cjoint

Publicité


Publicité

Format du document : application/octet-stream

Prévisualisation

[code]
HitmanPro 3.7.14.265
www.hitmanpro.com

Computer name . . . . : THEPHENOM-PC
Windows . . . . . . . : 6.1.1.7601.X64/4
User name . . . . . . : thephenom-PC\thephenom
UAC . . . . . . . . . : Enabled
License . . . . . . . : Trial (30 days left)

Scan date . . . . . . : 2016-05-14 23:17:44
Scan mode . . . . . . : Normal
Scan duration . . . . : 8m 0s
Disk access mode . . : Direct disk access (SRB)
Cloud . . . . . . . . : Internet
Reboot . . . . . . . : No

Threats . . . . . . . : 2
Traces . . . . . . . : 176

Objects scanned . . . : 1,465,233
Files scanned . . . . : 24,475
Remnants scanned . . : 209,838 files / 1,230,920 keys

Malware _____________________________________________________________________

C:\Users\thephenom\AppData\Local\Temp\dup2patcher.dll -> Quarantined
Size . . . . . . . : 269,824 bytes
Age . . . . . . . : 2.5 days (2016-05-12 11:38:03)
Entropy . . . . . : 4.6
SHA-256 . . . . . : 4D381D31C60C351E3894E7D81DEDCFEE4AF1DAE8FD1CEF56BE973CD911B585F7
> HitmanPro . . . . : Malware
Fuzzy . . . . . . : 112.0
Forensic Cluster
0.0s C:\Users\thephenom\AppData\Local\Temp\dup2patcher.dll
0.1s C:\Users\thephenom\AppData\Local\Temp\bassmod.dll
0.2s C:\Users\thephenom\AppData\Local\Temp\C5E3399ED9A072FE864748D49BA96094.dll
3.7s C:\Program Files (x86)\Internet Download Manager\IDMan.exe.BAK

C:\Users\thephenom\AppData\Local\Temp\KMP_4.0.5.3.exe -> Quarantined
Size . . . . . . . : 755,400 bytes
Age . . . . . . . : 33.2 days (2016-04-11 18:57:14)
Entropy . . . . . : 8.0
SHA-256 . . . . . : A3707C0E18484F032605E0ACC4DE3C0C7E1C124018747241E09F564BDF8B5DF7
> Kaspersky . . . . : not-a-virus:Downloader.Win32.DownloAdmin.baph
Fuzzy . . . . . . : 114.0


Suspicious files ____________________________________________________________

C:\Program Files (x86)\The KMPlayer\bass.dll
Size . . . . . . . : 92,728 bytes
Age . . . . . . . : 226.2 days (2015-10-01 19:01:59)
Entropy . . . . . : 7.9
SHA-256 . . . . . : FDA6A046CCAA6BBB1A5F7C75E9FF7D936AAF841D1FBCED495141604DCAC081A8
Fuzzy . . . . . . : 22.0
Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs.
Program is running but currently exposes no human-computer interface (GUI).
Authors name is missing in version info. This is not common to most programs.
Version control is missing. This file is probably created by an individual. This is not typical for most programs.
Program contains PE structure anomalies. This is not typical for most programs.
The file is in use by one or more active processes.

C:\Program Files (x86)\The KMPlayer\bass_ape.dll
Size . . . . . . . : 33,240 bytes
Age . . . . . . . : 226.2 days (2015-10-01 19:01:59)
Entropy . . . . . : 7.8
SHA-256 . . . . . : B8DEBAFFE6A8C3D96F8A301C8E08C087C7AEF9DB6891578C617222D88C4121D0
Fuzzy . . . . . . : 22.0
Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs.
Program is running but currently exposes no human-computer interface (GUI).
Authors name is missing in version info. This is not common to most programs.
Version control is missing. This file is probably created by an individual. This is not typical for most programs.
Program contains PE structure anomalies. This is not typical for most programs.
The file is in use by one or more active processes.

C:\Program Files (x86)\The KMPlayer\bass_flac.dll
Size . . . . . . . : 23,616 bytes
Age . . . . . . . : 226.2 days (2015-10-01 19:01:59)
Entropy . . . . . : 7.7
SHA-256 . . . . . : F0B4F8C7E4BB2FEAE01414EB9674243DD8C000A147CB0D5F0540EF35A0FE0865
Fuzzy . . . . . . : 22.0
Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs.
Program is running but currently exposes no human-computer interface (GUI).
Authors name is missing in version info. This is not common to most programs.
Version control is missing. This file is probably created by an individual. This is not typical for most programs.
Program contains PE structure anomalies. This is not typical for most programs.
The file is in use by one or more active processes.

C:\Users\thephenom\AppData\Local\PunkBuster\FC3\pb\pbcl.dll
Size . . . . . . . : 953,886 bytes
Age . . . . . . . : 1259.9 days (2012-12-02 02:49:44)
Entropy . . . . . : 7.6
SHA-256 . . . . . : 6D5E2CD4A7A43EB00B600BA783AD3BEE6B817C030A40600D40367173A6ECEB13
Fuzzy . . . . . . : 29.0
The .reloc (relocation) section in this program contains code. This is an indication of malware infection.
Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs.
Authors name is missing in version info. This is not common to most programs.
Version control is missing. This file is probably created by an individual. This is not typical for most programs.
Program contains PE structure anomalies. This is not typical for most programs.

C:\Users\thephenom\AppData\Roaming\Ubisoft\Tom Clancy's Ghost Recon Future Soldier\pb\pbcl.dll
Size . . . . . . . : 972,501 bytes
Age . . . . . . . : 1201.2 days (2013-01-29 18:41:00)
Entropy . . . . . : 7.6
SHA-256 . . . . . : CCD4FD05B76D1C64855930E0B24365B4C9ABA3F3319DACEE5D06A565D5CC78F9
Fuzzy . . . . . . : 29.0
The .reloc (relocation) section in this program contains code. This is an indication of malware infection.
Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs.
Authors name is missing in version info. This is not common to most programs.
Version control is missing. This file is probably created by an individual. This is not typical for most programs.
Program contains PE structure anomalies. This is not typical for most programs.

C:\Users\thephenom\AppData\Roaming\Ubisoft\Tom Clancy's Ghost Recon Future Soldier\pb\pbcls.dll
Size . . . . . . . : 972,501 bytes
Age . . . . . . . : 1201.2 days (2013-01-29 18:41:01)
Entropy . . . . . : 7.6
SHA-256 . . . . . : CCD4FD05B76D1C64855930E0B24365B4C9ABA3F3319DACEE5D06A565D5CC78F9
Fuzzy . . . . . . : 29.0
The .reloc (relocation) section in this program contains code. This is an indication of malware infection.
Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs.
Authors name is missing in version info. This is not common to most programs.
Version control is missing. This file is probably created by an individual. This is not typical for most programs.
Program contains PE structure anomalies. This is not typical for most programs.


Cookies _____________________________________________________________________

C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:1034291028.log.optimizely.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:1131552301.log.optimizely.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:123424744.log.optimizely.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:1369090036.log.optimizely.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:2109473017.log.optimizely.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:246059135.log.optimizely.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:4177821143.log.optimizely.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:554924358.log.optimizely.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:631700291.log.optimizely.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:7550209.log.optimizely.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:abmr.net
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:acuityplatform.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:adbrn.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:addthis.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:adingo.jp
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.linkedin.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.servebom.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:adsymptotic.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:adzerk.net
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:agkn.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:angsrvr.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:atdmt.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:audienceiq.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:bidswitch.net
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:bizrate.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:bluekai.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:c.appier.net
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:canwestglobal.sc.omtrdc.net
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:cbsi.demdex.net
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:completeporndatabase.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:crwdcntrl.net
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:ctnsnet.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:demdex.net
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:dmtracker.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:doubleclick.net
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:dpclk.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:dpm.demdex.net
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:dynamicyield.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:engine.adzerk.net
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:engine.phn.doublepimp.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:everesttech.net
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:exoclick.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:fr.sitestat.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:go.flx1.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:gssprt.jp
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:imrworldwide.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:in.getclicky.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:kau.li
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:krxd.net
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:lijit.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:m.webtrends.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:mathtag.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:ml314.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:oracle.112.2o7.net
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:outbrain.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:owneriq.net
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:pagefair.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:po.st
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:pornhub.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:pornleech.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:pornmd.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:postmedia.demdex.net
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:rfihub.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:rlcdn.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:ru4.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:scorecardresearch.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:simpli.fi
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:skimresources.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:souq.sc.omtrdc.net
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:statcounter.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:stats.complex.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:statse.webtrendslive.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:sxp.smartclip.net
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:taboola.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:track.rtb-media.me
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:trc.taboola.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:uptoporn.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:visualdna.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:w55c.net
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:www.pornmd.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:www.uptoporn.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:xiti.com
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:yadro.ru
C:\Users\thephenom\AppData\Local\Google\Chrome\User Data\Default\Cookies:youporn.com
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\0GHYPMRV.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\0OZ0TDPS.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\0QPGVOJA.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\13RFKCJ4.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\14DR96FO.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\1DTG1KO1.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\250PPO03.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\2IOYTBLC.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\3IF3ZWS5.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\4KPSLY77.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\4M6BMEI1.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\4O812VU1.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\4V7X9D7W.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\526G23BV.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\5DBM4LKW.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\5QY0WNQG.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\65UBBPVL.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\6DMFD0Q6.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\75MOMCLW.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\7EK8JUEB.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\7G3PY6MA.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\7IJ70RPI.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\7IO7QK0H.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\8GGQBDAG.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\8K15ZRPZ.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\8SMEE3DH.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\98PVHRDF.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\993FJYOU.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\ABVB1L7X.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\BD0OWNRG.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\BLDKN6X3.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\C0QZUNQZ.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\C65KB76Y.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\CB2X30PC.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\D0FM48O0.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\D55XE0U2.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\DAZGF2SX.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\DHIHA4FZ.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\E1OT00ZP.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\EAT3FCGP.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\EL2XCEKC.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\EU4P4SCK.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\F1Y6LH01.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\F9RHMR6V.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\FDH1Z88A.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\FPX8A6ZD.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\GVDCXUR6.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\HEE2ZOCL.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\HEZSZZBN.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\II5RRGCB.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\ITH33DUB.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\J20G49M9.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\JRX7I9PL.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\JUN3DX53.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\JWWSZOL0.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\KPGRMRBG.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\KSPBKCLO.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\LF7XMOH2.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\M31XDJG9.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\MIQT0DDG.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\MOTWUT3K.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\N32OG9HM.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\NL2VW2GB.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\O3KB1DWT.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\O5XFLPVN.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\OC8QDK13.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\P7NAQY50.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\PPZNJ876.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\QAP41RAW.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\S5PMJBEH.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\S9Z0TCSX.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\ST7FOA08.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\SVJ0K7CL.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\T6206OR6.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\TD2F8LVC.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\TYIYEKLF.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\U5657Z8M.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\WRC1AVM6.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\YCEXN1AN.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\YO1S2K6G.txt
C:\Users\thephenom\AppData\Roaming\Microsoft\Windows\Cookies\Low\ZMFWTPEL.txt


[/code]

Publicité


Signaler le contenu de ce document

Publicité