cjoint

Publicité


Publicité

Format du document : application/octet-stream

Prévisualisation

[code]
HitmanPro 3.7.20.286
www.hitmanpro.com

Computer name . . . . : LENOVO-PC
Windows . . . . . . . : 10.0.0.15063.X64/8
User name . . . . . . : LENOVO-PC\christianleonce
UAC . . . . . . . . . : Enabled
License . . . . . . . : Trial (31 days left)

Scan date . . . . . . : 2017-09-16 18:08:44
Scan mode . . . . . . : Normal
Scan duration . . . . : 9m 10s
Disk access mode . . : Direct disk access (SRB)
Cloud . . . . . . . . : Internet
Reboot . . . . . . . : No

Threats . . . . . . . : 1
Traces . . . . . . . : 152

Objects scanned . . . : 1 714 928
Files scanned . . . . : 36 264
Remnants scanned . . : 357 054 files / 1 321 610 keys

Malware _____________________________________________________________________

C:\AdwCleaner\Quarantine\RYwTiizs2t\CitrioSetup.exe -> Quarantined
Size . . . . . . . : 724 536 bytes
Age . . . . . . . : 1.9 days (2017-09-14 20:26:52)
Entropy . . . . . : 7.6
SHA-256 . . . . . : B9A0ED1030E1675E5D5DDFA80B5564B4233C5F4A37CDAF793B9FED3981311A9A
Product . . . . . : CatalinaGroup Update
Publisher . . . . : Catalina Group Ltd.
Description . . . : CatalinaGroup Update Setup
Version . . . . . : 1.3.25.224
Copyright . . . . : Copyright 2013 Catalina Group Ltd.
RSA Key Size . . . : 2048
LanguageID . . . . : 1033
Authenticode . . . : Valid
> Kaspersky . . . . : not-a-virus:RiskTool.Win32.Catalina.ajx
Fuzzy . . . . . . : 103.0
Forensic Cluster
-5.1s C:\AdwCleaner\Quarantine\frAQBc8Wsa\
-2.3s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\
-2.3s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\frames\
-2.3s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\frames\frame\
-2.3s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\frames\fullscreen\
-2.2s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\frames\websheetshadow\
-2.2s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\frames\websheetshadow\active\
-2.2s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\frames\websheetshadow\inactive\
-2.2s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\frames\windowshadow\
-2.2s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\frames\windowshadow\active\
-2.1s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\frames\windowshadow\inactive\
-2.1s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\inspector\
-2.1s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\Microsoft.VC90.CRT\
-2.1s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\inspector\Images\
-2.1s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\
-2.1s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\
-2.1s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\assets\
-2.0s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\assets\images\
-2.0s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\assets\build\
-2.0s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\assets\images\dark\
-2.0s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\assets\images\oem\
-2.0s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\assets\images\oem\lenovo\
-1.9s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\assets\scripts\
-1.9s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\assets\scripts\lib\
-1.9s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\assets\scripts\platform\controllers\
-1.9s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\assets\scripts\platform\
-1.9s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\assets\scripts\platform\models\
-1.8s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\assets\scripts\platform\templates\
-1.8s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\assets\scripts\platform\views\
-1.8s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\assets\scripts\sidebar\
-1.8s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\assets\styles\
-1.8s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\assets\styles\themes\
-1.8s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\assets\svg\
-1.8s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\languages\
-1.8s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\languages\da\
-1.7s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\languages\en-US\
-1.7s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\languages\de\
-1.7s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\languages\es\
-1.7s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\languages\es-419\
-1.7s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\languages\fi\
-1.7s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\languages\fr\
-1.7s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\languages\it\
-1.7s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\languages\pt-BR\
-1.7s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\languages\no\
-1.6s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\languages\ru\
-1.6s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\languages\sv\
-1.6s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Engine\sysapps\notifications\languages\zh-CN\
-1.6s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Pokkies\
-1.6s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Pokkies\f22abfeae27a67446927d078890381efc546d3e1\
-1.6s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Pokkies\f22abfeae27a67446927d078890381efc546d3e1\css\
-1.6s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Pokkies\f22abfeae27a67446927d078890381efc546d3e1\images\
-1.5s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Pokkies\f22abfeae27a67446927d078890381efc546d3e1\js\lib\
-1.5s C:\AdwCleaner\Quarantine\frAQBc8Wsa\Pokkies\f22abfeae27a67446927d078890381efc546d3e1\js\
-1.3s C:\AdwCleaner\Quarantine\1xVPfvJcrg\
-1.2s C:\AdwCleaner\Quarantine\1xVPfvJcrg\initrd.gz
-1.1s C:\AdwCleaner\Quarantine\1xVPfvJcrg\shldr
-0.6s C:\AdwCleaner\Quarantine\1xVPfvJcrg\shldr.mbr
-0.4s C:\AdwCleaner\Quarantine\1xVPfvJcrg\vmlinuz
-0.0s C:\AdwCleaner\Quarantine\RYwTiizs2t\
0.0s C:\AdwCleaner\Quarantine\RYwTiizs2t\CitrioSetup.exe
0.8s C:\AdwCleaner\Quarantine\rQF69AzBla
0.8s C:\AdwCleaner\Quarantine\x3CF3EDNhm
1.0s C:\AdwCleaner\Quarantine\3soLBPh71Y
1.0s C:\AdwCleaner\Quarantine\exuieaoEiI


Suspicious files ____________________________________________________________

C:\Users\christianleonce\AppData\Local\Microsoft\Windows\INetCache\IE\CFGEOVDL\FRST64[1].exe
Size . . . . . . . : 2 398 208 bytes
Age . . . . . . . : 1.4 days (2017-09-15 07:46:37)
Entropy . . . . . : 7.6
SHA-256 . . . . . : 0FE49A1350A89EB2EAD34A471BEFF176D4D01D980B2567075110D7BFA95D544C
Needs elevation . : Yes
Fuzzy . . . . . . : 24.0
Program has no publisher information but prompts the user for permission elevation.
Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs.
Authors name is missing in version info. This is not common to most programs.
Version control is missing. This file is probably created by an individual. This is not typical for most programs.
Time indicates that the file appeared recently on this computer.
Forensic Cluster
-24.3s C:\ProgramData\Trusteer\Rapport\logs\gh_FRST64-_x64.9288.log
-17.1s C:\FRST\
-17.1s C:\FRST\Logs\
-17.1s C:\FRST\Quarantine\
-17.1s C:\FRST\Hives\
-15.0s C:\Windows\Prefetch\FRST64-.EXE-CDBC033B.pf
-13.0s C:\ProgramData\Trusteer\Rapport\logs\gh_ERUNT.8084.log
-12.9s C:\FRST\Hives\ERDNT.INF
-12.9s C:\FRST\Hives\ERDNT.CON
-12.9s C:\FRST\Hives\SYSTEM
-12.4s C:\FRST\Hives\SOFTWARE
-6.6s C:\FRST\Hives\DEFAULT
-6.3s C:\FRST\Hives\SECURITY
-5.9s C:\FRST\Hives\SAM
-5.7s C:\FRST\Hives\BCD
-5.5s C:\FRST\Hives\Users\
-5.5s C:\FRST\Hives\Users\00000001\
-5.5s C:\FRST\Hives\Users\00000001\NTUSER.DAT
-5.1s C:\FRST\Hives\Users\00000002\
-5.1s C:\FRST\Hives\Users\00000002\UsrClass.dat
-5.0s C:\FRST\Hives\ERDNT.EXE
-4.3s C:\FRST\Hives\ERDNTWIN.LOC
-4.3s C:\FRST\Hives\ERDNTDOS.LOC
-3.0s C:\Users\christianleonce\AppData\Local\Microsoft\Windows\INetCookies\U4B61SQ7.cookie
-2.6s C:\Users\christianleonce\AppData\Local\Microsoft\Windows\INetCache\IE\EV5AF5PJ\82[1].htm
-1.4s C:\Users\christianleonce\AppData\Local\Microsoft\Windows\INetCookies\Z5PIKO23.cookie
-1.3s C:\Users\christianleonce\AppData\Local\Microsoft\Windows\INetCache\IE\JGNFFXMH\82[1].htm
-0.7s C:\Users\christianleonce\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\9EC3B71635F8BA3FC68DE181A104A0EF_F6C39EF89D8A3A72327D8412589658B2
-0.7s C:\Users\christianleonce\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\9EC3B71635F8BA3FC68DE181A104A0EF_F6C39EF89D8A3A72327D8412589658B2
-0.2s C:\Users\christianleonce\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\64DCC9872C5635B1B7891B30665E0558_5552C20A2631357820903FD38A8C0F9F
-0.2s C:\Users\christianleonce\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\64DCC9872C5635B1B7891B30665E0558_5552C20A2631357820903FD38A8C0F9F
0.0s C:\Users\christianleonce\AppData\Local\Microsoft\Windows\INetCache\IE\CFGEOVDL\FRST64[1].exe
0.0s C:\Users\christianleonce\Documents\safety\FRST64.exe
1.8s C:\Users\christianleonce\Documents\safety\FRST-OlderVersion\
6.9s C:\ProgramData\Trusteer\Rapport\logs\gh_FRST64_x64.8352.log
8.2s C:\Users\christianleonce\AppData\Local\Microsoft\Windows\INetCache\IE\7UZL7J2V\up64[2]
16.2s C:\Windows\Prefetch\FRST64.EXE-3CE0D3EA.pf
17.2s C:\Users\christianleonce\Documents\safety\FRST.txt

C:\Users\christianleonce\Documents\safety\FRST-OlderVersion\FRST64- (1).exe
Size . . . . . . . : 2 393 600 bytes
Age . . . . . . . : 1.4 days (2017-09-15 07:34:05)
Entropy . . . . . : 7.6
SHA-256 . . . . . : 805B7C258DDE61E48449AB323AF457E7669460EA0A8FEA77A2CAA7B3F1EB0FD2
Needs elevation . : Yes
Fuzzy . . . . . . : 24.0
Program has no publisher information but prompts the user for permission elevation.
Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs.
Authors name is missing in version info. This is not common to most programs.
Version control is missing. This file is probably created by an individual. This is not typical for most programs.
Time indicates that the file appeared recently on this computer.
Forensic Cluster
-37.0s C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00085c
-35.4s C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00085d
-35.0s C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00085e
-30.5s C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000860
-30.2s C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000861
-27.6s C:\Users\christianleonce\Documents\safety\FRST-OlderVersion\FRST64-.exe
0.0s C:\Users\christianleonce\Documents\safety\FRST-OlderVersion\FRST64- (1).exe
1.6s C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000864
2.0s C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000865

C:\Users\christianleonce\Documents\safety\FRST-OlderVersion\FRST64-.exe
Size . . . . . . . : 2 393 600 bytes
Age . . . . . . . : 1.4 days (2017-09-15 07:33:37)
Entropy . . . . . : 7.6
SHA-256 . . . . . : 805B7C258DDE61E48449AB323AF457E7669460EA0A8FEA77A2CAA7B3F1EB0FD2
Needs elevation . : Yes
Fuzzy . . . . . . : 24.0
Program has no publisher information but prompts the user for permission elevation.
Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs.
Authors name is missing in version info. This is not common to most programs.
Version control is missing. This file is probably created by an individual. This is not typical for most programs.
Time indicates that the file appeared recently on this computer.
Forensic Cluster
-9.4s C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00085c
-7.8s C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00085d
-7.4s C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00085e
-2.9s C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000860
-2.5s C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000861
0.0s C:\Users\christianleonce\Documents\safety\FRST-OlderVersion\FRST64-.exe
27.6s C:\Users\christianleonce\Documents\safety\FRST-OlderVersion\FRST64- (1).exe
29.2s C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000864
29.6s C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cache\f_000865

C:\Users\christianleonce\Documents\safety\FRST64.exe
Size . . . . . . . : 2 398 208 bytes
Age . . . . . . . : 1.4 days (2017-09-15 07:46:37)
Entropy . . . . . : 7.6
SHA-256 . . . . . : 0FE49A1350A89EB2EAD34A471BEFF176D4D01D980B2567075110D7BFA95D544C
Needs elevation . : Yes
Fuzzy . . . . . . : 24.0
Program has no publisher information but prompts the user for permission elevation.
Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs.
Authors name is missing in version info. This is not common to most programs.
Version control is missing. This file is probably created by an individual. This is not typical for most programs.
Time indicates that the file appeared recently on this computer.
Forensic Cluster
-24.3s C:\ProgramData\Trusteer\Rapport\logs\gh_FRST64-_x64.9288.log
-17.1s C:\FRST\
-17.1s C:\FRST\Logs\
-17.1s C:\FRST\Quarantine\
-17.1s C:\FRST\Hives\
-15.0s C:\Windows\Prefetch\FRST64-.EXE-CDBC033B.pf
-13.0s C:\ProgramData\Trusteer\Rapport\logs\gh_ERUNT.8084.log
-12.9s C:\FRST\Hives\ERDNT.INF
-12.9s C:\FRST\Hives\ERDNT.CON
-12.9s C:\FRST\Hives\SYSTEM
-12.4s C:\FRST\Hives\SOFTWARE
-6.6s C:\FRST\Hives\DEFAULT
-6.3s C:\FRST\Hives\SECURITY
-5.9s C:\FRST\Hives\SAM
-5.7s C:\FRST\Hives\BCD
-5.5s C:\FRST\Hives\Users\
-5.5s C:\FRST\Hives\Users\00000001\
-5.5s C:\FRST\Hives\Users\00000001\NTUSER.DAT
-5.1s C:\FRST\Hives\Users\00000002\
-5.1s C:\FRST\Hives\Users\00000002\UsrClass.dat
-5.0s C:\FRST\Hives\ERDNT.EXE
-4.3s C:\FRST\Hives\ERDNTWIN.LOC
-4.3s C:\FRST\Hives\ERDNTDOS.LOC
-3.0s C:\Users\christianleonce\AppData\Local\Microsoft\Windows\INetCookies\U4B61SQ7.cookie
-2.6s C:\Users\christianleonce\AppData\Local\Microsoft\Windows\INetCache\IE\EV5AF5PJ\82[1].htm
-1.4s C:\Users\christianleonce\AppData\Local\Microsoft\Windows\INetCookies\Z5PIKO23.cookie
-1.3s C:\Users\christianleonce\AppData\Local\Microsoft\Windows\INetCache\IE\JGNFFXMH\82[1].htm
-0.7s C:\Users\christianleonce\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\9EC3B71635F8BA3FC68DE181A104A0EF_F6C39EF89D8A3A72327D8412589658B2
-0.7s C:\Users\christianleonce\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\9EC3B71635F8BA3FC68DE181A104A0EF_F6C39EF89D8A3A72327D8412589658B2
-0.2s C:\Users\christianleonce\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\64DCC9872C5635B1B7891B30665E0558_5552C20A2631357820903FD38A8C0F9F
-0.2s C:\Users\christianleonce\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\64DCC9872C5635B1B7891B30665E0558_5552C20A2631357820903FD38A8C0F9F
-0.0s C:\Users\christianleonce\AppData\Local\Microsoft\Windows\INetCache\IE\CFGEOVDL\FRST64[1].exe
0.0s C:\Users\christianleonce\Documents\safety\FRST64.exe
1.8s C:\Users\christianleonce\Documents\safety\FRST-OlderVersion\
6.9s C:\ProgramData\Trusteer\Rapport\logs\gh_FRST64_x64.8352.log
8.2s C:\Users\christianleonce\AppData\Local\Microsoft\Windows\INetCache\IE\7UZL7J2V\up64[2]
16.2s C:\Windows\Prefetch\FRST64.EXE-3CE0D3EA.pf
17.2s C:\Users\christianleonce\Documents\safety\FRST.txt


Cookies _____________________________________________________________________

C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:254a.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:262855726.log.optimizely.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:adaptv.advertising.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:adbrn.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:addthis.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:adfarm1.adition.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:adform.net
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:adgrx.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:adhigh.net
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:adingo.jp
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:adnxs.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.pubmatic.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.stickyadstv.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:ads.yieldmo.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:adsrvr.org
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:adsymptotic.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:adtech.de
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:adtechus.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:advertising.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:agkn.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:angsrvr.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:basebanner.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:bidr.io
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:bidswitch.net
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:bluekai.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:c.appier.net
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:casalemedia.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:connexity.net
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:contextweb.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:cstatic.weborama.fr
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:cw.addthis.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:delivery.trafficforce.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:demdex.net
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:dlx.addthis.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:dotomi.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:doubleclick.net
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:dpm.demdex.net
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:erne.co
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:everesttech.net
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:eyereturn.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:eyeviewads.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:go.sonobi.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:googleadservices.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:gwallet.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:ib.adnxs.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:imrworldwide.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:ipredictive.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:korrelate.net
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:krxd.net
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:legolas-media.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:match.rundsp.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:mathtag.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:mookie1.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:mxptint.net
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:openx.net
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:optimatic.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:outbrain.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:owneriq.net
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:pixel.rubiconproject.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:po.st
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:pool.admedo.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:postrelease.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:pubmatic.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:revsci.net
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:rfihub.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:rlcdn.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:rubiconproject.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:sandbox.bidswitch.net
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:scorecardresearch.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:simpli.fi
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:sitescout.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:skimresources.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:smartadserver.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:switchadhub.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:sxp.smartclip.net
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:taboola.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:tap.rubiconproject.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:tapad.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:tidaltv.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:track.spots.im
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:tradedoubler.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:tremorhub.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:tribalfusion.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:turn.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:visualdna.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:w55c.net
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:weborama.fr
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:www.googleadservices.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:xiti.com
C:\Users\christianleonce\AppData\Local\Google\Chrome\User Data\Default\Cookies:zedo.com
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\08G0VXMC.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\0IE3M0GR.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\66LS42JW.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\7A1MU0SS.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\7TFAA274.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\8590D7N5.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\9WUKM40I.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\ABMDE278.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\B2UUH421.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\FB0RDKIE.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\FM0XSG91.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\MGBNMFC6.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\MZZKEW03.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\N0GOO463.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\P0M31P27.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\QRKEEVX9.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\UAU8UBIM.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\UTCQPA3Q.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\V1AJPR4Y.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\VC11NRKO.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\YYHF81LX.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!002\MicrosoftEdge\Cookies\86GQB1KB.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!002\MicrosoftEdge\Cookies\97YA3VO8.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!002\MicrosoftEdge\Cookies\HS2A887C.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!002\MicrosoftEdge\Cookies\MSYUHS5R.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!002\MicrosoftEdge\Cookies\OKES8OKW.txt
C:\Users\christianleonce\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!002\MicrosoftEdge\Cookies\W1GRC8XE.txt
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:246059135.log.optimizely.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:acuityplatform.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:ad.360yield.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:adaptv.advertising.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:adnxs.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:ads.linkedin.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:ads.nexage.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:adsrvr.org
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:adsymptotic.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:adtechus.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:advertising.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:casalemedia.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:contextweb.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:demdex.net
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:doubleclick.net
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:dpm.demdex.net
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:imrworldwide.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:lijit.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:mathtag.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:ml314.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:nexac.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:openx.net
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:pixel.rubiconproject.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:pubmatic.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:rfihub.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:rubiconproject.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:scorecardresearch.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:tribalfusion.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:turn.com
C:\Users\christianleonce\AppData\Roaming\Mozilla\Firefox\Profiles\pdmvdu7a.default-1493906646412\cookies.sqlite:w55c.net


[/code]

Publicité


Signaler le contenu de ce document

Publicité