 - 2018-04-15 22:07 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2018-05-09 10:18 - 2018-04-15 22:07 - 000158208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twext.dll
2018-05-09 10:18 - 2018-04-15 22:07 - 000124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BrowserSettingSync.dll
2018-05-09 10:18 - 2018-04-15 22:07 - 000112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2018-05-09 10:18 - 2018-04-15 22:07 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IdCtrls.dll
2018-05-09 10:18 - 2018-04-15 22:07 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerUI.dll
2018-05-09 10:18 - 2018-04-15 22:06 - 013660672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2018-05-09 10:18 - 2018-04-15 22:06 - 000899072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2018-05-09 10:18 - 2018-04-15 22:06 - 000721920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2018-05-09 10:18 - 2018-04-15 22:06 - 000421376 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll
2018-05-09 10:18 - 2018-04-15 22:06 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2018-05-09 10:18 - 2018-04-15 22:06 - 000139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2018-05-09 10:18 - 2018-04-15 22:05 - 004113408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2018-05-09 10:18 - 2018-04-15 22:05 - 000863744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2018-05-09 10:18 - 2018-04-15 22:05 - 000626176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2018-05-09 10:18 - 2018-04-15 22:05 - 000526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2018-05-09 10:18 - 2018-04-15 22:05 - 000516608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2018-05-09 10:18 - 2018-04-15 22:05 - 000456704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll
2018-05-09 10:18 - 2018-04-15 22:04 - 012833280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2018-05-09 10:18 - 2018-04-15 22:04 - 002490880 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll
2018-05-09 10:18 - 2018-04-15 22:04 - 002464768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2018-05-09 10:18 - 2018-04-15 22:04 - 002209280 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2018-05-09 10:18 - 2018-04-15 22:04 - 001236480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2018-05-09 10:18 - 2018-04-15 22:04 - 001230848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll
2018-05-09 10:18 - 2018-04-15 22:04 - 001057792 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2018-05-09 10:18 - 2018-04-15 22:04 - 000997376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2018-05-09 10:18 - 2018-04-15 22:04 - 000976896 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2018-05-09 10:18 - 2018-04-15 22:04 - 000965632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontext.dll
2018-05-09 10:18 - 2018-04-15 22:04 - 000884736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2018-05-09 10:18 - 2018-04-15 22:04 - 000648704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguagesCpl.dll
2018-05-09 10:18 - 2018-04-15 22:04 - 000621056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgcpl.dll
2018-05-09 10:18 - 2018-04-15 22:04 - 000576512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hgcpl.dll
2018-05-09 10:18 - 2018-04-15 22:04 - 000559104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserLanguagesCpl.dll
2018-05-09 10:18 - 2018-04-15 22:04 - 000556544 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2018-05-09 10:18 - 2018-04-15 22:04 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2018-05-09 10:18 - 2018-04-15 22:03 - 004772352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2018-05-09 10:18 - 2018-04-15 22:03 - 004385280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2018-05-09 10:18 - 2018-04-15 22:03 - 004248064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2018-05-09 10:18 - 2018-04-15 22:03 - 003287040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncCenter.dll
2018-05-09 10:18 - 2018-04-15 22:03 - 003177472 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2018-05-09 10:18 - 2018-04-15 22:03 - 002976256 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2018-05-09 10:18 - 2018-04-15 22:03 - 002857984 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2018-05-09 10:18 - 2018-04-15 22:03 - 002814976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themeui.dll
2018-05-09 10:18 - 2018-04-15 22:03 - 002741248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2018-05-09 10:18 - 2018-04-15 22:03 - 002462208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themecpl.dll
2018-05-09 10:18 - 2018-04-15 22:03 - 001353728 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2018-05-09 10:18 - 2018-04-15 22:03 - 001224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2018-05-09 10:18 - 2018-04-15 22:03 - 000920064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2018-05-09 10:18 - 2018-04-15 22:03 - 000840192 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2018-05-09 10:18 - 2018-04-15 22:03 - 000825856 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2018-05-09 10:18 - 2018-04-15 22:03 - 000697344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2018-05-09 10:18 - 2018-04-15 22:03 - 000695296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2018-05-09 10:18 - 2018-04-15 22:03 - 000508928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2018-05-09 10:18 - 2018-04-15 22:03 - 000417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2018-05-09 10:18 - 2018-04-15 22:03 - 000402432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2018-05-09 10:18 - 2018-04-15 22:03 - 000383488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll
2018-05-09 10:18 - 2018-04-15 22:03 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2018-05-09 10:18 - 2018-04-15 22:03 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingMonitor.dll
2018-05-09 10:18 - 2018-04-15 22:02 - 004814336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2018-05-09 10:18 - 2018-04-15 22:02 - 000842240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2018-05-09 10:18 - 2018-04-15 22:02 - 000440832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2018-05-09 10:18 - 2018-04-15 22:01 - 001509888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2018-05-09 10:18 - 2018-04-15 22:01 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2018-05-09 10:18 - 2018-04-15 22:01 - 000518144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2018-05-09 10:18 - 2018-04-15 22:01 - 000366592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll
2018-05-09 10:18 - 2018-04-15 22:01 - 000194560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2018-05-09 10:18 - 2018-04-15 22:01 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ByteCodeGenerator.exe
2018-05-09 10:18 - 2018-04-15 22:00 - 002223616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2018-05-09 10:18 - 2018-04-15 22:00 - 001739264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2018-05-09 10:18 - 2018-04-15 22:00 - 000682496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2018-05-09 10:18 - 2018-04-15 22:00 - 000669184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2018-05-09 10:18 - 2018-04-15 22:00 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll
2018-05-09 10:18 - 2018-04-15 22:00 - 000356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2018-05-09 10:18 - 2018-04-15 22:00 - 000252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll
2018-05-09 10:18 - 2018-04-15 22:00 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2018-05-09 10:18 - 2018-04-15 22:00 - 000215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2018-05-09 10:18 - 2018-04-15 22:00 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe
2018-05-09 10:18 - 2018-04-15 21:59 - 001332736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2018-05-09 10:18 - 2018-04-15 21:59 - 000971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2018-05-09 10:18 - 2018-04-15 21:58 - 001472000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2018-05-09 10:18 - 2018-04-15 21:58 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2018-05-09 10:18 - 2017-11-26 15:26 - 000048112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2018-05-08 10:34 - 2018-05-12 13:43 - 000000000 ____D C:\Users\GUI\AppData\Local\NVIDIA
2018-05-08 10:34 - 2018-05-12 10:21 - 000000000 ____D C:\Users\GUI\AppData\Local\NVIDIA Corporation
2018-05-08 10:34 - 2018-05-08 10:34 - 000001493 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2018-05-08 10:34 - 2018-05-07 21:15 - 005947976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2018-05-08 10:34 - 2018-05-07 21:15 - 002612520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2018-05-08 10:34 - 2018-05-07 21:15 - 001767552 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2018-05-08 10:34 - 2018-05-07 21:15 - 000634952 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2018-05-08 10:34 - 2018-05-07 21:15 - 000450856 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2018-05-08 10:34 - 2018-05-07 21:15 - 000124384 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2018-05-08 10:34 - 2018-05-07 21:15 - 000083240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2018-05-08 10:34 - 2018-04-25 08:18 - 008173402 _____ C:\WINDOWS\system32\nvcoproc.bin
2018-05-08 10:34 - 2018-04-24 20:52 - 000195432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll
2018-05-08 10:34 - 2018-04-24 20:52 - 000161648 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll
2018-05-08 10:34 - 2018-04-22 13:04 - 002137024 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2018-05-08 10:34 - 2018-04-22 13:04 - 001310144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll
2018-05-08 10:34 - 2018-04-22 13:04 - 000001951 _____ C:\WINDOWS\NvTelemetryContainerRecovery.bat
2018-05-08 10:33 - 2018-05-12 15:01 - 000000000 ____D C:\ProgramData\NVIDIA
2018-05-08 10:33 - 2018-05-07 21:16 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2018-05-08 10:33 - 2018-04-28 04:06 - 000552480 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2018-05-08 10:33 - 2018-04-28 04:06 - 000457144 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2018-05-08 10:32 - 2018-05-12 13:44 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2018-05-08 10:32 - 2018-05-08 23:20 - 004089240 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2018-05-08 10:32 - 2018-05-07 23:04 - 000058816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys
2018-05-08 10:32 - 2018-05-07 23:04 - 000044277 _____ C:\WINDOWS\system32\nvinfo.pb
2018-05-08 10:32 - 2018-04-28 04:04 - 001990584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6439731.dll
2018-05-08 10:32 - 2018-04-28 04:04 - 001467992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6439731.dll
2018-05-08 10:32 - 2018-04-24 21:33 - 001688104 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll
2018-05-08 10:32 - 2018-04-24 21:33 - 000226280 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2018-05-08 10:32 - 2018-04-24 21:33 - 000046064 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll
2018-05-08 10:32 - 2018-04-24 20:52 - 000059240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys
2018-05-08 10:30 - 2018-05-08 10:30 - 000000000 ____D C:\NVIDIA
2018-05-08 10:15 - 2018-05-08 10:30 - 000000000 ____D C:\Program Files (x86)\Free Window Registry Repair
2018-05-08 10:15 - 2018-05-08 10:27 - 000000000 ____D C:\Users\GUI\AppData\Roaming\Free Window Registry Repair
2018-05-08 10:15 - 2018-05-08 10:15 - 000000000 ____D C:\Users\GUI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free Window Registry Repair
2018-05-08 09:55 - 2018-05-08 10:25 - 000000000 ____D C:\Users\GUI\Desktop\Jeux
2018-05-08 08:15 - 2018-05-08 09:59 - 000000000 ____D C:\Users\GUI\Desktop\pickup
2018-05-06 18:03 - 2018-05-08 10:37 - 000003140 _____ C:\WINDOWS\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-05-04 00:44 - 2018-05-04 00:44 - 000001497 _____ C:\Users\GUI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Infini2y. Pack of Transitions' Presets.lnk
2018-05-02 13:14 - 2018-05-02 13:14 - 001301139 _____ C:\WINDOWS\unins000.exe
2018-05-02 13:14 - 2018-05-02 13:14 - 000137655 _____ C:\WINDOWS\unins000.dat
2018-05-02 13:14 - 2018-05-02 13:14 - 000000000 ____D C:\ProgramData\FXHOME
2018-05-02 13:14 - 2016-12-12 03:36 - 001655296 _____ (The OpenSSL Project, hxxp://www.openssl.org/) C:\WINDOWS\system32\libeay32.dll
2018-05-02 13:14 - 2016-12-12 03:36 - 000348160 _____ (The OpenSSL Project, hxxp://www.openssl.org/) C:\WINDOWS\system32\ssleay32.dll
2018-05-02 13:14 - 2013-10-05 01:58 - 000963232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Pmsvcr120.dll
2018-05-02 13:14 - 2013-10-05 01:58 - 000660128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Pmsvcp120.dll
2018-05-02 13:14 - 2013-10-05 01:58 - 000356528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Pvccorlib120.dll
2018-05-02 00:27 - 2018-05-12 14:17 - 000000000 ____D C:\Users\GUI\Documents\ShareX
2018-05-02 00:27 - 2018-05-02 00:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ShareX
2018-05-02 00:27 - 2018-05-02 00:27 - 000000000 ____D C:\Program Files\ShareX
2018-04-28 16:52 - 2018-04-28 16:52 - 000000000 ____D C:\Users\GUI\AppData\Local\Hero_Siege
2018-04-26 18:53 - 2018-04-26 18:53 - 000003936 _____ C:\WINDOWS\System32\Tasks\CCleaner Update
2018-04-26 18:53 - 2018-04-26 18:53 - 000000000 ____D C:\Program Files\CCleaner
2018-04-26 18:38 - 2018-05-10 23:47 - 000000000 ____D C:\Users\GUI\AppData\Roaming\Molotov
2018-04-26 18:38 - 2018-04-26 18:38 - 000002255 _____ C:\Users\GUI\Desktop\Molotov.lnk
2018-04-26 18:38 - 2018-04-26 18:38 - 000000000 ____D C:\Users\GUI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Molotov
2018-04-26 18:38 - 2018-04-26 18:38 - 000000000 ____D C:\Users\GUI\AppData\Local\Molotov
2018-04-26 18:26 - 2018-04-26 18:26 - 000001306 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk
2018-04-26 01:32 - 2018-04-26 01:32 - 000000000 ____D C:\ProgramData\aescripts
2018-04-26 01:31 - 2018-04-26 01:32 - 000000000 ____D C:\Users\GUI\AppData\Roaming\aescripts
2018-04-26 01:31 - 2018-04-26 01:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aescripts
2018-04-26 00:32 - 2018-04-26 00:32 - 000000000 ____D C:\Users\GUI\AppData\Local\Tempzxpsign43d18a5fdd1b4514
2018-04-26 00:31 - 2018-04-26 00:31 - 000000000 ____D C:\Users\GUI\AppData\Local\Tempzxpsignf0f5068fecee5a82
2018-04-26 00:31 - 2018-04-26 00:31 - 000000000 ____D C:\Users\GUI\AppData\Local\Tempzxpsignc49c3dd711686c9c
2018-04-26 00:31 - 2018-04-26 00:31 - 000000000 ____D C:\Users\GUI\AppData\Local\Tempzxpsign3b1f9197ad48c676
2018-04-26 00:31 - 2018-04-26 00:31 - 000000000 ____D C:\Users\GUI\AppData\Local\Tempzxpsign2d317a5f4608fd90
2018-04-26 00:30 - 2018-04-26 00:30 - 000000000 ____D C:\Users\GUI\AppData\Local\Tempzxpsigna3d889681ebf14c9
2018-04-26 00:25 - 2018-04-26 00:25 - 000000000 ____D C:\Users\GUI\AppData\Local\Tempzxpsignedc92e2e6b3369bf
2018-04-26 00:25 - 2018-04-26 00:25 - 000000000 ____D C:\Users\GUI\AppData\Local\Tempzxpsignd7b4f570afd352a0
2018-04-26 00:25 - 2018-04-26 00:25 - 000000000 ____D C:\Users\GUI\AppData\Local\Tempzxpsignc1213f9b419eee20
2018-04-26 00:25 - 2018-04-26 00:25 - 000000000 ____D C:\Users\GUI\AppData\Local\Tempzxpsign58599ae5ba053274
2018-04-26 00:25 - 2018-04-26 00:25 - 000000000 ____D C:\Users\GUI\AppData\Local\Tempzxpsign126210bca6740e95
2018-04-26 00:24 - 2018-04-26 00:24 - 000000000 ____D C:\Users\GUI\AppData\Local\Tempzxpsign8acacf2fe9085008
2018-04-26 00:24 - 2018-04-26 00:24 - 000000000 ____D C:\Users\GUI\AppData\Local\Tempzxpsign0f5797946d0dfd05
2018-04-25 14:20 - 2018-04-25 15:56 - 000000000 ____D C:\Users\GUI\Desktop\DDNet-11.1.4-win64
2018-04-25 12:30 - 2018-04-25 12:30 - 001690609 _____ C:\Users\GUI\Desktop\Stop Stealing Sheep - Typography.pdf
2018-04-25 11:38 - 2018-04-25 11:38 - 000000000 ____D C:\Users\GUI\AppData\Local\Tempzxpsign11a9026f77eaefcd
2018-04-25 00:28 - 2018-05-08 03:12 - 000000000 ____D C:\Users\GUI\AppData\Roaming\Parsec
2018-04-25 00:28 - 2018-04-25 00:28 - 000000000 ____D C:\Users\GUI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Parsec
2018-04-25 00:28 - 2018-04-25 00:28 - 000000000 ____D C:\Program Files\Parsec
2018-04-24 18:13 - 2018-04-24 18:14 - 000000000 ____D C:\Users\GUI\AppData\Local\The_Swords_of_Ditto
2018-04-24 09:57 - 2018-04-24 09:57 - 000001110 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lightroom Classic CC.lnk
2018-04-24 09:54 - 2018-04-24 09:54 - 000001077 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe InDesign CC 2018.lnk
2018-04-24 09:53 - 2018-04-24 09:53 - 000000000 ____D C:\Users\Public\Documents\Steam
2018-04-24 09:53 - 2018-04-24 09:53 - 000000000 ____D C:\Users\GUI\AppData\Roaming\FiraxisLive
2018-04-24 09:52 - 2018-04-24 09:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sid Meiers Civilization VI Rise and Fall
2018-04-24 09:51 - 2018-04-24 09:51 - 000002524 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Illustrator CC 2018.lnk
2018-04-24 09:49 - 2018-04-24 09:52 - 000000000 ____D C:\Users\GUI\Desktop\Civ6
2018-04-24 09:49 - 2018-04-24 09:49 - 000001089 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC 2018.lnk
2018-04-24 09:47 - 2018-04-24 09:48 - 000000062 _____ C:\Users\GUI\AppData\Roaming\~SiMPLEX.ini
2018-04-24 09:47 - 2018-04-24 09:48 - 000000000 ____D C:\Users\GUI\Desktop\Northgard
2018-04-22 20:18 - 2018-04-22 20:28 - 000000000 ____D C:\Users\GUI\Desktop\indesign
2018-04-22 20:15 - 2018-04-22 20:16 - 000000000 ____D C:\Users\GUI\Desktop\PPT TUTO
2018-04-22 20:13 - 2018-04-24 09:55 - 000000000 ____D C:\Users\GUI\Desktop\terraria
2018-04-22 19:59 - 2018-05-08 18:21 - 000000000 ____D C:\Users\GUI\Desktop\tw
2018-04-22 19:46 - 2018-04-22 19:46 - 023412381 _____ C:\Users\GUI\Desktop\vgb-dr-2017-mise-en-ligne.pdf
2018-04-22 19:46 - 2018-04-22 19:46 - 001153898 _____ C:\Users\GUI\Desktop\renault_q1-2017-financial-results.pdf
2018-04-19 17:20 - 2018-04-19 17:20 - 000000000 ____D C:\Users\GUI\AppData\Local\Tempzxpsign1d4145d8e753eebc
2018-04-19 16:21 - 2018-04-19 16:21 - 000000000 ____D C:\Users\GUI\AppData\Local\Tempzxpsign2d3c6933b9564238
2018-04-19 16:14 - 2018-04-19 16:14 - 000000000 ____D C:\Users\GUI\AppData\Local\Tempzxpsign21e26c4c4ec0074c
2018-04-19 10:09 - 2018-05-11 20:40 - 000001860 _____ C:\Users\GUI\Desktop\photoshop.txt
2018-04-18 00:27 - 2018-05-08 10:16 - 000000240 _____ C:\Users\GUI\Desktop\Nouveau document texte (2).txt
 
==================== Un mois - Modifiés - fichiers et dossiers ========
 
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
 
2018-05-12 17:39 - 2017-11-28 18:17 - 000000000 ____D C:\Users\GUI\Desktop\ARAWAK
2018-05-12 17:30 - 2017-09-16 12:45 - 000002862 _____ C:\Users\GUI\Desktop\rocketleaguevideo.txt
2018-05-12 17:22 - 2017-11-23 22:17 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2018-05-12 14:30 - 2017-11-23 22:28 - 002521994 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2018-05-12 14:30 - 2017-09-30 16:40 - 001180690 _____ C:\WINDOWS\system32\perfh00C.dat
2018-05-12 14:30 - 2017-09-30 16:40 - 000262188 _____ C:\WINDOWS\system32\perfc00C.dat
2018-05-12 14:26 - 2017-11-23 22:27 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2018-05-12 14:26 - 2017-11-23 22:17 - 000565320 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2018-05-12 14:17 - 2017-09-29 10:45 - 000262144 _____ C:\WINDOWS\system32\config\BBI
2018-05-12 14:17 - 2017-09-17 13:11 - 000000000 ____D C:\Program Files (x86)\Steam
2018-05-12 14:11 - 2017-09-17 12:00 - 000000000 ____D C:\Users\GUI\AppData\Local\ClassicShell
2018-05-12 13:44 - 2017-09-29 15:44 - 000000000 ____D C:\WINDOWS\INF
2018-05-12 13:44 - 2017-09-17 11:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2018-05-12 13:34 - 2017-09-17 16:33 - 000000000 ____D C:\Users\GUI\AppData\Roaming\Teeworlds
2018-05-12 11:02 - 2017-09-17 12:10 - 000000000 ____D C:\Program Files (x86)\Adobe
2018-05-12 11:01 - 2017-09-17 12:18 - 000000000 ___RD C:\Users\GUI\Creative Cloud Files
2018-05-12 11:01 - 2017-09-17 12:08 - 000000000 ____D C:\Users\GUI\AppData\Local\Adobe
2018-05-11 22:15 - 2017-09-17 16:09 - 000000000 ____D C:\Users\GUI\AppData\Roaming\vlc
2018-05-11 22:14 - 2018-03-29 14:29 - 000000000 ____D C:\Users\GUI\Desktop\projet
2018-05-11 22:14 - 2017-09-17 13:12 - 000000000 ____D C:\Users\GUI\AppData\LocalLow\Mozilla
2018-05-11 16:59 - 2017-09-25 13:08 - 000000000 ____D C:\Users\GUI\AppData\Roaming\audacity
2018-05-11 14:12 - 2017-09-17 14:11 - 000000033 _____ C:\Users\GUI\AppData\Roaming\AdobeWLCMCache.dat
2018-05-11 13:38 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\DeliveryOptimization
2018-05-11 13:37 - 2017-09-29 15:46 - 000000000 ___HD C:\Program Files\WindowsApps
2018-05-11 13:37 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\AppReadiness
2018-05-10 20:03 - 2017-09-17 13:12 - 000000000 ____D C:\Users\GUI\AppData\Local\CrashDumps
2018-05-10 09:00 - 2017-10-30 20:44 - 000000000 ____D C:\Users\GUI\Desktop\macro
2018-05-10 09:00 - 2017-09-16 12:51 - 000000000 ____D C:\Users\GUI\Documents\PoE-TradeMacro
2018-05-10 09:00 - 2017-09-16 12:45 - 000000000 ____D C:\Users\GUI\Documents\AutoHotKey
2018-05-09 20:04 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\rescache
2018-05-09 19:55 - 2017-10-21 11:17 - 000000000 ___RD C:\Users\GUI\3D Objects
2018-05-09 19:55 - 2017-09-17 11:29 - 000000000 __RHD C:\Users\Public\AccountPictures
2018-05-09 13:28 - 2017-11-23 22:20 - 000000000 ____D C:\Users\GUI
2018-05-09 13:28 - 2017-09-29 15:46 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2018-05-09 13:28 - 2017-09-29 15:46 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2018-05-09 13:28 - 2017-09-29 15:46 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2018-05-09 13:28 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2018-05-09 13:28 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\system32\oobe
2018-05-09 13:28 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\ShellExperiences
2018-05-09 13:28 - 2017-09-29 10:45 - 000000000 ____D C:\WINDOWS\system32\Dism
2018-05-09 13:28 - 2017-09-29 10:45 - 000000000 ____D C:\WINDOWS\servicing
2018-05-09 12:41 - 2017-09-17 13:12 - 000000000 ____D C:\Users\GUI\AppData\Roaming\discord
2018-05-09 10:24 - 2017-09-17 14:20 - 000000000 ____D C:\WINDOWS\system32\MRT
2018-05-09 10:22 - 2017-10-11 18:32 - 141696960 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe
2018-05-09 10:22 - 2017-09-29 15:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2018-05-09 10:22 - 2017-09-17 14:20 - 141696960 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2018-05-09 10:20 - 2017-09-29 15:42 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2018-05-09 10:20 - 2017-09-29 15:41 - 000073112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2018-05-09 10:20 - 2017-09-29 15:41 - 000020888 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2018-05-09 10:19 - 2017-09-29 15:41 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2018-05-09 08:42 - 2017-09-17 12:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2018-05-09 08:41 - 2017-09-17 12:59 - 000179376 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2018-05-09 08:41 - 2017-09-17 12:59 - 000169864 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2018-05-08 23:20 - 2017-11-11 13:48 - 004814040 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2018-05-08 18:21 - 2017-09-17 19:30 - 000000000 ____D C:\Users\GUI\Desktop\Rocket League Mods
2018-05-08 10:50 - 2018-03-28 22:39 - 000000000 ____D C:\Users\GUI\Desktop\Tools
2018-05-08 10:38 - 2017-11-23 22:20 - 000000000 ____D C:\Users\GUI\AppData\Local\Packages
2018-05-08 10:37 - 2017-11-23 22:27 - 000003398 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-05-08 10:37 - 2017-11-23 22:27 - 000003176 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-05-08 10:37 - 2017-11-23 22:27 - 000002984 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-05-08 10:37 - 2017-11-23 22:27 - 000002956 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-05-08 10:37 - 2017-11-23 22:27 - 000002914 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-05-08 10:37 - 2017-11-23 22:27 - 000002838 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-05-08 10:37 - 2017-11-23 22:27 - 000002744 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-05-08 10:34 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\Help
2018-05-08 10:34 - 2017-09-17 11:28 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2018-05-08 10:34 - 2017-09-17 11:28 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2018-05-08 10:29 - 2017-09-17 11:29 - 000000000 ____D C:\Users\GUI\AppData\Roaming\Adobe
2018-05-08 10:28 - 2017-09-17 17:22 - 000000000 ____D C:\Users\GUI\Desktop\backup
2018-05-08 10:19 - 2018-03-28 22:59 - 000000000 ____D C:\Users\GUI\Desktop\Series
2018-05-08 10:18 - 2017-09-17 17:17 - 000000000 ____D C:\Users\GUI\Desktop\school
2018-05-08 10:16 - 2017-10-06 23:59 - 000004086 _____ C:\Users\GUI\Desktop\wrkt.txt
2018-05-08 10:13 - 2017-09-17 11:29 - 000000000 ____D C:\Users\GUI\AppData\Local\VirtualStore
2018-05-08 10:05 - 2017-09-17 14:48 - 000000000 ____D C:\Users\GUI\AppData\Roaming\DAEMON Tools Pro
2018-05-08 09:59 - 2017-09-26 09:51 - 000000600 _____ C:\Users\GUI\AppData\Local\PUTTY.RND
2018-05-07 20:05 - 2017-09-17 13:12 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2018-05-06 08:33 - 2017-09-25 23:52 - 000000000 ____D C:\ProgramData\Epic
2018-05-03 18:58 - 2017-09-17 17:33 - 000000000 ____D C:\Users\GUI\AppData\Roaming\HandBrake
2018-05-03 08:59 - 2015-09-13 15:39 - 000398136 __RSH C:\bootmgr
2018-05-02 13:14 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\Resources
2018-05-02 11:09 - 2017-09-17 13:12 - 000001009 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2018-05-02 11:09 - 2017-09-17 13:12 - 000000000 ____D C:\Program Files\Mozilla Firefox
2018-05-02 10:56 - 2017-09-17 13:29 - 000000059 _____ C:\Users\GUI\AppData\Local\UserProducts.xml
2018-05-01 23:25 - 2017-09-29 15:49 - 000835064 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2018-05-01 23:25 - 2017-09-29 15:49 - 000179704 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2018-05-01 21:22 - 2017-09-17 13:12 - 000000000 ____D C:\Users\GUI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2018-05-01 21:22 - 2017-09-17 13:12 - 000000000 ____D C:\Users\GUI\AppData\Local\Discord
2018-05-01 20:57 - 2017-09-17 11:30 - 000002409 _____ C:\Users\GUI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2018-05-01 20:57 - 2017-09-17 11:30 - 000000000 ___RD C:\Users\GUI\OneDrive
2018-04-29 23:34 - 2017-09-17 15:00 - 000000000 ____D C:\Users\GUI\AppData\Roaming\TS3Client
2018-04-28 16:42 - 2017-09-17 13:31 - 000000000 ____D C:\Users\GUI\Documents\My Games
2018-04-28 01:43 - 2017-09-17 11:31 - 000002303 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-04-26 18:38 - 2017-09-17 13:12 - 000000000 ____D C:\Users\GUI\AppData\Local\SquirrelTemp
2018-04-26 01:31 - 2017-09-17 12:14 - 000000000 ____D C:\Program Files\Common Files\Adobe
2018-04-26 00:25 - 2017-10-31 16:43 - 000000000 ____D C:\Users\GUI\AppData\Local\Red Giant
2018-04-25 10:23 - 2018-01-23 02:57 - 000000000 ____D C:\WINDOWS\Minidump
2018-04-24 22:28 - 2017-11-17 12:29 - 000000000 ___DC C:\WINDOWS\Panther
2018-04-24 22:28 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2018-04-24 09:57 - 2017-09-17 12:14 - 000000000 ____D C:\Program Files\Adobe
2018-04-24 09:49 - 2017-09-17 12:17 - 000000000 ____D C:\Users\GUI\Documents\Adobe
2018-04-24 09:49 - 2017-09-17 12:10 - 000000000 ____D C:\ProgramData\Adobe
2018-04-24 09:44 - 2017-09-17 12:10 - 000000000 ____D C:\ProgramData\Package Cache
2018-04-22 13:04 - 2017-09-17 12:18 - 002480064 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2018-04-16 12:42 - 2018-03-10 03:52 - 000000000 ____D C:\Users\GUI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Brave Software
2018-04-16 12:42 - 2018-03-10 03:52 - 000000000 ____D C:\Users\GUI\AppData\Roaming\brave
2018-04-16 12:42 - 2018-03-10 03:52 - 000000000 ____D C:\Users\GUI\AppData\Local\Brave
2018-04-16 12:42 - 2018-02-04 15:00 - 000000000 ____D C:\WINDOWS\System32\Tasks\MEGA
 
==================== Fichiers à la racine de certains dossiers =======
 
2017-09-17 12:34 - 2017-09-17 15:06 - 000012258 _____ () C:\Program Files\Common Files\csdkConfiguratorLog.txt
2017-09-17 14:11 - 2018-05-11 14:12 - 000000033 _____ () C:\Users\GUI\AppData\Roaming\AdobeWLCMCache.dat
2017-10-21 11:40 - 2017-10-24 15:59 - 000000109 _____ () C:\Users\GUI\AppData\Roaming\D2Info0
2017-10-21 11:40 - 2017-10-24 16:41 - 000000008 _____ () C:\Users\GUI\AppData\Roaming\DofusAppId0_1
2017-10-23 17:21 - 2017-10-23 17:29 - 000000008 _____ () C:\Users\GUI\AppData\Roaming\DofusAppId0_2
2017-09-21 20:06 - 2017-09-21 21:56 - 000000028 _____ () C:\Users\GUI\AppData\Roaming\kulerdata.json
2018-04-24 09:47 - 2018-04-24 09:48 - 000000062 _____ () C:\Users\GUI\AppData\Roaming\~SiMPLEX.ini
2018-03-30 09:53 - 2018-03-30 09:53 - 000001456 _____ () C:\Users\GUI\AppData\Local\Adobe Save for Web 13.0 Prefs
2017-09-19 00:55 - 2017-11-06 21:23 - 000000081 _____ () C:\Users\GUI\AppData\Local\FILM_AE_LogFile.txt
2017-09-26 09:51 - 2018-05-08 09:59 - 000000600 _____ () C:\Users\GUI\AppData\Local\PUTTY.RND
2017-09-22 04:36 - 2017-09-22 04:36 - 000000717 _____ () C:\Users\GUI\AppData\Local\recently-used.xbel
2017-09-17 13:29 - 2017-09-17 13:29 - 000000003 _____ () C:\Users\GUI\AppData\Local\updater.log
2017-09-17 13:29 - 2018-05-02 10:56 - 000000059 _____ () C:\Users\GUI\AppData\Local\UserProducts.xml
 
Certains fichiers dans TEMP:
====================
2018-05-09 20:11 - 2018-05-09 20:11 - 000084731 _____ () C:\Users\GUI\AppData\Local\Temp\JNativeHook-5B1590FA829A6B697D80B3EFB82CAD0DE50F8092.dll
2018-05-08 10:34 - 2018-04-22 09:00 - 000639272 _____ (NVIDIA Corporation) C:\Users\GUI\AppData\Local\Temp\nvSCPAPI.dll
2018-05-08 10:34 - 2018-04-22 09:00 - 000727848 _____ (NVIDIA Corporation) C:\Users\GUI\AppData\Local\Temp\nvSCPAPI64.dll
2018-05-12 13:41 - 2018-04-22 09:00 - 000394536 _____ (NVIDIA Corporation) C:\Users\GUI\AppData\Local\Temp\nvStInst.exe
 
==================== Bamital & volsnap ======================
 
(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)
 
C:\WINDOWS\system32\winlogon.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\wininit.exe => Le fichier est signé numériquement
C:\WINDOWS\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\services.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\WINDOWS\system32\rpcss.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\WINDOWS\system32\Drivers\volsnap.sys => Le fichier est signé numériquement
 
LastRegBack: 2018-05-09 20:04
 
==================== Fin de FRST.txt ============================

 

Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 12.05.2018
Exécuté par GUI (12-05-2018 17:47:21)
Exécuté depuis C:\Users\GUI\Desktop
Windows 10 Home Version 1709 16299.431 (X64) (2017-11-23 20:29:07)
Mode d'amorçage: Normal
==========================================================
 
 
==================== Comptes: =============================
 
Administrateur (S-1-5-21-4003686615-4269193129-2528438380-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-4003686615-4269193129-2528438380-503 - Limited - Disabled)
GUI (S-1-5-21-4003686615-4269193129-2528438380-1001 - Administrator - Enabled) => C:\Users\GUI
Invité (S-1-5-21-4003686615-4269193129-2528438380-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-4003686615-4269193129-2528438380-504 - Limited - Disabled)
 
==================== Centre de sécurité ========================
 
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)
 
AV: Avira Antivirus (Enabled - Up to date) {B3F630BD-538D-1B4A-14FA-14B63235278F}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avira Antivirus (Enabled - Up to date) {0897D159-75B7-14C4-2E4A-2FC449B26D32}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Programmes installés ======================
 
(Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.)
 
Adobe Acrobat DC (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0C0F074E4100}) (Version: 18.011.20038 - Adobe Systems Incorporated)
Adobe After Effects CC 2017 (HKLM-x32\...\AEFT_14_2_1) (Version: 14.2.1 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 27.0.0.124 - Adobe Systems Incorporated)
Adobe Bridge CC 2017 (HKLM-x32\...\KBRG_7_0) (Version: 7.0 - Adobe Systems Incorporated)
Adobe Character Animator CC (Beta) (HKLM-x32\...\ANMLBETA_1_0_6) (Version: 1.0.6 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 4.5.0.331 - Adobe Systems Incorporated)
Adobe Flash Player 29 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 29.0.0.140 - Adobe Systems Incorporated)
Adobe Flash Player 29 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 29.0.0.140 - Adobe Systems Incorporated)
Adobe Illustrator CC 2018 (HKLM-x32\...\ILST_22_1) (Version: 22.1 - Adobe Systems Incorporated)
Adobe InDesign CC 2018 (HKLM-x32\...\IDSN_13_1) (Version: 13.1 - Adobe Systems Incorporated)
Adobe Lightroom (HKLM-x32\...\{8048A5DF-8A70-5BE1-954B-E0FDE1BD0D0D}) (Version: 6.12 - Adobe Systems Incorporated)
Adobe Lightroom Classic CC (HKLM-x32\...\LTRM_7_3) (Version: 7.3 - Adobe Systems Incorporated)
Adobe Media Encoder CC 2017 (HKLM-x32\...\AME_11_1_2) (Version: 11.1.2 - Adobe Systems Incorporated)
Adobe Muse CC 2017 (HKLM-x32\...\MUSE_2017_1_0) (Version: 2017.1.0.821 - Adobe Systems Incorporated)
Adobe Photoshop CC 2018 (HKLM-x32\...\PHSP_19_1_3) (Version: 19.1.3 - Adobe Systems Incorporated)
Adobe Premiere Pro CC 2017 (HKLM-x32\...\PPRO_11_1_2) (Version: 11.1.2 - Adobe Systems Incorporated)
AMD Ryzen Master (HKLM\...\{03213877-8001-4F2C-8917-26B127DE1540}) (Version: 1.0.1.0239 - Advanced Micro Devices, Inc.)
Apple Application Support (32 bits) (HKLM-x32\...\{3D1290E6-1F77-46D5-A715-A56679C8D4E3}) (Version: 6.0.2 - Apple Inc.)
Apple Application Support (64 bits) (HKLM\...\{D0E45DEC-F4B9-4370-A9DF-66837789C2EF}) (Version: 6.0.2 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{E3C4B99B-BE71-4C27-8E3C-4FAE3C46E1D5}) (Version: 11.0.0.30 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{C1BBFD2A-BCDD-45B3-8C0B-66BD434970A8}) (Version: 2.4.8.1 - Apple Inc.)
Audacity 2.1.3 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.3 - Audacity Team)
AutoHotkey 1.1.26.01 (HKLM\...\AutoHotkey) (Version: 1.1.26.01 - Lexikos)
Avira (HKLM-x32\...\{40F72BC9-0C14-4122-8930-4B037EAEAD45}) (Version: 1.2.109.23832 - Avira Operations GmbH & Co. KG) Hidden
Avira (HKLM-x32\...\{4b629f54-1d82-40c9-9979-4485bb58d155}) (Version: 1.2.109.23832 - Avira Operations GmbH & Co. KG)
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.36.169 - Avira Operations GmbH & Co. KG)
BleachBit (HKLM-x32\...\BleachBit) (Version: 1.12 - BleachBit)
Blizzard App (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
BlueStacks 3 (HKLM-x32\...\BlueStacks) (Version: 3.52.65.1902 - BlueStack Systems, Inc.)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Boris Continuum Complete 10 CE for Adobe CS5, CS6, CC (HKLM\...\{45F7EB88-E0B4-4B57-8C1B-A5D8A61F9A29}) (Version: 10.0.0079 - Boris FX, Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.42 - Piriform)
Classic Shell (HKLM\...\{CABCE573-0A86-42FA-A52A-C7EA61D5BE08}) (Version: 4.3.1 - IvoSoft)
DAEMON Tools Pro (HKLM\...\DAEMON Tools Pro) (Version: 8.1.0.0660 - Disc Soft Ltd)
Discord (HKU\S-1-5-21-4003686615-4269193129-2528438380-1001\...\Discord) (Version: 0.0.301 - Discord Inc.)
DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 397.64 - NVIDIA Corporation) Hidden
Effects Suite v11.1.10 (HKLM-x32\...\{4DD8EE5E-F571-4EC8-9526-E7C62FE39B19}_is1) (Version: 11.1.10 - Red Giant, LLC)
Elephorm (HKLM-x32\...\{1668659A-6C3E-64CC-E5AF-936A36E492AD}) (Version: 4.2.24 - UNKNOWN) Hidden
Elephorm (HKLM-x32\...\ElephormDVDPlayer) (Version: 4.2.24 - UNKNOWN)
Enter the Gungeon (HKLM-x32\...\1456912569_is1) (Version: 2.11.0.13 - GOG.com)
Epic Games Launcher (HKLM-x32\...\{886E86E6-6673-4EAD-A4FF-6E087A661F4E}) (Version: 1.1.123.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
fayIN 2.4 for After Effects CC (HKLM\...\{3621F3FF-A9B6-4C18-8842-B871985AE866}) (Version: 2.4.1.1 - fayteq) Hidden
fayIN License Service (HKLM\...\{99AF962E-47B0-4DF8-BA65-F03403DB80BC}) (Version: 1.1.0.0 - fayteq) Hidden
fayteq fayIN 2.4 for After Effects CC (HKLM-x32\...\{1582ee6c-39ed-474c-a751-71fe914bd8d5}) (Version: 2.4.1.1 - fayteq)
FlippingBook Publisher (HKLM-x32\...\{ACBF783A-DDB7-496C-B9CA-2F34DAD4933F}) (Version: 2.9.30 - FlippingBook) Hidden
FlippingBook Publisher Version d'essai (HKLM-x32\...\FlippingBook Publisher Trial) (Version: 2.9.30 - FlippingBook)
Free Window Registry Repair (HKLM-x32\...\Free Window Registry Repair) (Version:  - )
GenArts Sapphire AE (HKLM\...\GenArts Sapphire AE_is1) (Version: 10.0 - Team V.R)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 66.0.3359.139 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden
HandBrake 1.0.7 (HKLM-x32\...\HandBrake) (Version: 1.0.7 - )
Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version:  - Blizzard Entertainment)
Ignite Pro 2017 (HKLM\...\Ignite Pro 2017_is1) (Version: 1.0.6227.12601 - Team V.R)
ImageGlass (HKLM\...\{D539FBEF-4AA8-4415-B66F-6367DA5D0186}_is1) (Version: 4.1.7.26 - Duong Dieu Phap)
Intel® C++ Redistributables on Intel® 64 (HKLM-x32\...\{F70BCE36-25F2-4475-A918-6209B3D85BF3}) (Version: 15.0.179 - Intel Corporation)
iTunes (HKLM\...\{89B08926-B965-43B5-8C71-C10433760B14}) (Version: 12.7.0.166 - Apple Inc.)
LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version:  - )
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKLM-x32\...\League of Legends 1.0) (Version: 1.0 - Riot Games, Inc)
Locus Pack 1.00 (HKLM-x32\...\Locus Pack 1.00) (Version: 1.00 - Video Realm Media)
Magic Bullet Suite v13.0.3 (HKLM-x32\...\{99487911-8011-42BC-B594-8B02BFD32B1D}_is1) (Version: 13.0.3 - Red Giant, LLC)
mamoworld.com Editing Essentials Bundle (HKLM\...\Editing Essentials Bundle for Premiere Pro_is1) (Version: 1.0.10 - Team V.R)
ManiaPlanet (HKLM-x32\...\ManiaPlanet_is1) (Version:  - Nadeo)
Microsoft Office 365 ProPlus - en-us (HKLM\...\O365ProPlusRetail - en-us) (Version: 16.0.9126.2116 - Microsoft Corporation)
Microsoft Office 365 ProPlus - fr-fr (HKLM\...\O365ProPlusRetail - fr-fr) (Version: 16.0.9126.2116 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-4003686615-4269193129-2528438380-1001\...\OneDriveSetup.exe) (Version: 18.065.0329.0002 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.12.25810 (HKLM-x32\...\{e2ee15e2-a480-4bc5-bfb7-e9803d1d9823}) (Version: 14.12.25810.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.12.25810 (HKLM-x32\...\{56e11d69-7cc9-40a5-a4f9-8f6190c4d84d}) (Version: 14.12.25810.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Microtransaction Gun (HKLM-x32\...\1459847591_is1) (Version: 1.1.4h3.[50577156305703251] - GOG.com)
Microtransaction Gun (HKLM-x32\...\Microtransaction Gun_is1) (Version: 2.0.0.2 - GOG.com)
Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
Mises à jour NVIDIA 31.1.10.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 31.1.10.0 - NVIDIA Corporation) Hidden
mocha Pro Plugin V5.2.0 for AVX (HKLM\...\{000D5F2C-50AB-47E1-9322-6736F502A0E3}) (Version: 5.2.0 - Imagineer Systems)
mocha Pro Plugin V5.2.0 for OFX (HKLM\...\{2D3E6370-5C8C-4C83-870D-5E02C529ED5B}) (Version: 5.2.0 - Imagineer Systems)
mocha Pro V5.2.0-12816 (HKLM\...\{0B2CE768-9D51-45E8-A515-D91E8210FDFE}) (Version: 5.20.12816 - Imagineer Systems)
mocha VR Plugin V5.5.2 for Adobe (HKLM\...\{C5D1B3FC-ECE8-459C-AF76-BB2FBD71841B}) (Version: 5.5.2 - Imagineer Systems)
Molotov (HKU\S-1-5-21-4003686615-4269193129-2528438380-1001\...\Molotov) (Version: 2.1.2 - Molotov)
Mozilla Firefox 59.0.3 (x64 en-US) (HKLM\...\Mozilla Firefox 59.0.3 (x64 en-US)) (Version: 59.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 55.0.3 - Mozilla)
NewBlue TotalFX AEX (HKLM\...\NewBlue TotalFX AEX_is1) (Version: 5.0.0.170317 - Team V.R)
Notepad++ (32-bit x86) (HKLM-x32\...\Notepad++) (Version: 7.5.1 - Notepad++ Team)
NVIDIA DDS Utilities (HKLM-x32\...\{64963F0E-03F2-4B59-8D1B-1806545E7092}) (Version: 1.0 - )
NVIDIA GeForce Experience 3.13.1.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.13.1.30 - NVIDIA Corporation)
NVIDIA Logiciel système PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
NVIDIA Photoshop Plug-ins 64 bit (HKLM-x32\...\{5E386C5B-CDE7-435A-B5C9-EC73A1B0553A}) (Version: 8.50 - )
NVIDIA Pilote 3D Vision 397.64 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 397.64 - NVIDIA Corporation)
NVIDIA Pilote audio HD : 1.3.37.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.37.1 - NVIDIA Corporation)
NVIDIA Pilote du contrôleur 3D Vision 390.41 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 390.41 - NVIDIA Corporation)
NVIDIA Pilote graphique 397.64 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 397.64 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.9126.2116 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.9126.2116 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.9126.2116 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0409-0000-0000000FF1CE}) (Version: 16.0.9126.2116 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-040C-0000-0000000FF1CE}) (Version: 16.0.9126.2116 - Microsoft Corporation) Hidden
Overwatch (HKLM-x32\...\Overwatch) (Version:  - Blizzard Entertainment)
Panneau de configuration NVIDIA 397.64 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 397.64 - NVIDIA Corporation) Hidden
Parsec (HKLM-x32\...\Parsec) (Version:  - Parsec Cloud Inc.)
Path of Building version 1.4.64 (HKLM-x32\...\{72FA9AB7-189F-4BDE-8856-72DEB90C157B}_is1) (Version: 1.4.64 - Openarl)
Path of Exile (HKLM-x32\...\{5e37eb26-2d6e-4b09-9dda-67b2c7f8d5bb}) (Version: 3.1.1.24680 - Grinding Gear Games)
Path of Exile (HKLM-x32\...\{90A4562F-D4A1-4B65-906D-41F236CF6902}) (Version: 3.1.1.24680 - Grinding Gear Games) Hidden
PuTTY release 0.70 (64-bit) (HKLM\...\{45B3032F-22CC-40CD-9E97-4DA7095FA5A2}) (Version: 0.70.0.0 - Simon Tatham)
PuTTY release 0.70 (HKLM-x32\...\{0B06C05B-0069-4FE8-AC19-AAF6678FD0A8}) (Version: 0.70.0.0 - Simon Tatham)
QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.)
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 2.21.00.721 - Razer Inc.)
RE:Vision Effects RE:Flex v5.0.0 (HKLM\...\RE:Flex 5_is1) (Version: 5.0.0 - Team V.R)
RE:Vision Effects Twixtor AE (HKLM\...\Twixtor AE 6.1.0_is1) (Version: 6.1.0 - Team V.R)
RE:Vision Effects Twixtor AE (HKLM\...\Twixtor AE 6.2.1_is1) (Version: 6.2.1 - Team V.R)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8302 - Realtek Semiconductor Corp.)
Red Giant Link (HKLM-x32\...\{10F82E5B-B611-4C65-8F29-666A9EC5680A}_is1) (Version: 1.9.10.1 - Red Giant, LLC)
ReelSmart Motion Blur 4, After Effects-compatible plugin set (HKLM-x32\...\ReelSmart Motion Blur 4, After Effects-compatible plugin set) (Version:  - )
Rowbyte TV Distortion 2.0.7 CE (HKLM\...\TV Distortion Bundle_is1) (Version: 2.0.7 - Team V.R)
ShareX (HKLM\...\82E6AC09-0FEF-4390-AD9F-0DD3F5561EFC_is1) (Version: 12.1.1 - ShareX Team)
Sid Meiers Civilization VI Rise and Fall (HKLM-x32\...\Sid Meiers Civilization VI Rise and Fall_is1) (Version:  - )
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version:  - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Tangledeep (HKLM-x32\...\1703478259_is1) (Version: b.102 - GOG.com)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.1.6 - TeamSpeak Systems GmbH)
Trapcode Suite 14 (HKLM\...\Trapcode Suite 14 v14.0) (Version:  - Red Giant LLC)
Universe (HKLM\...\Universe Premium_is1) (Version: 2.1 CE - Team V.R)
Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb)
Vicon boujou 5.0.2 (HKLM-x32\...\{C071157F-AB34-4D3F-A0DF-9AC544B3732E}) (Version: 5.0.2 - Vicon Motion Systems)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN)
VLC Streamer 5.31 (HKLM-x32\...\VLC Streamer_is1) (Version:  - Hobbyist Software)
Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0) (Version: 1.1.70.0 - LunarG, Inc.) Hidden
Warcraft III (HKLM-x32\...\Warcraft III) (Version:  - Blizzard Entertainment)
WinDirStat 1.1.2 (HKU\S-1-5-21-4003686615-4269193129-2528438380-1001\...\WinDirStat) (Version:  - )
WinRAR 5.50 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH)
 
==================== Personnalisé CLSID (Avec liste blanche): ==========================
 
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
 
CustomCLSID: HKU\S-1-5-21-4003686615-4269193129-2528438380-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-9C284CF11570}\InprocServer32 -> %%systemroot%%\system32\shell32.dll => Pas de fichier
CustomCLSID: HKU\S-1-5-21-4003686615-4269193129-2528438380-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} =>  -> Pas de fichier
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} =>  -> Pas de fichier
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} =>  -> Pas de fichier
ShellIconOverlayIdentifiers: [   AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-02-10] ()
ShellIconOverlayIdentifiers: [   AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-02-10] ()
ShellIconOverlayIdentifiers: [   AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-02-10] ()
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2017-08-13] (IvoSoft)
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} =>  -> Pas de fichier
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} =>  -> Pas de fichier
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} =>  -> Pas de fichier
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2017-08-13] (IvoSoft)
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-02-10] ()
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2015-03-17] (Adobe Systems Inc.)
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll [2017-08-29] ()
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} =>  -> Pas de fichier
ContextMenuHandlers1: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files (x86)\Avira\Antivirus\shlext64.dll [2018-05-09] (Avira Operations GmbH & Co. KG)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2018-05-07] (NVIDIA Corporation)
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2018-02-10] ()
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2015-03-17] (Adobe Systems Inc.)
ContextMenuHandlers6: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files (x86)\Avira\Antivirus\shlext64.dll [2018-05-09] (Avira Operations GmbH & Co. KG)
ContextMenuHandlers6: [StartMenuExt] -> {E595F05F-903F-4318-8B0A-7F633B520D2B} => C:\Windows\system32\StartMenuHelper64.dll [2017-08-13] (IvoSoft)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (Alexander Roshal)
FolderExtensions: [] -> {27DD0F8B-3E0E-4ADC-A78A-66047E71ADC5} => C:\Users\GUI\Downloads\OldNewExplorer64.dll [2017-08-16] (www.startisback.com)
 
==================== Tâches planifiées (Avec liste blanche) =============
 
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
 
Task: {0B4A43CD-0011-4F61-80AE-E78C0C3E6AAE} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-04-22] (NVIDIA Corporation)
Task: {2404B119-119F-4CC3-B0C3-7E2B71AA15C0} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2018-04-12] (Piriform Ltd)
Task: {280208A6-7926-4047-8027-1532A24A5DEE} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2018-04-22] (NVIDIA Corporation)
Task: {3357EA2C-7720-4729-9DF2-9340312A1B79} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-03-29] (Microsoft Corporation)
Task: {3404E711-AEB1-432A-ACD0-1AC72FF9A5DF} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-04-22] (NVIDIA Corporation)
Task: {384E1A50-CFF3-40C4-AC91-6A30E76E4EE6} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-04-22] (NVIDIA Corporation)
Task: {4F2C2B85-3AA5-45D5-AF88-DB4945319725} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2018-04-22] (NVIDIA Corporation)
Task: {659F87B0-F484-4F88-9AD9-699181C559B0} - System32\Tasks\AdobeGCInvoker-1.0-DESKTOP-UL056C5-GUI => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2018-01-05] (Adobe Systems, Incorporated)
Task: {8C91392B-5160-4294-84EC-C345A61A2DA6} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-04-22] (NVIDIA Corporation)
Task: {9315679D-06F1-4885-B37E-7914C9EE0361} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-03-29] (Microsoft Corporation)
Task: {BCD54095-9E58-4307-93F6-FC79179B9DC1} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-03-24] (Microsoft Corporation)
Task: {C3F6C890-EB5E-4677-8E86-5131A8328E91} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-04-22] (NVIDIA Corporation)
Task: {CB47C03A-2F18-4ED0-A828-884A79306CD0} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-03-29] (Microsoft Corporation)
Task: {CC7FA977-FCE7-45F1-ABC2-3A36C4B1DBAE} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-03-29] (Microsoft Corporation)
Task: {D2324FB1-57B9-406C-B591-3A1C827BB96E} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2018-04-22] (NVIDIA Corporation)
Task: {DCF45736-A3D8-4F46-9306-EBF77A3BF090} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-03-24] (Microsoft Corporation)
Task: {DE09F323-BFEE-48D6-8C37-8ECAFEF93BD1} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2017-07-24] (Apple Inc.)
Task: {E8DB8F8A-AC29-4380-83FB-84E877734766} - System32\Tasks\Avira_Antivirus_Systray => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [2018-05-09] (Avira Operations GmbH & Co. KG)
Task: {EE26614D-B956-47A2-A71C-CA1087996376} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2018-03-29] (Microsoft Corporation)
 
(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)
 
 
==================== Raccourcis & WMI ========================
 
(Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.)
 
 
==================== Modules chargés (Avec liste blanche) ==============
 
2017-09-29 15:41 - 2017-09-29 15:41 - 000184432 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2018-05-08 10:34 - 2018-04-22 13:04 - 001267648 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2017-07-13 20:50 - 2017-07-13 20:50 - 000092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2017-09-01 02:49 - 2017-09-01 02:49 - 001356088 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2017-07-20 00:09 - 2017-07-20 00:09 - 000189264 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
2018-02-10 01:12 - 2018-02-10 01:12 - 000614856 _____ () C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll
2017-08-29 02:43 - 2017-08-29 02:43 - 000230064 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll
2018-03-13 20:57 - 2018-02-22 02:26 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2018-03-13 20:57 - 2018-02-22 02:21 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2018-04-26 09:51 - 2018-04-26 09:51 - 000086528 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1813.286.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2018-04-26 09:51 - 2018-04-26 09:51 - 000195072 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1813.286.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2018-04-26 09:51 - 2018-04-26 09:51 - 022320128 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1813.286.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2018-04-26 09:51 - 2018-04-26 09:51 - 002603008 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1813.286.0_x64__kzf8qxf38zg5c\skypert.dll
2018-04-28 01:43 - 2018-04-26 05:14 - 004443992 _____ () C:\Program Files (x86)\Google\Chrome\Application\66.0.3359.139\libglesv2.dll
2018-04-28 01:43 - 2018-04-26 05:14 - 000099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\66.0.3359.139\libegl.dll
2018-05-08 10:34 - 2018-04-22 13:04 - 001041344 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2018-05-08 10:34 - 2018-04-22 13:04 - 081563584 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll
2018-05-08 10:34 - 2018-04-22 13:04 - 002478016 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\swiftshader\libglesv2.dll
2018-05-08 10:34 - 2018-04-22 13:04 - 000125376 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\swiftshader\libegl.dll
 
==================== Alternate Data Streams (Avec liste blanche) =========
 
(Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.)
 
AlternateDataStreams: C:\ProgramData\Reprise:jhqduwvxlctbqqijsf`usjbm`bfjhinhqhifh [0]
AlternateDataStreams: C:\Users\Public\AppData:CSM [472]
 
==================== Mode sans échec (Avec liste blanche) ===================
 
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.)
 
 
==================== Association (Avec liste blanche) ===============
 
(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.)
 
 
==================== Internet Explorer sites de confiance/sensibles ===============
 
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.)
 
 
==================== Hosts contenu: ===============================
 
(Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.)
 
2017-03-18 23:03 - 2017-03-18 23:01 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts
 
 
==================== Autres zones ============================
 
(Actuellement, il n'y a pas de correction automatique pour cette section.)
 
HKU\S-1-5-21-4003686615-4269193129-2528438380-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\GUI\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 192.168.0.254
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Le Pare-feu est activé.
 
==================== MSCONFIG/TASK MANAGER éléments désactivés ==
 
 
==================== RèglesPare-feu (Avec liste blanche) ===============
 
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
 
FirewallRules: [{E9E9DBC6-5B3D-4B3C-A0D6-2DC4BDA10A86}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Titan Quest Anniversary Edition\WorkshopTool\TQWorkshopTool.exe
FirewallRules: [{6558B813-2206-41CD-86C0-85BE029D461E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Titan Quest Anniversary Edition\WorkshopTool\TQWorkshopTool.exe
FirewallRules: [{DFF3D7CF-B526-4526-BD45-C3733544D77E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Titan Quest Anniversary Edition\TQ.exe
FirewallRules: [{31687255-2362-41E4-8018-03A1EB9FB7F8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Titan Quest Anniversary Edition\TQ.exe
FirewallRules: [UDP Query User{B93F5F19-3B53-4C75-ADFC-CD260E87601E}C:\gog games\enter the gungeon\etg.exe] => (Block) C:\gog games\enter the gungeon\etg.exe
FirewallRules: [TCP Query User{C81B0566-7AFD-456B-8C25-683C6FC10FCB}C:\gog games\enter the gungeon\etg.exe] => (Block) C:\gog games\enter the gungeon\etg.exe
FirewallRules: [{535B3DFC-3579-442C-A0A7-1775ED3F2D06}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tricky Towers\TrickyTowers.exe
FirewallRules: [{825F56AB-F5C8-434A-9658-B9D4071E488E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tricky Towers\TrickyTowers.exe
FirewallRules: [{EE1B63FC-32C7-4C0B-9474-029EE02B3CD8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ultimate Chicken Horse\UltimateChickenHorse.exe
FirewallRules: [{FBDF75BB-AC38-4AE0-ACD4-871654CF3EAF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ultimate Chicken Horse\UltimateChickenHorse.exe
FirewallRules: [UDP Query User{56DC755F-5239-4C71-AACF-6C0ADAA4322D}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [TCP Query User{5701EEC5-8F51-4706-B57D-D13330AD23AC}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{B0F8712B-C02A-4D8C-84EB-F7086A8102C2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{7768207C-99C2-484E-8AF5-3B6EE99F9833}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{5334F20A-F13D-4725-91E7-06E117DC5DCC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{A5330707-6ED9-4C76-B274-C033827E0A15}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [UDP Query User{F36159C3-969B-4EC0-91DB-C69CA1F3443A}D:\epicgames\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\epicgames\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [TCP Query User{C73FD5FE-A171-438E-AB34-4AB9DF9A0038}D:\epicgames\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\epicgames\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [{05688087-DF2B-4F5D-BE2F-235C0076E63F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\lethalleague\LethalLeague.exe
FirewallRules: [{C113D07B-CEEA-42B0-AEB0-BD5D9D888D3B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\lethalleague\LethalLeague.exe
FirewallRules: [UDP Query User{1920B605-6D92-4055-A45D-542A3E80E047}C:\program files (x86)\warcraft iii\warcraft iii.exe] => (Allow) C:\program files (x86)\warcraft iii\warcraft iii.exe
FirewallRules: [TCP Query User{060616C3-1807-468B-AAC5-040DC88EAFAC}C:\program files (x86)\warcraft iii\warcraft iii.exe] => (Allow) C:\program files (x86)\warcraft iii\warcraft iii.exe
FirewallRules: [UDP Query User{272B2E9E-2F46-43A6-AE72-A4D2320C6A5F}C:\program files\adobe\adobe media encoder cc 2017\adobe media encoder.exe] => (Block) C:\program files\adobe\adobe media encoder cc 2017\adobe media encoder.exe
FirewallRules: [TCP Query User{9CBD0B4E-B9BD-442C-9BC3-E571B925E624}C:\program files\adobe\adobe media encoder cc 2017\adobe media encoder.exe] => (Block) C:\program files\adobe\adobe media encoder cc 2017\adobe media encoder.exe
FirewallRules: [UDP Query User{FA47E6C0-3EF7-46E5-B639-76F22BECDBA3}D:\epicgames\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\epicgames\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [TCP Query User{863D49AA-7CB3-44EE-90D3-24876F4DCDC7}D:\epicgames\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\epicgames\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [UDP Query User{7C0436EA-9D2E-4027-8755-74064160140F}D:\epicgames\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\epicgames\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [TCP Query User{AA87CB6C-112A-4B62-9B95-3FD0AAF20931}D:\epicgames\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\epicgames\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [UDP Query User{DDDA51D6-B9D0-4E8A-BD8A-EE20B8BA5692}C:\program files\adobe\adobe after effects cc 2017\support files\afterfx.exe] => (Allow) C:\program files\adobe\adobe after effects cc 2017\support files\afterfx.exe
FirewallRules: [TCP Query User{BE66754E-68AB-4492-AB80-D9B91765A483}C:\program files\adobe\adobe after effects cc 2017\support files\afterfx.exe] => (Allow) C:\program files\adobe\adobe after effects cc 2017\support files\afterfx.exe
FirewallRules: [UDP Query User{64834EAA-B5F1-4ED3-9C19-67EC7E397D28}C:\program files\adobe\adobe premiere pro cc 2017\adobe premiere pro.exe] => (Allow) C:\program files\adobe\adobe premiere pro cc 2017\adobe premiere pro.exe
FirewallRules: [TCP Query User{42863162-4A55-42C2-A2F9-E9596A251BA4}C:\program files\adobe\adobe premiere pro cc 2017\adobe premiere pro.exe] => (Allow) C:\program files\adobe\adobe premiere pro cc 2017\adobe premiere pro.exe
FirewallRules: [{E4ECAA0B-9BB3-4D18-BC6B-826B585E854A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Turmoil\Turmoil_PC_Full.exe
FirewallRules: [{69239029-9BBB-4C27-AB39-0FAF2C208757}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Turmoil\Turmoil_PC_Full.exe
FirewallRules: [UDP Query User{55E0F48E-1BC0-4E55-93DA-113EA8934F81}C:\users\gui\desktop\ddnet-10.8.6-win64\ddnet-server.exe] => (Allow) C:\users\gui\desktop\ddnet-10.8.6-win64\ddnet-server.exe
FirewallRules: [TCP Query User{FE1936B4-273F-48D4-8A13-EC64FD2F2D38}C:\users\gui\desktop\ddnet-10.8.6-win64\ddnet-server.exe] => (Allow) C:\users\gui\desktop\ddnet-10.8.6-win64\ddnet-server.exe
FirewallRules: [{1C567826-34C3-4F42-8CDA-75EB1F8B6A35}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Lost Castle\Lost_Castle.exe
FirewallRules: [{7536D2C9-7458-4D69-ADF7-DA7ED48FC8BE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Lost Castle\Lost_Castle.exe
FirewallRules: [UDP Query User{5495C550-E02A-4581-8937-A9207068BE35}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [TCP Query User{36398D7B-CB64-4A11-92BA-D6475BB92F73}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [UDP Query User{2FB1A613-457C-43A6-BE3E-19C4293FAEC5}C:\users\gui\desktop\ddnet-10.8.6-win64\ddnet.exe] => (Allow) C:\users\gui\desktop\ddnet-10.8.6-win64\ddnet.exe
FirewallRules: [TCP Query User{80BBF3D0-35F6-47A8-94BF-2A889FC6D6AA}C:\users\gui\desktop\ddnet-10.8.6-win64\ddnet.exe] => (Allow) C:\users\gui\desktop\ddnet-10.8.6-win64\ddnet.exe
FirewallRules: [{3CD115FD-0BB7-477B-BF98-B5D22D0B98C4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ultimate General Gettysburg\Bug Reporter.exe
FirewallRules: [{1999C696-6EC5-4453-9ECE-39C30EF33617}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ultimate General Gettysburg\Bug Reporter.exe
FirewallRules: [{3B3E8B5B-AAD3-48EB-8A5D-E51A13C94AFE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ultimate General Gettysburg\Ultimate General Multiplayer.exe
FirewallRules: [{A2B01A00-3BE2-46F6-A1D7-A06E57070A3E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ultimate General Gettysburg\Ultimate General Multiplayer.exe
FirewallRules: [{187F5FBB-F52F-4218-98BD-FFAE9742C697}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ultimate General Gettysburg\Ultimate General Gettysburg.exe
FirewallRules: [{7463DF48-2C1B-4D10-99CD-7AE0E4C0819E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ultimate General Gettysburg\Ultimate General Gettysburg.exe
FirewallRules: [{EB738EFE-1809-48DF-87D3-A995945FA4BD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Move or Die\Editor.exe
FirewallRules: [{CB2BAD1A-C9C4-4AF5-8E61-D3598204EF2D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Move or Die\Editor.exe
FirewallRules: [{D44D2ADE-048A-4128-B350-84FBAE1B9B97}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Move or Die\MoveOrDie.exe
FirewallRules: [{3606402D-A8AF-4B93-980D-C06AF54F63A4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Move or Die\MoveOrDie.exe
FirewallRules: [{860858A9-E6AA-4412-96C0-712D61ACAB3C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mysterium\Mysterium.exe
FirewallRules: [{A1FD2CE3-CFA3-400E-A9B4-617F423CEED2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mysterium\Mysterium.exe
FirewallRules: [{78FE4CDF-1D81-467C-9528-975A5F831289}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Escapists 2\TheEscapists2.exe
FirewallRules: [{5382943F-8F99-4F20-B4F9-5AE6EFF9D762}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Escapists 2\TheEscapists2.exe
FirewallRules: [{723F9A1A-2A60-447C-A583-F845B1E91EFC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BorderlandsPreSequel\Binaries\Win32\Launcher.exe
FirewallRules: [{88700990-66A6-468F-8B84-C5635BF97477}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BorderlandsPreSequel\Binaries\Win32\Launcher.exe
FirewallRules: [{E9F5F16F-3476-4317-A2D6-40E9A9F79543}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{BDB3B728-1DA2-46EE-A201-70D8F516597D}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{1E81A175-D3BA-497C-B977-D52D74298732}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{5ED8D878-664E-4550-9C9E-E7C0CB258BA6}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{B4519FF3-0582-4665-B3C5-6624D71F194E}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{A708482F-99C5-4093-B56F-0836F0300F2D}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{BEE45C84-C9C7-47C2-97FC-C43F0E3CC865}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{D299A6AB-51E3-4A38-83BA-60579DBF82AE}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{D0E2AD10-7D2B-4A17-ABEB-54618D8FA931}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{1F7BB04A-2E2C-447B-820C-0DE62C2C5477}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{2A3CE30A-B61D-407B-82F1-71A9373C53F7}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{A9B746C2-A42C-4B20-BCD5-110BDC1C4D96}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{F41DCC95-3357-4824-B1BE-248288BDB465}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{0AC8ECAD-7A6E-436C-A275-453174BED47D}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{4A09DFAA-691F-4811-A08D-4E72A87E10CF}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{18933723-1BA7-4008-89B2-0DF2C9B99FD4}] => (Allow) C:\Program Files (x86)\BlueStacks\HD-Player.exe
FirewallRules: [TCP Query User{EE62C13D-0539-451F-8C51-8CE89D4D090A}C:\program files (x86)\steam\steamapps\common\move or die\love\win\love.exe] => (Block) C:\program files (x86)\steam\steamapps\common\move or die\love\win\love.exe
FirewallRules: [UDP Query User{8D18B73B-7783-4BB2-AC68-9E4FBA7DBE7C}C:\program files (x86)\steam\steamapps\common\move or die\love\win\love.exe] => (Block) C:\program files (x86)\steam\steamapps\common\move or die\love\win\love.exe
FirewallRules: [{9A98EB6D-7A18-4330-A646-95DD6CE47DE8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SlayTheSpire\SlayTheSpire.exe
FirewallRules: [{0E6898B2-736F-42FA-8BC6-EBC5C9F15FF2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SlayTheSpire\SlayTheSpire.exe
FirewallRules: [TCP Query User{13159918-4E86-45AD-AB0A-6E34C0655935}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{7D8E0A88-67ED-4365-B434-1560FCBB49B5}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [{B7EE0159-473E-41FF-BC5B-A84B071AA46B}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [TCP Query User{D6C19989-5343-4FCC-B972-487FC645D6DC}C:\users\gui\desktop\ddnet-10.8.6-win64\chillershit\chillerbot-zz-0003.exe] => (Allow) C:\users\gui\desktop\ddnet-10.8.6-win64\chillershit\chillerbot-zz-0003.exe
FirewallRules: [UDP Query User{C09EF31A-A067-4BDD-BF91-B3C0047E6E0B}C:\users\gui\desktop\ddnet-10.8.6-win64\chillershit\chillerbot-zz-0003.exe] => (Allow) C:\users\gui\desktop\ddnet-10.8.6-win64\chillershit\chillerbot-zz-0003.exe
FirewallRules: [{0E2FBCC4-5C81-45A2-AB71-631E412DB90F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe
FirewallRules: [{3DF35B53-1940-4CC1-A7AA-EB41629A71BF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cities_Skylines\Cities.exe
FirewallRules: [{6332D94A-89EE-47BF-AA13-AD6C57705F16}] => (Allow) C:\Program Files (x86)\Hobbyist Software\VLC Streamer\VLC Streamer Configuration.exe
FirewallRules: [{2FFA8192-8A71-486A-990F-6C28D8CE2238}] => (Allow) C:\Program Files (x86)\Hobbyist Software\VLC Streamer\mDNSResponder.exe
FirewallRules: [{C98A6C77-724B-4A71-8149-96AC04B5C377}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe\Bonjour\mDNSResponder.exe
FirewallRules: [{67ABC52C-8517-4E50-BDC7-A7E522E78F18}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Launcher.exe
FirewallRules: [{94253530-6D7F-4244-8271-4F0A256E3E7E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Launcher.exe
FirewallRules: [{FF57373E-E49D-45BB-B47C-C335EC2C0782}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe
FirewallRules: [{9A60FD36-FD32-44E3-ABF9-12A48395E45C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe
FirewallRules: [TCP Query User{86BD702A-BB2E-48C4-9817-7A3FE4ED03CB}C:\program files (x86)\heroes of the storm\versions\base62424\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base62424\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{333DFD10-3DB5-4ACB-AEE5-1AEEA1433F42}C:\program files (x86)\heroes of the storm\versions\base62424\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base62424\heroesofthestorm_x64.exe
FirewallRules: [{611674B7-4582-4D39-9E7E-813295BEEE4A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Star Realms\StarRealms.exe
FirewallRules: [{6ACEA94A-137C-44C5-BB2A-5E55C47B736D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Star Realms\StarRealms.exe
FirewallRules: [{55ED1C91-435D-4543-9AA3-85256D43976C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Battlerite\Battlerite.exe
FirewallRules: [{06F03126-78B1-4EA7-A729-CC34975C131C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Battlerite\Battlerite.exe
FirewallRules: [{6D5C11F0-F35C-4664-9BC0-78D9B265D7B9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warhammer Vermintide 2\launcher\Launcher.exe
FirewallRules: [{4511D9BB-6268-4F95-B4CC-2D50810FEEC5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warhammer Vermintide 2\launcher\Launcher.exe
FirewallRules: [{FD30B818-7AB9-4A6B-9A55-051648A1AE7A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hitman™\Launcher.exe
FirewallRules: [{BCF3E69B-917F-403D-BB98-C75B0C4036DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hitman™\Launcher.exe
FirewallRules: [TCP Query User{81D5DBB8-1728-4164-B7B5-2CDBC72E991F}C:\program files (x86)\maniaplanet\maniaplanet.exe] => (Allow) C:\program files (x86)\maniaplanet\maniaplanet.exe
FirewallRules: [UDP Query User{2BDEDDD0-AD50-4C3F-AABC-05C235CBABC7}C:\program files (x86)\maniaplanet\maniaplanet.exe] => (Allow) C:\program files (x86)\maniaplanet\maniaplanet.exe
FirewallRules: [{4BD17818-DBA3-4F83-B787-54FC92161780}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\F1 2015\F1_2015.exe
FirewallRules: [{79DFF4DD-5DF1-405C-A1C3-B13629057BAF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\F1 2015\F1_2015.exe
FirewallRules: [{93389C38-3BD9-4285-BBE8-E423D49C9A52}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Terraria\Terraria.exe
FirewallRules: [{0E1742A0-2597-486E-BE22-B5E46A357959}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Terraria\Terraria.exe
FirewallRules: [TCP Query User{71818539-4E14-43B3-BA75-BA8F92D0A7CC}C:\program files (x86)\steam\steamapps\common\terraria\tmodloaderserver.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\terraria\tmodloaderserver.exe
FirewallRules: [UDP Query User{EC3136FE-86EB-4852-9533-EE254C886D38}C:\program files (x86)\steam\steamapps\common\terraria\tmodloaderserver.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\terraria\tmodloaderserver.exe
FirewallRules: [{A89F5454-A162-4E2B-B201-4C6A1C3441CF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Crusader Kings II\CK2game.exe
FirewallRules: [{8889778F-0712-4BD4-9DE2-FD475CFC0926}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Crusader Kings II\CK2game.exe
FirewallRules: [{1AD651EF-0B3B-4308-BA6E-A63849DE81D0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{147874B3-213A-4778-A20C-C09A50BA62C4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{BD8C3EC7-BA15-4D2A-937E-CC98E4501251}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SatelliteReign\SatelliteReignWindows.exe
FirewallRules: [{633DA54D-7CB4-41A4-ACD5-4534C29877F1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SatelliteReign\SatelliteReignWindows.exe
FirewallRules: [{3803C2B0-93F6-49B2-8B62-D791EE193E26}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Eador. Masters of the Broken World\launcher.exe
FirewallRules: [{0129DA3F-4D2B-4BA2-9A3B-27D56B127CEC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Eador. Masters of the Broken World\launcher.exe
FirewallRules: [{1010C64D-20C5-458C-A291-2F5C51893DF7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\HeroSiege\bin\Hero_Siege.exe
FirewallRules: [{17953487-9A79-4850-BCD3-74BEA80AA324}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\HeroSiege\bin\Hero_Siege.exe
FirewallRules: [{05EC51A8-67C3-44C7-9D81-04EC21D09BC3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Swords of Ditto\The_Swords_of_Ditto.exe
FirewallRules: [{C462974C-BA91-4F08-9C0C-EA4E90539F38}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Swords of Ditto\The_Swords_of_Ditto.exe
FirewallRules: [{E639E65C-3E75-431A-B375-28417ED6B5B8}] => (Allow) C:\Program Files\Parsec\parsecd.exe
FirewallRules: [{8FD079D1-019D-42B3-BC59-674C2F92AE19}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{CA5E1BFF-8F44-4889-870D-7A100BD94BAF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Into the Breach\Breach.exe
FirewallRules: [{D0312F0E-9EE7-478D-B154-7511929B52D7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Into the Breach\Breach.exe
FirewallRules: [{7C7AD55E-9345-475C-AC7C-6379A3F01E36}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BattleBlock Theater\BattleBlockTheater.exe
FirewallRules: [{736405A3-588D-454E-916F-DF59C908FA08}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BattleBlock Theater\BattleBlockTheater.exe
FirewallRules: [{44AE4DDE-3581-43D7-8C27-F94D6E332546}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Deceit\bin\win_x64\Deceit.exe
FirewallRules: [{337D06F0-69E2-4D0B-B249-21804F3F3C3A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Deceit\bin\win_x64\Deceit.exe
FirewallRules: [{9E6E95F5-8D16-441C-B1CF-985EE624A9E0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{6DBC172D-078C-4F50-B987-A6647D365333}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{AD7E8DAC-EE01-43C1-9C31-E041FD074076}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{2A133172-EF48-4CFD-AAF1-33B398FC9218}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{42158419-0D47-4E86-A7E2-630EC3C10E31}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{F8285840-51B0-4B81-A54F-06709A9DCF9B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{5555676D-6750-48FE-B3B7-938E048DE890}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Starbound\win64\starbound.exe
FirewallRules: [{EC056C47-A43E-4F33-A044-0FE9D39EE312}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Starbound\win64\starbound.exe
FirewallRules: [{07A6B88F-CE05-4456-866E-F3D02B928FF3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Starbound\win64\starbound_server.exe
FirewallRules: [{FD88B496-D98E-4DE9-BFBF-917D4D061388}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Starbound\win64\starbound_server.exe
FirewallRules: [{12BC59F5-A8FB-4251-8AA8-35EEF65BFCE5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Starbound\win64\mod_uploader.exe
FirewallRules: [{DD0AFBEF-92C0-41C6-883F-03CD76E61450}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Starbound\win64\mod_uploader.exe
FirewallRules: [{24F86948-5551-4DA7-9B84-C3D2D30CAD32}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Starbound\win32\starbound.exe
FirewallRules: [{3CAF58AA-14CC-4721-9747-24A3EB40C8C5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Starbound\win32\starbound.exe
 
==================== Points de restauration =========================
 
 
==================== Éléments en erreur du Gestionnaire de périphériques =============
 
 
==================== Erreurs du Journal des événements: =========================
 
Erreurs Application:
==================
Error: (05/12/2018 05:30:10 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: La création du contexte d’activation a échoué pour « D:\Audacity\audacity.exe ». Erreur dans le fichier de manifeste ou de stratégie «  » à la ligne .
Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active.
Les composants en conflit sont :
Composant 1 : C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.16299.431_none_15c7d3ee93659e73.manifest.
Composant 2 : C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.16299.431_none_5d750ac5a7e1c779.manifest.
 
Error: (05/12/2018 05:30:10 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: La création du contexte d’activation a échoué pour « D:\Audacity\audacity.exe ». Erreur dans le fichier de manifeste ou de stratégie «  » à la ligne .
Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active.
Les composants en conflit sont :
Composant 1 : C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.16299.431_none_15c7d3ee93659e73.manifest.
Composant 2 : C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.16299.431_none_5d750ac5a7e1c779.manifest.
 
Error: (05/12/2018 05:26:13 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: La création du contexte d’activation a échoué pour « D:\Audacity\audacity.exe ». Erreur dans le fichier de manifeste ou de stratégie «  » à la ligne .
Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active.
Les composants en conflit sont :
Composant 1 : C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.16299.431_none_15c7d3ee93659e73.manifest.
Composant 2 : C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.16299.431_none_5d750ac5a7e1c779.manifest.
 
Error: (05/12/2018 03:01:08 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: La création du contexte d’activation a échoué pour « D:\Audacity\audacity.exe ». Erreur dans le fichier de manifeste ou de stratégie «  » à la ligne .
Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active.
Les composants en conflit sont :
Composant 1 : C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.16299.431_none_15c7d3ee93659e73.manifest.
Composant 2 : C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.16299.431_none_5d750ac5a7e1c779.manifest.
 
Error: (05/12/2018 03:01:08 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: La création du contexte d’activation a échoué pour « D:\Audacity\audacity.exe ». Erreur dans le fichier de manifeste ou de stratégie «  » à la ligne .
Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active.
Les composants en conflit sont :
Composant 1 : C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.16299.431_none_15c7d3ee93659e73.manifest.
Composant 2 : C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.16299.431_none_5d750ac5a7e1c779.manifest.
 
Error: (05/12/2018 01:44:10 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: La création du contexte d’activation a échoué pour « D:\Audacity\audacity.exe ». Erreur dans le fichier de manifeste ou de stratégie «  » à la ligne .
Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active.
Les composants en conflit sont :
Composant 1 : C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.16299.431_none_15c7d3ee93659e73.manifest.
Composant 2 : C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.16299.431_none_5d750ac5a7e1c779.manifest.
 
Error: (05/12/2018 01:44:10 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: La création du contexte d’activation a échoué pour « D:\Audacity\audacity.exe ». Erreur dans le fichier de manifeste ou de stratégie «  » à la ligne .
Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active.
Les composants en conflit sont :
Composant 1 : C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.16299.431_none_15c7d3ee93659e73.manifest.
Composant 2 : C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.16299.431_none_5d750ac5a7e1c779.manifest.
 
Error: (05/12/2018 01:43:48 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: La création du contexte d’activation a échoué pour « D:\Audacity\audacity.exe ». Erreur dans le fichier de manifeste ou de stratégie «  » à la ligne .
Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active.
Les composants en conflit sont :
Composant 1 : C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.16299.431_none_15c7d3ee93659e73.manifest.
Composant 2 : C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.16299.431_none_5d750ac5a7e1c779.manifest.
 
 
Erreurs système:
=============
Error: (05/12/2018 05:23:00 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-UL056C5)
Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID 
{D63B10C5-BB46-4990-A94F-E40B9D520160}
 et l’APPID 
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
 au SID DESKTOP-UL056C5\GUI de l’utilisateur (S-1-5-21-4003686615-4269193129-2528438380-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Error: (05/12/2018 03:01:18 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT)
Description: Les paramètres d’autorisation par défaut de l’ordinateur n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID 
{C2F03A33-21F5-47FA-B4BB-156362A2F239}
 et l’APPID 
{316CDED5-E4AE-4B15-9113-7055D84DCC97}
 au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Error: (05/12/2018 03:01:18 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT)
Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 et l’APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Error: (05/12/2018 03:01:18 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT)
Description: Les paramètres d’autorisation par défaut de l’ordinateur n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID 
{C2F03A33-21F5-47FA-B4BB-156362A2F239}
 et l’APPID 
{316CDED5-E4AE-4B15-9113-7055D84DCC97}
 au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Error: (05/12/2018 03:01:18 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT)
Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 et l’APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Error: (05/12/2018 03:01:18 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT)
Description: Les paramètres d’autorisation par défaut de l’ordinateur n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID 
{C2F03A33-21F5-47FA-B4BB-156362A2F239}
 et l’APPID 
{316CDED5-E4AE-4B15-9113-7055D84DCC97}
 au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Error: (05/12/2018 03:01:18 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT)
Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID 
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
 et l’APPID 
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
 au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Error: (05/12/2018 03:01:18 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT)
Description: Les paramètres d’autorisation par défaut de l’ordinateur n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID 
{C2F03A33-21F5-47FA-B4BB-156362A2F239}
 et l’APPID 
{316CDED5-E4AE-4B15-9113-7055D84DCC97}
 au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
 
CodeIntegrity:
===================================
 
Date: 2018-05-12 17:41:09.079
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
 
Date: 2018-05-12 17:41:09.077
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
 
Date: 2018-05-12 17:26:10.864
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
 
Date: 2018-05-12 17:26:10.862
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
 
Date: 2018-05-12 17:11:09.075
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
 
Date: 2018-05-12 17:11:09.073
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
 
Date: 2018-05-12 16:41:09.065
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
 
Date: 2018-05-12 16:41:09.064
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
 
==================== Infos Mémoire =========================== 
 
Processeur: AMD Ryzen 7 1700X Eight-Core Processor 
Pourcentage de mémoire utilisée: 13%
Mémoire physique - RAM - totale: 32719.39 MB
Mémoire physique - RAM - disponible: 28449.83 MB
Mémoire virtuelle totale: 37583.39 MB
Mémoire virtuelle disponible: 32400.54 MB
 
==================== Lecteurs ================================
 
Drive c: (Data) (Fixed) (Total:931.03 GB) (Free:329.77 GB) NTFS ==>[lecteur avec composants d'amorçage (obtenu depuis BCD)]
Drive d: (Disque dur) (Fixed) (Total:931.51 GB) (Free:339.48 GB) NTFS
 
\\?\Volume{f3f4c92d-0000-0000-0000-50c2e8000000}\ () (Fixed) (Total:0.47 GB) (Free:0.08 GB) NTFS
 
==================== MBR & Table des partitions ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: F3F4C92D)
Partition 1: (Active) - (Size=931 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=486 MB) - (Type=27)
 
========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: C4AE9870)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)
 
==================== Fin de Addition.txt ============================

 
Thanks!

Edited by Zukolol, 12 May 2018 - 10:02 AM.

  • 0

Advertisements


#2
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,503 posts
  • MVP

Get Process Explorer

http://live.sysinter...com/procexp.exe
Save it to your desktop then run it (Vista or Win7+ - right click and Run As Administrator).  

View, Select Column, check Verified Signer, OK
Options, Verify Image Signatures


Click twice on the CPU column header  to sort things by CPU usage with the big hitters at the top.  

Wait a full minute then:

File, Save As, Save.  Note the file name.   Open the file  on your desktop and copy and paste the text to a reply.


Copy the next 2 lines:

TASKLIST /SVC  > \junk.txt
notepad \junk.txt

Open an Elevated Command Prompt:
Win 7: Start, All Programs, Accessories then right click on Command Prompt and Run as Administrator
Win 8: http://www.eightforu...indows-8-a.html
win 10: http://www.howtogeek...-in-windows-10/

Right click and Paste (or Edit then Paste) and the copied lines should appear.
Hit Enter if notepad does not open.  Copy and paste the text from notepad into a reply.


Get the free version of Speccy:

http://www.filehippo...ownload_speccy/ 

(Look in the upper right for the Download
Latest Version button  - Do NOT press the large Start Download button on the upper left!)  
Download, Save and Install it.  Tell it you do not need CCLEANER.    Run Speccy.  When it finishes (the little icon in the bottom left will stop moving),
File, Save as Text File,  (to your desktop) note the name it gives. OK.  Open the file in notepad and delete the line that gives the serial number of your Operating System.  
(It will be near the top,  10-20  lines down.) Save the file.  Attach the file to your next post.  Attaching the log is the best option as it is too big for the forum.  Attaching is a multi step process.

First click on More Reply Options
Then scroll down to where you see
Choose File and click on it.  Point it at the file and hit Open.
Now click on Attach this file.



 


  • 0

#3
Zukolol

Zukolol

    New Member

  • Topic Starter
  • Member
  • Pip
  • 7 posts

Hey, thanks for the reply

 

Process Explorer log:

 

Process CPU Private Bytes Working Set PID Description Company Name Verified Signer

System Idle Process 87.55 52 K 8 K 0
Interrupts 6.48 0 K 0 K n/a Hardware Interrupts and DPCs
procexp64.exe 0.84 71 552 K 100 828 K 21924 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
EpicGamesLauncher.exe 0.53 178 288 K 143 436 K 2908 EpicGamesLauncher Epic Games, Inc. (Verified) Epic Games Inc.
explorer.exe 0.52 102 252 K 167 300 K 11660 Explorateur Windows Microsoft Corporation (Verified) Microsoft Windows
chrome.exe 0.50 260 628 K 278 684 K 13888 Google Chrome Google Inc. (Verified) Google Inc
nvcontainer.exe 0.46 143 936 K 99 312 K 18264 NVIDIA Container NVIDIA Corporation (Verified) NVIDIA Corporation
System 0.43 164 K 5 724 K 4
chrome.exe 0.41 155 928 K 232 004 K 16604 Google Chrome Google Inc. (Verified) Google Inc
Steam.exe 0.40 109 104 K 162 464 K 12388 Steam Client Bootstrapper Valve Corporation (Verified) Valve
dwm.exe 0.37 68 656 K 61 308 K 8424 Gestionnaire de fenêtres du Bureau Microsoft Corporation (Verified) Microsoft Windows
chrome.exe 0.30 463 656 K 375 220 K 7432 Google Chrome Google Inc. (Verified) Google Inc
Discord.exe 0.27 175 900 K 357 484 K 11980 Discord Discord Inc. (Verified) Discord Inc.
chrome.exe 0.27 190 448 K 209 184 K 8572 Google Chrome Google Inc. (Verified) Google Inc
audiodg.exe 0.15 31 132 K 36 928 K 9552 Isolation graphique de périphérique audio Windows Microsoft Corporation (Verified) Microsoft Windows
csrss.exe 0.08 3 188 K 6 372 K 18508 Processus d’exécution client-serveur Microsoft Corporation (Verified) Microsoft Windows Publisher
Avira.Systray.exe 0.05 57 508 K 22 228 K 21124 Avira Avira Operations GmbH & Co. KG (Verified) Avira Operations GmbH & Co. KG
Discord.exe 0.05 39 852 K 80 464 K 20924 Discord Discord Inc. (Verified) Discord Inc.
NVIDIA Share.exe 0.05 52 116 K 87 872 K 17060 NVIDIA Share NVIDIA Corporation (Verified) NVIDIA Corporation
mDNSResponder.exe 0.04 2 104 K 6 444 K 3560 Bonjour Service Apple Inc. (Verified) Apple Inc.
chrome.exe 0.04 121 704 K 133 856 K 7412 Google Chrome Google Inc. (Verified) Google Inc
steamwebhelper.exe 0.04 72 776 K 167 196 K 19512 Steam Client WebHelper Valve Corporation (Verified) Valve
chrome.exe 0.03 119 444 K 145 368 K 19460 Google Chrome Google Inc. (Verified) Google Inc
avguard.exe 0.03 413 356 K 49 740 K 3468 Antivirus Host Framework Service Avira Operations GmbH & Co. KG (Verified) Avira Operations GmbH & Co. KG
nvcontainer.exe 0.01 10 644 K 24 252 K 3600 NVIDIA Container NVIDIA Corporation (Verified) NVIDIA Corporation
steamwebhelper.exe 0.01 26 864 K 78 208 K 14236 Steam Client WebHelper Valve Corporation (Verified) Valve
WINWORD.EXE 0.01 152 408 K 99 500 K 10460 Microsoft Word Microsoft Corporation (Verified) Microsoft Corporation
Avira.ServiceHost.exe 0.01 44 308 K 7 212 K 3912 Avira Service Host Avira Operations GmbH & Co. KG (Verified) Avira Operations GmbH & Co. KG
svchost.exe 0.01 4 024 K 15 828 K 21764 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
chrome.exe 0.01 90 944 K 117 672 K 15248 Google Chrome Google Inc. (Verified) Google Inc
NVIDIA Web Helper.exe 0.01 38 036 K 8 628 K 8604 NVIDIA Web Helper Service Node.js (Verified) NVIDIA Corporation
SearchIndexer.exe 0.01 52 796 K 51 640 K 7476 Indexeur Microsoft Windows Search Microsoft Corporation (Verified) Microsoft Windows
WINWORD.EXE 0.01 152 436 K 85 940 K 13040 Microsoft Word Microsoft Corporation (Verified) Microsoft Corporation
POWERPNT.EXE < 0.01 162 888 K 107 864 K 12396 Microsoft PowerPoint Microsoft Corporation (Verified) Microsoft Corporation
chrome.exe < 0.01 165 588 K 181 664 K 9856 Google Chrome Google Inc. (Verified) Google Inc
nvsphelper64.exe < 0.01 2 816 K 12 920 K 12892 NVIDIA ShadowPlay Helper NVIDIA Corporation (Verified) NVIDIA Corporation
chrome.exe < 0.01 26 408 K 42 252 K 17988 Google Chrome Google Inc. (Verified) Google Inc
ZAM.exe < 0.01 293 684 K 314 124 K 20928 ZAM Copyright 2017. (Verified) Zemana Bilişim Teknolojileri Sanayi Ticaret Limited Şirketi
services.exe < 0.01 5 404 K 10 224 K 836 Applications Services et Contrôleur Microsoft Corporation (Verified) Microsoft Windows Publisher
NVIDIA Share.exe < 0.01 43 944 K 66 540 K 13132 NVIDIA Share NVIDIA Corporation (Verified) NVIDIA Corporation
NVDisplay.Container.exe < 0.01 5 480 K 13 636 K 1668 NVIDIA Container NVIDIA Corporation (Verified) NVIDIA Corporation
sched.exe < 0.01 7 792 K 5 868 K 3024 Antivirus Host Framework Service Avira Operations GmbH & Co. KG (Verified) Avira Operations GmbH & Co. KG
svchost.exe < 0.01 14 840 K 16 516 K 1436 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe < 0.01 2 652 K 7 584 K 692 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
AppleMobileDeviceService.exe < 0.01 3 612 K 12 196 K 3508 MobileDeviceService Apple Inc. (Verified) Apple Inc.
AGSService.exe < 0.01 4 848 K 16 452 K 3516 Adobe Genuine Software Integrity Service Adobe Systems, Incorporated (Verified) Adobe Systems Incorporated
svchost.exe < 0.01 2 700 K 12 272 K 1832 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
SteamService.exe < 0.01 7 036 K 15 972 K 19388 Steam Client Service Valve Corporation (Verified) Valve
svchost.exe < 0.01 7 036 K 13 356 K 576 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe < 0.01 9 980 K 24 520 K 992 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
AdobeUpdateService.exe < 0.01 2 644 K 9 912 K 3476 Adobe Update Service Adobe Systems Incorporated (Verified) Adobe Systems Incorporated
svchost.exe < 0.01 11 136 K 19 960 K 1748 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
NVDisplay.Container.exe < 0.01 59 684 K 52 696 K 1496 NVIDIA Container NVIDIA Corporation (Verified) NVIDIA Corporation
svchost.exe < 0.01 1 344 K 5 656 K 5648 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
POWERPNT.EXE < 0.01 154 212 K 95 936 K 22204 Microsoft PowerPoint Microsoft Corporation (Verified) Microsoft Corporation
chrome.exe < 0.01 101 932 K 128 416 K 21264 Google Chrome Google Inc. (Verified) Google Inc
NvTelemetryContainer.exe < 0.01 8 540 K 17 516 K 3620 NVIDIA Container NVIDIA Corporation (Verified) NVIDIA Corporation
GameScannerService.exe < 0.01 21 504 K 25 308 K 3608 GameScannerService (Verified) Razer USA Ltd.
chrome.exe < 0.01 26 604 K 41 224 K 20776 Google Chrome Google Inc. (Verified) Google Inc
svchost.exe < 0.01 12 460 K 33 672 K 4316 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
notepad++.exe < 0.01 10 024 K 28 288 K 16000 Notepad++ : a free (GNU) source code editor Don HO [email protected] (Verified) Notepad++
nvcontainer.exe < 0.01 24 544 K 40 080 K 7704 NVIDIA Container NVIDIA Corporation (Verified) NVIDIA Corporation
ZAM.exe 14 200 K 19 064 K 3864 ZAM Copyright 2017. (Verified) Zemana Bilişim Teknolojileri Sanayi Ticaret Limited Şirketi
winlogon.exe 2 576 K 9 152 K 3964 Application d’ouverture de session Windows Microsoft Corporation (Verified) Microsoft Windows
wininit.exe 1 660 K 6 456 K 764 Application de démarrage de Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
taskhostw.exe 6 176 K 16 444 K 15420 Processus hôte pour Tâches Windows Microsoft Corporation (Verified) Microsoft Windows
SwapScreen.exe 28 088 K 35 544 K 18968 SwapScreen GNE (Il n’y avait pas de signature dans le sujet) GNE
svchost.exe 2 824 K 6 648 K 4072 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2 348 K 7 212 K 1692 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 10 720 K 24 144 K 3496 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 4 096 K 11 808 K 2708 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 28 016 K 35 480 K 3524 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 7 936 K 17 404 K 3484 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1 908 K 7 376 K 22156 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 10 356 K 8 844 K 8064 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 4 876 K 11 296 K 1968 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2 196 K 6 788 K 8800 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2 052 K 7 668 K 3048 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 5 808 K 17 248 K 6332 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2 056 K 7 100 K 16636 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2 800 K 10 120 K 3956 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1 312 K 5 436 K 1824 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3 948 K 12 836 K 2612 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3 380 K 8 788 K 22420 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2 476 K 9 020 K 1676 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 4 064 K 16 132 K 1272 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 4 632 K 19 820 K 3552 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2 772 K 13 464 K 2824 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 6 516 K 15 396 K 1368 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2 172 K 12 572 K 2084 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3 880 K 13 752 K 3904 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 4 404 K 9 792 K 11184 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 4 104 K 19 020 K 8668 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2 816 K 9 452 K 10716 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1 956 K 7 464 K 1840 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2 940 K 8 804 K 2176 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 4 492 K 8 320 K 1580 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 3 244 K 17 496 K 5328 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1 920 K 11 020 K 1284 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 5 460 K 26 476 K 17068 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2 876 K 12 240 K 11540 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2 640 K 10 488 K 1480 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 6 228 K 14 936 K 3568 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1 696 K 5 888 K 23164 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2 980 K 12 896 K 14912 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 928 K 3 464 K 968 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2 112 K 9 496 K 1252 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1 700 K 5 748 K 1340 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2 132 K 9 880 K 1684 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1 880 K 8 072 K 760 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2 224 K 7 780 K 2068 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2 260 K 8 872 K 2764 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1 656 K 5 692 K 2772 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2 124 K 8 024 K 3528 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1 600 K 5 852 K 3576 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1 288 K 5 412 K 3584 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1 608 K 5 524 K 2512 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1 792 K 7 488 K 5660 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2 124 K 7 060 K 7640 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 1 396 K 5 928 K 12204 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
svchost.exe 2 564 K 11 316 K 11212 Processus hôte pour les services Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
steamwebhelper.exe 26 092 K 49 980 K 13080 Steam Client WebHelper Valve Corporation (Verified) Valve
steamwebhelper.exe 15 680 K 25 088 K 6048 Steam Client WebHelper Valve Corporation (Verified) Valve
steamwebhelper.exe 25 564 K 42 904 K 10372 Steam Client WebHelper Valve Corporation (Verified) Valve
steamwebhelper.exe 11 100 K 18 828 K 23476 Steam Client WebHelper Valve Corporation (Verified) Valve
spoolsv.exe 6 088 K 13 212 K 2964 Application sous-système spouleur Microsoft Corporation (Verified) Microsoft Windows
smss.exe 480 K 1 128 K 472 Gestionnaire de sessions Windows Microsoft Corporation (Verified) Microsoft Windows Publisher
SkypeHost.exe Suspended 4 712 K 1 680 K 20948 Microsoft Skype Microsoft Corporation (Il n’y avait pas de signature dans le sujet) Microsoft Corporation
sihost.exe 5 432 K 24 248 K 21256 Shell Infrastructure Host Microsoft Corporation (Verified) Microsoft Windows
ShellExperienceHost.exe Suspended 39 828 K 80 880 K 14344 Windows Shell Experience Host Microsoft Corporation (Verified) Microsoft Windows
ShareX.exe 51 312 K 75 136 K 2480 ShareX ShareX Team (Il n’y avait pas de signature dans le sujet) ShareX Team
SecurityHealthService.exe 5 756 K 16 340 K 3544 Windows Security Health Service Microsoft Corporation (Verified) Microsoft Windows Publisher
SearchUI.exe Suspended 63 752 K 104 092 K 15188 Search and Cortana application Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 7 012 K 28 468 K 19416 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 1 456 K 1 344 K 21380 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 5 048 K 8 848 K 11776 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RuntimeBroker.exe 5 328 K 22 072 K 14936 Runtime Broker Microsoft Corporation (Verified) Microsoft Windows
RtkNGUI64.exe 4 492 K 13 460 K 12544 Gestionnaire audio HD Realtek Realtek Semiconductor (Verified) Realtek Semiconductor Corp.
pservice.exe 1 356 K 5 396 K 3592 Parsec Parsec (Verified) Parsec Cloud
procexp.exe 3 160 K 11 236 K 16292 Sysinternals Process Explorer Sysinternals - www.sysinternals.com (Verified) Microsoft Corporation
OfficeClickToRun.exe 42 352 K 49 148 K 3652 Microsoft Office Click-to-Run (SxS) Microsoft Corporation (Verified) Microsoft Corporation
NVIDIA Share.exe 10 492 K 20 992 K 17040 NVIDIA Share NVIDIA Corporation (Verified) NVIDIA Corporation
MSASCuiL.exe 2 172 K 10 184 K 920 Windows Defender notification icon Microsoft Corporation (Verified) Microsoft Windows
Memory Compression 392 K 9 656 K 2028
lsass.exe 7 024 K 40 396 K 844 Local Security Authority Process Microsoft Corporation (Verified) Microsoft Windows Publisher
GoogleCrashHandler64.exe 1 604 K 1 304 K 14712 Google Crash Handler Google Inc. (Verified) Google Inc
GoogleCrashHandler.exe 1 744 K 1 616 K 5128 Google Crash Handler Google Inc. (Verified) Google Inc
fontdrvhost.exe 4 984 K 18 208 K 16872 Usermode Font Driver Host Microsoft Corporation (Verified) Microsoft Windows
fontdrvhost.exe 1 852 K 3 216 K 1012 Usermode Font Driver Host Microsoft Corporation (Verified) Microsoft Windows
dllhost.exe 3 132 K 17 208 K 23124 COM Surrogate Microsoft Corporation (Verified) Microsoft Windows
dllhost.exe 5 612 K 26 576 K 8208 COM Surrogate Microsoft Corporation (Verified) Microsoft Windows
Discord.exe 50 956 K 69 620 K 9860 Discord Discord Inc. (Verified) Discord Inc.
ctfmon.exe 3 200 K 14 792 K 22828 Chargeur CTF Microsoft Corporation (Verified) Microsoft Windows
csrss.exe 2 160 K 5 512 K 664 Processus d’exécution client-serveur Microsoft Corporation (Verified) Microsoft Windows Publisher
conhost.exe 5 276 K 536 K 18664 Console Window Host Microsoft Corporation (Verified) Microsoft Windows
ClassicStartMenu.exe 3 480 K 13 376 K 16832 Classic Start Menu IvoSoft (Verified) Ivaylo Beltchev
chrome.exe 35 912 K 51 764 K 2940 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 26 616 K 40 844 K 5992 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 5 376 K 13 520 K 19120 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 2 008 K 8 772 K 8756 Google Chrome Google Inc. (Verified) Google Inc
chrome.exe 1 904 K 9 512 K 7328 Google Chrome Google Inc. (Verified) Google Inc
avshadow.exe 2 000 K 7 524 K 10412 AntiVir shadow copy service Avira Operations GmbH & Co. KG (Verified) Avira Operations GmbH & Co. KG
avgnt.exe 6 628 K 2 184 K 4740 Avira system tray application Avira Operations GmbH & Co. KG (Verified) Avira Operations GmbH & Co. KG
armsvc.exe 1 352 K 6 136 K 3460 Adobe Acrobat Update Service Adobe Systems Incorporated (Verified) Adobe Systems
acrotray.exe 1 884 K 8 792 K 18440 AcroTray Adobe Systems Inc. (Verified) Adobe Systems
 

 

Elevated Command Prompt junk.txt log:

 

 

 
Nom de l'image                 PID Services                                    
========================= ======== ============================================
System Idle Process              0 N/A                                         
System                           4 N/A                                         
smss.exe                       472 N/A                                         
csrss.exe                      664 N/A                                         
wininit.exe                    764 N/A                                         
services.exe                   836 N/A                                         
lsass.exe                      844 KeyIso, SamSs, VaultSvc                     
svchost.exe                    968 PlugPlay                                    
svchost.exe                    992 BrokerInfrastructure, DcomLaunch, Power,    
                                   SystemEventsBroker                          
fontdrvhost.exe               1012 N/A                                         
svchost.exe                    576 RpcEptMapper, RpcSs                         
svchost.exe                    692 LSM                                         
svchost.exe                   1252 NcbService                                  
svchost.exe                   1284 TimeBrokerSvc                               
svchost.exe                   1340 hidserv                                     
svchost.exe                   1368 Schedule                                    
svchost.exe                   1436 EventLog                                    
svchost.exe                   1480 ProfSvc                                     
svchost.exe                   1580 nsi                                         
NVDisplay.Container.exe       1668 NVDisplay.ContainerLocalSystem              
svchost.exe                   1676 UserManager                                 
svchost.exe                   1684 SEMgrSvc                                    
svchost.exe                   1692 Dhcp                                        
svchost.exe                   1748 BFE, CoreMessagingRegistrar, MpsSvc         
svchost.exe                   1824 Themes                                      
svchost.exe                   1832 SysMain                                     
svchost.exe                   1840 EventSystem                                 
svchost.exe                   1968 NlaSvc                                      
Memory Compression            2028 N/A                                         
svchost.exe                    760 SENS                                        
svchost.exe                   2068 AudioEndpointBuilder                        
svchost.exe                   2084 FontCache                                   
svchost.exe                   2176 netprofm                                    
svchost.exe                   2612 Audiosrv                                    
svchost.exe                   2708 StateRepository                             
svchost.exe                   2764 Wcmsvc                                      
svchost.exe                   2772 DusmSvc                                     
svchost.exe                   2824 ShellHWDetection                            
spoolsv.exe                   2964 Spooler                                     
sched.exe                     3024 AntiVirSchedulerService                     
svchost.exe                   3048 LanmanWorkstation                           
armsvc.exe                    3460 AdobeARMservice                             
avguard.exe                   3468 AntiVirService                              
AdobeUpdateService.exe        3476 AdobeUpdateService                          
svchost.exe                   3484 Winmgmt                                     
svchost.exe                   3496 DiagTrack                                   
AppleMobileDeviceService.     3508 Apple Mobile Device Service                 
svchost.exe                   3524 DPS                                         
svchost.exe                   3528 stisvc                                      
AGSService.exe                3516 AGSService                                  
SecurityHealthService.exe     3544 SecurityHealthService                       
svchost.exe                   3552 WpnService                                  
mDNSResponder.exe             3560 Bonjour Service                             
svchost.exe                   3568 CryptSvc                                    
svchost.exe                   3576 SstpSvc                                     
svchost.exe                   3584 TrkWks                                      
pservice.exe                  3592 Parsec                                      
nvcontainer.exe               3600 NvContainerLocalSystem                      
GameScannerService.exe        3608 Razer Game Scanner Service                  
NvTelemetryContainer.exe      3620 NvTelemetryContainer                        
OfficeClickToRun.exe          3652 ClickToRunSvc                               
ZAM.exe                       3864 ZAMSvc                                      
svchost.exe                   3904 iphlpsvc                                    
Avira.ServiceHost.exe         3912 Avira.ServiceHost                           
svchost.exe                   3956 LanmanServer                                
svchost.exe                   4072 TapiSrv                                     
svchost.exe                   2512 WdiServiceHost                              
svchost.exe                   4316 RasMan                                      
svchost.exe                   5328 TokenBroker                                 
svchost.exe                   5660 TabletInputService                          
svchost.exe                   6332 CDPSvc                                      
SearchIndexer.exe             7476 WSearch                                     
svchost.exe                   7640 SSDPSRV                                     
svchost.exe                   8668 LicenseManager                              
avshadow.exe                 10412 N/A                                         
svchost.exe                  10716 wscsvc                                      
svchost.exe                  11184 PcaSvc                                      
svchost.exe                  12204 Appinfo                                     
audiodg.exe                   9552 N/A                                         
svchost.exe                  11212 lfsvc                                       
svchost.exe                   1272 StorSvc                                     
svchost.exe                   8800 QWAVE                                       
GoogleCrashHandler.exe        5128 N/A                                         
GoogleCrashHandler64.exe     14712 N/A                                         
svchost.exe                   8064 DsSvc                                       
svchost.exe                  16636 WebClient                                   
svchost.exe                   5648 lmhosts                                     
csrss.exe                    18508 N/A                                         
winlogon.exe                  3964 N/A                                         
fontdrvhost.exe              16872 N/A                                         
dwm.exe                       8424 N/A                                         
NVDisplay.Container.exe       1496 N/A                                         
nvcontainer.exe              18264 N/A                                         
nvcontainer.exe               7704 N/A                                         
sihost.exe                   21256 N/A                                         
svchost.exe                  14912 CDPUserSvc_6267a39                          
svchost.exe                  17068 WpnUserService_6267a39                      
NVIDIA Web Helper.exe         8604 N/A                                         
taskhostw.exe                15420 N/A                                         
conhost.exe                  18664 N/A                                         
explorer.exe                 11660 N/A                                         
ShellExperienceHost.exe      14344 N/A                                         
SearchUI.exe                 15188 N/A                                         
RuntimeBroker.exe            11776 N/A                                         
RuntimeBroker.exe            14936 N/A                                         
ctfmon.exe                   22828 N/A                                         
nvsphelper64.exe             12892 N/A                                         
NVIDIA Share.exe             17060 N/A                                         
NVIDIA Share.exe             17040 N/A                                         
NVIDIA Share.exe             13132 N/A                                         
MSASCuiL.exe                   920 N/A                                         
RtkNGUI64.exe                12544 N/A                                         
ZAM.exe                      20928 N/A                                         
SwapScreen.exe               18968 N/A                                         
ShareX.exe                    2480 N/A                                         
avgnt.exe                     4740 N/A                                         
Avira.Systray.exe            21124 N/A                                         
svchost.exe                  11540 OneSyncSvc_6267a39                          
svchost.exe                  21764 DoSvc                                       
SkypeHost.exe                20948 N/A                                         
svchost.exe                  22420 Dnscache                                    
svchost.exe                  22156 WinHttpAutoProxySvc                         
RuntimeBroker.exe            21380 N/A                                         
Steam.exe                    12388 N/A                                         
ClassicStartMenu.exe         16832 N/A                                         
Discord.exe                  20924 N/A                                         
chrome.exe                   16604 N/A                                         
chrome.exe                    8756 N/A                                         
chrome.exe                    7328 N/A                                         
chrome.exe                    7432 N/A                                         
chrome.exe                    7412 N/A                                         
steamwebhelper.exe           14236 N/A                                         
steamwebhelper.exe           23476 N/A                                         
chrome.exe                   20776 N/A                                         
SteamService.exe             19388 Steam Client Service                        
chrome.exe                    2940 N/A                                         
chrome.exe                    5992 N/A                                         
RuntimeBroker.exe            19416 N/A                                         
Discord.exe                   9860 N/A                                         
chrome.exe                    9856 N/A                                         
Discord.exe                  11980 N/A                                         
steamwebhelper.exe            6048 N/A                                         
dllhost.exe                   8208 N/A                                         
steamwebhelper.exe           13080 N/A                                         
chrome.exe                   19120 N/A                                         
steamwebhelper.exe           10372 N/A                                         
EpicGamesLauncher.exe         2908 N/A                                         
chrome.exe                    8572 N/A                                         
chrome.exe                   13888 N/A                                         
steamwebhelper.exe           19512 N/A                                         
svchost.exe                  23164 WdiSystemHost                               
chrome.exe                   19460 N/A                                         
notepad++.exe                16000 N/A                                         
chrome.exe                   21264 N/A                                         
chrome.exe                   15248 N/A                                         
chrome.exe                   17988 N/A                                         
acrotray.exe                 18440 N/A                                         
procexp.exe                  16292 N/A                                         
procexp64.exe                21924 N/A                                         
WINWORD.EXE                  10460 N/A                                         
WINWORD.EXE                  13040 N/A                                         
POWERPNT.EXE                 22204 N/A                                         
POWERPNT.EXE                 12396 N/A                                         
SearchProtocolHost.exe       16452 N/A                                         
SearchFilterHost.exe         18488 N/A                                         
smartscreen.exe              12496 N/A                                         
cmd.exe                       6264 N/A                                         
conhost.exe                  15580 N/A                                         
chrome.exe                   16760 N/A                                         
chrome.exe                   22416 N/A                                         
dllhost.exe                  23436 N/A                                         
svchost.exe                  16948 tiledatamodelsvc                            
dllhost.exe                   7264 N/A                                         
dllhost.exe                  20008 N/A                                         
cmd.exe                      18000 N/A                                         
conhost.exe                  10000 N/A                                         
tasklist.exe                  9184 N/A                                         
WmiPrvSE.exe                  2508 N/A                                         
 
 
Speccy.txt attached
 

  • 0

#4
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,503 posts
  • MVP

Speccy didn't attach.  Try again.

 

Process Explorer shows what is probably a driver problem:

 

Interrupts 6.48 0 K 0 K n/a Hardware Interrupts and DPCs

 

 

Interrupts have a bigger impact on performance than anything else.  Ideally we want this below 1% tho 1.5% is bearable.  6.48 % means it's going to be really sluggish. 

Let's see if Latency Monitor can isolate the problem:

Go to

http://www.resplendence.com/downloads

Scroll down to

System Monitoring Tools

and then find

LatencyMon 6.51

Click on Download free home edition

Save it then right click and Run As Admin.  It will install and then start the program.  
It will tell you to click on the Start button but there isn't one.  
Instead click on the green arrowhead (looks like a Play button).  Let it run for about 20 seconds (clock in bottom left) then hit the stop square.

 

Edit, Copy Report Text to clipboard then move to a Reply and Ctrl + v to paste it into the reply.


  • 0

#5
Zukolol

Zukolol

    New Member

  • Topic Starter
  • Member
  • Pip
  • 7 posts

Sorry for the Speccy log, should be fine now

 

 

LatencyMon log:

 

_________________________________________________________________________________________________________

CONCLUSION
_________________________________________________________________________________________________________
Your system appears to be suitable for handling real-time audio and other tasks without dropouts. 
LatencyMon has been analyzing your system for  0:00:29  (h:mm:ss) on all processors.
 
 
_________________________________________________________________________________________________________
SYSTEM INFORMATION
_________________________________________________________________________________________________________
Computer name:                                        DESKTOP-UL056C5
OS version:                                           Windows 10 , 10.0, build: 16299 (x64)
Hardware:                                             AB350-Gaming 3, Gigabyte Technology Co., Ltd., AB350-Gaming 3-CF
CPU:                                                  AuthenticAMD AMD Ryzen 7 1700X Eight-Core Processor 
Logical processors:                                   16
Processor groups:                                     1
RAM:                                                  32719 MB total
 
 
_________________________________________________________________________________________________________
CPU SPEED
_________________________________________________________________________________________________________
Reported CPU speed:                                   3394 MHz
Measured CPU speed:                                   1 MHz (approx.)
 
Note: reported execution times may be calculated based on a fixed reported CPU speed. Disable variable speed settings like Intel Speed Step and AMD Cool N Quiet in the BIOS setup for more accurate results.
 
WARNING: the CPU speed that was measured is only a fraction of the CPU speed reported. Your CPUs may be throttled back due to variable speed settings and thermal issues. It is suggested that you run a utility which reports your actual CPU frequency and temperature. 
 
 
 
_________________________________________________________________________________________________________
MEASURED INTERRUPT TO USER PROCESS LATENCIES
_________________________________________________________________________________________________________
The interrupt to process latency reflects the measured interval that a usermode process needed to respond to a hardware request from the moment the interrupt service routine started execution. This includes the scheduling and execution of a DPC routine, the signaling of an event and the waking up of a usermode thread from an idle wait state in response to that event.
 
Highest measured interrupt to process latency (µs):   469,510626
Average measured interrupt to process latency (µs):   5,750854
 
Highest measured interrupt to DPC latency (µs):       463,475785
Average measured interrupt to DPC latency (µs):       2,370178
 
 
_________________________________________________________________________________________________________
 REPORTED ISRs
_________________________________________________________________________________________________________
Interrupt service routines are routines installed by the OS and device drivers that execute in response to a hardware interrupt signal.
 
Highest ISR routine execution time (µs):              474,216853
Driver with highest ISR routine execution time:       dxgkrnl.sys - DirectX Graphics Kernel, Microsoft Corporation
 
Highest reported total ISR routine time (%):          0,075270
Driver with highest ISR total time:                   dxgkrnl.sys - DirectX Graphics Kernel, Microsoft Corporation
 
Total time spent in ISRs (%)                          0,085048
 
ISR count (execution time <250 µs):                   19657
ISR count (execution time 250-500 µs):                0
ISR count (execution time 500-999 µs):                4
ISR count (execution time 1000-1999 µs):              0
ISR count (execution time 2000-3999 µs):              0
ISR count (execution time >=4000 µs):                 0
 
 
_________________________________________________________________________________________________________
REPORTED DPCs
_________________________________________________________________________________________________________
DPC routines are part of the interrupt servicing dispatch mechanism and disable the possibility for a process to utilize the CPU while it is interrupted until the DPC has finished execution.
 
Highest DPC routine execution time (µs):              645,358869
Driver with highest DPC routine execution time:       nvlddmkm.sys - NVIDIA Windows Kernel Mode Driver, Version 397.64 , NVIDIA Corporation
 
Highest reported total DPC routine time (%):          0,038152
Driver with highest DPC total execution time:         nvlddmkm.sys - NVIDIA Windows Kernel Mode Driver, Version 397.64 , NVIDIA Corporation
 
Total time spent in DPCs (%)                          0,127119
 
DPC count (execution time <250 µs):                   127505
DPC count (execution time 250-500 µs):                0
DPC count (execution time 500-999 µs):                70
DPC count (execution time 1000-1999 µs):              0
DPC count (execution time 2000-3999 µs):              0
DPC count (execution time >=4000 µs):                 0
 
 
_________________________________________________________________________________________________________
 REPORTED HARD PAGEFAULTS
_________________________________________________________________________________________________________
Hard pagefaults are events that get triggered by making use of virtual memory that is not resident in RAM but backed by a memory mapped file on disk. The process of resolving the hard pagefault requires reading in the memory from disk while the process is interrupted and blocked from execution.
 
 
Process with highest pagefault count:                 none
 
Total number of hard pagefaults                       0
Hard pagefault count of hardest hit process:          0
Highest hard pagefault resolution time (µs):          0,0
Total time spent in hard pagefaults (%):              0,0
Number of processes hit:                              0
 
 
_________________________________________________________________________________________________________
 PER CPU DATA
_________________________________________________________________________________________________________
CPU 0 Interrupt cycle time (s):                       1,592822
CPU 0 ISR highest execution time (µs):                474,216853
CPU 0 ISR total execution time (s):                   0,39050
CPU 0 ISR count:                                      17254
CPU 0 DPC highest execution time (µs):                645,358869
CPU 0 DPC total execution time (s):                   0,530564
CPU 0 DPC count:                                      117620
_________________________________________________________________________________________________________
CPU 1 Interrupt cycle time (s):                       0,752268
CPU 1 ISR highest execution time (µs):                14,405421
CPU 1 ISR total execution time (s):                   0,001772
CPU 1 ISR count:                                      396
CPU 1 DPC highest execution time (µs):                108,070713
CPU 1 DPC total execution time (s):                   0,007902
CPU 1 DPC count:                                      923
_________________________________________________________________________________________________________
CPU 2 Interrupt cycle time (s):                       0,528383
CPU 2 ISR highest execution time (µs):                0,0
CPU 2 ISR total execution time (s):                   0,0
CPU 2 ISR count:                                      0
CPU 2 DPC highest execution time (µs):                290,953447
CPU 2 DPC total execution time (s):                   0,008336
CPU 2 DPC count:                                      1501
_________________________________________________________________________________________________________
CPU 3 Interrupt cycle time (s):                       0,792003
CPU 3 ISR highest execution time (µs):                0,0
CPU 3 ISR total execution time (s):                   0,0
CPU 3 ISR count:                                      0
CPU 3 DPC highest execution time (µs):                0,0
CPU 3 DPC total execution time (s):                   0,0
CPU 3 DPC count:                                      0
_________________________________________________________________________________________________________
CPU 4 Interrupt cycle time (s):                       0,536397
CPU 4 ISR highest execution time (µs):                0,0
CPU 4 ISR total execution time (s):                   0,0
CPU 4 ISR count:                                      0
CPU 4 DPC highest execution time (µs):                189,504420
CPU 4 DPC total execution time (s):                   0,006699
CPU 4 DPC count:                                      1251
_________________________________________________________________________________________________________
CPU 5 Interrupt cycle time (s):                       0,672483
CPU 5 ISR highest execution time (µs):                0,0
CPU 5 ISR total execution time (s):                   0,0
CPU 5 ISR count:                                      0
CPU 5 DPC highest execution time (µs):                0,0
CPU 5 DPC total execution time (s):                   0,0
CPU 5 DPC count:                                      0
_________________________________________________________________________________________________________
CPU 6 Interrupt cycle time (s):                       0,567268
CPU 6 ISR highest execution time (µs):                0,0
CPU 6 ISR total execution time (s):                   0,0
CPU 6 ISR count:                                      0
CPU 6 DPC highest execution time (µs):                179,356511
CPU 6 DPC total execution time (s):                   0,009390
CPU 6 DPC count:                                      1687
_________________________________________________________________________________________________________
CPU 7 Interrupt cycle time (s):                       0,693376
CPU 7 ISR highest execution time (µs):                0,0
CPU 7 ISR total execution time (s):                   0,0
CPU 7 ISR count:                                      0
CPU 7 DPC highest execution time (µs):                0,0
CPU 7 DPC total execution time (s):                   0,0
CPU 7 DPC count:                                      0
_________________________________________________________________________________________________________
CPU 8 Interrupt cycle time (s):                       0,502548
CPU 8 ISR highest execution time (µs):                0,0
CPU 8 ISR total execution time (s):                   0,0
CPU 8 ISR count:                                      0
CPU 8 DPC highest execution time (µs):                62,069534
CPU 8 DPC total execution time (s):                   0,005605
CPU 8 DPC count:                                      1113
_________________________________________________________________________________________________________
CPU 9 Interrupt cycle time (s):                       0,56780
CPU 9 ISR highest execution time (µs):                0,0
CPU 9 ISR total execution time (s):                   0,0
CPU 9 ISR count:                                      0
CPU 9 DPC highest execution time (µs):                152,639364
CPU 9 DPC total execution time (s):                   0,002391
CPU 9 DPC count:                                      383
_________________________________________________________________________________________________________
CPU 10 Interrupt cycle time (s):                       0,473738
CPU 10 ISR highest execution time (µs):                0,0
CPU 10 ISR total execution time (s):                   0,0
CPU 10 ISR count:                                      0
CPU 10 DPC highest execution time (µs):                76,054213
CPU 10 DPC total execution time (s):                   0,002930
CPU 10 DPC count:                                      587
_________________________________________________________________________________________________________
CPU 11 Interrupt cycle time (s):                       0,522343
CPU 11 ISR highest execution time (µs):                0,0
CPU 11 ISR total execution time (s):                   0,0
CPU 11 ISR count:                                      0
CPU 11 DPC highest execution time (µs):                0,0
CPU 11 DPC total execution time (s):                   0,0
CPU 11 DPC count:                                      0
_________________________________________________________________________________________________________
CPU 12 Interrupt cycle time (s):                       0,474959
CPU 12 ISR highest execution time (µs):                15,587507
CPU 12 ISR total execution time (s):                   0,001481
CPU 12 ISR count:                                      1278
CPU 12 DPC highest execution time (µs):                227,791986
CPU 12 DPC total execution time (s):                   0,007934
CPU 12 DPC count:                                      1181
_________________________________________________________________________________________________________
CPU 13 Interrupt cycle time (s):                       0,482525
CPU 13 ISR highest execution time (µs):                0,0
CPU 13 ISR total execution time (s):                   0,0
CPU 13 ISR count:                                      0
CPU 13 DPC highest execution time (µs):                0,0
CPU 13 DPC total execution time (s):                   0,0
CPU 13 DPC count:                                      0
_________________________________________________________________________________________________________
CPU 14 Interrupt cycle time (s):                       0,537438
CPU 14 ISR highest execution time (µs):                4,598114
CPU 14 ISR total execution time (s):                   0,000284
CPU 14 ISR count:                                      271
CPU 14 DPC highest execution time (µs):                138,915144
CPU 14 DPC total execution time (s):                   0,005614
CPU 14 DPC count:                                      902
_________________________________________________________________________________________________________
CPU 15 Interrupt cycle time (s):                       0,530844
CPU 15 ISR highest execution time (µs):                25,084266
CPU 15 ISR total execution time (s):                   0,000584
CPU 15 ISR count:                                      462
CPU 15 DPC highest execution time (µs):                55,277549
CPU 15 DPC total execution time (s):                   0,002468
CPU 15 DPC count:                                      427
_________________________________________________________________________________________________________
 

Attached Files


  • 0

#6
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,503 posts
  • MVP

In the Search box type:  dxdiag

wait for it to find it.  Right click on dxdiag.exe and Run As Admin.
Yes
Once it finishes (green line in bottom left goes away)

Save All Information.  Point it at your desktop and it should save it as dxdiag.txt.

Exit

Double click on dxdiag.txt and copy and paste the text into a reply.

 

Speccy is showing it is running a bit  hot for a desktop but Speccy has not been that reliable recently so let's get a second opinion.

 


http://www.filehippo...nload_speedfan/

Download, save and Install it (Win 7+ or Vista right click and Run As Admin.) then run it (Win 7+ or Vista right click and Run As Admin.).

It will tell you your temps in real time tho the default is to show the hard drive temp in the systray.  You can change it:  Hit Configure then click on the highest temp and check Show in tray.  With no other programs running what is the highest temp you see?  Run an anti-virus scan, play one of your games or watch a video for at least 5 minutes.  What is the highest temp now?
 

We don't really want it to go over about 65 under load.  If it does it usually means either the fan is defective (speedfan should tell you your fan speed so you can see if it is running) or (most likely) the interface between the fan and the heatsink is clogged with dust. The best fix for a clogged heatsink is to remove the fan (not the heatsink or heatpipe) and vacuum out the heatsink.

 

If the highest temp is your graphics adapter then check its fan and heatsink.

 

Your second drive is sadly a Seagate and it's showing Command Time Outs:
 

BC
                                            Attribute name    Command Timeout
                                            Real value    196 615 <== This seems very bad but Seagates always show errors
                                            Current    100
                                            Worst    99
                                            Threshold    0
                                            Raw Value    0000030007
                                            Status    Good

 

 

let's see what speedfan thinks of it.

 

click on the S.M.A.R.T. tab.  Click on the down arrow to the right of the Hard Disk box.  Select your Seagate hard drive.  Click on Perform an In-depth Online Analysis of this hard disk.  Your browser will open.

At the bottom of the new page will be a line:  

The link to get back and see a new report about this hard disk in the future is this.

Right click on the underlined "this" and select Copy Link Address.  Move to a Reply and Paste (Ctrl + v).

 

You can also test it with HDTune:

 

https://www.lifewire...-review-2624561

Select the Seagate Drive then hit Start.  What is the Average transfer rate?  Do you see a lot of dropouts where the graph drops to the bottom?

 

Finally search for

 

device manager

and hit Enter.  Find your Network Adapters and hit the arrow in front to open them up.  Find the Realtek and right click on it and Update Driver.  Does it say you have the best driver?

 


 


  • 0

#7
Zukolol

Zukolol

    New Member

  • Topic Starter
  • Member
  • Pip
  • 7 posts

Hey, thanks again for the help!

 

DxDiag.txt log:

 

 

 

------------------

System Information
------------------
      Time of this report: 5/19/2018, 13:24:08
             Machine name: DESKTOP-UL056C5
               Machine Id: {A0792838-9328-4757-BE65-7973190924E1}
         Operating System: Windows 10 Famille 64-bit (10.0, Build 16299) (16299.rs3_release_svc_escrow.180502-1908)
                 Language: French (Regional Setting: French)
      System Manufacturer: Gigabyte Technology Co., Ltd.
             System Model: AB350-Gaming 3
                     BIOS: BIOS Date: 09/08/17 16:16:39 Ver: 05.0000C
                Processor: AMD Ryzen 7 1700X Eight-Core Processor          (16 CPUs), ~3.4GHz
                   Memory: 32768MB RAM
      Available OS Memory: 32720MB RAM
                Page File: 7788MB used, 26979MB available
              Windows Dir: C:\WINDOWS
          DirectX Version: DirectX 12
      DX Setup Parameters: Not found
         User DPI Setting: 96 DPI (100 percent)
       System DPI Setting: 96 DPI (100 percent)
          DWM DPI Scaling: Disabled
                 Miracast: Available, with HDCP
Microsoft Graphics Hybrid: Not Supported
           DxDiag Version: 10.00.16299.0015 64bit Unicode
 
------------
DxDiag Notes
------------
      Display Tab 1: No problems found.
      Display Tab 2: No problems found.
        Sound Tab 1: No problems found.
        Sound Tab 2: No problems found.
          Input Tab: No problems found.
 
--------------------
DirectX Debug Levels
--------------------
Direct3D:    0/4 (retail)
DirectDraw:  0/4 (retail)
DirectInput: 0/5 (retail)
DirectMusic: 0/5 (retail)
DirectPlay:  0/9 (retail)
DirectSound: 0/5 (retail)
DirectShow:  0/6 (retail)
 
---------------
Display Devices
---------------
           Card name: NVIDIA GeForce GTX 1060 6GB
        Manufacturer: NVIDIA
           Chip type: GeForce GTX 1060 6GB
            DAC type: Integrated RAMDAC
         Device Type: Full Device
          Device Key: Enum\PCI\VEN_10DE&DEV_1C03&SUBSYS_11D710DE&REV_A1
       Device Status: 0180200A [DN_DRIVER_LOADED|DN_STARTED|DN_DISABLEABLE|DN_NT_ENUMERATOR|DN_NT_DRIVER] 
 Device Problem Code: No Problem
 Driver Problem Code: Unknown
      Display Memory: 22411 MB
    Dedicated Memory: 6052 MB
       Shared Memory: 16359 MB
        Current Mode: 1920 x 1080 (32 bit) (60Hz)
         HDR Support: Not Supported
    Display Topology: Extend
 Display Color Space: DXGI_COLOR_SPACE_RGB_FULL_G22_NONE_P709
     Color Primaries: Red(0.650891,0.329602), Green(0.331555,0.622570), Blue(0.151867,0.053234), White Point(0.313000,0.329602)
   Display Luminance: Min Luminance = 0.500000, Max Luminance = 270.000000, MaxFullFrameLuminance = 270.000000
        Monitor Name: Generic PnP Monitor
       Monitor Model: BenQ XL2411Z
          Monitor Id: BNQ7F31
         Native Mode: 1920 x 1080(p) (60.000Hz)
         Output Type: DVI
Monitor Advanced Color Capabilities: None
Display Pixel Format: DISPLAYCONFIG_PIXELFORMAT_32BPP
         Driver Name: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvldumdx.dll,C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvldumdx.dll,C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvldumdx.dll,C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvldumdx.dll
 Driver File Version: 24.21.0013.9764 (English)
      Driver Version: 24.21.13.9764
         DDI Version: 12
      Feature Levels: 12_1,12_0,11_1,11_0,10_1,10_0,9_3,9_2,9_1
        Driver Model: WDDM 2.3
 Graphics Preemption: Pixel
  Compute Preemption: Dispatch
            Miracast: Not Supported
 Hybrid Graphics GPU: Not Supported
      Power P-states: Not Supported
   Driver Attributes: Final Retail
    Driver Date/Size: 07/05/2018 02:00:00, 950552 bytes
         WHQL Logo'd: Yes
     WHQL Date Stamp: Unknown
   Device Identifier: {D7B71E3E-5F43-11CF-4A55-DA311BC2D535}
           Vendor ID: 0x10DE
           Device ID: 0x1C03
           SubSys ID: 0x11D710DE
         Revision ID: 0x00A1
  Driver Strong Name: oem16.inf:0f066de38c1ebff8:Section090:24.21.13.9764:pci\ven_10de&dev_1c03
      Rank Of Driver: 00D12001
         Video Accel: 
         DXVA2 Modes: DXVA2_ModeMPEG2_VLD  DXVA2_ModeVC1_D2010  DXVA2_ModeVC1_VLD  DXVA2_ModeH264_VLD_Stereo_Progressive_NoFGT  DXVA2_ModeH264_VLD_Stereo_NoFGT  DXVA2_ModeH264_VLD_NoFGT  DXVA2_ModeHEVC_VLD_Main  DXVA2_ModeHEVC_VLD_Main10  DXVA2_ModeMPEG4pt2_VLD_Simple  DXVA2_ModeMPEG4pt2_VLD_AdvSimple_NoGMC  
   Deinterlace Caps: {6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(YUY2,YUY2) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_PixelAdaptive 
                     {F9F19DA5-3B09-4B2F-9D89-C64753E3EAAB}: Format(In/Out)=(YUY2,YUY2) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY 
                     {5A54A0C9-C7EC-4BD9-8EDE-F3C75DC4393B}: Format(In/Out)=(YUY2,YUY2) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY 
                     {335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(YUY2,YUY2) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_BOBVerticalStretch 
                     {6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(UYVY,UYVY) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_PixelAdaptive 
                     {F9F19DA5-3B09-4B2F-9D89-C64753E3EAAB}: Format(In/Out)=(UYVY,UYVY) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY 
                     {5A54A0C9-C7EC-4BD9-8EDE-F3C75DC4393B}: Format(In/Out)=(UYVY,UYVY) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY 
                     {335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(UYVY,UYVY) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_BOBVerticalStretch 
                     {6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(YV12,0x32315659) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_PixelAdaptive 
                     {F9F19DA5-3B09-4B2F-9D89-C64753E3EAAB}: Format(In/Out)=(YV12,0x32315659) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY 
                     {5A54A0C9-C7EC-4BD9-8EDE-F3C75DC4393B}: Format(In/Out)=(YV12,0x32315659) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY 
                     {335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(YV12,0x32315659) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_BOBVerticalStretch 
                     {6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(NV12,0x3231564e) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_PixelAdaptive 
                     {F9F19DA5-3B09-4B2F-9D89-C64753E3EAAB}: Format(In/Out)=(NV12,0x3231564e) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY 
                     {5A54A0C9-C7EC-4BD9-8EDE-F3C75DC4393B}: Format(In/Out)=(NV12,0x3231564e) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY 
                     {335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(NV12,0x3231564e) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_BOBVerticalStretch 
                     {6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(IMC1,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {F9F19DA5-3B09-4B2F-9D89-C64753E3EAAB}: Format(In/Out)=(IMC1,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {5A54A0C9-C7EC-4BD9-8EDE-F3C75DC4393B}: Format(In/Out)=(IMC1,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(IMC1,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(IMC2,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {F9F19DA5-3B09-4B2F-9D89-C64753E3EAAB}: Format(In/Out)=(IMC2,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {5A54A0C9-C7EC-4BD9-8EDE-F3C75DC4393B}: Format(In/Out)=(IMC2,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(IMC2,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(IMC3,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {F9F19DA5-3B09-4B2F-9D89-C64753E3EAAB}: Format(In/Out)=(IMC3,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {5A54A0C9-C7EC-4BD9-8EDE-F3C75DC4393B}: Format(In/Out)=(IMC3,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(IMC3,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(IMC4,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {F9F19DA5-3B09-4B2F-9D89-C64753E3EAAB}: Format(In/Out)=(IMC4,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {5A54A0C9-C7EC-4BD9-8EDE-F3C75DC4393B}: Format(In/Out)=(IMC4,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(IMC4,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(S340,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {F9F19DA5-3B09-4B2F-9D89-C64753E3EAAB}: Format(In/Out)=(S340,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {5A54A0C9-C7EC-4BD9-8EDE-F3C75DC4393B}: Format(In/Out)=(S340,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(S340,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(S342,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {F9F19DA5-3B09-4B2F-9D89-C64753E3EAAB}: Format(In/Out)=(S342,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {5A54A0C9-C7EC-4BD9-8EDE-F3C75DC4393B}: Format(In/Out)=(S342,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(S342,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
        D3D9 Overlay: Supported
             DXVA-HD: Supported
        DDraw Status: Enabled
          D3D Status: Enabled
          AGP Status: Enabled
       MPO MaxPlanes: 1
            MPO Caps: Not Supported
         MPO Stretch: Not Supported
     MPO Media Hints: Not Supported
         MPO Formats: Not Supported
    PanelFitter Caps: Not Supported
 PanelFitter Stretch: Not Supported
 
           Card name: NVIDIA GeForce GTX 1060 6GB
        Manufacturer: NVIDIA
           Chip type: GeForce GTX 1060 6GB
            DAC type: Integrated RAMDAC
         Device Type: Full Device
          Device Key: Enum\PCI\VEN_10DE&DEV_1C03&SUBSYS_11D710DE&REV_A1
       Device Status: 0180200A [DN_DRIVER_LOADED|DN_STARTED|DN_DISABLEABLE|DN_NT_ENUMERATOR|DN_NT_DRIVER] 
 Device Problem Code: No Problem
 Driver Problem Code: Unknown
      Display Memory: 22411 MB
    Dedicated Memory: 6052 MB
       Shared Memory: 16359 MB
        Current Mode: 1920 x 1080 (32 bit) (60Hz)
         HDR Support: Not Supported
    Display Topology: Extend
 Display Color Space: DXGI_COLOR_SPACE_RGB_FULL_G22_NONE_P709
     Color Primaries: Red(0.637219,0.330578), Green(0.310070,0.620617), Blue(0.153820,0.067883), White Point(0.313977,0.329602)
   Display Luminance: Min Luminance = 0.500000, Max Luminance = 270.000000, MaxFullFrameLuminance = 270.000000
        Monitor Name: Generic PnP Monitor
       Monitor Model: PL2274HD
          Monitor Id: IVM5619
         Native Mode: 1920 x 1080(p) (60.000Hz)
         Output Type: DVI
Monitor Advanced Color Capabilities: None
Display Pixel Format: DISPLAYCONFIG_PIXELFORMAT_32BPP
         Driver Name: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvldumdx.dll,C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvldumdx.dll,C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvldumdx.dll,C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvldumdx.dll
 Driver File Version: 24.21.0013.9764 (English)
      Driver Version: 24.21.13.9764
         DDI Version: 12
      Feature Levels: 12_1,12_0,11_1,11_0,10_1,10_0,9_3,9_2,9_1
        Driver Model: WDDM 2.3
 Graphics Preemption: Pixel
  Compute Preemption: Dispatch
            Miracast: Not Supported
 Hybrid Graphics GPU: Not Supported
      Power P-states: Not Supported
   Driver Attributes: Final Retail
    Driver Date/Size: 07/05/2018 02:00:00, 950552 bytes
         WHQL Logo'd: Yes
     WHQL Date Stamp: Unknown
   Device Identifier: {D7B71E3E-5F43-11CF-4A55-DA311BC2D535}
           Vendor ID: 0x10DE
           Device ID: 0x1C03
           SubSys ID: 0x11D710DE
         Revision ID: 0x00A1
  Driver Strong Name: oem16.inf:0f066de38c1ebff8:Section090:24.21.13.9764:pci\ven_10de&dev_1c03
      Rank Of Driver: 00D12001
         Video Accel: 
         DXVA2 Modes: DXVA2_ModeMPEG2_VLD  DXVA2_ModeVC1_D2010  DXVA2_ModeVC1_VLD  DXVA2_ModeH264_VLD_Stereo_Progressive_NoFGT  DXVA2_ModeH264_VLD_Stereo_NoFGT  DXVA2_ModeH264_VLD_NoFGT  DXVA2_ModeHEVC_VLD_Main  DXVA2_ModeHEVC_VLD_Main10  DXVA2_ModeMPEG4pt2_VLD_Simple  DXVA2_ModeMPEG4pt2_VLD_AdvSimple_NoGMC  
   Deinterlace Caps: {6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(YUY2,YUY2) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_PixelAdaptive 
                     {F9F19DA5-3B09-4B2F-9D89-C64753E3EAAB}: Format(In/Out)=(YUY2,YUY2) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY 
                     {5A54A0C9-C7EC-4BD9-8EDE-F3C75DC4393B}: Format(In/Out)=(YUY2,YUY2) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY 
                     {335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(YUY2,YUY2) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_BOBVerticalStretch 
                     {6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(UYVY,UYVY) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_PixelAdaptive 
                     {F9F19DA5-3B09-4B2F-9D89-C64753E3EAAB}: Format(In/Out)=(UYVY,UYVY) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY 
                     {5A54A0C9-C7EC-4BD9-8EDE-F3C75DC4393B}: Format(In/Out)=(UYVY,UYVY) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY 
                     {335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(UYVY,UYVY) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_BOBVerticalStretch 
                     {6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(YV12,0x32315659) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_PixelAdaptive 
                     {F9F19DA5-3B09-4B2F-9D89-C64753E3EAAB}: Format(In/Out)=(YV12,0x32315659) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY 
                     {5A54A0C9-C7EC-4BD9-8EDE-F3C75DC4393B}: Format(In/Out)=(YV12,0x32315659) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY 
                     {335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(YV12,0x32315659) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_BOBVerticalStretch 
                     {6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(NV12,0x3231564e) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_PixelAdaptive 
                     {F9F19DA5-3B09-4B2F-9D89-C64753E3EAAB}: Format(In/Out)=(NV12,0x3231564e) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY 
                     {5A54A0C9-C7EC-4BD9-8EDE-F3C75DC4393B}: Format(In/Out)=(NV12,0x3231564e) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY 
                     {335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(NV12,0x3231564e) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_BOBVerticalStretch 
                     {6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(IMC1,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {F9F19DA5-3B09-4B2F-9D89-C64753E3EAAB}: Format(In/Out)=(IMC1,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {5A54A0C9-C7EC-4BD9-8EDE-F3C75DC4393B}: Format(In/Out)=(IMC1,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(IMC1,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(IMC2,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {F9F19DA5-3B09-4B2F-9D89-C64753E3EAAB}: Format(In/Out)=(IMC2,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {5A54A0C9-C7EC-4BD9-8EDE-F3C75DC4393B}: Format(In/Out)=(IMC2,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(IMC2,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(IMC3,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {F9F19DA5-3B09-4B2F-9D89-C64753E3EAAB}: Format(In/Out)=(IMC3,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {5A54A0C9-C7EC-4BD9-8EDE-F3C75DC4393B}: Format(In/Out)=(IMC3,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(IMC3,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(IMC4,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {F9F19DA5-3B09-4B2F-9D89-C64753E3EAAB}: Format(In/Out)=(IMC4,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {5A54A0C9-C7EC-4BD9-8EDE-F3C75DC4393B}: Format(In/Out)=(IMC4,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(IMC4,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(S340,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {F9F19DA5-3B09-4B2F-9D89-C64753E3EAAB}: Format(In/Out)=(S340,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {5A54A0C9-C7EC-4BD9-8EDE-F3C75DC4393B}: Format(In/Out)=(S340,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(S340,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(S342,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {F9F19DA5-3B09-4B2F-9D89-C64753E3EAAB}: Format(In/Out)=(S342,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {5A54A0C9-C7EC-4BD9-8EDE-F3C75DC4393B}: Format(In/Out)=(S342,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
                     {335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(S342,UNKNOWN) Frames(Prev/Fwd/Back)=(0,0,0) Caps=
        D3D9 Overlay: Supported
             DXVA-HD: Supported
        DDraw Status: Enabled
          D3D Status: Enabled
          AGP Status: Enabled
       MPO MaxPlanes: 1
            MPO Caps: Not Supported
         MPO Stretch: Not Supported
     MPO Media Hints: Not Supported
         MPO Formats: Not Supported
    PanelFitter Caps: Not Supported
 PanelFitter Stretch: Not Supported
 
-------------
Sound Devices
-------------
            Description: Realtek HD Audio 2nd output (Realtek High Definition Audio)
 Default Sound Playback: Yes
 Default Voice Playback: Yes
            Hardware ID: HDAUDIO\FUNC_01&VEN_10EC&DEV_1220&SUBSYS_1458A182&REV_1000
        Manufacturer ID: 1
             Product ID: 100
                   Type: WDM
            Driver Name: RTKVHD64.sys
         Driver Version: 6.00.0001.8302 (English)
      Driver Attributes: Final Retail
            WHQL Logo'd: Yes
          Date and Size: 14/11/2017 00:00:00, 6038440 bytes
            Other Files: 
        Driver Provider: Realtek Semiconductor Corp.
         HW Accel Level: Basic
              Cap Flags: 0xF1F
    Min/Max Sample Rate: 100, 200000
Static/Strm HW Mix Bufs: 1, 0
 Static/Strm HW 3D Bufs: 0, 0
              HW Memory: 0
       Voice Management: No
 EAX™ 2.0 Listen/Src: No, No
   I3DL2™ Listen/Src: No, No
Sensaura™ ZoomFX™: No
 
            Description: Realtek Digital Output (Realtek High Definition Audio)
 Default Sound Playback: No
 Default Voice Playback: No
            Hardware ID: HDAUDIO\FUNC_01&VEN_10EC&DEV_1220&SUBSYS_1458A182&REV_1000
        Manufacturer ID: 1
             Product ID: 100
                   Type: WDM
            Driver Name: RTKVHD64.sys
         Driver Version: 6.00.0001.8302 (English)
      Driver Attributes: Final Retail
            WHQL Logo'd: Yes
          Date and Size: 14/11/2017 00:00:00, 6038440 bytes
            Other Files: 
        Driver Provider: Realtek Semiconductor Corp.
         HW Accel Level: Basic
              Cap Flags: 0xF1F
    Min/Max Sample Rate: 100, 200000
Static/Strm HW Mix Bufs: 1, 0
 Static/Strm HW 3D Bufs: 0, 0
              HW Memory: 0
       Voice Management: No
 EAX™ 2.0 Listen/Src: No, No
   I3DL2™ Listen/Src: No, No
Sensaura™ ZoomFX™: No
 
---------------------
Sound Capture Devices
---------------------
            Description: Microphone (Realtek High Definition Audio)
  Default Sound Capture: Yes
  Default Voice Capture: Yes
            Driver Name: RTKVHD64.sys
         Driver Version: 6.00.0001.8302 (English)
      Driver Attributes: Final Retail
          Date and Size: 11/16/2017 02:45:26, 6038440 bytes
              Cap Flags: 0x1
           Format Flags: 0xFFFFF
 
---------------------
Video Capture Devices
Number of Devices: 0
---------------------
-------------------
DirectInput Devices
-------------------
      Device Name: Souris
         Attached: 1
    Controller ID: n/a
Vendor/Product ID: n/a
        FF Driver: n/a
 
      Device Name: Clavier
         Attached: 1
    Controller ID: n/a
Vendor/Product ID: n/a
        FF Driver: n/a
 
      Device Name: Razer DeathAdder
         Attached: 1
    Controller ID: 0x0
Vendor/Product ID: 0x1532, 0x0037
        FF Driver: n/a
 
      Device Name: Razer DeathAdder
         Attached: 1
    Controller ID: 0x0
Vendor/Product ID: 0x1532, 0x0037
        FF Driver: n/a
 
      Device Name: Razer BlackWidow Ultimate
         Attached: 1
    Controller ID: 0x0
Vendor/Product ID: 0x1532, 0x0214
        FF Driver: n/a
 
      Device Name: Razer DeathAdder
         Attached: 1
    Controller ID: 0x0
Vendor/Product ID: 0x1532, 0x0037
        FF Driver: n/a
 
      Device Name: Razer BlackWidow Ultimate
         Attached: 1
    Controller ID: 0x0
Vendor/Product ID: 0x1532, 0x0214
        FF Driver: n/a
 
      Device Name: Razer BlackWidow Ultimate
         Attached: 1
    Controller ID: 0x0
Vendor/Product ID: 0x1532, 0x0214
        FF Driver: n/a
 
      Device Name: Razer BlackWidow Ultimate
         Attached: 1
    Controller ID: 0x0
Vendor/Product ID: 0x1532, 0x0214
        FF Driver: n/a
 
      Device Name: Controller (XBOX 360 For Windows)
         Attached: 1
    Controller ID: 0x0
Vendor/Product ID: 0x045E, 0x028E
        FF Driver: n/a
 
      Device Name: Razer DeathAdder
         Attached: 1
    Controller ID: 0x0
Vendor/Product ID: 0x1532, 0x0037
        FF Driver: n/a
 
Poll w/ Interrupt: No
 
-----------
USB Devices
-----------
+ Hub USB racine (USB 3.0)
| Vendor/Product ID: 0x1022, 0x145C
| Matching Device ID: USB\ROOT_HUB30
| Service: USBHUB3
| Driver: USBHUB3.SYS, 3/13/2018 08:54:16, 555936 bytes
+-+ Périphérique USB composite
| | Vendor/Product ID: 0x1532, 0x0214
| | Location: Port_#0003.Hub_#0002
| | Matching Device ID: USB\COMPOSITE
| | Service: usbccgp
| | Driver: usbccgp.sys, 9/29/2017 15:41:08, 168856 bytes
| | 
| +-+ Périphérique d’entrée USB
| | | Vendor/Product ID: 0x1532, 0x0214
| | | Location: 0011.0000.0003.003.000.000.000.000.000
| | | Matching Device ID: USB\Class_03&SubClass_01
| | | Service: HidUsb
| | | Driver: hidusb.sys, 9/29/2017 15:41:08, 40960 bytes
| | | Driver: hidclass.sys, 9/29/2017 15:41:08, 187392 bytes
| | | Driver: hidparse.sys, 2/22/2018 02:30:58, 46080 bytes
| | | 
| | +-+ Périphérique clavier PIH
| | | | Vendor/Product ID: 0x1532, 0x0214
| | | | Matching Device ID: HID_DEVICE_SYSTEM_KEYBOARD
| | | | Service: kbdhid
| | | | Driver: kbdhid.sys, 9/29/2017 15:41:08, 40448 bytes
| | | | Driver: kbdclass.sys, 9/29/2017 15:41:08, 63384 bytes
| | | 
| +-+ Razer BlackWidow Ultimate
| | | Vendor/Product ID: 0x1532, 0x0214
| | | Location: 0011.0000.0003.003.000.000.000.000.000
| | | Matching Device ID: USB\VID_1532&PID_0214&MI_01
| | | Lower Filters: rzendpt
| | | Service: HidUsb
| | | Driver: rzendpt.sys, 10/26/2015 15:10:56, 50392 bytes
| | | Driver: hidusb.sys, 9/29/2017 15:41:08, 40960 bytes
| | | Driver: hidclass.sys, 9/29/2017 15:41:08, 187392 bytes
| | | Driver: hidparse.sys, 2/22/2018 02:30:58, 46080 bytes
| | | Driver: WdfCoInstaller01009.dll, 1/19/2018 22:32:10, 1740416 bytes
| | | 
| | +-+ Razer BlackWidow Ultimate
| | | | Vendor/Product ID: 0x1532, 0x0214
| | | | Matching Device ID: HID\VID_1532&PID_0214&MI_01&Col01
| | | | Upper Filters: rzudd
| | | | Service: kbdhid
| | | | Driver: rzudd.sys, 10/26/2015 15:12:06, 201432 bytes
| | | | Driver: kbdhid.sys, 9/29/2017 15:41:08, 40448 bytes
| | | | Driver: kbdclass.sys, 9/29/2017 15:41:08, 63384 bytes
| | | | Driver: WdfCoInstaller01009.dll, 1/19/2018 22:32:10, 1740416 bytes
| | | 
| +-+ Périphérique d’entrée USB
| | | Vendor/Product ID: 0x1532, 0x0214
| | | Location: 0011.0000.0003.003.000.000.000.000.000
| | | Matching Device ID: USB\Class_03
| | | Service: HidUsb
| | | Driver: hidusb.sys, 9/29/2017 15:41:08, 40960 bytes
| | | Driver: hidclass.sys, 9/29/2017 15:41:08, 187392 bytes
| | | Driver: hidparse.sys, 2/22/2018 02:30:58, 46080 bytes
| | | 
| | +-+ Razer BlackWidow Ultimate
| | | | Vendor/Product ID: 0x1532, 0x0214
| | | | Matching Device ID: HID\VID_1532&PID_0214&MI_02
| | | | Upper Filters: rzudd
| | | | Service: mouhid
| | | | Driver: rzudd.sys, 10/26/2015 15:12:06, 201432 bytes
| | | | Driver: mouhid.sys, 9/29/2017 15:41:08, 32768 bytes
| | | | Driver: mouclass.sys, 9/29/2017 15:41:08, 57240 bytes
| | | | Driver: WdfCoInstaller01009.dll, 1/19/2018 22:32:10, 1740416 bytes
| | 
+-+ Périphérique USB composite
| | Vendor/Product ID: 0x1532, 0x0037
| | Location: Port_#0004.Hub_#0002
| | Matching Device ID: USB\COMPOSITE
| | Service: usbccgp
| | Driver: usbccgp.sys, 9/29/2017 15:41:08, 168856 bytes
| | 
| +-+ Périphérique d’entrée USB
| | | Vendor/Product ID: 0x1532, 0x0037
| | | Location: 0011.0000.0003.004.000.000.000.000.000
| | | Matching Device ID: USB\Class_03&SubClass_01
| | | Service: HidUsb
| | | Driver: hidusb.sys, 9/29/2017 15:41:08, 40960 bytes
| | | Driver: hidclass.sys, 9/29/2017 15:41:08, 187392 bytes
| | | Driver: hidparse.sys, 2/22/2018 02:30:58, 46080 bytes
| | | 
| | +-+ Razer DeathAdder
| | | | Vendor/Product ID: 0x1532, 0x0037
| | | | Matching Device ID: HID\VID_1532&PID_0037&MI_00
| | | | Upper Filters: rzudd
| | | | Service: mouhid
| | | | Driver: rzudd.sys, 10/26/2015 15:12:06, 201432 bytes
| | | | Driver: mouhid.sys, 9/29/2017 15:41:08, 32768 bytes
| | | | Driver: mouclass.sys, 9/29/2017 15:41:08, 57240 bytes
| | | | Driver: WdfCoInstaller01009.dll, 1/19/2018 22:32:10, 1740416 bytes
| | | 
| +-+ Razer DeathAdder
| | | Vendor/Product ID: 0x1532, 0x0037
| | | Location: 0011.0000.0003.004.000.000.000.000.000
| | | Matching Device ID: USB\VID_1532&PID_0037&MI_01
| | | Lower Filters: rzendpt
| | | Service: HidUsb
| | | Driver: rzendpt.sys, 10/26/2015 15:10:56, 50392 bytes
| | | Driver: hidusb.sys, 9/29/2017 15:41:08, 40960 bytes
| | | Driver: hidclass.sys, 9/29/2017 15:41:08, 187392 bytes
| | | Driver: hidparse.sys, 2/22/2018 02:30:58, 46080 bytes
| | | Driver: WdfCoInstaller01009.dll, 1/19/2018 22:32:10, 1740416 bytes
| | | 
| | +-+ Razer DeathAdder
| | | | Vendor/Product ID: 0x1532, 0x0037
| | | | Matching Device ID: HID\VID_1532&PID_0037&MI_01&Col01
| | | | Upper Filters: rzudd
| | | | Service: kbdhid
| | | | Driver: rzudd.sys, 10/26/2015 15:12:06, 201432 bytes
| | | | Driver: kbdhid.sys, 9/29/2017 15:41:08, 40448 bytes
| | | | Driver: kbdclass.sys, 9/29/2017 15:41:08, 63384 bytes
| | | | Driver: WdfCoInstaller01009.dll, 1/19/2018 22:32:10, 1740416 bytes
| | | 
| +-+ Périphérique d’entrée USB
| | | Vendor/Product ID: 0x1532, 0x0037
| | | Location: 0011.0000.0003.004.000.000.000.000.000
| | | Matching Device ID: USB\Class_03&SubClass_01
| | | Service: HidUsb
| | | Driver: hidusb.sys, 9/29/2017 15:41:08, 40960 bytes
| | | Driver: hidclass.sys, 9/29/2017 15:41:08, 187392 bytes
| | | Driver: hidparse.sys, 2/22/2018 02:30:58, 46080 bytes
| | | 
| | +-+ Périphérique clavier PIH
| | | | Vendor/Product ID: 0x1532, 0x0037
| | | | Matching Device ID: HID_DEVICE_SYSTEM_KEYBOARD
| | | | Service: kbdhid
| | | | Driver: kbdhid.sys, 9/29/2017 15:41:08, 40448 bytes
| | | | Driver: kbdclass.sys, 9/29/2017 15:41:08, 63384 bytes
 
----------------
Gameport Devices
----------------
 
------------
PS/2 Devices
------------
 
------------------------
Disk & DVD/CD-ROM Drives
------------------------
      Drive: C:
 Free Space: 644.7 GB
Total Space: 953.4 GB
File System: NTFS
      Model: Samsung SSD 850 EVO 1TB
 
      Drive: D:
 Free Space: 650.0 GB
Total Space: 953.9 GB
File System: NTFS
      Model: ST31000524AS
 
      Drive: E:
      Model: TSSTcorp CDDVDW SH-222BB
     Driver: c:\windows\system32\drivers\cdrom.sys, 10.00.16299.0015 (French), 9/29/2017 15:41:02, 159744 bytes
 
--------------
System Devices
--------------
     Name: Port commuté en aval PCI Express
Device ID: PCI\VEN_1022&DEV_43B4&SUBSYS_33061B21&REV_02\5&588F5BE&0&08020B
   Driver: C:\WINDOWS\system32\DRIVERS\pci.sys, 10.00.16299.0402 (French), 4/15/2018 23:33:17, 362904 bytes
 
     Name: Pont processeur hôte standard PCI
Device ID: PCI\VEN_1022&DEV_1461&SUBSYS_00000000&REV_00\3&11583659&0&C1
   Driver: n/a
 
     Name: Contrôleur hôte AMD USB 3.0 eXtensible - 1.0 (Microsoft)
Device ID: PCI\VEN_1022&DEV_145C&SUBSYS_50071458&REV_00\4&C93BEE2&0&0339
   Driver: C:\WINDOWS\system32\DRIVERS\USBXHCI.SYS, 10.00.16299.0431 (French), 5/3/2018 09:36:57, 437664 bytes
 
     Name: Realtek PCIe GBE Family Controller
Device ID: PCI\VEN_10EC&DEV_8168&SUBSYS_E0001458&REV_0C\01000000684CE00000
   Driver: C:\WINDOWS\system32\DRIVERS\rt640x64.sys, 9.01.0406.2015 (French), 9/29/2017 15:41:03, 604160 bytes
 
     Name: Pont processeur hôte standard PCI
Device ID: PCI\VEN_1022&DEV_1464&SUBSYS_00000000&REV_00\3&11583659&0&C4
   Driver: n/a
 
     Name: Port commuté en aval PCI Express
Device ID: PCI\VEN_1022&DEV_43B4&SUBSYS_33061B21&REV_02\5&588F5BE&0&00020B
   Driver: C:\WINDOWS\system32\DRIVERS\pci.sys, 10.00.16299.0402 (French), 4/15/2018 23:33:17, 362904 bytes
 
     Name: Contrôleur AHCI SATA standard
Device ID: PCI\VEN_1022&DEV_7901&SUBSYS_B0021458&REV_51\4&2B9CC193&0&0241
   Driver: C:\WINDOWS\system32\DRIVERS\storahci.sys, 10.00.16299.0251 (English), 2/22/2018 04:02:49, 149400 bytes
 
     Name: AMD SMBus
Device ID: PCI\VEN_1022&DEV_790B&SUBSYS_50011458&REV_59\3&11583659&0&A0
   Driver: n/a
 
     Name: AMD PSP 3.0 Device
Device ID: PCI\VEN_1022&DEV_1456&SUBSYS_14561022&REV_00\4&C93BEE2&0&0239
   Driver: C:\WINDOWS\system32\DRIVERS\amdpsp.sys, 4.04.0000.0000 (English), 6/16/2017 10:48:56, 243048 bytes
   Driver: C:\WINDOWS\system32\DRIVERS\amdkmcsp.sys, 4.04.0000.0000 (English), 6/16/2017 10:48:52, 101232 bytes
   Driver: C:\WINDOWS\system32\amdumcsp.dll, 4.04.0000.0000 (English), 6/16/2017 10:49:06, 91632 bytes
   Driver: C:\WINDOWS\SysWOW64\amdumcsp.dll, 4.04.0000.0000 (English), 6/16/2017 10:49:04, 71664 bytes
   Driver: C:\WINDOWS\system32\t-base_client_api.dll, 4.04.0000.0000 (English), 6/16/2017 10:49:06, 26096 bytes
   Driver: C:\WINDOWS\SysWOW64\t-base_client_api.dll, 4.04.0000.0000 (English), 6/16/2017 10:49:06, 21992 bytes
   Driver: C:\WINDOWS\system32\tbaseregistry64.dll, 4.04.0000.0000 (English), 6/16/2017 10:49:06, 129008 bytes
   Driver: C:\WINDOWS\SysWOW64\tbaseregistry32.dll, 4.04.0000.0000 (English), 6/16/2017 10:49:06, 108528 bytes
   Driver: C:\WINDOWS\system32\WdfCoInstaller01011.dll, 1.11.9200.16384 (French), 6/16/2017 10:49:08, 1804672 bytes
   Driver: C:\WINDOWS\system32\pspcoins.dll, 1.00.0005.0009 (English), 6/16/2017 10:49:06, 106480 bytes
 
     Name: Pont processeur hôte standard PCI
Device ID: PCI\VEN_1022&DEV_1467&SUBSYS_00000000&REV_00\3&11583659&0&C7
   Driver: n/a
 
     Name: Port racine PCI Express
Device ID: PCI\VEN_1022&DEV_1453&SUBSYS_14531022&REV_00\3&11583659&0&0B
   Driver: C:\WINDOWS\system32\DRIVERS\pci.sys, 10.00.16299.0402 (French), 4/15/2018 23:33:17, 362904 bytes
 
     Name: NVIDIA GeForce GTX 1060 6GB
Device ID: PCI\VEN_10DE&DEV_1C03&SUBSYS_11D710DE&REV_A1\6&1E9C7E6A&0&0020020B
   Driver: C:\WINDOWS\system32\DRIVERS\NVIDIA Corporation\Drs\dbInstaller.exe, 24.21.0013.9764 (English), 5/8/2018 23:21:24, 473504 bytes
   Driver: C:\WINDOWS\system32\DRIVERS\NVIDIA Corporation\Drs\nvdrsdb.bin, 5/7/2018 23:04:43, 1486144 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\NvContainerSetup.exe, 1.00.0007.0000 (French), 5/8/2018 23:21:54, 4414736 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\NvCplSetupInt.exe, 1.00.0007.0000 (French), 5/8/2018 23:21:56, 101336600 bytes
   Driver: C:\Program Files (x86)\NVIDIA Corporation\coprocmanager\detoured.dll, 2.01.0000.0224 (English), 5/8/2018 23:22:02, 28752 bytes
   Driver: C:\Program Files (x86)\NVIDIA Corporation\coprocmanager\nvd3d9wrap.dll, 24.21.0013.9764 (English), 5/8/2018 23:20:48, 230600 bytes
   Driver: C:\Program Files (x86)\NVIDIA Corporation\coprocmanager\nvdxgiwrap.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:08, 154528 bytes
   Driver: C:\Program Files\NVIDIA Corporation\coprocmanager\detoured.dll, 2.01.0000.0224 (English), 5/8/2018 23:22:02, 28928 bytes
   Driver: C:\Program Files\NVIDIA Corporation\coprocmanager\nvd3d9wrapx.dll, 24.21.0013.9764 (English), 5/8/2018 23:20:50, 273704 bytes
   Driver: C:\Program Files\NVIDIA Corporation\coprocmanager\nvdxgiwrapx.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:10, 182080 bytes
   Driver: C:\Program Files\NVIDIA Corporation\license.txt, 10/27/2017 19:50:09, 27203 bytes
   Driver: C:\Program Files\NVIDIA Corporation\NVSMI\MCU.exe, 1.01.5204.20580 (French), 5/8/2018 23:21:32, 858200 bytes
   Driver: C:\Program Files\NVIDIA Corporation\NVSMI\nvdebugdump.exe, 6.14.0013.9764 (English), 5/8/2018 23:22:00, 428992 bytes
   Driver: C:\Program Files\NVIDIA Corporation\NVSMI\nvidia-smi.1.pdf, 5/7/2018 23:04:43, 78136 bytes
   Driver: C:\Program Files\NVIDIA Corporation\NVSMI\nvidia-smi.exe, 8.17.0013.9764 (English), 5/8/2018 23:22:12, 519528 bytes
   Driver: C:\Program Files\NVIDIA Corporation\NVSMI\nvml.dll, 8.17.0013.9764 (English), 5/8/2018 23:22:26, 929640 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\OpenCL32.dll, 2.02.0001.0000 (English), 5/8/2018 23:23:18, 456792 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\OpenCL64.dll, 2.02.0001.0000 (English), 5/8/2018 23:23:18, 552024 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvlddmkm.sys, 24.21.0013.9764 (English), 5/8/2018 23:22:24, 17168744 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nv-vk64.json, 5/7/2018 23:04:43, 669 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvcbl64.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:40, 1811112 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvd3dumx.dll, 24.21.0013.9764 (English), 5/8/2018 23:20:54, 19254696 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvd3dumx_cfg.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:00, 19661088 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvdlistx.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:08, 194552 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvinitx.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:20, 209128 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvldumdx.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:20, 950552 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvoglshim64.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:24, 184136 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvoglv64.dll, 24.21.0013.9764 (English), 5/8/2018 23:22:36, 38516152 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvrtum64.dll, 5/8/2018 23:22:46, 19918016 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvumdshimx.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:42, 591728 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvwgf2umx.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:50, 34143272 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvwgf2umx_cfg.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:58, 35137008 bytes
   Driver: C:\WINDOWS\system32\NvFBC64.dll, 6.14.0013.9764 (English), 5/8/2018 23:22:06, 1561504 bytes
   Driver: C:\WINDOWS\system32\NvIFR64.dll, 6.14.0013.9764 (English), 5/8/2018 23:22:18, 1417816 bytes
   Driver: C:\WINDOWS\system32\NvIFROpenGL.dll, 24.21.0013.9764 (English), 5/8/2018 23:22:20, 626776 bytes
   Driver: C:\WINDOWS\system32\nvDecMFTMjpeg.dll, 24.21.0013.9764 (English), 5/8/2018 23:22:02, 749928 bytes
   Driver: C:\WINDOWS\system32\nvEncMFTH264.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:12, 1349712 bytes
   Driver: C:\WINDOWS\system32\nvEncMFThevc.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:14, 1358536 bytes
   Driver: C:\WINDOWS\system32\nvEncodeAPI64.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:16, 813912 bytes
   Driver: C:\WINDOWS\system32\nvapi64.dll, 24.21.0013.9764 (English), 5/8/2018 23:20:40, 4814040 bytes
   Driver: C:\WINDOWS\system32\nvcompiler.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:48, 40346984 bytes
   Driver: C:\WINDOWS\system32\nvcuda.dll, 24.21.0013.9764 (English), 5/8/2018 23:20:44, 17779440 bytes
   Driver: C:\WINDOWS\system32\nvcuvid.dll, 7.17.0013.9764 (English), 5/8/2018 23:21:58, 4347832 bytes
   Driver: C:\WINDOWS\system32\nvfatbinaryLoader.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:18, 1157392 bytes
   Driver: C:\WINDOWS\system32\nvinfo.pb, 5/7/2018 23:04:43, 44277 bytes
   Driver: C:\WINDOWS\system32\nvmcumd.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:22, 634576 bytes
   Driver: C:\WINDOWS\system32\nvopencl.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:30, 31273728 bytes
   Driver: C:\WINDOWS\system32\nvptxJitCompiler.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:38, 13725744 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nv-vk32.json, 5/7/2018 23:04:43, 669 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvd3dum.dll, 24.21.0013.9764 (English), 5/8/2018 23:20:50, 15812448 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvd3dum_cfg.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:04, 16147544 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvdlist.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:08, 169104 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvinit.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:18, 182784 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvldumd.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:20, 793136 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvoglshim32.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:22, 156064 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvoglv32.dll, 24.21.0013.9764 (English), 5/8/2018 23:22:30, 30777272 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvumdshim.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:42, 508600 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvwgf2um.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:44, 28773712 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\nvwgf2um_cfg.dll, 24.21.0013.9764 (English), 5/8/2018 23:22:06, 29855632 bytes
   Driver: C:\WINDOWS\SysWow64\NvFBC.dll, 6.14.0013.9764 (English), 5/8/2018 23:22:06, 1215576 bytes
   Driver: C:\WINDOWS\SysWow64\NvIFR.dll, 6.14.0013.9764 (English), 5/8/2018 23:22:18, 1091432 bytes
   Driver: C:\WINDOWS\SysWow64\NvIFROpenGL.dll, 24.21.0013.9764 (English), 5/8/2018 23:22:20, 517888 bytes
   Driver: C:\WINDOWS\SysWow64\nvDecMFTMjpeg.dll, 24.21.0013.9764 (English), 5/8/2018 23:22:00, 608704 bytes
   Driver: C:\WINDOWS\SysWow64\nvEncMFTH264.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:10, 1064424 bytes
   Driver: C:\WINDOWS\SysWow64\nvEncMFThevc.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:12, 1070504 bytes
   Driver: C:\WINDOWS\SysWow64\nvEncodeAPI.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:14, 652344 bytes
   Driver: C:\WINDOWS\SysWow64\nvapi.dll, 24.21.0013.9764 (English), 5/8/2018 23:20:38, 4089240 bytes
   Driver: C:\WINDOWS\SysWow64\nvcompiler.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:40, 35250776 bytes
   Driver: C:\WINDOWS\SysWow64\nvcuda.dll, 24.21.0013.9764 (English), 5/8/2018 23:20:42, 15191088 bytes
   Driver: C:\WINDOWS\SysWow64\nvcuvid.dll, 7.17.0013.9764 (English), 5/8/2018 23:21:56, 3758496 bytes
   Driver: C:\WINDOWS\SysWow64\nvfatbinaryLoader.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:16, 904720 bytes
   Driver: C:\WINDOWS\SysWow64\nvopencl.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:24, 25987296 bytes
   Driver: C:\WINDOWS\SysWow64\nvptxJitCompiler.dll, 24.21.0013.9764 (English), 5/8/2018 23:21:36, 11271400 bytes
   Driver: C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_38c9bee769f9ef1f\VulkanRT-Installer.exe, 1.01.0070.0000 (English), 5/8/2018 23:23:22, 1019296 bytes
   Driver: C:\WINDOWS\system32\nvdispco6439764.dll, 2.00.0049.0004 (English), 5/8/2018 23:22:04, 1990688 bytes
   Driver: C:\WINDOWS\system32\nvdispgenco6439764.dll, 2.00.0026.0002 (English), 5/8/2018 23:22:04, 1467992 bytes
 
     Name: Port commuté en amont PCI Express
Device ID: PCI\VEN_1022&DEV_43B2&SUBSYS_02011B21&REV_02\4&288C77C7&0&020B
   Driver: C:\WINDOWS\system32\DRIVERS\pci.sys, 10.00.16299.0402 (French), 4/15/2018 23:33:17, 362904 bytes
 
     Name: Pont processeur hôte standard PCI
Device ID: PCI\VEN_1022&DEV_1462&SUBSYS_00000000&REV_00\3&11583659&0&C2
   Driver: n/a
 
     Name: Pont processeur hôte standard PCI
Device ID: PCI\VEN_1022&DEV_1465&SUBSYS_00000000&REV_00\3&11583659&0&C5
   Driver: n/a
 
     Name: AMD PCI
Device ID: PCI\VEN_1022&DEV_1455&SUBSYS_14551022&REV_00\4&2B9CC193&0&0041
   Driver: C:\WINDOWS\system32\DRIVERS\AMDPCIDev.sys, 1.00.0000.0042 (English), 10/10/2017 04:42:10, 31112 bytes
 
     Name: Contrôleur High Definition Audio
Device ID: PCI\VEN_10DE&DEV_10F1&SUBSYS_11D710DE&REV_A1\6&1E9C7E6A&0&0120020B
   Driver: C:\WINDOWS\system32\DRIVERS\hdaudbus.sys, 10.00.16299.0015 (English), 9/29/2017 15:40:59, 86016 bytes
   Driver: C:\WINDOWS\system32\DRIVERS\drmk.sys, 10.00.16299.0015 (English), 9/29/2017 15:40:59, 96768 bytes
   Driver: C:\WINDOWS\system32\DRIVERS\portcls.sys, 10.00.16299.0015 (English), 9/29/2017 15:40:59, 379392 bytes
 
     Name: Pont processeur hôte standard PCI
Device ID: PCI\VEN_1022&DEV_1460&SUBSYS_00000000&REV_00\3&11583659&0&C0
   Driver: n/a
 
     Name: Contrôleur hôte AMD USB 3.10 eXtensible - 1.10 (Microsoft)
Device ID: PCI\VEN_1022&DEV_43BB&SUBSYS_11421B21&REV_02\4&288C77C7&0&000B
   Driver: C:\WINDOWS\system32\DRIVERS\USBXHCI.SYS, 10.00.16299.0431 (French), 5/3/2018 09:36:57, 437664 bytes
 
     Name: AMD PCI
Device ID: PCI\VEN_1022&DEV_145A&SUBSYS_145A1022&REV_00\4&C93BEE2&0&0039
   Driver: C:\WINDOWS\system32\DRIVERS\AMDPCIDev.sys, 1.00.0000.0042 (English), 10/10/2017 04:42:10, 31112 bytes
 
     Name: Contrôleur AHCI SATA standard
Device ID: PCI\VEN_1022&DEV_43B7&SUBSYS_10621B21&REV_02\4&288C77C7&0&010B
   Driver: C:\WINDOWS\system32\DRIVERS\storahci.sys, 10.00.16299.0251 (English), 2/22/2018 04:02:49, 149400 bytes
 
     Name: Pont ISA standard PCI
Device ID: PCI\VEN_1022&DEV_790E&SUBSYS_50011458&REV_51\3&11583659&0&A3
   Driver: C:\WINDOWS\system32\DRIVERS\msisadrv.sys, 10.00.16299.0015 (English), 9/29/2017 15:41:03, 18840 bytes
 
     Name: Pont processeur hôte standard PCI
Device ID: PCI\VEN_1022&DEV_1463&SUBSYS_00000000&REV_00\3&11583659&0&C3
   Driver: n/a
 
     Name: Port racine PCI Express
Device ID: PCI\VEN_1022&DEV_1454&SUBSYS_14541022&REV_00\3&11583659&0&41
   Driver: C:\WINDOWS\system32\DRIVERS\pci.sys, 10.00.16299.0402 (French), 4/15/2018 23:33:17, 362904 bytes
 
     Name: Port racine PCI Express
Device ID: PCI\VEN_1022&DEV_1454&SUBSYS_14541022&REV_00\3&11583659&0&39
   Driver: C:\WINDOWS\system32\DRIVERS\pci.sys, 10.00.16299.0402 (French), 4/15/2018 23:33:17, 362904 bytes
 
     Name: Pont processeur hôte standard PCI
Device ID: PCI\VEN_1022&DEV_1452&SUBSYS_00000000&REV_00\3&11583659&0&40
   Driver: n/a
 
     Name: Pont processeur hôte standard PCI
Device ID: PCI\VEN_1022&DEV_1452&SUBSYS_00000000&REV_00\3&11583659&0&38
   Driver: n/a
 
     Name: Pont processeur hôte standard PCI
Device ID: PCI\VEN_1022&DEV_1452&SUBSYS_00000000&REV_00\3&11583659&0&20
   Driver: n/a
 
     Name: Pont processeur hôte standard PCI
Device ID: PCI\VEN_1022&DEV_1452&SUBSYS_00000000&REV_00\3&11583659&0&18
   Driver: n/a
 
     Name: Pont processeur hôte standard PCI
Device ID: PCI\VEN_1022&DEV_1452&SUBSYS_00000000&REV_00\3&11583659&0&10
   Driver: n/a
 
     Name: Pont processeur hôte standard PCI
Device ID: PCI\VEN_1022&DEV_1452&SUBSYS_00000000&REV_00\3&11583659&0&08
   Driver: n/a
 
     Name: Pont processeur hôte standard PCI
Device ID: PCI\VEN_1022&DEV_1450&SUBSYS_14501022&REV_00\3&11583659&0&00
   Driver: n/a
 
     Name: Pont processeur hôte standard PCI
Device ID: PCI\VEN_1022&DEV_1466&SUBSYS_00000000&REV_00\3&11583659&0&C6
   Driver: n/a
 
     Name: Contrôleur High Definition Audio
Device ID: PCI\VEN_1022&DEV_1457&SUBSYS_A1821458&REV_00\4&2B9CC193&0&0341
   Driver: C:\WINDOWS\system32\DRIVERS\hdaudbus.sys, 10.00.16299.0015 (English), 9/29/2017 15:40:59, 86016 bytes
   Driver: C:\WINDOWS\system32\DRIVERS\drmk.sys, 10.00.16299.0015 (English), 9/29/2017 15:40:59, 96768 bytes
   Driver: C:\WINDOWS\system32\DRIVERS\portcls.sys, 10.00.16299.0015 (English), 9/29/2017 15:40:59, 379392 bytes
 
     Name: Port commuté en aval PCI Express
Device ID: PCI\VEN_1022&DEV_43B4&SUBSYS_33061B21&REV_02\5&588F5BE&0&20020B
   Driver: C:\WINDOWS\system32\DRIVERS\pci.sys, 10.00.16299.0402 (French), 4/15/2018 23:33:17, 362904 bytes
 
------------------
DirectShow Filters
------------------
 
DirectShow Filters:
WMAudio Decoder DMO,0x00800800,1,1,WMADMOD.DLL,10.00.16299.0015
WMAPro over S/PDIF DMO,0x00600800,1,1,WMADMOD.DLL,10.00.16299.0015
WMSpeech Decoder DMO,0x00600800,1,1,WMSPDMOD.DLL,10.00.16299.0015
MP3 Decoder DMO,0x00600800,1,1,mp3dmod.dll,10.00.16299.0015
Mpeg4s Decoder DMO,0x00800001,1,1,mp4sdecd.dll,10.00.16299.0015
WMV Screen decoder DMO,0x00600800,1,1,wmvsdecd.dll,10.00.16299.0015
WMVideo Decoder DMO,0x00800001,1,1,wmvdecod.dll,10.00.16299.0015
Mpeg43 Decoder DMO,0x00800001,1,1,mp43decd.dll,10.00.16299.0015
Mpeg4 Decoder DMO,0x00800001,1,1,mpg4decd.dll,10.00.16299.0015
DV Muxer,0x00400000,0,0,qdv.dll,10.00.16299.0015
Color Space Converter,0x00400001,1,1,quartz.dll,10.00.16299.0015
WM ASF Reader,0x00400000,0,0,qasf.dll,12.00.16299.0015
AVI Splitter,0x00600000,1,1,quartz.dll,10.00.16299.0015
VGA 16 Color Ditherer,0x00400000,1,1,quartz.dll,10.00.16299.0015
SBE2MediaTypeProfile,0x00200000,0,0,sbe.dll,10.00.16299.0015
Microsoft DTV-DVD Video Decoder,0x005fffff,2,4,msmpeg2vdec.dll,10.00.16299.0248
AC3 Parser Filter,0x00600000,1,1,mpg2splt.ax,10.00.16299.0015
StreamBufferSink,0x00200000,0,0,sbe.dll,10.00.16299.0015
MJPEG Decompressor,0x00600000,1,1,quartz.dll,10.00.16299.0015
MPEG-I Stream Splitter,0x00600000,1,2,quartz.dll,10.00.16299.0015
SAMI (CC) Parser,0x00400000,1,1,quartz.dll,10.00.16299.0015
VBI Codec,0x00600000,1,4,VBICodec.ax,10.00.16299.0015
MPEG-2 Splitter,0x005fffff,1,0,mpg2splt.ax,10.00.16299.0015
Closed Captions Analysis Filter,0x00200000,2,5,cca.dll,10.00.16299.0015
SBE2FileScan,0x00200000,0,0,sbe.dll,10.00.16299.0015
Microsoft MPEG-2 Video Encoder,0x00200000,1,1,msmpeg2enc.dll,10.00.16299.0015
Internal Script Command Renderer,0x00800001,1,0,quartz.dll,10.00.16299.0015
MPEG Audio Decoder,0x03680001,1,1,quartz.dll,10.00.16299.0015
DV Splitter,0x00600000,1,2,qdv.dll,10.00.16299.0015
Video Mixing Renderer 9,0x00200000,1,0,quartz.dll,10.00.16299.0015
Microsoft MPEG-2 Encoder,0x00200000,2,1,msmpeg2enc.dll,10.00.16299.0015
ACM Wrapper,0x00600000,1,1,quartz.dll,10.00.16299.0015
Video Renderer,0x00800001,1,0,quartz.dll,10.00.16299.0015
MPEG-2 Video Stream Analyzer,0x00200000,0,0,sbe.dll,10.00.16299.0015
Line 21 Decoder,0x00600000,1,1,,
Video Port Manager,0x00600000,2,1,quartz.dll,10.00.16299.0015
Video Renderer,0x00400000,1,0,quartz.dll,10.00.16299.0015
VPS Decoder,0x00200000,0,0,WSTPager.ax,10.00.16299.0015
WM ASF Writer,0x00400000,0,0,qasf.dll,12.00.16299.0015
VBI Surface Allocator,0x00600000,1,1,vbisurf.ax,
File writer,0x00200000,1,0,qcap.dll,10.00.16299.0015
DVD Navigator,0x00200000,0,3,qdvd.dll,10.00.16299.0015
Overlay Mixer2,0x00200000,1,1,,
AVI Draw,0x00600064,9,1,quartz.dll,10.00.16299.0015
Microsoft MPEG-2 Audio Encoder,0x00200000,1,1,msmpeg2enc.dll,10.00.16299.0015
WST Pager,0x00200000,1,1,WSTPager.ax,10.00.16299.0015
MPEG-2 Demultiplexer,0x00600000,1,1,mpg2splt.ax,10.00.16299.0015
DV Video Decoder,0x00800000,1,1,qdv.dll,10.00.16299.0015
SampleGrabber,0x00200000,1,1,qedit.dll,10.00.16299.0015
Null Renderer,0x00200000,1,0,qedit.dll,10.00.16299.0015
MPEG-2 Sections and Tables,0x005fffff,1,0,Mpeg2Data.ax,10.00.16299.0015
Microsoft AC3 Encoder,0x00200000,1,1,msac3enc.dll,10.00.16299.0015
StreamBufferSource,0x00200000,0,0,sbe.dll,10.00.16299.0015
Smart Tee,0x00200000,1,2,qcap.dll,10.00.16299.0015
Overlay Mixer,0x00200000,0,0,,
AVI Decompressor,0x00600000,1,1,quartz.dll,10.00.16299.0015
AVI/WAV File Source,0x00400000,0,2,quartz.dll,10.00.16299.0015
Wave Parser,0x00400000,1,1,quartz.dll,10.00.16299.0015
MIDI Parser,0x00400000,1,1,quartz.dll,10.00.16299.0015
Multi-file Parser,0x00400000,1,1,quartz.dll,10.00.16299.0015
File stream renderer,0x00400000,1,1,quartz.dll,10.00.16299.0015
Microsoft DTV-DVD Audio Decoder,0x005fffff,1,1,msmpeg2adec.dll,10.00.16299.0015
StreamBufferSink2,0x00200000,0,0,sbe.dll,10.00.16299.0015
AVI Mux,0x00200000,1,0,qcap.dll,10.00.16299.0015
Line 21 Decoder 2,0x00600002,1,1,quartz.dll,10.00.16299.0015
File Source (Async.),0x00400000,0,1,quartz.dll,10.00.16299.0015
File Source (URL),0x00400000,0,1,quartz.dll,10.00.16299.0015
Infinite Pin Tee Filter,0x00200000,1,1,qcap.dll,10.00.16299.0015
Enhanced Video Renderer,0x00200000,1,0,evr.dll,10.00.16299.0248
BDA MPEG2 Transport Information Filter,0x00200000,2,0,psisrndr.ax,10.00.16299.0015
MPEG Video Decoder,0x40000001,1,1,quartz.dll,10.00.16299.0015
 
WDM Streaming Tee/Splitter Devices:
Convertisseur en T/site-à-site,0x00200000,1,1,ksproxy.ax,10.00.16299.0334
 
Video Compressors:
WMVideo8 Encoder DMO,0x00600800,1,1,wmvxencd.dll,10.00.16299.0248
WMVideo9 Encoder DMO,0x00600800,1,1,wmvencod.dll,10.00.16299.0015
MSScreen 9 encoder DMO,0x00600800,1,1,wmvsencd.dll,10.00.16299.0248
DV Video Encoder,0x00200000,0,0,qdv.dll,10.00.16299.0015
MJPEG Compressor,0x00200000,0,0,quartz.dll,10.00.16299.0015
 
Audio Compressors:
WM Speech Encoder DMO,0x00600800,1,1,WMSPDMOE.DLL,10.00.16299.0015
WMAudio Encoder DMO,0x00600800,1,1,WMADMOE.DLL,10.00.16299.0015
IMA ADPCM,0x00200000,1,1,quartz.dll,10.00.16299.0015
PCM,0x00200000,1,1,quartz.dll,10.00.16299.0015
Microsoft ADPCM,0x00200000,1,1,quartz.dll,10.00.16299.0015
GSM 6.10,0x00200000,1,1,quartz.dll,10.00.16299.0015
CCITT A-Law,0x00200000,1,1,quartz.dll,10.00.16299.0015
CCITT u-Law,0x00200000,1,1,quartz.dll,10.00.16299.0015
MPEG Layer-3,0x00200000,1,1,quartz.dll,10.00.16299.0015
 
Audio Capture Sources:
Microphone (Realtek High Definition Audio),0x00200000,0,0,qcap.dll,10.00.16299.0015
 
PBDA CP Filters:
PBDA DTFilter,0x00600000,1,1,CPFilters.dll,10.00.16299.0192
PBDA ETFilter,0x00200000,0,0,CPFilters.dll,10.00.16299.0192
PBDA PTFilter,0x00200000,0,0,CPFilters.dll,10.00.16299.0192
 
Midi Renderers:
Default MidiOut Device,0x00800000,1,0,quartz.dll,10.00.16299.0015
Microsoft GS Wavetable Synth,0x00200000,1,0,quartz.dll,10.00.16299.0015
 
WDM Streaming Capture Devices:
Realtek HD Audio Stereo input,0x00200000,1,1,ksproxy.ax,10.00.16299.0334
Realtek HD Audio Mic input,0x00200000,1,1,ksproxy.ax,10.00.16299.0334
Realtek HD Audio Line input,0x00200000,1,1,ksproxy.ax,10.00.16299.0334
 
WDM Streaming Rendering Devices:
Realtek HDA SPDIF Out,0x00200000,1,1,ksproxy.ax,10.00.16299.0334
Realtek HD Audio 2nd output,0x00200000,1,1,ksproxy.ax,10.00.16299.0334
Realtek HD Audio output,0x00200000,1,1,ksproxy.ax,10.00.16299.0334
 
BDA Network Providers:
Microsoft ATSC Network Provider,0x00200000,0,1,MSDvbNP.ax,10.00.16299.0015
Microsoft DVBC Network Provider,0x00200000,0,1,MSDvbNP.ax,10.00.16299.0015
Microsoft DVBS Network Provider,0x00200000,0,1,MSDvbNP.ax,10.00.16299.0015
Microsoft DVBT Network Provider,0x00200000,0,1,MSDvbNP.ax,10.00.16299.0015
Microsoft Network Provider,0x00200000,0,1,MSNP.ax,10.00.16299.0015
 
Multi-Instance Capable VBI Codecs:
VBI Codec,0x00600000,1,4,VBICodec.ax,10.00.16299.0015
 
BDA Transport Information Renderers:
BDA MPEG2 Transport Information Filter,0x00600000,2,0,psisrndr.ax,10.00.16299.0015
MPEG-2 Sections and Tables,0x00600000,1,0,Mpeg2Data.ax,10.00.16299.0015
 
BDA CP/CA Filters:
Decrypt/Tag,0x00600000,1,1,EncDec.dll,10.00.16299.0192
Encrypt/Tag,0x00200000,0,0,EncDec.dll,10.00.16299.0192
PTFilter,0x00200000,0,0,EncDec.dll,10.00.16299.0192
XDS Codec,0x00200000,0,0,EncDec.dll,10.00.16299.0192
 
WDM Streaming Communication Transforms:
Convertisseur en T/site-à-site,0x00200000,1,1,ksproxy.ax,10.00.16299.0334
 
Audio Renderers:
Realtek HD Audio 2nd output (Realtek High Definition Audio),0x00200000,1,0,quartz.dll,10.00.16299.0015
Default DirectSound Device,0x00800000,1,0,quartz.dll,10.00.16299.0015
Default WaveOut Device,0x00200000,1,0,quartz.dll,10.00.16299.0015
DirectSound: Realtek HD Audio 2nd output (Realtek High Definition Audio),0x00200000,1,0,quartz.dll,10.00.16299.0015
DirectSound: Realtek Digital Output (Realtek High Definition Audio),0x00200000,1,0,quartz.dll,10.00.16299.0015
Realtek Digital Output (Realtek High Definition Audio),0x00200000,1,0,quartz.dll,10.00.16299.0015
 
 
----------------------------
Preferred DirectShow Filters
----------------------------
 
[HKEY_LOCAL_MACHINE\Software\Microsoft\DirectShow\Preferred]
 
<media subtype GUID>, [<filter friendly name>, ]<filter CLSID>
 
MEDIASUBTYPE_MPEG1Payload, MPEG Video Decoder, CLSID_CMpegVideoCodec
MEDIASUBTYPE_MPEG1Packet, MPEG Video Decoder, CLSID_CMpegVideoCodec
MEDIASUBTYPE_DVD_LPCM_AUDIO, Microsoft DTV-DVD Audio Decoder, CLSID_CMPEG2AudDecoderDS
MEDIASUBTYPE_MPEG2_AUDIO, Microsoft DTV-DVD Audio Decoder, CLSID_CMPEG2AudDecoderDS
MEDIASUBTYPE_MPEG2_VIDEO, Microsoft DTV-DVD Video Decoder, CLSID_CMPEG2VidDecoderDS
{78766964-0000-0010-8000-00AA00389B71}, Mpeg4s Decoder DMO, CLSID_CMpeg4sDecMediaObject
{7634706D-0000-0010-8000-00AA00389B71}, Mpeg4s Decoder DMO, CLSID_CMpeg4sDecMediaObject
MEDIASUBTYPE_mp4s, Mpeg4s Decoder DMO, CLSID_CMpeg4sDecMediaObject
{6C737664-0000-0010-8000-00AA00389B71}, DV Video Decoder, CLSID_DVVideoCodec
{64737664-0000-0010-8000-00AA00389B71}, DV Video Decoder, CLSID_DVVideoCodec
{64697678-0000-0010-8000-00AA00389B71}, Mpeg4s Decoder DMO, CLSID_CMpeg4sDecMediaObject
{64687664-0000-0010-8000-00AA00389B71}, DV Video Decoder, CLSID_DVVideoCodec
{58564944-0000-0010-8000-00AA00389B71}, Mpeg4s Decoder DMO, CLSID_CMpeg4sDecMediaObject
{5634504D-0000-0010-8000-00AA00389B71}, Mpeg4s Decoder DMO, CLSID_CMpeg4sDecMediaObject
MEDIASUBTYPE_MP4S, Mpeg4s Decoder DMO, CLSID_CMpeg4sDecMediaObject
MEDIASUBTYPE_WMVR, WMVideo Decoder DMO, CLSID_CWMVDecMediaObject
MEDIASUBTYPE_WMVP, WMVideo Decoder DMO, CLSID_CWMVDecMediaObject
MEDIASUBTYPE_MJPG, MJPEG Decompressor, CLSID_MjpegDec
{44495658-0000-0010-8000-00AA00389B71}, Mpeg4s Decoder DMO, CLSID_CMpeg4sDecMediaObject
MEDIASUBTYPE_WMVA, WMVideo Decoder DMO, CLSID_CWMVDecMediaObject
MEDIASUBTYPE_mpg4, Mpeg4 Decoder DMO, CLSID_CMpeg4DecMediaObject
MEDIASUBTYPE_MPG4, Mpeg4 Decoder DMO, CLSID_CMpeg4DecMediaObject
MEDIASUBTYPE_h264, Microsoft DTV-DVD Video Decoder, CLSID_CMPEG2VidDecoderDS
MEDIASUBTYPE_H264, Microsoft DTV-DVD Video Decoder, CLSID_CMPEG2VidDecoderDS
MEDIASUBTYPE_WMV3, WMVideo Decoder DMO, CLSID_CWMVDecMediaObject
MEDIASUBTYPE_mp43, Mpeg43 Decoder DMO, CLSID_CMpeg43DecMediaObject
MEDIASUBTYPE_MP43, Mpeg43 Decoder DMO, CLSID_CMpeg43DecMediaObject
MEDIASUBTYPE_m4s2, Mpeg4s Decoder DMO, CLSID_CMpeg4sDecMediaObject
MEDIASUBTYPE_WMV2, WMVideo Decoder DMO, CLSID_CWMVDecMediaObject
MEDIASUBTYPE_MSS2, WMV Screen decoder DMO, CLSID_CMSSCDecMediaObject
MEDIASUBTYPE_M4S2, Mpeg4s Decoder DMO, CLSID_CMpeg4sDecMediaObject
MEDIASUBTYPE_WVP2, WMVideo Decoder DMO, CLSID_CWMVDecMediaObject
MEDIASUBTYPE_mp42, Mpeg4 Decoder DMO, CLSID_CMpeg4DecMediaObject
MEDIASUBTYPE_MP42, Mpeg4 Decoder DMO, CLSID_CMpeg4DecMediaObject
MEDIASUBTYPE_WMV1, WMVideo Decoder DMO, CLSID_CWMVDecMediaObject
MEDIASUBTYPE_MSS1, WMV Screen decoder DMO, CLSID_CMSSCDecMediaObject
MEDIASUBTYPE_WVC1, WMVideo Decoder DMO, CLSID_CWMVDecMediaObject
MEDIASUBTYPE_AVC1, Microsoft DTV-DVD Video Decoder, CLSID_CMPEG2VidDecoderDS
{20637664-0000-0010-8000-00AA00389B71}, DV Video Decoder, CLSID_DVVideoCodec
MEDIASUBTYPE_MPEG_LOAS, Microsoft DTV-DVD Audio Decoder, CLSID_CMPEG2AudDecoderDS
MEDIASUBTYPE_MPEG_ADTS_AAC, Microsoft DTV-DVD Audio Decoder, CLSID_CMPEG2AudDecoderDS
MEDIASUBTYPE_WMAUDIO_LOSSLESS, WMAudio Decoder DMO, CLSID_CWMADecMediaObject
MEDIASUBTYPE_WMAUDIO3, WMAudio Decoder DMO, CLSID_CWMADecMediaObject
WMMEDIASUBTYPE_WMAudioV8, WMAudio Decoder DMO, CLSID_CWMADecMediaObject
MEDIASUBTYPE_MSAUDIO1, WMAudio Decoder DMO, CLSID_CWMADecMediaObject
MEDIASUBTYPE_RAW_AAC1, Microsoft DTV-DVD Audio Decoder, CLSID_CMPEG2AudDecoderDS
WMMEDIASUBTYPE_MP3, MP3 Decoder DMO, CLSID_CMP3DecMediaObject
MEDIASUBTYPE_MPEG1AudioPayload, MPEG Audio Decoder, CLSID_CMpegAudioCodec
WMMEDIASUBTYPE_WMSP2, WMSpeech Decoder DMO, CLSID_CWMSPDecMediaObject
WMMEDIASUBTYPE_WMSP1, WMSpeech Decoder DMO, CLSID_CWMSPDecMediaObject
 
 
---------------------------
Media Foundation Transforms
---------------------------
 
[HKEY_LOCAL_MACHINE\Software\Classes\MediaFoundation\Transforms]
 
<category>:
  <transform friendly name>, <transform CLSID>, <flags>, [<merit>, ]<file name>, <file version>
 
Video Decoders:
  NVIDIA MJPEG Video Decoder MFT, {70F36578-2741-454F-B494-E8563DDD1CB4}, 0x4, 8, nvDecMFTMjpeg.dll, 24.21.0013.9764
  Microsoft MPEG Video Decoder MFT, {2D709E52-123F-49B5-9CBC-9AF5CDE28FB9}, 0x1, msmpeg2vdec.dll, 10.00.16299.0248
  DV Decoder MFT, {404A6DE5-D4D6-4260-9BC7-5A6CBD882432}, 0x1, mfdvdec.dll, 10.00.16299.0015
  Mpeg4s Decoder MFT, CLSID_CMpeg4sDecMFT, 0x1, mp4sdecd.dll, 10.00.16299.0015
  Microsoft H264 Video Decoder MFT, CLSID_CMSH264DecoderMFT, 0x1, msmpeg2vdec.dll, 10.00.16299.0248
  WMV Screen decoder MFT, CLSID_CMSSCDecMediaObject, 0x1, wmvsdecd.dll, 10.00.16299.0015
  WMVideo Decoder MFT, CLSID_CWMVDecMediaObject, 0x1, wmvdecod.dll, 10.00.16299.0015
  MJPEG Decoder MFT, {CB17E772-E1CC-4633-8450-5617AF577905}, 0x1, mfmjpegdec.dll, 10.00.16299.0015
  Mpeg43 Decoder MFT, CLSID_CMpeg43DecMediaObject, 0x1, mp43decd.dll, 10.00.16299.0015
  Microsoft WebM MF VP8 Decoder Transform, {E3AAF548-C9A4-4C6E-234D-5ADA374B0000}, 0x1, MSVP9DEC.dll, 10.00.16299.0248
  Mpeg4 Decoder MFT, CLSID_CMpeg4DecMediaObject, 0x1, mpg4decd.dll, 10.00.16299.0015
Video Encoders:
  NVIDIA H.264 Encoder MFT, {60F44560-5A20-4857-BFEF-D29773CB8040}, 0x4, 8, nvEncMFTH264.dll, 24.21.0013.9764
  NVIDIA HEVC Encoder MFT, {966F107C-8EA2-425D-B822-E4A71BEF01D7}, 0x4, 8, nvEncMFThevc.dll, 24.21.0013.9764
  H264 Encoder MFT, {6CA50344-051A-4DED-9779-A43305165E35}, 0x1, mfh264enc.dll, 10.00.16299.0015
  WMVideo8 Encoder MFT, CLSID_CWMVXEncMediaObject, 0x1, wmvxencd.dll, 10.00.16299.0248
  Microsoft MF VPX Encoder Transform, {AEB6C755-2546-4881-82CC-E15AE5EBFF3D}, 0x1, MSVPXENC.dll, 10.00.16299.0251
  H263 Encoder MFT, {BC47FCFE-98A0-4F27-BB07-698AF24F2B38}, 0x1, mfh263enc.dll, 10.00.16299.0015
  WMVideo9 Encoder MFT, CLSID_CWMV9EncMediaObject, 0x1, wmvencod.dll, 10.00.16299.0015
  Microsoft MPEG-2 Video Encoder MFT, {E6335F02-80B7-4DC4-ADFA-DFE7210D20D5}, 0x2, msmpeg2enc.dll, 10.00.16299.0015
Video Effects:
  Frame Rate Converter, CLSID_CFrameRateConvertDmo, 0x1, mfvdsp.dll, 10.00.16299.0015
  Resizer MFT, CLSID_CResizerDMO, 0x1, vidreszr.dll, 10.00.16299.0015
  VideoStabilization MFT, {51571744-7FE4-4FF2-A498-2DC34FF74F1B}, 0x1, MSVideoDSP.dll, 10.00.16299.0309
  Color Control, CLSID_CColorControlDmo, 0x1, mfvdsp.dll, 10.00.16299.0015
  Color Converter MFT, CLSID_CColorConvertDMO, 0x1, colorcnv.dll, 10.00.16299.0015
Video Processor:
  Microsoft Video Processor MFT, {88753B26-5B24-49BD-B2E7-0C445C78C982}, 0x1, msvproc.dll, 10.00.16299.0431
Audio Decoders:
  Microsoft Dolby Digital Plus Decoder MFT, {177C0AFE-900B-48D4-9E4C-57ADD250B3D4}, 0x1, DolbyDecMFT.dll, 10.00.16299.0015
  MS AMRNB Decoder MFT, {265011AE-5481-4F77-A295-ABB6FFE8D63E}, 0x1, MSAMRNBDecoder.dll, 10.00.16299.0015
  WMAudio Decoder MFT, CLSID_CWMADecMediaObject, 0x1, WMADMOD.DLL, 10.00.16299.0015
  Microsoft AAC Audio Decoder MFT, CLSID_CMSAACDecMFT, 0x1, MSAudDecMFT.dll, 10.00.16299.0015
  A-law Wrapper MFT, {36CB6E0C-78C1-42B2-9943-846262F31786}, 0x1, mfcore.dll, 10.00.16299.0248
  GSM ACM Wrapper MFT, {4A76B469-7B66-4DD4-BA2D-DDF244C766DC}, 0x1, mfcore.dll, 10.00.16299.0248
  WMAPro over S/PDIF MFT, CLSID_CWMAudioSpdTxDMO, 0x1, WMADMOD.DLL, 10.00.16299.0015
  Microsoft Opus Audio Decoder MFT, {63E17C10-2D43-4C42-8FE3-8D8B63E46A6A}, 0x1, MSOpusDecoder.dll, 10.00.16299.0015
  Microsoft FLAC Audio Decoder MFT, {6B0B3E6B-A2C5-4514-8055-AFE8A95242D9}, 0x1, MSFlacDecoder.dll, 10.00.16299.0015
  Microsoft MPEG Audio Decoder MFT, {70707B39-B2CA-4015-ABEA-F8447D22D88B}, 0x1, MSAudDecMFT.dll, 10.00.16299.0015
  WMSpeech Decoder DMO, CLSID_CWMSPDecMediaObject, 0x1, WMSPDMOD.DLL, 10.00.16299.0015
  G711 Wrapper MFT, {92B66080-5E2D-449E-90C4-C41F268E5514}, 0x1, mfcore.dll, 10.00.16299.0248
  IMA ADPCM ACM Wrapper MFT, {A16E1BFF-A80D-48AD-AECD-A35C005685FE}, 0x1, mfcore.dll, 10.00.16299.0248
  MP3 Decoder MFT, CLSID_CMP3DecMediaObject, 0x1, mp3dmod.dll, 10.00.16299.0015
  Microsoft ALAC Audio Decoder MFT, {C0CD7D12-31FC-4BBC-B363-7322EE3E1879}, 0x1, MSAlacDecoder.dll, 10.00.16299.0015
  ADPCM ACM Wrapper MFT, {CA34FE0A-5722-43AD-AF23-05F7650257DD}, 0x1, mfcore.dll, 10.00.16299.0248
  Dolby TrueHD IEC-61937 converter MFT, {CF5EEEDF-0E92-4B3B-A161-BD0FFE545E4B}, 0x1, mfaudiocnv.dll, 10.00.16299.0015
  DTS IEC-61937 converter MFT, {D035E24C-C877-42D7-A795-2A8A339B472F}, 0x1, mfaudiocnv.dll, 10.00.16299.0015
Audio Encoders:
  LPCM DVD-Audio MFT, {068A8476-9229-4CC0-9D49-2FC699DCD30A}, 0x1, mfaudiocnv.dll, 10.00.16299.0015
  MP3 Encoder ACM Wrapper MFT, {11103421-354C-4CCA-A7A3-1AFF9A5B6701}, 0x1, mfcore.dll, 10.00.16299.0248
  Microsoft FLAC Audio Encoder MFT, {128509E9-C44E-45DC-95E9-C255B8F466A6}, 0x1, MSFlacEncoder.dll, 10.00.16299.0015
  WM Speech Encoder DMO, CLSID_CWMSPEncMediaObject2, 0x1, WMSPDMOE.DLL, 10.00.16299.0015
  MS AMRNB Encoder MFT, {2FAE8AFE-04A3-423A-A814-85DB454712B0}, 0x1, MSAMRNBEncoder.dll, 10.00.16299.0015
  Microsoft MPEG-2 Audio Encoder MFT, {46A4DD5C-73F8-4304-94DF-308F760974F4}, 0x1, msmpeg2enc.dll, 10.00.16299.0015
  WMAudio Encoder MFT, CLSID_CWMAEncMediaObject, 0x1, WMADMOE.DLL, 10.00.16299.0015
  Microsoft AAC Audio Encoder MFT, {93AF0C51-2275-45D2-A35B-F2BA21CAED00}, 0x1, mfAACEnc.dll, 10.00.16299.0015
  Microsoft ALAC Audio Encoder MFT, {9AB6A28C-748E-4B6A-BFFF-CC443B8E8FB4}, 0x1, MSAlacEncoder.dll, 10.00.16299.0015
  Microsoft Dolby Digital Encoder MFT, {AC3315C9-F481-45D7-826C-0B406C1F64B8}, 0x1, msac3enc.dll, 10.00.16299.0015
Audio Effects:
  AEC, CLSID_CWMAudioAEC, 0x1, mfwmaaec.dll, 10.00.16299.0015
  Resampler MFT, CLSID_CResamplerMediaObject, 0x1, resampledmo.dll, 10.00.16299.0015
Multiplexers:
  Microsoft MPEG2 Multiplexer MFT, {AB300F71-01AB-46D2-AB6C-64906CB03258}, 0x2, mfmpeg2srcsnk.dll, 10.00.16299.0402
Others:
  Microsoft H264 Video Remux (MPEG2TSToMP4) MFT, {05A47EBB-8BF0-4CBF-AD2F-3B71D75866F5}, 0x1, msmpeg2vdec.dll, 10.00.16299.0248
 
 
--------------------------------------------
Media Foundation Enabled Hardware Categories
--------------------------------------------
 
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows Media Foundation\HardwareMFT]
 
EnableDecoders = 1
EnableEncoders = 1
 
 
-------------------------------------
Media Foundation Byte Stream Handlers
-------------------------------------
 
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows Media Foundation\ByteStreamHandlers]
[HKEY_LOCAL_MACHINE\Software\Classes\MediaFoundation\MediaSources\Preferred]
 
<file ext. or MIME type>, <handler CLSID>, <brief description>[, Preferred]
 
.3g2, {271C3902-6095-4C45-A22F-20091816EE9E}, MPEG4 Byte Stream Handler, Preferred
.3gp, {271C3902-6095-4C45-A22F-20091816EE9E}, MPEG4 Byte Stream Handler, Preferred
.3gp2, {271C3902-6095-4C45-A22F-20091816EE9E}, MPEG4 Byte Stream Handler, Preferred
.3gpp, {271C3902-6095-4C45-A22F-20091816EE9E}, MPEG4 Byte Stream Handler, Preferred
.aac, {926F41F7-003E-4382-9E84-9E953BE10562}, ADTS Byte Stream Handler, Preferred
.ac3, {46031BA1-083F-47D9-8369-23C92BDAB2FF}, AC-3 Byte Stream Handler, Preferred
.adt, {926F41F7-003E-4382-9E84-9E953BE10562}, ADTS Byte Stream Handler, Preferred
.adts, {926F41F7-003E-4382-9E84-9E953BE10562}, ADTS Byte Stream Handler, Preferred
.am?, {EFE6208A-0A2C-49FA-8A01-3768B559B6DA}, MF AMRNB Media Source ByteStreamHandler
.amr, {EFE6208A-0A2C-49FA-8A01-3768B559B6DA}, MF AMRNB Media Source ByteStreamHandler, Preferred
.asf, {41457294-644C-4298-A28A-BD69F2C0CF3B}, ASF Byte Stream Handler, Preferred
.avi, {7AFA253E-F823-42F6-A5D9-714BDE467412}, AVI Byte Stream Handler, Preferred
.dvr-ms, {65964407-A5D8-4060-85B0-1CCD63F768E2}, dvr-ms Byte Stream Handler, Preferred
.dvr-ms, {A8721937-E2FB-4D7A-A9EE-4EB08C890B6E}, MF SBE Source ByteStreamHandler
.ec3, {46031BA1-083F-47D9-8369-23C92BDAB2FF}, AC-3 Byte Stream Handler, Preferred
.flac, {0E41CFB8-0506-40F4-A516-77CC23642D91}, MF FLAC Media Source ByteStreamHandler, Preferred
.m2t, {40871C59-AB40-471F-8DC3-1F259D862479}, MPEG2 Byte Stream Handler, Preferred
.m2ts, {40871C59-AB40-471F-8DC3-1F259D862479}, MPEG2 Byte Stream Handler, Preferred
.m4a, {271C3902-6095-4C45-A22F-20091816EE9E}, MPEG4 Byte Stream Handler, Preferred
.m4v, {271C3902-6095-4C45-A22F-20091816EE9E}, MPEG4 Byte Stream Handler, Preferred
.mk3d, {1F9A2C18-D89E-463E-B4F4-BB90152ACC64}, MKV Byte Stream Handler, Preferred
.mka, {1F9A2C18-D89E-463E-B4F4-BB90152ACC64}, MKV Byte Stream Handler, Preferred
.mks, {1F9A2C18-D89E-463E-B4F4-BB90152ACC64}, MKV Byte Stream Handler, Preferred
.mkv, {1F9A2C18-D89E-463E-B4F4-BB90152ACC64}, MKV Byte Stream Handler, Preferred
.mod, {40871C59-AB40-471F-8DC3-1F259D862479}, MPEG2 Byte Stream Handler, Preferred
.mov, {271C3902-6095-4C45-A22F-20091816EE9E}, MPEG4 Byte Stream Handler, Preferred
.mp2v, {40871C59-AB40-471F-8DC3-1F259D862479}, MPEG2 Byte Stream Handler, Preferred
.mp3, {A82E50BA-8E92-41EB-9DF2-433F50EC2993}, MP3 Byte Stream Handler, Preferred
.mp4, {271C3902-6095-4C45-A22F-20091816EE9E}, MPEG4 Byte Stream Handler, Preferred
.mp4v, {271C3902-6095-4C45-A22F-20091816EE9E}, MPEG4 Byte Stream Handler, Preferred
.mpa, {A82E50BA-8E92-41EB-9DF2-433F50EC2993}, MP3 Byte Stream Handler, Preferred
.mpeg, {40871C59-AB40-471F-8DC3-1F259D862479}, MPEG2 Byte Stream Handler, Preferred
.mpg, {40871C59-AB40-471F-8DC3-1F259D862479}, MPEG2 Byte Stream Handler, Preferred
.mts, {40871C59-AB40-471F-8DC3-1F259D862479}, MPEG2 Byte Stream Handler, Preferred
.nsc, {B084785C-DDE0-4D30-8CA8-05A373E185BE}, NSC Byte Stream Handler, Preferred
.sami, {7A56C4CB-D678-4188-85A8-BA2EF68FA10D}, SAMI Byte Stream Handler, Preferred
.smi, {7A56C4CB-D678-4188-85A8-BA2EF68FA10D}, SAMI Byte Stream Handler, Preferred
.tod, {40871C59-AB40-471F-8DC3-1F259D862479}, MPEG2 Byte Stream Handler, Preferred
.ts, {40871C59-AB40-471F-8DC3-1F259D862479}, MPEG2 Byte Stream Handler, Preferred
.tts, {40871C59-AB40-471F-8DC3-1F259D862479}, MPEG2 Byte Stream Handler, Preferred
.uvu, {271C3902-6095-4C45-A22F-20091816EE9E}, MPEG4 Byte Stream Handler, Preferred
.vob, {40871C59-AB40-471F-8DC3-1F259D862479}, MPEG2 Byte Stream Handler, Preferred
.wav, {42C9B9F5-16FC-47EF-AF22-DA05F7C842E3}, WAV Byte Stream Handler, Preferred
.weba, {1F9A2C18-D89E-463E-B4F4-BB90152ACC64}, WEBM Byte Stream Handler, Preferred
.webm, {1F9A2C18-D89E-463E-B4F4-BB90152ACC64}, WEBM Byte Stream Handler, Preferred
.wm, {41457294-644C-4298-A28A-BD69F2C0CF3B}, ASF Byte Stream Handler, Preferred
.wma, {41457294-644C-4298-A28A-BD69F2C0CF3B}, ASF Byte Stream Handler, Preferred
.wmv, {41457294-644C-4298-A28A-BD69F2C0CF3B}, ASF Byte Stream Handler, Preferred
.wtv, {65964407-A5D8-4060-85B0-1CCD63F768E2}, WTV Byte Stream Handler, Preferred
audio/3gpp, {271C3902-6095-4C45-A22F-20091816EE9E}, MPEG4 Byte Stream Handler, Preferred
audio/3gpp2, {271C3902-6095-4C45-A22F-20091816EE9E}, MPEG4 Byte Stream Handler, Preferred
audio/aac, {926F41F7-003E-4382-9E84-9E953BE10562}, ADTS Byte Stream Handler, Preferred
audio/aacp, {926F41F7-003E-4382-9E84-9E953BE10562}, ADTS Byte Stream Handler, Preferred
audio/eac3, {46031BA1-083F-47D9-8369-23C92BDAB2FF}, AC-3 Byte Stream Handler, Preferred
audio/flac, {0E41CFB8-0506-40F4-A516-77CC23642D91}, MF FLAC Media Source ByteStreamHandler, Preferred
audio/L16, {3FFB3B8C-EB99-472B-8902-E1C1B05F07CF}, LPCM Byte Stream Handler, Preferred
audio/mp3, {A82E50BA-8E92-41EB-9DF2-433F50EC2993}, MP3 Byte Stream Handler, Preferred
audio/mp4, {271C3902-6095-4C45-A22F-20091816EE9E}, MPEG4 Byte Stream Handler, Preferred
audio/MP4A-LATM, {271C3902-6095-4C45-A22F-20091816EE9E}, MPEG4 Byte Stream Handler, Preferred
audio/mpa, {A82E50BA-8E92-41EB-9DF2-433F50EC2993}, MP3 Byte Stream Handler, Preferred
audio/mpeg, {A82E50BA-8E92-41EB-9DF2-433F50EC2993}, MP3 Byte Stream Handler, Preferred
audio/mpeg3, {A82E50BA-8E92-41EB-9DF2-433F50EC2993}, MP3 Byte Stream Handler, Preferred
audio/vnd.dlna.adts, {926F41F7-003E-4382-9E84-9E953BE10562}, ADTS Byte Stream Handler, Preferred
audio/vnd.dolby.dd-raw, {46031BA1-083F-47D9-8369-23C92BDAB2FF}, AC-3 Byte Stream Handler, Preferred
audio/wav, {42C9B9F5-16FC-47EF-AF22-DA05F7C842E3}, WAV Byte Stream Handler, Preferred
audio/webm, {1F9A2C18-D89E-463E-B4F4-BB90152ACC64}, WEBM Byte Stream Handler, Preferred
audio/x-aac, {926F41F7-003E-4382-9E84-9E953BE10562}, ADTS Byte Stream Handler, Preferred
audio/x-flac, {0E41CFB8-0506-40F4-A516-77CC23642D91}, MF FLAC Media Source ByteStreamHandler, Preferred
audio/x-m4a, {271C3902-6095-4C45-A22F-20091816EE9E}, MPEG4 Byte Stream Handler, Preferred
audio/x-matroska, {1F9A2C18-D89E-463E-B4F4-BB90152ACC64}, MKV Byte Stream Handler, Preferred
audio/x-mp3, {A82E50BA-8E92-41EB-9DF2-433F50EC2993}, MP3 Byte Stream Handler, Preferred
audio/x-mpeg, {A82E50BA-8E92-41EB-9DF2-433F50EC2993}, MP3 Byte Stream Handler, Preferred
audio/x-ms-wma, {41457294-644C-4298-A28A-BD69F2C0CF3B}, ASF Byte Stream Handler, Preferred
audio/x-wav, {42C9B9F5-16FC-47EF-AF22-DA05F7C842E3}, WAV Byte Stream Handler, Preferred
video/3gpp, {271C3902-6095-4C45-A22F-20091816EE9E}, MPEG4 Byte Stream Handler, Preferred
video/3gpp2, {271C3902-6095-4C45-A22F-20091816EE9E}, MPEG4 Byte Stream Handler, Preferred
video/avi, {7AFA253E-F823-42F6-A5D9-714BDE467412}, AVI Byte Stream Handler, Preferred
video/mp4, {271C3902-6095-4C45-A22F-20091816EE9E}, MPEG4 Byte Stream Handler, Preferred
video/mpeg, {40871C59-AB40-471F-8DC3-1F259D862479}, MPEG2 Byte Stream Handler, Preferred
video/msvideo, {7AFA253E-F823-42F6-A5D9-714BDE467412}, AVI Byte Stream Handler, Preferred
video/vnd.dece.mp4, {271C3902-6095-4C45-A22F-20091816EE9E}, MPEG4 Byte Stream Handler, Preferred
video/vnd.dlna.mpeg-tts, {40871C59-AB40-471F-8DC3-1F259D862479}, MPEG2 Byte Stream Handler, Preferred
video/webm, {1F9A2C18-D89E-463E-B4F4-BB90152ACC64}, WEBM Byte Stream Handler, Preferred
video/x-m4v, {271C3902-6095-4C45-A22F-20091816EE9E}, MPEG4 Byte Stream Handler, Preferred
video/x-matroska, {1F9A2C18-D89E-463E-B4F4-BB90152ACC64}, MKV Byte Stream Handler, Preferred
video/x-ms-asf, {41457294-644C-4298-A28A-BD69F2C0CF3B}, ASF Byte Stream Handler, Preferred
video/x-ms-wm, {41457294-644C-4298-A28A-BD69F2C0CF3B}, ASF Byte Stream Handler, Preferred
video/x-ms-wmv, {41457294-644C-4298-A28A-BD69F2C0CF3B}, ASF Byte Stream Handler, Preferred
video/x-msvideo, {7AFA253E-F823-42F6-A5D9-714BDE467412}, AVI Byte Stream Handler, Preferred
 
 
--------------------------------
Media Foundation Scheme Handlers
--------------------------------
 
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows Media Foundation\SchemeHandlers]
[HKEY_LOCAL_MACHINE\Software\Classes\MediaFoundation\MediaSources\Preferred]
 
<URL type>, <handler CLSID>, <brief description>[, Preferred]
 
file:, {477EC299-1421-4BDD-971F-7CCB933F21AD}, File Scheme Handler, Preferred
http:, {44CB442B-9DA9-49DF-B3FD-023777B16E50}, Http Scheme Handler
http:, {9EC4B4F9-3029-45AD-947B-344DE2A249E2}, Urlmon Scheme Handler
http:, {E9F4EBAB-D97B-463E-A2B1-C54EE3F9414D}, Net Scheme Handler, Preferred
httpd:, {44CB442B-9DA9-49DF-B3FD-023777B16E50}, Http Scheme Handler, Preferred
https:, {37A61C8B-7F8E-4D08-B12B-248D73E9AB4F}, Secure Http Scheme Handler, Preferred
httpsd:, {37A61C8B-7F8E-4D08-B12B-248D73E9AB4F}, Secure Http Scheme Handler, Preferred
httpt:, {E9F4EBAB-D97B-463E-A2B1-C54EE3F9414D}, Net Scheme Handler, Preferred
httpu:, {E9F4EBAB-D97B-463E-A2B1-C54EE3F9414D}, Net Scheme Handler, Preferred
mcast:, {E9F4EBAB-D97B-463E-A2B1-C54EE3F9414D}, Net Scheme Handler, Preferred
mcrecv:, {FA6D33D4-9405-4BA5-9983-12604AC8E77A}, Miracast Sink Scheme Handler, Preferred
mms:, {E9F4EBAB-D97B-463E-A2B1-C54EE3F9414D}, Net Scheme Handler, Preferred
ms-appdata:, {CFC81939-3886-4ACF-9692-DA58037AE716}, MsAppData Scheme Handler, Preferred
ms-appx-web:, {8DB0224B-3D65-4F6F-8E12-BEB4B78B8974}, MsAppxWeb Scheme Handler, Preferred
ms-appx:, {8DB0224B-3D65-4F6F-8E12-BEB4B78B8974}, MsAppx Scheme Handler, Preferred
ms-winsoundevent:, {F79A6BF9-7415-4CF3-AE10-4559509ABC3C}, Sound Event Scheme Handler, Preferred
rtsp:, {E9F4EBAB-D97B-463E-A2B1-C54EE3F9414D}, Net Scheme Handler, Preferred
rtspt:, {E9F4EBAB-D97B-463E-A2B1-C54EE3F9414D}, Net Scheme Handler, Preferred
rtspu:, {E9F4EBAB-D97B-463E-A2B1-C54EE3F9414D}, Net Scheme Handler, Preferred
sdp:, {E9F4EBAB-D97B-463E-A2B1-C54EE3F9414D}, Net Scheme Handler, Preferred
 
 
-------------------------------------
Preferred Media Foundation Transforms
-------------------------------------
 
[HKEY_LOCAL_MACHINE\Software\Classes\MediaFoundation\Transforms\Preferred]
 
<media subtype GUID>, [<transform friendly name>, ]<transform CLSID>
 
{E06D802C-DB46-11CF-B4D1-00805F6CBBEA}, Microsoft Dolby Digital Plus Decoder MFT, {177C0AFE-900B-48D4-9E4C-57ADD250B3D4}
MEDIASUBTYPE_DOLBY_DDPLUS, Microsoft Dolby Digital Plus Decoder MFT, {177C0AFE-900B-48D4-9E4C-57ADD250B3D4}
{00002000-0000-0010-8000-00AA00389B71}, Microsoft Dolby Digital Plus Decoder MFT, {177C0AFE-900B-48D4-9E4C-57ADD250B3D4}
{EB27CEC4-163E-4CA3-8B74-8E25F91B517E}, Dolby TrueHD IEC-61937 converter MFT, {CF5EEEDF-0E92-4B3B-A161-BD0FFE545E4B}
MFVideoFormat_MPEG2, Microsoft MPEG Video Decoder MFT, {2D709E52-123F-49B5-9CBC-9AF5CDE28FB9}
{A61AC364-AD0E-4744-89FF-213CE0DF8804}, DTS IEC-61937 converter MFT, {D035E24C-C877-42D7-A795-2A8A339B472F}
{A2E58EB7-0FA9-48BB-A40C-FA0E156D0645}, DTS IEC-61937 converter MFT, {D035E24C-C877-42D7-A795-2A8A339B472F}
{7634706D-0000-0010-8000-00AA00389B71}, Mpeg4s Decoder MFT, CLSID_CMpeg4sDecMFT
{73616D72-767A-494D-B478-F29D25DC9037}, MS AMRNB Decoder MFT, {265011AE-5481-4F77-A295-ABB6FFE8D63E}
MEDIASUBTYPE_mp4s, Mpeg4s Decoder MFT, CLSID_CMpeg4sDecMFT
MFVideoFormat_DVSL, DV Decoder MFT, {404A6DE5-D4D6-4260-9BC7-5A6CBD882432}
MFVideoFormat_DVSD, DV Decoder MFT, {404A6DE5-D4D6-4260-9BC7-5A6CBD882432}
MFVideoFormat_DVHD, DV Decoder MFT, {404A6DE5-D4D6-4260-9BC7-5A6CBD882432}
{63616C61-0000-0010-8000-00AA00389B71}, Microsoft ALAC Audio Decoder MFT, {C0CD7D12-31FC-4BBC-B363-7322EE3E1879}
MFVideoFormat_MP4V, Mpeg4s Decoder MFT, CLSID_CMpeg4sDecMFT
MFVideoFormat_MP4S, Mpeg4s Decoder MFT, CLSID_CMpeg4sDecMFT
{53314356-0000-0010-8000-00AA00389B71}, WMVideo Decoder MFT, CLSID_CWMVDecMediaObject
MEDIASUBTYPE_WMVR, WMVideo Decoder MFT, CLSID_CWMVDecMediaObject
MEDIASUBTYPE_WMVP, WMVideo Decoder MFT, CLSID_CWMVDecMediaObject
MFVideoFormat_MJPG, MJPEG Decoder MFT, {CB17E772-E1CC-4633-8450-5617AF577905}
MEDIASUBTYPE_WMVA, WMVideo Decoder MFT, CLSID_CWMVDecMediaObject
{3F40F4F0-5622-4FF8-B6D8-A17A584BEE5E}, Microsoft H264 Video Decoder MFT, CLSID_CMSH264DecoderMFT
MEDIASUBTYPE_mpg4, Mpeg4 Decoder MFT, CLSID_CMpeg4DecMediaObject
MEDIASUBTYPE_MPG4, Mpeg4 Decoder MFT, CLSID_CMpeg4DecMediaObject
MFVideoFormat_H264, Microsoft H264 Video Decoder MFT, CLSID_CMSH264DecoderMFT
MFVideoFormat_WMV3, WMVideo Decoder MFT, CLSID_CWMVDecMediaObject
{33363248-0000-0010-8000-00AA00389B71}, Mpeg4s Decoder MFT, CLSID_CMpeg4sDecMFT
MEDIASUBTYPE_mp43, Mpeg43 Decoder MFT, CLSID_CMpeg43DecMediaObject
MFVideoFormat_MP43, Mpeg43 Decoder MFT, CLSID_CMpeg43DecMediaObject
MEDIASUBTYPE_m4s2, Mpeg4s Decoder MFT, CLSID_CMpeg4sDecMFT
MFVideoFormat_WMV2, WMVideo Decoder MFT, CLSID_CWMVDecMediaObject
MFVideoFormat_MSS2, WMV Screen decoder MFT, CLSID_CMSSCDecMediaObject
MFVideoFormat_M4S2, Mpeg4s Decoder MFT, CLSID_CMpeg4sDecMFT
MEDIASUBTYPE_WVP2, WMVideo Decoder MFT, CLSID_CWMVDecMediaObject
MEDIASUBTYPE_mp42, Mpeg4 Decoder MFT, CLSID_CMpeg4DecMediaObject
MEDIASUBTYPE_MP42, Mpeg4 Decoder MFT, CLSID_CMpeg4DecMediaObject
MFVideoFormat_WMV1, WMVideo Decoder MFT, CLSID_CWMVDecMediaObject
MFVideoFormat_MSS1, WMV Screen decoder MFT, CLSID_CMSSCDecMediaObject
MFVideoFormat_MPG1, Microsoft MPEG Video Decoder MFT, {2D709E52-123F-49B5-9CBC-9AF5CDE28FB9}
MFVideoFormat_WVC1, WMVideo Decoder MFT, CLSID_CWMVDecMediaObject
{30395056-0000-0010-8000-00AA00389B71}, Microsoft WebM MF VP8 Decoder Transform, {E3AAF548-C9A4-4C6E-234D-5ADA374B0000}
{30385056-0000-0010-8000-00AA00389B71}, Microsoft WebM MF VP8 Decoder Transform, {E3AAF548-C9A4-4C6E-234D-5ADA374B0000}
MFVideoFormat_DVC, DV Decoder MFT, {404A6DE5-D4D6-4260-9BC7-5A6CBD882432}
{0000F1AC-0000-0010-8000-00AA00389B71}, Microsoft FLAC Audio Decoder MFT, {6B0B3E6B-A2C5-4514-8055-AFE8A95242D9}
{00007361-0000-0010-8000-00AA00389B71}, MS AMRNB Decoder MFT, {265011AE-5481-4F77-A295-ABB6FFE8D63E}
{0000704F-0000-0010-8000-00AA00389B71}, Microsoft Opus Audio Decoder MFT, {63E17C10-2D43-4C42-8FE3-8D8B63E46A6A}
{00006C61-0000-0010-8000-00AA00389B71}, Microsoft ALAC Audio Decoder MFT, {C0CD7D12-31FC-4BBC-B363-7322EE3E1879}
{00002001-0000-0010-8000-00AA00389B71}, DTS IEC-61937 converter MFT, {D035E24C-C877-42D7-A795-2A8A339B472F}
MFAudioFormat_AAC, Microsoft AAC Audio Decoder MFT, CLSID_CMSAACDecMFT
MFAudioFormat_ADTS, Microsoft AAC Audio Decoder MFT, CLSID_CMSAACDecMFT
MFAudioFormat_WMAudio_Lossless, WMAudio Decoder MFT, CLSID_CWMADecMediaObject
MFAudioFormat_WMAudioV9, WMAudio Decoder MFT, CLSID_CWMADecMediaObject
MFAudioFormat_WMAudioV8, WMAudio Decoder MFT, CLSID_CWMADecMediaObject
MEDIASUBTYPE_MSAUDIO1, WMAudio Decoder MFT, CLSID_CWMADecMediaObject
MEDIASUBTYPE_RAW_AAC1, Microsoft AAC Audio Decoder MFT, CLSID_CMSAACDecMFT
MFAudioFormat_MP3, MP3 Decoder MFT, CLSID_CMP3DecMediaObject
MFAudioFormat_MPEG, Microsoft MPEG Audio Decoder MFT, {70707B39-B2CA-4015-ABEA-F8447D22D88B}
{00000031-0000-0010-8000-00AA00389B71}, GSM ACM Wrapper MFT, {4A76B469-7B66-4DD4-BA2D-DDF244C766DC}
{00000011-0000-0010-8000-00AA00389B71}, IMA ADPCM ACM Wrapper MFT, {A16E1BFF-A80D-48AD-AECD-A35C005685FE}
WMMEDIASUBTYPE_WMSP2, WMSpeech Decoder DMO, CLSID_CWMSPDecMediaObject
MFAudioFormat_MSP1, WMSpeech Decoder DMO, CLSID_CWMSPDecMediaObject
KSDATAFORMAT_SUBTYPE_MULAW, G711 Wrapper MFT, {92B66080-5E2D-449E-90C4-C41F268E5514}
{00000006-0000-0010-8000-00AA00389B71}, A-law Wrapper MFT, {36CB6E0C-78C1-42B2-9943-846262F31786}
KSDATAFORMAT_SUBTYPE_ADPCM, ADPCM ACM Wrapper MFT, {CA34FE0A-5722-43AD-AF23-05F7650257DD}
 
 
-------------------------------------
Disabled Media Foundation Transforms
-------------------------------------
 
[HKEY_LOCAL_MACHINE\Software\Classes\MediaFoundation\Transforms\DoNotUse]
 
<transform CLSID>
 
 
 
------------------------
Disabled Media Sources
------------------------
 
[HKEY_LOCAL_MACHINE\Software\Classes\MediaFoundation\MediaSources\DoNotUse]
 
<media source CLSID>
 
 
---------------
EVR Power Information
---------------
Current Setting: {5C67A112-A4C9-483F-B4A7-1D473BECAFDC} (Quality) 
  Quality Flags: 2576
    Enabled:
    Force throttling
    Allow half deinterlace
    Allow scaling
    Decode Power Usage: 100
  Balanced Flags: 1424
    Enabled:
    Force throttling
    Allow batching
    Force half deinterlace
    Force scaling
    Decode Power Usage: 50
  PowerFlags: 1424
    Enabled:
    Force throttling
    Allow batching
    Force half deinterlace
    Force scaling
    Decode Power Usage: 0
 
---------------
Diagnostics
---------------
 
Windows Error Reporting:
+++ WER0 +++:
No Data
+++ WER1 +++:
No Data
+++ WER2 +++:
No Data
+++ WER3 +++:
No Data
+++ WER4 +++:
No Data
+++ WER5 +++:
No Data
+++ WER6 +++:
No Data
+++ WER7 +++:
No Data
+++ WER8 +++:
No Data
+++ WER9 +++:
No Data
 

 

SpeedFan highest temps:
 
Idling : 34°C  GPU
Idling : 34°C  HD0
 
Watching a video/livestream : 35°C GPU (fullscreening it didn't change the temp)
Watching a video/livestream : 35°C HD0 (fullscreening it didn't change the temp)
 
Running a scan while watching a livestream: 34°C  GPU  
Running a scan while watching a livestream: 36°C  HD0 
 
Playing a few minutes while having a livestream playing on secondary monitor:  61°C GPU
Playing a few minutes while having a livestream playing on secondary monitor:  35°C HD0
 
HDStatus report :
 
If that can help, as the report says, my disk is indeed old. It's actually the oldest piece of my PC, about 5 years old; I believe I've replaced almost every single piece of my computer besides that one since then, is it dying?
 

HDTune scan:

 

RPVmXJM.png

 

 

As for the Realtek driver, I did "search automatically for updated driver software" which said it was up-to-date with the "Realtek PCIe GBE Family".

Edited by Zukolol, 19 May 2018 - 06:09 AM.

  • 0

#8
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,503 posts
  • MVP

I have had very bad luck with Seagates but your HDTune scan looks pretty good.  Doesn't appear to be at fault for your slowdown.  Speedfan says it is getting a bit old so you might look into replacing it.  I'd get a Western Digital Black if it's not too expensive.  They last longer and have a better warranty.  WD Blues are OK.  Just don't get another Seagate.  What does HDTune show for your SSD?

 

 

I don't see anything with DxDiag.  Appears to be happy tho I don't know why its driver shows up in Latency Monitor.  Run Latency Monuitor again as before but switch to the Drivers page.  Click on the ISR count once or twice until the drivers with the highest ISRs are at the top of the column then make a screen shot and post it.  So far it seems to dislike the video drivers but they appear new. 

 

Leave up Process Explorer and go to Device manager again.  Right click and disable any device that you can live without for a few minutes - including your Network Adapter.  Switch back to Process Explorer and see if Interrupts has improved.  Try booting into Safe Mode Menu

https://support.micr...pc-in-safe-mode

and choose the Low Resolution Video option.  Does that reduce Interrupts?  How about Safe Mode without networking?

 

Search for

 

msconfig and hit Enter.

 

Select Diagnostic Boot and OK and reboot.  Run Process Explorer and check Interrupts.  If that helps then go back into msconfig and

Go to Services tab and click on the box to hide Microsoft Services then uncheck
everything that remains.  Go to Startup tab and uncheck everything.  OK and
reboot.  Check Interrupts.  If that helps then go back into msconfig and recheck about 1/2.  OK and reboot.  Try and isolate the problem to a single program.


  • 0

#9
Zukolol

Zukolol

    New Member

  • Topic Starter
  • Member
  • Pip
  • 7 posts
HDTune for my SSD:
7iNGmJW.png
 
Yeah to be fair as you mentioned I expected it to be something with video drivers which is why I refreshed them before asking for any help but nothing changed.. That's why I assumed it could possibly be a malware or something I wouldn't be able to fix myself at all
 
Latency Monitor Drivers page:
aQU2FGv.png
 
I believe "runtime de l'infrastructure de pilotes en mode noyau" translates by "Kernel Mode Driver Framework Runtime" if that can help.
 
The interupts on Process Explorer were actually pretty low this time (~0.2%), 
However I don't know if that matters, it spiked up to ~1.5% when I launched a game and when I opened chrome with lots of tabs (including some livestreams). Remained stable between ~0.8% - 1% while playing (with chrome and livestreams opened).
 
As it always stayed low I haven't done the msconfig thing, I did the safe boot one and it remained the same. I'm assuming as you've told me that we want it as low as possible which is the case now, I wouldn't be able to isolate the problem (if it's even still there)
 
Also, that might be irrelevant but I checked the Windows Event Viewer and it appears to be completely flooded by 
 

 

Security-SPP Error (Event ID: 16385)

"Failed to schedule Software Protection service for re-start at 2118-04-25T17:44:17Z. Error Code: 0x80070002"

 

Getting 1 of these every 30 seconds..
Now I've tried googling it and applying the fixes (making sure it's using "NETWORK SERVICE", granting it the proper rights, restarting it..) but nothing worked.
 
I'm kinda lost here, I have no idea whether it's a big deal or not but getting an error every 30 seconds doesnt sound like the kind of thing we'd want?

Edited by Zukolol, 19 May 2018 - 12:05 PM.

  • 0

#10
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,503 posts
  • MVP

Since ndis.sys is at the top of the drivers list I expect it's a network driver issue.  Realtek has a bad rep for win 10 network drivers acting strangely.  Sometimes we have to go back to the old win 7 drivers to get them stable.

 

However the event log thing may clear up if we run dism:

 

Open an elevated command prompt:

http://www.howtogeek...-in-windows-10/
http://www.eightforu...indows-8-a.html

(If you open an elevated Command Prompt properly it will say Administrator: Command Prompt in the margin at the top of the window)


Once you have an elevated command prompt:

Type:

 DISM  /Online  /Cleanup-Image  /RestoreHealth

 (I use two spaces so you can be sure to see where one space goes.)
Hit Enter.  This will take a while (10-20 minutes) to complete.  Once the prompt returns:

Reboot.  Open an elevated Command Prompt again and type (with an Enter after the line):

sfc  /scannow



This will also take a few minutes.  

When it finishes it will say one of the following:

Windows did not find any integrity violations (a good thing)
Windows Resource Protection found corrupt files and repaired them (a good thing)
Windows Resource Protection found corrupt files but was unable to fix some (or all) of them (not a good thing)

If you get the last result then type:
findstr  /c:"[SR]"  \windows\logs\cbs\cbs.log  >  %UserProfile%\desktop\junk.txt


Hit Enter.  Then type::


notepad %UserProfile%\desktop\junk.txt

Hit Enter.

 Copy the text from notepad and paste it into a reply.


After you finish SFC, regardless of the result:



1. Please download the Event Viewer Tool by Vino Rosso
http://images.malwar...om/vino/VEW.exe
and save it to your Desktop:
2. Right-click VEW.exe and Run AS Administrator
3. Under 'Select log to query', select:

* System
4. Under 'Select type to list', select:
* Error
* Warning


Then use the 'Number of events' as follows:


1. Click the radio button for 'Number of events'
Type 20 in the 1 to 20 box
Then click the Run button.
Notepad will open with the output log.


Please post the Output log in your next reply then repeat but select Application.  (Each time you run VEW it overwrites the log so copy the first one to a Reply or rename it before running it a second time.)


Run Process Explorer as before and post the log.

 

I don't see any sign of malware but you can run Rogue Killer and aswmbr if you want just to make sure:

 Rogue Killer

http://www.adlice.co...iller/#download

Portable 64 bits

Download and Save.



Right click on the downloaded file (RogueKillerX64.exe or RogueKiller.exe)  and Run As admin

Start Scan
Start Scan

Will take about 20 minutes to complete.

Open Report
Export TXT (save it to your desktop as rk) Save

Do not let Rogue Killer remove anything until you hear from me.  Leave Rogue Killer up (but minimized) so you won't have to rescan.

Open rk.txt and copy and paste it to your next Reply.
 




Download aswMBR.exe  to your desktop.
The link is a direct download so the page won't change.

Right click the aswMBR.exe and select Run As Administrator to run it
Wait until the AV Scan shows up at the bottom left.
Change AV Scan: from Quick Scan to  C:\
Click the "Scan" button to start scan
If it asks you to allow the Avast engine to download then say Yes.  It will take a while to finish.  
On completion of the scan (Note if the Fix button is enabled and tell me but do not push any buttons) click save log, save it to your desktop and post in your next reply

If it crashes then try it again but uncheck Trace Disk IO Calls before hitting Scan.

 


  • 0

#11
Zukolol

Zukolol

    New Member

  • Topic Starter
  • Member
  • Pip
  • 7 posts

Ok so, the sfc /scannow resulted in "Windows did not find any integrity violations"

 

Event Viewer System Log:

 

 

Vino's Event Viewer v01c run on Windows 7 in French

Report run at 20/05/2018 00:29:23
 
Note: All dates below are in the format dd/mm/yyyy
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log -  Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Erreur Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 19/05/2018 22:22:52
Type: Erreur Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID  {D63B10C5-BB46-4990-A94F-E40B9D520160}  et l’APPID  {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}  au SID DESKTOP-UL056C5\GUI de l’utilisateur (S-1-5-21-4003686615-4269193129-2528438380-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Log: 'System' Date/Time: 19/05/2018 22:18:51
Type: Erreur Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID  {D63B10C5-BB46-4990-A94F-E40B9D520160}  et l’APPID  {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}  au SID DESKTOP-UL056C5\GUI de l’utilisateur (S-1-5-21-4003686615-4269193129-2528438380-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Log: 'System' Date/Time: 19/05/2018 22:06:58
Type: Erreur Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID  {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}  et l’APPID  {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}  au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Log: 'System' Date/Time: 19/05/2018 22:06:58
Type: Erreur Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID  {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}  et l’APPID  {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}  au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Log: 'System' Date/Time: 19/05/2018 22:06:58
Type: Erreur Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID  {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}  et l’APPID  {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}  au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Log: 'System' Date/Time: 19/05/2018 22:06:58
Type: Erreur Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID  {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}  et l’APPID  {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}  au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Log: 'System' Date/Time: 19/05/2018 18:28:06
Type: Erreur Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID  {D63B10C5-BB46-4990-A94F-E40B9D520160}  et l’APPID  {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}  au SID DESKTOP-UL056C5\GUI de l’utilisateur (S-1-5-21-4003686615-4269193129-2528438380-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Log: 'System' Date/Time: 19/05/2018 18:12:08
Type: Erreur Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID  {D63B10C5-BB46-4990-A94F-E40B9D520160}  et l’APPID  {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}  au SID DESKTOP-UL056C5\GUI de l’utilisateur (S-1-5-21-4003686615-4269193129-2528438380-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Log: 'System' Date/Time: 19/05/2018 17:54:49
Type: Erreur Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID  {D63B10C5-BB46-4990-A94F-E40B9D520160}  et l’APPID  {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}  au SID DESKTOP-UL056C5\GUI de l’utilisateur (S-1-5-21-4003686615-4269193129-2528438380-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Log: 'System' Date/Time: 19/05/2018 17:54:23
Type: Erreur Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID  {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}  et l’APPID  {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}  au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Log: 'System' Date/Time: 19/05/2018 17:54:23
Type: Erreur Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID  {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}  et l’APPID  {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}  au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Log: 'System' Date/Time: 19/05/2018 17:54:23
Type: Erreur Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID  {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}  et l’APPID  {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}  au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Log: 'System' Date/Time: 19/05/2018 17:54:23
Type: Erreur Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID  {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}  et l’APPID  {4839DDB7-58C2-48F5-8283-E1D1807D0D7D}  au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Log: 'System' Date/Time: 19/05/2018 17:39:38
Type: Erreur Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID  {D63B10C5-BB46-4990-A94F-E40B9D520160}  et l’APPID  {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}  au SID DESKTOP-UL056C5\GUI de l’utilisateur (S-1-5-21-4003686615-4269193129-2528438380-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Log: 'System' Date/Time: 19/05/2018 17:37:00
Type: Erreur Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID  {D63B10C5-BB46-4990-A94F-E40B9D520160}  et l’APPID  {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}  au SID DESKTOP-UL056C5\GUI de l’utilisateur (S-1-5-21-4003686615-4269193129-2528438380-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Log: 'System' Date/Time: 19/05/2018 17:31:21
Type: Erreur Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID  {D63B10C5-BB46-4990-A94F-E40B9D520160}  et l’APPID  {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}  au SID DESKTOP-UL056C5\GUI de l’utilisateur (S-1-5-21-4003686615-4269193129-2528438380-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
Log: 'System' Date/Time: 19/05/2018 17:31:07
Type: Erreur Category: 0
Event: 7034 Source: Service Control Manager
Le service Parsec s’est terminé de façon inattendue pour la 1ème fois.
 
Log: 'System' Date/Time: 19/05/2018 17:30:35
Type: Erreur Category: 0
Event: 7031 Source: Service Control Manager
Le service Microsoft Office Click-to-Run Service s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 0 millisecondes : Redémarrer le service.
 
Log: 'System' Date/Time: 19/05/2018 17:30:34
Type: Erreur Category: 0
Event: 7031 Source: Service Control Manager
Le service Windows Search s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 30000 millisecondes : Redémarrer le service.
 
Log: 'System' Date/Time: 19/05/2018 16:36:35
Type: Erreur Category: 0
Event: 10016 Source: Microsoft-Windows-DistributedCOM
Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID  {D63B10C5-BB46-4990-A94F-E40B9D520160}  et l’APPID  {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}  au SID DESKTOP-UL056C5\GUI de l’utilisateur (S-1-5-21-4003686615-4269193129-2528438380-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Avertissement Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 19/05/2018 12:23:10
Type: Avertissement Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
La résolution du nom redirector.googlevideo.com a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu.
 
Log: 'System' Date/Time: 18/05/2018 18:58:01
Type: Avertissement Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
La résolution du nom 575d8423d9dccf880deeb720f1de8235.nrb.footprintdns.com a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu.
 
Log: 'System' Date/Time: 18/05/2018 07:49:18
Type: Avertissement Category: 0
Event: 10400 Source: Microsoft-Windows-NDIS
La réinitialisation de l'interface réseau « Realtek PCIe GBE Family Controller » a commencé. Le temps de la réinitialisation du matériel, la connectivité réseau sera momentanément interrompue. Motif : The network driver detected that its hardware has stopped responding to commands. Cette interface réseau a été réinitialisé 1 fois depuis sa dernière initialisation.
 
Log: 'System' Date/Time: 18/05/2018 07:49:16
Type: Avertissement Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
La résolution du nom r10---sn-4gxx-25gy.googlevideo.com a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu.
 
Log: 'System' Date/Time: 17/05/2018 09:23:09
Type: Avertissement Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
La résolution du nom ag.innovid.com a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu.
 
Log: 'System' Date/Time: 16/05/2018 21:04:17
Type: Avertissement Category: 1014
Event: 1014 Source: Microsoft-Windows-DNS-Client
La résolution du nom redirector.googlevideo.com a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu.
 
Log: 'System' Date/Time: 16/05/2018 06:45:00
Type: Avertissement Category: 0
Event: 51 Source: Disk
Une erreur a été détectée sur le périphérique \Device\Harddisk2\DR3 lors d'une opération de pagination.
 
Log: 'System' Date/Time: 16/05/2018 06:45:00
Type: Avertissement Category: 0
Event: 51 Source: Disk
Une erreur a été détectée sur le périphérique \Device\Harddisk2\DR3 lors d'une opération de pagination.
 
Log: 'System' Date/Time: 16/05/2018 06:45:00
Type: Avertissement Category: 0
Event: 51 Source: Disk
Une erreur a été détectée sur le périphérique \Device\Harddisk2\DR3 lors d'une opération de pagination.
 
Log: 'System' Date/Time: 16/05/2018 06:45:00
Type: Avertissement Category: 0
Event: 51 Source: Disk
Une erreur a été détectée sur le périphérique \Device\Harddisk2\DR3 lors d'une opération de pagination.
 
Log: 'System' Date/Time: 16/05/2018 06:45:00
Type: Avertissement Category: 0
Event: 51 Source: Disk
Une erreur a été détectée sur le périphérique \Device\Harddisk2\DR3 lors d'une opération de pagination.
 
Log: 'System' Date/Time: 16/05/2018 06:45:00
Type: Avertissement Category: 0
Event: 51 Source: Disk
Une erreur a été détectée sur le périphérique \Device\Harddisk2\DR3 lors d'une opération de pagination.
 
Log: 'System' Date/Time: 16/05/2018 06:45:00
Type: Avertissement Category: 0
Event: 51 Source: Disk
Une erreur a été détectée sur le périphérique \Device\Harddisk2\DR3 lors d'une opération de pagination.
 
Log: 'System' Date/Time: 16/05/2018 06:45:00
Type: Avertissement Category: 0
Event: 51 Source: Disk
Une erreur a été détectée sur le périphérique \Device\Harddisk2\DR3 lors d'une opération de pagination.
 
Log: 'System' Date/Time: 16/05/2018 06:45:00
Type: Avertissement Category: 0
Event: 51 Source: Disk
Une erreur a été détectée sur le périphérique \Device\Harddisk2\DR3 lors d'une opération de pagination.
 
Log: 'System' Date/Time: 16/05/2018 06:45:00
Type: Avertissement Category: 0
Event: 51 Source: Disk
Une erreur a été détectée sur le périphérique \Device\Harddisk2\DR3 lors d'une opération de pagination.
 
Log: 'System' Date/Time: 16/05/2018 06:45:00
Type: Avertissement Category: 0
Event: 51 Source: Disk
Une erreur a été détectée sur le périphérique \Device\Harddisk2\DR3 lors d'une opération de pagination.
 
Log: 'System' Date/Time: 16/05/2018 06:45:00
Type: Avertissement Category: 0
Event: 51 Source: Disk
Une erreur a été détectée sur le périphérique \Device\Harddisk2\DR3 lors d'une opération de pagination.
 
Log: 'System' Date/Time: 16/05/2018 06:45:00
Type: Avertissement Category: 0
Event: 51 Source: Disk
Une erreur a été détectée sur le périphérique \Device\Harddisk2\DR3 lors d'une opération de pagination.
 
Log: 'System' Date/Time: 16/05/2018 06:45:00
Type: Avertissement Category: 0
Event: 51 Source: Disk
Une erreur a été détectée sur le périphérique \Device\Harddisk2\DR3 lors d'une opération de pagination.
 

 

https://shauncassell...9d520160-and-a/ this looks like a fix for the most common error, should I apply it?

 

Event Viewer Application Log:

 

 

Vino's Event Viewer v01c run on Windows 7 in French

Report run at 20/05/2018 00:30:36
 
Note: All dates below are in the format dd/mm/yyyy
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log -  Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Erreur Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 19/05/2018 22:30:29
Type: Erreur Category: 0
Event: 16385 Source: Microsoft-Windows-Security-SPP
Échec de la planification du redémarrage du service de protection logicielle à 2118-04-25T22:30:29Z. Code d’erreur : 0x80070002.
 
Log: 'Application' Date/Time: 19/05/2018 22:29:59
Type: Erreur Category: 0
Event: 16385 Source: Microsoft-Windows-Security-SPP
Échec de la planification du redémarrage du service de protection logicielle à 2118-04-25T22:29:59Z. Code d’erreur : 0x80070002.
 
Log: 'Application' Date/Time: 19/05/2018 22:29:29
Type: Erreur Category: 0
Event: 16385 Source: Microsoft-Windows-Security-SPP
Échec de la planification du redémarrage du service de protection logicielle à 2118-04-25T22:29:29Z. Code d’erreur : 0x80070002.
 
Log: 'Application' Date/Time: 19/05/2018 22:28:59
Type: Erreur Category: 0
Event: 16385 Source: Microsoft-Windows-Security-SPP
Échec de la planification du redémarrage du service de protection logicielle à 2118-04-25T22:28:59Z. Code d’erreur : 0x80070002.
 
Log: 'Application' Date/Time: 19/05/2018 22:28:29
Type: Erreur Category: 0
Event: 16385 Source: Microsoft-Windows-Security-SPP
Échec de la planification du redémarrage du service de protection logicielle à 2118-04-25T22:28:29Z. Code d’erreur : 0x80070002.
 
Log: 'Application' Date/Time: 19/05/2018 22:27:59
Type: Erreur Category: 0
Event: 16385 Source: Microsoft-Windows-Security-SPP
Échec de la planification du redémarrage du service de protection logicielle à 2118-04-25T22:27:59Z. Code d’erreur : 0x80070002.
 
Log: 'Application' Date/Time: 19/05/2018 22:27:29
Type: Erreur Category: 0
Event: 16385 Source: Microsoft-Windows-Security-SPP
Échec de la planification du redémarrage du service de protection logicielle à 2118-04-25T22:27:29Z. Code d’erreur : 0x80070002.
 
Log: 'Application' Date/Time: 19/05/2018 22:26:59
Type: Erreur Category: 0
Event: 16385 Source: Microsoft-Windows-Security-SPP
Échec de la planification du redémarrage du service de protection logicielle à 2118-04-25T22:26:59Z. Code d’erreur : 0x80070002.
 
Log: 'Application' Date/Time: 19/05/2018 22:26:29
Type: Erreur Category: 0
Event: 16385 Source: Microsoft-Windows-Security-SPP
Échec de la planification du redémarrage du service de protection logicielle à 2118-04-25T22:26:29Z. Code d’erreur : 0x80070002.
 
Log: 'Application' Date/Time: 19/05/2018 22:25:59
Type: Erreur Category: 0
Event: 16385 Source: Microsoft-Windows-Security-SPP
Échec de la planification du redémarrage du service de protection logicielle à 2118-04-25T22:25:59Z. Code d’erreur : 0x80070002.
 
Log: 'Application' Date/Time: 19/05/2018 22:25:29
Type: Erreur Category: 0
Event: 16385 Source: Microsoft-Windows-Security-SPP
Échec de la planification du redémarrage du service de protection logicielle à 2118-04-25T22:25:29Z. Code d’erreur : 0x80070002.
 
Log: 'Application' Date/Time: 19/05/2018 22:24:59
Type: Erreur Category: 0
Event: 16385 Source: Microsoft-Windows-Security-SPP
Échec de la planification du redémarrage du service de protection logicielle à 2118-04-25T22:24:59Z. Code d’erreur : 0x80070002.
 
Log: 'Application' Date/Time: 19/05/2018 22:24:29
Type: Erreur Category: 0
Event: 16385 Source: Microsoft-Windows-Security-SPP
Échec de la planification du redémarrage du service de protection logicielle à 2118-04-25T22:24:29Z. Code d’erreur : 0x80070002.
 
Log: 'Application' Date/Time: 19/05/2018 22:23:59
Type: Erreur Category: 0
Event: 16385 Source: Microsoft-Windows-Security-SPP
Échec de la planification du redémarrage du service de protection logicielle à 2118-04-25T22:23:59Z. Code d’erreur : 0x80070002.
 
Log: 'Application' Date/Time: 19/05/2018 22:23:29
Type: Erreur Category: 0
Event: 16385 Source: Microsoft-Windows-Security-SPP
Échec de la planification du redémarrage du service de protection logicielle à 2118-04-25T22:23:29Z. Code d’erreur : 0x80070002.
 
Log: 'Application' Date/Time: 19/05/2018 22:22:59
Type: Erreur Category: 0
Event: 16385 Source: Microsoft-Windows-Security-SPP
Échec de la planification du redémarrage du service de protection logicielle à 2118-04-25T22:22:59Z. Code d’erreur : 0x80070002.
 
Log: 'Application' Date/Time: 19/05/2018 22:22:29
Type: Erreur Category: 0
Event: 16385 Source: Microsoft-Windows-Security-SPP
Échec de la planification du redémarrage du service de protection logicielle à 2118-04-25T22:22:29Z. Code d’erreur : 0x80070002.
 
Log: 'Application' Date/Time: 19/05/2018 22:21:59
Type: Erreur Category: 0
Event: 16385 Source: Microsoft-Windows-Security-SPP
Échec de la planification du redémarrage du service de protection logicielle à 2118-04-25T22:21:59Z. Code d’erreur : 0x80070002.
 
Log: 'Application' Date/Time: 19/05/2018 22:21:29
Type: Erreur Category: 0
Event: 16385 Source: Microsoft-Windows-Security-SPP
Échec de la planification du redémarrage du service de protection logicielle à 2118-04-25T22:21:29Z. Code d’erreur : 0x80070002.
 
Log: 'Application' Date/Time: 19/05/2018 22:20:59
Type: Erreur Category: 0
Event: 16385 Source: Microsoft-Windows-Security-SPP
Échec de la planification du redémarrage du service de protection logicielle à 2118-04-25T22:20:59Z. Code d’erreur : 0x80070002.
 
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Avertissement Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 19/05/2018 18:34:06
Type: Avertissement Category: 0
Event: 1015 Source: MsiInstaller
La connexion au serveur est impossible. Erreur : 0x800401F0
 
Log: 'Application' Date/Time: 19/05/2018 18:34:06
Type: Avertissement Category: 0
Event: 1015 Source: MsiInstaller
La connexion au serveur est impossible. Erreur : 0x800401F0
 

 

The SPP error translates into 

Security-SPP Error (Event ID: 16385)

"Failed to schedule Software Protection service for re-start at 2118-04-25T17:44:17Z. Error Code: 0x80070002"

and that's the error I'm getting every 30 second.

 

 

RogueKiller Log:

 

 

RogueKiller V12.12.17.0 (x64) [May 14 2018] (Gratuit) par Adlice Software

 
Système d'exploitation : Windows 10 (10.0.16299) 64 bits version
Démarré en  : Mode normal
Utilisateur : GUI [Administrateur]
Démarré depuis : C:\Users\GUI\Desktop\RogueKiller_portable64.exe
Mode : Scan -- Date : 05/20/2018 00:31:54 (Durée : 00:27:10)
 
¤¤¤ Processus : 0 ¤¤¤
 
¤¤¤ Registre : 2 ¤¤¤
[PUM.Policies] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System | ConsentPromptBehaviorAdmin : 0  -> Trouvé(e)
[PUM.Policies] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System | ConsentPromptBehaviorAdmin : 0  -> Trouvé(e)
 
¤¤¤ Tâches : 0 ¤¤¤
 
¤¤¤ Fichiers : 0 ¤¤¤
 
¤¤¤ WMI : 0 ¤¤¤
 
¤¤¤ Fichier Hosts : 0 ¤¤¤
 
¤¤¤ Antirootkit : 0 (Driver: Chargé) ¤¤¤
 
¤¤¤ Navigateurs web : 0 ¤¤¤
 
¤¤¤ Vérification MBR : ¤¤¤
+++++ PhysicalDrive0: Samsung SSD 850 EVO 1TB +++++
--- User ---
[MBR] f0d95eaa707ed2d829e3a96816371445
[BSP] 8bd482f54fe706e70fa2f75f784b48e1 : Windows Vista/7/8|VT.Unknown MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 953379 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
1 - [XXXXXX] ACER (0x27) [VISIBLE] Offset (sectors): 1952524288 | Size: 486 MB
User = LL1 ... OK
User = LL2 ... OK
 
+++++ PhysicalDrive1: ST31000524AS +++++
--- User ---
[MBR] aefc6145345fa64eda572febab783daf
[BSP] ace89bcf978d09f81de508f041f1ec42 : Windows Vista/7/8|VT.Unknown MBR Code
Partition table:
0 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 953867 MB [Windows Vista/7/8 Bootstrap | Windows Vista/7/8 Bootloader]
User = LL1 ... OK
User = LL2 ... OK
 

 

 

I tried the aswMBR.exe thing, "Trace Disk IO" enabled crashed my computer. Restarted and did the C: scan; granted you said it would take a while I let it run overnight and when I woke up it wasn't done after 10 hours... I restarted it and left it to run for a few hours since it made my computer extremely slow (just moving the mouse on desktop felt sloppy) but considering it spent over 2 hours on scanning Adobe After Effects plugins I figured something was wrong and I stopped it again. Maybe the fact that it makes my computer slow makes the whole scan go ultra slowly? 

I could try to run it again overnight but I can't really afford to make my computer unusable for a whole day to leave the scan running right now. I saved the first scan log (the 10 hours one) but I somehow can't find it anymore


  • 0

#12
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,503 posts
  • MVP

The 10016 error is not important but you can use the procedure in the link to try & fix it if you want.  Last Time I tried it you need to activate the hidden administrator login then reboot and login as Administrator (no password) otherwise it wouldn't let you make changes.  It's not enough to use an elevated command prompt or run regedit as admin.

 

The 16385 error may have a fix:

 

https://social.techn...um=winservergen

 

Not sure which drive this is (suspect the seagate) 

Log: 'System' Date/Time: 16/05/2018 06:45:00
Type: Avertissement Category: 0
Event: 51 Source: Disk
Une erreur a été détectée sur le périphérique \Device\Harddisk2\DR3 lors d'une opération de pagination.
 

 

Even tho it hasn't been seen in a while

I would force a disk check on the seagate

 

http://www.thewindow...cking-windows-8

 

Rogue Killer didn't find anything so just close it.

 

Aswmbr should not take very long if it works so I would stop trying.

 

Try MBAR instead.  It's not the same as MBAM.

 

https://www.malwareb...om/antirootkit/


  • 0

#13
Zukolol

Zukolol

    New Member

  • Topic Starter
  • Member
  • Pip
  • 7 posts

Ran MBAR, performed disk checks on both disks, everything was fine

 

I'm suspecting chrome to somehow crash (or overload) the graphic driver even tho I've fully reinstalled Chrome..


  • 0

#14
RKinner

RKinner

    Malware Expert

  • Expert
  • 20,503 posts
  • MVP

Could I see new VEW logs?

 

Go into Chrome and click on the three dots in the upper right/

 

Click on Settings

Click on Advanced at the bottom of the page.

Scroll down and Find System.  Find

Continue Running Background Apps when Chrome is closed.  Turn it OFF.  (Slider to the left)

Restart Chrome.

 

Also try running Chrome with Extensions and plugin disabled.  (Modify the shortcut per https://superuser.co...ithout-plugins)

Try making a new profile:  Go in to Settings, Manage Other People, Add person

 

 

Could I see a new Process Explorer log?

 

Try WhySoSlow:

The Download is on

http://www.resplendence.com/downloads

Look under System Monitoring Tools for WhySoSlow 1.0  then click on


Download free home edition

Save the file then right click and Run As Admin.  Follow the prompts. Let it run for a minute (watch the Time Running indication at the bottom) then hit Analyze

Then when a new window appears hit Analyze again.   Once the report appears scroll down and see if it complains about anything.  You can Save the report but it saves as WhySoSlowOutput.htm which the forum won't let you attach.  You can either zip it up or rename it to WhySoSlowOutput.txt then attach it.


  • 0






Similar Topics

1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP