Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 16-06-2022
Exécuté par salhi1 (administrateur) sur DESKTOP-38ETJSN (16-06-2022 20:05:18)
Exécuté depuis C:\Users\salhi1\Desktop
Profils chargés: salhi1
Plate-forme: Microsoft Windows 11 Professionnel Version 21H2 22000.739 (X64) Langue: Français (France)
Navigateur par défaut: Chrome
Mode d'amorçage: Normal

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSSrcExt.exe
(C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cncmd.exe
(C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe ->) (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\QtWebEngineProcess.exe
(C:\Program Files\Tablet\Wacom\WacomHost.exe ->) (Wacom Co., Ltd. -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe
(C:\Program Files\Tablet\Wacom\WTabletServicePro.exe ->) (Wacom Co., Ltd. -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe
(C:\Program Files\Tablet\Wacom\WTabletServicePro.exe ->) (Wacom Co., Ltd. -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe
(C:\Program Files\Tablet\Wacom\WTabletServicePro.exe ->) (Wacom Technology Corp. -> Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe
(C:\Program Files\WindowsApps\MicrosoftTeams_22133.500.1346.3200_x64__8wekyb3d8bbwe\msteams.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\101.0.1210.53\msedgewebview2.exe <12>
(DriverStore\FileRepository\u0379219.inf_amd64_3649648678001de4\B378972\atiesrxx.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0379219.inf_amd64_3649648678001de4\B378972\atieclxx.exe
(explorer.exe ->) (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte. Ltd.) C:\Program Files (x86)\2BrightSparks\SyncBackFree\SyncBackFree.exe
(explorer.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\59.0.3.0\crashpad_handler.exe <2>
(explorer.exe ->) (Google LLC -> Google, Inc.) C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe <7>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.132\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.132\GoogleCrashHandler64.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Users\salhi1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Winfiles\bin\javaw.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0379219.inf_amd64_3649648678001de4\B378972\atiesrxx.exe
(services.exe ->) (DTS, Inc. -> ) C:\Windows\System32\DTS\PC\APO3x\DTSAPO3Service.exe
(services.exe ->) (LAVASOFT SOFTWARE CANADA INC -> ) C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe
(services.exe ->) (Logitech Inc -> Logitech Inc.) C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_4.66.2001.0_x64__8wekyb3d8bbwe\gamingservices.exe
(services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_4.66.2001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.5-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.5-0\NisSrv.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
(services.exe ->) (TEFINCOM S.A. -> TEFINCOM S.A.) C:\Program Files\NordVPN\nordvpn-service.exe
(services.exe ->) (TunnelBear Inc -> TunnelBear) C:\Program Files (x86)\TunnelBear\TunnelBear.Maintenance.exe
(services.exe ->) (Wacom Co., Ltd. -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe
(services.exe ->) (Windscribe Limited -> Windscribe Limited) C:\Program Files (x86)\Windscribe\WindscribeService.exe
(svchost.exe ->) () [Fichier non signé] C:\Program Files (x86)\UsbFix\Modules\UsbFixMonitor.exe
(svchost.exe ->) (Advanced Micro Devices, Inc.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\CPUMetricsServer.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_421.20070.425.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe

==================== Registre (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [1081648 2020-06-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [18727048 2018-10-05] (Logitech Inc -> Logitech Inc.)
HKLM-x32\...\Run: [CK550_CK552] => C:\Program Files (x86)\Cooler Master\CK550_CK552\CK550_CK552 HID.exe [1982464 2019-06-02] (Cooler Master) [Fichier non signé]
HKLM-x32\...\RunOnce: [] => [X]
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe [55420816 2022-06-08] (Google LLC -> Google, Inc.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe [55420816 2022-06-08] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-1280661116-970770358-385692439-1001\...\Run: [NordVPN] => C:\Program Files\NordVPN\NordVPN.exe [274176 2020-10-16] (TEFINCOM S.A. -> TEFINCOM S.A.)
HKU\S-1-5-21-1280661116-970770358-385692439-1001\...\Run: [uTorrent] => C:\Users\salhi1\AppData\Roaming\uTorrent\uTorrent.exe [2146776 2021-02-13] (BitTorrent Inc -> BitTorrent Inc.) <==== ATTENTION
HKU\S-1-5-21-1280661116-970770358-385692439-1001\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe [8442464 2021-02-13] (LAVASOFT SOFTWARE CANADA INC -> Lavasoft)
HKU\S-1-5-21-1280661116-970770358-385692439-1001\...\Run: [Windscribe] => C:\Program Files (x86)\Windscribe\Windscribe.exe [5670784 2022-06-05] (Windscribe Limited -> Windscribe Limited)
HKU\S-1-5-21-1280661116-970770358-385692439-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe [55420816 2022-06-08] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-1280661116-970770358-385692439-1001\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\salhi1\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe" (Pas de fichier)
HKU\S-1-5-21-1280661116-970770358-385692439-1001\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\salhi1\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe" (Pas de fichier)
HKU\S-1-5-21-1280661116-970770358-385692439-1001\...\RunOnce: [Uninstall 22.099.0508.0001] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\salhi1\AppData\Local\Microsoft\OneDrive\22.099.0508.0001" (Pas de fichier)
HKU\S-1-5-21-1280661116-970770358-385692439-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\ssText3d.scr [253952 2022-06-08] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe [55420816 2022-06-08] (Google LLC -> Google, Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\102.0.5005.115\Installer\chrmstp.exe [2022-06-14] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\eInstruction Device Manager.lnk [2021-12-07]
ShortcutTarget: eInstruction Device Manager.lnk -> C:\Program Files (x86)\eInstruction\Device Manager\Launch.exe (eInstruction -> eInstruction Corporation)
Startup: C:\Users\salhi1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Envoyer à OneNote.lnk [2020-12-26]
ShortcutTarget: Envoyer à OneNote.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\Users\salhi1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Winexe.exe [2022-05-08] () [Fichier non signé] [Fichier en cours d'utilisation]
Startup: C:\Users\salhi1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Winfiles [2022-06-09]
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Tâches planifiées (Avec liste blanche) ============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {0345BED2-D46D-4AC9-A2EA-38615E57178A} - System32\Tasks\AMDRyzenMasterSDKTask => C:\Program Files\AMD\CNext\CNext\cpumetricsserver.exe [329216 2022-04-28] (Advanced Micro Devices, Inc.) [Fichier non signé]
Task: {045FDAC2-8935-4F03-A5B6-E5B81DF89F9D} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115584 2022-05-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {0BCE6B53-4868-40B0-9144-DE8FFF103EBF} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1147440 2022-04-28] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {2B9197F1-D6E5-4076-B62D-B7B8762DA6D1} - System32\Tasks\Run RoboForm TaskBar Icon => C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe (Pas de fichier)
Task: {3791C60B-26EF-4FB6-ADE8-15B70BE53EFB} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-17] (Adobe Inc. -> Adobe Inc.)
Task: {37C6AB90-C1BA-485D-A3FC-B270725A0D66} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6470600 2022-05-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {403648BD-0EAC-4CB9-99A2-BD7DCE827AF6} - System32\Tasks\Go to RoboForm Install page => C:\WINDOWS\system32\rundll32.exe url.dll,FileProtocolHandler "hxxp://www.roboform.com/test-pass.html?aaa=KICMJMLJNMHMJJHMLMPMCNJMLMKMJMCNLMJJNJNJCNOJGMLJOJCNIMNJNMMMMJOMJJNJJMLJMJOJJNJICMJMCNOMPMCNOMFMGMCNOMOMCNNMNMPMPMPMFMJMCNNMCNGMNMPMPMCNNMJNPICMLMFMEKMICNJJCKFMPMJNHICMEKMICNJJCKJNBJCMMIOJDJHJGJOMJNKJCMJNNICMJNDJCMJJNI"
Task: {425DEBD1-6176-44AE-BE88-66E2C6A5DE2F} - System32\Tasks\Opera scheduled Autoupdate 1617648718 => C:\Users\salhi1\AppData\Local\Programs\Opera\launcher.exe --scheduledautoupdate $(Arg0) (Pas de fichier)
Task: {44A63636-5B61-4295-92CC-7687C2DA8AC3} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [261680 2022-05-23] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {47D49693-E22C-4CB5-BEC8-68EAD07704BD} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23244744 2022-05-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {4B5E2490-D45A-4B04-A97B-B17845284638} - System32\Tasks\Microsoft\Windows\Clip\LicenseImdsIntegration => C:\WINDOWS\system32\fclip.exe [480720 2022-06-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {5D59CEEC-997B-47A5-8896-F582DF445BDB} - System32\Tasks\UsbFix Monitor => C:\Program Files (x86)\UsbFix\Modules\UsbFixMonitor.exe [1235968 2021-10-06] () [Fichier non signé]
Task: {632B824B-84C2-4F41-A048-B17B3B7E415F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.5-0\MpCmdRun.exe [992992 2022-06-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {7954A871-15F8-4BFF-8DAE-FF588B278069} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [56368 2022-05-23] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {9735A770-92B2-4093-9765-7CE6D358B628} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.5-0\MpCmdRun.exe [992992 2022-06-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {BA44959C-00B9-4997-8B15-D72ED763DD66} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23244744 2022-05-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {C4795AD4-6E04-4EE7-B625-AE02D9ED4B7E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-12-26] (Google LLC -> Google LLC)
Task: {C524F265-1999-4DE5-921F-A435113B25D2} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.5-0\MpCmdRun.exe [992992 2022-06-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C7C2ED71-5555-4972-BEE1-C97A8F139A32} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-12-26] (Google LLC -> Google LLC)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\WINDOWS\System32\MbaeParserTask.exe (Pas de fichier)
Task: {CFE3D214-D83F-4BA9-9051-4E010158929B} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1147440 2022-04-28] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {DD172B4D-799F-415F-8111-24C29A60AB5F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.5-0\MpCmdRun.exe [992992 2022-06-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {EAE9D9EE-9A23-4F8D-BC66-964BD4FEE99F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6470600 2022-05-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {EF5EF9B8-FA77-483B-8ED7-D3FB3A6D79E1} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115584 2022-05-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {FD62DDCF-D573-44EE-94D8-AAC8753831AF} - System32\Tasks\Opera scheduled assistant Autoupdate 1617648728 => C:\Users\salhi1\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\salhi1\AppData\Local\Programs\Opera\assistant" $(Arg0)

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)


==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt
Tcpip\Parameters: [DhcpNameServer] 41.214.140.4 41.214.140.5 8.8.8.8
Tcpip\..\Interfaces\{50f15020-7812-44d3-9ccd-76b3a75e916d}: [DhcpNameServer] 41.214.140.4 41.214.140.5 8.8.8.8
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\salhi1\AppData\Local\Microsoft\Edge\User Data\Default [2022-05-29]
Edge Extension: (Outlook) - C:\Users\salhi1\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bjhmmnoficofgoiacjaajpkfndojknpb [2020-12-26]
Edge Extension: (Word) - C:\Users\salhi1\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hikhggiobiflkdfdgdajcfklmcibbopi [2020-12-26]
Edge Extension: (Excel) - C:\Users\salhi1\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\leffmjdabcgaflkikcefahmlgpodjkdm [2020-12-26]
Edge Extension: (PowerPoint) - C:\Users\salhi1\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\opfacbhaojodjaojgocnibmklknchehf [2020-12-26]

FireFox:
========
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2022-04-07] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-03-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-03-03] (Microsoft Corporation -> Microsoft Corporation)

Chrome:
=======
CHR DefaultProfile: Profile 3
CHR Profile: C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Default [2022-06-04]
CHR Notifications: Default -> hxxps://fr.softonic.com; hxxps://meet.google.com
CHR HomePage: Default -> hxxp://www.google.com
CHR StartupUrls: Default -> "hxxps://mail.google.com/mail/u/2/?tab=wm#inbox"
CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2022-06-04]
CHR Extension: (Adobe Acrobat : outils de modification, de conversion et de signature de PDF) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-05-03]
CHR Extension: (wanteeed) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Default\Extensions\emnoomldgleagdjapdeckpmebokijail [2022-05-03]
CHR Extension: (Google Docs hors connexion) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-05-03]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-09]
CHR Profile: C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-06-16]
CHR Profile: C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 1 [2022-06-15]
CHR StartupUrls: Profile 1 -> "hxxps://mail.google.com/mail/u/0/#inbox","hxxps://classroom.google.com/u/0/c/MjcyMDk0NjUxNjI3","hxxps://meet.google.com/nbn-cykb-onr?pli=1&authuser=0","hxxps://meet.google.com/?hs=197&pli=1&authuser=0","hxxps://www.youtube.com/","hxxps://myaccount.google.com/u/1/b/109338656225238506006/?utm_source=YouTubeWeb&tab=rk&utm_medium=act&tab=rk&hl=fr&nlr=1"
CHR Session Restore: Profile 1 -> est activé.
CHR Extension: (Slides) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-01-04]
CHR Extension: (Docs) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2021-01-04]
CHR Extension: (Google Drive) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-01-04]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Profile: C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 11 [2022-06-07]
CHR HomePage: Profile 11 -> hxxp://www.google.com
CHR Session Restore: Profile 11 -> est activé.
CHR Extension: (Safe Torrent Scanner) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 11\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2022-03-14]
CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 11\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2022-06-06]
CHR Extension: (Adobe Acrobat : outils de modification, de conversion et de signature de PDF) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 11\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-04-28]
CHR Extension: (Google Docs hors connexion) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 11\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-04-14]
CHR Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 11\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2022-05-24]
CHR Extension: (Windscribe - Free Proxy and Ad Blocker) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 11\Extensions\hnmpcagpplmpfojmgmnngilcnanddlhb [2022-03-16]
CHR Extension: (Instant Gaming) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 11\Extensions\lbnoedlobifdhbpjkcfhcbdcjhampmne [2022-01-22]
CHR Extension: (Lanceur d'applications pour Drive (par Google)) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 11\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2022-01-22]
CHR Extension: (Mode nuit) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 11\Extensions\mdnkjehfdplfnomhcbhinllojmfbncfk [2022-04-28]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 11\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-01-22]
CHR Extension: (React: Emoji, GIFs & Filters for Google Meet) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 11\Extensions\odlccijpiadmfoddfbikkicnbdeneabm [2022-04-14]
CHR Extension: (Mode sombre) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 11\Extensions\popkohipheagkijpjmllkbnifaokliim [2022-02-21]
CHR Profile: C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 3 [2022-06-16]
CHR Notifications: Profile 3 -> hxxps://calendar.google.com; hxxps://meet.google.com
CHR HomePage: Profile 3 -> hxxp://www.google.com
CHR StartupUrls: Profile 3 -> "hxxps://news.google.com/?hl=fr&gl=FR&ceid=FR%3Afr","hxxps://www.egaliteetreconciliation.fr/","hxxps://mail.yahoo.com/d/folders/1?.intl=fr&.lang=fr-FR&.partner=none&.src=fp","hxxps://mail.google.com/mail/u/1/#inbox","hxxps://3500055h.index-education.net/pronote/professeur.html"
CHR Extension: (uBlock Origin) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2022-04-10]
CHR Extension: (wanteeed) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\emnoomldgleagdjapdeckpmebokijail [2022-05-01]
CHR Extension: (Google Docs hors connexion) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-06-15]
CHR Extension: (Lanceur d'applications pour Drive (par Google)) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2021-01-23]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Profile: C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 41 [2022-06-16]
CHR Extension: (Safe Torrent Scanner) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 41\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2022-06-14]
CHR Extension: (Adobe Acrobat : outils de modification, de conversion et de signature de PDF) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 41\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-06-13]
CHR Extension: (Google Docs hors connexion) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 41\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-06-07]
CHR Extension: (Lanceur d'applications pour Drive (par Google)) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 41\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2022-06-07]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 41\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-06-07]
CHR Profile: C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 8 [2022-05-22]
CHR Extension: (Slides) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 8\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-08-10]
CHR Extension: (Safe Torrent Scanner) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 8\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2021-08-10]
CHR Extension: (Docs) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 8\Extensions\aohghmighlieiainnegkcijnfilokake [2021-08-10]
CHR Extension: (YouTube) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 8\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-08-10]
CHR Extension: (Adobe Acrobat) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 8\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2021-08-10]
CHR Extension: (Sheets) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 8\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-08-10]
CHR Extension: (Google Docs hors connexion) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 8\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-08-10]
CHR Extension: (Lanceur d'applications pour Drive (par Google)) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 8\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2021-08-10]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 8\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-10]
CHR Extension: (Gmail) - C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\Profile 8\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-08-10]
CHR Profile: C:\Users\salhi1\AppData\Local\Google\Chrome\User Data\System Profile [2022-06-16]
CHR HKU\S-1-5-21-1280661116-970770358-385692439-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\salhi1\AppData\Local\Google\Drive\user_default\apdfllckaahabafndbhieahigkjlhalf_live.crx <non trouvé(e)>
CHR HKU\S-1-5-21-1280661116-970770358-385692439-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]

==================== Services (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-17] (Adobe Inc. -> Adobe Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11988424 2022-05-28] (Microsoft Corporation -> Microsoft Corporation)
R2 DTSAPO3Service; C:\WINDOWS\System32\DTS\PC\APO3x\DTSAPO3Service.exe [222104 2020-08-22] (DTS, Inc. -> )
S2 GameInput Service; C:\Program Files (x86)\Microsoft GameInput\x64\gameinputsvc.exe [75240 2022-05-25] (Microsoft Corporation -> Microsoft Corporation)
R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [206472 2018-10-05] (Logitech Inc -> Logitech Inc.)
R2 nordvpn-service; C:\Program Files\NordVPN\nordvpn-service.exe [275200 2020-10-16] (TEFINCOM S.A. -> TEFINCOM S.A.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6207704 2022-06-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 TunnelBearMaintenance; C:\Program Files (x86)\TunnelBear\TunnelBear.Maintenance.exe [137376 2020-11-16] (TunnelBear Inc -> TunnelBear)
R2 WCAssistantService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe [29280 2021-02-13] (LAVASOFT SOFTWARE CANADA INC -> )
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.5-0\NisSrv.exe [3120968 2022-06-16] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.5-0\MsMpEng.exe [133536 2022-06-16] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WindscribeService; C:\Program Files (x86)\Windscribe\WindscribeService.exe [1337216 2022-06-05] (Windscribe Limited -> Windscribe Limited)

===================== Pilotes (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R3 amdfendrmgr; C:\WINDOWS\System32\drivers\amdfendrmgr.sys [33728 2021-12-13] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R2 AMDRyzenMasterDriverV19; C:\WINDOWS\system32\AMDRyzenMasterDriver.sys [43336 2022-04-26] (Advanced Micro Devices INC. -> Advanced Micro Devices)
R3 AMDSAFD; C:\WINDOWS\System32\DriverStore\FileRepository\amdsafd.inf_amd64_edd3335a4253bf6d\amdsafd.sys [109520 2021-11-05] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
R3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0379219.inf_amd64_3649648678001de4\B378972\amdkmdag.sys [90165704 2022-05-23] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [65168 2021-08-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [180224 2022-01-27] (Microsoft Corporation) [Fichier non signé]
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R1 googledrivefs3758; C:\WINDOWS\System32\DRIVERS\googledrivefs3758.sys [384584 2022-03-24] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
S3 Hsp; C:\WINDOWS\System32\drivers\Hsp.sys [111960 2022-06-08] (Microsoft Windows -> Microsoft Corporation)
R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech -> Logitech)
R3 LGJoyHidFilter; C:\WINDOWS\system32\drivers\LGJoyHidFilter.sys [57368 2018-10-05] (Logitech Inc -> Logitech Inc.)
R3 LGJoyHidLo; C:\WINDOWS\system32\drivers\LGJoyHidLo.sys [47256 2018-10-05] (Logitech Inc -> Logitech Inc.)
R3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [67736 2018-10-05] (Logitech Inc -> Logitech Inc.)
R3 MpKsl2a383889; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C5365B84-A19C-4082-8DB4-FF0A9C366E7F}\MpKslDrv.sys [141568 2022-06-16] (Microsoft Windows -> Microsoft Corporation)
R3 nlwt; C:\WINDOWS\System32\drivers\nlwt.sys [39360 2020-12-29] (TEFINCOM S.A. -> WireGuard LLC)
R1 nordlwf; C:\WINDOWS\system32\DRIVERS\nordlwf.sys [38608 2020-10-14] (TEFINCOM S.A. -> TEFINCOM S.A.)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167544 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 tap-tb-0901; C:\WINDOWS\System32\drivers\tap-tb-0901.sys [38656 2020-09-25] (TunnelBear, Inc. -> The OpenVPN Project)
S3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2014-11-05] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
R3 tapnordvpn; C:\WINDOWS\System32\drivers\tapnordvpn.sys [44896 2020-06-09] (TEFINCOM S.A. -> The OpenVPN Project)
R3 tapwindscribe0901; C:\WINDOWS\System32\drivers\tapwindscribe0901.sys [57768 2021-04-16] (Windscribe Limited -> The OpenVPN Project)
S3 WacHidRouterPro; C:\WINDOWS\System32\drivers\wachidrouter.sys [121120 2021-10-06] (WDKTestCert dant_ppxe9ny,132750999598161733 -> Wacom Technology, Corp.)
S3 wacomrouterfilter; C:\WINDOWS\System32\drivers\wacomrouterfilter.sys [20720 2021-10-06] (WDKTestCert dant_ppxe9ny,132750999598161733 -> Wacom Technology, Corp.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49600 2022-06-16] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [452856 2022-06-16] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [91384 2022-06-16] (Microsoft Windows -> Microsoft Corporation)
S3 WindscribeSplitTunnel; C:\WINDOWS\system32\DRIVERS\WindscribeSplitTunnel.sys [35752 2022-06-05] (Windscribe Limited -> )
R3 windtun420; C:\WINDOWS\System32\drivers\windtun420.sys [47544 2021-04-16] (Windscribe Limited -> WireGuard LLC)
S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X]

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois (créés) (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2022-06-16 20:05 - 2022-06-16 20:05 - 000034872 _____ C:\Users\salhi1\Desktop\FRST.txt
2022-06-16 20:01 - 2022-06-16 20:02 - 000055314 _____ C:\Users\salhi1\Downloads\Addition.txt
2022-06-16 19:59 - 2022-06-16 20:05 - 000000000 ____D C:\FRST
2022-06-16 19:59 - 2022-06-16 20:02 - 000074776 _____ C:\Users\salhi1\Downloads\FRST.txt
2022-06-16 19:56 - 2022-06-16 19:57 - 002368512 _____ (Farbar) C:\Users\salhi1\Desktop\FRST64.exe
2022-06-16 18:08 - 2022-06-16 18:35 - 000008326 _____ C:\Users\salhi1\Desktop\UsbFix_Report.txt
2022-06-16 18:08 - 2022-06-16 18:08 - 000003270 _____ C:\WINDOWS\system32\Tasks\UsbFix Monitor
2022-06-16 18:08 - 2022-06-16 18:08 - 000001956 _____ C:\Users\Public\Desktop\UsbFix Anti-Malware.lnk
2022-06-16 18:07 - 2022-06-16 18:08 - 000000000 ____D C:\Program Files (x86)\UsbFix
2022-06-16 18:07 - 2022-06-16 18:07 - 004860461 _____ (SOSVirus) C:\Users\salhi1\Downloads\UsbFix_Premium.exe
2022-06-14 23:08 - 2022-06-14 23:08 - 000557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2022-06-14 23:08 - 2022-06-14 23:08 - 000524288 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll
2022-06-14 23:08 - 2022-06-14 23:08 - 000485376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2022-06-14 23:08 - 2022-06-14 23:08 - 000057344 _____ C:\WINDOWS\system32\uwfservicingapi.dll
2022-06-14 23:07 - 2022-06-14 23:07 - 000614400 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2022-06-14 23:07 - 2022-06-14 23:07 - 000335872 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2022-06-14 23:07 - 2022-06-14 23:07 - 000299008 _____ C:\WINDOWS\system32\EsclScan.dll
2022-06-14 23:07 - 2022-06-14 23:07 - 000180224 _____ C:\WINDOWS\system32\EsclProtocol.dll
2022-06-14 23:07 - 2022-06-14 23:07 - 000167936 _____ C:\WINDOWS\system32\DeviceUpdateCenterCsp.dll
2022-06-14 23:07 - 2022-06-14 23:07 - 000015042 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-06-14 23:04 - 2022-06-14 23:04 - 000000000 ___HD C:\$WinREAgent
2022-06-14 20:55 - 2022-06-14 20:55 - 000350968 _____ C:\Users\salhi1\Downloads\184910222300003_Convocation_par_epreuve_V3_20220606.PDF
2022-06-14 13:48 - 2022-06-14 13:48 - 000351271 _____ C:\Users\salhi1\Downloads\204556312300002_Convocation_par_epreuve_V3_20220606.PDF
2022-06-14 13:46 - 2022-06-14 13:46 - 000065882 _____ C:\Users\salhi1\Downloads\WhatsApp Image 2022-06-13 at 19.30.38.jpeg
2022-06-11 20:16 - 2022-06-11 20:17 - 000000000 ____D C:\Program Files\Logitech Gaming Software
2022-06-11 20:16 - 2022-06-11 20:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2022-06-10 19:51 - 2022-06-10 19:53 - 034811328 _____ (2BrightSparks Pte Ltd ) C:\Users\salhi1\Downloads\SyncBack_Setup (1).exe
2022-06-10 18:33 - 2022-06-10 18:33 - 000034119 _____ C:\Users\salhi1\Downloads\recepisse-consulat-general-de-france-a-casablanca-mohamed-salhi.pdf
2022-06-09 17:56 - 2022-06-09 17:56 - 000091091 _____ C:\Users\salhi1\Downloads\GRAND ORAL (3).pdf
2022-06-09 14:04 - 2022-06-09 14:04 - 000000000 ____D C:\Program Files (x86)\Windows Kits
2022-06-09 14:04 - 2022-06-09 14:04 - 000000000 ____D C:\Program Files (x86)\Microsoft GameInput
2022-06-09 11:22 - 2022-06-12 10:22 - 000000000 ____D C:\Users\salhi1\Documents\PCR
2022-06-09 11:07 - 2022-06-15 22:50 - 000000000 ___HD C:\avast! sandbox
2022-06-09 11:07 - 2022-06-09 11:07 - 000000000 ____D C:\ProgramData\Oracle
2022-06-08 11:19 - 2022-06-08 11:19 - 000831488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Bubbles.scr
2022-06-08 11:19 - 2022-06-08 11:19 - 000774144 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll
2022-06-08 11:19 - 2022-06-08 11:19 - 000460800 _____ C:\WINDOWS\SysWOW64\SettingSyncDownloadHelper.dll
2022-06-08 11:19 - 2022-06-08 11:19 - 000442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2022-06-08 11:19 - 2022-06-08 11:19 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
2022-06-08 11:19 - 2022-06-08 11:19 - 000323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp
2022-06-08 11:19 - 2022-06-08 11:19 - 000254976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp
2022-06-08 11:19 - 2022-06-08 11:19 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssText3d.scr
2022-06-08 11:19 - 2022-06-08 11:19 - 000208896 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\WINDOWS\system32\l3codecp.acm
2022-06-08 11:19 - 2022-06-08 11:19 - 000196096 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\WINDOWS\SysWOW64\l3codecp.acm
2022-06-08 11:19 - 2022-06-08 11:19 - 000176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Ribbons.scr
2022-06-08 11:19 - 2022-06-08 11:19 - 000176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Mystify.scr
2022-06-08 11:19 - 2022-06-08 11:19 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\remotesp.tsp
2022-06-08 11:19 - 2022-06-08 11:19 - 000098304 _____ C:\WINDOWS\system32\sstpcfg.dll
2022-06-08 11:19 - 2022-06-08 11:19 - 000088064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remotesp.tsp
2022-06-08 11:19 - 2022-06-08 11:19 - 000079192 _____ C:\WINDOWS\system32\Drivers\NDKPerf.sys
2022-06-08 11:19 - 2022-06-08 11:19 - 000069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\kmddsp.tsp
2022-06-08 11:19 - 2022-06-08 11:19 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\hidphone.tsp
2022-06-08 11:19 - 2022-06-08 11:19 - 000051712 _____ C:\WINDOWS\SysWOW64\CredProvCommonCore.dll
2022-06-08 11:19 - 2022-06-08 11:19 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\more.com
2022-06-08 11:19 - 2022-06-08 11:19 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mode.com
2022-06-08 11:19 - 2022-06-08 11:19 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\format.com
2022-06-08 11:19 - 2022-06-08 11:19 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\tree.com
2022-06-08 11:19 - 2022-06-08 11:19 - 000039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kmddsp.tsp
2022-06-08 11:19 - 2022-06-08 11:19 - 000038760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msgsm32.acm
2022-06-08 11:19 - 2022-06-08 11:19 - 000034112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imaadp32.acm
2022-06-08 11:19 - 2022-06-08 11:19 - 000033568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msadp32.acm
2022-06-08 11:19 - 2022-06-08 11:19 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrnsave.scr
2022-06-08 11:19 - 2022-06-08 11:19 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hidphone.tsp
2022-06-08 11:19 - 2022-06-08 11:19 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mode.com
2022-06-08 11:19 - 2022-06-08 11:19 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\more.com
2022-06-08 11:19 - 2022-06-08 11:19 - 000019456 _____ C:\WINDOWS\SysWOW64\WsdProviderUtil.dll
2022-06-08 11:19 - 2022-06-08 11:19 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tree.com
2022-06-08 11:18 - 2022-06-08 11:18 - 002125824 _____ C:\WINDOWS\system32\dwmscene.dll
2022-06-08 11:18 - 2022-06-08 11:18 - 000643072 _____ C:\WINDOWS\system32\SettingSyncDownloadHelper.dll
2022-06-08 11:18 - 2022-06-08 11:18 - 000356352 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2022-06-08 11:18 - 2022-06-08 11:18 - 000335872 _____ C:\WINDOWS\system32\Windows.Internal.UI.Dialogs.dll
2022-06-08 11:18 - 2022-06-08 11:18 - 000294912 _____ C:\WINDOWS\system32\pnpdiag.dll
2022-06-08 11:18 - 2022-06-08 11:18 - 000286720 _____ C:\WINDOWS\system32\Microsoft.Bluetooth.Audio.dll
2022-06-08 11:18 - 2022-06-08 11:18 - 000208896 _____ C:\WINDOWS\system32\BthpanContextHandler.dll
2022-06-08 11:18 - 2022-06-08 11:18 - 000180224 _____ C:\WINDOWS\system32\CloudExperienceHostRedirection.dll
2022-06-08 11:18 - 2022-06-08 11:18 - 000086016 _____ C:\WINDOWS\system32\printticketvalidation.dll
2022-06-08 11:18 - 2022-06-08 11:18 - 000086016 _____ C:\WINDOWS\system32\CredProvCommonCore.dll
2022-06-08 11:18 - 2022-06-08 11:18 - 000077824 _____ C:\WINDOWS\system32\APMonUI.dll
2022-06-08 11:18 - 2022-06-08 11:18 - 000067528 _____ (Microsoft Corporation) C:\WINDOWS\system32\msgsm32.acm
2022-06-08 11:18 - 2022-06-08 11:18 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\format.com
2022-06-08 11:18 - 2022-06-08 11:18 - 000063392 _____ (Microsoft Corporation) C:\WINDOWS\system32\imaadp32.acm
2022-06-08 11:18 - 2022-06-08 11:18 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrnsave.scr
2022-06-08 11:18 - 2022-06-08 11:18 - 000059264 _____ (Microsoft Corporation) C:\WINDOWS\system32\msadp32.acm
2022-06-08 11:18 - 2022-06-08 11:18 - 000042752 _____ C:\WINDOWS\system32\wow64base.dll
2022-06-08 11:18 - 2022-06-08 11:18 - 000040960 _____ C:\WINDOWS\system32\WsdProviderUtil.dll
2022-06-08 10:42 - 2022-06-08 10:43 - 001471284 _____ C:\WINDOWS\Minidump\060822-8390-01.dmp
2022-06-07 13:58 - 2022-06-07 13:58 - 000269136 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2022-06-07 13:58 - 2022-06-07 13:58 - 000218608 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswb02fcf37ccab8131.tmp
2022-06-07 13:55 - 2022-06-07 13:56 - 001257324 _____ C:\WINDOWS\Minidump\060722-8343-01.dmp
2022-06-06 11:01 - 2022-06-06 11:01 - 002646644 _____ C:\WINDOWS\Minidump\060622-8250-01.dmp
2022-06-05 20:47 - 2022-06-14 10:49 - 000000822 _____ C:\WINDOWS\system32\Drivers\etc\hosts.tmp
2022-06-05 19:01 - 2022-06-05 19:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windscribe
2022-06-05 11:20 - 2022-06-05 11:21 - 002759868 _____ C:\WINDOWS\Minidump\060522-8906-01.dmp
2022-06-04 15:20 - 2022-06-04 15:20 - 002633564 _____ C:\WINDOWS\Minidump\060422-10625-01.dmp
2022-06-03 19:34 - 2022-06-03 19:34 - 000001542 _____ C:\Users\salhi1\Downloads\SVT (10).csv
2022-06-03 19:08 - 2022-06-03 19:08 - 000017308 _____ C:\Users\salhi1\Downloads\rib_022780000115002728696474.pdf
2022-06-03 19:04 - 2022-06-03 19:04 - 001860934 _____ C:\Users\salhi1\Downloads\B220MAR1002956-Baccalauréat général-Sciences de la vie et de la....pdf
2022-06-03 19:04 - 2022-06-03 19:04 - 000053099 _____ C:\Users\salhi1\Downloads\Bordereaux lot de correction (1).pdf
2022-06-03 18:48 - 2022-06-03 18:48 - 000002862 _____ C:\Users\salhi1\Downloads\Recapitulatif_de_l_etat_de_frais_00000_59343__saisi_par_intervenant_ (1).pdf
2022-06-03 17:26 - 2022-06-03 17:26 - 000606868 _____ C:\Users\salhi1\Downloads\fiche-renseignement-imag-in-15377.pdf
2022-06-03 17:24 - 2022-06-03 17:24 - 000002862 _____ C:\Users\salhi1\Downloads\Recapitulatif_de_l_etat_de_frais_00000_59343__saisi_par_intervenant_.pdf
2022-06-03 17:15 - 2022-06-03 17:15 - 000053096 _____ C:\Users\salhi1\Downloads\Bordereaux lot de correction.pdf
2022-06-02 14:13 - 2022-06-02 14:13 - 000092803 _____ C:\Users\salhi1\Downloads\rib_60632886.pdf
2022-06-02 13:59 - 2022-06-02 13:59 - 000067324 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20201204 (1).pdf
2022-06-02 13:56 - 2022-06-02 13:56 - 000067511 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20201105 (1).pdf
2022-06-02 13:53 - 2022-06-02 13:54 - 000820866 _____ C:\Users\salhi1\Downloads\0101622325534J.pdf
2022-06-02 13:51 - 2022-06-02 13:51 - 000067729 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20201005.pdf
2022-06-02 13:50 - 2022-06-02 13:50 - 000066945 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20200904.pdf
2022-06-02 13:44 - 2022-06-02 13:44 - 000068690 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20220505.pdf
2022-06-02 13:44 - 2022-06-02 13:44 - 000068625 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20220105.pdf
2022-06-02 13:44 - 2022-06-02 13:44 - 000067776 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20220304.pdf
2022-06-02 13:44 - 2022-06-02 13:44 - 000067464 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20220204.pdf
2022-06-02 13:44 - 2022-06-02 13:44 - 000067250 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20220405.pdf
2022-06-02 13:43 - 2022-06-02 13:43 - 000069615 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20211105.pdf
2022-06-02 13:43 - 2022-06-02 13:43 - 000068618 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20210903.pdf
2022-06-02 13:43 - 2022-06-02 13:43 - 000067651 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20210805 (1).pdf
2022-06-02 13:43 - 2022-06-02 13:43 - 000067626 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20211005.pdf
2022-06-02 13:43 - 2022-06-02 13:43 - 000067218 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20211203.pdf
2022-06-02 13:42 - 2022-06-02 13:42 - 000068349 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20210105.pdf
2022-06-02 13:42 - 2022-06-02 13:42 - 000067651 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20210805.pdf
2022-06-02 13:42 - 2022-06-02 13:42 - 000067505 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20201105.pdf
2022-06-02 13:42 - 2022-06-02 13:42 - 000067323 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20201204.pdf
2022-06-02 13:42 - 2022-06-02 13:42 - 000067289 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20210604.pdf
2022-06-02 13:42 - 2022-06-02 13:42 - 000067266 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20210705.pdf
2022-06-02 13:42 - 2022-06-02 13:42 - 000067146 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20210402.pdf
2022-06-02 13:42 - 2022-06-02 13:42 - 000066807 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20210205.pdf
2022-06-02 13:42 - 2022-06-02 13:42 - 000066351 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20210305.pdf
2022-06-02 13:42 - 2022-06-02 13:42 - 000066336 _____ C:\Users\salhi1\Downloads\COMPTEDEDEPOTS_01139026233_20210505.pdf
2022-05-30 20:12 - 2022-05-30 20:18 - 082702719 _____ C:\Users\salhi1\Downloads\SANTORIN-Demonstration ECE(27042022)(1).mp4
2022-05-30 19:54 - 2022-05-30 19:54 - 000091861 _____ C:\Users\salhi1\Downloads\rib_59438380 (1).pdf
2022-05-30 19:54 - 2022-05-30 19:54 - 000091621 _____ C:\Users\salhi1\Downloads\rib_60066553.pdf
2022-05-30 19:54 - 2022-05-30 19:54 - 000090503 _____ C:\Users\salhi1\Downloads\rib_58154089.pdf
2022-05-30 19:54 - 2022-05-30 19:54 - 000090186 _____ C:\Users\salhi1\Downloads\rib_58708730.pdf
2022-05-30 19:51 - 2022-05-30 19:51 - 000092978 _____ C:\Users\salhi1\Downloads\rib_57519466.pdf
2022-05-30 19:50 - 2022-05-30 19:50 - 000091855 _____ C:\Users\salhi1\Downloads\rib_56736413.pdf
2022-05-29 19:00 - 2022-05-29 19:00 - 000001450 _____ C:\Users\salhi1\Downloads\SVT (9).csv
2022-05-29 17:39 - 2022-06-15 11:52 - 000002514 _____ C:\WINDOWS\system32\Tasks\AMDInstallLauncher
2022-05-29 15:27 - 2022-05-29 15:27 - 000136743 _____ C:\Users\salhi1\Downloads\téléchargement.html
2022-05-29 13:43 - 2022-05-29 13:43 - 000000000 ____D C:\Users\salhi1\AppData\LocalLow\AMD
2022-05-29 13:29 - 2022-06-15 11:52 - 000002400 _____ C:\WINDOWS\system32\Tasks\AMDRyzenMasterSDKTask
2022-05-29 13:29 - 2022-05-29 13:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Software꞉ Adrenalin Edition
2022-05-29 13:29 - 2022-05-29 13:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Bug Report Tool
2022-05-28 20:44 - 2022-05-28 20:44 - 000263510 _____ C:\Users\salhi1\Downloads\LSVT-08-Enzyme_Agent_de_Catalyse.pdf
2022-05-27 16:54 - 2022-05-27 16:54 - 000000000 ____D C:\Users\Public\Logi
2022-05-23 08:43 - 2022-05-23 08:43 - 090032608 _____ C:\WINDOWS\system32\amd_comgr.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 074254832 _____ C:\WINDOWS\SysWOW64\amd_comgr32.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 069204424 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdhip64.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 056774272 _____ C:\WINDOWS\system32\amdxc64.so
2022-05-23 08:43 - 2022-05-23 08:43 - 003471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap
2022-05-23 08:43 - 2022-05-23 08:43 - 003437632 _____ C:\WINDOWS\system32\atiumd6a.cap
2022-05-23 08:43 - 2022-05-23 08:43 - 001973728 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2022-05-23 08:43 - 2022-05-23 08:43 - 001973728 _____ C:\WINDOWS\system32\vulkaninfo.exe
2022-05-23 08:43 - 2022-05-23 08:43 - 001716424 _____ (AMD) C:\WINDOWS\system32\amf-mft-mjpeg-decoder64.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 001539040 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiacm64.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 001530336 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2022-05-23 08:43 - 2022-05-23 08:43 - 001530336 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2022-05-23 08:43 - 2022-05-23 08:43 - 001444352 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 001444352 _____ C:\WINDOWS\system32\vulkan-1.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 001416664 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 001416664 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 001391912 _____ (AMD) C:\WINDOWS\SysWOW64\amf-mft-mjpeg-decoder32.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 001155952 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 001155952 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000941512 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000893400 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2022-05-23 08:43 - 2022-05-23 08:43 - 000799736 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Rapidfire64.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000768976 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000676832 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\Rapidfire.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000571400 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb
2022-05-23 08:43 - 2022-05-23 08:43 - 000571400 _____ C:\WINDOWS\system32\atiapfxx.blb
2022-05-23 08:43 - 2022-05-23 08:43 - 000561112 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000560608 _____ C:\WINDOWS\system32\GameManager64.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000553032 _____ C:\WINDOWS\system32\amdmiracast.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000528352 _____ C:\WINDOWS\system32\atieah64.exe
2022-05-23 08:43 - 2022-05-23 08:43 - 000503264 _____ C:\WINDOWS\system32\dgtrayicon.exe
2022-05-23 08:43 - 2022-05-23 08:43 - 000495072 _____ C:\WINDOWS\system32\EEURestart.exe
2022-05-23 08:43 - 2022-05-23 08:43 - 000471520 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000469472 _____ C:\WINDOWS\system32\amdlogum.exe
2022-05-23 08:43 - 2022-05-23 08:43 - 000424440 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000421856 _____ C:\WINDOWS\SysWOW64\GameManager32.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000396248 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2022-05-23 08:43 - 2022-05-23 08:43 - 000347104 _____ C:\WINDOWS\system32\clinfo.exe
2022-05-23 08:43 - 2022-05-23 08:43 - 000263648 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000222688 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000205688 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000197088 _____ C:\WINDOWS\system32\mantle64.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000181232 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000180192 _____ C:\WINDOWS\system32\mantleaxl64.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000170120 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000169456 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000163160 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000158176 _____ C:\WINDOWS\SysWOW64\mantle32.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000152736 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000152736 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000143856 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000143840 _____ C:\WINDOWS\SysWOW64\mantleaxl32.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000142320 _____ C:\WINDOWS\system32\atidxx64.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000137928 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000136136 _____ C:\WINDOWS\system32\amdxc64.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000123824 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000123792 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000116184 _____ C:\WINDOWS\SysWOW64\atidxx32.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000111072 _____ C:\WINDOWS\SysWOW64\amdxc32.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000093664 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mcl64.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000078304 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mcl32.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000073176 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ati2erec.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000049632 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\RapidFireServer64.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000046560 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\RapidFireServer.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000031120 _____ (Microsoft Corporation) C:\WINDOWS\system32\detoured.dll
2022-05-23 08:43 - 2022-05-23 08:43 - 000031104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\detoured.dll
2022-05-22 17:14 - 2022-05-22 17:14 - 000000000 ____D C:\Users\salhi1\AppData\Roaming\Tectoglob3D
2022-05-22 17:10 - 2022-05-22 17:10 - 000000000 ____D C:\Users\salhi1\AppData\Roaming\libmol
2022-05-22 17:00 - 2022-05-22 17:01 - 000000000 ____D C:\Users\salhi1\AppData\Roaming\Mesurim2
2022-05-22 17:00 - 2022-05-22 17:00 - 000000000 ____D C:\Users\salhi1\AppData\Roaming\Geniegen2
2022-05-22 16:58 - 2022-05-22 16:58 - 000000000 ____D C:\Users\salhi1\AppData\Roaming\EduAnat2
2022-05-21 16:41 - 2022-05-21 16:41 - 000653405 _____ C:\Users\salhi1\Downloads\22SVTJ1ME1_11 mai (1).pdf
2022-05-21 16:41 - 2022-05-21 16:41 - 000340639 _____ C:\Users\salhi1\Downloads\22SVTJ2ME1_12 mai (2).pdf
2022-05-21 16:41 - 2022-05-21 16:41 - 000275012 _____ C:\Users\salhi1\Downloads\22SVTJ1ME1 (1).pdf
2022-05-21 16:41 - 2022-05-21 16:41 - 000273351 _____ C:\Users\salhi1\Downloads\22SVTJ2ME1 (3).pdf
2022-05-21 14:07 - 2022-05-21 14:07 - 000407765 _____ C:\Users\salhi1\Desktop\exercice biodiversité ES Tale.pdf
2022-05-20 18:51 - 2022-05-20 18:51 - 000340639 _____ C:\Users\salhi1\Downloads\22SVTJ2ME1_12 mai (1).pdf
2022-05-20 18:50 - 2022-05-20 18:50 - 000273351 _____ C:\Users\salhi1\Downloads\22SVTJ2ME1 (2).pdf
2022-05-20 18:45 - 2022-05-20 18:45 - 000242110 _____ C:\Users\salhi1\Downloads\EDS SVT mai 2022 recommandations de la commissaion d'entente (1).pdf
2022-05-19 16:54 - 2022-05-19 16:54 - 000000940 _____ C:\Users\salhi1\Downloads\ENSEIGNEMENT SCIENTIFIQUE (2).csv
2022-05-18 19:17 - 2022-05-18 19:17 - 000340639 _____ C:\Users\salhi1\Downloads\22SVTJ2ME1_12 mai.pdf
2022-05-18 19:16 - 2022-05-18 19:16 - 000653405 _____ C:\Users\salhi1\Downloads\22SVTJ1ME1_11 mai.pdf
2022-05-18 19:16 - 2022-05-18 19:16 - 000275012 _____ C:\Users\salhi1\Downloads\22SVTJ1ME1.pdf
2022-05-18 19:16 - 2022-05-18 19:16 - 000273351 _____ C:\Users\salhi1\Downloads\22SVTJ2ME1.pdf
2022-05-18 19:16 - 2022-05-18 19:16 - 000273351 _____ C:\Users\salhi1\Downloads\22SVTJ2ME1 (1).pdf
2022-05-18 19:16 - 2022-05-18 19:16 - 000242110 _____ C:\Users\salhi1\Downloads\EDS SVT mai 2022 recommandations de la commissaion d'entente.pdf
2022-05-18 19:08 - 2022-05-18 19:08 - 000275012 _____ C:\Users\salhi1\Downloads\22SVTJ1ME1 corrigé.pdf

==================== Un mois (modifiés) ==================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2022-06-16 19:58 - 2021-06-05 13:10 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-06-16 19:43 - 2020-12-26 17:31 - 000000000 ____D C:\Program Files (x86)\Google
2022-06-16 19:40 - 2020-12-26 19:26 - 000000000 ____D C:\Users\salhi1\AppData\Local\D3DSCache
2022-06-16 19:39 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SystemTemp
2022-06-16 19:34 - 2021-06-05 13:01 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-06-16 18:47 - 2021-06-05 13:01 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2022-06-16 18:47 - 2020-12-26 17:52 - 000000000 ____D C:\ProgramData\Avast Software
2022-06-16 18:06 - 2021-06-05 13:10 - 000000000 ____D C:\Program Files\Windows Defender
2022-06-16 18:06 - 2020-11-19 00:44 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2022-06-16 17:56 - 2020-12-26 17:29 - 000803176 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2022-06-16 17:29 - 2022-01-27 21:00 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-06-16 16:14 - 2022-01-27 21:04 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1280661116-970770358-385692439-1001
2022-06-16 16:14 - 2022-01-27 21:04 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1280661116-970770358-385692439-1001
2022-06-16 16:14 - 2020-12-27 00:18 - 000002420 _____ C:\Users\salhi1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-06-16 13:57 - 2020-12-26 17:41 - 000000000 ___RD C:\Users\salhi1\Google Drive
2022-06-16 10:33 - 2022-01-28 15:49 - 000003596 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d813b8ad9c887a
2022-06-16 10:33 - 2022-01-27 21:04 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-06-16 10:04 - 2022-01-27 21:08 - 001800200 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-06-16 10:04 - 2021-06-05 19:15 - 000806506 _____ C:\WINDOWS\system32\perfh00C.dat
2022-06-16 10:04 - 2021-06-05 19:15 - 000156164 _____ C:\WINDOWS\system32\perfc00C.dat
2022-06-16 10:04 - 2021-06-05 13:09 - 000000000 ____D C:\WINDOWS\INF
2022-06-16 09:58 - 2021-06-05 13:10 - 000000000 ___HD C:\Program Files\WindowsApps
2022-06-16 09:58 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-06-16 09:58 - 2021-05-22 11:55 - 000000000 ____D C:\Users\salhi1\AppData\Roaming\WTablet
2022-06-16 09:57 - 2022-01-27 21:04 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-06-16 09:57 - 2020-12-27 00:14 - 000012288 ___SH C:\DumpStack.log.tmp
2022-06-15 22:51 - 2022-01-27 21:00 - 000473184 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-06-15 22:51 - 2021-06-05 13:01 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2022-06-15 22:50 - 2021-06-05 19:23 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2022-06-15 22:50 - 2021-06-05 19:23 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2022-06-15 22:50 - 2021-06-05 19:23 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ___SD C:\WINDOWS\system32\F12
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SystemResources
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\vi-VN
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\oobe
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\id-ID
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\gl-ES
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\eu-ES
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\et-EE
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\es-MX
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\Dism
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\DDFs
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\ca-ES
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\appraiser
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\ShellExperiences
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\ShellComponents
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2022-06-15 22:50 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-06-15 22:49 - 2022-01-15 21:56 - 000000000 ____D C:\Users\salhi1\AppData\Roaming\discord
2022-06-15 21:52 - 2022-01-15 21:56 - 000000000 ____D C:\Users\salhi1\AppData\Local\Discord
2022-06-15 11:52 - 2022-04-02 15:21 - 000003398 _____ C:\WINDOWS\system32\Tasks\Go to RoboForm Install page
2022-06-15 11:52 - 2022-04-02 15:21 - 000002882 _____ C:\WINDOWS\system32\Tasks\Run RoboForm TaskBar Icon
2022-06-15 11:52 - 2022-03-20 13:08 - 000002416 _____ C:\WINDOWS\system32\Tasks\AMDLinkUpdate
2022-06-15 11:52 - 2022-01-27 21:04 - 000003862 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1617648728
2022-06-15 11:52 - 2022-01-27 21:04 - 000003632 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1617648718
2022-06-15 11:52 - 2022-01-27 21:04 - 000003518 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2022-06-15 11:52 - 2022-01-27 21:04 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2022-06-15 11:52 - 2022-01-27 21:04 - 000003338 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-06-15 11:52 - 2022-01-27 21:04 - 000003294 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2022-06-15 11:52 - 2022-01-27 21:04 - 000002850 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1280661116-970770358-385692439-500
2022-06-15 11:52 - 2022-01-27 21:04 - 000002202 _____ C:\WINDOWS\system32\Tasks\StartCN
2022-06-15 11:52 - 2022-01-27 21:04 - 000002122 _____ C:\WINDOWS\system32\Tasks\StartDVR
2022-06-15 11:51 - 2022-01-15 21:56 - 000002232 _____ C:\Users\salhi1\Desktop\Discord.lnk
2022-06-15 11:38 - 2020-11-19 00:47 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-06-15 11:38 - 2020-11-19 00:47 - 000002280 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-06-14 23:07 - 2022-01-27 21:02 - 003101184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2022-06-14 22:56 - 2020-12-29 13:06 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-06-14 22:53 - 2020-12-29 13:06 - 145918784 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-06-14 21:44 - 2020-12-26 17:31 - 000002245 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-06-14 21:44 - 2020-12-26 17:31 - 000002204 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2022-06-14 17:58 - 2020-12-29 21:31 - 000000000 ____D C:\Users\salhi1\AppData\Local\FlightSimulator
2022-06-13 15:46 - 2021-09-22 11:05 - 000002057 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk
2022-06-13 15:46 - 2021-09-22 11:05 - 000001899 _____ C:\Users\Default\Desktop\Google Slides.lnk
2022-06-13 15:46 - 2021-09-22 11:05 - 000001899 _____ C:\Users\Default\Desktop\Google Sheets.lnk
2022-06-13 15:46 - 2021-09-22 11:05 - 000001887 _____ C:\Users\Default\Desktop\Google Docs.lnk
2022-06-13 15:46 - 2020-12-26 17:41 - 000001863 _____ C:\Users\salhi1\Desktop\Google Drive.lnk
2022-06-12 18:51 - 2020-12-26 19:18 - 000000000 ____D C:\Users\salhi1\AppData\Local\AMD_Common
2022-06-11 19:03 - 2020-12-26 19:20 - 000000000 ____D C:\Users\salhi1\AppData\Local\CrashDumps
2022-06-10 19:53 - 2021-01-02 14:17 - 000001407 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SyncBackFree.lnk
2022-06-09 14:04 - 2020-12-26 18:46 - 002762208 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2022-06-09 14:04 - 2020-12-26 18:46 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2022-06-09 14:03 - 2021-11-21 12:08 - 000136672 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2022-06-09 14:03 - 2020-12-26 18:46 - 000402920 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2022-06-09 14:03 - 2020-12-26 18:46 - 000230864 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy.dll
2022-06-09 14:03 - 2020-12-26 18:46 - 000198112 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2022-06-09 14:03 - 2020-12-26 18:46 - 000062928 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamemodcontrol.exe
2022-06-08 20:55 - 2022-01-27 19:15 - 000000000 ____D C:\Users\salhi1
2022-06-08 18:15 - 2021-06-05 13:10 - 000000000 ___SD C:\WINDOWS\system32\UNP
2022-06-08 18:15 - 2021-06-05 13:10 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2022-06-08 18:15 - 2021-06-05 13:10 - 000000000 ___RD C:\WINDOWS\PrintDialog
2022-06-08 18:15 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2022-06-08 18:15 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2022-06-08 18:15 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2022-06-08 18:15 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2022-06-08 18:15 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2022-06-08 18:15 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\setup
2022-06-08 18:15 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\Com
2022-06-08 18:15 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\IME
2022-06-08 18:15 - 2021-06-05 13:10 - 000000000 ____D C:\Program Files\Common Files\System
2022-06-08 18:15 - 2021-06-05 13:01 - 000000000 ____D C:\WINDOWS\servicing
2022-06-08 11:21 - 2021-06-05 13:08 - 000245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2022-06-08 11:21 - 2021-06-05 13:08 - 000207360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2022-06-08 11:21 - 2021-06-05 13:08 - 000114688 _____ (Khronos Group) C:\WINDOWS\system32\opencl.dll
2022-06-08 11:21 - 2021-06-05 13:08 - 000078336 _____ (Khronos Group) C:\WINDOWS\SysWOW64\opencl.dll
2022-06-08 10:43 - 2022-03-09 16:53 - 000000000 ____D C:\WINDOWS\Minidump
2022-06-08 10:42 - 2021-11-16 10:19 - 1488621004 _____ C:\WINDOWS\MEMORY.DMP
2022-06-07 13:58 - 2021-06-05 13:10 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2022-06-07 13:58 - 2020-12-26 17:54 - 000857488 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswe9224a7175524baf.tmp
2022-06-07 13:58 - 2020-12-26 17:54 - 000662160 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw766934fdc2105749.tmp
2022-06-07 13:58 - 2020-12-26 17:54 - 000548968 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw394e5a5e940d5a5d.tmp
2022-06-07 13:58 - 2020-12-26 17:54 - 000382608 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw6fe9a11cf357a761.tmp
2022-06-07 13:58 - 2020-12-26 17:54 - 000321928 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw414b0be2b9e580c2.tmp
2022-06-07 13:58 - 2020-12-26 17:54 - 000271600 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw8c41b817ea3254c6.tmp
2022-06-07 13:58 - 2020-12-26 17:54 - 000255136 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw2781acaa61040f15.tmp
2022-06-07 13:58 - 2020-12-26 17:54 - 000232648 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw908f205db57613d6.tmp
2022-06-07 13:58 - 2020-12-26 17:54 - 000111056 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw40c2869a3ab44eac.tmp
2022-06-07 13:58 - 2020-12-26 17:54 - 000102048 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw2b8ed241bf73b553.tmp
2022-06-07 13:58 - 2020-12-26 17:54 - 000086120 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw57e7ebe841819517.tmp
2022-06-07 13:58 - 2020-12-26 17:54 - 000045072 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswe9ade78d0ce4c3fa.tmp
2022-06-07 13:58 - 2020-12-26 17:54 - 000038912 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw1e06d79be20dcf3e.tmp
2022-06-06 11:01 - 2021-04-16 18:17 - 000000000 ____D C:\Program Files (x86)\Windscribe
2022-06-05 19:01 - 2021-04-16 18:17 - 000035752 _____ C:\WINDOWS\system32\Drivers\WindscribeSplitTunnel.sys
2022-06-05 19:01 - 2021-04-16 18:17 - 000001140 _____ C:\Users\Public\Desktop\Windscribe.lnk
2022-06-03 17:48 - 2020-12-27 00:20 - 000000000 ____D C:\Users\salhi1\AppData\Local\Packages
2022-06-02 13:22 - 2020-11-19 00:48 - 000000000 ____D C:\ProgramData\Packages
2022-06-01 16:32 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth
2022-05-29 17:46 - 2020-12-26 19:26 - 000000000 ____D C:\Users\salhi1\AppData\Local\AMD
2022-05-29 13:29 - 2020-12-26 19:18 - 000000000 ____D C:\Program Files\AMD
2022-05-29 10:10 - 2020-12-26 19:53 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2022-05-25 18:36 - 2022-05-14 10:33 - 000000000 ____D C:\XboxGames
2022-05-25 04:29 - 2020-12-26 18:46 - 000243176 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInputRedist.dll
2022-05-25 02:52 - 2020-12-26 18:46 - 000140248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GameInputRedist.dll
2022-05-23 08:43 - 2022-03-20 13:04 - 000180432 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdihk32.dll
2022-05-23 08:43 - 2021-10-31 16:06 - 001884120 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2022-05-23 08:43 - 2021-10-31 16:06 - 000213928 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdihk64.dll
2022-05-23 08:43 - 2020-12-26 19:18 - 000000000 ____D C:\AMD

==================== Fichiers à la racine de certains dossiers ========

2021-12-07 12:00 - 2021-12-07 12:00 - 000000411 _____ () C:\Program Files (x86)\Common Files\eInstruction.ini

==================== SigCheck ============================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

==================== Fin de FRST.txt ========================