Format du document : text/plain
Prévisualisation
Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01
Exécuté par Sophie (administrateur) sur SOPHIE-PC (03-04-2016 09:25:54)
Exécuté depuis C:\Users\Sophie\Desktop
Profils chargés: Sophie (Profils disponibles: Sophie & openpgsvc & Invité)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Langue: Français (France)
Internet Explorer Version 11 (Navigateur par défaut: FF)
Mode d'amorçage: Normal
Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processus (Avec liste blanche) =================
(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)
(AMD) C:\Windows\System32\atiesrxx.exe
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Foxit Software Inc.) C:\Program Files (x86)\FOXIT SOFTWARE\FOXIT READER\Foxit Cloud\FCUpdateService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(DotC United Inc) D:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
() C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
() C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
(ASUS) C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUS) C:\Program Files\P4G\BatteryLife.exe
(ASUS) C:\Windows\AsScrPro.exe
(DotC United Inc) D:\Program Files (x86)\MPC Cleaner\MPCTray.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(DotC United Inc) D:\Program Files (x86)\MPC Cleaner\MPCTray64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(AlcorMicro Co., Ltd.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
(ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Sonix Technology Co., Ltd.) C:\Windows\vsnp2uvc.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
(Learnpulse) C:\Users\Sophie\AppData\Local\LearnPulse\Screenpresso\Screenpresso.exe
(AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe
() C:\Program Files (x86)\ATI Technologies\HydraVision\HydraGrd.exe
(Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP Officejet 4630 series\Bin\ScanToPCActivationApp.exe
(ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\Grid64.exe
(Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP Officejet 4630 series\Bin\HPNetworkCommunicatorCom.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM64.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\APSDaemon.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
() C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(asus) C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(DotC United Inc) D:\Program Files (x86)\MPC Cleaner\MPCNews.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
==================== Registre (Avec liste blanche) ===========================
(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)
HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [323584 2009-09-01] (AlcorMicro Co., Ltd.)
HKLM\...\Run: [ETDWare] => C:\Program Files\Elantech\ETDCtrl.exe [649608 2010-06-10] (ELAN Microelectronic Corp.)
HKLM\...\Run: [snp2uvc] => C:\Windows\vsnp2uvc.exe [909824 2010-01-21] (Sonix Technology Co., Ltd.)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-10-16] (Apple Inc.)
HKLM-x32\...\Run: [UpdateLBPShortCut] => C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.)
HKLM-x32\...\Run: [UpdateP2GoShortCut] => C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.)
HKLM-x32\...\Run: [Nuance PDF Reader-reminder] => "C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe" -r "C:\ProgramData\Nuance\PDF Reader\Ereg\Ereg.ini"
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-10-06] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-07] (ASUS)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [Wireless Console 3] => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1601536 2010-09-24] ()
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60688 2015-10-13] (Apple Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [6111312 2015-11-07] (AVAST Software)
HKLM-x32\...\Run: [ASUSWebStorage] => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe [737104 2011-08-17] (ecareme)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [25577864 2016-03-12] (Dropbox, Inc.)
HKLM-x32\...\Run: [Aimersoft Helper Compact.exe] => C:\Program Files (x86)\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe [1667072 2012-02-28] (AimerSoft)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2015-08-06] (Apple Inc.)
HKLM-x32\...\Run: [mbot_en_037050282] => [X]
HKLM-x32\...\Run: [mpck_en_005030282] => [X]
HKLM\...\Winlogon: [Userinit] wscript C:\Windows\run.vbs,
HKLM-x32\...\Winlogon: [Userinit] , [X]
HKU\S-1-5-21-3276604738-3126462401-3648601437-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [59720 2013-11-20] (Apple Inc.)
HKU\S-1-5-21-3276604738-3126462401-3648601437-1001\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [59720 2013-11-20] (Apple Inc.)
HKU\S-1-5-21-3276604738-3126462401-3648601437-1001\...\Run: [Screenpresso] => C:\Users\Sophie\AppData\Local\LearnPulse\Screenpresso\Screenpresso.exe [12347488 2016-01-10] (Learnpulse)
HKU\S-1-5-21-3276604738-3126462401-3648601437-1001\...\Run: [HydraVisionDesktopManager] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [389120 2013-03-28] (AMD)
HKU\S-1-5-21-3276604738-3126462401-3648601437-1001\...\Run: [Grid] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraGrd.exe [401408 2013-03-28] ()
HKU\S-1-5-21-3276604738-3126462401-3648601437-1001\...\Run: [HP Officejet 4630 series (NET)] => C:\Program Files\HP\HP Officejet 4630 series\Bin\ScanToPCActivationApp.exe [3487240 2014-07-21] (Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-3276604738-3126462401-3648601437-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50676864 2016-03-01] (Skype Technologies S.A.)
HKU\S-1-5-21-3276604738-3126462401-3648601437-1001\...\MountPoints2: {fe7b8013-2510-11e4-8050-f46d04be8343} - G:\setup.exe
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2013-03-21] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-08-14] (AVAST Software)
ShellIconOverlayIdentifiers: [AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\ASUSWSShellExt64.dll [2011-05-25] (eCareme Technologies, Inc.)
ShellIconOverlayIdentifiers: [AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\ASUSWSShellExt64.dll [2011-05-25] (eCareme Technologies, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-03-18] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-03-18] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-03-18] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk [2013-05-11]
ShortcutTarget: Adobe Gamma Loader.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AsusVibeLauncher.lnk [2011-01-12]
ShortcutTarget: AsusVibeLauncher.lnk -> C:\Program Files (x86)\ASUS\AsusVibe\AsusVibeLauncher.exe ()
Startup: C:\Users\Sophie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Envoyer à OneNote.lnk [2015-06-11]
ShortcutTarget: Envoyer à OneNote.lnk -> C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe (Microsoft Corporation)
==================== Internet (Avec liste blanche) ====================
(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)
Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{6FDB57EF-0393-43B2-AE59-FBF3DD55DDE4}: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{8EFFD4A7-F725-44F5-826F-163E99F8F7F8}: [DhcpNameServer] 212.27.40.240 212.27.40.241
Tcpip\..\Interfaces\{D5FE43C6-CC6E-496E-840C-873953089297}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=MAAU&src=IE-SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=MAAU&src=IE-SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=MAAU&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=MAAU&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ASUT
SearchScopes: HKU\S-1-5-21-3276604738-3126462401-3648601437-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3276604738-3126462401-3648601437-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3276604738-3126462401-3648601437-1001 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL =
SearchScopes: HKU\S-1-5-21-3276604738-3126462401-3648601437-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2016-03-18] (Microsoft Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-08-14] (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-22] (Microsoft Corp.)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2011-01-12] (Google Inc.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg64.dll [2011-01-12] (Google Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL [2016-03-18] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2016-03-18] (Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2016-03-18] (Microsoft Corporation)
BHO-x32: PDF Architect Helper -> {3A2D5EBA-F86D-4BD3-A177-019765996711} -> C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll [2013-04-08] (pdfforge GmbH)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-01-25] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-08-14] (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-22] (Microsoft Corp.)
BHO-x32: Windows Live Messenger Companion Helper -> {9FDDE16B-836F-4806-AB1F-1455CBEFF289} -> C:\Program Files (x86)\Windows Live\Companion\companioncore.dll [2010-09-23] (Microsoft Corporation)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2011-01-12] (Google Inc.)
BHO-x32: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll [2011-01-12] (Google Inc.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2016-03-18] (Microsoft Corporation)
BHO-x32: Google Dictionary Compression sdch -> {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} -> C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll [2011-01-12] (Google Inc.)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-03-18] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-25] (Oracle Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2011-01-12] (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2011-01-12] (Google Inc.)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-02-03] (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2016-02-01] (Skype Technologies)
FireFox:
========
FF ProfilePath: C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1
FF Homepage: about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_21_0_0_197.dll [2016-03-24] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [Pas de fichier]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_197.dll [2016-03-24] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-10-08] ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2014-04-15] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2014-04-15] (Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-01-25] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-01-25] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Pas de fichier]
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-11-03] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2013-07-12] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-09-23] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2013-04-14] (VideoLAN)
FF Plugin-x32: ZEON/PDF,version=2.0 -> C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll [2010-01-23] (Zeon Corporation)
FF Plugin HKU\S-1-5-21-3276604738-3126462401-3648601437-1001: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [2013-12-22] ()
FF Extension: TrashMail.com - C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\extensions\spam@trashmail.net.xpi [2015-05-30]
FF Extension: DownThemAll! - C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2015-12-10]
FF Extension: Saved Password Editor - C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\extensions\savedpasswordeditor@daniel.dawson.xpi [2016-01-29]
FF Extension: Flashblock - C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\extensions\{3d7eb24f-2740-49df-8937-200b1cc08f8a} [2016-03-29]
FF Extension: checkCompatibility - C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\qwouxebg.default\Extensions\check-compatibility@dactyl.googlecode.com.xpi [2015-04-25]
FF Extension: Xmarks - C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\qwouxebg.default\Extensions\foxmarks@kei.com [2016-03-20]
FF Extension: OutWit Hub - C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\qwouxebg.default\Extensions\outwit-hub-1110@outwit.com [2014-11-02] [non signé]
FF Extension: OutWit Kernel - C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\qwouxebg.default\Extensions\outwit-kernel-1110@outwit.com [2014-11-02] [non signé]
FF Extension: Saved Password Editor - C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\qwouxebg.default\Extensions\savedpasswordeditor@daniel.dawson.xpi [2016-01-29]
FF Extension: TrashMail.com - C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\qwouxebg.default\Extensions\spam@trashmail.net.xpi [2015-05-30]
FF Extension: Microsoft .NET Framework Assistant - C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\qwouxebg.default\Extensions\{20a82645-c095-46ed-80e3-08825760534b} [2013-03-12] [non signé]
FF Extension: Flashblock - C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\qwouxebg.default\Extensions\{3d7eb24f-2740-49df-8937-200b1cc08f8a} [2016-01-08]
FF Extension: Adblock Plus - C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\qwouxebg.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-02-24]
FF Extension: DownThemAll! - C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\qwouxebg.default\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2015-12-10]
FF Extension: Right Inbox - C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\qwouxebg.default\Extensions\{eb692b9a-0dce-45fa-b0e6-765d83e386bd}.xpi [2012-12-10] [non signé]
FF Extension: checkCompatibility - C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\Extensions\check-compatibility@dactyl.googlecode.com.xpi [2015-04-25]
FF Extension: Xmarks - C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\Extensions\foxmarks@kei.com [2016-03-29]
FF Extension: OutWit Hub - C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\Extensions\outwit-hub-1110@outwit.com [2016-03-29] [non signé]
FF Extension: OutWit Kernel - C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\Extensions\outwit-kernel-1110@outwit.com [2016-03-29] [non signé]
FF Extension: Microsoft .NET Framework Assistant - C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\Extensions\{20a82645-c095-46ed-80e3-08825760534b} [2016-03-29] [non signé]
FF Extension: Adblock Plus - C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-02-24]
FF Extension: Right Inbox - C:\Users\Sophie\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\Extensions\{eb692b9a-0dce-45fa-b0e6-765d83e386bd}.xpi [2012-12-10] [non signé]
FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi [2016-03-19] [non signé]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-12-10]
FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt [2013-06-02] [non signé]
Chrome:
=======
CHR HomePage: Default -> search.mpc.am
CHR StartupUrls: Default -> "search.mpc.am"
CHR Profile: C:\Users\Sophie\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Sophie\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-06]
CHR Extension: (Google Docs) - C:\Users\Sophie\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-06]
CHR Extension: (Google Drive) - C:\Users\Sophie\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-06]
CHR Extension: (YouTube) - C:\Users\Sophie\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-27]
CHR Extension: (Google Search) - C:\Users\Sophie\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-06]
CHR Extension: (Google Sheets) - C:\Users\Sophie\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-06]
CHR Extension: (Google Docs Offline) - C:\Users\Sophie\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-19]
CHR Extension: (AdBlock) - C:\Users\Sophie\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-03-19]
CHR Extension: (Web Scraper) - C:\Users\Sophie\AppData\Local\Google\Chrome\User Data\Default\Extensions\jnhgnonknehpejjnehehllkliplmbmhn [2015-01-15]
CHR Extension: (Scraper) - C:\Users\Sophie\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbigbapnjcgaffohmbkdlecaccepngjd [2015-04-21]
CHR Extension: (Boomerang for Gmail) - C:\Users\Sophie\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdanidgdpmkimeiiojknlnekblgmpdll [2016-03-11]
CHR Extension: (OpenList) - C:\Users\Sophie\AppData\Local\Google\Chrome\User Data\Default\Extensions\nkpjembldfckmdchbdiclhfedcngbgnl [2014-09-30]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Sophie\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-23]
CHR Extension: (Data Scraper) - C:\Users\Sophie\AppData\Local\Google\Chrome\User Data\Default\Extensions\nndknepjnldbdbepjfgmncbggmopgden [2016-03-27]
CHR Extension: (Gmail) - C:\Users\Sophie\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-30]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-08-14]
==================== Services (Avec liste blanche) ========================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [68096 2013-05-11] () [Fichier non signé]
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600 2015-08-14] (AVAST Software)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4047768 2015-08-14] (Avast Software)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2828016 2016-02-09] (Microsoft Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [136048 2015-10-14] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [136048 2015-10-14] (Dropbox, Inc.)
R2 FoxitCloudUpdateService; C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\Foxit Cloud\FCUpdateService.exe [244392 2015-09-09] (Foxit Software Inc.)
R2 HPSLPSVC; C:\Users\Sophie\AppData\Local\Temp\7zS1F82\hpslpsvc64.dll [1039360 2013-07-19] (Hewlett-Packard Co.) [Fichier non signé]
R2 LMS; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [262144 2009-10-01] (Intel Corporation) [Fichier non signé]
R2 MPCProtectService; D:\Program Files (x86)\MPC Cleaner\MPCProtectService.exe [350688 2016-03-29] (DotC United Inc)
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [60416 2009-06-22] (Hewlett-Packard) [Fichier non signé]
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc.)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5611280 2015-08-07] (TeamViewer GmbH)
R2 UNS; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2314240 2009-10-01] (Intel Corporation) [Fichier non signé]
R2 UsbClientService; C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe [248704 2012-09-18] () [Fichier non signé]
S3 wampapache; c:\wamp\bin\apache\apache2.4.4\bin\httpd.exe [24576 2013-06-23] (Apache Software Foundation) [Fichier non signé]
S3 wampmysqld; c:\wamp\bin\mysql\mysql5.6.12\bin\mysqld.exe [12867584 2013-06-23] () [Fichier non signé]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
S3 Adpal32p; pas de ImagePath
===================== Pilotes (Avec liste blanche) ==========================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-08-14] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [90968 2015-08-14] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-08-14] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-08-14] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1059656 2015-11-07] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [449992 2015-11-07] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [150672 2015-08-14] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [274808 2015-08-14] (AVAST Software)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-08-21] (Disc Soft Ltd)
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
R1 MPCKpt; C:\Windows\System32\DRIVERS\MPCKpt.sys [60136 2016-03-29] (DotC United Inc)
R0 ngvss; C:\Windows\System32\Drivers\ngvss.sys [115152 2015-08-14] (AVAST Software)
R2 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc.)
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1800832 2010-09-07] (Sonix Technology Co., Ltd.)
R2 TurboB; C:\Windows\System32\DRIVERS\TurboB.sys [13784 2009-08-06] ()
S3 usbrndis6; C:\Windows\System32\DRIVERS\usb80236.sys [19968 2013-02-12] (Microsoft Corporation)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [273824 2015-08-14] (Avast Software)
S3 WPRO_41_2001; C:\Windows\System32\drivers\WPRO_41_2001.sys [35344 2014-10-20] ()
S3 WsAudio_Device(1); C:\Windows\System32\drivers\VirtualAudio1.sys [31080 2014-11-26] (Wondershare)
S3 WsAudio_Device(2); C:\Windows\System32\drivers\VirtualAudio2.sys [31080 2014-11-26] (Wondershare)
S3 WsAudio_Device(3); C:\Windows\System32\drivers\VirtualAudio3.sys [31080 2014-11-26] (Wondershare)
S3 WsAudio_Device(4); C:\Windows\System32\drivers\VirtualAudio4.sys [31080 2014-11-26] (Wondershare)
S3 WsAudio_Device(5); C:\Windows\System32\drivers\VirtualAudio5.sys [31080 2014-11-26] (Wondershare)
S3 catchme; \??\C:\Users\Sophie\AppData\Local\Temp\catchme.sys [X]
S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [X]
==================== NetSvcs (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
==================== Un mois - Créés - fichiers et dossiers ========
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2016-04-03 09:25 - 2016-04-03 09:26 - 00037211 _____ C:\Users\Sophie\Desktop\FRST.txt
2016-04-03 09:25 - 2016-04-03 09:25 - 02374144 _____ (Farbar) C:\Users\Sophie\Desktop\FRST64.exe
2016-04-03 09:25 - 2016-04-03 09:25 - 00000000 ____D C:\FRST
2016-04-03 08:41 - 2016-04-03 08:41 - 00000162 _____ C:\Users\Sophie\Desktop\Cnet.url
2016-04-03 08:38 - 2016-04-03 08:38 - 00000726 _____ C:\Users\Public\Desktop\MPC Cleaner.lnk
2016-04-03 08:38 - 2016-04-03 08:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC
2016-04-03 08:34 - 2016-04-03 08:34 - 00005432 _____ C:\Users\Sophie\Desktop\ZHPCleaner.txt
2016-04-03 08:14 - 2016-04-03 08:14 - 00000836 _____ C:\Users\Sophie\Desktop\ZHPCleaner.lnk
2016-04-03 08:13 - 2016-04-03 08:13 - 02108928 _____ C:\Users\Sophie\Desktop\ZHPCleaner.exe
2016-04-02 18:22 - 2016-04-02 18:22 - 00019956 _____ C:\Users\Sophie\Desktop\AdwCleaner[C1].txt
2016-04-02 18:22 - 2016-04-02 18:22 - 00000000 ____D C:\Users\Sophie\AppData\Roaming\MCorp
2016-04-02 18:09 - 2016-04-02 18:15 - 00000000 ____D C:\AdwCleaner
2016-04-02 18:08 - 2016-04-02 18:08 - 03102720 _____ C:\Users\Sophie\Desktop\adwcleaner_5.108.exe
2016-04-02 10:03 - 2016-04-02 09:38 - 00001218 _____ C:\Users\Sophie\Desktop\ZHPFixQuarantine.txt
2016-04-02 08:51 - 2016-04-02 08:53 - 00000000 ____D C:\Program Files (x86)\ZHPFix
2016-04-02 08:51 - 2016-04-02 08:51 - 00001855 _____ C:\Users\Public\Desktop\ZHPFix.lnk
2016-04-02 08:51 - 2016-04-02 08:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZHP
2016-04-02 08:50 - 2016-04-02 08:50 - 03521617 _____ (Nicolas Coolman ) C:\Users\Sophie\Desktop\ZHPFix.exe
2016-03-30 21:37 - 2016-04-03 08:33 - 00000000 ____D C:\Users\Sophie\AppData\Local\app
2016-03-30 21:00 - 2016-03-30 21:03 - 00187830 _____ C:\Users\Sophie\Desktop\ZHPDiag.txt
2016-03-30 20:45 - 2016-04-03 08:34 - 00000000 ____D C:\Users\Sophie\AppData\Roaming\ZHP
2016-03-30 20:45 - 2016-03-30 20:45 - 00000826 _____ C:\Users\Sophie\Desktop\ZHPDiag.lnk
2016-03-30 20:43 - 2016-03-30 20:43 - 02168832 _____ C:\Users\Sophie\Desktop\ZHPDiag3.exe
2016-03-29 22:34 - 2016-03-29 22:33 - 00060136 _____ (DotC United Inc) C:\Windows\system32\Drivers\MPCKpt.sys
2016-03-29 22:33 - 2016-03-29 22:33 - 00000000 ____D C:\Users\Sophie\AppData\Local\csdi_monetize_120160329
2016-03-29 22:20 - 2016-03-29 22:20 - 00000875 _____ C:\Windows\SysWOW64\${LOGFILE}
2016-03-29 22:18 - 2016-03-29 22:19 - 00000000 ____D C:\Users\Sophie\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108
2016-03-29 22:18 - 2016-03-29 22:18 - 00000000 ____D C:\Users\Public\Documents\dmp
2016-03-28 20:52 - 2016-03-28 20:52 - 00000000 ____D C:\Users\Public\Documents\SmartSwitch
2016-03-28 20:46 - 2016-03-28 20:46 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01007.Wdf
2016-03-28 20:44 - 2016-03-28 20:44 - 00000000 ____D C:\Program Files\SAMSUNG
2016-03-28 20:43 - 2016-03-28 20:43 - 00000000 ____D C:\ProgramData\Samsung
2016-03-28 20:33 - 2016-03-29 21:20 - 00000000 ____D C:\Users\Sophie\AppData\Roaming\Samsung
2016-03-28 20:33 - 2016-03-28 20:33 - 00000000 ____D C:\Users\Sophie\Documents\SelfMV
2016-03-28 20:33 - 2016-03-28 20:33 - 00000000 ____D C:\Users\Sophie\Documents\samsung
2016-03-28 20:33 - 2016-03-28 20:33 - 00000000 ____D C:\Users\Public\Documents\NativeFus_Log
2016-03-28 20:33 - 2014-05-07 17:42 - 00144664 _____ (MAPILab Ltd. & Add-in Express Ltd.) C:\Windows\SysWOW64\secman.dll
2016-03-19 14:01 - 2016-03-26 08:27 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-03-19 11:32 - 2016-03-19 11:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-03-16 08:02 - 2016-03-17 23:49 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2016-03-09 08:31 - 2016-02-12 20:52 - 03169792 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2016-03-09 08:31 - 2016-02-12 20:52 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2016-03-09 08:31 - 2016-02-12 20:52 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2016-03-09 08:31 - 2016-02-12 20:44 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2016-03-09 08:31 - 2016-02-12 20:39 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2016-03-09 08:31 - 2016-02-12 20:22 - 02610688 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2016-03-09 08:31 - 2016-02-12 20:19 - 00709120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2016-03-09 08:31 - 2016-02-12 20:18 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2016-03-09 08:31 - 2016-02-12 20:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2016-03-09 08:31 - 2016-02-12 20:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2016-03-09 08:31 - 2016-02-12 20:18 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2016-03-09 08:31 - 2016-02-12 20:18 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2016-03-09 08:31 - 2016-02-12 20:06 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2016-03-09 08:31 - 2016-02-12 20:05 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2016-03-09 08:31 - 2016-02-12 20:05 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2016-03-09 08:31 - 2016-02-12 20:05 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2016-03-09 08:31 - 2016-02-11 20:56 - 05572032 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-03-09 08:31 - 2016-02-11 20:56 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-03-09 08:31 - 2016-02-11 20:56 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2016-03-09 08:31 - 2016-02-11 20:52 - 01733592 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-03-09 08:31 - 2016-02-11 20:49 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2016-03-09 08:31 - 2016-02-11 20:49 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2016-03-09 08:31 - 2016-02-11 20:49 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2016-03-09 08:31 - 2016-02-11 20:49 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2016-03-09 08:31 - 2016-02-11 20:49 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2016-03-09 08:31 - 2016-02-11 20:49 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2016-03-09 08:31 - 2016-02-11 20:49 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2016-03-09 08:31 - 2016-02-11 20:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2016-03-09 08:31 - 2016-02-11 20:48 - 01214464 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2016-03-09 08:31 - 2016-02-11 20:48 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2016-03-09 08:31 - 2016-02-11 20:48 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2016-03-09 08:31 - 2016-02-11 20:48 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2016-03-09 08:31 - 2016-02-11 20:48 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2016-03-09 08:31 - 2016-02-11 20:47 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2016-03-09 08:31 - 2016-02-11 20:45 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2016-03-09 08:31 - 2016-02-11 20:45 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2016-03-09 08:31 - 2016-02-11 20:45 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2016-03-09 08:31 - 2016-02-11 20:45 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2016-03-09 08:31 - 2016-02-11 20:44 - 03994560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2016-03-09 08:31 - 2016-02-11 20:44 - 03938240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2016-03-09 08:31 - 2016-02-11 20:44 - 01461248 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-03-09 08:31 - 2016-02-11 20:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2016-03-09 08:31 - 2016-02-11 20:44 - 00730112 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2016-03-09 08:31 - 2016-02-11 20:44 - 00422400 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2016-03-09 08:31 - 2016-02-11 20:42 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2016-03-09 08:31 - 2016-02-11 20:42 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2016-03-09 08:31 - 2016-02-11 20:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 01314328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00880128 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:38 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2016-03-09 08:31 - 2016-02-11 20:38 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2016-03-09 08:31 - 2016-02-11 20:38 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2016-03-09 08:31 - 2016-02-11 20:38 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2016-03-09 08:31 - 2016-02-11 20:38 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2016-03-09 08:31 - 2016-02-11 20:38 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2016-03-09 08:31 - 2016-02-11 20:38 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2016-03-09 08:31 - 2016-02-11 20:37 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2016-03-09 08:31 - 2016-02-11 20:37 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2016-03-09 08:31 - 2016-02-11 20:37 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2016-03-09 08:31 - 2016-02-11 20:35 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2016-03-09 08:31 - 2016-02-11 20:35 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2016-03-09 08:31 - 2016-02-11 20:35 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2016-03-09 08:31 - 2016-02-11 20:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2016-03-09 08:31 - 2016-02-11 20:33 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2016-03-09 08:31 - 2016-02-11 20:31 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00642560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 20:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 19:48 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2016-03-09 08:31 - 2016-02-11 19:43 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2016-03-09 08:31 - 2016-02-11 19:41 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2016-03-09 08:31 - 2016-02-11 19:40 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2016-03-09 08:31 - 2016-02-11 19:34 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-03-09 08:31 - 2016-02-11 19:34 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-03-09 08:31 - 2016-02-11 19:33 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-03-09 08:31 - 2016-02-11 19:32 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2016-03-09 08:31 - 2016-02-11 19:32 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2016-03-09 08:31 - 2016-02-11 19:32 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2016-03-09 08:31 - 2016-02-11 19:32 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2016-03-09 08:31 - 2016-02-11 19:32 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2016-03-09 08:31 - 2016-02-11 19:32 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2016-03-09 08:31 - 2016-02-11 19:31 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2016-03-09 08:31 - 2016-02-11 19:30 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 19:30 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 19:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-03-09 08:31 - 2016-02-11 19:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2016-03-09 08:31 - 2016-02-09 11:57 - 14634496 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2016-03-09 08:31 - 2016-02-09 11:55 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll
2016-03-09 08:31 - 2016-02-09 08:53 - 00387792 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-03-09 08:31 - 2016-02-09 08:10 - 00341200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2016-03-09 08:31 - 2016-02-08 23:05 - 20352512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-03-09 08:31 - 2016-02-08 22:51 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2016-03-09 08:31 - 2016-02-08 22:39 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-03-09 08:31 - 2016-02-08 22:39 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2016-03-09 08:31 - 2016-02-08 22:38 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2016-03-09 08:31 - 2016-02-08 22:38 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2016-03-09 08:31 - 2016-02-08 22:37 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2016-03-09 08:31 - 2016-02-08 22:34 - 02280448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-03-09 08:31 - 2016-02-08 22:32 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2016-03-09 08:31 - 2016-02-08 22:31 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2016-03-09 08:31 - 2016-02-08 22:30 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2016-03-09 08:31 - 2016-02-08 22:28 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2016-03-09 08:31 - 2016-02-08 22:28 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2016-03-09 08:31 - 2016-02-08 22:28 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2016-03-09 08:31 - 2016-02-08 22:20 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2016-03-09 08:31 - 2016-02-08 22:16 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2016-03-09 08:31 - 2016-02-08 22:15 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2016-03-09 08:31 - 2016-02-08 22:13 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2016-03-09 08:31 - 2016-02-08 22:12 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2016-03-09 08:31 - 2016-02-08 22:11 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2016-03-09 08:31 - 2016-02-08 22:10 - 04611072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-03-09 08:31 - 2016-02-08 22:10 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2016-03-09 08:31 - 2016-02-08 22:05 - 25816576 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-03-09 08:31 - 2016-02-08 22:03 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2016-03-09 08:31 - 2016-02-08 22:02 - 13012480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-03-09 08:31 - 2016-02-08 22:02 - 00687104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-03-09 08:31 - 2016-02-08 22:01 - 02050560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2016-03-09 08:31 - 2016-02-08 22:01 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2016-03-09 08:31 - 2016-02-08 21:43 - 02121216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-03-09 08:31 - 2016-02-08 21:39 - 01311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-03-09 08:31 - 2016-02-08 21:38 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-03-09 08:31 - 2016-02-08 20:41 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2016-03-09 08:31 - 2016-02-08 20:41 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2016-03-09 08:31 - 2016-02-08 20:27 - 02887680 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-03-09 08:31 - 2016-02-08 20:27 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2016-03-09 08:31 - 2016-02-08 20:26 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-03-09 08:31 - 2016-02-08 20:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2016-03-09 08:31 - 2016-02-08 20:26 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2016-03-09 08:31 - 2016-02-08 20:26 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2016-03-09 08:31 - 2016-02-08 20:19 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2016-03-09 08:31 - 2016-02-08 20:18 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2016-03-09 08:31 - 2016-02-08 20:16 - 06052352 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-03-09 08:31 - 2016-02-08 20:15 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2016-03-09 08:31 - 2016-02-08 20:14 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2016-03-09 08:31 - 2016-02-08 20:14 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2016-03-09 08:31 - 2016-02-08 20:13 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-03-09 08:31 - 2016-02-08 20:13 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2016-03-09 08:31 - 2016-02-08 20:06 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2016-03-09 08:31 - 2016-02-08 20:03 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2016-03-09 08:31 - 2016-02-08 19:55 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-03-09 08:31 - 2016-02-08 19:54 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2016-03-09 08:31 - 2016-02-08 19:52 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2016-03-09 08:31 - 2016-02-08 19:51 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-03-09 08:31 - 2016-02-08 19:49 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-03-09 08:31 - 2016-02-08 19:47 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2016-03-09 08:31 - 2016-02-08 19:37 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2016-03-09 08:31 - 2016-02-08 19:35 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-03-09 08:31 - 2016-02-08 19:34 - 00798720 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-03-09 08:31 - 2016-02-08 19:33 - 14613504 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-03-09 08:31 - 2016-02-08 19:33 - 02123264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-03-09 08:31 - 2016-02-08 19:33 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2016-03-09 08:31 - 2016-02-08 19:19 - 02597376 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-03-09 08:31 - 2016-02-08 19:07 - 01546752 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-03-09 08:31 - 2016-02-08 18:55 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-03-09 08:31 - 2016-02-05 20:54 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2016-03-09 08:31 - 2016-02-05 20:54 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2016-03-09 08:31 - 2016-02-05 20:53 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2016-03-09 08:31 - 2016-02-05 20:53 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2016-03-09 08:31 - 2016-02-05 20:50 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2016-03-09 08:31 - 2016-02-05 20:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2016-03-09 08:31 - 2016-02-05 20:42 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2016-03-09 08:31 - 2016-02-05 19:48 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2016-03-09 08:31 - 2016-02-05 19:43 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2016-03-09 08:31 - 2016-02-05 19:43 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2016-03-09 08:31 - 2016-02-05 03:19 - 00381440 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
2016-03-09 08:31 - 2016-02-04 20:41 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll
2016-03-09 08:31 - 2016-02-04 19:52 - 03211264 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-03-09 08:31 - 2016-02-03 20:58 - 00862208 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2016-03-09 08:31 - 2016-02-03 20:52 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2016-03-09 08:31 - 2016-02-03 20:49 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2016-03-09 08:31 - 2016-02-03 20:43 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll
2016-03-09 08:31 - 2016-02-03 20:07 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2016-03-09 08:30 - 2016-02-09 11:57 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2016-03-09 08:30 - 2016-02-09 11:56 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2016-03-09 08:30 - 2016-02-09 11:56 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2016-03-09 08:30 - 2016-02-09 11:54 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2016-03-09 08:30 - 2016-02-09 11:51 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2016-03-09 08:30 - 2016-02-09 11:51 - 11411456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2016-03-09 08:30 - 2016-02-09 11:13 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2016-03-09 08:30 - 2016-02-09 11:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2016-03-09 08:30 - 2016-02-09 11:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
==================== Un mois - Modifiés - fichiers et dossiers ========
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2016-04-03 09:16 - 2015-10-14 07:11 - 00001186 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2016-04-03 08:45 - 2009-07-14 06:45 - 00018736 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-04-03 08:45 - 2009-07-14 06:45 - 00018736 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-04-03 08:40 - 2013-04-06 17:05 - 00000000 ____D C:\Users\Sophie\AppData\Roaming\Skype
2016-04-03 08:40 - 2013-03-16 17:45 - 00000000 ____D C:\Users\Sophie\AppData\Roaming\Dropbox
2016-04-03 08:38 - 2015-10-14 07:11 - 00001182 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
2016-04-03 08:38 - 2013-03-12 07:47 - 00000000 ____D C:\Program Files\P4G
2016-04-03 08:38 - 2011-01-12 17:50 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-04-03 08:36 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-04-03 08:33 - 2015-07-18 08:53 - 00001002 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-04-03 08:32 - 2011-01-12 17:50 - 00001070 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-04-03 08:07 - 2013-08-04 22:48 - 00003944 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{E05978DD-94B4-406F-B86B-75C0B75BF5BA}
2016-04-03 08:07 - 2013-03-16 10:00 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2016-04-02 18:23 - 2009-08-04 12:03 - 00759080 _____ C:\Windows\system32\perfh00C.dat
2016-04-02 18:23 - 2009-08-04 12:03 - 00153912 _____ C:\Windows\system32\perfc00C.dat
2016-04-02 18:23 - 2009-07-14 07:13 - 01699432 _____ C:\Windows\system32\PerfStringBackup.INI
2016-04-02 18:23 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf
2016-04-02 18:17 - 2013-03-12 07:47 - 00001586 _____ C:\Windows\system32\ServiceFilter.ini
2016-04-02 18:17 - 2013-03-11 22:03 - 00001435 _____ C:\Users\Sophie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-04-02 08:55 - 2015-05-02 08:02 - 00000000 ____D C:\Program Files (x86)\Light
2016-03-31 06:40 - 2011-01-12 17:50 - 00002195 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-03-29 22:42 - 2013-03-11 23:26 - 00001879 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-03-28 23:02 - 2015-06-26 08:01 - 00000000 ____D C:\Users\Sophie\AppData\Local\ElevatedDiagnostics
2016-03-28 23:00 - 2015-01-05 08:12 - 00002212 _____ C:\Users\Sophie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2016-03-28 23:00 - 2015-01-05 08:12 - 00000000 ___RD C:\Users\Sophie\OneDrive
2016-03-28 20:51 - 2011-01-12 17:48 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-03-28 08:25 - 2013-04-20 08:18 - 00003424 _____ C:\Windows\System32\Tasks\Apple Diagnostics
2016-03-26 08:27 - 2013-03-11 23:26 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-03-24 08:33 - 2015-07-18 08:53 - 00003940 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-03-24 08:33 - 2013-03-16 11:43 - 00797376 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-03-24 08:33 - 2013-03-16 11:43 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-03-19 11:32 - 2015-10-14 07:11 - 00000000 ____D C:\Program Files (x86)\Dropbox
2016-03-18 08:01 - 2013-03-11 23:26 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-03-18 07:59 - 2013-03-11 22:11 - 00000000 ____D C:\Program Files\Microsoft Office 15
2016-03-11 22:45 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2016-03-11 08:02 - 2014-10-07 07:10 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-03-11 08:02 - 2013-04-06 17:04 - 00000000 ____D C:\ProgramData\Skype
2016-03-11 08:00 - 2009-07-14 06:45 - 00449064 _____ C:\Windows\system32\FNTCACHE.DAT
2016-03-10 07:41 - 2013-07-23 06:57 - 00000000 ____D C:\Windows\system32\MRT
2016-03-10 07:33 - 2013-04-01 10:58 - 143659408 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
==================== Fichiers à la racine de certains dossiers =======
2015-11-18 09:58 - 2015-11-18 12:30 - 0000104 _____ () C:\Users\Sophie\AppData\Roaming\Camdata.ini
2015-11-18 09:58 - 2015-11-18 12:30 - 0000408 _____ () C:\Users\Sophie\AppData\Roaming\CamLayout.ini
2015-11-18 09:58 - 2015-11-18 12:30 - 0000408 _____ () C:\Users\Sophie\AppData\Roaming\CamShapes.ini
2015-11-18 09:58 - 2015-11-18 12:30 - 0004535 _____ () C:\Users\Sophie\AppData\Roaming\CamStudio.cfg
2014-05-08 22:21 - 2015-07-25 09:52 - 0000113 _____ () C:\Users\Sophie\AppData\Roaming\D2Info0
2014-11-27 10:36 - 2014-12-02 10:30 - 0000121 _____ () C:\Users\Sophie\AppData\Roaming\D2Info1
2014-05-08 22:21 - 2015-07-25 10:23 - 0000008 _____ () C:\Users\Sophie\AppData\Roaming\DofusAppId0_1
2014-05-08 22:40 - 2015-05-15 07:22 - 0000008 _____ () C:\Users\Sophie\AppData\Roaming\DofusAppId0_2
2014-05-09 19:36 - 2015-05-15 07:22 - 0000008 _____ () C:\Users\Sophie\AppData\Roaming\DofusAppId0_3
2014-05-11 07:07 - 2015-05-03 20:34 - 0000008 _____ () C:\Users\Sophie\AppData\Roaming\DofusAppId0_4
2014-07-06 07:27 - 2015-05-03 20:34 - 0000008 _____ () C:\Users\Sophie\AppData\Roaming\DofusAppId0_5
2014-07-27 07:15 - 2015-05-02 10:11 - 0000008 _____ () C:\Users\Sophie\AppData\Roaming\DofusAppId0_6
2015-03-28 15:30 - 2015-03-28 20:13 - 0000008 _____ () C:\Users\Sophie\AppData\Roaming\DofusAppId0_7
2014-11-27 10:36 - 2014-12-02 11:38 - 0000008 _____ () C:\Users\Sophie\AppData\Roaming\DofusAppId1_1
2015-11-18 09:35 - 2015-11-18 10:08 - 0000096 _____ () C:\Users\Sophie\AppData\Roaming\version2.xml
2013-04-25 14:18 - 2013-04-25 14:18 - 0007605 _____ () C:\Users\Sophie\AppData\Local\Resmon.ResmonCfg
2015-09-09 08:01 - 2015-09-09 08:01 - 0000057 _____ () C:\ProgramData\Ament.ini
2011-01-12 18:02 - 2010-07-07 02:10 - 0131472 _____ () C:\ProgramData\FullRemove.exe
2011-01-12 17:48 - 2011-01-12 17:49 - 0000105 _____ () C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log
2011-01-12 17:48 - 2011-01-12 17:48 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
Certains fichiers dans TEMP:
====================
C:\Users\Invité\AppData\Local\Temp\install_flashplayer13x32ax_chra_awa_aih.exe
C:\Users\Sophie\AppData\Local\Temp\1003.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\102B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\103.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1056.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1076.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\10B0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\10D7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\10F3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1113.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\114D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1174.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\119F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\11B0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\11EA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1221.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\123C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\124D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1296.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\12CE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\12E9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\12FA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1333.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\136B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1386.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1397.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\13C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\13D0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1408.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1434.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1442.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\147D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\14B4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\14D1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\14DF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\151A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\155.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1551.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\157D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\158C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\15C6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\15EE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\160.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\161A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1629.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1673.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\16AA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\16B7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\16C6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\172F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1747.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1764.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1772.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\17DC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\17F4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1811.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\181F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1879.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1891.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\18AE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\18BC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1925.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\193E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\195A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1968.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\19D2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\19EA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\19F7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1A0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1A05.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1A7F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1A87.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1AA4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1AB2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1B2B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1B34.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1B41.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1B4F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1BC8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1BD1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1BDE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1BEC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1C6E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1C75.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1C7B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1CA8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1D12.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1D1A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1D27.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1DAF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1DB7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1DC4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1DE1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1E5B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1E64.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1E71.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1E7E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1E9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1EF8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1F11.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1F1E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1F2B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1F95.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1FAE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1FC8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1FCA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\1FD.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\201.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2042.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\204B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2067.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2074.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\20E8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\20EF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2104.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2121.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\218C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\21A1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\21A4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\21CE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2238.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\224E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2250.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\226B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\22D5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\22DE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\22EB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2317.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2372.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2388.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\238A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\23B4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\241F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2434.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2437.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2451.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\24BC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\24D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\24E4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\24F1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\24FE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2568.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\257E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2581.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\25AA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2615.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\262D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\263A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2647.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\26B2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\26CA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\26E7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\26F4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\275F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2774.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2777.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2791.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\280B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2811.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2823.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\282E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\286.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\28A8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\28BE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\28C0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\28DB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2955.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\295D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\296A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2978.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\29E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\29F2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\29FA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2A07.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2A15.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2A8F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2AA4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2AA7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2AC1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2B3B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2B51.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2B54.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2B5E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2BD8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2BEE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2C00.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2C0B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2C85.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2C9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2C9B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2C9D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2CA8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2D22.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2D28.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2D4A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2D54.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2DBF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2DD5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2DF6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2E01.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2E5C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2E72.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2E93.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2EAE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2F09.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2F0F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2F40.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2F5A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2F9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2FA6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2FAC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2FDD.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\2FF7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3058.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3062.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\308A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3094.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\30F5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\30FF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3127.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3141.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\31A2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\31AB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\31D3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\31DE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\323.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3248.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\324E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3270.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\327B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\32E5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\32EB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3318.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\331D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3382.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3388.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\33B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\33BA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\33C4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\341F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3435.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3457.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3471.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\34BC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\34D2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\34F4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\351E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3569.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\357F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\35A0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\35CA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3606.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\362B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\364D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\366.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3667.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\36B3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\36C8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\36EA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3714.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3750.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3775.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3797.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\37C0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\37ED.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3812.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3834.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\385D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3899.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\38AF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\38D1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\38FA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3936.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\394C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\396E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3997.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\39D3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\39F8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3A1A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3A44.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3A6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3A80.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3A95.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3AB7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3AF1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3B2C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3B42.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3B64.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3B9D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3BC9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3BEF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3C10.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3C3A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3C66.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3C8C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3CBD.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3CE7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3D0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3D13.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3D38.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3D4A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3D84.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3DA0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3DE5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3DE7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3E21.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3E4D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3E8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3E91.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3E94.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3EBE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3EFA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3F21.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3F2E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3F6A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3F97.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3FCE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\3FDB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4017.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4043.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\407B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4088.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\40C4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\40E0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4118.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4125.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\413.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4161.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\418D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\41B5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\41D1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\41FE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\422A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4252.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\426E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\42AA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\42C7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\42FE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\431B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4347.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4373.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\439B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\43B8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\43E4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4410.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\443.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4438.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4455.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4491.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\44BD.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\44E5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4502.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\452E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\456A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4591.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\459F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\45CB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4616.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\462E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\464B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4654.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4668.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\46B3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\46D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\46DB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\46F8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4714.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4760.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4778.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4795.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\47AC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\47B1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\480C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4825.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4832.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\485.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\485E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4869.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\48B9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\48C2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\48CF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\48FB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4906.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4956.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\495F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\496C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\49A8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\49C2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\49FC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4A03.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4A18.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4A45.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4A4F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4A99.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4AA0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4AB5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4AF1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4AFC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4B0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4B36.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4B4C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4B62.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4B9E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4BA8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4BD3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4BE9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4BFF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4C4A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4C55.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4C7F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4C86.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4CAC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4CF2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4CF7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4D1C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4D23.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4D49.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4D9F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4DA4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4DB9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4DD0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4DE6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4E3C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4E50.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4E56.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4E7D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4E92.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4EE8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4EED.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4EF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4F03.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4F29.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4F3F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4F8A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4F95.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4FAF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4FB7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\4FEB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5041.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\504C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5056.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5063.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5098.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\50DE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\50E9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5103.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\511F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5145.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5186.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\518B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\519.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\51A0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\51CC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\51F1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5228.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5233.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\523D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5269.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\528E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\52D0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\52D5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\52E9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\531.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5316.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\532B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\536D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5372.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5386.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\53B3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\53D8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\540A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\541E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5433.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\545F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5475.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\54B7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\54BB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\54DF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\54FC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5521.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5563.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5568.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\558C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5599.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\55BE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\55C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\56.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5600.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5605.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5629.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5646.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\565B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\569D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\56B1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\56C6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\56E3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5708.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\573A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\575E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5773.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\578F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\57A5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\57E7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\57FB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5810.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\583C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5842.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5884.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5898.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\58BC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\58D9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\58EF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5911.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5935.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5969.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5976.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\599B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\59BE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\59C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\59E2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5A13.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5A15.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5A48.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5A6B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5A7F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5AB2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5AC0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5AE5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5B17.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5B1C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5B4F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5B5D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5B82.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5BB4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5BC8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5BFA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5BFC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5C1F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5C51.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5C6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5C65.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5C99.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5CA6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5CCB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5CE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5CFE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5D02.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5D46.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5D53.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5D68.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5DAA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5DAF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5DE3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5DFF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5E15.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5E47.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5E5B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5E8F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5E9C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5EB2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5EF4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5EF8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5F2C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5F39.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5F5F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5F9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5FA1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5FA5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5FC9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\5FE6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\600B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6042.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\604D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6076.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6083.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6099.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\60DB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\60DF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6113.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6120.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6145.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\617C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6187.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\61BF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\61CD.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\61F2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6219.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6224.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\625D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\626A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\628F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\62C1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\62C6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\62FA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6316.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\633B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\635E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6372.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\639.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\63A6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\63C3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\63D8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\640B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\640F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6453.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6460.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6475.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\64AC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\64B7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\64FF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\650C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6522.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6554.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\655A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\65A9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\65AC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\65BF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\65F6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6601.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\663.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6646.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6649.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\666C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\669E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\66A2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\66B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\66E3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\66F6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6718.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\673F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\675A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6790.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\67A2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\67B5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\67DC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6807.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\683D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\684F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6852.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6889.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\68A4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\68EC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\68F9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\68FF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6931.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6936.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\696.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6986.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6998.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\699C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\69DE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\69E2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6A35.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6A39.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6A42.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6A7B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6A7F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6AD2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6AD6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6ADF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6B18.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6B1C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6B7F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6B82.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6B8C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6BB9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6BC4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6C1C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6C39.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6C3F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6C61.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6C66.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6CC9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6CDC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6CE5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6D03.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6D0E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6D66.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6D88.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6D92.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6DAB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6DB0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6E12.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6E2F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6E35.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6E4D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6E58.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6E6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6EAF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6ECC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6EE1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6EF9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6F04.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6F5C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6F78.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6F7E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6F96.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\6FB1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7008.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7015.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\702B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7043.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\704E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\708.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\70A5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\70C2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\70C8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\70EF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\70F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\70FA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7142.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\715F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7175.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\718C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7197.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\71DF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\71FC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7212.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7234.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7239.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\728C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\72A9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\72AF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\72D1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\72D6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7339.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7346.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\735B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\737E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7383.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\73E5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\73F2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\73F8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\742B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\742F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\743.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7492.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\749F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\74A5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\74C8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\74EB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\752C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\753E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7551.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7565.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7588.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\75C9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\75DB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\75EE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7602.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7635.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7676.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7688.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\768B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\76AE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\76D2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7722.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7728.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\773.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7735.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\775B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\776F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\77BF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\77D2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\77D5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\77F8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\781C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\786C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\787E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7882.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\78A4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\78B9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7909.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\791B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\791F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7951.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7956.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\79A6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\79B8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\79CB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\79FE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7A02.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7A62.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7A65.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7A78.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7A9F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7AAA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7AC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7B02.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7B05.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7B0F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7B47.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7B4C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7B5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7BAC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7BAE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7BB2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7BF4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7BF8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7C49.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7C4B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7C4F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7C91.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7CA5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7CE8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7CF5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7CFB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7D3D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7D52.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7D92.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7D95.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7DA8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7DDA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7DEF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7E0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7E3F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7E42.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7E45.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7E77.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7E8C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7EDC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7EDF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7EF2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7F24.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7F38.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7F7C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7F89.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7F8F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\7FC1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8014.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8026.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8028.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\802C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\806E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\80C0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\80C3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\80C9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\80D5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\811A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\816D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\816F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8175.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8191.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\81B7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\820.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\820A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\821C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8222.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\822E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8254.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\82BF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\82C8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\82CB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\82E5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\82F1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\835C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8365.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8378.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8382.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\839E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\83F9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8412.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8415.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\842F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\843B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\849.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\84B5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\84BF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\84C1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\84DB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\84E7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\852.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8552.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\855E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\857B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8588.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\85A4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\85EF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\85FB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8618.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8641.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8644.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\869C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\86A8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\86B5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\86ED.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8700.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8739.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8745.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8761.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\878A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\87CC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\87E2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\87E5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\87FE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8837.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8879.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8882.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\888E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\889B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\88C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\88E3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8925.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\892B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\892F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8948.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8980.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\89C8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\89CC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\89D2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\89F5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8A2D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8A69.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8A6F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8A75.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8A92.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8ADA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8B06.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8B0C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8B12.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8B2F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8B77.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8BA3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8BAF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8BB9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8BD.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8BDB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8C23.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8C40.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8C5C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8C75.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8C88.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8CC0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8CDD.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8CF9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8D25.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8D31.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8D5D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8D89.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8DA5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8DD1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8DDE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8DFA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8E26.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8E52.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8E6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8E6E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8E7B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8EA7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8EC3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8EFE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8F18.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8F1B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8F53.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8F60.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8FAB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8FC4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8FC8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\8FF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\90.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9000.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\900D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9058.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9061.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9065.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\909D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\90AA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\90F5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\90FE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9102.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9147.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\914A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\91A1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\91AB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\91BE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\91F4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\91F6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\923E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9248.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\925B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\929.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9291.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9293.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\92DB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\92E5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9307.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9330.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\933D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9388.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9391.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\93B4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\93DD.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\93EA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9425.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\942E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9461.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\947A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9496.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\94CB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\94D1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\94FE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9517.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9533.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\956E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9578.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\959C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\95C3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\95D0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\960B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9625.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9647.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9660.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\967D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\969.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\96A8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\96D1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\96E4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\96FD.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\972A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9755.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\977E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9791.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\97AA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\97C7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9802.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\981B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\982E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9847.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9873.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\989F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\98B8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\98DA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\98F4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9910.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\993.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\994B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9955.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9977.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\99A0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\99AD.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\99C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\99F8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9A01.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9A14.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9A3D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9A5A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9A95.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9A9E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9AC1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9ADA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9AF7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9B3B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9B41.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9B5E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9B77.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9BA3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9BDE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9BE8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9C0B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9C24.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9C50.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9C85.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9C8B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9CA8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9CC1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9CED.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9D28.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9D32.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9D54.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9D5E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9D6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9D9A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9DC5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9DCF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9E01.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9E0A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9E46.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9E6C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9E72.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9EAD.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9EB7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9EF3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9F0F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9F18.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9F4A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9F64.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9F90.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9FBB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9FC5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\9FF7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A Year In The Merde__10924_i1503430485_il840560.exe
C:\Users\Sophie\AppData\Local\Temp\A010.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A02D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A058.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A06.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A071.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A0A4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A0BD.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A0CA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A105.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A10E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A141.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A169.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A176.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A1A2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A1BB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A1DE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A213.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A226.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A23F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A268.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A27B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A2B0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A2C3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A2EB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A314.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A327.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A34D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A36F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A398.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A3B1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A3D4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A3FA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A40.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A41C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A435.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A44E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A471.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A4A7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A4B9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A4E2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A4FB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A50E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A544.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A565.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A58.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A58E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A598.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A5AB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A5E1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A602.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A63B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A644.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A648.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A68D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A69F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A6D8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A6E1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A6F4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A73A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A74C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A775.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A77E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A791.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A7D7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A7F9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A821.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A82B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A82E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A83.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A874.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A896.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A8BE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A8C8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A8DB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A920.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A942.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A965.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A96B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A978.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A9BD.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\A9DF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AA08.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AA12.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AA25.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AA3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AA6A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AA8C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AAA5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AAC2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AACE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AB07.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AB48.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AB52.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AB6E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AB7A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\ABA4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\ABE5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\ABFE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AC0B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AC17.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AC51.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AC82.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AC9B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\ACB4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\ACEE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AD1F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AD35.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AD48.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AD61.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AD8B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\ADCC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\ADD.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\ADE1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\ADE5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\ADFE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AE37.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AE69.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AE6F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AE82.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AEAB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AED4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AF0C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AF15.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AF2E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AF48.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AF71.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AFC2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AFC8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AFCB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\AFE5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B00E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B04.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B065.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B06E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B078.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B091.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B0BB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B111.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B11B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B125.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B12E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B158.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B1AE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B1C8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B1D1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B1DB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B204.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B25B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B26E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B274.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B278.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B2E0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B2F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B2F8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B311.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B315.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B31B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B37D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B395.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B3AE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B3B8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B3C1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B429.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B432.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B45B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B464.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B46E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B4B7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B4DF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B4F8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B50.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B501.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B50B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B563.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B58B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B5A4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B5AE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B5B8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B600.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B638.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B641.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B64B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B664.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B6AD.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B6D5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B6DE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B6E8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B711.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B74A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B781.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B78B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B795.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B7A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B7AE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B7F7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B82E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B832.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B838.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B85A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B8A3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B8D5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B8DB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B8DE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B8F7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B950.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B97B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B981.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B987.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B9A4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\B9ED.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BA0F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BA1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BA18.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BA24.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BA41.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BA8A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BAC1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BAC5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BACB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BAEE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BB27.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BB5E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BB68.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BB71.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BB8B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BBD3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BC05.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BC0B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BC0E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BC28.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BC80.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BCA8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BCB1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BCBB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BCD4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BD2D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BD54.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BD58.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BD5E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BD71.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BDC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BDCA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BDF1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BDF5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BDFB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BE1E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BE76.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BE8E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BE92.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BEA8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BEBB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BED.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BF23.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BF2B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BF2F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BF45.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BF58.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BFC0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BFCC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BFD8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\BFE2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C004.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C06D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C079.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C07F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C085.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C0A1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C10A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C116.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C122.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C12B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C13E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C17.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C1B6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C1BF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C1C2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C1D8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C1EB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C253.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C25C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C25F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C284.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C288.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C2F0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C2FC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C308.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C321.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C325.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C39D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C3A5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C3A9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C3BE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C3C2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C43A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C446.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C452.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C45F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C46B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C4D7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C4E3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C4F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C4FC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C4FE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C518.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C574.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C58F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C59B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C5A9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C5B5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C620.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C63C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C646.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C648.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C652.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C6CD.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C6D5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C6E9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C6F2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C6FE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C77A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C782.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C78F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C79.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C795.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C7AB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C817.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C82F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C83C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C842.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C848.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C8A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C8B4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C8CC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C8D9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C8DF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C8E5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C960.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C969.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C976.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C98B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\C991.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CA0D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CA15.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CA22.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CA28.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CA2E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CAAA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CABF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CAC2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CACB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CAD5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CB4F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CB56.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CB6C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CB78.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CB82.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CBF3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CC09.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CC15.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CC1B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CC1F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CC3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CCA0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CCB6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CCBC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CCC2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CCC8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CD53.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CD5C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CD5F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CD65.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CD68.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CDFC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CDFF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CE05.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CE09.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CE11.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CEA2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CEA6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CEA8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CEAC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CEAE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CF43.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CF49.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CF4B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CF55.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CF5E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CFB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CFE6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CFE8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CFEF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\CFF2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D00B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D08C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D08F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D092.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D095.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D0A8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D12C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D12F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D132.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D139.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D145.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D1D8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D1DC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D1DF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D1E6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D1F2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D25.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D27.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D276.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D279.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D283.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D28B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D28F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D316.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D320.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D322.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D328.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D32C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D3BF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D3C3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D3CC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D3D5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D3D8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D45C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D469.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D46F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D475.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D481.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D4F9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D51C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D51E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D522.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D525.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D5A6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D5B3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D5BB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D5BF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D5C8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D643.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D65F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D668.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D66B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D675.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D6FC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D6FF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D70.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D705.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D712.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D728.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D799.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D79C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D7A2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D7BF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D7D4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D839.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D83F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D846.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D85C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D862.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D8D6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D8E3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D8EC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D8F9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D90E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D980.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D983.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D989.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D9A5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\D9BB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DA20.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DA2D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DA35.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DA42.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DA67.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DA7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DAD9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DADC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DAE2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DAEF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\dateinj01.dll
C:\Users\Sophie\AppData\Local\Temp\DB04.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DB76.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DB79.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DB8C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DB8E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DBB1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DC13.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DC16.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DC2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DC29.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DC2B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DC4E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DCB3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DCC0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DCD5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DCD8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DCEB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DD5F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DD6C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DD72.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DD94.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DD98.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DE0C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DE0F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DE19.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DE3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DE35.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DE41.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DEA9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DEB6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DEBC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DEDE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DEE1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DF56.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DF59.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DF63.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DF7B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\DF8E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\download[1].exe
C:\Users\Sophie\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpdacynj.dll
C:\Users\Sophie\AppData\Local\Temp\E002.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E006.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E00F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E027.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E02B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E09F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E0A3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E0BC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E0C8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E0D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E140.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E14C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E165.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E170.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E1EC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E1F8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E202.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E21D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E289.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E295.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E2AF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E2BA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E332.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E336.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E34C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E366.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E3CF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E3D3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E3E9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E413.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E44.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E47C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E47F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E495.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E4B0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E519.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E52C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E542.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E54D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E5C6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E5D9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E5DF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E5F9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E663.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E685.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E68B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E6A6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E6F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E700.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E722.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E738.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E743.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E79D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E7CF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E7E5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E7F0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E80.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E849.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E87C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E882.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E88D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E8F6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E919.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E92E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E939.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E9A2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E9B6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E9CB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\E9D6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EA3F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EA62.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EA68.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EA73.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EAEC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EAFF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EB10.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EB15.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EB9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EB99.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EBAC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EBB2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EBBD.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EC45.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EC49.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EC5E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EC69.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\ECE2.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\ECE6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\ECFB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\ED06.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\ED83.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\ED8F.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EDA8.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EDB3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EE1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EE20.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EE2C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EE50.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EE64.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EEC9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EECC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EEED.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EF11.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EF66.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EF79.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EF9A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\EFBD.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F012.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F016.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F046.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F099.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F0B3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F0BF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F0C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F0F3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F145.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F150.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F16C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F190.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F1D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F1ED.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F202.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F209.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F23C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F28A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F2AE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F2B5.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F2D9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F337.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F352.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F36A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F386.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F3D4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F427.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F433.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F43D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F480.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F4C0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F4F9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F502.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F52D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F56.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F56D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F5A6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F5BE.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F5CA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F60A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F653.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F66B.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F676.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F6B6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F6FF.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F713.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F717.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F753.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F79C.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F7B4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F7C0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F7E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F800.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F849.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F85D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F861.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F89D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F8E6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F8FA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F91D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F93A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F983.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F9A7.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F9BA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\F9E6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FA20.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FA44.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FA57.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FA83.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FA9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FACC.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FAF0.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FAF4.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FB30.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FB79.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FB8D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FBA1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FBCD.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FC26.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FC3A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FC3E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FC6A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FCA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FCB3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FCDB.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FCE6.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FD26.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FD50.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FD87.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FD93.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FDC3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FDFD.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FE30.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FE34.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FE70.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FEA9.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FECD.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FED1.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FF0D.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FF46.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FF6A.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FF7E.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FFAA.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\FFF3.tmp.exe
C:\Users\Sophie\AppData\Local\Temp\Foxit Reader Updater.exe
C:\Users\Sophie\AppData\Local\Temp\Foxit Updater.exe
C:\Users\Sophie\AppData\Local\Temp\fsdA930.exe
C:\Users\Sophie\AppData\Local\Temp\fsdFB8E.exe
C:\Users\Sophie\AppData\Local\Temp\ICReinstall_setup.exe
C:\Users\Sophie\AppData\Local\Temp\ICReinstall_TeamSpeak3-Client-win32-3.0.10.exe
C:\Users\Sophie\AppData\Local\Temp\jre-8u31-windows-au.exe
C:\Users\Sophie\AppData\Local\Temp\libeay32.dll
C:\Users\Sophie\AppData\Local\Temp\MSN6F57.exe
C:\Users\Sophie\AppData\Local\Temp\msvcr120.dll
C:\Users\Sophie\AppData\Local\Temp\OfficeSetup.exe
C:\Users\Sophie\AppData\Local\Temp\openerp-server-setup-6.1-1.exe
C:\Users\Sophie\AppData\Local\Temp\ScreenpressoUpd.exe
C:\Users\Sophie\AppData\Local\Temp\Setup.x86.fr-FR_ProPlusRetail_P7YT7-3XNFF-RBKQR-JRCPV-PWC9Q_act_1_.exe
C:\Users\Sophie\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Sophie\AppData\Local\Temp\sqlite3.dll
C:\Users\Sophie\AppData\Local\Temp\svchost.exe
C:\Users\Sophie\AppData\Local\Temp\Wunderlist-Setup2.2.1.22.exe
C:\Users\Sophie\AppData\Local\Temp\xmlUpdater.exe
==================== Bamital & volsnap =================
(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)
C:\Windows\system32\winlogon.exe => Le fichier est signé numériquement
C:\Windows\system32\wininit.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\wininit.exe => Le fichier est signé numériquement
C:\Windows\explorer.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\explorer.exe => Le fichier est signé numériquement
C:\Windows\system32\svchost.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\svchost.exe => Le fichier est signé numériquement
C:\Windows\system32\services.exe => Le fichier est signé numériquement
C:\Windows\system32\User32.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\User32.dll => Le fichier est signé numériquement
C:\Windows\system32\userinit.exe => Le fichier est signé numériquement
C:\Windows\SysWOW64\userinit.exe => Le fichier est signé numériquement
C:\Windows\system32\rpcss.dll => Le fichier est signé numériquement
C:\Windows\system32\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\SysWOW64\dnsapi.dll => Le fichier est signé numériquement
C:\Windows\system32\Drivers\volsnap.sys => Le fichier est signé numériquement
LastRegBack: 2016-03-31 19:56
==================== Fin de FRST.txt ============================