Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e)

Le rapport S1 ne montre rien puisque c'est S0 qui a fait le travail.

 

Ce n'est pas grave.

Faites la suite avec attention.

Posté(e)

 

Je ne vois aucun rapport.

voici le rapport de Zhp.

 

~ Riporto di ZHPDiag v2014.5.15.64 - Nicolas Coolman (15/05/2014)

~ Lanciato da Aspire 5735Z (16/05/2014 10.29.29)

~ Indirizzo del sito Web : http://nicolascoolman.webs.com

~ Software analisi blog : http://nicolascoolman.byethost7.com

~ Forum di supporto gratuito per la disinfezione : http://nicolascoolman.webs.com/apps/links/

~ Tradotto da

~ Stato della versione :

~ Lista Bianca : Utente disattivato

~ Elevazione dei privilegi : OK

~ Controllo dell'Account utente :

 

 

---\\ Browser Internet

MSIE: Internet Explorer v9.0.8112.16421 (Defaut)

MFIE: Mozilla Firefox 29.0.1

GCIE: Google Chrome v11.0.696.60

 

---\\ Informazioni sul prodotto Windows

~ Langage: Italien

Windows Vista Home Premium, 32-bit Service Pack 2 (Build 6002)

Windows Server License Manager Script : OK

 

---\\ Software di protezione del sistema

COMODO Internet Security Premium v6.2.20728.2847

Malwarebytes Anti-Malware versione 1.75.0.1300

 

---\\ Software di ottimizzazione del sistema

 

---\\ Condivisione di software PeerToPeer

 

---\\ Software di sorveglianza

Adobe Flash Player 13 Plugin

Adobe Reader 9.4.5 - Italiano

 

---\\ Informazioni sul sistema

~ Processor: x86 Family 6 Model 15 Stepping 13, GenuineIntel

~ Operating System: 32 Bits

Boot mode: Normal (Normal boot)

Total RAM: 3000 MB (47% free)

System Restore: Activé (Enable)

System drive C: has 6 GB (5%) free of 112 GB

 

---\\ Connessione alla modalità sistema

~ Computer Name: PC-ASPIRE5735Z

~ User Name: Aspire 5735Z

~ All Users Names: MARK, Guest, Aspire 5735Z, Administrator,

~ Unselected Option: None

Logged in as Administrator

 

---\\ Variabili di ambiente

~ System Unit : C:\

~ %AppZHP% : C:\Users\Aspire 5735Z\AppData\Roaming\ZHP\

~ %AppData% : C:\Users\Aspire 5735Z\AppData\Roaming\

~ %Desktop% : C:\Users\Aspire 5735Z\Desktop\

~ %Favorites% : C:\Users\Aspire 5735Z\Favorites\

~ %LocalAppData% : C:\Users\Aspire 5735Z\AppData\Local\

~ %StartMenu% : C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Start Menu\

~ %Windir% : C:\Windows\

~ %System% : C:\Windows\System32\

 

---\\ Enumerazione delle unità disco

C: Hard drive, Flash drive, Thumb drive (Free 6 Go of 112 Go)

D: Hard drive, Flash drive, Thumb drive (Free 91 Go of 112 Go)

E: CD-ROM drive (Not Inserted)

 

 

 

---\\ Stato di Windows Security Center

[HKLM\SOFTWARE\Microsoft\Security Center] AntiVirusDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center] FirewallDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center] UpdatesDisableNotify: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK

[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: OK

[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowPrinters: Modified

[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowSetProgramAccessAndDefaults: OK

[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced] Start_ShowNetConn: OK

[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK

[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK

[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

~ Security Center: 49 Scanned in 00mn 00s

 

 

 

---\\ Ricerca di particolari file generico

[MD5.D07D4C3038F3578FFCE1C0237F2A1253] - (.Microsoft Corporation - Esplora risorse.) (.11/04/2009 - 7.27.36.) -- C:\Windows\Explorer.exe [2926592]

[MD5.101BA3EA053480BB5D957EF37C06B5ED] - (.Microsoft Corporation - Applicazione di avvio di Windows.) (.21/01/2008 - 3.23.42.) -- C:\Windows\System32\Wininit.exe [96768]

[MD5.62077F806BC59CBD5A404338D710D133] - (.Microsoft Corporation - Internet Extensions per Win32.) (.08/03/2014 - 0.02.07.) -- C:\Windows\System32\wininet.dll [1129472]

[MD5.898E7C06A350D4A1A64A9EA264D55452] - (.Microsoft Corporation - Applicazione Accesso a Windows.) (.11/04/2009 - 7.28.13.) -- C:\Windows\System32\Winlogon.exe [314368]

[MD5.3911B972B55FEA0478476B2E777B29FA] - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) (.21/04/2011 - 14.58.27.) -- C:\Windows\system32\Drivers\AFD.sys [273408]

[MD5.1F05B78AB91C9075565A9D8A4B880BC4] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.11/04/2009 - 7.32.26.) -- C:\Windows\system32\Drivers\atapi.sys [19944]

[MD5.7ADD03E75BEB9E6DD102C3081D29840A] - (.Microsoft Corporation - CD-ROM File System Driver.) (.21/01/2008 - 3.23.51.) -- C:\Windows\system32\Drivers\Cdfs.sys [70144]

[MD5.6B4BFFB9BECD728097024276430DB314] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.11/04/2009 - 5.39.17.) -- C:\Windows\system32\Drivers\Cdrom.sys [67072]

[MD5.622C41A07CA7E6DD91770F50D532CB6C] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.14/04/2011 - 15.59.03.) -- C:\Windows\system32\Drivers\DfsC.sys [75264]

[MD5.062452B7FFD68C8C042A6261FE8DFF4A] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.11/04/2009 - 5.42.42.) -- C:\Windows\system32\Drivers\HDAudBus.sys [561152]

[MD5.22D56C8184586B7A1F6FA60BE5F5A2BD] - (.Microsoft Corporation - Driver della porta i8042.) (.21/01/2008 - 3.23.20.) -- C:\Windows\system32\Drivers\i8042prt.sys [54784]

[MD5.8793643A67B42CEC66490B2A0CF92D68] - (.Microsoft Corporation - IP Network Address Translator.) (.21/01/2008 - 3.24.25.) -- C:\Windows\system32\Drivers\IpNat.sys [100864]

[MD5.1E94971C4B446AB2290DEB71D01CF0C2] - (.Microsoft Corporation - Windows NT SMB Minirdr.) (.29/04/2011 - 14.24.40.) -- C:\Windows\system32\Drivers\MRxSmb.sys [106496]

[MD5.ECD64230A59CBD93C85F1CD1CAB9F3F6] - (.Microsoft Corporation - MBT Transport driver.) (.11/04/2009 - 5.45.37.) -- C:\Windows\system32\Drivers\netBT.sys [185856]

[MD5.2C1121F2B87E9A6B12485DF53CD848C7] - (.Microsoft Corporation - Driver file system NT.) (.03/03/2013 - 20.07.52.) -- C:\Windows\system32\Drivers\ntfs.sys [1082232]

[MD5.0FA9B5055484649D63C303FE404E5F4D] - (.Microsoft Corporation - Driver della porta parallela.) (.02/11/2006 - 9.51.30.) -- C:\Windows\system32\Drivers\Parport.sys [79360]

[MD5.A214ADBAF4CB47DD2728859EF31F26B0] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.21/01/2008 - 3.24.55.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [76288]

[MD5.FBC0BACD9C3D7F6956853F64A66E252D] - (.Microsoft Corporation - Microsoft RDP Device redirector.) (.21/01/2008 - 3.23.01.) -- C:\Windows\system32\Drivers\rdpdr.sys [248832]

[MD5.7B75299A4D201D6A6533603D6914AB04] - (.Microsoft Corporation - SMB Transport driver.) (.11/04/2009 - 5.45.22.) -- C:\Windows\system32\Drivers\smb.sys [66560]

[MD5.76B06EB8A01FC8624D699E7045303E54] - (.Microsoft Corporation - TDI Translation Driver.) (.11/04/2009 - 5.45.56.) -- C:\Windows\system32\Drivers\tdx.sys [72192]

[MD5.786DB5771F05EF300390399F626BF30A] - (.Microsoft Corporation - Driver copia shadow del volume.) (.21/08/2012 - 12.47.42.) -- C:\Windows\system32\Drivers\volsnap.sys [224640]

~ Generic Processes: Scanned in 00mn 02s

 

 

 

---\\ Stato dei file nascosti (nascosti/totale)

~ Mes images (My Pictures) : 2/11224

~ Mes musiques (My Musics) : 1/20

~ Mes Videos (My Videos) : 1/2

~ Mes Favoris (My Favorites) : 1/87

~ Mes Documents (My Documents) : 6/677

~ Mon Bureau (My Desktop) : 24/757

~ Menu demarrer (Programs) : 0/26

~ Hidden Files: Scanned in 00mn 09s

 

 

 

---\\ Processo avviato

[MD5.5C080C61235C74568C2978FC7E602AE0] - (.Synaptics, Inc. - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1049896] [PID.2444]

[MD5.6882D187F65ECA79110848A68FDEB2BF] - (.No owner - NTI Backup Now 5 Tray Module.) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe [34040] [PID.1164]

[MD5.6650569A682D8E4F98D774D8B1D9C70F] - (.CyberLink Corp. - Acer Arcade Deluxe Resident Program.) -- C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe [147456] [PID.2828]

[MD5.7C5927B256B7CC04540B56AA3FDCCE36] - (.CyberLink - Acer Arcade Deluxe MediaLibrary Service.) -- C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe [167936] [PID.3016]

[MD5.9E83742461CFFF48E2885E68B4519CB2] - (.Acer Corp. - Acer Arcade Deluxe PlayMovie Resident Progr.) -- C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe [167936] [PID.3412]

[MD5.B9AA850CDA55097EB13E03698C8F5828] - (.Intel Corporation - igfxsrvc Module.) -- C:\Windows\system32\igfxsrvc.exe [266776] [PID.3276]

[MD5.86171114D84AFBD3DFCE930E320C1BBF] - (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe [6183456] [PID.4084]

[MD5.2AC7F8B8BF0D5D327A3A2A00453222C4] - (.No owner - DefaultSettingEXE MFC Application.) -- C:\Windows\PLFSetI.exe [200704] [PID.1720]

[MD5.B2994EC6452DBD04E57828EEFEDFB93C] - (.Realtek Semiconductor Corp. - Realtek HD Audio Data Rerouter.) -- C:\Users\Aspire 5735Z\AppData\Local\Temp\RtkBtMnt.exe [204800] [PID.3472]

[MD5.2B8EDA2A4D0358A4DC52039676A2D5E5] - (.Dritek System Inc. - Acer Launch Manager Keyboard Application.) -- C:\Program Files\Launch Manager\LManager.exe [809480] [PID.4028]

[MD5.A9E634BBEDC2B41162767ED7F7DD9646] - (.Egis Incorporated - Acer eDataSecurity Management Loader.) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSLoader.exe [526896] [PID.4140]

[MD5.A580E4309E636A93B89E89712FF0959D] - (.Acer Inc. - Acer ePower Management - DMC.) -- C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe [409600] [PID.4180]

[MD5.9F5F2F0FB0A7F5AA9F16B9A7B6DAD89F] - (.Google - Google Desktop.) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [30192] [PID.4188]

[MD5.F8D427DAE2984A4968E2D1CB53634784] - (.Nuance Communications, Inc. - OCR Aware.) -- C:\Program Files\ScanSoft\OmniPageSE4\OpWareSE4.exe [79400] [PID.4264]

[MD5.32F1A63C86D009D95994B543511D6E5C] - (.No owner - NsWrtMon Microsoft Base Class Application.) -- C:\Windows\System32\spool\drivers\w32x86\3\WrtMon.exe [20480] [PID.4276]

[MD5.0E34B7BB1FCF22BCC1E394D16F9E992B] - (.Microsoft Corporation - GrooveMonitor Utility.) -- C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040] [PID.4360]

[MD5.1029B84ECBE4B95ACB8491A3FE63D70F] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [136216] [PID.4388]

[MD5.3CD5BBDA19A1AB4EBA359E0A14FDF0F0] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [171032] [PID.4404]

[MD5.3142195521FEE436088EE8A5748DE1B1] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [170520] [PID.4608]

[MD5.6E3245DF783E58375B3465F03274743E] - (.Sun Microsystems, Inc. - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [254696] [PID.4800]

[MD5.376FB589890E90BAA3D05867E44116E9] - (.COMODO - COMODO Internet Security.) -- C:\Program Files\Comodo\COMODO Internet Security\cistray.exe [1225944] [PID.5080]

[MD5.79C28DDF889C26FDD6162F796FD49BC4] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe [152392] [PID.5104]

[MD5.4AB05041D5C922B9A7A5D9059F5538CD] - (.Microsoft Corporation - User session Windows Mobile device handler.) -- C:\Windows\WindowsMobile\wmdSync.exe [215552] [PID.5128]

[MD5.39B47A50DC3D5E898298468307765710] - (.Comodo Security Solutions, Inc. - GeekBuddy Remote Screen Protocol Server.) -- C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe [2327248] [PID.1020]

[MD5.E616A6A6E91B0A86F2F6217CDE835FFE] - (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [68856] [PID.5272] =>Toolbar.Google

[MD5.BF08674925F151BD4537B89A493E3E0C] - (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehtray.exe [125952] [PID.5288]

[MD5.F2F3617C63B87AA2DE139DC9E37420B5] - (.Intel Corporation - igfxext Module.) -- C:\Windows\system32\igfxext.exe [179224] [PID.5376]

[MD5.9D4A0ECBF734E2EECDD5B473A2D705FE] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe [20922016] [PID.5384]

[MD5.325E48C07245F0A92CCB85E1F10EE1B7] - (.WinZip Computing, S.L. - WinZip Executable.) -- C:\Program Files\WinZip\WZQKPICK32.exe [603536] [PID.5440]

[MD5.32C26797AB646074A2BB562F9D10ADB5] - (.Microsoft Corporation - Microsoft Office OneNote Quick Launcher.) -- C:\Program Files\Microsoft Office\Office12\ONENOTEM.exe [97680] [PID.5460]

[MD5.D05D1BBCBA6C6843A7A96C5289DA22BE] - (.No owner - NsWrtProc Microsoft Base Clase Application.) -- C:\Windows\System32\spool\drivers\w32x86\3\WrtProc.exe [24576] [PID.5972]

[MD5.0F4195B9B348DE5CF9B822F81704B20E] - (.Microsoft Corporation - Media Center Media Status Aggregator Servic.) -- C:\Windows\ehome\ehmsas.exe [37376] [PID.4496]

[MD5.D641DB524C3D9A1AB72F94BDC6FF27D7] - (.Synaptics, Inc. - Synaptics Pointing Device Helper.) -- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe [103720] [PID.4556]

[MD5.62EE8D0AD764B3AC366D242A86E2EF91] - (.COMODO - COMODO Internet Security.) -- C:\Program Files\Comodo\COMODO Internet Security\cis.exe [7555288] [PID.4736]

[MD5.E7349F325F720001A340C5D828E89E81] - (.acer - Acer Empowering Technology Framework Notifi.) -- C:\Program Files\Acer\Empowering Technology\NotificationCenter\Framework.NotificationCenter.exe [376832] [PID.4644]

[MD5.0DA891CB0703D912CEAFA072F54D002B] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [275568] [PID.5472]

[MD5.28B02EA673489A4EFBB20A9B302D523C] - (.Mozilla Corporation - Plugin Container for Firefox.) -- C:\Program Files\Mozilla Firefox\plugin-container.exe [18544] [PID.4316]

[MD5.038053B5DB6B0DCFB32B7682334B7625] - (.Adobe Systems, Inc. - Adobe Flash Player 13.0 r0.) -- C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_13_0_0_214.exe [1863856] [PID.1172]

[MD5.254B28136B946880155025E40D150D3D] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [7875584] [PID.5864]

[MD5.6080A176D09435FC8E6E800996656E18] - (.Microsoft Corporation - Console IME.) -- C:\Windows\system32\conime.exe [69120] [PID.3328]

~ Processes Running: Scanned in 00mn 04s

 

 

 

---\\ Google Chrome, start, cerca, estensioni (G0, G1, G2)

C:\Users\Aspire 5735Z\AppData\Local\Google\Chrome\User Data\Default\Preferences

G1 - GCS: Preference [user Data\Default] None

G0 - GCSP: Preference [user Data\Default][HomePage] http://www.google.com

G2 - GCE: Preference [user Data\Default] [ilckobikkmajlmhhdenkhonjkoaneclk] WinZip Courier v.3.5.0 (Activé)

 

---\\ Cartella di estensione di Google Chrome

G2 - EXT: C:\Users\Aspire 5735Z\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilckobikkmajlmhhdenkhonjkoaneclk [WinZip Courier]

~ Google Lines Browser: 4 Scanned in 00mn 15s

 

 

 

---\\ Mozilla Firefox, plugin, start, cerca, estensioni (P2, M0, M1, M2, M3)

P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (...) -- C:\Windows\system32\Macromed\Flash\NPSWF32_13_0_0_214.dll

P2 - FPN: [HKLM] [@Apple.com/iTunes,version=1.0] - (...) -- C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll

P2 - FPN: [HKLM] [@canon.com/EPPEX] - (.CANON INC. - CANON iMAGE GATEWAY Album Plugin Utility Module.) -- C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.dll

P2 - FPN: [HKLM] [@Google.com/GoogleEarthPlugin] - (.Google - GEPlugin.) -- C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll =>.Google Inc

P2 - FPN: [HKLM] [@java.com/JavaPlugin] - (.Sun Microsystems, Inc. - Next Generation Java Plug-in 1.6.0_30 for Mozilla browsers.) -- C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll

P2 - FPN: [HKLM] [@microsoft.com/WPF,version=3.5] - (.Microsoft Corporation - Windows Presentation Foundation (WPF) plug-in for Mozilla browsers.) -- C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

P2 - FPN: [HKLM] [@pack.google.com/Google Updater;version=13] - (.Google - Google Updater plugin<br><a href="http://pack.google.com/">http://pack.) -- C:\Program Files\Google\Google Updater\2.4.1536.6592\npCIDetect13.dll

P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=8] - (...) -- C:\Program Files\Google\Update\1.2.183.39\npGoogleOneClick8.dll (.not file.)

P2 - FPN: [HKLM] [@videolan.org/vlc,version=2.1.3] - (.VideoLAN - VLC media player Web Plugin 2.1.3.) -- C:\Program Files\VideoLAN\VLC\npvlc.dll =>.VideoLAN

P2 - FPN: [HKLM] [@winzip.com/Winzip Courier] - (.WinZip Computing, S.L. - WinZip Courier Plugin for Mozilla Firefox.) -- C:\Program Files\WinZip Courier\npwzwmc.dll

P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape "9.4.5".) -- C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll

~ Firefox Browser: 11 Scanned in 00mn 00s

 

 

 

---\\ Internet Explorer, start, cerca, URLSearchHook, Phishing (R0, R1, R3, R4)

R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =

R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://homepage.acer.com

R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com

R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = preserve

R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com

R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com

R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons

R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk

R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com

R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://ie.search.msn.com

R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com

 

R3 - URLSearchHook: Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Adobe Systems Inc. - Adobe PDF Plug-In For Firefox and Netscape "9.4.5".) (No version) -- (.not file.)

R4 - HKCU\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,Enabled = 2

~ IE Browser: 14 Scanned in 00mn 00s

 

 

 

---\\ Internet Explorer, gestione Proxy (R5)

R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key

R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0

R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1

R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1

R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1

R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

~ Proxy management: Scanned in 00mn 00s

 

 

 

---\\ Analisi delle linee F0, F1, F2, F3 - IniFiles, Autoloading programs

F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,

F2 - REG:system.ini: Shell=C:\Windows\explorer.exe

F2 - REG:system.ini: VMApplet=rundll32 shell32,Control_RunDLL "sysdm.cpl"

~ Keys: Scanned in 00mn 00s

 

 

 

---\\ Hosts file redirection (O1)

~ Le fichier hosts est sain (The hosts file is clean).

~ Hosts File: Scanned in 00mn 00s

~ Nombre de lignes (Lines number): 1

 

 

 

---\\ Browser Helper Objects da browser (O2)

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} . (.Adobe Systems Incorporated - Adobe PDF Helper for Internet Explorer.) -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} . (.Microsoft Corporation - GrooveShellExtensions Module.) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll

O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\Program Files\Java\jre6\bin\ssv.dll

O2 - BHO: ShowBarObj Class - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} . (.Egis - ActiveToolBand Module.) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\ActiveToolBand.dll

O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (...) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (.not file.)

O2 - BHO: WinZip Courier BHO - {A8FB70FA-0FDF-4601-9DC4-BFA1B357204F} . (.WinZip Computing, S.L. - WinZip Courier BHO.) -- C:\Program Files\WinZip Courier\wzwmcie.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll =>Toolbar.Google

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java Platform SE binary.) -- C:\Program Files\Java\jre6\bin\jp2ssv.dll

~ BHO: 16 Scanned in 00mn 00s

 

 

 

---\\ Internet Explorer barre degli strumenti (O3)

O3 - Toolbar: Acer eDataSecurity Management - [HKLM]{5CBE3B7C-1E47-477e-A7DD-396DB0476E29} . (.Egis Incorporated. - Acer eDataSecurity Management Explorer Tool.) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll

O3 - Toolbar: avast! WebRep - [HKLM]{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (...) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll

O3 - Toolbar\WebBrowser: (no name) - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Chiave orfano

~ Toolbar: Scanned in 00mn 00s

 

 

 

---\\ Iniziato da file e registro applicazioni (O4)

O4 - HKLM\..\Run: [synTPEnh] . (.Synaptics, Inc. - Synaptics TouchPad Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

O4 - HKLM\..\Run: [bkupTray] . (.No owner - NTI Backup Now 5 Tray Module.) -- C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BkupTray.exe

O4 - HKLM\..\Run: [ArcadeDeluxeAgent] . (.CyberLink Corp. - Acer Arcade Deluxe Resident Program.) -- C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe

O4 - HKLM\..\Run: [CLMLServer] . (.CyberLink - Acer Arcade Deluxe MediaLibrary Service.) -- C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe

O4 - HKLM\..\Run: [PlayMovie] . (.Acer Corp. - Acer Arcade Deluxe PlayMovie Resident Progr.) -- C:\Program Files\Acer Arcade Deluxe\PlayMovie\PMVService.exe

O4 - HKLM\..\Run: [RtHDVCpl] . (.Realtek Semiconductor - HD Audio Control Panel.) -- C:\Windows\RtHDVCpl.exe =>.Realtek Semiconductor Corp

O4 - HKLM\..\Run: [PLFSetI] . (.No owner - DefaultSettingEXE MFC Application.) -- C:\Windows\PLFSetI.exe

O4 - HKLM\..\Run: [LManager] . (.Dritek System Inc. - Acer Launch Manager Keyboard Application.) -- C:\Program Files\Launch Manager\LManager.exe

O4 - HKLM\..\Run: [eDataSecurity Loader] . (.Egis Incorporated - Acer eDataSecurity Management Loader.) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSloader.exe

O4 - HKLM\..\Run: [ePower_DMC] . (.Acer Inc. - Acer ePower Management - DMC.) -- C:\Program Files\Acer\Empowering Technology\ePower\ePower_DMC.exe

O4 - HKLM\..\Run: [Google Desktop Search] . (.Google - Google Desktop.) -- C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe

O4 - HKLM\..\Run: [ProductReg] . (.Acer - ProductR Application.) -- C:\Program Files\Acer\WR_PopUp\ProductReg.exe

O4 - HKLM\..\Run: [sSBkgdUpdate] . (.Nuance Communications, Inc. - SSBkgdUpdate.) -- C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe

O4 - HKLM\..\Run: [OpwareSE4] . (.Nuance Communications, Inc. - OCR Aware.) -- C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe =>.ScanSoft, Inc

O4 - HKLM\..\Run: [WrtMon.exe] . (.No owner - NsWrtMon Microsoft Base Class Application.) -- C:\Windows\system32\spool\drivers\w32x86\3\WrtMon.exe

O4 - HKLM\..\Run: [GrooveMonitor] . (.Microsoft Corporation - GrooveMonitor Utility.) -- C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe

O4 - HKLM\..\Run: [igfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe

O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe

O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe

O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated

O4 - HKLM\..\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe

O4 - HKLM\..\Run: [sunJavaUpdateSched] . (.Sun Microsystems, Inc. - Java Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle Corporation

O4 - HKLM\..\Run: [skytel] . (.Realtek Semiconductor Corp. - Realtek Voice Manager.) -- C:\Windows\Skytel.exe =>.Realtek Semiconductor Corp

O4 - HKLM\..\Run: [COMODO Internet Security] . (.COMODO - COMODO Internet Security.) -- C:\Program Files\COMODO\COMODO Internet Security\cistray.exe

O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe

O4 - HKLM\..\Run: [Windows Mobile-based device management] . (.Microsoft Corporation - User session Windows Mobile device handler.) -- C:\Windows\WindowsMobile\wmdSync.exe

O4 - HKLM\..\Run: [tvncontrol] . (.Comodo Security Solutions, Inc. - GeekBuddy Remote Screen Protocol Server.) -- C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe

O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe =>Toolbar.Google

O4 - HKCU\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehTray.exe

O4 - HKCU\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Applicazione di configurazione Servizio di.) -- C:\Program Files\Windows Media Player\WMPNSCFG.exe =>.Microsoft Corporation

O4 - HKCU\..\Run: [skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.

O4 - HKUS\S-1-5-21-1791461987-266948465-1076950451-1000\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe =>Toolbar.Google

O4 - HKUS\S-1-5-21-1791461987-266948465-1076950451-1000\..\Run: [ehTray.exe] . (.Microsoft Corporation - Media Center Tray Applet.) -- C:\Windows\ehome\ehTray.exe

O4 - HKUS\S-1-5-21-1791461987-266948465-1076950451-1000\..\Run: [WMPNSCFG] . (.Microsoft Corporation - Applicazione di configurazione Servizio di.) -- C:\Program Files\Windows Media Player\WMPNSCFG.exe =>.Microsoft Corporation

O4 - HKUS\S-1-5-21-1791461987-266948465-1076950451-1000\..\Run: [skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe =>.Skype Technologies S.A.

~ Application: Scanned in 00mn 00s

 

 

 

---\\ I pulsanti sulla barra degli strumenti "principali strumenti" di Internet Explorer (O9)

O9 - Extra button: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -- Chiave orfano

O9 - Extra button: I&nvia a OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} . (.Microsoft Corporation - Microsoft Office OneNote Internet Explorer Add-in.) -- C:\Program Files\MICROS~2\Office12\ONBttnIE.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} . (...) -- C:\Program Files\Microsoft Office\Office12\REFBARH.ICO

~ IE Extra Buttons: Scanned in 00mn 00s

 

 

 

---\\ Winsock hijacker (Layered Service Provider) (O10)

O10 - WLSP:\000000000001\Winsock LSP File . (.Microsoft Corporation - Network Location Awareness 2.) -- C:\Windows\system32\NLAapi.dll

O10 - WLSP:\000000000002\Winsock LSP File . (.Microsoft Corporation - Provider shim denominazione posta elettronica.) -- C:\Windows\system32\napinsp.dll

O10 - WLSP:\000000000003\Winsock LSP File . (.Microsoft Corporation - Provider spazio dei nomi PNRP.) -- C:\Windows\system32\pnrpnsp.dll

O10 - WLSP:\000000000004\Winsock LSP File . (.Microsoft Corporation - Provider spazio dei nomi PNRP.) -- C:\Windows\system32\pnrpnsp.dll

O10 - WLSP:\000000000005\Winsock LSP File . (.Apple Inc. - Bonjour Namespace Provider.) -- C:\Program Files\Bonjour\mdnsNSP.dll

O10 - WLSP:\000000000006\Winsock LSP File . (.Microsoft Corporation - Service Provider Microsoft Windows Sockets 2.0.) -- C:\Windows\system32\mswsock.dll

O10 - WLSP:\000000000007\Winsock LSP File . (.Microsoft Corporation - LDAP RnR Provider DLL.) -- C:\Windows\system32\winrnr.dll

~ Winsock: 7 Scanned in 00mn 00s

 

 

 

---\\ Modificare gli indirizzi DNS domain (O17)

O17 - HKLM\System\CCS\Services\Tcpip\..\{6D6CF5D4-06BB-4B71-99B8-FCD5F6EDEFEC}: DhcpNameServer = 89.2.0.1 89.2.0.2

O17 - HKLM\System\CS1\Services\Tcpip\..\{6D6CF5D4-06BB-4B71-99B8-FCD5F6EDEFEC}: DhcpNameServer = 89.2.0.1 89.2.0.2

O17 - HKLM\System\CS3\Services\Tcpip\..\{6D6CF5D4-06BB-4B71-99B8-FCD5F6EDEFEC}: DhcpNameServer = 89.2.0.1 89.2.0.2

O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 89.2.0.1 89.2.0.2

~ Domain: Scanned in 00mn 00s

 

 

 

---\\ Protocollo addizionale (O18)

O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visualizzatore HTML Microsoft ®.) -- C:\Windows\system32\mshtml.dll

O18 - Filter: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.dll =>.Microsoft Corporation

~ Protocole Additionnel: Scanned in 00mn 00s

 

 

 

---\\ Valore di registro AppInit_DLLs e sottochiavi Winlogon Notify (autorun) (O20)

O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll

~ Winlogon: Scanned in 00mn 00s

 

 

 

---\\ Valore di registro AppInit_DLLs e sottochiavi Winlogon Notify (autorun) (O20)

O20 - AppInit_DLLs: . (.Google - Google Desktop.) - C:\Program Files\Google\Google Desktop Search\GoogleDesktopNetwork3.dll

~ AppInit DLL: Scanned in 00mn 00s

 

 

 

---\\ ShellServiceObjectDelayLoad SSODL/SSO, chiave di registro autorun (O21)

O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} . (.Microsoft Corporation - Utilità di monitoraggio siti Web.) -- C:\Windows\System32\webcheck.dll

~ SSODL: 1 Scanned in 00mn 00s

 

 

 

---\\ Chiave di registro autorun SharedTaskScheduler (STS) (O22)

O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} . (.Microsoft Corporation - Shell Browser UI Library.) -- C:\Windows\System32\browseui.dll

~ STS/SSO: Scanned in 00mn 00s

 

 

 

---\\ Elenco dei servizi non Microsoft NT e non disabili (O23)

O23 - Service: Agere Modem Call Progress Audio (AgereModemAudio) . (.Agere Systems - Agere Soft Modem Call Progress Service.) - C:\Windows\system32\agrsmsvc.exe

O23 - Service: Apple Mobile Device (Apple Mobile Device) . (.Apple Inc. - YSLoader.exe.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

O23 - Service: Servizio Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: NTI Backup Now 5 Agent Service (BUNAgentSvc) . (.NewTech Infosystems, Inc. - NTI Backup Now 5 Agent service..) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe

O23 - Service: CLHNService (CLHNService) . (.No owner - CLHNService Module.) - C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe

O23 - Service: COMODO LPS Launcher (CLPSLauncher) . (.Comodo Security Solutions, Inc. - livePCsupport Component.) - C:\Program Files\Common Files\COMODO\launcher_service.exe

O23 - Service: COMODO Internet Security Helper Service (cmdAgent) . (.COMODO - COMODO Internet Security.) - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe

O23 - Service: COMODO Dragon Update Service (DragonUpdater) . (...) - C:\Program Files\Comodo\Dragon\dragon_updater.exe

O23 - Service: eDataSecurity Service (eDataSecurity Service) . (.Egis Incorporated - Acer eDataSecurity Management Service.) - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe

O23 - Service: Empowering Technology Service (ETService) . (.No owner - Acer Empowering Technology Framework Servic.) - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe

O23 - Service: GeekBuddyRSP Server (GeekBuddyRSP) . (.Comodo Security Solutions, Inc. - GeekBuddy Remote Screen Protocol Server.) - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe

O23 - Service: Service Google Update (gupdate1c9c057502ac298) (gupdate1c9c057502ac298) . (.Google Inc. - Google Installer.) - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) . (.Hewlett-Packard Company - No Comment.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe

O23 - Service: MobilityService (MobilityService) . (.No owner - app.) - C:\Acer\Mobility Center\MobilityService.exe

O23 - Service: NTI Backup Now 5 Backup Service (NTIBackupSvc) . (.NewTech InfoSystems, Inc. - NTI Backup Now 5 BackupSvc Application.) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe

O23 - Service: NTI Backup Now 5 Scheduler Service (NTISchedulerSvc) . (...) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe

O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) . (.No owner - RichVideo Module.) - C:\Program Files\Cyberlink\Shared files\RichVideo.exe

O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files\Skype\Updater\Updater.exe

O23 - Service: {49DE1C67-83F8-4102-99E0-C16DCC7EEC796} ({49DE1C67-83F8-4102-99E0-C16DCC7EEC796}) . (.Cyberlink Corp. - FCL Driver.) - C:\Program Files\Acer Arcade Deluxe\PlayMovie\000.fcl

~ Services: 19 Scanned in 00mn 28s

 

 

 

---\\ L'enumerazione Active Desktop Editor MHTML (O24)

O24 - Default MHTML Editor: Last - .(.Microsoft Corporation - Microsoft Office Word.) - C:\Program Files\Microsoft Office\Office12\WINWORD.exe

~ Desktop Component: 4 Scanned in 00mn 00s

 

 

 

---\\ Enumera i dati BootExecute (BEX) (ØO4)

O34 - HKLM BootExecute: (autocheck autochk *) - File not found

~ BEX: 1 Scanned in 00mn 00s

 

 

 

---\\ Attività pianificate in modo automatico (039)

[MD5.09E7C37DF4A911C8A9AA8BF88ACD10AA] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [257712]

[MD5.626A24ED1228580B9518C01930936DF9] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [133104]

[MD5.626A24ED1228580B9518C01930936DF9] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [133104]

[MD5.9D4A0ECBF734E2EECDD5B473A2D705FE] [APT] [{150161D8-E02F-4667-AA6E-2AD28648CA3B}] (.Skype Technologies S.A..) -- C:\Program Files\Skype\Phone\Skype.exe [20922016]

[MD5.34EBD4FF6A24D86BB4716D6AFCC1A89B] [APT] [AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [561984]

[MD5.97C244EE6446BE561D178ABB72EF70EE] [APT] [COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9}] (.COMODO.) -- C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [3942104]

[MD5.97C244EE6446BE561D178ABB72EF70EE] [APT] [COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22}] (.COMODO.) -- C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [3942104]

[MD5.97C244EE6446BE561D178ABB72EF70EE] [APT] [COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59}] (.COMODO.) -- C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [3942104]

[MD5.97C244EE6446BE561D178ABB72EF70EE] [APT] [COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85}] (.COMODO.) -- C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [3942104]

O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\Tasks\Adobe Flash Player Updater.job [978]

O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\System32\Tasks\Adobe Flash Player Updater [978]

O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job [1134]

O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore [1134]

O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job [1138]

O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA [1138]

~ Scheduled Task: 15 Scanned in 00mn 06s

 

 

 

---\\ Componenti installati (ActiveSetup installati componenti) (O40)

O40 - ASIC: Microsoft Windows Media Player - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Risorse di Windows Media Player.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation

O40 - ASIC: Internet Explorer - >{26923b43-4d38-484f-9b9e-de460746276c} . (.Microsoft Corporation - Utilità di inizializzazione Per utente di Internet Explorer.) -- C:\Windows\system32\ie4uinit.exe

O40 - ASIC: Browser Customizations - >{60B49E34-C7CC-11D0-8953-00A0C90347FF} . (.Microsoft Corporation - IEAK branding.) -- C:\Windows\system32\iedkcs32.dll

O40 - ASIC: Microsoft Windows Media Player 11.0 - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.Microsoft Corporation

O40 - ASIC: Themes Setup - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - API di Windows Theme.) -- C:\Windows\System32\themeui.dll

O40 - ASIC: Microsoft Windows Mail 7 - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation

O40 - ASIC: Browsing Enhancements - {630b1da0-b465-11d1-9948-00c04f98bbc9} . (.Microsoft Corporation - Estensione shell della cartella FTP di Microsoft Internet Explo.) -- C:\Windows\System32\msieftp.dll

O40 - ASIC: Microsoft Windows Media Player - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Risorse di Windows Media Player.) -- C:\Windows\System32\wmploc.dll =>.Microsoft Corporation

O40 - ASIC: Windows Desktop Update - {89820200-ECBD-11cf-8B85-00AA005B4340} . (.Microsoft Corporation - DLL comune della shell di Windows.) -- C:\Windows\System32\shell32.dll

O40 - ASIC: Web Platform Customizations - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilità di inizializzazione Per utente di Internet Explorer.) -- C:\Windows\System32\ie4uinit.exe

O40 - ASIC: (no name) - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\system32\mscories.dll

O40 - ASIC: Macromedia Shockwave Flash - {D27CDB6E-AE6D-11CF-96B8-444553540000} . (.Adobe Systems, Inc. - Adobe Flash Player 13.0 r0.) -- C:\Windows\system32\Macromed\Flash\Flash32_13_0_0_214.ocx

~ Active Setup: 12 Scanned in 00mn 01s

 

 

 

---\\ Pilota all'inizio del sistema (O41)

O41 - Driver: C:\Windows\System32\drivers\afd.sys (AFD) . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) - C:\Windows\system32\drivers\afd.sys

O41 - Driver: (cdrom) . (.Microsoft Corporation - SCSI CD-ROM Driver.) - C:\Windows\System32\DRIVERS\cdrom.sys

O41 - Driver: (CFRMD) . (.Windows ® Win 7 DDK provider - Safe Deletion Driver.) - C:\Windows\System32\DRIVERS\CFRMD.sys

O41 - Driver: (cmderd) . (.COMODO - COMODO Internet Security Eradication Driver.) - C:\Windows\System32\DRIVERS\cmderd.sys

O41 - Driver: (cmdGuard) . (.COMODO - COMODO Internet Security Sandbox Driver.) - C:\Windows\System32\DRIVERS\cmdguard.sys

O41 - Driver: (cmdHlp) . (.COMODO - COMODO Internet Security Helper Driver.) - C:\Windows\System32\DRIVERS\cmdhlp.sys

O41 - Driver: C:\Windows\System32\drivers\dfsc.sys (DfsC) . (.Microsoft Corporation - DFS Namespace Client Driver.) - C:\Windows\System32\Drivers\dfsc.sys

O41 - Driver: (HMD) . (...) - C:\Windows\System32\DRIVERS\hmd.sys

O41 - Driver: (i8042prt) . (.Microsoft Corporation - Driver della porta i8042.) - C:\Windows\System32\DRIVERS\i8042prt.sys

O41 - Driver: (inspect) . (.COMODO - COMODO Internet Security Firewall Driver.) - C:\Windows\System32\DRIVERS\inspect.sys

O41 - Driver: (kbdclass) . (.Microsoft Corporation - Driver classe tastiera.) - C:\Windows\System32\DRIVERS\kbdclass.sys

O41 - Driver: (mouclass) . (.Microsoft Corporation - Driver Mouse Class.) - C:\Windows\System32\DRIVERS\mouclass.sys

O41 - Driver: (NetBIOS) . (.Microsoft Corporation - NetBIOS interface driver.) - C:\Windows\System32\DRIVERS\netbios.sys

O41 - Driver: (netbt) . (.Microsoft Corporation - MBT Transport driver.) - C:\Windows\System32\DRIVERS\netbt.sys

O41 - Driver: (nsiproxy) . (.Microsoft Corporation - NSI Proxy.) - C:\Windows\System32\drivers\nsiproxy.sys

O41 - Driver: C:\Windows\System32\drivers\pacer.sys (PSched) . (.Microsoft Corporation - Utilità di pianificazione pacchetti QoS.) - C:\Windows\System32\DRIVERS\pacer.sys

O41 - Driver: (RasAcd) . (.Microsoft Corporation - RAS Automatic Connection Driver.) - C:\Windows\System32\DRIVERS\rasacd.sys

O41 - Driver: (rdbss) . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) - C:\Windows\System32\DRIVERS\rdbss.sys

O41 - Driver: (RDPCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\DRIVERS\RDPCDD.sys

O41 - Driver: (RDPENCDD) . (.Microsoft Corporation - RDP Miniport.) - C:\Windows\System32\drivers\rdpencdd.sys

O41 - Driver: C:\Windows\System32\tcpipcfg.dll (Smb) . (.Microsoft Corporation - SMB Transport driver.) - C:\Windows\System32\DRIVERS\smb.sys

O41 - Driver: C:\Windows\System32\tcpipcfg.dll (tdx) . (.Microsoft Corporation - TDI Translation Driver.) - C:\Windows\System32\DRIVERS\tdx.sys

O41 - Driver: (TermDD) . (.Microsoft Corporation - Terminal Server Driver.) - C:\Windows\System32\DRIVERS\termdd.sys

O41 - Driver: (VgaSave) . (.Microsoft Corporation - VGA/Super VGA Video Driver.) - C:\Windows\system32\drivers\vga.sys

O41 - Driver: (Wanarpv6) . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) - C:\Windows\System32\DRIVERS\wanarp.sys

~ Drivers: 75 Scanned in 00mn 02s

 

 

 

---\\ Software installato (O42)

O42 - Logiciel: Acer Arcade Deluxe - (.CyberLink Corp..) [HKLM] -- InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}

O42 - Logiciel: Acer Crystal Eye Webcam 2.0.8 - (.SuYin.) [HKLM] -- {A77255C4-AFCB-44A3-BF0F-2091A71FFD9E}

O42 - Logiciel: Acer Dialer - (.Acer.) [HKLM] -- {F2EB512B-1FA1-4BFF-A269-B279726EA2A8}

O42 - Logiciel: Acer Empowering Technology - (.Acer Incorporated.) [HKLM] -- {8F1B6239-FEA0-450A-A950-B05276CE177C}

O42 - Logiciel: Acer GameZone Console 2.0.1.1 - (.Oberon Media, Inc..) [HKLM] -- Acer GameZone Console_is1

O42 - Logiciel: Acer GridVista - (...) [HKLM] -- GridVista

O42 - Logiciel: Acer Mobility Center Plug-In - (.Acer Inc..) [HKLM] -- {11316260-6666-467B-AC34-183FCB5D4335}

O42 - Logiciel: Acer ScreenSaver - (.Acer Incorporated.) [HKLM] -- {79DD56FC-DB8B-47F5-9C80-78B62E05F9BC}

O42 - Logiciel: Acer eDataSecurity Management - (.Egis Inc..) [HKLM] -- {A5633652-3795-4829-BB0B-644F0279E279}

O42 - Logiciel: Acer ePower Management - (.Acer Incorporated.) [HKLM] -- {58E5844B-7CE2-413D-83D1-99294BF6C74F}

O42 - Logiciel: Acer eRecovery Management - (.Acer Incorporated.) [HKLM] -- {7F811A54-5A09-4579-90E1-C93498E230D9}

O42 - Logiciel: Acer eSettings Management - (.Acer Incorporated.) [HKLM] -- {13D85C14-2B85-419F-AC41-C7F21E68B25D}

O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- Adobe AIR

O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM] -- {A0087DDE-69D0-11E2-AD57-43CA6188709B}

O42 - Logiciel: Adobe Flash Player 13 ActiveX - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player ActiveX

O42 - Logiciel: Adobe Flash Player 13 Plugin - (.Adobe Systems Incorporated.) [HKLM] -- Adobe Flash Player Plugin

O42 - Logiciel: Adobe Reader 9.4.5 - Italiano - (.Adobe Systems Incorporated\0.) [HKLM] -- {AC76BA86-7AD7-1040-7B44-A94000000001}

O42 - Logiciel: Agere Systems HDA Modem - (.Agere Systems.) [HKLM] -- Agere Systems Soft Modem

O42 - Logiciel: Alice Greenfingers - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112920767}

O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM] -- {18D47FA1-0440-48D3-A7E0-DA09537FF471}

O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} =>.Apple Inc

O42 - Logiciel: Azada - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113080210}

O42 - Logiciel: Backspin Billiards - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111543617}

O42 - Logiciel: Big Kahuna Reef - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110322783}

O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM] -- {79155F2B-9895-49D7-8612-D92580E0DE5B}

O42 - Logiciel: Bricks of Egypt - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11029123}

O42 - Logiciel: COMODO Internet Security Premium - (.COMODO Security Solutions Inc..) [HKLM] -- {A0BABADE-E154-4F08-97A1-2903CD110E88}

O42 - Logiciel: Cake Mania - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111199750}

O42 - Logiciel: Canon Utilities Easy-PhotoPrint EX - (...) [HKLM] -- Easy-PhotoPrint EX

O42 - Logiciel: Chicken Invaders 3 - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112531267}

O42 - Logiciel: Chuzzle - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110411970}

O42 - Logiciel: Comodo Dragon - (.COMODO.) [HKLM] -- Comodo Dragon

O42 - Logiciel: Diner Dash Flo on the Go - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111872660}

O42 - Logiciel: GeekBuddy - (.Comodo Security Solutions Inc.) [HKLM] -- {39AB4A9F-97DB-4BCA-981F-B85189115037}

O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM] -- Google Chrome

O42 - Logiciel: Google Desktop - (.Google.) [HKLM] -- Google Desktop

O42 - Logiciel: Google Earth - (.Google.) [HKLM] -- {4286E640-B5FB-11DF-AC4B-005056C00008} =>.Google Inc

O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}

O42 - Logiciel: Google Updater - (.Google Inc..) [HKLM] -- Google Updater

O42 - Logiciel: Intel® Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM] -- HDMI

O42 - Logiciel: J2SE Runtime Environment 5.0 Update 5 - (.Sun Microsystems, Inc..) [HKLM] -- {3248F0A8-6813-11D6-A77B-00B0D0150050}

O42 - Logiciel: Java 6 Update 30 - (.Sun Microsystems, Inc..) [HKLM] -- {26A24AE4-039D-4CA4-87B4-2F83216016FF}

O42 - Logiciel: Jewel Quest Solitaire - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111771833}

O42 - Logiciel: Kick N Rush - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111324990}

O42 - Logiciel: Launch Manager - (...) [HKLM] -- LManager

O42 - Logiciel: MSXML 4.0 SP2 (KB954430) - (.Microsoft Corporation.) [HKLM] -- {86493ADD-824D-4B8E-BD72-8C5DCDC52A71}

O42 - Logiciel: MSXML 4.0 SP2 (KB973688) - (.Microsoft Corporation.) [HKLM] -- {F662A8E6-F4DC-41A2-901E-8C11F044BDEC}

O42 - Logiciel: Mahjong Escape Ancient China - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111252743}

O42 - Logiciel: Mahjongg Artifacts - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111692950}

O42 - Logiciel: Malwarebytes Anti-Malware versione 1.75.0.1300 - (.Malwarebytes Corporation.) [HKLM] -- Malwarebytes' Anti-Malware_is1

O42 - Logiciel: Marvell Miniport Driver - (.Marvell.) [HKLM] -- Marvell Miniport Driver

O42 - Logiciel: Microsoft Works - (.Microsoft Corporation.) [HKLM] -- {62D5B0B1-9E1D-4d66-A593-D68F3FED7709}

O42 - Logiciel: Mozilla Firefox 29.0.1 (x86 it) - (.Mozilla.) [HKLM] -- Mozilla Firefox 29.0.1 (x86 it)

O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM] -- MozillaMaintenanceService

O42 - Logiciel: Mystery Case Files - Huntsville - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111118433}

O42 - Logiciel: Mystery Solitaire - Secret Island - (.Oberon Media.) [HKLM] -- {82C36957-D2B8-4EF2-B88C-5FA03AA848C7-111796363}

O42 - Logiciel: NTI Backup Now 5 - (.NewTech Infosystems.) [HKLM] -- InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}

O42 - Logiciel: NTI Media Maker 8 - (.NewTech Infosystems.) [HKLM] -- InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}

O42 - Logiciel: OpenAL - (...) [HKLM] -- OpenAL

O42 - Logiciel: Orion - (.Convesoft.) [HKLM] -- {5B63A470-9334-44D1-AF61-6CE2DB565AE9} =>PUP.Convesoft

O42 - Logiciel: PhotoNow! - (.CyberLink Corp..) [HKLM] -- {D36DD326-7280-11D8-97C8-000129760CBE}

O42 - Logiciel: PowerDirector - (.CyberLink Corp..) [HKLM] -- InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}

O42 - Logiciel: Presto! PageManager 7.15.16 - (.NewSoft Technology Corporation.) [HKLM] -- {D2D6B9EB-C6DC-4DAA-B4DE-BB7D9735E7DA}

O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}

O42 - Logiciel: Realtek USB 2.0 Card Reader - (.Realtek Semiconductor Corp..) [HKLM] -- {DC24971E-1946-445D-8A82-CE685433FA7D}

O42 - Logiciel: Registrazione utente Canon MX300 series - (...) [HKLM] -- Registrazione utente Canon MX300 series

O42 - Logiciel: ScanSoft OmniPage SE 4 - (.Nuance Communications, Inc..) [HKLM] -- {DEE88727-779B-47A9-ACEF-F87CA5F92A65}

O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- KB931906

O42 - Logiciel: Security Update for CAPICOM (KB931906) - (.Microsoft Corporation.) [HKLM] -- {0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}

O42 - Logiciel: Skype 6.14 - (.Skype Technologies S.A..) [HKLM] -- {7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}

O42 - Logiciel: Spelling Dictionaries Support For Adobe Reader 9 - (.Adobe Systems Incorporated.) [HKLM] -- {AC76BA86-7AD7-5464-3428-900000000004}

O42 - Logiciel: Supporto applicazioni Apple - (.Apple Inc..) [HKLM] -- {AAC5D43E-816D-4C2D-8E51-55FFF35BE301}

O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics.) [HKLM] -- SynTPDeinstKey

O42 - Logiciel: VLC media player 2.1.3 - (.VideoLAN.) [HKLM] -- VLC media player =>.VideoLAN

O42 - Logiciel: WinZip 16.5 - (.WinZip Computing, S.L. .) [HKLM] -- {CD95F661-A5C4-44F5-A6AA-ECDD91C240D2}

O42 - Logiciel: WinZip Courier - (.WinZip Computing, S.L. .) [HKLM] -- {CD95F661-A5C4-11AF-B2CC-ABCD21A325B8}

O42 - Logiciel: eSobi v2 - (.esobi Inc..) [HKLM] -- InstallShield_{15D967B5-A4BE-42AE-9E84-64CD062B25AA}

O42 - Logiciel: iTunes - (.Apple Inc..) [HKLM] -- {2F21564D-DE05-4C6D-B21E-08B9D313FAB3}

~ Logic: 39 Scanned in 00mn 00s

 

 

 

---\\ HKCU & HKLM Software Keys

[HKCU\Software\AVAST Software]

[HKCU\Software\Adobe]

[HKCU\Software\AppDataLow\COMODO]

[HKCU\Software\AppDataLow\Software\Google]

[HKCU\Software\AppDataLow]

[HKCU\Software\Apple Computer, Inc.]

[HKCU\Software\Apple Inc.]

[HKCU\Software\CanonBJ]

[HKCU\Software\Canon]

[HKCU\Software\Classes]

[HKCU\Software\Clients]

[HKCU\Software\ComodoGroup]

[HKCU\Software\CyberLink]

[HKCU\Software\ESET]

[HKCU\Software\EasyBits]

[HKCU\Software\Google]

[HKCU\Software\IM Providers]

[HKCU\Software\Intel]

[HKCU\Software\JavaSoft]

[HKCU\Software\Lake]

[HKCU\Software\Local AppWizard-Generated Applications]

[HKCU\Software\Macromedia]

[HKCU\Software\MainConcept]

[HKCU\Software\Malwarebytes' Anti-Malware]

[HKCU\Software\Mooii]

[HKCU\Software\MozillaPlugins]

[HKCU\Software\Mozilla]

[HKCU\Software\Netscape]

[HKCU\Software\NewTech Infosystems]

[HKCU\Software\Nico Mak Computing]

[HKCU\Software\Northcode Inc]

[HKCU\Software\ODBC]

[HKCU\Software\Oberon Media]

[HKCU\Software\Policies]

[HKCU\Software\Realtek]

[HKCU\Software\ScanSoft]

[HKCU\Software\Skype]

[HKCU\Software\Sonix]

[HKCU\Software\Synaptics]

[HKCU\Software\Sysinternals]

[HKCU\Software\TeamViewer]

[HKCU\Software\Wget]

[HKCU\Software\WinZip Computing]

[HKCU\Software\Wistron]

[HKCU\Software\Yahoo]

[HKCU\Software\acer]

[HKCU\Software\eSobi]

[HKCU\Software\ej-technologies]

[HKLM\Software\AVAST Software]

[HKLM\Software\Acer Inc.]

[HKLM\Software\Acer Incorporated]

[HKLM\Software\Acer]

[HKLM\Software\Adobe]

[HKLM\Software\AdwCleaner]

[HKLM\Software\Agere]

[HKLM\Software\America Online]

[HKLM\Software\Apple Computer, Inc.]

[HKLM\Software\Apple Inc.]

[HKLM\Software\BrowserChoice]

[HKLM\Software\COMODO]

[HKLM\Software\CXT]

[HKLM\Software\Canon]

[HKLM\Software\Classes]

[HKLM\Software\Clients]

[HKLM\Software\ComodoGroup]

[HKLM\Software\Conexant]

[HKLM\Software\CyberLink]

[HKLM\Software\EnigmaSoftwareGroup]

[HKLM\Software\Eset]

[HKLM\Software\Fotolibro Pixum]

[HKLM\Software\GEAR Software]

[HKLM\Software\GeekBuddyRSP]

[HKLM\Software\Google]

[HKLM\Software\IM Providers]

[HKLM\Software\InstallShield]

[HKLM\Software\InstalledOptions]

[HKLM\Software\Intel]

[HKLM\Software\JavaSoft]

[HKLM\Software\JreMetrics]

[HKLM\Software\LightScribe]

[HKLM\Software\Macromedia]

[HKLM\Software\Malwarebytes' Anti-Malware]

[HKLM\Software\Marvell]

[HKLM\Software\MimarSinan]

[HKLM\Software\Mooii]

[HKLM\Software\MozillaPlugins]

[HKLM\Software\Mozilla]

[HKLM\Software\NewSoft]

[HKLM\Software\NewTech Infosystems]

[HKLM\Software\Nico Mak Computing]

[HKLM\Software\ODBC]

[HKLM\Software\Oberon Media]

[HKLM\Software\OemSetup]

[HKLM\Software\Policies]

[HKLM\Software\Realtek Semiconductor Corp.]

[HKLM\Software\Realtek USB 2.0 Card Reader]

[HKLM\Software\Realtek]

[HKLM\Software\RegisteredApplications]

[HKLM\Software\SRS Labs]

[HKLM\Software\ScanSoft]

[HKLM\Software\Skype]

[HKLM\Software\Sonic]

[HKLM\Software\SuYin]

[HKLM\Software\Synaptics]

[HKLM\Software\TeamViewer]

[HKLM\Software\VideoLAN]

[HKLM\Software\WOW6432Node]

[HKLM\Software\Waves Audio]

[HKLM\Software\Windows]

[HKLM\Software\Wistron]

[HKLM\Software\ej-technologies]

[HKLM\Software\mozilla.org]

[HKLM\Software\muvee Technologies]

[HKLM\Software\nSplitter]

~ Key Software: 234 Scanned in 00mn 00s

 

 

 

---\\ Contenuto delle cartelle Programmi, ProgramFiles, ProgramData, AppData (O43)

O43 - CFD: 18/02/2009 - 21.16.40 - [] ----D C:\Program Files\Acer

O43 - CFD: 07/05/2008 - 23.30.44 - [] ----D C:\Program Files\Acer Arcade Deluxe

O43 - CFD: 02/09/2009 - 11.43.21 - [0] ----D C:\Program Files\Acer Dialer

O43 - CFD: 25/09/2010 - 11.20.34 - [] ----D C:\Program Files\Acer GameZone

O43 - CFD: 03/12/2008 - 15.22.34 - [] ----D C:\Program Files\Acer Inc

O43 - CFD: 07/05/2008 - 23.03.31 - [] ----D C:\Program Files\Acer Incorporated

O43 - CFD: 07/05/2008 - 23.13.35 - [] ----D C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites

O43 - CFD: 18/07/2013 - 17.00.46 - [] ----D C:\Program Files\Adobe

O43 - CFD: 17/12/2011 - 16.58.33 - [] ----D C:\Program Files\Apple Software Update =>.Apple Inc

O43 - CFD: 02/04/2011 - 18.38.49 - [] ----D C:\Program Files\AVAST Software

O43 - CFD: 07/05/2008 - 23.24.02 - [] ----D C:\Program Files\Big Kahuna Reef

O43 - CFD: 17/12/2011 - 16.51.22 - [] ----D C:\Program Files\Bonjour

O43 - CFD: 13/05/2013 - 17.16.28 - [] ----D C:\Program Files\BookSmart

O43 - CFD: 13/09/2013 - 16.02.12 - [] ----D C:\Program Files\Canon

O43 - CFD: 15/05/2014 - 10.09.07 - [] ----D C:\Program Files\Common Files

O43 - CFD: 10/09/2013 - 9.29.27 - [] ----D C:\Program Files\Comodo

O43 - CFD: 07/05/2008 - 23.28.07 - [] ----D C:\Program Files\Cyberlink

O43 - CFD: 24/01/2012 - 21.56.42 - [0] ----D C:\Program Files\Enigma Software Group

O43 - CFD: 25/01/2012 - 17.15.11 - [] ----D C:\Program Files\ESET

O43 - CFD: 03/12/2008 - 15.22.10 - [] ----D C:\Program Files\eSobi

O43 - CFD: 18/02/2009 - 21.11.33 - [] -SH-D C:\Program Files\File comuni

O43 - CFD: 04/10/2010 - 15.07.53 - [] ----D C:\Program Files\Google

O43 - CFD: 18/04/2014 - 19.45.14 - [] --H-D C:\Program Files\InstallShield Installation Information

O43 - CFD: 30/04/2008 - 9.21.35 - [] ----D C:\Program Files\Intel

O43 - CFD: 10/04/2014 - 3.44.04 - [] ----D C:\Program Files\Internet Explorer

O43 - CFD: 03/04/2014 - 9.37.42 - [] ----D C:\Program Files\iPod

O43 - CFD: 03/04/2014 - 9.39.20 - [] ----D C:\Program Files\iTunes

O43 - CFD: 25/06/2013 - 10.47.50 - [] ----D C:\Program Files\Java

O43 - CFD: 03/12/2008 - 15.18.10 - [] ----D C:\Program Files\Launch Manager

O43 - CFD: 30/03/2013 - 15.01.45 - [] ----D C:\Program Files\licenses

O43 - CFD: 11/04/2013 - 10.41.49 - [] ----D C:\Program Files\Malwarebytes' Anti-Malware

O43 - CFD: 30/04/2008 - 9.23.59 - [] ----D C:\Program Files\Marvell

O43 - CFD: 13/03/2009 - 14.15.47 - [] ----D C:\Program Files\Microsoft CAPICOM 2.1.0.2

O43 - CFD: 02/11/2006 - 14.37.34 - [] ----D C:\Program Files\Microsoft Games

O43 - CFD: 17/01/2014 - 15.38.27 - [] ----D C:\Program Files\Microsoft Office

O43 - CFD: 04/05/2009 - 11.36.00 - [] ----D C:\Program Files\Microsoft Visual Studio

O43 - CFD: 04/05/2009 - 11.32.35 - [] ----D C:\Program Files\Microsoft Visual Studio 8

O43 - CFD: 17/10/2009 - 11.04.47 - [] ----D C:\Program Files\Microsoft Works

O43 - CFD: 05/02/2012 - 17.16.20 - [] ----D C:\Program Files\Microsoft.NET

O43 - CFD: 04/02/2012 - 17.09.02 - [] ----D C:\Program Files\Movie Maker

O43 - CFD: 12/05/2014 - 11.36.44 - [] ----D C:\Program Files\Mozilla Firefox

O43 - CFD: 15/05/2014 - 11.33.28 - [] ----D C:\Program Files\Mozilla Maintenance Service

O43 - CFD: 04/05/2009 - 11.36.31 - [] ----D C:\Program Files\MSBuild

O43 - CFD: 13/03/2009 - 14.12.01 - [0] ----D C:\Program Files\MSXML 4.0

O43 - CFD: 10/03/2009 - 18.33.43 - [] ----D C:\Program Files\NewSoft

O43 - CFD: 07/05/2008 - 23.25.31 - [] ----D C:\Program Files\NewTech Infosystems

O43 - CFD: 25/09/2012 - 7.40.56 - [] ----D C:\Program Files\OpenAL

O43 - CFD: 19/07/2013 - 11.19.32 - [] ----D C:\Program Files\Pixum

O43 - CFD: 30/03/2013 - 15.01.45 - [] ----D C:\Program Files\readmes

O43 - CFD: 03/12/2008 - 15.16.40 - [] ----D C:\Program Files\Realtek

O43 - CFD: 30/03/2013 - 15.01.45 - [] ----D C:\Program Files\redist

O43 - CFD: 02/11/2006 - 14.37.34 - [] ----D C:\Program Files\Reference Assemblies

O43 - CFD: 10/03/2009 - 18.18.30 - [] ----D C:\Program Files\ScanSoft

O43 - CFD: 13/03/2014 - 11.01.53 - [] R---D C:\Program Files\Skype

O43 - CFD: 30/04/2008 - 9.25.07 - [] ----D C:\Program Files\Synaptics

O43 - CFD: 02/11/2006 - 15.01.55 - [0] --H-D C:\Program Files\Uninstall Information

O43 - CFD: 07/05/2014 - 16.57.15 - [] ----D C:\Program Files\VideoLAN

O43 - CFD: 04/02/2012 - 17.09.03 - [] ----D C:\Program Files\Windows Calendar

O43 - CFD: 04/02/2012 - 17.08.59 - [] ----D C:\Program Files\Windows Collaboration

O43 - CFD: 04/02/2012 - 17.08.46 - [] ----D C:\Program Files\Windows Defender

O43 - CFD: 18/07/2013 - 3.03.55 - [] ----D C:\Program Files\Windows Journal

O43 - CFD: 13/04/2012 - 3.03.08 - [] ----D C:\Program Files\Windows Mail =>.Microsoft Corporation

O43 - CFD: 04/02/2012 - 17.08.59 - [] ----D C:\Program Files\Windows Media Player =>.Microsoft Corporation

O43 - CFD: 18/02/2009 - 21.11.33 - [] ----D C:\Program Files\Windows NT

O43 - CFD: 04/02/2012 - 17.08.58 - [] ----D C:\Program Files\Windows Photo Gallery

O43 - CFD: 11/02/2012 - 18.07.32 - [] ----D C:\Program Files\Windows Portable Devices

O43 - CFD: 04/02/2012 - 17.09.00 - [] ----D C:\Program Files\Windows Sidebar

O43 - CFD: 14/06/2012 - 13.22.15 - [] ----D C:\Program Files\WinZip

O43 - CFD: 14/06/2012 - 13.25.10 - [] ----D C:\Program Files\WinZip Courier

O43 - CFD: 16/05/2014 - 10.27.30 - [] ----D C:\Program Files\ZHPDiag =>.Nicolas Coolman

O43 - CFD: 16/12/2012 - 11.07.00 - [] ----D C:\Program Files\Common Files\Adobe

O43 - CFD: 18/07/2013 - 17.00.45 - [] ----D C:\Program Files\Common Files\Adobe AIR

O43 - CFD: 03/04/2014 - 9.37.40 - [] ----D C:\Program Files\Common Files\Apple

O43 - CFD: 10/03/2009 - 18.02.43 - [] ----D C:\Program Files\Common Files\CANON

O43 - CFD: 15/05/2014 - 10.09.07 - [] ----D C:\Program Files\Common Files\COMODO

O43 - CFD: 15/05/2014 - 9.27.10 - [] ----D C:\Program Files\Common Files\DESIGNER

O43 - CFD: 10/03/2009 - 18.19.08 - [] ----D C:\Program Files\Common Files\InstallShield

O43 - CFD: 25/06/2013 - 10.46.29 - [] ----D C:\Program Files\Common Files\Java

O43 - CFD: 07/05/2008 - 23.25.12 - [] ----D C:\Program Files\Common Files\LightScribe

O43 - CFD: 11/02/2012 - 17.03.38 - [] ----D C:\Program Files\Common Files\microsoft shared

O43 - CFD: 07/05/2008 - 23.24.36 - [] ----D C:\Program Files\Common Files\muvee Technologies

O43 - CFD: 10/03/2009 - 18.34.19 - [] ----D C:\Program Files\Common Files\NewSoft

O43 - CFD: 10/03/2009 - 18.33.57 - [] ----D C:\Program Files\Common Files\PDFView

O43 - CFD: 10/03/2009 - 18.19.09 - [] ----D C:\Program Files\Common Files\ScanSoft Shared

O43 - CFD: 02/11/2006 - 13.18.33 - [] ----D C:\Program Files\Common Files\Services

O43 - CFD: 13/03/2014 - 11.01.51 - [] ----D C:\Program Files\Common Files\Skype

O43 - CFD: 02/11/2006 - 13.18.33 - [] ----D C:\Program Files\Common Files\SpeechEngines

O43 - CFD: 04/09/2012 - 3.12.18 - [] ----D C:\Program Files\Common Files\System

O43 - CFD: 26/05/2011 - 14.33.43 - [] ----D C:\Program Files\Common Files\Wise Installation Wizard

O43 - CFD: 03/04/2014 - 9.39.21 - [] ----D C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1

O43 - CFD: 24/02/2009 - 19.59.42 - [] ----D C:\ProgramData\Acer Dialer

O43 - CFD: 07/05/2008 - 23.24.09 - [] ----D C:\ProgramData\Acer GameZone Console

O43 - CFD: 18/07/2013 - 17.01.06 - [] ----D C:\ProgramData\Adobe

O43 - CFD: 03/04/2014 - 9.28.37 - [] ----D C:\ProgramData\Apple

O43 - CFD: 03/04/2014 - 9.37.36 - [] ----D C:\ProgramData\Apple Computer

O43 - CFD: 02/11/2006 - 15.02.03 - [] -SH-D C:\ProgramData\Application Data

O43 - CFD: 21/06/2011 - 11.07.07 - [0] ----D C:\ProgramData\AVAST Software

O43 - CFD: 10/09/2013 - 8.54.30 - [] ----D C:\ProgramData\Avira

O43 - CFD: 10/09/2013 - 9.35.36 - [] ----D C:\ProgramData\COMODO

O43 - CFD: 10/09/2013 - 9.27.54 - [] ----D C:\ProgramData\Comodo Downloader

O43 - CFD: 12/12/2009 - 17.59.10 - [] ----D C:\ProgramData\CyberLink

O43 - CFD: 18/02/2009 - 21.11.33 - [] -SH-D C:\ProgramData\Dati applicazioni

O43 - CFD: 02/11/2006 - 15.02.03 - [] -SH-D C:\ProgramData\Desktop

O43 - CFD: 18/02/2009 - 21.11.33 - [] -SH-D C:\ProgramData\Documenti

O43 - CFD: 02/11/2006 - 15.02.03 - [] -SH-D C:\ProgramData\Documents

O43 - CFD: 03/12/2008 - 15.22.19 - [] ----D C:\ProgramData\eSobi

O43 - CFD: 02/11/2006 - 15.02.03 - [] -SH-D C:\ProgramData\Favorites

O43 - CFD: 07/05/2008 - 23.14.20 - [] ----D C:\ProgramData\FloodLightGames

O43 - CFD: 28/03/2010 - 9.50.34 - [] ----D C:\ProgramData\Google

O43 - CFD: 11/09/2009 - 3.11.17 - [] ----D C:\ProgramData\Google Updater

O43 - CFD: 13/12/2012 - 16.33.33 - [] ----D C:\ProgramData\HP

O43 - CFD: 10/03/2009 - 18.19.24 - [] ----D C:\ProgramData\InstallShield

O43 - CFD: 06/02/2011 - 22.48.52 - [] ----D C:\ProgramData\Malwarebytes

O43 - CFD: 18/02/2009 - 21.11.33 - [] -SH-D C:\ProgramData\Menu Avvio

O43 - CFD: 04/03/2014 - 4.08.00 - [] -S--D C:\ProgramData\Microsoft

O43 - CFD: 15/05/2014 - 9.44.25 - [] ----D C:\ProgramData\Microsoft Help

O43 - CFD: 18/02/2009 - 21.11.33 - [] -SH-D C:\ProgramData\Modelli

O43 - CFD: 04/05/2012 - 9.49.38 - [] ----D C:\ProgramData\Mozilla

O43 - CFD: 18/02/2009 - 21.11.33 - [] -SH-D C:\ProgramData\Preferiti

O43 - CFD: 10/03/2009 - 18.19.15 - [] ----D C:\ProgramData\ScanSoft

O43 - CFD: 10/09/2013 - 9.32.34 - [] -S--D C:\ProgramData\Shared Space

O43 - CFD: 13/03/2014 - 11.02.19 - [] ----D C:\ProgramData\Skype

O43 - CFD: 05/11/2011 - 19.08.51 - [] ----D C:\ProgramData\Skype Extras

O43 - CFD: 02/11/2006 - 15.02.03 - [] -SH-D C:\ProgramData\Start Menu

O43 - CFD: 26/04/2011 - 9.52.30 - [] ----D C:\ProgramData\Sun

O43 - CFD: 23/09/2012 - 13.49.19 - [0] ---AD C:\ProgramData\TEMP

O43 - CFD: 02/11/2006 - 15.02.04 - [] -SH-D C:\ProgramData\Templates

O43 - CFD: 09/01/2010 - 10.12.50 - [] ----D C:\ProgramData\WindowsSearch

O43 - CFD: 26/09/2012 - 9.52.12 - [] ----D C:\ProgramData\WinZip

O43 - CFD: 14/06/2012 - 13.25.13 - [0] ----D C:\ProgramData\WinZipEC

O43 - CFD: 07/05/2008 - 23.13.35 - [] ----D C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}

O43 - CFD: 12/06/2013 - 12.25.39 - [0] --H-D C:\ProgramData\{175E0859-0138-41EB-B69A-C4CA293ADCCD}

O43 - CFD: 17/12/2011 - 17.23.24 - [] ----D C:\ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521}

O43 - CFD: 10/04/2012 - 18.40.22 - [] -SH-D C:\Users\Aspire 5735Z\AppData\Roaming\.#

O43 - CFD: 07/05/2008 - 23.24.09 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\Acer GameZone Console

O43 - CFD: 18/07/2013 - 16.54.15 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\Adobe

O43 - CFD: 28/06/2013 - 16.10.28 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\Apple Computer

O43 - CFD: 13/09/2013 - 16.02.06 - [0] ----D C:\Users\Aspire 5735Z\AppData\Roaming\Canon

O43 - CFD: 18/07/2013 - 17.01.05 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\com.picaboo.Picaboo.A382D4714709B456C4E0088DFC1F7243AF9EBF75.1

O43 - CFD: 03/03/2009 - 17.18.19 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\CyberLink

O43 - CFD: 20/11/2012 - 13.36.08 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\Delivery

O43 - CFD: 20/02/2009 - 22.34.57 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\eSobi

O43 - CFD: 24/02/2009 - 14.02.11 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\Google

O43 - CFD: 18/02/2009 - 21.16.41 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\Identities

O43 - CFD: 21/07/2013 - 10.37.10 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\jAlbum

O43 - CFD: 18/02/2009 - 21.17.08 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\Macromedia

O43 - CFD: 06/02/2011 - 22.49.07 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\Malwarebytes

O43 - CFD: 02/11/2006 - 14.37.34 - [0] ----D C:\Users\Aspire 5735Z\AppData\Roaming\Media Center Programs

O43 - CFD: 19/03/2014 - 12.33.38 - [] -S--D C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft

O43 - CFD: 01/04/2011 - 10.10.18 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\Mozilla

O43 - CFD: 10/12/2010 - 11.47.32 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\NewSoft

O43 - CFD: 30/03/2013 - 18.05.46 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\OpenOffice.org

O43 - CFD: 16/12/2012 - 16.36.56 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\PhotoScape

O43 - CFD: 10/03/2009 - 18.19.19 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\ScanSoft

O43 - CFD: 16/05/2014 - 9.36.21 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\Skype

O43 - CFD: 05/11/2011 - 18.58.50 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\skypePM

O43 - CFD: 17/07/2013 - 10.31.29 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\Sun

O43 - CFD: 16/11/2011 - 17.37.07 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\TeamViewer

O43 - CFD: 08/05/2014 - 10.26.26 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\vlc

O43 - CFD: 16/05/2014 - 10.31.35 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\ZHP =>.Nicolas Coolman

O43 - CFD: 03/03/2009 - 17.18.08 - [] ----D C:\Users\Aspire 5735Z\AppData\Local\Acer Arcade Deluxe

O43 - CFD: 18/07/2013 - 16.53.06 - [] ----D C:\Users\Aspire 5735Z\AppData\Local\Adobe

O43 - CFD: 17/12/2011 - 16.58.54 - [] ----D C:\Users\Aspire 5735Z\AppData\Local\Apple

O43 - CFD: 17/12/2011 - 17.24.30 - [] ----D C:\Users\Aspire 5735Z\AppData\Local\Apple Computer

O43 - CFD: 10/09/2013 - 9.28.18 - [] ----D C:\Users\Aspire 5735Z\AppData\Local\Comodo

O43 - CFD: 18/02/2009 - 21.15.27 - [] -SH-D C:\Users\Aspire 5735Z\AppData\Local\Cronologia

O43 - CFD: 03/03/2009 - 17.18.16 - [] ----D C:\Users\Aspire 5735Z\AppData\Local\CyberLink

O43 - CFD: 18/02/2009 - 21.15.27 - [] -SH-D C:\Users\Aspire 5735Z\AppData\Local\Dati applicazioni

O43 - CFD: 30/03/2013 - 15.02.16 - [] ----D C:\Users\Aspire 5735Z\AppData\Local\Google

O43 - CFD: 20/11/2012 - 14.46.38 - [] ----D C:\Users\Aspire 5735Z\AppData\Local\Macromedia

O43 - CFD: 20/11/2012 - 14.46.38 - [] ----D C:\Users\Aspire 5735Z\AppData\Local\Microsoft

O43 - CFD: 22/09/2012 - 9.07.36 - [] ----D C:\Users\Aspire 5735Z\AppData\Local\Microsoft Games

O43 - CFD: 01/04/2009 - 13.37.35 - [] ----D C:\Users\Aspire 5735Z\AppData\Local\Microsoft Help

O43 - CFD: 01/04/2011 - 10.08.58 - [] ----D C:\Users\Aspire 5735Z\AppData\Local\Mozilla

O43 - CFD: 03/09/2012 - 13.59.54 - [] ----D C:\Users\Aspire 5735Z\AppData\Local\Nexway

O43 - CFD: 05/03/2009 - 21.49.08 - [] ----D C:\Users\Aspire 5735Z\AppData\Local\PlayMovie

O43 - CFD: 12/12/2009 - 17.59.07 - [] ----D C:\Users\Aspire 5735Z\AppData\Local\PowerCinema

O43 - CFD: 11/03/2009 - 11.58.46 - [] ----D C:\Users\Aspire 5735Z\AppData\Local\Scansoft

O43 - CFD: 13/03/2014 - 11.02.47 - [] ----D C:\Users\Aspire 5735Z\AppData\Local\Skype

O43 - CFD: 03/03/2009 - 17.18.18 - [] ----D C:\Users\Aspire 5735Z\AppData\Local\SoftDMA

O43 - CFD: 16/05/2014 - 10.29.59 - [] ----D C:\Users\Aspire 5735Z\AppData\Local\Temp

O43 - CFD: 18/02/2009 - 21.15.27 - [] -SH-D C:\Users\Aspire 5735Z\AppData\Local\Temporary Internet Files

O43 - CFD: 26/01/2010 - 11.11.24 - [] ----D C:\Users\Aspire 5735Z\AppData\Local\VirtualStore

O43 - CFD: 13/12/2012 - 19.47.16 - [] ----D C:\Users\Aspire 5735Z\AppData\Local\WinZip

O43 - CFD: 14/06/2012 - 14.26.09 - [0] ----D C:\Users\Aspire 5735Z\AppData\Local\WinZip Courier

O43 - CFD: 25/06/2013 - 10.44.28 - [] ----D C:\Users\Aspire 5735Z\AppData\Local\{3248F0A6-6813-11D6-A77B-00B0D0150050}

O43 - CFD: 21/01/2008 - 4.42.46 - [] R---D C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories

O43 - CFD: 18/02/2009 - 21.16.54 - [] R---D C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools

O43 - CFD: 07/05/2008 - 23.28.01 - [] ----D C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDirector

O43 - CFD: 21/01/2008 - 4.42.46 - [] R---D C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance

O43 - CFD: 10/04/2013 - 9.22.34 - [] R---D C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup

~ Program Folder: 191 Scanned in 00mn 00s

 

 

 

---\\ Ultimi file modificati o creati su Windows e System32 (O44)

O44 - LFC:[MD5.41F1636BDCF4D06D716DC77E436677E1] - 06/05/2014 - 0.14.12 ---A- . (.Microsoft Corporation - Microsoft® MSHTML Typelib.) -- C:\Windows\System32\mshtml.tlb [2382848]

O44 - LFC:[MD5.202F1B15130E696EA7F31E0F52BFF621] - 06/05/2014 - 0.14.19 ---A- . (.Microsoft Corporation - Microsoft® HTML Editing Component.) -- C:\Windows\System32\mshtmled.dll [73216]

O44 - LFC:[MD5.0E468A0C51460D8DA3DF9B782275F1DB] - 06/05/2014 - 0.32.27 ---A- . (.Microsoft Corporation - Visualizzatore HTML Microsoft ®.) -- C:\Windows\System32\mshtml.dll [12347392]

O44 - LFC:[MD5.DA55DD23E7F1E86AD57A6CC2C1AB18F4] - 12/05/2014 - 9.34.21 ---A- . (...) -- C:\Windows\setupact.log [243635]

O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 12/05/2014 - 9.34.21 --HA- . (...) -- C:\Windows\System32\Drivers\Msft_User_WpdRapi_01_00_00.Wdf [0]

O44 - LFC:[MD5.8C4836F71F2DB629A99CF5A774594C66] - 14/05/2014 - 11.12.42 ---A- . (.Microsoft Corporation - DLL comune della shell di Windows.) -- C:\Windows\System32\shell32.dll [11587584]

O44 - LFC:[MD5.0DC5AF80D059DEC792B665ED598C6567] - 15/05/2014 - 11.21.09 ---A- . (.SQLite Development Team - SQLite Dynamic Link Library (No TCL).) -- C:\Windows\System32\sqlite3.dll [536576]

O44 - LFC:[MD5.545C16DA74C51050F80A8C18BABF130F] - 15/05/2014 - 8.07.58 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\Windows\System32\FlashPlayerApp.exe [692400]

O44 - LFC:[MD5.23B9EB53778D5EE128E4803039099A1D] - 15/05/2014 - 8.07.58 ---A- . (.Adobe Systems Incorporated - Adobe Flash Player Control Panel Applet.) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [70832]

O44 - LFC:[MD5.F541298E463FA96F128629E799352E60] - 15/05/2014 - 8.29.20 ---A- . (.Microsoft Corporation - Strumento di rimozione malware.) -- C:\Windows\System32\mrt.exe [90547776]

O44 - LFC:[MD5.0DB7527DB188C7D967A37BB51BBF3963] - 15/05/2014 - 9.08.41 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\System32\Drivers\mbamswissarmy.sys [40776]

O44 - LFC:[MD5.CD7B3CAA5E2B8871AF7281736A1751B7] - 16/05/2014 - 8.29.54 ---A- . (...) -- C:\Windows\PFRO.log [11032214]

O44 - LFC:[MD5.A4CF91CC17E3770FFDC470AFE2B7999F] - 16/05/2014 - 8.29.57 -S-A- . (...) -- C:\Windows\bootstat.dat [67584]

O44 - LFC:[MD5.CEAF98D916D2B75B8704BEE7680EE0B5] - 16/05/2014 - 8.30.16 ---A- . (...) -- C:\Windows\System32\agent.log [0]

O44 - LFC:[MD5.D41D8CD98F00B204E9800998ECF8427E] - 16/05/2014 - 8.30.26 ---A- . (...) -- C:\Windows\System32\LogConfigTemp.xml [0]

O44 - LFC:[MD5.104F521067E1603B12DEBC8BD5D5689A] - 16/05/2014 - 8.37.21 ---A- . (...) -- C:\Windows\System32\PerfStringBackup.INI [1614048]

O44 - LFC:[MD5.83370F7E89A36F2BCA18133B9BAAFFC3] - 16/05/2014 - 8.37.21 ---A- . (...) -- C:\Windows\System32\perfc009.dat [120894]

O44 - LFC:[MD5.8C79002BF2218E2C202E545255AB2B14] - 16/05/2014 - 8.37.21 ---A- . (...) -- C:\Windows\System32\perfc010.dat [144366]

O44 - LFC:[MD5.A1043B3C06B4DAA35A39868EE487E111] - 16/05/2014 - 8.37.21 ---A- . (...) -- C:\Windows\System32\perfh009.dat [637388]

O44 - LFC:[MD5.035608DB72E666AD55CCB3FFD58A9C91] - 16/05/2014 - 8.37.21 ---A- . (...) -- C:\Windows\System32\perfh010.dat [717898]

O44 - LFC:[MD5.154294B7BE0DAE60DC538ABD626D8B55] - 16/05/2014 - 8.37.54 ---A- . (...) -- C:\Windows\WindowsUpdate.log [1565660]

O44 - LFC:[MD5.51ADCD211D55B02D3FF08F078FAD8665] - 16/05/2014 - 9.28.39 ---A- . (...) -- C:\Windows\System32\Drivers\sfi.dat [1474832]

~ Files: 22 Scanned in 02mn 47s

 

 

 

---\\ Operazioni e funzioni all'avvio di Windows Explorer (O46)

O46 - SEH:ShellExecuteHooks - Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll

~ ShellExecuteHooks: Scanned in 00mn 00s

 

 

 

---\\ Denial of service (Local Security Authority) (O48)

O48 - LSA:Local Security Authority Authentication Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll

O48 - LSA:Local Security Authority Notification Packages . (.Microsoft Corporation - Modulo di gestione client dell'Editor di configurazione della protezione di Wind.) -- C:\Windows\System32\scecli.dll

O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Pacchetto di protezione Kerberos.) -- C:\Windows\System32\kerberos.dll

O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Authentication Package v1.0.) -- C:\Windows\System32\msv1_0.dll

O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - TLS / SSL Security Provider.) -- C:\Windows\System32\schannel.dll

O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Microsoft Digest Access.) -- C:\Windows\System32\wdigest.dll

O48 - LSA:Local Security Authority Security Packages . (.Microsoft Corporation - Web Service Security Package.) -- C:\Windows\System32\tspkg.dll

~ LSA: 7 Scanned in 00mn 00s

 

 

 

---\\ Controllo di avvio sicuro (CSB) (O49)

O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\sermouse.sys . (.Microsoft Corporation - Driver filtro mouse seriale.) -- C:\Windows\System32\Drivers\sermouse.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)

O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Minimal\volmgrx.sys . (.Microsoft Corporation - Volume Manager Extension Driver.) -- C:\Windows\System32\Drivers\volmgrx.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\ipnat.sys . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\Drivers\ipnat.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\nsiproxy.sys . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\Drivers\nsiproxy.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\rdpencdd.sys . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\Drivers\rdpencdd.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\sermouse.sys . (.Microsoft Corporation - Driver filtro mouse seriale.) -- C:\Windows\System32\Drivers\sermouse.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vga.sys . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\Drivers\vga.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\vgasave.sys . (...) -- C:\Windows\System32\Drivers\vgasave.sys (.not file.)

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgr.sys . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\Drivers\volmgr.sys

O49 - CSB:Control Safe Boot HKLM\...\CCS\Network\volmgrx.sys . (.Microsoft Corporation - Volume Manager Extension Driver.) -- C:\Windows\System32\Drivers\volmgrx.sys

~ CSB: 13 Scanned in 00mn 00s

 

 

 

---\\ Cerca "infezione i driver (HKLM) (TDSD) (O52)

O52 - TDSD: \Drivers32\"msacm.l3acm"="C:\Windows\System32\l3codeca.acm" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm

O52 - TDSD: \Drivers32\"vidc.cvid"="iccvid.dll" . (.Radius Inc. - Codec Cinepak®.) -- C:\Windows\System32\iccvid.dll

O52 - TDSD: \Drivers32\"vidc.iv50"="ir50_32.dll" . (.Intel Corporation - Intel Indeo® video 5.10.) -- C:\Windows\System32\ir50_32.dll

O52 - TDSD: \drivers.desc\"C:\Windows\System32\l3codeca.acm"="Fraunhofer IIS MPEG Layer-3 Codec" . (.Fraunhofer Institut Integrierte Schaltungen - MPEG Layer-3 Audio Codec for MSACM.) -- C:\Windows\System32\l3codeca.acm

~ TDSD: 4 Scanned in 00mn 00s

 

 

 

---\\ Enumerazione delle chiavi del Registro di sistema SecurityProviders (MCSP) (O54)

O54 - MCSP:[HKLM\...\CurrentControlSet\Control] - (SecurityProviders) - (.Microsoft Corporation - TS Single Sign On Security Package.) -- C:\Windows\System32\credssp.dll

O54 - MCSP:[HKLM\...\ControlSet001\Control] - (SecurityProviders) - (.Microsoft Corporation - TS Single Sign On Security Package.) -- C:\Windows\System32\credssp.dll

~ MSCP: 2 Scanned in 00mn 00s

 

 

 

---\\ Enumerazione del Registro chiavi PoliciesSystem (MWPS) (O55)

O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorAdmin"=2

O55 - MWPS:[HKLM\...\Policies\System] - "ConsentPromptBehaviorUser"=1

O55 - MWPS:[HKLM\...\Policies\System] - "EnableInstallerDetection"=1

O55 - MWPS:[HKLM\...\Policies\System] - "EnableSecureUIAPaths"=1

O55 - MWPS:[HKLM\...\Policies\System] - "EnableVirtualization"=1

O55 - MWPS:[HKLM\...\Policies\System] - "PromptOnSecureDesktop"=1

O55 - MWPS:[HKLM\...\Policies\System] - "ValidateAdminCodeSignatures"=0

O55 - MWPS:[HKLM\...\Policies\System] - "dontdisplaylastusername"=0

O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticecaption"=0

O55 - MWPS:[HKLM\...\Policies\System] - "legalnoticetext"=0

O55 - MWPS:[HKLM\...\Policies\System] - "scforceoption"=0

O55 - MWPS:[HKLM\...\Policies\System] - "shutdownwithoutlogon"=1

O55 - MWPS:[HKLM\...\Policies\System] - "undockwithoutlogon"=1

O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0

O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0

O55 - MWPS:[HKLM\...\Policies\System] - "DisableRegistryTools"=0

~ MWPS: 16 Scanned in 00mn 00s

 

 

 

---\\ Enumerazione della chiave del Registro di sistema PoliciesExplorer (SRI) (O56)

O56 - MWPE:[HKCU\...\policies\Explorer] - "NoDrives"=0

O56 - MWPE:[HKLM\...\policies\Explorer] - "NoDrives"=0

O56 - MWPE:[HKLM\...\policies\Explorer] - "BindDirectlyToPropertySetStorage"=0

~ MWPE Keys: 3 Scanned in 00mn 00s

 

 

 

---\\ Elenco dei driver del sistema (SDL) (O58)

O58 - SDL:21/01/2008 - 3.23.21 ---A- . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\Drivers\adp94xx.sys [422968]

O58 - SDL:21/01/2008 - 3.23.25 ---A- . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\Drivers\adpahci.sys [300600]

O58 - SDL:21/01/2008 - 3.23.26 ---A- . (.Adaptec, Inc. - Adaptec LH Ultra160 Driver (x86).) -- C:\Windows\System32\Drivers\adpu160m.sys [101432]

O58 - SDL:21/01/2008 - 3.23.27 ---A- . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver.) -- C:\Windows\System32\Drivers\adpu320.sys [149560]

O58 - SDL:01/03/2008 - 0.13.38 ---A- . (.Agere Systems - SoftModem Device Driver.) -- C:\Windows\System32\Drivers\AGRSM.sys [1202560]

O58 - SDL:21/01/2008 - 3.23.00 ----- . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\Drivers\aliide.sys [17464]

O58 - SDL:21/01/2008 - 3.23.23 ---A- . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\Drivers\arc.sys [79416]

O58 - SDL:21/01/2008 - 3.23.24 ---A- . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\Drivers\arcsas.sys [79928]

O58 - SDL:15/08/2008 - 3.37.08 ---A- . (.Atheros Communications, Inc. - Atheros Extensible Wireless LAN device driver.) -- C:\Windows\System32\Drivers\athr.sys [921600]

O58 - SDL:21/01/2008 - 3.23.20 ---A- . (.Broadcom Corporation - Driver Broadcom NetXtreme Gigabit Ethernet NDIS6.0..) -- C:\Windows\System32\Drivers\b57nd60x.sys [179712]

O58 - SDL:02/11/2006 - 9.24.45 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltLo.sys [13568]

O58 - SDL:02/11/2006 - 9.24.46 ---A- . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper Filter Driver.) -- C:\Windows\System32\Drivers\BrFiltUp.sys [5248]

O58 - SDL:02/11/2006 - 9.25.24 ---A- . (.Brother Industries Ltd. - Driver I/F seriale Brother (WDM).) -- C:\Windows\System32\Drivers\BrSerId.sys [71808]

O58 - SDL:02/11/2006 - 9.24.44 ---A- . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\Drivers\BrSerWdm.sys [62336]

O58 - SDL:02/11/2006 - 9.24.44 ---A- . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\Drivers\BrUsbMdm.sys [12160]

O58 - SDL:02/11/2006 - 9.24.47 ---A- . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\Drivers\BrUsbSer.sys [11904]

O58 - SDL:07/05/2013 - 8.00.18 ---A- . (.Windows ® Win 7 DDK provider - Safe Deletion Driver.) -- C:\Windows\System32\Drivers\CFRMD.sys [35064]

O58 - SDL:16/04/2014 - 22.12.49 ---A- . (.COMODO - COMODO Internet Security Eradication Driver.) -- C:\Windows\System32\Drivers\cmderd.sys [20072]

O58 - SDL:16/04/2014 - 22.12.50 ---A- . (.COMODO - COMODO Internet Security Sandbox Driver.) -- C:\Windows\System32\Drivers\cmdguard.sys [607680]

O58 - SDL:16/04/2014 - 22.12.50 ---A- . (.COMODO - COMODO Internet Security Helper Driver.) -- C:\Windows\System32\Drivers\cmdhlp.sys [43216]

O58 - SDL:21/01/2008 - 3.23.00 ----- . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\cmdide.sys [19000]

O58 - SDL:02/11/2006 - 10.50.11 ---A- . (.Adaptec, Inc. - Adaptec Ultra SCSI miniport.) -- C:\Windows\System32\Drivers\djsvs.sys [71272]

O58 - SDL:03/11/2006 - 6.29.36 ---A- . (.Dritek System Inc. - Dritek PS2 Keyboard Filter Driver.) -- C:\Windows\System32\Drivers\DKbFltr.sys [21264]

O58 - SDL:21/01/2008 - 3.23.24 ---A- . (.Intel Corporation - Driver deserializzato NDIS 6 scheda Intel® PRO/1000.) -- C:\Windows\System32\Drivers\E1G60I32.sys [118784]

O58 - SDL:21/01/2008 - 3.23.22 ---A- . (.Emulex - Storport Miniport Driver for LightPulse HBAs.) -- C:\Windows\System32\Drivers\elxstor.sys [342584]

O58 - SDL:21/08/2012 - 13.01.22 ---A- . (.GEAR Software Inc. - CD DVD Filter.) -- C:\Windows\System32\Drivers\GEARAspiWDM.sys [26840]

O58 - SDL:07/10/2013 - 6.17.38 ---A- . (...) -- C:\Windows\System32\Drivers\hmd.sys [15400]

O58 - SDL:21/01/2008 - 3.23.26 ---A- . (.Hewlett-Packard Company - Smart Array Storport Driver.) -- C:\Windows\System32\Drivers\HpCISSs.sys [40504]

O58 - SDL:21/01/2008 - 3.23.23 ---A- . (.Intel Corporation - Intel Matrix Storage Manager driver (base).) -- C:\Windows\System32\Drivers\iaStorV.sys [235064]

O58 - SDL:25/08/2010 - 19.31.30 ---A- . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\Drivers\igdkmd32.sys [9024512]

O58 - SDL:02/11/2006 - 10.50.17 ---A- . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\Drivers\iirsp.sys [41576]

O58 - SDL:16/04/2014 - 22.12.51 ---A- . (.COMODO - COMODO Internet Security Firewall Driver.) -- C:\Windows\System32\Drivers\inspect.sys [92656]

O58 - SDL:21/03/2008 - 9.48.24 ---A- . (.Acer, Inc. - int15.) -- C:\Windows\System32\Drivers\int15.sys [15392]

O58 - SDL:21/03/2008 - 9.48.24 ---A- . (.Acer, Inc. - int15.) -- C:\Windows\System32\Drivers\int15_64.sys [17952]

O58 - SDL:02/11/2006 - 10.50.07 ---A- . (.Integrated Technology Express, Inc. - ITE IT8211 ATA/ATAPI SCSI miniport.) -- C:\Windows\System32\Drivers\iteatapi.sys [35944]

O58 - SDL:02/11/2006 - 10.50.09 ---A- . (.Integrated Technology Express, Inc. - ITE IT8212 ATA RAID SCSI miniport.) -- C:\Windows\System32\Drivers\iteraid.sys [35944]

O58 - SDL:21/01/2008 - 3.23.23 ---A- . (.LSI Logic - LSI Logic Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_fc.sys [96312]

O58 - SDL:21/01/2008 - 3.23.25 ---A- . (.LSI Logic - LSI Logic Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_sas.sys [89656]

O58 - SDL:21/01/2008 - 3.23.23 ---A- . (.LSI Logic - LSI Logic Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\Drivers\lsi_scsi.sys [96312]

O58 - SDL:04/04/2013 - 13.50.32 ---A- . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) -- C:\Windows\System32\Drivers\mbam.sys [22856]

O58 - SDL:15/05/2014 - 9.08.41 ---A- . (.Malwarebytes Corporation - Malwarebytes' Anti-Malware.) -- C:\Windows\System32\Drivers\mbamswissarmy.sys [40776]

O58 - SDL:21/01/2008 - 3.23.27 ---A- . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows Vista/Longhorn for x.) -- C:\Windows\System32\Drivers\megasas.sys [31288]

O58 - SDL:21/01/2008 - 3.23.27 ---A- . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\Drivers\MegaSR.sys [386616]

O58 - SDL:02/11/2006 - 10.49.59 ---A- . (.LSI Logic Corporation - MegaRAID RAID Controller Driver for Windows Vista/Longhorn for.) -- C:\Windows\System32\Drivers\Mraid35x.sys [33384]

O58 - SDL:02/11/2006 - 10.50.19 ---A- . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\Drivers\nfrd960.sys [45160]

O58 - SDL:21/01/2008 - 3.23.23 ---A- . (.National Semiconductor Corporation - NSC Fast Infrared Driver..) -- C:\Windows\System32\Drivers\nscirda.sys [30720]

O58 - SDL:31/01/2008 - 2.52.06 ---A- . (.NewTech Infosystems, Inc. - NTI CD-ROM Filter Driver.) -- C:\Windows\System32\Drivers\NTIDrvr.sys [14848]

O58 - SDL:02/11/2006 - 8.36.50 ---A- . (.N-trig Innovative Technologies - Driver incluso per digitalizzatore Tablet PC N-trig.) -- C:\Windows\System32\Drivers\ntrigdigi.sys [20608]

O58 - SDL:21/01/2008 - 3.23.21 ---A- . (.NVIDIA Corporation - NVIDIA® nForce RAID Driver.) -- C:\Windows\System32\Drivers\nvraid.sys [102968]

O58 - SDL:21/01/2008 - 3.23.21 ---A- . (.NVIDIA Corporation - NVIDIA® nForce Sata Performance Driver.) -- C:\Windows\System32\Drivers\nvstor.sys [45112]

O58 - SDL:14/05/2008 - 17.05.42 ---A- . (.Egis Incorporated - Acer eDataSecurity Management PSD Filter Driver.) -- C:\Windows\System32\Drivers\psdfilter.sys [18992]

O58 - SDL:14/05/2008 - 17.05.42 ---A- . (.Egis Incorporated - Acer eDataSecurity Management PSD Named Pipe Driver.) -- C:\Windows\System32\Drivers\PSDNServ.sys [16944]

O58 - SDL:14/05/2008 - 17.05.44 ---A- . (.Egis Incorporated - Acer eDataSecurity Management PSD Virtual Disk Driver.) -- C:\Windows\System32\Drivers\PSDVdisk.sys [60464]

O58 - SDL:21/01/2008 - 3.23.24 ---A- . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\Drivers\ql2300.sys [1122360]

O58 - SDL:02/11/2006 - 10.50.35 ---A- . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\Drivers\ql40xx.sys [106088]

O58 - SDL:14/06/2008 - 2.10.08 ---A- . (.Realtek Semiconductor Corp. - Realtek® High Definition Audio Function Driver.) -- C:\Windows\System32\Drivers\RTKVHDA.sys [2152344]

O58 - SDL:12/08/2008 - 13.33.38 ---A- . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for Vista.) -- C:\Windows\System32\Drivers\RTSTOR.sys [61440]

O58 - SDL:02/11/2006 - 7.37.21 ---A- . (.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) -- C:\Windows\System32\Drivers\secdrv.sys [20480]

O58 - SDL:21/01/2008 - 3.23.26 ---A- . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\Drivers\sisraid4.sys [74808]

O58 - SDL:02/11/2006 - 10.50.05 ---A- . (.LSI Logic - LSI Logic 8XX SCSI Miniport Driver.) -- C:\Windows\System32\Drivers\symc8xx.sys [35944]

O58 - SDL:02/11/2006 - 10.49.56 ---A- . (.LSI Logic - LSI Logic Hi-Perf SCSI Miniport Driver.) -- C:\Windows\System32\Drivers\sym_hi.sys [31848]

O58 - SDL:02/11/2006 - 10.50.03 ---A- . (.LSI Logic - LSI Logic Ultra160 SCSI Miniport Driver.) -- C:\Windows\System32\Drivers\sym_u3.sys [34920]

O58 - SDL:25/04/2008 - 19.08.42 ---A- . (.Synaptics, Inc. - Synaptics Touchpad Driver.) -- C:\Windows\System32\Drivers\SynTP.sys [199472]

O58 - SDL:23/01/2012 - 15.33.32 ---A- . (...) -- C:\Windows\System32\Drivers\TrueSight.sys [111872]

O58 - SDL:25/02/2008 - 16.29.24 ---A- . (.EnTech Taiwan - TVicPort Driver for Windows NT/2000/XP.) -- C:\Windows\System32\Drivers\TVicPort.sys [14544]

O58 - SDL:31/01/2008 - 2.51.50 ---A- . (.NewTech Infosystems Corporation - NTI CDROM Filter Driver.) -- C:\Windows\System32\Drivers\UBHelper.sys [13824]

O58 - SDL:21/01/2008 - 3.23.20 ---A- . (.ULi Electronics Inc. - ULi SATA Controller Driver.) -- C:\Windows\System32\Drivers\uliahci.sys [238648]

O58 - SDL:02/11/2006 - 10.50.35 ---A- . (.Promise Technology, Inc. - Promise Ultra/Sata Series Driver for Win2003.) -- C:\Windows\System32\Drivers\ulsata.sys [98408]

O58 - SDL:21/01/2008 - 3.23.23 ---A- . (.Promise Technology, Inc. - Promise SATAII150 Series Windows Drivers.) -- C:\Windows\System32\Drivers\ulsata2.sys [115816]

O58 - SDL:13/12/2012 - 14.50.38 ---A- . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\Drivers\usbaapl.sys [45056]

O58 - SDL:21/01/2008 - 3.23.00 ----- . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\Drivers\viaide.sys [20024]

O58 - SDL:21/01/2008 - 3.23.23 ---A- . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\Drivers\vsmraid.sys [130616]

O58 - SDL:21/01/2008 - 3.23.22 ---A- . (.Conexant Systems, Inc. - HSF_HWAZL WDM driver.) -- C:\Windows\System32\Drivers\VSTAZL3.SYS [200704]

O58 - SDL:21/01/2008 - 3.23.23 ---A- . (.Conexant Systems, Inc. - HSF_CNXT driver.) -- C:\Windows\System32\Drivers\VSTCNXT3.SYS [654336]

O58 - SDL:21/01/2008 - 3.23.22 ---A- . (.Conexant Systems, Inc. - HSF_DP driver.) -- C:\Windows\System32\Drivers\VSTDPV3.SYS [987648]

O58 - SDL:21/02/2008 - 10.55.00 ---A- . (.Marvell - Miniport Driver for Marvell Yukon Ethernet Controller..) -- C:\Windows\System32\Drivers\yk60x86.sys [299008]

O58 - SDL:25/02/2008 - 16.29.24 ---A- . (.Zeal SoftStudio - zntport.) -- C:\Windows\System32\Drivers\zntport.sys [6080]

O58 - SDL:02/11/2006 - 8.09.42 ---A- . (...) -- C:\Windows\System32\ANSI.SYS [9029]

O58 - SDL:02/11/2006 - 8.09.45 ---A- . (...) -- C:\Windows\System32\country.sys [27097]

O58 - SDL:02/11/2006 - 8.09.41 ---A- . (...) -- C:\Windows\System32\HIMEM.SYS [4768]

O58 - SDL:02/11/2006 - 8.09.44 ---A- . (...) -- C:\Windows\System32\KEY01.SYS [42809]

O58 - SDL:02/11/2006 - 8.09.44 ---A- . (...) -- C:\Windows\System32\KEYBOARD.SYS [42537]

O58 - SDL:02/11/2006 - 8.09.29 ---A- . (...) -- C:\Windows\System32\NTDOS.SYS [27866]

O58 - SDL:02/11/2006 - 8.09.35 ---A- . (...) -- C:\Windows\System32\NTDOS404.SYS [29146]

O58 - SDL:02/11/2006 - 8.09.38 ---A- . (...) -- C:\Windows\System32\NTDOS411.SYS [29370]

O58 - SDL:02/11/2006 - 8.09.40 ---A- . (...) -- C:\Windows\System32\NTDOS412.SYS [29274]

O58 - SDL:02/11/2006 - 8.09.31 ---A- . (...) -- C:\Windows\System32\NTDOS804.SYS [29146]

O58 - SDL:02/11/2006 - 8.09.20 ---A- . (...) -- C:\Windows\System32\NTIO.SYS [33952]

O58 - SDL:02/11/2006 - 8.09.23 ---A- . (...) -- C:\Windows\System32\NTIO404.SYS [34672]

O58 - SDL:02/11/2006 - 8.09.24 ---A- . (...) -- C:\Windows\System32\NTIO411.SYS [35776]

O58 - SDL:02/11/2006 - 8.09.26 ---A- . (...) -- C:\Windows\System32\NTIO412.SYS [35536]

O58 - SDL:02/11/2006 - 8.09.22 ---A- . (...) -- C:\Windows\System32\NTIO804.SYS [34672]

~ Drivers: 92 Scanned in 00mn 05s

 

 

 

---\\ Ultimi file modificati o creati (utente) (O61)

O61 - LFC: 15/05/2014 - 10.35.20 ---A- . (...) -- C:\Users\Aspire 5735Z\AppData\Roaming\Adobe\Acrobat\9.0\UserCache.bin [68308]

O61 - LFC: 15/05/2014 - 10.35.26 ---A- . (...) -- C:\Users\Aspire 5735Z\Desktop\Adware-Removal-Tool-v3.8.exe [714464]

O61 - LFC: 15/05/2014 - 10.35.26 ---A- . (...) -- C:\Users\Aspire 5735Z\Desktop\adwcleaner_3.208.exe [1325827]

O61 - LFC: 16/05/2014 - 10.38.30 ---A- . (.Nicolas Coolman.) -- C:\Users\Aspire 5735Z\Downloads\ZHPDiag2.exe [6778868] =>.Nicolas Coolman

~ 2015 Fichiers temporaires (Temporary files)

~ 383 Fichiers cookies (Cookies files)

~ Files: 4 Scanned in 03mn 43s

 

 

 

---\\ Elenco di strumenti di disinfezione (LATC) (O63)

O63 - Logiciel: ZHPDiag 2014 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman

~ ADS: Scanned in 00mn 00s

 

 

 

---\\ Elenco servizi registrati legacy (LALS) (O64)

O64 - Services: CurCS - 07/05/2013 - C:\Windows\System32\DRIVERS\CFRMD.sys (CFRMD) .(.Windows ® Win 7 DDK provider - Safe Deletion Driver.) - LEGACY_CFRMD

O64 - Services: CurCS - 16/04/2014 - C:\Windows\System32\DRIVERS\cmderd.sys (cmderd) .(.COMODO - COMODO Internet Security Eradication Driver.) - LEGACY_CMDERD

O64 - Services: CurCS - 16/04/2014 - C:\Windows\System32\DRIVERS\cmdguard.sys (cmdGuard) .(.COMODO - COMODO Internet Security Sandbox Driver.) - LEGACY_CMDGUARD

O64 - Services: CurCS - 16/04/2014 - C:\Windows\System32\DRIVERS\cmdhlp.sys (cmdHlp) .(.COMODO - COMODO Internet Security Helper Driver.) - LEGACY_CMDHLP

O64 - Services: CurCS - 07/10/2013 - C:\Windows\System32\DRIVERS\hmd.sys (HMD) .(...) - LEGACY_HMD

O64 - Services: CurCS - 16/04/2014 - C:\Windows\System32\DRIVERS\inspect.sys (inspect) .(.COMODO - COMODO Internet Security Firewall Driver.) - LEGACY_INSPECT

O64 - Services: CurCS - 21/03/2008 - C:\Windows\system32\drivers\int15.sys (int15) .(.Acer, Inc. - int15.) - LEGACY_INT15

O64 - Services: CurCS - 16/01/2008 - C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\NTIPPKernel.sys (NTIPPKernel) .(.Cyberlink Corp. - NTIPPKernel Driver.) - LEGACY_NTIPPKERNEL

O64 - Services: CurCS - 14/05/2008 - C:\Windows\System32\DRIVERS\psdfilter.sys (PSDFilter) .(.Egis Incorporated - Acer eDataSecurity Management PSD Filter Dr.) - LEGACY_PSDFILTER

O64 - Services: CurCS - 14/05/2008 - C:\Windows\System32\DRIVERS\PSDNServ.sys (PSDNServ) .(.Egis Incorporated - Acer eDataSecurity Management PSD Named Pip.) - LEGACY_PSDNSERV

O64 - Services: CurCS - 14/05/2008 - C:\Windows\System32\DRIVERS\PSDVdisk.sys (psdvdisk) .(.Egis Incorporated - Acer eDataSecurity Management PSD Virtual D.) - LEGACY_PSDVDISK

O64 - Services: CurCS - 02/11/2006 - C:\Windows\System32\Drivers\secdrv.sys (secdrv) .(.Macrovision Corporation, Macrovision Europe - Macrovision SECURITY Driver.) - LEGACY_SECDRV

O64 - Services: CurCS - 23/01/2012 - c:\windows\system32\drivers\TrueSight.sys (TrueSight) .(...) - LEGACY_TRUESIGHT

O64 - Services: CurCS - 18/04/2008 - C:\Program Files\Acer Arcade Deluxe\PlayMovie\000.fcl ({49DE1C67-83F8-4102-99E0-C16DCC7EEC796}) .(.Cyberlink Corp. - FCL Driver.) - LEGACY_{49DE1C67-83F8-4102-99E0-C16DCC7EEC796}

~ Legacy: 99 Scanned in 00mn 00s

 

 

 

---\\ Associazioni Shell Spawning (O67)

O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %*

O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - DLL comune della shell di Windows.) -- C:\Windows\System32\shell32.dll

O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (...) -- "%1" %*

O67 - Shell Spawning: <.com> <ComFile>[HKLM\..\open\Command] (...) -- "%1" %*

O67 - Shell Spawning: <.evt> <evtfile>[HKLM\..\open\Command] (.Microsoft Corporation - Utilità di avvio snap-in Visualizzatore eventi.) -- C:\Windows\System32\eventvwr.exe

O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %*

O67 - Shell Spawning: <.html> <htmlfile>[HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe

O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\WScript.exe

O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Editor del Registro di sistema.) -- C:\Windows\regedit.exe

O67 - Shell Spawning: <.scr> <scrfile>[HKLM\..\open\Command] (...) -- "%1" /S

O67 - Shell Spawning: <.html> <FirefoxHTML>[HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe

~ FASS Keys: 11 Scanned in 00mn 00s

 

 

 

---\\ Menu Start Internet (SMI) (O68)

O68 - StartMenuInternet: <chrome.exe> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe

O68 - StartMenuInternet: <Dragon> <Dragon>[HKLM\..\Shell\open\Command] (.Comodo - Comodo Dragon.) -- C:\Program Files\Comodo\Dragon\dragon.exe

O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe

O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe

O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe

~ Keys: Scanned in 00mn 00s

 

 

 

---\\ Cerca "infezione su browser internet (SBI) (O69)

O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com

O69 - SBI: SearchScopes [HKCU] {2B9450BE-3FFC-47AD-A237-FB8D821E93D8} [DefaultScope] - (Tuvaro) -

O69 - SBI: SearchScopes [HKCU] {67A2568C-7A0A-4EED-AECC-B5405DE63B64} - (Google) - http://www.google.com

~ Keys: Scanned in 00mn 00s

 

 

 

---\\ Enumera l'avvio del servizio Svchost (SSS) (O83)

O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Servizio verifica compatibilità applicazioni.) -- C:\Windows\System32\aelupsvc.dll [24576]

O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Segnalazioni di problemi e soluzioni.) -- C:\Windows\System32\wercplsupport.dll [62976]

O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Dll di servizi shell di Windows.) -- C:\Windows\System32\shsvcs.dll [247808]

O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Servizio Propagazione certificati smart card Microsoft.) -- C:\Windows\System32\certprop.dll [40448]

O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Servizio Propagazione certificati smart card Microsoft.) -- C:\Windows\System32\certprop.dll [40448]

O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL di servizio server.) -- C:\Windows\System32\srvsvc.dll [125952]

O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client di Criteri di gruppo.) -- C:\Windows\System32\gpsvc.dll [576512]

O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Estensione IKE.) -- C:\Windows\System32\ikeext.dll [444928]

O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Servizio Audio di Windows.) -- C:\Windows\System32\Audiosrv.dll [315392]

O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Monitor infrarossi.) -- C:\Windows\System32\irmon.dll [17920]

O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestione composizione automatica di accesso remoto.) -- C:\Windows\System32\rasauto.dll [90624]

O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Connection Manager di Accesso remoto.) -- C:\Windows\System32\rasmans.dll [262144]

O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestione interfaccia dinamica.) -- C:\Windows\System32\mprdim.dll [68608]

O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Servizio di notifica eventi di sistema (SENS).) -- C:\Windows\System32\sens.dll [47104]

O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Componenti helper NAT Microsoft.) -- C:\Windows\System32\ipnathlp.dll [288256]

O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Server di Telefonia Microsoft® Windows.) -- C:\Windows\System32\tapisrv.dll [242688]

O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestione connessioni remote di Servizi terminal.) -- C:\Windows\System32\termsrv.dll [449024]

O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agente di Windows Update.) -- C:\Windows\System32\wuaueng.dll [1933848]

O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Servizio trasferimento intelligente in background.) -- C:\Windows\System32\qmgr.dll [758784]

O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll di servizi shell di Windows.) -- C:\Windows\System32\shsvcs.dll [247808]

O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Servizio che offre connettività IPv6 su una rete IPv4..) -- C:\Windows\System32\iphlpsvc.dll [200704]

O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL del Servizio di accesso secondario.) -- C:\Windows\system32\seclogon.dll [19968]

O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Servizio Informazioni applicazioni.) -- C:\Windows\System32\appinfo.dll [33280]

O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Servizio di individuazione iSCSI.) -- C:\Windows\System32\iscsiexe.dll [111616]

O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Servizio Utilità di pianificazione classi multimediali.) -- C:\Windows\System32\mmcss.dll [45056]

O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [153088]

O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Servizio Microsoft EAPHost.) -- C:\Windows\System32\eapsvc.dll [57344]

O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [162304]

O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Servizio Utilità di pianificazione.) -- C:\Windows\System32\schedsvc.dll [601600]

O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Servizio Configurazione Servizi terminal.) -- C:\Windows\System32\sessenv.dll [84992]

O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL servizio Browser di computer.) -- C:\Windows\System32\browser.dll [81920]

O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Servizio di gestione delle chiavi.) -- C:\Windows\System32\kmsvc.dll [68096]

~ Services: 32 Scanned in 00mn 01s

 

 

 

---\\ Particolare ricerca nella directory principale del sistema (SPRF) (O84)

[MD5.248FEB8503C9AF4AB138DCBEB08AB08B] [sPRF][24/10/2010] (...) -- C:\ProgramData\ezsidmv.dat [56]

[MD5.6D09B857AD4E84EA736A0BE77C1B5377] [sPRF][15/05/2014] (.No owner - Adware-Removal-Tool-v3.8.) -- C:\Users\Aspire 5735Z\Desktop\Adware-Removal-Tool-v3.8.exe [714464]

[MD5.9C038759E5993C0B3BFD8F2192C12747] [sPRF][15/05/2014] (...) -- C:\Users\Aspire 5735Z\Desktop\adwcleaner_3.208.exe [1325827]

[MD5.20A58A086392EB041D290B23AB46EDEF] [sPRF][10/09/2013] (.COMODO - COMODO Internet Security.) -- C:\Users\Aspire 5735Z\Desktop\cispremium_installer.exe [149029376]

[MD5.8116DADED0481141F54CC45DF6137FDA] [sPRF][23/11/2011] (.Mozilla - Firefox.) -- C:\Users\Aspire 5735Z\Desktop\Firefox Setup 8.0.1.exe [14562336]

[MD5.EBF4B1FB963D6B316382C085F7F04A94] [sPRF][26/01/2012] (.McAfee, Inc. - McAfee ESD Package.) -- C:\Users\Aspire 5735Z\Desktop\MCPRmcafeetoglie.exe [1832544]

[MD5.6B920D84F76B2199D5D67013E87742C0] [sPRF][05/09/2012] (.Microsoft Corporation - Self-Extracting Cabinet.) -- C:\Users\Aspire 5735Z\Desktop\Silverlight.exe [6955968]

[MD5.09180D99A430E7E5AE364000B6609462] [sPRF][16/11/2011] (.Skype Technologies S.A. - Skype.) -- C:\Users\Aspire 5735Z\Desktop\SkypeSetup.exe [980616]

[MD5.DF463B4C69C1531D1DA7DA3E30E7F8B5] [sPRF][07/05/2014] (...) -- C:\Users\Aspire 5735Z\Desktop\vlc-2.1.3-win32.exe [24677393]

[MD5.4A7FD28D0D3012D7C1B6A3785B54D152] [sPRF][02/02/2012] (.Microsoft Corporation - Self Extracting Stub.) -- C:\Users\Aspire 5735Z\Desktop\Windows6.0-KB948465-X86.exe [498580680]

[MD5.510990E49318F60F1284EDFCCEDC8245] [sPRF][14/06/2012] (...) -- C:\Users\Aspire 5735Z\Desktop\winzip16.5-32.exe [31016848]

[MD5.AF18955096B8AA87CAA6575881388AED] [sPRF][13/08/2012] (...) -- C:\Program Files\setup.exe [473600]

[MD5.3FEA9D2EDF23B0283C7A66C8DEA380BD] [sPRF][25/07/2002] (.InstallShield Software Corporation - InstallShield Update Service Setup Player Module.) -- C:\Windows\Downloaded Program Files\dwusplay.dll [24576]

[MD5.CDBE35EA59BC9223E4F800BD1DB82D27] [sPRF][25/07/2002] (.InstallShield Software Corporation - InstallShield Update Service Setup Player.) -- C:\Windows\Downloaded Program Files\dwusplay.exe [196608]

[MD5.3F4413DCD8D3BBABF08F68F25E6D60E1] [sPRF][16/02/2005] (.InstallShield Software Corporation - InstallShield Update Service Web Agent.) -- C:\Windows\Downloaded Program Files\isusweb.dll [401408]

~ Files: 15 Scanned in 00mn 24s

 

 

 

---\\ Search CLSID Registry Key (O101)

[HKCR\CLSID\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}] (Google Toolbar Notifier BHO) =>Toolbar.Google

~ BCK: 6340 Scanned in 00mn 23s

 

 

 

---\\ Condizioni generali dei servizi non Microsoft (GSR) (SR = esecuzione, SS = fermato)

SS - | Demand 15/05/2014 257712 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

SS - | Demand 25/03/2014 1663192 | (cmdvirth) . (.COMODO.) - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe

SS - | Demand 23/08/2010 30192 | (GoogleDesktopManager-051210-111108) . (.Google.) - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe

SS - | Auto 18/04/2009 133104 | (gupdate1c9c057502ac298) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe

SS - | Demand 18/04/2009 133104 | (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe

SS - | Demand 18/04/2009 183280 | (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

SS - | Demand 12/05/2014 119408 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe

SS - | Auto 23/10/2013 172192 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe

SS - | Auto 21/01/2008 21504 | C:\Program Files\Windows Defender\mpsvc.dll (WinDefend) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe

SR - | Auto 18/03/2008 13312 | (AgereModemAudio) . (.Agere Systems.) - C:\Windows\system32\agrsmsvc.exe

SR - | Auto 12/02/2014 43336 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

SR - | Auto 30/08/2011 390504 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe

SR - | Auto 03/03/2008 16384 | (BUNAgentSvc) . (.NewTech Infosystems, Inc..) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe

SR - | Auto 16/01/2008 81504 | (CLHNService) . (...) - C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe

SR - | Auto 05/05/2014 70864 | (CLPSLauncher) . (.Comodo Security Solutions, Inc..) - C:\Program Files\Common Files\COMODO\launcher_service.exe

SR - | Auto 16/04/2014 5306504 | (cmdAgent) . (.COMODO.) - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe

SR - | Auto 29/05/2013 2094216 | (DragonUpdater) . (...) - C:\Program Files\Comodo\Dragon\dragon_updater.exe

SR - | Auto 14/05/2008 500784 | (eDataSecurity Service) . (.Egis Incorporated.) - C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe

SR - | Auto 21/03/2008 24576 | (ETService) . (...) - C:\Program Files\Acer\Empowering Technology\Service\ETService.exe

SR - | Auto 05/05/2014 2327248 | (GeekBuddyRSP) . (.Comodo Security Solutions, Inc..) - C:\Program Files\Common Files\COMODO\GeekBuddyRSP.exe

SR - | Demand 21/02/2014 553288 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe

SR - | Auto 17/01/2007 61440 | (LightScribeService) . (.Hewlett-Packard Company.) - C:\Program Files\Common Files\LightScribe\LSSrvc.exe

SR - | Auto 06/12/2007 110592 | (MobilityService) . (...) - C:\Acer\Mobility Center\MobilityService.exe

SR - | Auto 06/04/2008 50424 | (NTIBackupSvc) . (.NewTech InfoSystems, Inc..) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe

SR - | Auto 04/04/2008 131072 | (NTISchedulerSvc) . (...) - C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe

SR - | Auto 09/01/2007 272024 | (RichVideo) . (...) - C:\Program Files\Cyberlink\Shared files\RichVideo.exe

SR - | Auto 21/01/2008 21504 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe

SR - | Auto 18/04/2008 61424 | ({49DE1C67-83F8-4102-99E0-C16DCC7EEC796}) . (.Cyberlink Corp..) - C:\Program Files\Acer Arcade Deluxe\PlayMovie\000.fcl

~ Services: Scanned in 00mn 27s

 

 

 

---\\ Ricerche simultanee su Master Boot Record (MBR) (O80)

Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net

~ MBR: 1 Scanned in 00mn 02s

 

 

 

---\\ Ricerche simultanee sul Master Boot Record (MBRCheck) (O80)

Written by ad13, http://ad13.geekstog

Run by Aspire 5735Z at 16/05/2014 10.41.14

********* Dump file Name *********

C:\PhysicalDisk0_MBR.bin

~ MBR: Scanned in 00mn 05s

 

 

 

---\\ Scansione aggiuntive (O88)

Database Version : 13045 - (15/05/2014)

Clés trouvées (Keys found) : 5

Valeurs trouvées (Values found) : 1

Dossiers trouvés (Folders found) : 0

Fichiers trouvés (Files found) : 10

 

[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}] =>Toolbar.Google^

[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{5B63A470-9334-44D1-AF61-6CE2DB565AE9}] =>PUP.Convesoft^

[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5CBE3B7C-1E47-477E-A7DD-396DB0476E29}] =>Toolbar.eDataSecurity

[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5CBE3B7C-1E47-477E-A7DD-396DB0476E29}] =>Toolbar.eDataSecurity

[HKLM\Software\Classes\CLSID\{5CBE3B7C-1E47-477E-A7DD-396DB0476E29}] =>Toolbar.eDataSecurity

[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:swg =>Toolbar.Google^

C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe =>Toolbar.Google^

[HKCR\CLSID\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}] (Google Toolbar Notifier BHO) =>Toolbar.Google^

C:\Users\Aspire 5735Z\AppData\Local\Temp\iminent_offerscreen_image.bmp =>Adware.IMBooster

C:\Users\Aspire 5735Z\AppData\Local\Temp\moreinfo_iminent.bmp =>Adware.IMBooster

C:\Users\Aspire 5735Z\AppData\Local\Temp\lollipop_moreinfo.bmp =>Adware.Lollipop

C:\Users\Aspire 5735Z\AppData\Local\Temp\square_lollipop.bmp =>Adware.Lollipop

C:\Users\Aspire 5735Z\AppData\Local\Temp\Lphant_setup.exe =>Adware.Bandoo

C:\Users\Aspire 5735Z\AppData\Local\Temp\XXscYAQT.exe.part =>Adware.Bandoo

~ Additionnel Scan: 363243 Items scanned in 02mn 07s

 

 

 

---\\ Riepilogo dei rilevamenti trovato sulla workstation

~ MSI: 4 link(s) detected in 00mn 00s

 

 

 

End of the scan (1287 lines in 13mn 59s)(0)

 

Posté(e) (modifié)

Vous devez trouver les 2 icônes Zhpdiag, Zhpfix. sur le bureau
ou sinon dans le dossier où vous avez installé Zhpdiag (Program files ->Zhpdiag ->Zhpfix)
Cliquer sur l'icône Zhpfix
Sous Vistaet + clic-droit, "Exécuter En tant qu'Administrateur
Copiez/Collez les lignes vertes dans le cadre ci dessous:
pour cela;
Clic gauche maintenu enfoncé, Balayer l'ensemble du texte à copier avec la souris pour le mettre en surbrillance ,de gauche à droite et de haut en bas
Ctrl+c mettre le tout en mémoire
Cliquer Importer
pour inscrire le texte dans la fenêtre vide qui s'ouvre

Script Zhpfix

O42 - Logiciel: Orion - (.Convesoft.) [HKLM] -- {5B63A470-9334-44D1-AF61-6CE2DB565AE9}
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{5B63A470-9334-44D1-AF61-6CE2DB565AE9}]
C:\Users\Aspire 5735Z\AppData\Local\Temp\iminent_offerscreen_image.bmp
C:\Users\Aspire 5735Z\AppData\Local\Temp\moreinfo_iminent.bmp
C:\Users\Aspire 5735Z\AppData\Local\Temp\lollipop_moreinfo.bmp
C:\Users\Aspire 5735Z\AppData\Local\Temp\square_lollipop.bmp
C:\Users\Aspire 5735Z\AppData\Local\Temp\Lphant_setup.exe
C:\Users\Aspire 5735Z\AppData\Local\Temp\XXscYAQT.exe.part
[MD5.626A24ED1228580B9518C01930936DF9] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [133104]
[MD5.626A24ED1228580B9518C01930936DF9] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files\Google\Update\GoogleUpdate.exe [133104]
O43 - CFD: 12/06/2013 - 12.25.39 - [0] --H-D C:\ProgramData\{175E0859-0138-41EB-B69A-C4CA293ADCCD}
O44 - LFC:[MD5.CEAF98D916D2B75B8704BEE7680EE0B5] - 16/05/2014 - 8.30.16 ---A- . (...) -- C:\Windows\System32\agent.log [0]
[MD5.E616A6A6E91B0A86F2F6217CDE835FFE] - (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [68856] [PID.5272]
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll
O3 - Toolbar: Acer eDataSecurity Management - [HKLM]{5CBE3B7C-1E47-477e-A7DD-396DB0476E29} . (.Egis Incorporated. - Acer eDataSecurity Management Explorer Tool.) -- C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDStoolbar.dll
O3 - Toolbar\WebBrowser: (no name) - [HKCU]{2318C2B1-4965-11D4-9B18-009027A5CD4F} Chiave orfano
O4 - HKCU\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-21-1791461987-266948465-1076950451-1000\..\Run: [swg] . (.Google Inc. - GoogleToolbarNotifier.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
[HKCR\CLSID\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}] (Google Toolbar Notifier BHO)
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5CBE3B7C-1E47-477E-A7DD-396DB0476E29}]
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5CBE3B7C-1E47-477E-A7DD-396DB0476E29}]
[HKLM\Software\Classes\CLSID\{5CBE3B7C-1E47-477E-A7DD-396DB0476E29}]
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:swg
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
[HKCR\CLSID\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}] (Google Toolbar Notifier BHO)

EmptyClsid
Emptyflash
EmptyPrefetch
Emptytemp
FirewallRaz
HostFix
Ifeofix
Proxyfix
ShortcutFix
Sysrestore



Cliquer sur "Go" en bas, à gauche

Redémarrer pour achever le nettoyage.

Copier-coller,dans la réponse, le contenu du rapport ZHPFixReport.txt qui s'affiche .
Si besoin; il est enregistré sous C:\ZHP\ZHPFixReport.txt



Télécharger SFTGC.exe
sur le Bureau, impérativement sous peine de risquer un plantage

Il peut être nécessaire de fermer ou désactiver tous les programmes Antivirus, Antispyware, Pare-feu actifs car ils pourraient perturber le fonctionnement de cet outil
Certains outils sont parfois detectés par votre Anti-virus ou votre Anti-Malware comme étant un "RiskTool", un virus ou un "Trojan", or ce n'est pas le cas.
Comment désactiver les protections résidentes
Bien évidemment, vous les rétablirez ensuite.

Sous XP, double cliquer sur le fichier.
Sous Vista/7/8, clic droit sur le fichier pour Exécuter en tant qu'administrateur.

Après l'initialisation, cliquer sur Gopour lancer le nettoyage.

Un rapport va s'ouvrir à la fin.
Ce rapport est sur le bureau (SFT.txt)

Comment poster les rapports
Aller sur le site :Ci-Jointicne2cjoint.png
Appuyez sur Parcourir et chercher les rapports sur le disque,
Cliquer sur Ouvrir
Cliquer sur Créer le lien CJoint,
>> dans la page suivante --> ,,
une adresse http//.. sera créée
Copier /coller cette adresse dans votre prochain message.

Modifié par pear
Posté(e)

Bonjour, je ne comprends pas la suite au message que je vous ai envoyé avec le rapport de zhp. Sur mon email je vois un debut de votre message que je ne vois pas sur le forum. Je cite: "Si vous avez Incredimail, qui vous espionne, il va etre désinstalleé. Sauvegardez en les donnéés."

Comment je sauve garde les donnéés?

Merci

Posté(e) (modifié)

Vous ne le voyez plus parce que j'ai corrigé mon message puisque vous n'utilisez pas Incredimail.

 

Cela dit, "Sauvegarder les données d'Incredimail" c'est copier coller les mails, les adresses de vos correspondants etc..pour les retrouver dans un autre logiciel de courrier.

 

Postez les rapports attendus Zhpfix et Sftc

Modifié par pear
  • 4 semaines après...
  • Modérateurs
Posté(e)

Paola m'a par erreur adressé par MP son rapport de ZHPFix, que voici...

 

Rapport de ZHPFix 2014.4.13.3 par Nicolas Coolman, Update du 13/04/2014
Fichier d'export Registre :
Run by Aspire 5735Z at 12/06/2014 16.07.04
High Elevated Privileges : OK
Windows Vista Home Premium Edition, 32-bit Service Pack 2 (Build 6002)

Cestino svuotato (00mn 05s)
Prefetcher svuotato
Riparazione di collegamenti del browser

========== Software ==========
RIMUOVE: Orion

========== Memoria del processo ==========
RIMUOVE: Memory Process: C:\Users\Aspire 5735Z\AppData\Local\Temp\Lphant_setup.exe
RIMUOVE: Memory Process: C:\Users\Aspire 5735Z\AppData\Local\Temp\XXscYAQT.exe.part
RIMUOVE il riavvio: Memory Process: C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

========== Chiavi di registro ==========
RIMUOVE: [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5B63A470-9334-44D1-AF61-6CE2DB565AE9}]
RIMUOVE: CLSID BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D}
RIMUOVE: [HKLM\SOFTWARE\Classes\CLSID\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
RIMUOVE: [HKLM\SOFTWARE\Classes\CLSID\{5CBE3B7C-1E47-477e-A7DD-396DB0476E29}]
RIMUOVE: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5CBE3B7C-1E47-477E-A7DD-396DB0476E29}
RIMUOVE: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5CBE3B7C-1E47-477E-A7DD-396DB0476E29}
Base di registri ramo IFEO non infetti!

========== I valori del Registro di sistema ==========
RIMUOVE: Toolbar: {5CBE3B7C-1E47-477e-A7DD-396DB0476E29}
RIMUOVE: Toolbar: {2318C2B1-4965-11D4-9B18-009027A5CD4F}
RIMUOVE RunValue: swg
ASSENTE valore profilo Standard: FirewallRaz :
ASSENZA di valore il profilo di dominio: FirewallRaz :
RIMUOVE: FirewallRaz (None) : {8CE8F528-1E9F-4430-AD9B-10259617BCBD}
RIMUOVE: FirewallRaz (Private) : {C99C76F8-AAEC-4FF2-992B-FBE586D3120E}
RIMUOVE: FirewallRaz (Private) : {60F16494-F5C4-4152-AF5B-B02E2DBD2F25}
RIMUOVE: FirewallRaz (Private) : {4D33B979-380E-47F6-9552-05135C32CF96}
RIMUOVE: FirewallRaz (Private) : {377DE324-F200-42E6-9210-A8BBB9EADB2B}
ProxyFix : Configurazione proxy rimosso con successo
RIMUOVE ProxyServer Value
RIMUOVE ProxyEnable Value
RIMUOVE EnableHttp1_1 Value
RIMUOVE ProxyHttp1.1 Value
RIMUOVE ProxyOverride Value

========== Cartelle ==========
Nessun utente CLSID locale vuoto cartelle
RIMUOVE i cookie Flash (48)
Elimina Windows temporaneo (225)

========== File ==========
RIMUOVE: C:\Users\Aspire 5735Z\AppData\Local\Temp\iminent_offerscreen_image.bmp
RIMUOVE: C:\Users\Aspire 5735Z\AppData\Local\Temp\moreinfo_iminent.bmp
RIMUOVE: C:\Users\Aspire 5735Z\AppData\Local\Temp\lollipop_moreinfo.bmp
RIMUOVE: C:\Users\Aspire 5735Z\AppData\Local\Temp\square_lollipop.bmp
RIMUOVE il riavvio: c:\windows\system32\agent.log
RIMUOVE il riavvio: c:\program files\google\googletoolbarnotifier\5.5.4723.1820\swg.dll
RIMUOVE il riavvio: c:\program files\google\googletoolbarnotifier\googletoolbarnotifier.exe
RIMUOVE i cookie Flash (16) (1.575 octets)
Elimina Windows temporaneo (2139) (1.649.538.734 octets)

========== File HOSTS ==========
Il file Hosts non è riparato, si prega di disattivare il vostro software antivirus.

========== Operazione pianificata ==========
RIMUOVE: GoogleUpdateTaskMachineCore
RIMUOVE: GoogleUpdateTaskMachineCore
RIMUOVE: GoogleUpdateTaskMachineUA

========== Ripristino configurazione di sistema ==========
Il punto di ripristino del sistema creato con successo


========== Riassunto ==========
3 : Memoria del processo
7 : Chiavi di registro
16 : I valori del Registro di sistema
3 : Cartelle
9 : File
1 : Software
1 : File HOSTS
3 : Operazione pianificata
1 : Ripristino configurazione di sistema


End of clean in 06mn 29s

========== Percorso file report ==========
C:\Users\Aspire 5735Z\AppData\Roaming\ZHP\ZHPFix[R1].txt - 12/06/2014 16.07.11 [3729]

Posté(e)

Merci Pear. J'ai cherché partout dans mon Pc ou etait passé SFTGC que j'ai telechargher directement de ton rapport plein de fois. Il n'etait pas sur le bureau. A la fin je l'ai trouvé (et plusieurs copies dans le "file Download"). Je les ai toutes deplacés sur le bureau. Voici le rapport.

SFTGC relazione (Pierre13) di Giovedi 12 giugno 2014 à 19:35:25 version : 2.2.0.0
aggiornamento 30/05/2014
utensile = lanciato in modalità normale e In qualità di amministratore
Windows Vista Home Premium Service Pack 2 32 bits

Tool start in C:\Users\Aspire 5735Z\Desktop

2553 eliminata => 808.75 Mo rilasciato. (3 mn 45 s)

Attention infection possible ! =>> C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\myphotobook.it-1.5.0.exe.part.lnk
C:\Users\Aspire 5735Z\AppData\Local\Temp\121119 Apostrophe.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\1ere communion 2013.docx
C:\Users\Aspire 5735Z\AppData\Local\Temp\9582 DEVIS CHIVOT.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\9582 RAPPORT DEBARLE.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\9582 SOMSOU PONS.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\Accord de Monsieur de Nadaillac.txt
C:\Users\Aspire 5735Z\AppData\Local\Temp\Accord Monsieur de Montalivet.txt
C:\Users\Aspire 5735Z\AppData\Local\Temp\Accord Monsieur Ferret.htm
C:\Users\Aspire 5735Z\AppData\Local\Temp\ACQUA AZZURRA - S.P.A..pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\acro_rd_dir
C:\Users\Aspire 5735Z\AppData\Local\Temp\AdobeARM.log
C:\Users\Aspire 5735Z\AppData\Local\Temp\AFFICHE GPJeunes2013.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\All 1 Com. Delegati - Pellegrinaggio Lourdes 2013.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\All 3 Domanda di partecipazione per Assistito Lourdes 2013.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\Angelo_Blu 1 1 .pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\ANNEX 1.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\ANNEX 2-1.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\ANNEX 2-2.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\ANNEX 2-3.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\ANNEX 2.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\ANNEX 3-1.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\ANNEX 3.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\ANNEX 4-1.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\ANNEX 4.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\Aspire 5735Z.bmp
C:\Users\Aspire 5735Z\AppData\Local\Temp\Asset allocation 16.04.13.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\au-descriptor-1.6.0_45-b06.xml
C:\Users\Aspire 5735Z\AppData\Local\Temp\Avis de coupure d'eau 33-35 RUE DE LA TOUR 75016 PARIS.doc
C:\Users\Aspire 5735Z\AppData\Local\Temp\BILANCIO 31122012.rtf
C:\Users\Aspire 5735Z\AppData\Local\Temp\Cavolfiore alla Siciliana.doc
C:\Users\Aspire 5735Z\AppData\Local\Temp\CCNL Ebilcoba.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\CIRCOLARE 11 2012.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\Circolare 18-2012.doc
C:\Users\Aspire 5735Z\AppData\Local\Temp\CIRCOLARE 3 2013.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\Circolare 6-2013.doc
C:\Users\Aspire 5735Z\AppData\Local\Temp\Com Proc GPNS prot 10-2013.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\Compte rendu entretien avec Mme VACCARO.DOC
C:\Users\Aspire 5735Z\AppData\Local\Temp\Compte.rendu CS 10 05 2012-1.doc
C:\Users\Aspire 5735Z\AppData\Local\Temp\Compte.rendu CS 10 05 2012-2.doc
C:\Users\Aspire 5735Z\AppData\Local\Temp\Compte.rendu CS 10 05 2012-3.doc
C:\Users\Aspire 5735Z\AppData\Local\Temp\Compte.rendu CS 10 05 2012-4.doc
C:\Users\Aspire 5735Z\AppData\Local\Temp\Compte.rendu CS 10 05 2012.doc
C:\Users\Aspire 5735Z\AppData\Local\Temp\CS2 10 05 2012-1.doc
C:\Users\Aspire 5735Z\AppData\Local\Temp\CS2 10 05 2012-2.doc
C:\Users\Aspire 5735Z\AppData\Local\Temp\CS2 10 05 2012.doc
C:\Users\Aspire 5735Z\AppData\Local\Temp\cuisine I.jpg
C:\Users\Aspire 5735Z\AppData\Local\Temp\d'angelo anacapri legno alluminio.doc
C:\Users\Aspire 5735Z\AppData\Local\Temp\d'angelo anacapri pvc.doc
C:\Users\Aspire 5735Z\AppData\Local\Temp\d'angelo carriero alzante.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\Devis f- CL0034 Mr et Mme FERRET-2.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\Devis f- CL0034 Mr et Mme FERRET-3.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\Devis f- CL0034 Mr et Mme FERRET-4.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\Devis f- CL0034 Mr et Mme FERRET-5.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\Devis FERRET LADISLAS Dr Arav-1.doc
C:\Users\Aspire 5735Z\AppData\Local\Temp\Devis FERRET LADISLAS Dr Arav.doc
C:\Users\Aspire 5735Z\AppData\Local\Temp\Devis PDF.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\Devis Somsous Pons.jpeg
C:\Users\Aspire 5735Z\AppData\Local\Temp\digicode Cabinet Medical.doc
C:\Users\Aspire 5735Z\AppData\Local\Temp\Disposizioni testamentarie_mod 21012013 c.i. ok-1.doc
C:\Users\Aspire 5735Z\AppData\Local\Temp\Disposizioni testamentarie_mod 21012013 c.i. ok.doc
C:\Users\Aspire 5735Z\AppData\Local\Temp\eDatasecurity
C:\Users\Aspire 5735Z\AppData\Local\Temp\Elenco Membri Delegazione di Catania SMOM (ridotto).doc
C:\Users\Aspire 5735Z\AppData\Local\Temp\etilqs_5maMwIGHNLwWjQY
C:\Users\Aspire 5735Z\AppData\Local\Temp\etilqs_CTKwcivQyA3dRIF
C:\Users\Aspire 5735Z\AppData\Local\Temp\etilqs_DuhLDPREprRCchN
C:\Users\Aspire 5735Z\AppData\Local\Temp\etilqs_uOhMgocGRVHLn7J
C:\Users\Aspire 5735Z\AppData\Local\Temp\Factures recherche de fuites Rue de la Tour..pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\FERRET 6961 23.05.12 C-1.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\FERRET 6961 23.05.12 EC-1.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\FERRET 6961 23.05.12 EC-2.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\FERRET 6961 23.05.12 ERNT.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\FERRET 6961 23.05.12 NS.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\FERRET 6961 23.05.12 PG-1.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\FERRET 6961 23.05.12 PG.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\FERRET 6961 23.05.12 T-1.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\FERRET 6961 23.05.12 T-2.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\Festival des Arts.xls
C:\Users\Aspire 5735Z\AppData\Local\Temp\Fournitures Eleve 11e.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\Fournitures Eleve 9e-1.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\Fournitures Eleve 9e.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\inventaire chambre de bonne.docx
C:\Users\Aspire 5735Z\AppData\Local\Temp\inventaire MANUELS SCOLAIRES.doc
C:\Users\Aspire 5735Z\AppData\Local\Temp\Invitation Anniversaire Ludovine-1.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\Invitation Anniversaire Ludovine-2.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\Invitation Anniversaire Ludovine-3.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\Invitation Anniversaire Ludovine-4.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\jusched.log
C:\Users\Aspire 5735Z\AppData\Local\Temp\knock knock 2012-2013.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\Kyo Noir Contemporary african art investment ABOUDIA-1.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\Kyo Noir Contemporary african art investment ABOUDIA.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\la Tour.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\lettera accompagno 21 1 20313.pdf
C:\Users\Aspire 5735Z\AppData\Local\Temp\liste 9eme2 parents.xls
C:\Users\Aspire 5735Z\AppData\Local\Temp\liste 9eme2 parents.xlsx
C:\Users\Aspire 5735Z\AppData\LocalLow\A9R59D9.tmp
C:\Users\Aspire 5735Z\AppData\LocalLow\Adobe
C:\Users\Aspire 5735Z\AppData\LocalLow\COMODO
C:\Users\Aspire 5735Z\AppData\LocalLow\desktop.ini
C:\Users\Aspire 5735Z\AppData\LocalLow\Google
C:\Users\Aspire 5735Z\AppData\LocalLow\Sun
C:\Users\Aspire 5735Z\AppData\LocalLow\Temp
C:\Users\Aspire 5735Z\AppData\LocalLow\Sun\Java
C:\Users\Aspire 5735Z\AppData\LocalLow\Sun\Java\AU
C:\Users\Aspire 5735Z\AppData\LocalLow\Sun\Java\Deployment
C:\Users\Aspire 5735Z\AppData\LocalLow\Sun\Java\jre1.6.0_30
C:\Users\Aspire 5735Z\AppData\LocalLow\Sun\Java\jre1.6.0_45
C:\Users\Aspire 5735Z\AppData\Local\Microsoft\Windows\History\desktop.ini
C:\Users\Aspire 5735Z\AppData\Local\Microsoft\Windows\History\Low
C:\Users\Aspire 5735Z\AppData\Local\Microsoft\Windows\History\Low\desktop.ini
C:\Users\Aspire 5735Z\AppData\Local\Microsoft\Windows\History\Low\History.IE5
C:\Users\Aspire 5735Z\AppData\Local\Microsoft\Windows\History\Low\History.IE5\desktop.ini
C:\Users\Aspire 5735Z\AppData\Local\Microsoft\Windows\History\Low\History.IE5\index.dat
C:\Users\Aspire 5735Z\AppData\Local\Microsoft\Windows\History\History.IE5\desktop.ini
C:\Users\Aspire 5735Z\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014051920140526
C:\Users\Aspire 5735Z\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014052620140602
C:\Users\Aspire 5735Z\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014060220140609
C:\Users\Aspire 5735Z\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014061020140611
C:\Users\Aspire 5735Z\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014061120140612
C:\Users\Aspire 5735Z\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014061220140613
C:\Users\Aspire 5735Z\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014061220140613\index.dat
C:\Users\Aspire 5735Z\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014061120140612\index.dat
C:\Users\Aspire 5735Z\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014061020140611\index.dat
C:\Users\Aspire 5735Z\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014060220140609\index.dat
C:\Users\Aspire 5735Z\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014052620140602\index.dat
C:\Users\Aspire 5735Z\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014051920140526\index.dat
C:\Users\Aspire 5735Z\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.MSO
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\101MSDCF.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\103___03.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\104___04.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\105___05.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\106___06.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\108___03.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\1bf9c3c4-0f2c-46e8-9366-0708e1054d31.original.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\573px-Mokotow_Warsaw_District_Map.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\823WGTMA.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\ACER ©.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\AdwCleaner.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\AdwCleaner[s0].lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\AdwCleaner[s1].lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\affiche delegues de classe.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\agosto 2013.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\ala aereo.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\angelica.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\annot_Les Dossiers Hachette_La préhistoire Démo.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\AS12524139774498757600395200478767.tmp.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\atelier travaux manuels 2012.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\auguri natale 2013.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Autorun.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\bandiera.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\BILANCIO 31122012.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\bookshow_de.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\BUDGET ANNUEL COPRO.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Buste (3).lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Buste (4).lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Buste (5).lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Buste (6).lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Buste (7).lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Buste.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\CANONMSC.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\carlo poss (2).lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\carte dragons.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\carte ex giratina.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\carte pokemon entei.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\CB_formulario_excel2.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\CB_formulario_word.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\certificats LOUIS FERRAND.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Civ4.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Civ4Installer.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Clash.of.Clans..lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\climats.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\coda aereo.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Contract English version.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Contratto inglese PPC1.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Contratto italiano PPC2.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\corpo aereo.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\da.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\DATA (D).lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\desktop.ini
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Devis Local Poubelle Syndic 33 rue de la tour.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Devis Peinture Local Poubelle 33, rue de la Tour.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Diagnosi Chambre Bonne.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\DIETRO DELLA CARTA.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Disco rimovibile (F).lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Download.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Draft V4.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\DSC05753.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\DSC05906.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\DSC07097.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\DSC07100.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\DSCN0608.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\esercizi fra CE1 Angelica.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Evaluation H10-11-12.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\FERRET certificat superficie.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\FERRET Etat Installation Electricite.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\FERRET Risques naturels.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\FERRET Termites.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\foglio di lavoro ric bilancio e cf.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\French.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\gangnam style.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\good time.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\IMAGE_001.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\IMAGE_003.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\IMAGE_007.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\IMAGE_008.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\IMG_0375.MOV.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\IMG_0483.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\IMG_1025.MOV.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Immagini.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\index.php.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\inscription_2014_-_2015_2 (2).lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\inscription_2014_-_2015_2.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\italian.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\JDoAAAN~1UB5dGt5TUFlSUxupgA.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\JDoAACbg3kB5dGt5TUFlSUxupgA.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\JDoAADtZ1UB5dGt5TUFlSUxupgA.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\JDoAAKqu20B5dGt5TUFlSUxupgA.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\kkkkkkkkkkkkk.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\La France lointaine.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Lado scuola.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\lado.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\La_storia_presa_per_la_gola-10.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Le-mandat-exclusif-des-agents-immobiliers.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Les grandes inventions.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Les Temps modernes et SANG.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\lista natale.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Liste Coproprietaires.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\M0107.CTG.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\moduli bambini (2).lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\MOV04700.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\MOV04701.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\MVI_0966.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\MVI_0972.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\MVI_0973.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\MVI_0986.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\myphotobook.it-1.5.0.exe.part.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Notes Lado 9eme 2.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\op15sample3_ITA.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\ordine vino Francia.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Philippe le Bel saint louis la guerre 100 ans.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\photo-12.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Point Reyes.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\pokemon modèles.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\pokemon.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\PPC Questionnaire EV 2014.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\PPC.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\presentation la tour du monde chinois italien avec bulletin(1).lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\presentation la tour du monde chinois italien avec bulletin.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\questionaire eng version pdf.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Questionaire english version (2).lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Reshiram EX FA.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Ricette (2).lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\ricette.book.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\RISOTTO AGLI ASPARAGI.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Risultati ricerca in Computer.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Salvataggio automatico di Documento5.asd.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Salvataggio automatico di Lado invita .asd.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Salvataggio automatico di Le Stromboli 2.asd.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Salvataggio automatico di Les animaux sont tous importants 2.asd.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Salvataggio automatico di lettre 7 octobre 2013.asd.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Salvataggio automatico di _LM-1.asd.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Salvataggio Recupero diretto dilettre 7 octobre 2013.asd.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\senza titolo 3.settings.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\shakira waka waka.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Socgen M. Rame'.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Step Ahead Holiday Show 2013.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Step Shows.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Tancredi lettre la providence].lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\tony di giovanni (2).lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Transcend (F).lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\TRANSPORTS EN ANGLETERRE grosse ecriture.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\TRANSPORTS EN ANGLETERRE.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\travaux manuels 2013.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Tristan and Isolde Part 1.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\UniCredit.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Unità CD (2).lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Unità CD.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\user.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\vente chambre de bonne mem Cauchis.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Viajes_de_colon_it.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\VIDEO_TS (2).lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\VIDEO_TS (3).lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\VIDEO_TS (4).lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Visite Sig Curtolo (2).lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Visite Sig Curtolo.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Voti Angelica.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\voti Lado 8eme.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\Word.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\ZHPFixReport.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\~WRA0003.asd.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\~WRA0667.asd.lnk
C:\Users\Aspire 5735Z\AppData\Roaming\Microsoft\Windows\Recent\~WRA3761.asd.lnk
C:\Users\MARK\AppData\Local\Temp\119053738.od
C:\Users\MARK\AppData\Local\Temp\122409803.od
C:\Users\MARK\AppData\Local\Temp\22EA.tmp
C:\Users\MARK\AppData\Local\Temp\27087935.od
C:\Users\MARK\AppData\Local\Temp\370159.od
C:\Users\MARK\AppData\Local\Temp\4E00.tmp
C:\Users\MARK\AppData\Local\Temp\574565207.cvr
C:\Users\MARK\AppData\Local\Temp\574565269.od
C:\Users\MARK\AppData\Local\Temp\7465724.cvr
C:\Users\MARK\AppData\Local\Temp\7465786.od
C:\Users\MARK\AppData\Local\Temp\770476379.od
C:\Users\MARK\AppData\Local\Temp\acro_rd_dir
C:\Users\MARK\AppData\Local\Temp\AdobeARM.log
C:\Users\MARK\AppData\Local\Temp\au-descriptor-1.6.0_45-b06.xml
C:\Users\MARK\AppData\Local\Temp\BCE8.tmp
C:\Users\MARK\AppData\Local\Temp\CVR543F.tmp.cvr
C:\Users\MARK\AppData\Local\Temp\CVR88BF.tmp.cvr
C:\Users\MARK\AppData\Local\Temp\CVR9DAA.tmp.cvr
C:\Users\MARK\AppData\Local\Temp\CVRA5EF.tmp.cvr
C:\Users\MARK\AppData\Local\Temp\CVRD1A6.tmp.cvr
C:\Users\MARK\AppData\Local\Temp\eDatasecurity
C:\Users\MARK\AppData\Local\Temp\etilqs_AJ5HeGxkWjQjWEH
C:\Users\MARK\AppData\Local\Temp\hsperfdata_MARK
C:\Users\MARK\AppData\Local\Temp\java_install_reg.log
C:\Users\MARK\AppData\Local\Temp\jusched.log
C:\Users\MARK\AppData\Local\Temp\Low
C:\Users\MARK\AppData\Local\Temp\MARK.bmp
C:\Users\MARK\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_10.0.40219
C:\Users\MARK\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20120925_074103445-MSI_vc_red.msi.txt
C:\Users\MARK\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20120925_074103445.html
C:\Users\MARK\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20120926_094333104-MSI_vc_red.msi.txt
C:\Users\MARK\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20120926_094333104.html
C:\Users\MARK\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20120928_081613665-MSI_vc_red.msi.txt
C:\Users\MARK\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20120928_081613665.html
C:\Users\MARK\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20121201_095049429-MSI_vc_red.msi.txt
C:\Users\MARK\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20121201_095049429.html
C:\Users\MARK\AppData\LocalLow\Adobe
C:\Users\MARK\AppData\LocalLow\COMODO
C:\Users\MARK\AppData\LocalLow\desktop.ini
C:\Users\MARK\AppData\LocalLow\Google
C:\Users\MARK\AppData\LocalLow\Microsoft
C:\Users\MARK\AppData\LocalLow\Sun
C:\Users\MARK\AppData\LocalLow\Sun\Java
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\cache
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\deployment.properties
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\ext
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\log
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\security
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\0
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\1
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\10
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\11
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\12
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\13
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\14
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\15
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\16
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\17
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\18
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\19
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\2
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\20
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\21
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\22
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\23
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\24
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\25
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\26
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\27
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\28
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\29
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\3
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\30
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\31
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\33
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\34
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\35
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\36
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\37
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\38
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\39
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\4
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\40
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\41
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\42
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\43
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\44
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\45
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\46
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\47
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\48
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\49
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\5
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\50
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\51
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\52
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\53
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\54
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\55
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\56
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\57
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\58
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\59
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\6
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\60
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\61
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\62
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\63
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\7
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\8
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\9
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\lastAccessed
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-3ea2d6c7
C:\Users\MARK\AppData\LocalLow\Sun\Java\Deployment\SystemCache\6.0\32\6c34baa0-3ea2d6c7.idx
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache
C:\Users\MARK\AppData\LocalLow\Microsoft\IME12
C:\Users\MARK\AppData\LocalLow\Microsoft\IMJP12
C:\Users\MARK\AppData\LocalLow\Microsoft\IMJP8_1
C:\Users\MARK\AppData\LocalLow\Microsoft\IMJP9_0
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\iconcache
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\Services
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{0633EE93-D776-472f-A0FF-E1416B8B2E3A}.ico
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{07DF6244-36F7-430F-9DCD-22C57B498D0F}.ico
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\Services\search_{67A2568C-7A0A-4EED-AECC-B5405DE63B64}.ico
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\iconcache\piuqmrr
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\iconcache\piuqmrr\tabiconcache.dat
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\1VFPI32Y
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\ADBAAWWH
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\index.dat
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\JI4G7UTY
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\WGY767VZ
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\WGY767VZ\pagead2.googlesyndication[1].xml
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\WGY767VZ\plusone.google[1].xml
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\WGY767VZ\www.cdiscount[1].xml
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\WGY767VZ\www.facebook[1].xml
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\WGY767VZ\www.laredoute[1].xml
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\JI4G7UTY\tom59640.centerblog[1].xml
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\JI4G7UTY\www.apple[1].xml
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\JI4G7UTY\www.clubic[1].xml
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\JI4G7UTY\www.deco[1].xml
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\JI4G7UTY\www.lejdd[1].xml
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\ADBAAWWH\fr.battlestar-galactica.bigpoint[1].xml
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\ADBAAWWH\pokemondk.canalblog[1].xml
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\ADBAAWWH\www.commentcamarche[1].xml
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\ADBAAWWH\www.google[1].xml
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\ADBAAWWH\www.softonic[1].xml
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\1VFPI32Y\adprudence.rotator.hadj7.adjuggler[1].xml
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\1VFPI32Y\cgi.ebay[1].xml
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\1VFPI32Y\pokemon1111.centerblog[1].xml
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\1VFPI32Y\store.apple[1].xml
C:\Users\MARK\AppData\LocalLow\Microsoft\Internet Explorer\DOMStore\1VFPI32Y\www.youtube[1].xml
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\23B523C9E7746F715D33C6527C18EB9D
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3C3948BE6E525B8A8CEE9FAC91C9E392_7639DBA23CDB69E31ECB5EF777AEECE3
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3C3948BE6E525B8A8CEE9FAC91C9E392_7A39BC651D94E90949EF4CEBDCC6D9B4
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\3C3948BE6E525B8A8CEE9FAC91C9E392_92B94282CFB2504922C83ECC86E7A903
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\49514950C94E8026A2B06312597DFF49_569BD946168DB279A65378F7D088CFD0
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\570FB14ABC805C46708F32F92F10C3B4
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\57C8EDB95DF3F0AD4EE2DC2B8CFD4157
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\60E31627FDA0A46932B0E5948949F2A5
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\77EC63BDA74BD0D0E0426DC8F8008506
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7B2238AACCEDC3F1FFE8E7EB5F575EC9
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_76C8E3242BF99D5AED1365220C4C1AB8
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8059E9A0D314877E40FE93D8CCFB3C69_ECC87E067A500EDDC2ED9EC574B4F0D5
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\94308059B57B3142E455B38A6EB92015
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A44F4E7CB3133FF765C39A53AD8FCFDD
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\23B523C9E7746F715D33C6527C18EB9D
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3C3948BE6E525B8A8CEE9FAC91C9E392_7639DBA23CDB69E31ECB5EF777AEECE3
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3C3948BE6E525B8A8CEE9FAC91C9E392_7A39BC651D94E90949EF4CEBDCC6D9B4
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\3C3948BE6E525B8A8CEE9FAC91C9E392_92B94282CFB2504922C83ECC86E7A903
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\49514950C94E8026A2B06312597DFF49_569BD946168DB279A65378F7D088CFD0
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\570FB14ABC805C46708F32F92F10C3B4
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\57C8EDB95DF3F0AD4EE2DC2B8CFD4157
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\60E31627FDA0A46932B0E5948949F2A5
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\77EC63BDA74BD0D0E0426DC8F8008506
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7B2238AACCEDC3F1FFE8E7EB5F575EC9
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_76C8E3242BF99D5AED1365220C4C1AB8
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8059E9A0D314877E40FE93D8CCFB3C69_ECC87E067A500EDDC2ED9EC574B4F0D5
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\94308059B57B3142E455B38A6EB92015
C:\Users\MARK\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A44F4E7CB3133FF765C39A53AD8FCFDD
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\dbCache.dat
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\dbCache.dat.index
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\models
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\myplaces.backup.kml
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\myplaces.kml
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\myplaces.kml.tmp
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\models\lock
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_1050_l.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_3d_buildings_new_l.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_773_l.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_blue_star_l.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_cabs64_l.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_camera_64_nh.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_census_new_l.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_city_capital_star.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_city_major.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_city_major_very_far.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_city_minor.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_dining64_nh.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_flag64_l.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_golf_new_l.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_green_star_l.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_lil_earth_l.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_lodging64_nh.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_panoramio_l.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_panoramio_nh.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_roads_legend_l.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_waters64_l.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_wiki_gray.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_wiki_white.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\kh.google.com_icons_wiki_white_l.png
C:\Users\MARK\AppData\LocalLow\Google\GoogleEarth\icons\lock
C:\Users\MARK\AppData\LocalLow\COMODO\CertSentry
C:\Users\MARK\AppData\LocalLow\COMODO\CertSentry\issuers.sst
C:\Users\MARK\AppData\LocalLow\COMODO\CertSentry\subjects.sst
C:\Users\MARK\AppData\LocalLow\Adobe\Acrobat
C:\Users\MARK\AppData\LocalLow\Adobe\Updater6
C:\Users\MARK\AppData\LocalLow\Adobe\Updater6\aumLib.log
C:\Users\MARK\AppData\LocalLow\Adobe\Acrobat\9.0
C:\Users\MARK\AppData\LocalLow\Adobe\Acrobat\9.0\Synchronizer
C:\Users\MARK\AppData\LocalLow\Adobe\Acrobat\9.0\Synchronizer\inprogress
C:\Users\MARK\AppData\LocalLow\Adobe\Acrobat\9.0\Synchronizer\metadata
C:\Users\MARK\AppData\LocalLow\Adobe\Acrobat\9.0\Synchronizer\resources
C:\Users\MARK\AppData\LocalLow\Adobe\Acrobat\9.0\Synchronizer\resources\resource-16
C:\Users\MARK\AppData\LocalLow\Adobe\Acrobat\9.0\Synchronizer\resources\resource-17
C:\Users\MARK\AppData\LocalLow\Adobe\Acrobat\9.0\Synchronizer\metadata\Synchronizer90
C:\Users\MARK\AppData\Local\Microsoft\Windows\History\desktop.ini
C:\Users\MARK\AppData\Local\Microsoft\Windows\History\History.IE5
C:\Users\MARK\AppData\Local\Microsoft\Windows\History\Low
C:\Users\MARK\AppData\Local\Microsoft\Windows\History\Low\desktop.ini
C:\Users\MARK\AppData\Local\Microsoft\Windows\History\Low\History.IE5
C:\Users\MARK\AppData\Local\Microsoft\Windows\History\Low\History.IE5\desktop.ini
C:\Users\MARK\AppData\Local\Microsoft\Windows\History\Low\History.IE5\index.dat
C:\Users\MARK\AppData\Local\Microsoft\Windows\History\Low\History.IE5\MSHist012009112520091126
C:\Users\MARK\AppData\Local\Microsoft\Windows\History\Low\History.IE5\MSHist012011071320110714
C:\Users\MARK\AppData\Local\Microsoft\Windows\History\Low\History.IE5\MSHist012011071320110714\index.dat
C:\Users\MARK\AppData\Local\Microsoft\Windows\History\Low\History.IE5\MSHist012009112520091126\index.dat
C:\Users\MARK\AppData\Local\Microsoft\Windows\History\History.IE5\desktop.ini
C:\Users\MARK\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
C:\Users\MARK\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014041420140421
C:\Users\MARK\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014042120140428
C:\Users\MARK\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014042820140505
C:\Users\MARK\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014050520140506
C:\Users\MARK\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014050520140506\index.dat
C:\Users\MARK\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014042820140505\index.dat
C:\Users\MARK\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014042120140428\index.dat
C:\Users\MARK\AppData\Local\Microsoft\Windows\History\History.IE5\MSHist012014041420140421\index.dat
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.MSO
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.Word
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\desktop.ini
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\Users
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\Users\MARK
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\Users\MARK\AppData
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\Users\MARK\AppData\Roaming
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\Users\MARK\AppData\Roaming\Microsoft
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\Users\MARK\AppData\Roaming\Microsoft\Windows
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\Users\MARK\AppData\Roaming\Microsoft\Windows\PrivacIE
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized\C\Users\MARK\AppData\Roaming\Microsoft\Windows\PrivacIE\Low
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\AntiPhishing
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\desktop.ini
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\MSIMGSIZ.DAT
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\466ZIOP6
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\desktop.ini
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\G1XBOEK4
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\GRS80LRC
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\I9L02Y4V
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\index.dat
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\LWKX3RO6
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\MDD3GF10
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\-4G8ZUKZ__D[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\0032003704288210-c2-photo-oYToxOntzOjU6ImNvbG9yIjtzOjU6IndoaXRlIjt9-gadgetmouse[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\0091004604452644-c1-photo-oYToxOntzOjE6InciO2k6MTQ1O30=-defis-de-la-redaction[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\01057[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\01057[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\0260015500349687-c1-photo-oYToxOntzOjE6InciO2k6NjA4O30=-trackmania-united[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\103[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\106[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\12599[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\1349187640_S_MULTIFOOTFIXE_V2x100_300x250_ADPERF[1].swf
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\1350296644_300x250-bricodepot_anniversaire_vague1[1].swf
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\13702[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\140[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\140[2].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\140[3].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\1470[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\15831[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\15846[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\173290_100002301026883_1442198081_q[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\174875_147028838145_1313643025_q[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\183971_10151509330073146_970575650_n[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\18721-12357[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\1qqc345kge1utev0egp1or2oh[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\2012-home-shelf-shopmac_LANG_FR[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\2012-ipadmini-home-sub_LANG_FR[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\216-4f7dbfd7s[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\217-4fac18d4s[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\219019206752[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\261031_100004023237535_1037771955_q[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\27355_1693943118_8253_q[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\274975_1075663630_1088984258_q[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\281[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\293[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\2959[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\30543_728_Part1_BB_F8[1].swf
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\31687731_avatar_small[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\3181[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\32645_87B2A81ED41B593AB9D12F878C784BB8[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\34060199-4a0466afs[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\34065358-5028d34bs[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\34076840-4c03990as[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\371539_100002005385578_1585157387_q[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\3727[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\3732[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\3776[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\4-UiytA--HT[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\40088578_jpeg_preview_medium[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\41571246_jpeg_preview_medium[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\41584593_jpeg_preview_medium[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\41615433_jpeg_preview_medium[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\41618190_jpeg_preview_medium[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\4554[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\46291-42394[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\4WSewcWboV8[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\4[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\525535_10151519007508146_1280565102_n[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\5623012721202862903[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\578519_10151498459103146_386524415_n[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\61465-36196[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\6800[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\6902296181_a78b8d6e90_s[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\6GvmaZn2YLb[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\800000207017[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\8124[1].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\8800[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\897[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\97[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\97[2].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\9979[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\;ord=960459467[1].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\;ord=960459467[2].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\;ord=960459467[3].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\abg[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\actions[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\actu_telecharger_droite[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\ads[3].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\advst_f[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\ad[1].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\afr[1].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\aleagypkg[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\alertIcons[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\alestetkr[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\AP-24Hxtm-0[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\applesearch[1]
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\apple[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\app_10_300285179985336_1976254680[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\Arrows-top[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\article[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\assets%20-%20smartbanner[1].swf
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\auth-refresh_core_core.iglegacy_core.io[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\auth-refresh_core_core.iglegacy_core.io[2].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\background[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\ban[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\BAN_728x90_m1_tag[1].swf
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\bas-gauche[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\base[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\bg[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\bg_bodyrepeat_120618180008[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\bg_footer[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\bg_haut_boite[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\bg_home[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\bg_structure[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\BhxMx7lGe9K[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\BitDefInt2013_FR_140[2].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\bloc-infos[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\blocdp[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\blochgss[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\block_header_exclusive[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\block_header_exclusive_cart[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\bottomright[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\bouton2[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\bouton_left[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\bouton_newsletter[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\btn_search_right[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\bucket_apple_tv[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\bullet_alt[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\bumperstickers_v2[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\ButtonStd002[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\button[1].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\categories-li[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\categories[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\cb=gapi[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\cb=gapi[2].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\cb=gapi[3].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\cb=gapi[4].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\cg[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\chrome2012_sprites[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\close[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\commentaire[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\commun[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\completion[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\count[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\count_video_plugin[1].swf
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\criteo[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\croix[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\crossdomain[1].xml
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\crossdomain[2].xml
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\crossdomain[3].xml
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\css_cI8DVGR7W53UJCLGJDx8rT9x8Aot93EMMD1_ZOVzu2Q[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\d=1[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\desktop.ini
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\display.pkg[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\DI[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\documentwrite[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\download[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\download_icon[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\drop-shadow[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\DRX[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\dr[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\ds[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\DZDJ1FV54e0[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\e5ca13d1baea32e7c4518f0dfa4e15e2[1].swf
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\ebaysup_e7092fr[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\education-loan-rail-mixed[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\elegant_V4_spec_300_250[1].swf
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\emily[1].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\emily[2].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\emily[5].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\en_US[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\EP[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\error[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\espace-sdb-off[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\es_ES[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\ex[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\EX[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\flashwrite_1_2[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\follow_button.1329368159[1].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\fonctions[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\fond-centre3[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\fond-pieddepage[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\fond[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\footer-icon-giftwrap[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\fr[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\ftr1bkgd_jungle[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\ft[2].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\ft[3].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\FY13Q2W8_BSD_12GMicrosite_FR_DIS_300x250_PiliersDevelopper_M2-Promovacances-Guillaume-Postaire[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\FY13Q2W8_BSD_12GMicrosite_FR_DIS_728x90_PiliersDevelopper_M3-Promovacances-Guillaume-Postaire[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\FY13Q3_BSD_12GDirect_FR_DIS_300x250_SAI[1].swf
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\gadget_sprite.cache[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\generic_1341223698[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\getads[1].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\ge[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\gifts[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\globalnav_text[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\globalnav_text[1].svg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\globalsearch_bg[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\globalsearch_spinner[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\GQITV2JSCNEOFE5OIWQQZL[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\guDfZeT4RfL[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\guide_nb[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\H9503[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\HA52971010[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\header[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\hero_title[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\highslide-styles[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\highslide[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\hit[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\hit[2].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\home[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\hs[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\hVF390375Nz[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\icon_fake_gplus[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\icon_user_offline[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\iefixe[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\ie[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\ifr[5].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\image-tb-7B797A-ACAAAB[1].svg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA04MLYH.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA055H3I.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA08HZKP.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA0JDAB7.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA0N5V8N.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA0TBE9F.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA0XS70E.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA18DUE9.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA1FQ90C.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA1JIFXV.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA1PK8F1.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA1QXT0N.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA1UN4JI.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA1W1BJF.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA1Y643M.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA205732.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA2A1XK3.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA2ALBAN.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA2JX99M.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA2Z7BXJ.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA39K9MV.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA3IPYAO.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA3PBOXS.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA3T5OK3.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA3YVSTU.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA4558MC.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA4KURJ4.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA4TJ2MZ.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA4V70XH.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA50D71R.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA5CFHX9.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA5M6216.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA6ANKVK.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA6B2SEA.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA6P4D58.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA6W6THT.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA700O2C.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA7075QI.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA78K3WZ.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA7D32ZJ.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA7S22PX.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA7WYQ7X.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA83BQ24.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA83IZEY.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA8CENSO.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA8E9CYQ.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA8KEU8U.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA8P7K81.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA8QG8TB.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA8TY7OI.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA91OLCU.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA9349DV.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA98DX1C.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA9AWBTM.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA9J4F3R.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCA9ZKVKC.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAAIIRXH.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCABV76B2.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCABWAH5X.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAC7KNT3.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAC7WSG3.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAC8WM8T.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCACEVSRA.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCACNYKM2.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCADF12JT.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCADMKM3Q.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCADV3BM9.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAE6CB77.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAEB5BC5.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAEEVF8W.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAEF23GV.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAEGN3HG.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAEPLJUN.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAEUDXSO.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAF24ZUP.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAF2EDGI.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAF4A2AA.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAFD9IQ4.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAFF06B6.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAFGBHVN.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAFS13QB.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAFTA12D.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAFXMFMT.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAG42FKY.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAG4QLG1.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAG83BYB.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAGGMNQG.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAGHFQ8L.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAGHSI4K.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAGIVZ20.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAGKY9HW.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAGW06HF.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAH9WRZL.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAHD0JK4.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAHDHRAG.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAHI1Z8N.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAHK7UU1.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAHV31W8.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAI341WA.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAI84WTI.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAII8V4T.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAIL7DLQ.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAIQ70EC.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAIS1127.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAIVG7EC.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAJ53FS8.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAJ68CIL.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAJYA9JA.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAK617G6.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAK6541L.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAKKBPH6.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAL3XK0S.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCALJXS1X.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCALM0CNV.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCALQN05L.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCALSOC2C.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCALTGU03.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAMCQYG7.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAN8RNDJ.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCANBSRV0.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAO06N9K.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAO3L2FS.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAO4S5HX.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAO4UM8B.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAOEUJXN.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAOGR6AU.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAONS40T.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAOQM4EY.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAOQP4OM.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAP0S3GS.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAP1HXF6.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAPA3NTM.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAPBCYQB.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAPDY2PA.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAPLP6NC.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAPOJAWV.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAPQFFTK.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAPXEXT5.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAQ0YBBV.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAQFRDRO.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAQJ0N9M.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAQMATV7.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAQXE32B.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAR76OPO.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCARBIKIS.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCARLF11Q.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCARNZAKK.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCASHNEOO.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCASJ70QR.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCASJJRLJ.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCASPTMC8.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCASR12S3.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAT7EGZU.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAT9WNX7.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCATMKX97.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCATNPA0W.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCATRTWK8.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAU9BRZS.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAU9DJ5G.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAUEXHZR.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAUFSAEZ.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAUGQI8D.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAUIJ5IE.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAUW1CW6.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAUW5WIU.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAV31B5I.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAV3FLCM.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAV48H1U.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAV6F6SB.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAV715M2.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAVK6L2L.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAVMM1SR.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAVQB0KS.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAVQEB6L.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAX3SGBD.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAXAF732.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAXCATG9.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAXESH7C.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAXKSUMA.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAXR625A.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAXX09EI.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAY4KL23.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAYEXS60.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAYIGN1Z.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAZIAZ2F.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imagesCAZYZAFT.jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\IMC180673[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\imgLoading_30x30[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\impr[1]
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\infobulle[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\itunes[1].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\itunes_10[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\iutil.prestashop-modifications[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\jouet_84050[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\journaldudim[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\jp[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\jquery-1.4.2.min[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\jquery-1.4.2.min[2].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\jquery-1.6.4[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\jquery.autocomplete[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\jquery.jgrowl[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\jquery.min[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\jquery.nivo.slider.pack[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\jquery.serialScroll[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\jquery.tabs.pack[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\jquery.tabs[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\js_D18t7X6KsGV6JeK8mBqYa5Jf7DE1TX00WNgQRX2R_J8[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\KAV13_fr_140[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\Keyrocket-Premium_L[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\lancer-le-telechargement-340704-0-mypaint[1].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\layout[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\LC[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\LDWHGAa2nUi[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\Leclerc_cpt_gnd_octobre_728_90_himedia[1].swf
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\Left[1].txt
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\left_arrow[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\less[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\lienrose[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\lightbox[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\line[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\link-more[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\list.css[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\lksU9jsGA5F[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\loading[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\logopn[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\logopz[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\logo_cdiscount[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\logo_deckbuilder[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\logo_fianet[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\logo_infovilles[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\log[1]
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\log[2]
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\ludokado-logo[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\M0va7x--CeL[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\magic-the-gathering-return-of-the-ravnica-playmat-v3[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\main[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\main[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\main[2].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\mc_i_lr[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\mc_i_lr[2].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\menu-haut[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\mgyhp_sm[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\mini-moins[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\mini-plus[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\mini_0_090224040408[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\mini_0_110623124228[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\modules[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\morearrow_blue[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\more[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\mt[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\mzi.ziiqrpeb.60x60-50[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\NcZawtQ8OXMJ[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\next[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\noimage_100721064614[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\nph-search10[1].xml
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\ntxbgayxaqzbtplgoufpe5m34[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\nwGeoAds[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\oZI01RatJPB[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\pacifico[1].ttf
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\pager-filter[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\patch[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\pause[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\PC_26157_199246[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\picto-salon[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\picto_footer[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\pikawin[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\PKdmny-rhTa[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\PKgznBt-vRY[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\play[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\pLdjpb6rGHT[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\pnDyT22xgMf[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\popin[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\poplight[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\previous[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\primary_main-btm[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\prototype[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\prototype[2].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\ps-icone[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\PT[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\question-input-bprice[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\question-input-wedding[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\red_vertical_line.cache[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\repeat-y-facet-button-taille[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\retour[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\rL1nmAj2QGN[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\rpc[2].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\rs=AItRSTMmCDdd-TilLpndv16DrPafNyoCDw[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\rs=AItRSTMvHNsHswsGyI5wftX2jQp-bLz9Sw[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\rs=AItRSTObSALBLAMkFiPJDjysE3BMmx5CyA[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\rs=AItRSTOId4wUaDBzsMkFrC0LnLU5e2oEow[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\rs=AItRSTOMPbtbYIIUGoF1S89LPqUpn7SIkQ[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\rs=AItRSTOvkQBV6j7QMQ1W1kkQL_PBGsyfSA[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\rs=AItRSTO_suxTlbcaY0iTY5cIAzdl3K0zdA[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\rs=AItRSTO_suxTlbcaY0iTY5cIAzdl3K0zdA[2].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\rs=AItRSTP-y_TCVRlPPQjtDE81fOgxnNgdRQ[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\rs=AItRSTPBvOYa0qm-CZXb_E1-MftJjBus0g[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\rs[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\safe_image[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\safe_image[2].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\screenad_launch_9.4.0_scrambled[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\scriptaculous[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\search-over[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\search[3].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\search[3].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\search[4].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\search_featured[1].xml
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\sem_4ba9ac0c723ff8b4a486b5e93aa19779[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\sem_f0b88b8d5aee5866ba84730d35feb6b4[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\sh114[1].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\shortcuts[1].php
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\show[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\slf[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\slider[1].swf
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\small[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\sprIconStatusMsg[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\spriteShare[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\sQDHeiLAeai[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\sso[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\startgate[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\star_active[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\sw-footer[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\swxa[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\SYS-400_vjo_75514475369_1_fr_FR[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\tab_b[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\tab_l[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\tab_m[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\the_05c[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\thickbox[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\ttj[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\twitjs[1].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\UEJYFocuWxL[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\UFbhoWR0Hjo[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\ultrarares[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\UL[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\Uy0S-JwLSOj[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\violator_icloud_bg[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\visi.201109071817[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\vtCA6L130Y.png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\vtCACKT29B.png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\vtCALHT97P.png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\vtCAOQGZDW.png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\vtCAQE5F4C.png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\vtCAS6Y8R4.png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\vtCASM8XYK.png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\vtCAWL6PV3.png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\vt[10].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\vt[11].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\vt[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\vt[2].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\vt[3].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\vt[4].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\vt[5].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\vt[6].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\vt[7].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\vt[8].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\vt[9].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\v_A7cfl3yZs[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\warning[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\whatson_icon_appstore[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\whatson_icon_tv20100901[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\whatson_itunesu20100901[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\widget006_top[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\widget096[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\widget_beta_test[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\winrar4_140[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\wizards[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\WORLD158MIC01[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\XLZ70DrQyew[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\youthworkshops_1331681341s[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\YwkdL8QkzV5[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\z-controls[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\Ziw39zQjoop[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\ZSM9MGjuEiO[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\{marker}[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\{onion}[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\{onion}[2].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\TDQLOBGR\{stats,map,layers}[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\-22546-photo-crop-p0441e5167fbfcfcbb02c500b864d4ad8-colin-mcrae-dirt-2[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\-PAXP-deijE[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\0032003203157696-c1-photo-top-logiciels-gratuits-clubic-mikeklo[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\0078005005718718-c1-photo-zte-blade-iii[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\0260015500003233-c1-photo-oYToxOntzOjE6InciO2k6NjA4O30=-midtown-madness-2[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\0260015500003758-c1-photo-oYToxOntzOjE6InciO2k6NjA4O30=-sega-rally-2[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\08761[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\0[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\10365[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\105[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\1076[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\140[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\140[2].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\17894[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\180s[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\1825653352@Top,Right,Position1,Position2,Position3,Position4,x01,x02,TopLeft[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\187189_100004321630004_590142149_q[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\199924[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\211568_100003053711761_1982465519_q[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\2364[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\2669[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\274179_100000051893386_985380993_q[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\29761_TrailerCuts_300x250_Part1_BB_F8[1].swf
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\305766_10150487296963146_1827765469_n[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\32757370_jpeg_preview_medium[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\34055169s[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\34056755-4faa5908s[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\369449_100000290968966_1375653311_q[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\369640_1462273252_1708700517_q[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\371144_100002953427858_581646481_q[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\37519_creditneto_generique_728x90[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\40170335_jpeg_preview_medium[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\41547960_jpeg_preview_large[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\41573713_jpeg_preview_medium[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\41574255_jpeg_preview_medium[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\41599972_jpeg_preview_medium[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\41620937_jpeg_preview_medium[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\41643675_jpeg_preview_medium[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\41645_100001682341505_2600_q[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\4roSJ1sCZEk[1].swf
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\50237_183566489600_532530815_q[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\552284_10151519008093146_360239720_n[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\5734588454331497713[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\6326258[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\650km[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\6902296181_a78b8d6e90_b[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\6NgdP4PZyfY[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\728x90_eric_140812_2012081412023236[1].swf
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\76221_10151512783368146_1791740625_n[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\800000207017[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\8097[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\9067[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\9b3e07aa-13a4-423b-96eb-e16b9fbeffb0[1].swf
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\actu_telecharger_centre[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\adjs_r[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\adobe-illustrator-10-32x32[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\ads[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\ads[2].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\ads[3].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\ad[7].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\afr[1].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\aleagypkg[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\all[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\animated_bg[1].swf
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\applesearch[1]
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\applesearch[2]
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\arrow_down[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\article-pokemon-legendaire-noir-blanc[1].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\auth-refresh_core_core.iglegacy_core.io[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\autodesk-123d-01-32x32[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\a[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\B-wc5pERbm_[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\base@2x[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\base[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\bazaarvoice[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\bazaarvoice[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\BA[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\beacon[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\bg-lienmp[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\bg_categorie[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\bg_footer[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\bg_header[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\bg_menu_vertical[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\blank[1].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\bloccol[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\bootstrap[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\branding[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\btn.c5bcc9de085c51bf889f6a8f33128be2[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\bt_open[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\bucket_itunes_match[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\bucket_itunes_preview_title[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\button-large[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\button-small[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\buttons-big[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\buttons-secure[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\button[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\button_hover.png[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\button_topic_locked[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\button_topic_new[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\cars-2-machine-a-stickers-et-badges[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\carte-cadeau_121005123949[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\cb=gapi[2].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\cb=gapi[3].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\charge_cadre[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\chercheur_elite_petit[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\chercheur_forme_petit[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\chrome-48[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\chrome-48[2].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\client[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\CL[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\comingsoon_violator[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\compiled[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\connect_light_medium_short[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\controls[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\cookies_bkg[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\cool[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\country-selector-bottom[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\country-selector-top[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\count[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\creashop[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\css_CKoWqiBj9gVXhPuDSnNphuEB0b0J2To76x0pX0EGqn4[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\cvhl2ptchq2ubaj5ed0ifwutp[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\d7jAJCebvG9[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\d=1[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\datepicker-custom[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\DB2_corner_02_expand_2_1202[1].swf
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\dD9HlD8e4p_[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\default+fr.I[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\default_nowatermark.swf[1].swf
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\desktop.ini
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\destockage[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\DEX[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\df[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\display.pkg[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\dmplayer-prod.swf[1].swf
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\down-menu[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\download_hero[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\download_hero_whatis20100901[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\download_title[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\dp[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\dx[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\DZDJ1FV54e0[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\ecrire_un_article[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\Ehg-atPlwyb[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\elegant_V4_spec_300_250[1].xml
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\emily[1].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\error[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\espace-garage-off[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\espace-jardin-off[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\etoiles_demi[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\expandingGlobalTemplate_v2_71_03[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\facebook_appstore_icon[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\facebox.newsletter_suggest_ajax[1].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\fastbutton[1].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\fastbutton[2].htm
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\feedbacktab[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\fermer[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\FjDO7JvSVec[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\FMGifj24ZmN[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\fond-entete2[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\fond_actus_haut_2[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\fond_tableau[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\footer.png[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\footerbar_bg[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\fr_FR[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\fr_FY13Q3_google_smb_728x90[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\ftr2bkgd_jungle[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\ftr2_jungle[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\ftr3_jungle[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\ft[3].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\FY13Q2W8_BSD_12GMicrosite_FR_DIS_300x250_PiliersDevelopper_M2-Promovacances-Guillaume-Postaire[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\FY13Q3_BSD_12GDirect_FR_DIS_300x250_SAI[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\gauche[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\giratina-ex-180pv-edition-noire-et-blanc-dragon-s-exalted-92-124[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\globalnav-text_LANG_FR[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\globalnav[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\globalsearch_bg[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\globalsearch_field[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\global[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\google_betterweb_DR_vault_300x600_FR_v2[1].swf
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\grey_pins2[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\hdr1_jungle[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\hdr2_jungle[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\hdr3_jungle[1].gif
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\headerConsoleIcons[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\header_auth[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\header_bg_suite[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\hero_gallery_1[1].png
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\highslide[1].js
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\hiphop_300X150[1].swf
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\home-products[1].jpg
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\home[1].css
C:\Users\MARK\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\N7U16K5Z\icon-calltoaction[1].png
C:\Users\MARK\AppData\Roaming\Microsoft\Windows\Recent\103.lnk
C:\Users\MARK\AppData\Roaming\Microsoft\Windows\Recent\174875_147028838145_1313643025_q[1].lnk
C:\Users\MARK\AppData\Roaming\Microsoft\Windows\Recent\196325590001[1].lnk
C:\Users\MARK\AppData\Roaming\Microsoft\Windows\Recent\appartement rue de la Tour.lnk
C:\Users\MARK\AppData\Roaming\Microsoft\Windows\Recent\BoardingPass Paris Orly Naples 14 07 2011.lnk
C:\Users\MARK\AppData\Roaming\Microsoft\Windows\Recent\cartes.lnk
C:\Users\MARK\AppData\Roaming\Microsoft\Windows\Recent\copie pour les eleves.lnk
C:\Users\MARK\AppData\Roaming\Microsoft\Windows\Recent\desktop.ini
C:\Users\MARK\AppData\Roaming\Microsoft\Windows\Recent\Download.lnk
C:\Users\MARK\AppData\Roaming\Microsoft\Windows\Recent\EMBA HEC.lnk
C:\Users\MARK\AppData\Roaming\Microsoft\Windows\Recent\file di lado per scivere.lnk
C:\Users\MARK\AppData\Roaming\Microsoft\Windows\Recent\groudon ex.lnk
C:\Users\MARK\AppData\Roaming\Microsoft\Windows\Recent\Immagini.lnk
C:\Users\MARK\AppData\Roaming\Microsoft\Windows\Recent\Inazuma Eleven 2 Bufera Di Neve [iT].lnk
C:\Users\MARK\AppData\Roaming\Microsoft\Windows\Recent\iTunes store.lnk
C:\Users\MARK\AppData\Roaming\Microsoft\Windows\Recent\JEUX.lnk
C:\Users\MARK\AppData\Roaming\Microsoft\Windows\Recent\kigore ex.lnk
C:\Users\MARK\AppData\Roaming\Microsoft\Windows\Recent\Ladislas Ferret.lnk
C:\Users\MARK\AppData\Roaming\Microsoft\Windows\Recent\Le contrat d entretien du chauffage - Copia.lnk
C:\Users\MARK\AppData\Roaming\Microsoft\Windows\Recent\Le contrat d entretien du chauffage.lnk
C:\Users\MARK\AppData\Roaming\Microsoft\Windows\Recent\mewtwo ex.lnk
C:\Users\ASPIRE~1\AppData\Local\Temp\Liste de classe 11eme 2 sans mail.xlsx.xls
C:\Users\ASPIRE~1\AppData\Local\Temp\liste des besoins salles 2012.xls
C:\Users\ASPIRE~1\AppData\Local\Temp\Locandina Sorrento 28 aprile 2012.pdf
C:\Users\ASPIRE~1\AppData\Local\Temp\Low
C:\Users\ASPIRE~1\AppData\Local\Temp\M. LEBLANC Pascal.vcf
C:\Users\ASPIRE~1\AppData\Local\Temp\MCCLEANUP.5.0.285.4_DMPackage_en-US_Release
C:\Users\ASPIRE~1\AppData\Local\Temp\Memo Unico 2013 redditi 2012.doc
C:\Users\ASPIRE~1\AppData\Local\Temp\Messe Avent 2013.doc
C:\Users\ASPIRE~1\AppData\Local\Temp\MT 799 dtd 05.10.2012.pdf
C:\Users\ASPIRE~1\AppData\Local\Temp\nouveau digicode entretien Mme Bardin.doc
C:\Users\ASPIRE~1\AppData\Local\Temp\Novena 2013.pdf
C:\Users\ASPIRE~1\AppData\Local\Temp\open franklin v6.pdf
C:\Users\ASPIRE~1\AppData\Local\Temp\Pappagallo che canta l'inno di mameli.wmv
C:\Users\ASPIRE~1\AppData\Local\Temp\PHILIPS GC8325.pdf
C:\Users\ASPIRE~1\AppData\Local\Temp\PISCINE 9EME2.xlsx
C:\Users\ASPIRE~1\AppData\Local\Temp\plugtmp
C:\Users\ASPIRE~1\AppData\Local\Temp\Posizione Globale 16 aprile 2013.pdf
C:\Users\ASPIRE~1\AppData\Local\Temp\PROJET OJ 2 AG 20 03 2011.doc
C:\Users\ASPIRE~1\AppData\Local\Temp\PUGLISI COSENTINO ALFIO.pdf
C:\Users\ASPIRE~1\AppData\Local\Temp\PUGLISI COSENTINO SALVATORE-1.pdf
C:\Users\ASPIRE~1\AppData\Local\Temp\PUGLISI COSENTINO SALVATORE.pdf
C:\Users\ASPIRE~1\AppData\Local\Temp\RAYA S.P.A. Fascicolo RM.pdf
C:\Users\ASPIRE~1\AppData\Local\Temp\RAYA S.P.A. Fascicolo.pdf
C:\Users\ASPIRE~1\AppData\Local\Temp\RAYA S.P.A.-1.pdf
C:\Users\ASPIRE~1\AppData\Local\Temp\RAYA S.P.A..pdf
C:\Users\ASPIRE~1\AppData\Local\Temp\RESPONSABLES jm 2013.xls
C:\Users\ASPIRE~1\AppData\Local\Temp\Ricorso TAR Bando ispettivo.pdf
C:\Users\ASPIRE~1\AppData\Local\Temp\Skype
C:\Users\ASPIRE~1\AppData\Local\Temp\STATUTO RAYA DEF..doc
C:\Users\ASPIRE~1\AppData\Local\Temp\VBE
C:\Users\ASPIRE~1\AppData\Local\Temp\WANNENES GE 136 161213.pdf
C:\Users\ASPIRE~1\AppData\Local\Temp\WinDev - Edition - 08_04_37.pdf
C:\Users\ASPIRE~1\AppData\Local\Temp\WPDNSE
C:\Users\ASPIRE~1\AppData\Local\Temp\~DF61BF.tmp
C:\Users\ASPIRE~1\AppData\Local\Temp\~DF6ABC.tmp
C:\Users\ASPIRE~1\AppData\Local\Temp\~DF9EB1.tmp
C:\Users\ASPIRE~1\AppData\Local\Temp\~DFE264.tmp
C:\Users\ASPIRE~1\AppData\Local\Temp\Skype\DbTemp
C:\Users\ASPIRE~1\AppData\Local\Temp\MCCLEANUP.5.0.285.4_DMPackage_en-US_Release\VS
C:\Windows\TEMP\ASPNETSetup_00000.log
C:\Windows\TEMP\ASPNETSetup_00001.log
C:\Windows\TEMP\ASPNETSetup_00002.log
C:\Windows\TEMP\ASPNETSetup_00003.log
C:\Windows\TEMP\avnwldrtemp
C:\Windows\TEMP\Cab1074.tmp
C:\Windows\TEMP\Cab1776.tmp
C:\Windows\TEMP\Cab1C84.tmp
C:\Windows\TEMP\Cab1CF2.tmp
C:\Windows\TEMP\Cab203C.tmp
C:\Windows\TEMP\Cab20B9.tmp
C:\Windows\TEMP\Cab20F7.tmp
C:\Windows\TEMP\Cab222.tmp
C:\Windows\TEMP\Cab22FE.tmp
C:\Windows\TEMP\Cab2522.tmp
C:\Windows\TEMP\Cab25B8.tmp
C:\Windows\TEMP\Cab25C8.tmp
C:\Windows\TEMP\Cab2AF6.tmp
C:\Windows\TEMP\Cab2D8D.tmp
C:\Windows\TEMP\Cab2F49.tmp
C:\Windows\TEMP\Cab312D.tmp
C:\Windows\TEMP\Cab3256.tmp
C:\Windows\TEMP\Cab3597.tmp
C:\Windows\TEMP\Cab3611.tmp
C:\Windows\TEMP\Cab361C.tmp
C:\Windows\TEMP\Cab374E.tmp
C:\Windows\TEMP\Cab385E.tmp
C:\Windows\TEMP\Cab3B2B.tmp
C:\Windows\TEMP\Cab3BD2.tmp
C:\Windows\TEMP\Cab3FFC.tmp
C:\Windows\TEMP\Cab424C.tmp
C:\Windows\TEMP\Cab42F8.tmp
C:\Windows\TEMP\Cab444F.tmp
C:\Windows\TEMP\Cab4D83.tmp
C:\Windows\TEMP\Cab4E4E.tmp
C:\Windows\TEMP\Cab50AE.tmp
C:\Windows\TEMP\Cab50CD.tmp
C:\Windows\TEMP\Cab50EC.tmp
C:\Windows\TEMP\Cab52E2.tmp
C:\Windows\TEMP\Cab543B.tmp
C:\Windows\TEMP\Cab5521.tmp
C:\Windows\TEMP\Cab57C0.tmp
C:\Windows\TEMP\Cab57DF.tmp
C:\Windows\TEMP\Cab5AEB.tmp
C:\Windows\TEMP\Cab5B0A.tmp
C:\Windows\TEMP\Cab5BBA.tmp
C:\Windows\TEMP\Cab5EC7.tmp
C:\Windows\TEMP\Cab6001.tmp
C:\Windows\TEMP\Cab61A8.tmp
C:\Windows\TEMP\Cab643E.tmp
C:\Windows\TEMP\Cab6557.tmp
C:\Windows\TEMP\Cab6585.tmp
C:\Windows\TEMP\Cab6621.tmp
C:\Windows\TEMP\Cab6B4F.tmp
C:\Windows\TEMP\Cab6CC6.tmp
C:\Windows\TEMP\Cab6DFE.tmp
C:\Windows\TEMP\Cab6F2.tmp
C:\Windows\TEMP\Cab6F74.tmp
C:\Windows\TEMP\Cab701A.tmp
C:\Windows\TEMP\Cab708D.tmp
C:\Windows\TEMP\Cab72A8.tmp
C:\Windows\TEMP\Cab73F1.tmp
C:\Windows\TEMP\Cab75B8.tmp
C:\Windows\TEMP\Cab781A.tmp
C:\Windows\TEMP\Cab782B.tmp
C:\Windows\TEMP\Cab78D7.tmp
C:\Windows\TEMP\Cab7A1E.tmp
C:\Windows\TEMP\Cab7A5D.tmp
C:\Windows\TEMP\Cab7B08.tmp
C:\Windows\TEMP\Cab7BD3.tmp
C:\Windows\TEMP\Cab7C04.tmp
C:\Windows\TEMP\Cab7C5F.tmp
C:\Windows\TEMP\Cab7E76.tmp
C:\Windows\TEMP\Cab8297.tmp
C:\Windows\TEMP\Cab851C.tmp
C:\Windows\TEMP\Cab8612.tmp
C:\Windows\TEMP\Cab861F.tmp
C:\Windows\TEMP\Cab86DF.tmp
C:\Windows\TEMP\Cab89E7.tmp
C:\Windows\TEMP\Cab8AA9.tmp
C:\Windows\TEMP\Cab8AF0.tmp
C:\Windows\TEMP\Cab8B3.tmp
C:\Windows\TEMP\Cab8D9E.tmp
C:\Windows\TEMP\Cab8DFC.tmp
C:\Windows\TEMP\Cab8E0B.tmp
C:\Windows\TEMP\Cab8F43.tmp
C:\Windows\TEMP\Cab91BB.tmp
C:\Windows\TEMP\Cab92A2.tmp
C:\Windows\TEMP\Cab976E.tmp
C:\Windows\TEMP\Cab989E.tmp
C:\Windows\TEMP\Cab9942.tmp
C:\Windows\TEMP\Cab9E6B.tmp
C:\Windows\TEMP\Cab9FE.tmp
C:\Windows\TEMP\CabA295.tmp
C:\Windows\TEMP\CabA342.tmp
C:\Windows\TEMP\CabA47C.tmp
C:\Windows\TEMP\CabA9B0.tmp
C:\Windows\TEMP\CabAC26.tmp
C:\Windows\TEMP\CabB079.tmp
C:\Windows\TEMP\CabB173.tmp
C:\Windows\TEMP\CabB402.tmp
C:\Windows\TEMP\CabB4FE.tmp
C:\Windows\TEMP\CabB6A1.tmp
C:\Windows\TEMP\CabB7AA.tmp
C:\Windows\TEMP\CabB85A.tmp
C:\Windows\TEMP\CabB968.tmp
C:\Windows\TEMP\CabBD40.tmp
C:\Windows\TEMP\CabC0DC.tmp
C:\Windows\TEMP\CabC264.tmp
C:\Windows\TEMP\CabC512.tmp
C:\Windows\TEMP\CabC6B7.tmp
C:\Windows\TEMP\CabC715.tmp
C:\Windows\TEMP\CabC7A2.tmp
C:\Windows\TEMP\CabCF6E.tmp
C:\Windows\TEMP\CabD114.tmp
C:\Windows\TEMP\CabD326.tmp
C:\Windows\TEMP\CabD345.tmp
C:\Windows\TEMP\CabD795.tmp
C:\Windows\TEMP\CabD835.tmp
C:\Windows\TEMP\CabD8C1.tmp
C:\Windows\TEMP\CabD8FE.tmp
C:\Windows\TEMP\CabDE2E.tmp
C:\Windows\TEMP\CabDED9.tmp
C:\Windows\TEMP\CabE31D.tmp
C:\Windows\TEMP\CabE494.tmp
C:\Windows\TEMP\CabE619.tmp
C:\Windows\TEMP\CabED2B.tmp
C:\Windows\TEMP\CabEF46.tmp
C:\Windows\TEMP\CabF1FC.tmp
C:\Windows\TEMP\CabF3EF.tmp
C:\Windows\TEMP\CabF620.tmp
C:\Windows\TEMP\CabF76A.tmp
C:\Windows\TEMP\CabF787.tmp
C:\Windows\TEMP\CabF91D.tmp
C:\Windows\TEMP\CabFA26.tmp
C:\Windows\TEMP\CabFA64.tmp
C:\Windows\TEMP\CabFA68.tmp
C:\Windows\TEMP\CabFB4E.tmp
C:\Windows\TEMP\cmdinstall.exe_13-11-22_13.14.34.log.7z
C:\Windows\TEMP\cmdinstall.exe_14-04-06_14.26.39.log.7z
C:\Windows\TEMP\ComodoLogsFolder
C:\Windows\TEMP\Cookies
C:\Windows\TEMP\dat39BF.tmp
C:\Windows\TEMP\dat3AC9.tmp
C:\Windows\TEMP\dat3E03.tmp
C:\Windows\TEMP\dat3FA9.tmp
C:\Windows\TEMP\dat5D65.tmp
C:\Windows\TEMP\dat5E60.tmp
C:\Windows\TEMP\dat65BF.tmp
C:\Windows\TEMP\dat65DF.tmp
C:\Windows\TEMP\datD3FD.tmp
C:\Windows\TEMP\datD46B.tmp
C:\Windows\TEMP\dd_clwireg.txt
C:\Windows\TEMP\dd_dotNetFx40LP_Client_x86it_decompression_log.txt
C:\Windows\TEMP\dd_dotNetFx40_Client_x86_decompression_log.txt
C:\Windows\TEMP\dd_NDP40-KB2468871-v2-x86_decompression_log.txt
C:\Windows\TEMP\dd_NDP45-KB2898869-x86_decompression_log.txt
C:\Windows\TEMP\dd_NDP45-KB2901126-x86_decompression_log.txt
C:\Windows\TEMP\dd_NDP45-KB2931368-x86_decompression_log.txt
C:\Windows\TEMP\dd_NDP451-KB2858725-x86-x64-ENU_decompression_log.txt
C:\Windows\TEMP\dd_NDP451-KB2858725-x86-x64-ITA_decompression_log.txt
C:\Windows\TEMP\dd_SetupUtility.txt
C:\Windows\TEMP\dd_vcredistMSI075B.txt
C:\Windows\TEMP\dd_vcredistMSI0894.txt
C:\Windows\TEMP\dd_vcredistMSI0C0C.txt
C:\Windows\TEMP\dd_vcredistMSI138C.txt
C:\Windows\TEMP\dd_vcredistMSI59E4.txt
C:\Windows\TEMP\dd_vcredistMSI60B4.txt
C:\Windows\TEMP\dd_vcredistMSI6145.txt
C:\Windows\TEMP\dd_vcredistMSI6870.txt
C:\Windows\TEMP\dd_vcredistMSI6B4D.txt
C:\Windows\TEMP\dd_vcredistMSI79D6.txt
C:\Windows\TEMP\dd_vcredistMSI7C09.txt
C:\Windows\TEMP\dd_vcredistUI075B.txt
C:\Windows\TEMP\dd_vcredistUI0894.txt
C:\Windows\TEMP\dd_vcredistUI0C0C.txt
C:\Windows\TEMP\dd_vcredistUI138C.txt
C:\Windows\TEMP\dd_vcredistUI59E4.txt
C:\Windows\TEMP\dd_vcredistUI60B4.txt
C:\Windows\TEMP\dd_vcredistUI6145.txt
C:\Windows\TEMP\dd_vcredistUI6870.txt
C:\Windows\TEMP\dd_vcredistUI6B4D.txt
C:\Windows\TEMP\dd_vcredistUI79D6.txt
C:\Windows\TEMP\dd_vcredistUI7C09.txt
C:\Windows\TEMP\dd_wcf_CA_smci_20140304_021031_794.txt
C:\Windows\TEMP\DMIB15C.tmp
C:\Windows\TEMP\dragon_setup.exe
C:\Windows\TEMP\dragon_version.inf
C:\Windows\TEMP\DWDFC04.tmp
C:\Windows\TEMP\fwtsqmfile00.sqm
C:\Windows\TEMP\fwtsqmfile01.sqm
C:\Windows\TEMP\fwtsqmfile02.sqm
C:\Windows\TEMP\fwtsqmfile03.sqm
C:\Windows\TEMP\fwtsqmfile04.sqm
C:\Windows\TEMP\fwtsqmfile05.sqm
C:\Windows\TEMP\fwtsqmfile06.sqm
C:\Windows\TEMP\fwtsqmfile07.sqm
C:\Windows\TEMP\fwtsqmfile08.sqm
C:\Windows\TEMP\fwtsqmfile09.sqm
C:\Windows\TEMP\fwtsqmfile10.sqm
C:\Windows\TEMP\fwtsqmfile11.sqm
C:\Windows\TEMP\fwtsqmfile12.sqm
C:\Windows\TEMP\fwtsqmfile13.sqm
C:\Windows\TEMP\fwtsqmfile14.sqm
C:\Windows\TEMP\fwtsqmfile15.sqm
C:\Windows\TEMP\fwtsqmfile16.sqm
C:\Windows\TEMP\fwtsqmfile17.sqm
C:\Windows\TEMP\fwtsqmfile18.sqm
C:\Windows\TEMP\fwtsqmfile19.sqm
C:\Windows\TEMP\History
C:\Windows\TEMP\HP
C:\Windows\TEMP\KB2468871v2_10.0.30319
C:\Windows\TEMP\KB2468871v2_20120211_161429120-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2468871v2_20120211_161429120.html
C:\Windows\TEMP\KB2518870_10.0.30319
C:\Windows\TEMP\KB2518870_20120211_154629780-Microsoft .NET Framework 4 Client Profile ITA Language Pack-MSP1.txt
C:\Windows\TEMP\KB2518870_20120211_154629780-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2518870_20120211_154629780.html
C:\Windows\TEMP\KB2533523_10.0.30319
C:\Windows\TEMP\KB2533523_20120211_152303007-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2533523_20120211_152303007.html
C:\Windows\TEMP\KB2539636_10.0.30319
C:\Windows\TEMP\KB2539636_20120211_153813621-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2539636_20120211_153813621.html
C:\Windows\TEMP\KB2572078_10.0.30319
C:\Windows\TEMP\KB2572078_20120211_162218978-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2572078_20120211_162218978.html
C:\Windows\TEMP\KB2600217_10.0.30319
C:\Windows\TEMP\KB2600217_20120307_030206983-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2600217_20120307_030206983.html
C:\Windows\TEMP\KB2604121_10.0.30319
C:\Windows\TEMP\KB2604121_20120511_030949884-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2604121_20120511_030949884.html
C:\Windows\TEMP\KB2633870_10.0.30319
C:\Windows\TEMP\KB2633870_20120217_030533765-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2633870_20120217_030533765.html
C:\Windows\TEMP\KB2656351_10.0.30319
C:\Windows\TEMP\KB2656351_20120211_155010248-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2656351_20120211_155010248.html
C:\Windows\TEMP\KB2656368v2_10.0.30319
C:\Windows\TEMP\KB2656368v2_20120614_030346804-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2656368v2_20120614_030346804.html
C:\Windows\TEMP\KB2656368_10.0.30319
C:\Windows\TEMP\KB2656368_20120413_030938149-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2656368_20120413_030938149.html
C:\Windows\TEMP\KB2656405_10.0.30319
C:\Windows\TEMP\KB2656405_20120511_032207126-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2656405_20120511_032207126.html
C:\Windows\TEMP\KB2686827_10.0.30319
C:\Windows\TEMP\KB2686827_20120614_032144779-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2686827_20120614_032144779.html
C:\Windows\TEMP\KB2729449_10.0.30319
C:\Windows\TEMP\KB2729449_20121116_032145718-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2729449_20121116_032145718.html
C:\Windows\TEMP\KB2737019_10.0.30319
C:\Windows\TEMP\KB2737019_20121116_032838766-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2737019_20121116_032838766.html
C:\Windows\TEMP\KB2742595_10.0.30319
C:\Windows\TEMP\KB2742595_20130111_031540076-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2742595_20130111_031540076.html
C:\Windows\TEMP\KB2789642_10.0.30319
C:\Windows\TEMP\KB2789642_20130214_030552607-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2789642_20130214_030552607.html
C:\Windows\TEMP\KB2804576_10.0.30319
C:\Windows\TEMP\KB2804576_20130516_031721223-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2804576_20130516_031721223.html
C:\Windows\TEMP\KB2832407_10.0.30319
C:\Windows\TEMP\KB2832407_20130718_031321526-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2832407_20130718_031321526.html
C:\Windows\TEMP\KB2835393_10.0.30319
C:\Windows\TEMP\KB2835393_20130719_031658906-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2835393_20130719_031658906.html
C:\Windows\TEMP\KB2836939v3_10.0.30319
C:\Windows\TEMP\KB2836939v3_20131010_031416043-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2836939v3_20131010_031416043.html
C:\Windows\TEMP\KB2836939_10.0.30319
C:\Windows\TEMP\KB2836939_20130614_030300411-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2836939_20130614_030300411.html
C:\Windows\TEMP\KB2840628v2_10.0.30319
C:\Windows\TEMP\KB2840628v2_20130821_030400085-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2840628v2_20130821_030400085.html
C:\Windows\TEMP\KB2840628_10.0.30319
C:\Windows\TEMP\KB2840628_20130718_030428924-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2840628_20130718_030428924.html
C:\Windows\TEMP\KB2858302v2_10.0.30319
C:\Windows\TEMP\KB2858302v2_20131010_030537144-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2858302v2_20131010_030537144.html
C:\Windows\TEMP\KB2861188_10.0.30319
C:\Windows\TEMP\KB2861188_20131010_034345949-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2861188_20131010_034345949.html
C:\Windows\TEMP\KB2898855v2_10.0.30319
C:\Windows\TEMP\KB2898855v2_20140214_032941377-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2898855v2_20140214_032941377.html
C:\Windows\TEMP\KB2898869_20140305_030842377-Microsoft .NET Framework 4.5.1-MSP0.txt
C:\Windows\TEMP\KB2898869_20140305_030842377.html
C:\Windows\TEMP\KB2901110v2_10.0.30319
C:\Windows\TEMP\KB2901110v2_20140214_030901707-Microsoft .NET Framework 4 Client Profile-MSP0.txt
C:\Windows\TEMP\KB2901110v2_20140214_030901707.html
C:\Windows\TEMP\KB2901126_20140305_030401713-Microsoft .NET Framework 4.5.1-MSP0.txt
C:\Windows\TEMP\KB2901126_20140305_030401713.html
C:\Windows\TEMP\KB2931368_20140515_092056706-Microsoft .NET Framework 4.5.1-MSP0.txt
C:\Windows\TEMP\KB2931368_20140515_092056706.html
C:\Windows\TEMP\Microsoft .NET Framework 3.5-KB2604111_20120511_013628319-Msi0.txt
C:\Windows\TEMP\Microsoft .NET Framework 3.5-KB2604111_20120511_013628319.html
C:\Windows\TEMP\Microsoft .NET Framework 3.5-KB2657424_20120211_153445390-Msi0.txt
C:\Windows\TEMP\Microsoft .NET Framework 3.5-KB2657424_20120211_153445390.html
C:\Windows\TEMP\Microsoft .NET Framework 3.5-KB2736416_20130111_021351507-Msi0.txt
C:\Windows\TEMP\Microsoft .NET Framework 3.5-KB2736416_20130111_021351507.html
C:\Windows\TEMP\Microsoft .NET Framework 3.5-KB2836940_20130614_010838725-Msi0.txt
C:\Windows\TEMP\Microsoft .NET Framework 3.5-KB2836940_20130614_010838725.html
C:\Windows\TEMP\Microsoft .NET Framework 3.5-KB2840629_20130719_011533016-Msi0.txt
C:\Windows\TEMP\Microsoft .NET Framework 3.5-KB2840629_20130719_011533016.html
C:\Windows\TEMP\Microsoft .NET Framework 3.5-KB2861697_20131010_012442240-Msi0.txt
C:\Windows\TEMP\Microsoft .NET Framework 3.5-KB2861697_20131010_012442240.html
C:\Windows\TEMP\Microsoft .NET Framework 4 Client Profile Setup_20120205_161426619-MSI_netfx_Core_x86.msi.txt
C:\Windows\TEMP\Microsoft .NET Framework 4 Client Profile Setup_20120205_161426619.html
C:\Windows\TEMP\Microsoft .NET Framework 4 Client Profile Setup_4.0.30319
C:\Windows\TEMP\Microsoft .NET Framework 4.5.1 (ITA) Setup_20140305_031329833-MSI_netfx_FullLP_GDR_x86.msi.txt
C:\Windows\TEMP\Microsoft .NET Framework 4.5.1 (ITA) Setup_20140305_031329833.html
C:\Windows\TEMP\Microsoft .NET Framework 4.5.1 Setup_20140304_030517491-MSI_netfx_Full_GDR_x86.msi.txt
C:\Windows\TEMP\Microsoft .NET Framework 4.5.1 Setup_20140304_030517491.html
C:\Windows\TEMP\Microsoft .NET Framework Client Profile Language Pack Setup_20120205_162346441-MSI_netfx_CoreLP_x86.msi.txt
C:\Windows\TEMP\Microsoft .NET Framework Client Profile Language Pack Setup_20120205_162346441.html
C:\Windows\TEMP\Microsoft .NET Framework Client Profile Language Pack Setup_4.0.30319
C:\Windows\TEMP\Microsoft Visual C++ 2010 x86 Redistributable Setup_10.0.40219
C:\Windows\TEMP\Microsoft Visual C++ 2010 x86 Redistributable Setup_20120701_030230064-Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-MSP0.txt
C:\Windows\TEMP\Microsoft Visual C++ 2010 x86 Redistributable Setup_20120701_030230064.html
C:\Windows\TEMP\MPENGINE.DLL
C:\Windows\TEMP\MPGEAR.DLL
C:\Windows\TEMP\MpSigStub.log
C:\Windows\TEMP\MPTelemetrySubmit
C:\Windows\TEMP\OLD15C1.tmp
C:\Windows\TEMP\OutofProcReport6867780.txt
C:\Windows\TEMP\OutofProcReport715263016.txt
C:\Windows\TEMP\SPL102.tmp
C:\Windows\TEMP\SPL107E.tmp
C:\Windows\TEMP\SPL10E4.tmp
C:\Windows\TEMP\SPL11B5.tmp
C:\Windows\TEMP\SPL11B7.tmp
C:\Windows\TEMP\SPL11C8.tmp
C:\Windows\TEMP\SPL1260.tmp
C:\Windows\TEMP\SPL12FB.tmp
C:\Windows\TEMP\SPL13DB.tmp
C:\Windows\TEMP\SPL14A.tmp
C:\Windows\TEMP\SPL14CA.tmp
C:\Windows\TEMP\SPL154A.tmp
C:\Windows\TEMP\SPL1596.tmp
C:\Windows\TEMP\SPL1599.tmp
C:\Windows\TEMP\SPL15B5.tmp
C:\Windows\TEMP\SPL15F6.tmp
C:\Windows\TEMP\SPL1642.tmp
C:\Windows\TEMP\SPL1722.tmp
C:\Windows\TEMP\SPL174.tmp
C:\Windows\TEMP\SPL1804.tmp
C:\Windows\TEMP\SPL1823.tmp
C:\Windows\TEMP\SPL1834.tmp
C:\Windows\TEMP\SPL1858.tmp
C:\Windows\TEMP\SPL1859.tmp
C:\Windows\TEMP\SPL1894.tmp
C:\Windows\TEMP\SPL18C9.tmp
C:\Windows\TEMP\SPL19BC.tmp
C:\Windows\TEMP\SPL19DE.tmp
C:\Windows\TEMP\SPL1A48.tmp
C:\Windows\TEMP\SPL1A9.tmp
C:\Windows\TEMP\SPL1ACE.tmp
C:\Windows\TEMP\SPL1C0E.tmp
C:\Windows\TEMP\SPL1C43.tmp
C:\Windows\TEMP\SPL1C7.tmp
C:\Windows\TEMP\SPL1CA6.tmp
C:\Windows\TEMP\SPL1CF8.tmp
C:\Windows\TEMP\SPL1DA1.tmp
C:\Windows\TEMP\SPL1E33.tmp
C:\Windows\TEMP\SPL1E69.tmp
C:\Windows\TEMP\SPL1EB3.tmp
C:\Windows\TEMP\SPL1FB9.tmp
C:\Windows\TEMP\SPL1FCC.tmp
C:\Windows\TEMP\SPL2032.tmp
C:\Windows\TEMP\SPL20BA.tmp
C:\Windows\TEMP\SPL2170.tmp
C:\Windows\TEMP\SPL21C3.tmp
C:\Windows\TEMP\SPL21E3.tmp
C:\Windows\TEMP\SPL2211.tmp
C:\Windows\TEMP\SPL2278.tmp
C:\Windows\TEMP\SPL2308.tmp
C:\Windows\TEMP\SPL23E8.tmp
C:\Windows\TEMP\SPL2482.tmp
C:\Windows\TEMP\SPL2495.tmp
C:\Windows\TEMP\SPL2574.tmp
C:\Windows\TEMP\SPL25E1.tmp
C:\Windows\TEMP\SPL26CE.tmp
C:\Windows\TEMP\SPL270D.tmp
C:\Windows\TEMP\SPL276D.tmp
C:\Windows\TEMP\SPL280E.tmp
C:\Windows\TEMP\SPL28AE.tmp
C:\Windows\TEMP\SPL28F2.tmp
C:\Windows\TEMP\SPL2917.tmp
C:\Windows\TEMP\SPL2930.tmp
C:\Windows\TEMP\SPL2941.tmp
C:\Windows\TEMP\SPL2953.tmp
C:\Windows\TEMP\SPL2954.tmp
C:\Windows\TEMP\SPL2969.tmp
C:\Windows\TEMP\SPL2BF0.tmp
C:\Windows\TEMP\SPL2BF2.tmp
C:\Windows\TEMP\SPL2C9.tmp
C:\Windows\TEMP\SPL2C93.tmp
C:\Windows\TEMP\SPL2C95.tmp
C:\Windows\TEMP\SPL2CB4.tmp
C:\Windows\TEMP\SPL2CC6.tmp
C:\Windows\TEMP\SPL2D48.tmp
C:\Windows\TEMP\SPL2F63.tmp
C:\Windows\TEMP\SPL3047.tmp
C:\Windows\TEMP\SPL3094.tmp
C:\Windows\TEMP\SPL30D2.tmp
C:\Windows\TEMP\SPL30D8.tmp
C:\Windows\TEMP\SPL30D9.tmp
C:\Windows\TEMP\SPL30F9.tmp
C:\Windows\TEMP\SPL3195.tmp
C:\Windows\TEMP\SPL31AA.tmp
C:\Windows\TEMP\SPL31C7.tmp
C:\Windows\TEMP\SPL31DD.tmp
C:\Windows\TEMP\SPL326F.tmp
C:\Windows\TEMP\SPL32CB.tmp
C:\Windows\TEMP\SPL32F2.tmp
C:\Windows\TEMP\SPL3305.tmp
C:\Windows\TEMP\SPL331.tmp
C:\Windows\TEMP\SPL3349.tmp
C:\Windows\TEMP\SPL33E4.tmp
C:\Windows\TEMP\SPL35D7.tmp
C:\Windows\TEMP\SPL3786.tmp
C:\Windows\TEMP\SPL3792.tmp
C:\Windows\TEMP\SPL3813.tmp
C:\Windows\TEMP\SPL3899.tmp
C:\Windows\TEMP\SPL3910.tmp
C:\Windows\TEMP\SPL39B7.tmp
C:\Windows\TEMP\SPL3A10.tmp
C:\Windows\TEMP\SPL3AD8.tmp
C:\Windows\TEMP\SPL3AF6.tmp
C:\Windows\TEMP\SPL3BFF.tmp
C:\Windows\TEMP\SPL3C1D.tmp
C:\Windows\TEMP\SPL3D40.tmp
C:\Windows\TEMP\SPL3D8B.tmp
C:\Windows\TEMP\SPL3E59.tmp
C:\Windows\TEMP\SPL3EB2.tmp
C:\Windows\TEMP\SPL3F25.tmp
C:\Windows\TEMP\SPL3F33.tmp
C:\Windows\TEMP\SPL3F4B.tmp
C:\Windows\TEMP\SPL3FDB.tmp
C:\Windows\TEMP\SPL411.tmp
C:\Windows\TEMP\SPL4152.tmp
C:\Windows\TEMP\SPL41A8.tmp
C:\Windows\TEMP\SPL41E4.tmp
C:\Windows\TEMP\SPL4257.tmp
C:\Windows\TEMP\SPL42A6.tmp
C:\Windows\TEMP\SPL42BD.tmp
C:\Windows\TEMP\SPL43B0.tmp
C:\Windows\TEMP\SPL43D0.tmp
C:\Windows\TEMP\SPL43DA.tmp
C:\Windows\TEMP\SPL43E1.tmp
C:\Windows\TEMP\SPL44D4.tmp
C:\Windows\TEMP\SPL451C.tmp
C:\Windows\TEMP\SPL453A.tmp
C:\Windows\TEMP\SPL468B.tmp
C:\Windows\TEMP\SPL46C6.tmp
C:\Windows\TEMP\SPL4702.tmp
C:\Windows\TEMP\SPL472A.tmp
C:\Windows\TEMP\SPL47B5.tmp
C:\Windows\TEMP\SPL47F8.tmp
C:\Windows\TEMP\SPL480E.tmp
C:\Windows\TEMP\SPL48B6.tmp
C:\Windows\TEMP\SPL48DC.tmp
C:\Windows\TEMP\SPL490.tmp
C:\Windows\TEMP\SPL4A6D.tmp
C:\Windows\TEMP\SPL4B3F.tmp
C:\Windows\TEMP\SPL4B64.tmp
C:\Windows\TEMP\SPL4B9A.tmp
C:\Windows\TEMP\SPL4BE8.tmp
C:\Windows\TEMP\SPL4BFB.tmp
C:\Windows\TEMP\SPL4C0.tmp
C:\Windows\TEMP\SPL4C71.tmp
C:\Windows\TEMP\SPL4CFF.tmp
C:\Windows\TEMP\SPL4D50.tmp
C:\Windows\TEMP\SPL4DA6.tmp
C:\Windows\TEMP\SPL4DCB.tmp
C:\Windows\TEMP\SPL4E1D.tmp
C:\Windows\TEMP\SPL4E4C.tmp
C:\Windows\TEMP\SPL4F56.tmp
C:\Windows\TEMP\SPL4FDA.tmp
C:\Windows\TEMP\SPL5050.tmp
C:\Windows\TEMP\SPL509B.tmp
C:\Windows\TEMP\SPL5204.tmp
C:\Windows\TEMP\SPL5215.tmp
C:\Windows\TEMP\SPL52F.tmp
C:\Windows\TEMP\SPL5379.tmp
C:\Windows\TEMP\SPL55A3.tmp
C:\Windows\TEMP\SPL561D.tmp
C:\Windows\TEMP\SPL5659.tmp
C:\Windows\TEMP\SPL56AF.tmp
C:\Windows\TEMP\SPL5727.tmp
C:\Windows\TEMP\SPL573.tmp
C:\Windows\TEMP\SPL573E.tmp
C:\Windows\TEMP\SPL5824.tmp
C:\Windows\TEMP\SPL590B.tmp
C:\Windows\TEMP\SPL5A06.tmp
C:\Windows\TEMP\SPL5A0A.tmp
C:\Windows\TEMP\SPL5A24.tmp
C:\Windows\TEMP\SPL5D72.tmp
C:\Windows\TEMP\SPL5ED.tmp
C:\Windows\TEMP\SPL5F38.tmp
C:\Windows\TEMP\SPL5F9D.tmp
C:\Windows\TEMP\SPL5FB0.tmp
C:\Windows\TEMP\SPL5FDA.tmp
C:\Windows\TEMP\SPL5FDB.tmp
C:\Windows\TEMP\SPL6004.tmp
C:\Windows\TEMP\SPL60F8.tmp
C:\Windows\TEMP\SPL618.tmp
C:\Windows\TEMP\SPL625E.tmp
C:\Windows\TEMP\SPL62A8.tmp
C:\Windows\TEMP\SPL62BA.tmp
C:\Windows\TEMP\SPL62E5.tmp
C:\Windows\TEMP\SPL62EC.tmp
C:\Windows\TEMP\SPL6338.tmp
C:\Windows\TEMP\SPL63B1.tmp
C:\Windows\TEMP\SPL63BA.tmp
C:\Windows\TEMP\SPL63E2.tmp
C:\Windows\TEMP\SPL63E6.tmp
C:\Windows\TEMP\SPL6434.tmp
C:\Windows\TEMP\SPL6479.tmp
C:\Windows\TEMP\SPL652A.tmp
C:\Windows\TEMP\SPL6572.tmp
C:\Windows\TEMP\SPL657A.tmp
C:\Windows\TEMP\SPL6592.tmp
C:\Windows\TEMP\SPL6749.tmp
C:\Windows\TEMP\SPL67FE.tmp
C:\Windows\TEMP\SPL6819.tmp
C:\Windows\TEMP\SPL681E.tmp
C:\Windows\TEMP\SPL690.tmp
C:\Windows\TEMP\SPL6A30.tmp
C:\Windows\TEMP\SPL6AED.tmp
C:\Windows\TEMP\SPL6B06.tmp
C:\Windows\TEMP\SPL6C70.tmp
C:\Windows\TEMP\SPL6E39.tmp
C:\Windows\TEMP\SPL6F1A.tmp
C:\Windows\TEMP\SPL716F.tmp
C:\Windows\TEMP\SPL7227.tmp
C:\Windows\TEMP\SPL734.tmp
C:\Windows\TEMP\SPL738F.tmp
C:\Windows\TEMP\SPL7408.tmp
C:\Windows\TEMP\SPL7441.tmp
C:\Windows\TEMP\SPL74AF.tmp
C:\Windows\TEMP\SPL7541.tmp
C:\Windows\TEMP\SPL767F.tmp
C:\Windows\TEMP\SPL7717.tmp
C:\Windows\TEMP\SPL7810.tmp
C:\Windows\TEMP\SPL78AD.tmp
C:\Windows\TEMP\SPL794E.tmp
C:\Windows\TEMP\SPL796F.tmp
C:\Windows\TEMP\SPL7975.tmp
C:\Windows\TEMP\SPL7A11.tmp
C:\Windows\TEMP\SPL7A15.tmp
C:\Windows\TEMP\SPL7A3A.tmp
C:\Windows\TEMP\SPL7A4C.tmp
C:\Windows\TEMP\SPL7AF8.tmp
C:\Windows\TEMP\SPL7AFE.tmp
C:\Windows\TEMP\SPL7BA8.tmp
C:\Windows\TEMP\SPL7BC.tmp
C:\Windows\TEMP\SPL7C52.tmp
C:\Windows\TEMP\SPL7D10.tmp
C:\Windows\TEMP\SPL7D6F.tmp
C:\Windows\TEMP\SPL7E76.tmp
C:\Windows\TEMP\SPL7EC1.tmp
C:\Windows\TEMP\SPL7EC4.tmp
C:\Windows\TEMP\SPL80AB.tmp
C:\Windows\TEMP\SPL80B1.tmp
C:\Windows\TEMP\SPL8155.tmp
C:\Windows\TEMP\SPL816B.tmp
C:\Windows\TEMP\SPL81C1.tmp
C:\Windows\TEMP\SPL820A.tmp
C:\Windows\TEMP\SPL8255.tmp
C:\Windows\TEMP\SPL82BE.tmp
C:\Windows\TEMP\SPL840E.tmp
C:\Windows\TEMP\SPL8465.tmp
C:\Windows\TEMP\SPL84A0.tmp
C:\Windows\TEMP\SPL84A2.tmp
C:\Windows\TEMP\SPL8603.tmp
C:\Windows\TEMP\SPL8621.tmp
C:\Windows\TEMP\SPL868C.tmp
C:\Windows\TEMP\SPL878D.tmp
C:\Windows\TEMP\SPL87D7.tmp
C:\Windows\TEMP\SPL88E5.tmp
C:\Windows\TEMP\SPL890.tmp
C:\Windows\TEMP\SPL89BC.tmp
C:\Windows\TEMP\SPL8A3F.tmp
C:\Windows\TEMP\SPL8A79.tmp
C:\Windows\TEMP\SPL8A7D.tmp
C:\Windows\TEMP\SPL8B07.tmp
C:\Windows\TEMP\SPL8B6B.tmp
C:\Windows\TEMP\SPL8BCB.tmp
C:\Windows\TEMP\SPL8D5.tmp
C:\Windows\TEMP\SPL8DD9.tmp
C:\Windows\TEMP\SPL8DFA.tmp
C:\Windows\TEMP\SPL8DFD.tmp
C:\Windows\TEMP\SPL8E5D.tmp
C:\Windows\TEMP\SPL8E98.tmp
C:\Windows\TEMP\SPL8FD6.tmp
C:\Windows\TEMP\SPL9029.tmp
C:\Windows\TEMP\SPL9137.tmp
C:\Windows\TEMP\SPL918F.tmp
C:\Windows\TEMP\SPL9190.tmp
C:\Windows\TEMP\SPL9197.tmp
C:\Windows\TEMP\SPL91A7.tmp
C:\Windows\TEMP\SPL9215.tmp
C:\Windows\TEMP\SPL9277.tmp
C:\Windows\TEMP\SPL927C.tmp
C:\Windows\TEMP\SPL92E1.tmp
C:\Windows\TEMP\SPL92FB.tmp
C:\Windows\TEMP\SPL92FF.tmp
C:\Windows\TEMP\SPL93A8.tmp
C:\Windows\TEMP\SPL93F5.tmp
C:\Windows\TEMP\SPL9419.tmp
C:\Windows\TEMP\SPL9450.tmp
C:\Windows\TEMP\SPL948.tmp
C:\Windows\TEMP\SPL9608.tmp
C:\Windows\TEMP\SPL97AF.tmp
C:\Windows\TEMP\SPL9834.tmp
C:\Windows\TEMP\SPL9878.tmp
C:\Windows\TEMP\SPL98A.tmp
C:\Windows\TEMP\SPL9A81.tmp
C:\Windows\TEMP\SPL9AF3.tmp
C:\Windows\TEMP\SPL9AF4.tmp
C:\Windows\TEMP\SPL9B02.tmp
C:\Windows\TEMP\SPL9B5A.tmp
C:\Windows\TEMP\SPL9B67.tmp
C:\Windows\TEMP\SPL9B86.tmp
C:\Windows\TEMP\SPL9BA7.tmp
C:\Windows\TEMP\SPL9BBC.tmp
C:\Windows\TEMP\SPL9C80.tmp
C:\Windows\TEMP\SPL9D28.tmp
C:\Windows\TEMP\SPL9DEE.tmp
C:\Windows\TEMP\SPL9E36.tmp
C:\Windows\TEMP\SPL9E3A.tmp
C:\Windows\TEMP\SPL9EA9.tmp
C:\Windows\TEMP\SPL9EE6.tmp
C:\Windows\TEMP\SPLA01.tmp
C:\Windows\TEMP\SPLA062.tmp
C:\Windows\TEMP\SPLA068.tmp
C:\Windows\TEMP\SPLA08E.tmp
C:\Windows\TEMP\SPLA0A2.tmp
C:\Windows\TEMP\SPLA10F.tmp
C:\Windows\TEMP\SPLA1EB.tmp
C:\Windows\TEMP\SPLA21C.tmp
C:\Windows\TEMP\SPLA2B1.tmp
C:\Windows\TEMP\SPLA2BC.tmp
C:\Windows\TEMP\SPLA584.tmp
C:\Windows\TEMP\SPLA5CB.tmp
C:\Windows\TEMP\SPLA63E.tmp
C:\Windows\TEMP\SPLA698.tmp
C:\Windows\TEMP\SPLA744.tmp
C:\Windows\TEMP\SPLA766.tmp
C:\Windows\TEMP\SPLA786.tmp
C:\Windows\TEMP\SPLA822.tmp
C:\Windows\TEMP\SPLA957.tmp
C:\Windows\TEMP\SPLAA64.tmp
C:\Windows\TEMP\SPLAA7D.tmp
C:\Windows\TEMP\SPLAA92.tmp
C:\Windows\TEMP\SPLAB15.tmp
C:\Windows\TEMP\SPLAC1A.tmp
C:\Windows\TEMP\SPLAC6E.tmp
C:\Windows\TEMP\SPLACB4.tmp
C:\Windows\TEMP\SPLAD61.tmp
C:\Windows\TEMP\SPLAD93.tmp
C:\Windows\TEMP\SPLAE1F.tmp
C:\Windows\TEMP\SPLAE29.tmp
C:\Windows\TEMP\SPLAEFF.tmp
C:\Windows\TEMP\SPLAF8C.tmp
C:\Windows\TEMP\SPLAFEF.tmp
C:\Windows\TEMP\SPLB008.tmp
C:\Windows\TEMP\SPLB11F.tmp
C:\Windows\TEMP\SPLB13A.tmp
C:\Windows\TEMP\SPLB181.tmp
C:\Windows\TEMP\SPLB1AA.tmp
C:\Windows\TEMP\SPLB25.tmp
C:\Windows\TEMP\SPLB2A9.tmp
C:\Windows\TEMP\SPLB2AA.tmp
C:\Windows\TEMP\SPLB314.tmp
C:\Windows\TEMP\SPLB38.tmp
C:\Windows\TEMP\SPLB392.tmp
C:\Windows\TEMP\SPLB3A6.tmp
C:\Windows\TEMP\SPLB3C.tmp
C:\Windows\TEMP\SPLB3EB.tmp
C:\Windows\TEMP\SPLB46.tmp
C:\Windows\TEMP\SPLB47B.tmp
C:\Windows\TEMP\SPLB4B5.tmp
C:\Windows\TEMP\SPLB50D.tmp
C:\Windows\TEMP\SPLB596.tmp
C:\Windows\TEMP\SPLB5A3.tmp
C:\Windows\TEMP\SPLB5AD.tmp
C:\Windows\TEMP\SPLB5F1.tmp
C:\Windows\TEMP\SPLB725.tmp
C:\Windows\TEMP\SPLB792.tmp
C:\Windows\TEMP\SPLB7FA.tmp
C:\Windows\TEMP\SPLB826.tmp
C:\Windows\TEMP\SPLB827.tmp
C:\Windows\TEMP\SPLB86D.tmp
C:\Windows\TEMP\SPLB894.tmp
C:\Windows\TEMP\SPLB8F9.tmp
C:\Windows\TEMP\SPLB951.tmp
C:\Windows\TEMP\SPLBA1B.tmp
C:\Windows\TEMP\SPLBA4E.tmp
C:\Windows\TEMP\SPLBA61.tmp
C:\Windows\TEMP\SPLBB99.tmp
C:\Windows\TEMP\SPLBBD7.tmp
C:\Windows\TEMP\SPLBC08.tmp
C:\Windows\TEMP\SPLBC3.tmp
C:\Windows\TEMP\SPLBD6F.tmp
C:\Windows\TEMP\SPLBDC0.tmp
C:\Windows\TEMP\SPLBE72.tmp
C:\Windows\TEMP\SPLBE9D.tmp
C:\Windows\TEMP\SPLBEB6.tmp
C:\Windows\TEMP\SPLBEF.tmp
C:\Windows\TEMP\SPLC1E9.tmp
C:\Windows\TEMP\SPLC2C.tmp
C:\Windows\TEMP\SPLC34A.tmp
C:\Windows\TEMP\SPLC3A7.tmp
C:\Windows\TEMP\SPLC406.tmp
C:\Windows\TEMP\SPLC438.tmp
C:\Windows\TEMP\SPLC464.tmp
C:\Windows\TEMP\SPLC499.tmp
C:\Windows\TEMP\SPLC534.tmp
C:\Windows\TEMP\SPLC57E.tmp
C:\Windows\TEMP\SPLC67B.tmp
C:\Windows\TEMP\SPLC6A.tmp
C:\Windows\TEMP\SPLC737.tmp
C:\Windows\TEMP\SPLC7B8.tmp
C:\Windows\TEMP\SPLC802.tmp
C:\Windows\TEMP\SPLC819.tmp
C:\Windows\TEMP\SPLC86D.tmp
C:\Windows\TEMP\SPLC8D8.tmp
C:\Windows\TEMP\SPLC97.tmp
C:\Windows\TEMP\SPLCA15.tmp
C:\Windows\TEMP\SPLCAE0.tmp
C:\Windows\TEMP\SPLCAF.tmp
C:\Windows\TEMP\SPLCC19.tmp
C:\Windows\TEMP\SPLCD0E.tmp
C:\Windows\TEMP\SPLCD81.tmp
C:\Windows\TEMP\SPLCDBD.tmp
C:\Windows\TEMP\SPLCDE8.tmp
C:\Windows\TEMP\SPLCE51.tmp
C:\Windows\TEMP\SPLCE90.tmp
C:\Windows\TEMP\SPLCEA.tmp
C:\Windows\TEMP\SPLCEAB.tmp
C:\Windows\TEMP\SPLCF06.tmp
C:\Windows\TEMP\SPLCFBA.tmp
C:\Windows\TEMP\SPLCFC4.tmp
C:\Windows\TEMP\SPLCFE1.tmp
C:\Windows\TEMP\SPLD013.tmp
C:\Windows\TEMP\SPLD057.tmp
C:\Windows\TEMP\SPLD0B4.tmp
C:\Windows\TEMP\SPLD0E4.tmp
C:\Windows\TEMP\SPLD1B4.tmp
C:\Windows\TEMP\SPLD1F0.tmp
C:\Windows\TEMP\SPLD219.tmp
C:\Windows\TEMP\SPLD251.tmp
C:\Windows\TEMP\SPLD323.tmp
C:\Windows\TEMP\SPLD3B0.tmp
C:\Windows\TEMP\SPLD40E.tmp
C:\Windows\TEMP\SPLD47B.tmp
C:\Windows\TEMP\SPLD4E1.tmp
C:\Windows\TEMP\SPLD6E8.tmp
C:\Windows\TEMP\SPLD724.tmp
C:\Windows\TEMP\SPLD7B5.tmp
C:\Windows\TEMP\SPLD836.tmp
C:\Windows\TEMP\SPLD84F.tmp
C:\Windows\TEMP\SPLD857.tmp
C:\Windows\TEMP\SPLDB23.tmp
C:\Windows\TEMP\SPLDC11.tmp
C:\Windows\TEMP\SPLDD0.tmp
C:\Windows\TEMP\SPLDDA5.tmp
C:\Windows\TEMP\SPLDDFD.tmp
C:\Windows\TEMP\SPLDE07.tmp
C:\Windows\TEMP\SPLDE14.tmp
C:\Windows\TEMP\SPLDED9.tmp
C:\Windows\TEMP\SPLDFC9.tmp
C:\Windows\TEMP\SPLDFFE.tmp
C:\Windows\TEMP\SPLE0AA.tmp
C:\Windows\TEMP\SPLE0BE.tmp
C:\Windows\TEMP\SPLE160.tmp
C:\Windows\TEMP\SPLE17.tmp
C:\Windows\TEMP\SPLE2F8.tmp
C:\Windows\TEMP\SPLE307.tmp
C:\Windows\TEMP\SPLE41A.tmp
C:\Windows\TEMP\SPLE536.tmp
C:\Windows\TEMP\SPLE550.tmp
C:\Windows\TEMP\SPLE555.tmp
C:\Windows\TEMP\SPLE608.tmp
C:\Windows\TEMP\SPLE66B.tmp
C:\Windows\TEMP\SPLE813.tmp
C:\Windows\TEMP\SPLE825.tmp
C:\Windows\TEMP\SPLE846.tmp
C:\Windows\TEMP\SPLE872.tmp
C:\Windows\TEMP\SPLE8AA.tmp
C:\Windows\TEMP\SPLE8B2.tmp
C:\Windows\TEMP\SPLE8EC.tmp
C:\Windows\TEMP\SPLE965.tmp
C:\Windows\TEMP\SPLE9FD.tmp
C:\Windows\TEMP\SPLEA10.tmp
C:\Windows\TEMP\SPLEA12.tmp
C:\Windows\TEMP\SPLEA55.tmp
C:\Windows\TEMP\SPLEA6B.tmp
C:\Windows\TEMP\SPLEA86.tmp
C:\Windows\TEMP\SPLEAF7.tmp
C:\Windows\TEMP\SPLEBB2.tmp
C:\Windows\TEMP\SPLEBD2.tmp
C:\Windows\TEMP\SPLEBE6.tmp
C:\Windows\TEMP\SPLEBF7.tmp
C:\Windows\TEMP\SPLEC46.tmp
C:\Windows\TEMP\SPLEC6.tmp
C:\Windows\TEMP\SPLECB2.tmp
C:\Windows\TEMP\SPLEE7A.tmp
C:\Windows\TEMP\SPLEF1A.tmp
C:\Windows\TEMP\SPLEF41.tmp
C:\Windows\TEMP\SPLEFAA.tmp
C:\Windows\TEMP\SPLF056.tmp
C:\Windows\TEMP\SPLF09D.tmp
C:\Windows\TEMP\SPLF214.tmp
C:\Windows\TEMP\SPLF2C7.tmp
C:\Windows\TEMP\SPLF350.tmp
C:\Windows\TEMP\SPLF445.tmp
C:\Windows\TEMP\SPLF458.tmp
C:\Windows\TEMP\SPLF492.tmp
C:\Windows\TEMP\SPLF5BA.tmp
C:\Windows\TEMP\SPLF5E1.tmp
C:\Windows\TEMP\SPLF628.tmp
C:\Windows\TEMP\SPLF72D.tmp
C:\Windows\TEMP\SPLF787.tmp
C:\Windows\TEMP\SPLF89E.tmp
C:\Windows\TEMP\SPLF965.tmp
C:\Windows\TEMP\SPLF9A0.tmp
C:\Windows\TEMP\SPLF9CE.tmp
C:\Windows\TEMP\SPLFAA3.tmp
C:\Windows\TEMP\SPLFAFE.tmp
C:\Windows\TEMP\SPLFB5D.tmp
C:\Windows\TEMP\SPLFC13.tmp
C:\Windows\TEMP\SPLFC5D.tmp
C:\Windows\TEMP\SPLFC91.tmp
C:\Windows\TEMP\SPLFCA2.tmp
C:\Windows\TEMP\SPLFD0B.tmp
C:\Windows\TEMP\SPLFDA1.tmp
C:\Windows\TEMP\SPLFE1F.tmp
C:\Windows\TEMP\SPLFE7.tmp
C:\Windows\TEMP\SPLFF59.tmp
C:\Windows\TEMP\SPLFF84.tmp
C:\Windows\TEMP\SPLFF96.tmp
C:\Windows\TEMP\SPLFFEC.tmp
C:\Windows\TEMP\Tar10A3.tmp
C:\Windows\TEMP\Tar1851.tmp
C:\Windows\TEMP\Tar1CD3.tmp
C:\Windows\TEMP\Tar1D21.tmp
C:\Windows\TEMP\Tar206C.tmp
C:\Windows\TEMP\Tar20D9.tmp
C:\Windows\TEMP\Tar20F8.tmp
C:\Windows\TEMP\Tar230E.tmp
C:\Windows\TEMP\Tar2523.tmp
C:\Windows\TEMP\Tar25D8.tmp
C:\Windows\TEMP\Tar25D9.tmp
C:\Windows\TEMP\Tar2AF.tmp
C:\Windows\TEMP\Tar2B06.tmp
C:\Windows\TEMP\Tar2D8E.tmp
C:\Windows\TEMP\Tar2F79.tmp
C:\Windows\TEMP\Tar312E.tmp
C:\Windows\TEMP\Tar3257.tmp
C:\Windows\TEMP\Tar35B7.tmp
C:\Windows\TEMP\Tar3631.tmp
C:\Windows\TEMP\Tar36D9.tmp
C:\Windows\TEMP\Tar374F.tmp
C:\Windows\TEMP\Tar387E.tmp
C:\Windows\TEMP\Tar3B5B.tmp
C:\Windows\TEMP\Tar3BD3.tmp
C:\Windows\TEMP\Tar406A.tmp
C:\Windows\TEMP\Tar427C.tmp
C:\Windows\TEMP\Tar42F9.tmp
C:\Windows\TEMP\Tar4450.tmp
C:\Windows\TEMP\Tar4D84.tmp
C:\Windows\TEMP\Tar4E4F.tmp
C:\Windows\TEMP\Tar50ED.tmp
C:\Windows\TEMP\Tar515B.tmp
C:\Windows\TEMP\Tar52E3.tmp
C:\Windows\TEMP\Tar534E.tmp
C:\Windows\TEMP\Tar543C.tmp
C:\Windows\TEMP\Tar557F.tmp
C:\Windows\TEMP\Tar57C1.tmp
C:\Windows\TEMP\Tar57FF.tmp
C:\Windows\TEMP\Tar5B0B.tmp
C:\Windows\TEMP\Tar5B59.tmp
C:\Windows\TEMP\Tar5C37.tmp
C:\Windows\TEMP\Tar5EE7.tmp
C:\Windows\TEMP\Tar6002.tmp
C:\Windows\TEMP\Tar61B9.tmp
C:\Windows\TEMP\Tar643F.tmp
C:\Windows\TEMP\Tar6558.tmp
C:\Windows\TEMP\Tar6586.tmp
C:\Windows\TEMP\Tar6680.tmp
C:\Windows\TEMP\Tar6B50.tmp
C:\Windows\TEMP\Tar6DFF.tmp
C:\Windows\TEMP\Tar6E00.tmp
C:\Windows\TEMP\Tar6F3.tmp
C:\Windows\TEMP\Tar6F94.tmp
C:\Windows\TEMP\Tar705A.tmp
C:\Windows\TEMP\Tar712A.tmp
C:\Windows\TEMP\Tar72D7.tmp
C:\Windows\TEMP\Tar73F2.tmp
C:\Windows\TEMP\Tar75B9.tmp
C:\Windows\TEMP\Tar782C.tmp
C:\Windows\TEMP\Tar783A.tmp
C:\Windows\TEMP\Tar78E7.tmp
C:\Windows\TEMP\Tar7A5E.tmp
C:\Windows\TEMP\Tar7B57.tmp
C:\Windows\TEMP\Tar7C03.tmp
C:\Windows\TEMP\Tar7C05.tmp
C:\Windows\TEMP\Tar7E34.tmp
C:\Windows\TEMP\Tar7E77.tmp
C:\Windows\TEMP\Tar7E82.tmp
C:\Windows\TEMP\Tar83EF.tmp
C:\Windows\TEMP\Tar851D.tmp
C:\Windows\TEMP\Tar8613.tmp
C:\Windows\TEMP\Tar8630.tmp
C:\Windows\TEMP\Tar86E0.tmp
C:\Windows\TEMP\Tar89E8.tmp
C:\Windows\TEMP\Tar8B10.tmp
C:\Windows\TEMP\Tar8B27.tmp
C:\Windows\TEMP\Tar8C3.tmp
C:\Windows\TEMP\Tar8D9F.tmp
C:\Windows\TEMP\Tar8E0C.tmp
C:\Windows\TEMP\Tar8E1C.tmp
C:\Windows\TEMP\Tar8F44.tmp
C:\Windows\TEMP\Tar91BC.tmp
C:\Windows\TEMP\Tar92E1.tmp
C:\Windows\TEMP\Tar9878.tmp
C:\Windows\TEMP\Tar989F.tmp
C:\Windows\TEMP\Tar9943.tmp
C:\Windows\TEMP\Tar9E6C.tmp
C:\Windows\TEMP\TarA2B5.tmp
C:\Windows\TEMP\TarA343.tmp
C:\Windows\TEMP\TarA47D.tmp
C:\Windows\TEMP\TarA9D1.tmp
C:\Windows\TEMP\TarAD9.tmp
C:\Windows\TEMP\TarADBC.tmp
C:\Windows\TEMP\TarB0A9.tmp
C:\Windows\TEMP\TarB1A3.tmp
C:\Windows\TEMP\TarB403.tmp
C:\Windows\TEMP\TarB4FF.tmp
C:\Windows\TEMP\TarB6D1.tmp
C:\Windows\TEMP\TarB7DA.tmp
C:\Windows\TEMP\TarB85B.tmp
C:\Windows\TEMP\TarB979.tmp
C:\Windows\TEMP\TarBD41.tmp
C:\Windows\TEMP\TarC0DD.tmp
C:\Windows\TEMP\TarC2C2.tmp
C:\Windows\TEMP\TarC513.tmp
C:\Windows\TEMP\TarC716.tmp
C:\Windows\TEMP\TarC7A2.tmp
C:\Windows\TEMP\TarCA13.tmp
C:\Windows\TEMP\TarCFBD.tmp
C:\Windows\TEMP\TarD115.tmp
C:\Windows\TEMP\TarD327.tmp
C:\Windows\TEMP\TarD346.tmp
C:\Windows\TEMP\TarD7A6.tmp
C:\Windows\TEMP\TarD845.tmp
C:\Windows\TEMP\TarD8FF.tmp
C:\Windows\TEMP\TarDCD7.tmp
C:\Windows\TEMP\TarDE2F.tmp
C:\Windows\TEMP\TarDF67.tmp
C:\Windows\TEMP\TarE466.tmp
C:\Windows\TEMP\TarE495.tmp
C:\Windows\TEMP\TarE743.tmp
C:\Windows\TEMP\TarED5B.tmp
C:\Windows\TEMP\TarEF47.tmp
C:\Windows\TEMP\TarF2A8.tmp
C:\Windows\TEMP\TarF400.tmp
C:\Windows\TEMP\TarF641.tmp
C:\Windows\TEMP\TarF76B.tmp
C:\Windows\TEMP\TarF7A7.tmp
C:\Windows\TEMP\TarF92D.tmp
C:\Windows\TEMP\TarFA46.tmp
C:\Windows\TEMP\TarFA69.tmp
C:\Windows\TEMP\TarFB4F.tmp
C:\Windows\TEMP\TarFB50.tmp
C:\Windows\TEMP\Temporary Internet Files
C:\Windows\TEMP\TMP000000016583D4FC80BA2AE3
C:\Windows\TEMP\TMP0000001649B3C04C5F3A72FA
C:\Windows\TEMP\TMP0000002261938347C2450079
C:\Windows\TEMP\TMP000000281954CFF286D701EF
C:\Windows\TEMP\TMP0000002833388BB43A31E1A8
C:\Windows\TEMP\TMP0000004E3FCDD47A200B5905
C:\Windows\TEMP\TMP0000005F090E2421D0D81BA7
C:\Windows\TEMP\WER28B5.tmp.version.txt
C:\Windows\TEMP\WER28C6.tmp.appcompat.txt
C:\Windows\TEMP\WER3E69.tmp.hdmp
C:\Windows\TEMP\WER804C.tmp.version.txt
C:\Windows\TEMP\WER805D.tmp.appcompat.txt
C:\Windows\TEMP\WER86F2.tmp.hdmp
C:\Windows\TEMP\WERB463.tmp.version.txt
C:\Windows\TEMP\WERB464.tmp.appcompat.txt
C:\Windows\TEMP\WERB771.tmp.hdmp
C:\Windows\TEMP\WERC235.tmp.version.txt
C:\Windows\TEMP\WERC246.tmp.appcompat.txt
C:\Windows\TEMP\WERD183.tmp.hdmp
C:\Windows\TEMP\WERD198.tmp.version.txt
C:\Windows\TEMP\WERD1A8.tmp.appcompat.txt
C:\Windows\TEMP\WERD5DE.tmp.hdmp
C:\Windows\TEMP\WERE0C5.tmp.version.txt
C:\Windows\TEMP\WERE123.tmp.appcompat.txt
C:\Windows\TEMP\WERE9F6.tmp.version.txt
C:\Windows\TEMP\WEREA64.tmp.appcompat.txt
C:\Windows\TEMP\WEREEA2.tmp.version.txt
C:\Windows\TEMP\WERF0A6.tmp.mdmp
C:\Windows\TEMP\{74D00D9A-5780-462F-B169-1C2A0B42858C}
C:\Windows\TEMP\{99841364-717D-4B5F-9E16-5C066035B311}
C:\Windows\TEMP\{99841364-717D-4B5F-9E16-5C066035B311}\fpi.tmp
C:\Windows\TEMP\{74D00D9A-5780-462F-B169-1C2A0B42858C}\fpi.tmp
C:\Windows\TEMP\Temporary Internet Files\Content.IE5
C:\Windows\TEMP\Temporary Internet Files\Content.IE5\3HKP4UT4
C:\Windows\TEMP\Temporary Internet Files\Content.IE5\desktop.ini
C:\Windows\TEMP\Temporary Internet Files\Content.IE5\GK0LQY9R
C:\Windows\TEMP\Temporary Internet Files\Content.IE5\index.dat
C:\Windows\TEMP\Temporary Internet Files\Content.IE5\R2Q1WYSA
C:\Windows\TEMP\Temporary Internet Files\Content.IE5\TL1DG6MM
C:\Windows\TEMP\Temporary Internet Files\Content.IE5\TL1DG6MM\desktop.ini
C:\Windows\TEMP\Temporary Internet Files\Content.IE5\R2Q1WYSA\desktop.ini
C:\Windows\TEMP\Temporary Internet Files\Content.IE5\GK0LQY9R\desktop.ini
C:\Windows\TEMP\Temporary Internet Files\Content.IE5\3HKP4UT4\desktop.ini
C:\Windows\TEMP\HP\AtStatus
C:\Windows\TEMP\HP\AtStatus\hpinkstsb011lm.log
C:\Windows\TEMP\History\History.IE5
C:\Windows\TEMP\History\History.IE5\desktop.ini
C:\Windows\TEMP\History\History.IE5\index.dat
C:\Windows\TEMP\DWDFC04.tmp\firefox.exe.xml
C:\Windows\TEMP\Cookies\index.dat
C:\Windows\TEMP\ComodoLogsFolder\dragon_setup.log
C:\Windows\TEMP\ComodoLogsFolder\dragon_updater.exe.log
C:\Windows\TEMP\ComodoLogsFolder\dragon_updater.exe.logold.log
C:\Windows\TEMP\avnwldrtemp\download
C:\Windows\TEMP\avnwldrtemp\ldrconf.ini
C:\Windows\TEMP\avnwldrtemp\mapfile.xml
C:\Windows\TEMP\avnwldrtemp\networkloader.log
C:\Windows\TEMP\avnwldrtemp\download\idx
C:\Windows\TEMP\avnwldrtemp\download\wks_avira13
C:\Windows\TEMP\avnwldrtemp\download\wks_avira13\win32
C:\Windows\TEMP\avnwldrtemp\download\wks_avira13\win32\it
C:\Windows\TEMP\avnwldrtemp\download\wks_avira13\win32\it\pepr
C:\Windows\TEMP\avnwldrtemp\download\wks_avira13\win32\it\pepr\it-it
C:\Windows\TEMP\avnwldrtemp\download\idx\ave2-win32-int.info
C:\Windows\TEMP\avnwldrtemp\download\idx\ave2-win32-int.info.gz
C:\Windows\TEMP\avnwldrtemp\download\idx\localdecider-win32-int.info
C:\Windows\TEMP\avnwldrtemp\download\idx\localdecider-win32-int.info.gz
C:\Windows\TEMP\avnwldrtemp\download\idx\master.idx
C:\Windows\TEMP\avnwldrtemp\download\idx\rdf-common-int.info
C:\Windows\TEMP\avnwldrtemp\download\idx\rdf-common-int.info.gz
C:\Windows\TEMP\avnwldrtemp\download\idx\scanner13-win32-int.info
C:\Windows\TEMP\avnwldrtemp\download\idx\scanner13-win32-int.info.gz
C:\Windows\TEMP\avnwldrtemp\download\idx\vdf.info
C:\Windows\TEMP\avnwldrtemp\download\idx\vdf.info.gz
C:\Windows\TEMP\avnwldrtemp\download\idx\webcat-common-int.info
C:\Windows\TEMP\avnwldrtemp\download\idx\webcat-common-int.info.gz
C:\Windows\TEMP\avnwldrtemp\download\idx\wks_avira13-win32-it-pepr-info.info
C:\Windows\TEMP\avnwldrtemp\download\idx\wks_avira13-win32-it-pepr-info.info.gz
C:\Windows\TEMP\avnwldrtemp\download\idx\wks_avira13-win32-it-pepr.idx
C:\Windows\TEMP\avnwldrtemp\download\idx\wks_avira13-win32-it-pepr.info
C:\Windows\TEMP\avnwldrtemp\download\idx\wks_avira13-win32-it-pepr.info.gz
C:\Windows\Prefetch\AgAppLaunch.db
C:\Windows\Prefetch\AgGlFaultHistory.db
C:\Windows\Prefetch\AgGlFgAppHistory.db
C:\Windows\Prefetch\AgGlGlobalHistory.db
C:\Windows\Prefetch\AgRobust.db
C:\Windows\Prefetch\CAVWP.EXE-ABDB91D6.pf
C:\Windows\Prefetch\CIS.EXE-F3F81C94.pf
C:\Windows\Prefetch\CMD.EXE-4A81B364.pf
C:\Windows\Prefetch\COMPILEMOF.EXE-B5FEBDEB.pf
C:\Windows\Prefetch\CONSENT.EXE-531BD9EA.pf
C:\Windows\Prefetch\CONTROL.EXE-817F8F1D.pf
C:\Windows\Prefetch\DLLHOST.EXE-5E46FA0D.pf
C:\Windows\Prefetch\DLLHOST.EXE-766398D2.pf
C:\Windows\Prefetch\DRAGON_SETUP.EXE-D0DC44FB.pf
C:\Windows\Prefetch\EDSDTS.EXE-B5D9A1D2.pf
C:\Windows\Prefetch\EHMSAS.EXE-2D3B2F21.pf
C:\Windows\Prefetch\FIREFOX.EXE-A606B53C.pf
C:\Windows\Prefetch\FLASHPLAYERPLUGIN_13_0_0_214.-48584C3B.pf
C:\Windows\Prefetch\FLASHPLAYERUPDATESERVICE.EXE-ECAD9571.pf
C:\Windows\Prefetch\FRAMEWORK.NOTIFICATIONCENTER.-A442D366.pf
C:\Windows\Prefetch\GFXUI.EXE-C6B3880F.pf
C:\Windows\Prefetch\GOOGLECRASHHANDLER.EXE-7D76415F.pf
C:\Windows\Prefetch\GOOGLEUPDATE.EXE-FE771DDA.pf
C:\Windows\Prefetch\HIDCHK.EXE-353BD79D.pf
C:\Windows\Prefetch\IEXPLORE.EXE-908C99F8.pf
C:\Windows\Prefetch\IGFXEXT.EXE-D5F523DB.pf
C:\Windows\Prefetch\IGFXSRVC.EXE-96A493A4.pf
C:\Windows\Prefetch\IPODSERVICE.EXE-37C43D64.pf
C:\Windows\Prefetch\JAVA.EXE-F9064DBA.pf
C:\Windows\Prefetch\LMANAGER.EXE-9D025777.pf
C:\Windows\Prefetch\LOGONUI.EXE-09140401.pf
C:\Windows\Prefetch\MOBSYNC.EXE-C5E2284F.pf
C:\Windows\Prefetch\MSCORSVW.EXE-C3C515BD.pf
C:\Windows\Prefetch\NOTEPAD.EXE-D8414F97.pf
C:\Windows\Prefetch\NTOSBOOT-B00DFAAD.pf
C:\Windows\Prefetch\PfSvPerfStats.bin
C:\Windows\Prefetch\PLUGIN-CONTAINER.EXE-7226D1F8.pf
C:\Windows\Prefetch\PRESENTATIONSETTINGS.EXE-2F4708C9.pf
C:\Windows\Prefetch\ReadyBoot
C:\Windows\Prefetch\RTKBTMNT.EXE-17C649B9.pf
C:\Windows\Prefetch\RUNDLL32.EXE-1304AE86.pf
C:\Windows\Prefetch\RUNDLL32.EXE-1EECBF2C.pf
C:\Windows\Prefetch\SEARCHFILTERHOST.EXE-77482212.pf
C:\Windows\Prefetch\SEARCHPROTOCOLHOST.EXE-0CB8CADE.pf
C:\Windows\Prefetch\SFTGC(1).EXE-B8B36D43.pf
C:\Windows\Prefetch\SFTGC.EXE-27B2DB7C.pf
C:\Windows\Prefetch\SFTGC.EXE-607937F9.pf
C:\Windows\Prefetch\SVCHOST.EXE-007FEA55.pf
C:\Windows\Prefetch\SVCHOST.EXE-DD6406E8.pf
C:\Windows\Prefetch\SYNTPENH.EXE-E6DC1353.pf
C:\Windows\Prefetch\SYNTPHELPER.EXE-0A20AAC4.pf
C:\Windows\Prefetch\TASKENG.EXE-48D4E289.pf
C:\Windows\Prefetch\TRUSTEDINSTALLER.EXE-3CC531E5.pf
C:\Windows\Prefetch\UNIT.EXE-B5C5289B.pf
C:\Windows\Prefetch\UNIT_MANAGER.EXE-AB37BBCD.pf
C:\Windows\Prefetch\UNSECAPP.EXE-A02905A6.pf
C:\Windows\Prefetch\UPDATER.EXE-AC3844D8.pf
C:\Windows\Prefetch\VERCLSID.EXE-7C52E31C.pf
C:\Windows\Prefetch\WERCON.EXE-E36BD04E.pf
C:\Windows\Prefetch\WERMGR.EXE-0F2AC88C.pf
C:\Windows\Prefetch\WINWORD.EXE-C91725A1.pf
C:\Windows\Prefetch\WMIADAP.EXE-F8DFDFA2.pf
C:\Windows\Prefetch\WMIPRVSE.EXE-1628051C.pf
C:\Windows\Prefetch\WMPNETWK.EXE-D9F2A96F.pf
C:\Windows\Prefetch\WMPNSCFG.EXE-FC0D39BF.pf
C:\Windows\Prefetch\WRTPROC.EXE-9350D75A.pf
C:\Windows\Prefetch\WUAUCLT.EXE-70318591.pf
C:\Windows\Prefetch\ReadyBoot\Trace1.fx
C:\Windows\Prefetch\ReadyBoot\Trace2.fx
C:\Windows\Prefetch\ReadyBoot\Trace3.fx
C:\Windows\Prefetch\ReadyBoot\Trace4.fx

Java Cache empty



Fine del rapporto.

Posté(e)

Ca me semble propre.

Si ce n'est déjà fait:
Il faut Réinitialiser votre Navigateur
en cliquant ici

Cela désinstallera plugins et extensions que vous pourrez réinstaller avec la prudence nécessaire


A)Pubs intempestives ?
Un PUP (Potentially Unwanted Programs) est un programme indésirable.
par exemple: 01NetToolbar ,Conduit, Babylone,Delta Search , Wajam Kiwee etc..
C'est ainsi que 01net depuis quelques temps repack des logiciels pour y ajouter des programmes parasites qui sont d'ailleurs précochés.
Alors .ATTENTION
Le but est de gagner de l'argent à chaque installation réussie.


Pour vous éviter cela ou, au moins ,limiter ce genre de problèmes:

Cliquez sur le lien suivant
Comment se protéger des Pups Indésirables

Et ,si ce n'est déjà fait,installez ces 2 extensions pour Firefox:

Adblock+ 2.2.1
Ghostery 2.8.4


B)Ce logiciel va désinstaller les outils utilisés pour la désinfection:

Télécharger DelFix de Xplode

Lancez-le.

Cochez [suppression des outils]
et Cliquez [Exécuter]


C)Si vous pensez que votre problème a trouvé une solution, et afin que ceux qui la cherchent en profitent,
éditez votre premier message (Edition complète)et, dans le titre, inscrivez Résolu.
resolu.jpg
[1] En bas de votre premier message, cliquer sur Modifier
[2] En bas de l'éditeur qui s'ouvre, cliquer sur Utiliser l'éditeur complet
[3] En haut de l'éditeur complet, ajouter Résolu au début du titre de votre sujet.
[4] Enregistrer les modifications



  • Upvote 2
Posté(e)

Bonsoir Pear, j'ai suivi les instructions. J'ai installe' adblock et ghostery. Et jusqu'a la aucun probleme. J'ai ensuite decharge' Delfix et suivi Cochez et Cliquer. Un rapport est apparu mais je n'ai pas eu le temps de faire quoi que ce soit car mon ordinateur s'est eteint. Je l'ai re allumé trois ou quattre fois mais au bout de 45 secondes il s'eteigne. Que dois je faire???

 

Merci

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...