cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2017.12.7.181 Par Nicolas Coolman (2015/12/07)
~ Démarré par Maurice (Administrator) (2017/05/25 08:43:55)
~ Site: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Pas de fichier réseau
~ Mode: Scanner
~ Rapport: C:\Users\Maurice\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\Maurice\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 8.1, 64-bit (Build 9600)

---\\ Navigateurs Internet (2) - 0s
MFIE: Mozilla Firefox 53.0.3 (x86 fr) v53.0.3
MSIE: Internet Explorer v11.0.9600.18666

---\\ Informations sur les produits Windows (8) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows(R) Operating System, OEM_COA_NSLP channel
Windows ID Activation : OK
~ Windows Partial Key : W8CMH
Windows License : OK
~ Windows Remaining Initializations Number : 999
Windows Automatic Updates : OK

---\\ Logiciels de protection (2) - 3s
Trusteer Sécurité des points d'accès v3.5.1404.19
Windows Defender (Activate)

---\\ Logiciels d'optimisation (2) - 3s
CCleaner v5.30
Tweaking.com - Windows Repair

---\\ Surveillance de Logiciels (2) - 3s
Adobe Flash Player 25 PPAPI
Adobe Acrobat Reader DC - Français

---\\ Informations sur le système (6) - 0s
~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 8073.728 MB (78% free)
System Restore: Activé (Enable)
System drive C: has 813 GB () free of 953 GB

---\\ Mode de connexion au système (3) - 0s
~ Computer Name: BUREAU
~ User Name: Maurice
~ Logged in as Administrator

---\\ Enumération des unités disques (3) - 0s
~ Drive C: has 813 GB free of 953 GB (System)
~ Drive D: has 354 GB free of 953 GB
~ Drive G: has GB free of 0 GB

---\\ Etat du Centre de Sécurité Windows (12) - 0s
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\SOFTWARE\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings] WarnOnHTTPSToHTTPRedirect: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ Recherche particulière de fichiers génériques (25) - 0s
[MD5.ED6B4C95E2A6D67480B9DBB8A8E7D9B4] - 27/08/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [2755504] =>.Microsoft Windows®
[MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - 29/10/2014 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [54784] ©
[MD5.D9516405E05F24EDCD90B1988FAF3948] - 14/01/2017 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [146944] ©
[MD5.4A60B440DC5D2BFAD65B55926BC2C292] - 16/04/2017 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [3241472] ©
[MD5.B1102BBDDD9C87B3D609D6C08F7A3DBD] - 05/01/2016 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [570880] ©
[MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - 21/12/2013 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [447488] ©
[MD5.CF5FA7E4FB587B0F09BB0C143EB49797] - 09/02/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [658432] ©
[MD5.F2E67F682DDCFE2C2C170F2AA3650ED6] - 09/02/2017 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [499200] ©
[MD5.E37F897ED7B5AFF79B1398258DB96BD9] - 30/09/2013 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19456] ©
[MD5.A460C3AF3755A2A79A3C8EFE72E147B5] - 13/10/2015 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [559616] ©
[MD5.74B14192CF79A72F7536B27CB8814FBD] - 22/08/2013 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [26464] =>.Microsoft Windows®
[MD5.2FA6510E33F7DEFEC03658B74101A9B9] - 22/08/2013 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [88576] ©
[MD5.C6796EA22B513E3457514D92DCDB1A3D] - 22/08/2013 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [164352] ©
[MD5.4FED6AD69C9EE1EE7FD3C88437138855] - 11/01/2017 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [138752] ©
[MD5.D4B7ED39C7900384D9E5C1283F1E7926] - 24/07/2014 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [76800] ©
[MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - 04/11/2014 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [108544] ©
[MD5.B7342B3C58E91107F6E946A93D9D4EFD] - 27/11/2013 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [142848] ©
[MD5.DE1513C338189348F6934A25CF6E4D19] - 11/03/2017 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [401408] ©
[MD5.9DC17B7D9D84C37C102D379FCC7D4942] - 14/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [281088] ©
[MD5.E6E90E10CE26DD04868AED601091A124] - 11/03/2017 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2017624] {33000001066EC325C431C9180E000000000106} ©
[MD5.57DCE4FB0467986AE78E1C6FC5240D32] - 11/08/2016 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [96256] ©
[MD5.235624C147E3CB4C288D5D3D8E8D64A2] - 02/02/2016 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [112640] ©
[MD5.680C1DAE268B6FB67FA21B389A8B79EF] - 30/09/2013 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [195584] ©
[MD5.E0BD2D83875464FEEEB242CBA8B7E073] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [108032] ©
[MD5.17F7B0F2298D97F4B6C7A69511033D3D] - 14/03/2016 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [316760] =>.Microsoft Windows®

---\\ Liste des services NT non Microsoft et non désactivés (15) - 2s
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) . (.Acronis - Acronis Scheduler 2.) - C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe {21E515412EC8F5D9C5E55C1E25F67A3E} ©
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe {068983642C953E46F7BDCE4143F133C1} ©
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O23 - Service: CLHNServiceForPowerDVD12 (CLHNServiceForPowerDVD12) . (.CyberLink Corp. - CLHNServiceForPowerDVD12 Module.) - C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe =>.CyberLink Corp.®
O23 - Service: DirMngr (DirMngr) . (...) - C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe
O23 - Service: EBP Pervasive.SQL (EBP Pervasive.SQL) . (...) - C:\PVSW\Bin\WGE_SRV.EXE
O23 - Service: FreeStyleLibre MAS Server (FreeStyleLibre MAS Server) . (...) - C:\Program Files (x86)\FreeStyle Libre\MAS.FreeStyleLibre.exe
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: HWDeviceService64.exe (HWDeviceService64.exe) . (.Copyright (C) 2014 - DCSHOST.) - C:\ProgramData\DatacardService\HWDeviceService64.exe {0FF1A4A71B6AFF9C25E5006E247CD038}
O23 - Service: Ma-Config Agent (MaConfigAgent) . (.CybelSoft - Service de détection matériel.) - C:\Program Files\ma-config.com\MaConfigAgent.exe {406847B45F972D19F9885E1FECC4E67F} ©
O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe {044E3BF58976880FFD074448A8F7A058} ©
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) . (.Protexis Inc. - PsiService PsiService.) - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe {353413EEABF6C35CD648A30F43B30DC3} ©
O23 - Service: Rapport Management Service (RapportMgmtService) . (.IBM Corp. - RapportMgmtService.) - C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe =>.Trusteer®
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe {330000008AF4BE0B29747A0FA000000000008A} ©
O23 - Service: Unchecky (Unchecky) . (.RaMMicHaeL - Unchecky Service.) - C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe {432522FDAE21DAB0DA93280E36836C66} ©

---\\ Tâches planifiées en automatique (16) - 3s
[MD5.AFC094098B6D856151002051E31867D8] [APT] [Adobe Acrobat Update Task] (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [50378880] {068983642C953E46F7BDCE4143F133C1} ©
[MD5.50DFF23AB101F360AE16B0C86E7BBC33] [APT] [Adobe Flash Player PPAPI Notifier] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_25_0_0_171_pepper.exe [50378880] {06F04788031055D31DEFFEFCD026D6C5} ©
[MD5.99CE7A1C3AB82125EE3FDB446418865B] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [50378880] {06F04788031055D31DEFFEFCD026D6C5} ©
[MD5.00000000000000000000000000000000] [APT] [Avast Emergency Update] (...) -- C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe (.not file.) [50378880]
[MD5.75BD58B59D972CD83B674C74B4310869] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [50378880] =>.Piriform Ltd®
[MD5.053EEEE1ABAE53F044F1E386E22AE525] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [50378880] =>.Google Inc®
[MD5.053EEEE1ABAE53F044F1E386E22AE525] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [50378880] =>.Google Inc®
[MD5.23985274780D27117C470AA259B79B30] [APT] [Apple\AppleSoftwareUpdate] (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [50378880] =>.Apple Inc.®
[MD5.00000000000000000000000000000000] [APT] [AVAST Software\Avast settings backup] (...) -- C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe (.not file.) [50378880]
O39 - APT: Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task [50378880] ©
O39 - APT: Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier [50378880] ©
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [50378880] ©
O39 - APT: Avast Emergency Update - (...) -- C:\WINDOWS\System32\Tasks\Avast Emergency Update [50378880]
O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [50378880] ©
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [50378880] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [50378880] ©

---\\ Processus lancés (20) - 4s
[MD5.CD6869A28C07FBF35FD0EBACF2FCF069] - (.Orange - Executable Orange Inside.) -- C:\Users\Maurice\AppData\Roaming\Orange\OrangeInside\OrangeInside.exe [50378880] [PID.1488] ©
[MD5.3A377FCE7BD2FD3E614A3BC7DCC971CA] - (.Acronis - Acronis Scheduler 2.) -- C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [50378880] [PID.1536] {21E515412EC8F5D9C5E55C1E25F67A3E} ©
[MD5.01B64830DE6341004AC00EB8CC302DA0] - (.Acronis - Acronis Scheduler Helper.) -- C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [50378880] [PID.1584] {21E515412EC8F5D9C5E55C1E25F67A3E} ©
[MD5.8D6BA8E7676038A27FD4ECF12CC744B0] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [50378880] [PID.1612] {068983642C953E46F7BDCE4143F133C1} ©
[MD5.05F99DFF3A8D705F9AA6B87224F7BEB1] - (...) -- C:\Program Files (x86)\GNU\GnuPG\dirmngr.exe [50378880] [PID.1708]
[MD5.B6BDD8A9A69758481B7AD78CCBF96B7E] - (...) -- C:\PVSW\Bin\WGE_SRV.EXE [50378880] [PID.1752]
[MD5.566677EC7238F505557F310691CCEDED] - (...) -- C:\Program Files (x86)\FreeStyle Libre\MAS.FreeStyleLibre.exe [50378880] [PID.1816]
[MD5.ED3EF8E2323B4F66AC2C56675CA9DA26] - (...) -- C:\PVSW\Bin\w3dbsmgr.exe [50378880] [PID.1908]
[MD5.6BFDC6964D6C579700D16BBF4E6B9175] - (.Huawei Technologies Co., Ltd. - DataCardMonitor MFC Application.) -- C:\ProgramData\DatacardService\DCSHelper.exe [50378880] [PID.1960] {0FF1A4A71B6AFF9C25E5006E247CD038} ©
[MD5.8FCEA10C2B66523CD43BBF9302CE382E] - (.CybelSoft - Service de détection matériel.) -- C:\Program Files\ma-config.com\MaConfigAgent.exe [50378880] [PID.1996] {406847B45F972D19F9885E1FECC4E67F} ©
[MD5.543A4EF0923BF70D126625B034EF25AF] - (.Protexis Inc. - PsiService PsiService.) -- c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [50378880] [PID.1412] {353413EEABF6C35CD648A30F43B30DC3} ©
[MD5.20A45C0EBFABDCAF6FB3BCF6867EB145] - (.RaMMicHaeL - Unchecky Service.) -- C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe [50378880] [PID.2192] {432522FDAE21DAB0DA93280E36836C66} ©
[MD5.D3590D0F65BBD8A61C814360B5E8AF48] - (.RaMMicHaeL - Unchecky Background Process.) -- C:\Program Files (x86)\Unchecky\bin\unchecky_bg.exe [50378880] [PID.2268] {432522FDAE21DAB0DA93280E36836C66} ©
[MD5.804E3246E3E73D4A936F2F4BCDC53A2D] - (.Malwarebytes - Malwarebytes Service.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [50378880] [PID.2656] {044E3BF58976880FFD074448A8F7A058} ©
[MD5.A6A21A7D544675E98C040DA18904CF50] - (.Malwarebytes - Malwarebytes Tray Application.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [50378880] [PID.2912] {044E3BF58976880FFD074448A8F7A058} ©
[MD5.34E1B09DB9955927A8A80F792BED2D82] - (.Intel Corporation - igfxsrvc Module.) -- C:\WINDOWS\system32\igfxsrvc.exe [50378880] [PID.4076] {1FACE8BF000100008F1D} ©
[MD5.F31985811DD87B61708B0E8484E88216] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [50378880] [PID.3220] {1FACE8BF000100008F1D} ©
[MD5.C89C68961854E7A67946BE47D44EFAF4] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [50378880] [PID.4104] {1FACE8BF000100008F1D} ©
[MD5.0576B37CB84E42110130E267ED98BBDA] - (.Copyright © 2015 - ProductUpdater.) -- C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe [50378880] [PID.4604]
[MD5.61AC7CA26FAA79C54D7B61669A9FD5E4] - (.Copyright (C) 2015 Nicolas Coolman - ZHPDiag.) -- C:\Users\Maurice\AppData\Roaming\ZHP\ZHPDiag3.exe [50378880] [PID.1244] ©

---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (30) - 1s
M0 - MFSP: prefs.js [Maurice - d811l2u3.default-1449066248123] http://orange.fr
P2 - EXT FILE: (...) -- C:\Users\Maurice\AppData\Roaming\Mozilla\Firefox\Profiles\d811l2u3.default-1449066248123\extensions\firefox@online-convert.com.xpi
P2 - EXT FILE: (...) -- C:\Users\Maurice\AppData\Roaming\Mozilla\Firefox\Profiles\d811l2u3.default-1449066248123\extensions\personas@christopher.beard.xpi
P2 - EXT FILE: (...) -- C:\Users\Maurice\AppData\Roaming\Mozilla\Firefox\Profiles\d811l2u3.default-1449066248123\extensions\qwantcomforfirefox@jetpack.xpi
P2 - EXT FILE: (...) -- C:\Users\Maurice\AppData\Roaming\Mozilla\Firefox\Profiles\d811l2u3.default-1449066248123\extensions\uBlock0@raymondhill.net.xpi
P2 - EXT FILE: (...) -- C:\Users\Maurice\AppData\Roaming\Mozilla\Firefox\Profiles\d811l2u3.default-1449066248123\extensions\{64161300-e22b-11db-8314-0800200c9a66}.xpi
P2 - EXT FILE: (...) -- C:\Users\Maurice\AppData\Roaming\Mozilla\Firefox\Profiles\d811l2u3.default-1449066248123\extensions\{91A6D6AB-3E9A-4C00-A3CF-B08CBE803A2E}.xpi
P2 - EXT FILE: (...) -- C:\Users\Maurice\AppData\Roaming\Mozilla\Firefox\Profiles\d811l2u3.default-1449066248123\extensions\{ada4b710-8346-4b82-8199-5de2b400a6ae}.xpi
P2 - EXT FILE: (...) -- C:\Users\Maurice\AppData\Roaming\Mozilla\Firefox\Profiles\d811l2u3.default-1449066248123\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi
P2 - EXT FILE: (...) -- C:\Users\Maurice\AppData\Roaming\Mozilla\Firefox\Profiles\d811l2u3.default-1449066248123\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT FILE: (...) -- C:\Users\Maurice\AppData\Roaming\Mozilla\Firefox\Profiles\d811l2u3.default-1449066248123\searchplugins\orange.xml
P2 - EXT: (.Mixesoft - Click&Clean.) -- C:\Users\Maurice\AppData\Roaming\Mozilla\Firefox\Profiles\d811l2u3.default-1449066248123\extensions\clickclean@hotcleaner.com
P2 - EXT: (.IE Tab Team - IE Tab.) -- C:\Users\Maurice\AppData\Roaming\Mozilla\Firefox\Profiles\d811l2u3.default-1449066248123\extensions\{77b819fa-95ad-4f2c-ac7c-486b356188a9} ©
P2 - EXT: (.WOT Services Oy - WOT.) -- C:\Users\Maurice\AppData\Roaming\Mozilla\Firefox\Profiles\d811l2u3.default-1449066248123\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} ©
P2 - EXT: (.Wips.com -