Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 29-08-2020
Exécuté par nslimi (ATTENTION: L'utilisateur n'est pas administrateur) sur NOURISLIMI (Dell Inc. OptiPlex 3060) (02-09-2020 13:33:17)
Exécuté depuis C:\Users\nslimi\Downloads
Profils chargés: nslimi
Platform: Windows 10 Pro Version 1909 18363.1016 (X64) Langue: Français (France)
Navigateur par défaut: Chrome
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_f3a64c75ee4defb7\igfxEM.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\nslimi\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2005.23.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12008.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe
(SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
(Sophos Ltd -> Sophos Limited) C:\Program Files\Sophos\Sophos UI\SavApi.exe
(Sophos Ltd -> Sophos Limited) C:\Program Files\Sophos\Sophos UI\Sophos UI.exe
(Sophos Ltd -> SurfRight B.V.) C:\Program Files (x86)\HitmanPro.Alert\hmpalert.exe
(Waves Inc -> Waves Audio Ltd.) C:\Windows\System32\DriverStore\FileRepository\wavesapo75de.inf_amd64_c1bcca647735e1d9\WavesSvc64.exe
Impossible d'accéder au processus -> ALsvc.exe
Impossible d'accéder au processus -> armsvc.exe
Impossible d'accéder au processus -> conhost.exe
Impossible d'accéder au processus -> conhost.exe
Impossible d'accéder au processus -> csrss.exe
Impossible d'accéder au processus -> csrss.exe
Impossible d'accéder au processus -> DDVCollectorSvcApi.exe
Impossible d'accéder au processus -> DDVDataCollector.exe
Impossible d'accéder au processus -> DDVRulesProcessor.exe
Impossible d'accéder au processus -> Dell.D3.WinSvc.exe
Impossible d'accéder au processus -> dllhost.exe
Impossible d'accéder au processus -> DSAPI.exe
Impossible d'accéder au processus -> dwm.exe
Impossible d'accéder au processus -> fodhelper.exe
Impossible d'accéder au processus -> fontdrvhost.exe
Impossible d'accéder au processus -> fontdrvhost.exe
Impossible d'accéder au processus -> GoogleCrashHandler.exe
Impossible d'accéder au processus -> GoogleCrashHandler64.exe
Impossible d'accéder au processus -> gpupdate.exe
Impossible d'accéder au processus -> hmpalert.exe
Impossible d'accéder au processus -> IAStorDataMgrSvc.exe
Impossible d'accéder au processus -> igfxCUIService.exe
Impossible d'accéder au processus -> IntelCpHDCPSvc.exe
Impossible d'accéder au processus -> IntelCpHeciSvc.exe
Impossible d'accéder au processus -> lsass.exe
Impossible d'accéder au processus -> McsAgent.exe
Impossible d'accéder au processus -> McsClient.exe
Impossible d'accéder au processus -> msdtc.exe
Impossible d'accéder au processus -> nvapiw.exe
Impossible d'accéder au processus -> NVDisplay.Container.exe
Impossible d'accéder au processus -> NVDisplay.Container.exe
Impossible d'accéder au processus -> NvTelemetryContainer.exe
Impossible d'accéder au processus -> RstMwService.exe
Impossible d'accéder au processus -> RtkAudUService64.exe
Impossible d'accéder au processus -> RtkAudUService64.exe
Impossible d'accéder au processus -> SAVAdminService.exe
Impossible d'accéder au processus -> SavService.exe
Impossible d'accéder au processus -> sdcservice.exe
Impossible d'accéder au processus -> SearchFilterHost.exe
Impossible d'accéder au processus -> SearchIndexer.exe
Impossible d'accéder au processus -> SearchProtocolHost.exe
Impossible d'accéder au processus -> SecurityHealthService.exe
Impossible d'accéder au processus -> SEDService.exe
Impossible d'accéder au processus -> services.exe
Impossible d'accéder au processus -> ServiceShell.exe
Impossible d'accéder au processus -> SgrmBroker.exe
Impossible d'accéder au processus -> smss.exe
Impossible d'accéder au processus -> SophosCleanM.exe
Impossible d'accéder au processus -> SophosFileScanner.exe
Impossible d'accéder au processus -> SophosFileScanner.exe
Impossible d'accéder au processus -> SophosFS.exe
Impossible d'accéder au processus -> SophosHealth.exe
Impossible d'accéder au processus -> SophosNtpService.exe
Impossible d'accéder au processus -> SophosSafestore64.exe
Impossible d'accéder au processus -> spoolsv.exe
Impossible d'accéder au processus -> SSPService.exe
Impossible d'accéder au processus -> SupportAssistAgent.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> svchost.exe
Impossible d'accéder au processus -> swc_service.exe
Impossible d'accéder au processus -> swi_fc.exe
Impossible d'accéder au processus -> swi_filter.exe
Impossible d'accéder au processus -> swi_service.exe
Impossible d'accéder au processus -> TiWorker.exe
Impossible d'accéder au processus -> TrustedInstaller.exe
Impossible d'accéder au processus -> uhssvc.exe
Impossible d'accéder au processus -> unsecapp.exe
Impossible d'accéder au processus -> WavesSysSvc64.exe
Impossible d'accéder au processus -> wininit.exe
Impossible d'accéder au processus -> winlogon.exe
Impossible d'accéder au processus -> wlanext.exe
Impossible d'accéder au processus -> WmiPrvSE.exe
Impossible d'accéder au processus -> WmiPrvSE.exe

==================== Registre (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [319520 2018-10-27] (Intel(R) Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [878584 2019-05-24] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [WavesSvc] => C:\WINDOWS\System32\DriverStore\FileRepository\wavesapo75de.inf_amd64_c1bcca647735e1d9\WavesSvc64.exe [1222928 2018-04-01] (Waves Inc -> Waves Audio Ltd.)
HKLM\...\Run: [Sophos UI.exe] => C:\Program Files\Sophos\Sophos UI\Sophos UI.exe [1464888 2020-04-30] (Sophos Ltd -> Sophos Limited)
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1057408 2012-06-08] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
HKLM Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot% <==== ATTENTION
HKLM Group Policy restriction on software: C:\Program Files <==== ATTENTION
HKLM Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot%*.exe <==== ATTENTION
HKLM Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot%System32\*.exe <==== ATTENTION
HKLM Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir% <==== ATTENTION
HKU\S-1-5-21-2957262546-646510330-678441508-1570 Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot% <==== ATTENTION
HKU\S-1-5-21-2957262546-646510330-678441508-1570 Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot%*.exe <==== ATTENTION
HKU\S-1-5-21-2957262546-646510330-678441508-1570 Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot%System32\*.exe <==== ATTENTION
HKU\S-1-5-21-2957262546-646510330-678441508-1570 Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir% <==== ATTENTION
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\84.0.4147.135\Installer\chrmstp.exe [2020-08-21] (Google LLC -> Google LLC)
AppInit_DLLs: C:\WINDOWS\system32\SophosAV\SOPHOS~1.DLL => C:\WINDOWS\system32\SophosAV\SOPHOS~1.DLL [241624 2020-06-10] (Sophos Ltd -> Sophos Limited)
AppInit_DLLs-x32: C:\WINDOWS\SysWOW64\SophosAV\SOPHOS~1.DLL => C:\WINDOWS\SysWOW64\SophosAV\SOPHOS~1.DLL [245792 2020-06-10] (Sophos Ltd -> Sophos Limited)

==================== Tâches planifiées (Avec liste blanche) ============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)

Task: C:\WINDOWS\Tasks\Sophos Cloud Scheduled Scan.job =>

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.11 192.168.0.12
Tcpip\..\Interfaces\{f4736169-caf4-4f2e-8f00-ba3b10bf75cb}: [DhcpNameServer] 192.168.0.11 192.168.0.12

Internet Explorer:
==================
HKU\S-1-5-21-2957262546-646510330-678441508-1570\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://dell17win10.msn.com/?pc=DCTE
HKU\S-1-5-21-2957262546-646510330-678441508-1570\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dell17win10.msn.com/?pc=DCTE
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office16\OCHelper.dll [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office16\OCHelper.dll [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)

FireFox:
========
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-08-17] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR Profile: C:\Users\nslimi\AppData\Local\Google\Chrome\User Data\Default [2020-09-02]
CHR Extension: (Slides) - C:\Users\nslimi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-03-05]
CHR Extension: (Docs) - C:\Users\nslimi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-03-05]
CHR Extension: (Google Drive) - C:\Users\nslimi\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-03-05]
CHR Extension: (YouTube) - C:\Users\nslimi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-03-05]
CHR Extension: (Sheets) - C:\Users\nslimi\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-03-05]
CHR Extension: (Google Docs hors connexion) - C:\Users\nslimi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-08-17]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\nslimi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-03-05]
CHR Extension: (Gmail) - C:\Users\nslimi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-03-05]
CHR Extension: (Chrome Media Router) - C:\Users\nslimi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-07-16]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]

==================== Services (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [248376 2020-01-22] (Dell Technologies Inc. -> Dell Technologies Inc.)
R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [3359288 2020-01-22] (Dell Technologies Inc. -> Dell Technologies Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [271416 2020-01-22] (Dell Technologies Inc. -> Dell Technologies Inc.)
R2 Dell Digital Delivery Services; C:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.WinSvc.exe [40656 2020-04-09] (Dell Inc -> )
R2 Dell Hardware Support; C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.7106.1428\DSAPI.exe [965104 2020-05-11] (PC-Doctor, Inc. -> PC-Doctor, Inc.)
R2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [36544 2020-04-17] (Dell Inc -> )
R2 hmpalertsvc; C:\Program Files (x86)\HitmanPro.Alert\hmpalert.exe [4987984 2020-03-23] (Sophos Ltd -> SurfRight B.V.)
R3 lmhosts; C:\WINDOWS\System32\svchost.exe [53744 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 lmhosts; C:\WINDOWS\SysWOW64\svchost.exe [45448 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NlaSvc; C:\WINDOWS\System32\svchost.exe [53744 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NlaSvc; C:\WINDOWS\SysWOW64\svchost.exe [45448 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 nsi; C:\WINDOWS\system32\svchost.exe [53744 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 nsi; C:\WINDOWS\SysWOW64\svchost.exe [45448 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SAVAdminService; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe [291912 2020-06-10] (Sophos Ltd -> Sophos Limited)
R2 SAVService; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe [217064 2020-06-10] (Sophos Ltd -> Sophos Limited)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6149984 2020-08-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SntpService; C:\Program Files\Sophos\Sophos Network Threat Protection\SophosNtpService.exe [4891416 2020-04-16] (Sophos Ltd -> Sophos Limited)
R2 Sophos AutoUpdate Service; C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe [782088 2020-04-29] (Sophos Ltd -> Sophos Limited)
R2 Sophos Clean Service; C:\Program Files (x86)\Sophos\Clean\SophosCleanM.exe [1217880 2020-03-02] (Sophos Ltd -> Sophos Limited)
R3 Sophos Device Control Service; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\sdcservice.exe [561040 2020-06-10] (Sophos Ltd -> Sophos Limited)
R2 Sophos Endpoint Defense Service; C:\Program Files\Sophos\Endpoint Defense\SEDService.exe [3547968 2020-07-06] (Sophos Ltd -> Sophos Limited)
R2 Sophos File Scanner Service; C:\Program Files\Sophos\Sophos File Scanner\SophosFS.exe [1769160 2020-04-21] (Sophos Ltd -> Sophos Limited)
R2 Sophos Health Service; C:\Program Files (x86)\Sophos\Health\SophosHealth.exe [2205288 2020-01-05] (Sophos Ltd -> Sophos Limited)
R2 Sophos MCS Agent; C:\Program Files (x86)\Sophos\Management Communications System\Endpoint\McsAgent.exe [1048584 2020-06-01] (Sophos Ltd -> Sophos Limited)
R2 Sophos MCS Client; C:\Program Files (x86)\Sophos\Management Communications System\Endpoint\McsClient.exe [1664288 2020-06-01] (Sophos Ltd -> Sophos Limited)
R2 Sophos Safestore Service; C:\Program Files\Sophos\Safestore\SophosSafestore64.exe [792944 2020-03-02] (Sophos Ltd -> Sophos Limited)
R2 Sophos System Protection Service; C:\Program Files\Sophos\Endpoint Defense\SSPService.exe [11012968 2020-07-06] (Sophos Ltd -> Sophos Limited)
R2 Sophos Web Control Service; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Control\swc_service.exe [361112 2019-12-05] (Sophos Ltd -> Sophos Limited)
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [38360 2020-05-03] (Dell Inc. -> Dell Inc.)
R2 swi_filter; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_filter.exe [476456 2019-12-05] (Sophos Ltd -> Sophos Limited)
R2 swi_service; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe [3635592 2019-12-05] (Sophos Ltd -> Sophos Limited)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [113992 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)

===================== Pilotes (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R3 DDDriver; C:\WINDOWS\System32\drivers\dddriver64Dcsa.sys [35704 2020-01-03] (Microsoft Windows Hardware Compatibility Publisher -> Dell Inc.)
R1 hmpalert; C:\Windows\system32\drivers\hmpalert.sys [638488 2020-05-27] (Sophos Ltd -> SurfRight B.V.)
R1 SAVOnAccess; C:\WINDOWS\System32\DRIVERS\savonaccess.sys [216280 2020-06-10] (Sophos Ltd -> Sophos Limited)
R3 sdcfilter; C:\WINDOWS\system32\DRIVERS\sdcfilter.sys [38144 2019-12-05] (Sophos Limited -> Sophos Limited)
R1 sntp; C:\WINDOWS\system32\DRIVERS\sntp.sys [216848 2020-04-16] (Sophos Ltd -> Sophos Limited)
S0 Sophos ELAM; C:\WINDOWS\System32\DRIVERS\SophosEL.sys [22152 2020-02-03] (Microsoft Windows Early Launch Anti-malware Publisher -> Sophos Limited)
R0 Sophos Endpoint Defense; C:\WINDOWS\System32\DRIVERS\SophosED.sys [1105208 2020-07-06] (Sophos Ltd -> Sophos Limited)
S4 SophosBootDriver; C:\WINDOWS\system32\DRIVERS\SophosBootDriver.sys [45840 2019-12-05] (Sophos Limited -> Sophos Limited)
R1 swi_callout; C:\WINDOWS\system32\DRIVERS\swi_callout.sys [47760 2019-12-05] (Sophos Limited -> Sophos Limited)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46472 2019-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [333784 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [62432 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
R4 DBUtil_2_3; C:\WINDOWS\TEMP\DBUtil_2_3.Sys <==== ATTENTION (Accès refusé)

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois (créés) ===================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2020-09-02 13:33 - 2020-09-02 13:34 - 000024782 _____ C:\Users\nslimi\Downloads\FRST.txt
2020-09-02 13:33 - 2020-09-02 13:33 - 000000000 ____D C:\FRST
2020-09-02 13:25 - 2020-09-02 13:25 - 002298880 _____ (Farbar) C:\Users\nslimi\Downloads\FRST64.exe
2020-09-02 11:56 - 2020-09-02 11:56 - 000110954 _____ C:\Users\nslimi\Desktop\téléchargement.html
2020-08-26 10:28 - 2020-08-26 10:28 - 006459918 _____ C:\Users\nslimi\Downloads\قانون الشغل و المؤسسة سناء سويسي.pdf
2020-08-26 09:20 - 2020-08-26 09:20 - 001883480 _____ C:\Users\nslimi\Downloads\Décret_n°2008-2744.pdf
2020-08-26 09:14 - 2020-08-26 09:14 - 000736849 _____ C:\Users\nslimi\Downloads\Journal0621996 (1).pdf
2020-08-26 09:11 - 2020-08-26 09:11 - 000736849 _____ C:\Users\nslimi\Downloads\Journal0621996.pdf
2020-08-26 09:09 - 2020-08-26 09:09 - 001400986 _____ C:\Users\nslimi\Downloads\Journal0091989.pdf
2020-08-25 11:48 - 2020-08-25 11:48 - 000282593 _____ C:\Users\nslimi\Downloads\Arrêté2020_1560Arabe.pdf
2020-08-24 09:21 - 2020-08-24 09:21 - 000000153 _____ C:\Users\nslimi\Downloads\saida-jmal.vcf
2020-08-21 09:37 - 2020-08-21 09:37 - 000026596 _____ C:\Users\nslimi\Downloads\rapport JCC 19.xlsx
2020-08-21 09:30 - 2020-08-21 09:30 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2020-08-18 11:07 - 2020-08-18 11:07 - 000123570 _____ C:\Users\nslimi\Downloads\Décret2006_1245Arabe.pdf
2020-08-14 09:28 - 2020-08-14 09:28 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 019852288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 019812352 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 018032128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 007270912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 006294528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 005904896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 005013504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 004859904 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 004611072 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 004129408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 003822592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 003637760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 003516416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 002950808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2020-08-14 09:28 - 2020-08-14 09:28 - 002588688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL
2020-08-14 09:28 - 2020-08-14 09:28 - 002422384 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2020-08-14 09:28 - 2020-08-14 09:28 - 002259192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVDECOD.DLL
2020-08-14 09:28 - 2020-08-14 09:28 - 002138280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2020-08-14 09:28 - 2020-08-14 09:28 - 001870200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 001836160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 001610240 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 001418832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 001316352 _____ (Microsoft Corporation) C:\WINDOWS\system32\srmclient.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 001151816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 001012792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregcmd.exe
2020-08-14 09:28 - 2020-08-14 09:28 - 000941568 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000931328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srmclient.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000893952 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2020-08-14 09:28 - 2020-08-14 09:28 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000739840 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscsvc.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000738064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2020-08-14 09:28 - 2020-08-14 09:28 - 000724480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000709120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000692224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000669184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000666280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2020-08-14 09:28 - 2020-08-14 09:28 - 000639488 _____ (Microsoft Corporation) C:\WINDOWS\system32\srmscan.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000525824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxbde40.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000465408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srmscan.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\WalletService.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000359496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP4SDECD.DLL
2020-08-14 09:28 - 2020-08-14 09:28 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000343408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MP4SDECD.DLL
2020-08-14 09:28 - 2020-08-14 09:28 - 000338944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000330240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000309248 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapisrv.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tapisrv.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrahc.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\net1.exe
2020-08-14 09:28 - 2020-08-14 09:28 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdSSDP.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\PrintBrmUi.exe
2020-08-14 09:28 - 2020-08-14 09:28 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe
2020-08-14 09:28 - 2020-08-14 09:28 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msisip.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2020-08-14 09:28 - 2020-08-14 09:28 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msisip.dll
2020-08-14 09:27 - 2020-08-14 09:28 - 007758848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 025903104 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 022642688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 014820352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 009932088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 007604584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 007270728 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 006526448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 006436864 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 006074552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 005946368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 005849872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 005767224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 005111296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 005003824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 004565248 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 003974376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 003806208 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 003743056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 003368616 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 002986808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-08-14 09:27 - 2020-08-14 09:27 - 002799104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-08-14 09:27 - 2020-08-14 09:27 - 002766952 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2020-08-14 09:27 - 2020-08-14 09:27 - 002739200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directml.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 002737664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 002698048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2020-08-14 09:27 - 2020-08-14 09:27 - 002583496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 002576896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 002307584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 002096128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 002085632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 002022400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 001756592 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-08-14 09:27 - 2020-08-14 09:27 - 001743680 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 001740800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 001697792 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 001672544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 001669344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 001665024 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 001654312 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 001587712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 001564160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 001512848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 001482568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2020-08-14 09:27 - 2020-08-14 09:27 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 001420320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 001406464 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 001397576 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 001393960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 001366144 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2020-08-14 09:27 - 2020-08-14 09:27 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 001282872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2020-08-14 09:27 - 2020-08-14 09:27 - 001215488 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdclt.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 001197056 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 001182248 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 001101312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 001077048 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 001015296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 001009664 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000995840 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000914432 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000899072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000897648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000894032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000888352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000875520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000867840 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000865280 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000841728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000823744 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 000822800 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000783480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 000782336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000775480 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 000718336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000702976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BTAGService.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000690536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000675040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 000675024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000673088 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000672256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000671744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000671040 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000668672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000661816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2020-08-14 09:27 - 2020-08-14 09:27 - 000649728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000629760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000593480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000579584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdlg.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000572200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryPS.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000568128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000564488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StateRepository.Core.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000535040 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000534016 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtrmgr.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000495104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000477496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2020-08-14 09:27 - 2020-08-14 09:27 - 000467968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000463168 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000461112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000457016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2020-08-14 09:27 - 2020-08-14 09:27 - 000456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000452096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TileDataRepository.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000431104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasgcw.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000410624 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000405504 _____ (Microsoft Corporation) C:\WINDOWS\system32\DispBroker.Desktop.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000403456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000379704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000339456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\HrtfApo.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-08-14 09:27 - 2020-08-14 09:27 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\scecli.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000273744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47Langs.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\shdocvw.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmWmiPl.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shdocvw.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasplap.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000220984 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 000214016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scecli.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000211256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000199680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasplap.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 000194048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatializerApo.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000193592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000180224 _____ (Microsoft Corporation) C:\WINDOWS\system32\net1.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000179512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2020-08-14 09:27 - 2020-08-14 09:27 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtm.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvcext.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryUpgrade.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000165176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtm.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdrsvc.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAuto.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Winlangdb.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000133256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BCP47mrm.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000132408 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdshext.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000124512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KerbClientShared.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceUpdateAgent.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdSSDP.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\globinputhost.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 000090936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryBroker.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000089328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpkinstall.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManMigrationPlugin.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmRes.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserLanguageProfileCallback.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afunix.sys
2020-08-14 09:27 - 2020-08-14 09:27 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\acwow64.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000037376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmprovhost.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryCore.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Drivers\afunix.sys
2020-08-14 09:27 - 2020-08-14 09:27 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAgent.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setup16.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiatrace.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntvdm64.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmplpxy.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtprio.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtprio.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\instnm.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wow32.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user.exe
2020-08-14 09:27 - 2020-08-14 09:27 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2020-08-14 09:27 - 2020-08-14 09:27 - 000000357 _____ C:\WINDOWS\system32\DrtmAuthKeyDelegate_From_20190529_To_20200303.bin
2020-08-14 09:27 - 2020-08-14 09:27 - 000000357 _____ C:\WINDOWS\system32\DrtmAuth1KeyDelegate.bin
2020-08-14 09:27 - 2020-08-14 09:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin
2020-08-14 09:27 - 2020-08-14 09:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2020-08-14 09:27 - 2020-08-14 09:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2020-08-14 09:27 - 2020-08-14 09:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2020-08-14 09:27 - 2020-08-14 09:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2020-08-14 09:27 - 2020-08-14 09:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2020-08-14 09:27 - 2020-08-14 09:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2020-08-14 09:27 - 2020-08-14 09:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2020-08-14 09:27 - 2020-08-14 09:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin
2020-08-14 09:27 - 2020-08-14 09:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin
2020-08-14 09:27 - 2020-08-14 09:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin
2020-08-14 09:27 - 2020-08-14 09:27 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2020-08-14 09:26 - 2020-08-14 09:26 - 017792512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 007915864 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 007850784 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 007583272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 007297536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 005283776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 004625184 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-08-14 09:26 - 2020-08-14 09:26 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin
2020-08-14 09:26 - 2020-08-14 09:26 - 004005376 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 003984896 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 003727872 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-08-14 09:26 - 2020-08-14 09:26 - 003712000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 003581240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-08-14 09:26 - 2020-08-14 09:26 - 003141632 _____ (Microsoft Corporation) C:\WINDOWS\system32\directml.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 003084800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 002808832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 002717696 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-08-14 09:26 - 2020-08-14 09:26 - 002552120 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 002523136 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 002471936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 002289152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 002260312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 002136064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 001885184 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 001751040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 001660536 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 001612800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 001540096 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 001338368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 001274128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 001182208 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2020-08-14 09:26 - 2020-08-14 09:26 - 001127424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 001123344 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 001072128 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 001059328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 001055232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 001008128 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000963072 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000937984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000917800 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000875424 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-08-14 09:26 - 2020-08-14 09:26 - 000716312 _____ (Microsoft Corporation) C:\WINDOWS\system32\StateRepository.Core.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000677888 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000624640 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-08-14 09:26 - 2020-08-14 09:26 - 000548352 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000522688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2020-08-14 09:26 - 2020-08-14 09:26 - 000521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000464384 _____ (Microsoft Corporation) C:\WINDOWS\system32\HrtfApo.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-08-14 09:26 - 2020-08-14 09:26 - 000374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000369304 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47Langs.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000340992 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageOverlayServer.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\RasMediaManager.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000314368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000302080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2020-08-14 09:26 - 2020-08-14 09:26 - 000287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000275256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mssecflt.sys
2020-08-14 09:26 - 2020-08-14 09:26 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatializerApo.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000209208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000201544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SIUF.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Winlangdb.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBAUDIO.sys
2020-08-14 09:26 - 2020-08-14 09:26 - 000186472 _____ (Microsoft Corporation) C:\WINDOWS\system32\BCP47mrm.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000174592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAuto.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000152416 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\globinputhost.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000104248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssecuser.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2020-08-14 09:26 - 2020-08-14 09:26 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManMigrationPlugin.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2020-08-14 09:26 - 2020-08-14 09:26 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\keepaliveprovider.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmRes.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserLanguageProfileCallback.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmprovhost.exe
2020-08-14 09:26 - 2020-08-14 09:26 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryCore.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\cellulardatacapabilityhandler.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe
2020-08-14 09:26 - 2020-08-14 09:26 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAgent.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbservicetrigger.dll
2020-08-14 09:26 - 2020-08-14 09:26 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmplpxy.dll
2020-08-14 09:02 - 2020-08-14 09:04 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2020-08-14 09:02 - 2020-08-14 09:04 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2020-08-10 10:38 - 2020-08-10 10:38 - 002432570 _____ C:\Users\nslimi\Downloads\دليل-النفاذ-إلى-المعلومة.pdf
2020-08-10 10:34 - 2020-08-10 10:34 - 000344752 _____ C:\Users\nslimi\Downloads\المجلس العلمي تعيين السيدة ليلى الدعمي.jpeg
2020-08-10 10:34 - 2020-08-10 10:34 - 000277683 _____ C:\Users\nslimi\Downloads\المجلس العلمي تعيين السيدة سنيا مليح.jpeg
2020-08-07 10:56 - 2020-08-07 10:56 - 000296581 _____ C:\Users\nslimi\Downloads\Arrêté2020_1670Arabe (1).pdf
2020-08-07 10:55 - 2020-08-07 10:55 - 000296585 _____ C:\Users\nslimi\Downloads\Arrêté2020_1669Arabe (1).pdf
2020-08-07 10:52 - 2020-08-07 10:52 - 000296593 _____ C:\Users\nslimi\Downloads\Arrêté2020_1667Arabe.pdf
2020-08-07 10:52 - 2020-08-07 10:52 - 000296585 _____ C:\Users\nslimi\Downloads\Arrêté2020_1669Arabe.pdf
2020-08-07 10:52 - 2020-08-07 10:52 - 000296581 _____ C:\Users\nslimi\Downloads\Arrêté2020_1670Arabe.pdf
2020-08-07 10:52 - 2020-08-07 10:52 - 000296580 _____ C:\Users\nslimi\Downloads\Arrêté2020_1668Arabe.pdf
2020-08-07 10:52 - 2020-08-07 10:52 - 000296574 _____ C:\Users\nslimi\Downloads\Arrêté2020_1666Arabe.pdf
2020-08-07 08:47 - 2019-12-05 21:14 - 000047760 _____ (Sophos Limited) C:\WINDOWS\system32\Drivers\swi_callout.sys
2020-08-07 08:46 - 2020-06-10 12:37 - 000037376 _____ (Sophos Limited) C:\WINDOWS\system32\SophosBootTasks.exe
2020-08-07 08:43 - 2020-08-07 08:43 - 000000000 ____D C:\ProgramData\PCDr_Backup_DBA678

==================== Un mois (modifiés) ==================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2020-09-02 13:37 - 2020-03-05 09:18 - 000000000 ____D C:\ProgramData\HitmanPro.Alert
2020-09-02 13:33 - 2020-03-05 09:18 - 000000000 ____D C:\WINDOWS\CryptoGuard
2020-09-02 13:31 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-09-02 13:21 - 2020-03-05 14:46 - 000000000 __SHD C:\Users\nslimi\IntelGraphicsProfiles
2020-09-02 12:25 - 2019-08-22 19:03 - 000000000 ____D C:\ProgramData\NVIDIA
2020-09-02 10:27 - 2020-07-09 11:28 - 000002406 _____ C:\Users\nslimi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-09-02 10:27 - 2020-03-05 14:48 - 000000000 ___RD C:\Users\nslimi\OneDrive
2020-09-02 10:23 - 2019-02-13 05:56 - 000000000 ____D C:\Program Files (x86)\Dell Digital Delivery Services
2020-09-02 09:20 - 2020-03-05 18:05 - 000013202 __RSH C:\ProgramData\ntuser.pol
2020-09-02 09:09 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-09-02 09:09 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-09-01 14:00 - 2020-07-09 11:23 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-09-01 10:24 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF
2020-08-31 12:01 - 2020-03-05 14:46 - 000000000 ____D C:\Users\nslimi\AppData\Local\Packages
2020-08-31 08:49 - 2020-07-09 11:39 - 001683730 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-08-31 08:49 - 2019-03-19 13:01 - 000755516 _____ C:\WINDOWS\system32\perfh00C.dat
2020-08-31 08:49 - 2019-03-19 13:01 - 000142224 _____ C:\WINDOWS\system32\perfc00C.dat
2020-08-31 08:46 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\Registration
2020-08-31 08:44 - 2020-07-09 11:49 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-08-28 12:47 - 2020-03-06 08:37 - 000000000 ___RD C:\Users\nslimi\Desktop\الإشراف على المؤسسات
2020-08-26 10:36 - 2020-03-06 08:36 - 000000000 ____D C:\Users\nslimi\Desktop\نصوص قانونية
2020-08-21 09:41 - 2020-03-05 09:15 - 000002138 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2020-08-19 12:37 - 2020-07-09 11:28 - 000000000 ____D C:\Users\nslimi
2020-08-17 09:14 - 2020-03-05 14:46 - 000000000 ___RD C:\Users\nslimi\3D Objects
2020-08-17 09:14 - 2019-02-11 11:48 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-08-17 09:13 - 2020-03-05 09:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sophos
2020-08-17 09:13 - 2020-03-05 09:14 - 000000000 ____D C:\Program Files\Sophos
2020-08-17 09:13 - 2020-03-05 09:10 - 000000000 ____D C:\Program Files (x86)\Sophos
2020-08-14 12:01 - 2020-07-09 11:23 - 000444776 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-08-14 12:00 - 2020-03-05 09:19 - 000000562 _____ C:\WINDOWS\Tasks\Sophos Cloud Scheduled Scan.job
2020-08-14 11:57 - 2019-03-19 13:04 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2020-08-14 11:57 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2020-08-14 11:57 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2020-08-14 11:57 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2020-08-14 11:57 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SystemResources
2020-08-14 11:57 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\setup
2020-08-14 11:57 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2020-08-14 11:57 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-08-14 11:57 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\migwiz
2020-08-14 11:57 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\Dism
2020-08-14 11:57 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-08-14 11:57 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\Provisioning
2020-08-14 11:57 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-08-14 11:57 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\servicing
2020-08-14 09:34 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-08-07 08:51 - 2020-03-05 09:11 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-08-07 08:51 - 2020-03-05 09:11 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-08-07 08:46 - 2020-03-05 09:17 - 000000000 ____D C:\WINDOWS\SysWOW64\SophosAV
2020-08-07 08:46 - 2020-03-05 09:17 - 000000000 ____D C:\WINDOWS\system32\SophosAV
2020-08-07 08:46 - 2020-03-05 09:10 - 000000000 ____D C:\ProgramData\Sophos

==================== FLock ==============================

2020-06-29 09:46 C:\Config.Msi
2020-03-05 09:19 C:\MSOCache
2020-07-09 11:16 C:\PerfLogs
2020-08-31 08:50 C:\WINDOWS\system32\config
2019-03-19 05:52 C:\WINDOWS\system32\Configuration
2019-03-19 05:52 C:\WINDOWS\system32\DriverState
2019-03-19 05:52 C:\WINDOWS\system32\FxsTmp
2019-03-19 05:53 C:\WINDOWS\system32\ias
2020-07-09 11:22 C:\WINDOWS\system32\MsDtc
2019-03-19 05:52 C:\WINDOWS\system32\networklist
2020-09-01 14:00 C:\WINDOWS\system32\SleepStudy
2020-09-02 13:24 C:\WINDOWS\system32\sru
2020-09-02 10:27 C:\WINDOWS\system32\Tasks
2020-07-09 11:22 C:\WINDOWS\system32\Tasks_Migrated
2020-07-13 09:55 C:\WINDOWS\system32\WDI
2020-09-02 09:09 C:\Program Files\WindowsApps
2020-07-09 11:49 C:\WINDOWS\diagerr.xml
2020-07-09 11:49 C:\WINDOWS\diagwrn.xml
2019-03-19 05:52 C:\WINDOWS\LiveKernelReports
2019-03-19 05:52 C:\WINDOWS\ModemLogs
2020-09-02 13:33 C:\WINDOWS\Prefetch
2020-07-09 11:22 C:\WINDOWS\ServiceState
2020-09-02 13:29 C:\WINDOWS\Temp
2019-03-19 05:52 C:\WINDOWS\SysWOW64\config
2019-03-19 05:52 C:\WINDOWS\SysWOW64\Configuration
2019-03-19 05:52 C:\WINDOWS\SysWOW64\FxsTmp
2019-03-19 05:52 C:\WINDOWS\SysWOW64\Msdtc
2019-03-19 05:52 C:\WINDOWS\SysWOW64\networklist
2019-03-19 05:52 C:\WINDOWS\SysWOW64\sru
2019-03-19 05:52 C:\WINDOWS\SysWOW64\Tasks
2020-07-09 11:22 C:\WINDOWS\system32\Drivers\DriverData
2020-08-14 12:00 C:\WINDOWS\Tasks\Sophos Cloud Scheduled Scan.job
2020-07-09 11:37 C:\Users\maintenance
2020-07-09 11:37 C:\Users\user
2020-03-10 10:15 C:\ProgramData\Packages
2019-03-19 13:04 C:\ProgramData\WindowsHolographicDevices

==================== SigCheck ============================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)



ATTENTION: ==> Impossible d'accéder au BCD. L'utilisateur n'est pas administrateur -> Impossible d'ouvrir le magasin des donn�es de configuration de d�marrage.
Acc�s refus�.

==================== Fin de FRST.txt ========================