cjoint

Publicité


Publicité

Format du document : application/octet-stream

Prévisualisation

[code]
HitmanPro 3.7.15.281
www.hitmanpro.com

Computer name . . . . : LFSULTRA-WIDEN
Windows . . . . . . . : 10.0.0.14393.X64/2
User name . . . . . . : LFSULTRA-WIDEN\Jean-Marie
UAC . . . . . . . . . : Enabled
License . . . . . . . : Paid (502 days left)

Scan date . . . . . . : 2017-03-14 10:18:10
Scan mode . . . . . . : Normal
Scan duration . . . . : 38m 20s
Disk access mode . . : Direct disk access (SRB)
Cloud . . . . . . . . : Internet
Reboot . . . . . . . : Yes

Threats . . . . . . . : 42
Traces . . . . . . . : 298

Objects scanned . . . : 2 982 227
Files scanned . . . . : 73 956
Remnants scanned . . : 1 301 564 files / 1 606 707 keys

Miniport ____________________________________________________________________

Primary
DriverObject . . . : FFFFA8821A1D8E60
DriverName . . . . : \Driver\storahci
DriverPath . . . . : \SystemRoot\System32\drivers\storahci.sys
StartIo . . . . . : 0000000000000000 +0
IRP_MJ_SCSI . . . : FFFFF8020E105410 \??\C:\WINDOWS\system32\drivers\hmpalert.sys+152592
Solution
DriverObject . . . : FFFFA8821A1D8E60
DriverName . . . . : \Driver\storahci
DriverPath . . . . : \SystemRoot\System32\drivers\storahci.sys
StartIo . . . . . : 0000000000000000 +0
IRP_MJ_SCSI . . . : FFFFF80208193840 \SystemRoot\System32\drivers\storport.sys+14400

Malware _____________________________________________________________________

C:\Program Files (x86)\Bevupy Client\local64spl.dll -> PendingDelete
Size . . . . . . . : 309 248 bytes
Age . . . . . . . : 0.9 days (2017-03-13 12:40:31)
Entropy . . . . . : 6.2
SHA-256 . . . . . : 2040AE57B32678CF25EBA1F9FACDB986743079AC1E34D7A32B4C5C0792DD3273
> Kaspersky . . . . : Trojan.Win64.Eroyee.od
Fuzzy . . . . . . : 106.0

C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\WDSrvWrapper[1].exe -> Quarantined
Size . . . . . . . : 47 959 bytes
Age . . . . . . . : 0.8 days (2017-03-13 14:12:51)
Entropy . . . . . : 6.9
SHA-256 . . . . . : 0EDC38BFD729B31806CAA1B3D7085DDAC2A516B5F0B135CA2134ED600B4CC8CD
> Kaspersky . . . . : not-a-virus:AdWare.Win32.Vopak.dpwd
Fuzzy . . . . . . : 108.0
Forensic Cluster
-19.6s C:\Windows\Temp\AB71.tmp
-19.5s C:\Windows\Temp\ABB9.tmp
-8.8s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\lst[1].htm
-3.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\WebShield[1].exe
-3.1s C:\Windows\Temp\EBBF.tmp
-0.3s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\brastub6ab_ftptn_inst[1].exe
0.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\WDSrvWrapper[1].exe
0.3s C:\ProgramData\Comodo\Cis\Quarantine\data\{19B59887-84A7-4D51-A1A4-8A54834881B5}

C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\xKYTZdXZ[1].exe -> Quarantined
Size . . . . . . . : 183 975 bytes
Age . . . . . . . : 0.9 days (2017-03-13 11:35:01)
Entropy . . . . . : 7.9
SHA-256 . . . . . : 9A510C0B8E395AE18149502E6AB536C5423CDEE08337CE74407E54DA116EE99F
> Kaspersky . . . . : Trojan-Ransom.NSIS.MyxaH.nvp
Fuzzy . . . . . . : 116.0
Forensic Cluster
-2.5s C:\Users\Jean-Marie\AppData\Local\Temp\nsi6EA0.tmp
0.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\xKYTZdXZ[1].exe

C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\1pXZLnU7[1].exe -> Deleted
Size . . . . . . . : 230 400 bytes
Age . . . . . . . : 0.8 days (2017-03-13 14:12:16)
Entropy . . . . . : 6.5
SHA-256 . . . . . : D9CF1C7250AB9C68A818F051DD487C4BF29BEC2B8AEBFC47EC0A4023AA0EF5B7
> Bitdefender . . . : Gen:Variant.Zusy.217410
> Kaspersky . . . . : not-a-virus:AdWare.Win32.ConvertAd.bxsv
Fuzzy . . . . . . : 108.0

C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\brastub6ab_ftptn_inst[1].exe -> Quarantined
Size . . . . . . . : 301 568 bytes
Age . . . . . . . : 0.8 days (2017-03-13 14:12:51)
Entropy . . . . . : 6.5
SHA-256 . . . . . : 934A7793C4907B1DDF9FB6362B24531770A1F3CF486737CCB624D524B6964942
Version . . . . . : 1.0.2.7
> Kaspersky . . . . : HEUR:Trojan.Win32.Generic
Fuzzy . . . . . . : 105.0
Forensic Cluster
-19.2s C:\Windows\Temp\AB71.tmp
-19.2s C:\Windows\Temp\ABB9.tmp
-8.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\lst[1].htm
-3.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\WebShield[1].exe
-2.8s C:\Windows\Temp\EBBF.tmp
0.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\brastub6ab_ftptn_inst[1].exe
0.3s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\WDSrvWrapper[1].exe
0.6s C:\ProgramData\Comodo\Cis\Quarantine\data\{19B59887-84A7-4D51-A1A4-8A54834881B5}

C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\GreenStar[1].exe -> Quarantined
Size . . . . . . . : 146 432 bytes
Age . . . . . . . : 0.8 days (2017-03-13 15:05:53)
Entropy . . . . . : 5.3
SHA-256 . . . . . : D375EED15C8F1E74938410D3548EE888DB5A2303F4AE1A3D1DBD319ACBC57F0E
> Bitdefender . . . : Trojan.GenericKD.4175644
Fuzzy . . . . . . : 108.0
Forensic Cluster
-12.3s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_TB_T
-10.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\8BSMD0D1.cookie
-10.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\C0F5GRA7.cookie
-7.3s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\lst[2].htm
-7.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\index[1].htm
0.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\GreenStar[1].exe
6.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\R5O1B6PH.cookie
7.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\index_src[1].htm
11.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\style[1].css
19.6s C:\ProgramData\Comodo\Cis\Quarantine\data\{8FDF03FF-C436-4DF1-A3D3-97F7C72CF364}
21.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{3834A662-07F6-11E7-BCAB-4C72B9F956A2}.dat
35.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\display[1].htm
41.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\get[1].json
54.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\0D77WV4O\static.coupontime00.coupontime[1].xml
57.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\timestamp[1].htm
67.3s C:\Windows\Microsoft.NET\Framework64\v2.0.50727\CONFIG\security.config.cch
67.3s C:\Windows\Microsoft.NET\Framework64\v2.0.50727\CONFIG\security.config.cch.new
67.5s C:\Users\Jean-Marie\AppData\Roaming\Microsoft\CLR Security Config\v2.0.50727.312\64bit\security.config.cch
67.5s C:\Users\Jean-Marie\AppData\Roaming\Microsoft\CLR Security Config\v2.0.50727.312\64bit\security.config.cch.new
67.7s C:\Windows\Microsoft.NET\Framework64\v2.0.50727\CONFIG\enterprisesec.config.cch
67.7s C:\Windows\Microsoft.NET\Framework64\v2.0.50727\CONFIG\enterprisesec.config.cch.new
69.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\s[5].gif
69.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\s[6].gif
69.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\E0K6GPCD.js
69.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\XG342D5S.js
73.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\s[7].gif
74.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\getseal[2].js
75.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\pxufs01[1].swf
87.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\r[3].js
88.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!005\MicrosoftEdge\Cache\WJVW7K09\pxufs01[1].swf
89.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\sponsor[1].htm
89.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\fallback[1].png
92.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{627E90A0-07F6-11E7-BCAB-4C72B9F956A2}.dat
93.1s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_SH
114.3s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\l1[2].dat
115.1s C:\Users\Jean-Marie\AppData\Local\Temp\URL48C3.tmp
116.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\afu[1].htm
119.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\l1[3].dat
120.4s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_SH2
122.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\P5FD9SEN.cookie
125.2s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_SH_T
134.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\FW4SXL7B.js
134.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\NAOLB212.js
134.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\s[8].gif
134.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\s[9].gif
134.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\DDBFBKKS.js
134.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\s[1].gif
136.8s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_MAIN
137.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\s[1].gif
144.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\wca[1]
146.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\XED6O8DO.cookie
147.1s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0FBD5E5C05E4B7F31081B3146A7D6E5E_B0D56F246E5BF63E4AB64238088BF177
147.2s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0FBD5E5C05E4B7F31081B3146A7D6E5E_B0D56F246E5BF63E4AB64238088BF177
159.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{8A61CAC8-07F6-11E7-BCAB-4C72B9F956A2}.dat
166.5s C:\Users\Jean-Marie\AppData\Local\Temp\1184.tmp.exe
170.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\LDVACCWF.cookie
170.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\s[2].gif
172.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\click[1].htm
172.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\Rty[1].jpg
173.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\s[2].gif
175.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\ZDR2XME1\pwwysydh[1].xml
179.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\8UXOQZR1.cookie
180.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\index[2].htm
188.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\s[3].gif
189.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\index[1].htm
197.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\YJZLU5JU.cookie
197.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\ZITP5NHE.cookie
215.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\2[2].htm
244.8s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\4E20A5798DE1AC09E6055E9F1043D99E24910CAC
257.1s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\1F598FFB2F4380C0F286A8D06BC0883B4B02507A
257.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\redirection-act[1].htm
274.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\affs[4].js
280.1s C:\Users\Jean-Marie\AppData\Local\Temp\StructuredQuery.log
281.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\5ORZHXEU.cookie
302.8s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0CCA7F4B3366C6FAA13012C139D5D8C6_2D44573075208A3C591174EB8BF5F5BB
302.8s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B9BC83D408105DBA1B3E3814C9C8FB9F
302.9s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0CCA7F4B3366C6FAA13012C139D5D8C6_2D44573075208A3C591174EB8BF5F5BB
302.9s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B9BC83D408105DBA1B3E3814C9C8FB9F
304.1s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\thumbnails\5f82c9bd2086b0667116548ef4a052fa.png
304.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\font[1].css
305.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\sys_fra[1].css
305.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\footer_fra[1].css
305.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\header-emea_menu6[1].css
305.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\header_fra[1].css
305.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\jquery.simplemodal.responsive[1].js
305.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\index_fra[1].css
305.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\jquery-1.6.1.min[1].js
305.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\jquery.responsive.bp[1].js
306.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\jquery.lazyload[1].js
306.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\modernizr-2.7.1.min[1].js
306.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\lazyloading[1].js
306.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\header[1].js
306.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\font[1].css
306.3s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\menubarControl[1].js
306.3s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\jquery.responsive.bp[1].css
306.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\NewHomepage-HeaderPromotionBanner_20170220015717480[1].gif
306.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\icon_4[1].png
306.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\icon_1[1].png
306.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\icon_3[1].png
306.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\icon_2[1].png
306.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\logo[1].png
306.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\mobile_menu[1].png
307.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\460x270_pdvd_fra[1].jpg
307.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\460x270_pdr_fra[1].jpg
307.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\arrow_left[1].png
307.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\arrow_right[1].png
307.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\000[1].jpg
307.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\9426[1].js
308.9s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1E698CCB2C296D265AC1A253974E09FD_5ACDE65230A4C850E10D8A8B3874063D
308.9s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1E698CCB2C296D265AC1A253974E09FD_5ACDE65230A4C850E10D8A8B3874063D
311.9s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D57B3BFF6E0B79FBD8CB6482C7775D35
311.9s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D57B3BFF6E0B79FBD8CB6482C7775D35
312.7s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C07822D66105396A1B8E01486E66C5F3
312.7s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C07822D66105396A1B8E01486E66C5F3
313.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\f[2].txt
317.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\BG_TT[1].png
317.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\header_bk2[1].gif
320.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\MTP_ySUJH_bn48VBG8sNSnhCUOGz7vYGh680lGh-uXM[1].woff
320.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\DXI1ORHCpsQm3Vp6mXoaTXhCUOGz7vYGh680lGh-uXM[1].woff
320.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\cJZKeOuBrn4kERxqtaUH3T8E0i7KZn-EPnyo3HZu7kw[1].woff
320.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\k3k702ZOKiLJc3WVjuplzHhCUOGz7vYGh680lGh-uXM[1].woff
348.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Internet Explorer\DOMStore\FV5B4SKG\fr.cyberlink[1].xml
349.2s C:\ProgramData\Comodo\Cis\tempscrpt\C_cmd.exe_3FE0B2B21C5C09191D64021C2A886FEE97C4A847.bat
351.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\Search004[1].png
352.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\dropdown_bg[1].png
353.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\m_search[1].png
354.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\dropdown_bg[2].png
354.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\ga[1].js
354.8s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\design[1].css
356.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\KP2GLTQI.cookie
356.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\bat[1].js
357.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\uu_js[1].js
359.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\fbevents[1].js
362.7s C:\ProgramData\Comodo\Cis\tempscrpt\C_cmd.exe_52190756896D623862DDB1FDE5D8FC879E0DD6E0.bat
364.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\GHXXXOAC.cookie
366.3s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\NewHomepage-TopBanner_Director-Suite_5.0_20170215195823313[1].jpg
366.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\AJIIUKXK.cookie
366.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\6RXRNRSJ.cookie
366.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\NewHomepage-TopBanner_Director-Suite_5.0_20170215195823063[1].jpg
367.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\NewHomepage-TopBanner_Director-Suite_5.0_20170215195822751[1].jpg
369.8s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\follow_bg[1].png
370.3s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\B5C3Q62M.cookie
370.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\tr[1].gif
377.1s C:\ProgramData\Comodo\Cis\tempscrpt\C_cmd.exe_65C0A09870DA450F3B91C447664DE84254AF0C64.bat
377.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\9426[1].js
380.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\s[1].gif
380.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\u[1].gif
382.3s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\9426[2].js
387.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\NewHomepage-Spotlight_PowerDVD_16.0_20170307221103104[1].gif
387.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\NewHomepage-Spotlight_Director-Suite_5.0_20170221023904502[1].jpg
387.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\NewHomepage-FeaturedProducts_PowerDVD_16.0_20170308011650470[1].gif
389.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\favicon[1].ico
390.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\NewHomepage-FeaturedProducts_PowerDirector_15.0_20170208190853805[1].png
390.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\NewHomepage-FeaturedProducts_Director-Suite_5.0_20170208192344785[1].png
390.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\NewHomepage-FeaturedProducts_CyberLink-Media-Suite-Ultimate_13.0_20170307174223179[1].png
391.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\NewHomepage-PromotionEvent_ActionDirector_2.0_20170307011000300[1].jpg
391.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\NewHomepage-PromotionEvent_PowerDirector_15.0_20160906212929974[1].jpg
392.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\NewHomepage-PromotionEvent_PowerDirector_15.0_20161116014645529[1].jpg
393.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\NewHomepage-PromotionEvent_PowerDirector_13.0_20150727035133415[1].jpg
423.7s C:\ProgramData\Comodo\Cis\tempscrpt\C_cmd.exe_9DA9404D4F4EF47ABC1A60AA34259960F02891EC.bat
431.4s C:\ProgramData\Comodo\Cis\tempscrpt\C_cmd.exe_9A81A70C9D92147899FF9FC433F38EC909892292.bat
434.7s C:\ProgramData\Comodo\Cis\tempscrpt\C_cmd.exe_09A32F33B7068EB51AF42286F190E3D4F6D58F57.bat

C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\YQlm8UWS[1].exe -> Deleted
Size . . . . . . . : 364 544 bytes
Age . . . . . . . : 0.8 days (2017-03-13 14:10:02)
Entropy . . . . . : 6.6
SHA-256 . . . . . : B2A25A419E390524F98A751DC427229A72842FDC06FCADFA550F1DD18A8E4C41
> Bitdefender . . . : Gen:Variant.Zusy.222156
> Kaspersky . . . . : not-a-virus:HEUR:AdWare.Win32.Generic
Fuzzy . . . . . . : 108.0
Forensic Cluster
-12.7s C:\ProgramData\Comodo\Cis\Quarantine\data\{C65761EC-72D4-4564-8C26-8B2D2D335B23}
-8.9s C:\Users\Jean-Marie\AppData\Local\Temp\heu39T.nss
-8.9s C:\Program Files (x86)\ebd1e627-cdd3-4a26-9912-62c1befa5ddf1489410593\
-7.5s C:\Program Files (x86)\ebd1e627-cdd3-4a26-9912-62c1befa5ddf1489410593\Uninstall.exe
-7.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\am[1].htm
0.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\YQlm8UWS[1].exe

C:\Users\Jean-Marie\AppData\Local\Temp\076a09e567e148908cd068b2b435529f\Setup.exe -> Quarantined
Size . . . . . . . : 301 568 bytes
Age . . . . . . . : 0.8 days (2017-03-13 14:41:46)
Entropy . . . . . : 6.5
SHA-256 . . . . . : 934A7793C4907B1DDF9FB6362B24531770A1F3CF486737CCB624D524B6964942
Version . . . . . : 1.0.2.7
> Kaspersky . . . . : HEUR:Trojan.Win32.Generic
Fuzzy . . . . . . : 105.0
Forensic Cluster
-3.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\
-3.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\unins000.dat
-2.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\unins000.exe
-0.1s C:\Users\Jean-Marie\AppData\Local\Temp\076a09e567e148908cd068b2b435529f\
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\076a09e567e148908cd068b2b435529f\Setup.exe
0.1s C:\ProgramData\Comodo\Cis\Quarantine\data\{0605E189-CD08-47CE-990E-09E676FD0591}
0.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\install_left_image.bmp
0.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\isxdl.dll
2.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Chinese_pcp.ini
2.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Danish_pcp.ini
2.7s C:\ProgramData\Comodo\Cis\Quarantine\data\{9FA3C00E-0209-4E8D-8C58-72C16F629875}
2.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Dutch_pcp.ini
3.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\eng_pcp.ini
3.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\French_pcp.ini
3.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\German_pcp.ini
3.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Italian_pcp.ini
3.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Japanese_pcp.ini
3.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Norwegian_pcp.ini
3.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Portuguese_pcp.ini
3.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Spanish_pcp.ini
4.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Swedish_pcp.ini
4.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Finnish_pcp_fi.ini
4.5s C:\ProgramData\Comodo\Cis\Quarantine\data\{C13F3A27-8357-43F8-810C-17E1712AB38A}
4.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\portugese_pcp_pt.ini
4.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\russian_pcp_ru.ini
4.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\greek_pcp_el.ini
4.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\turkish_pcp_tr.ini
4.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\polish_pcp_pl.ini
4.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\korean_pcp_ko.ini
5.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\TraditionalCn_pcp_zh-tw.ini
5.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\FileList.pcp
5.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\RegList.pcp
5.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\xmllite.dll
5.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\TPS.ico
6.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Chinese_uninst.ini
6.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Danish_uninst.ini
6.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Dutch_uninst.ini
6.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\eng_uninst.ini
6.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Finnish_uninst_fi.ini
6.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\French_uninst.ini
6.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\German_uninst.ini
6.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\greek_uninst_el.ini
6.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Italian_uninst.ini
6.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Japanese_uninst.ini
6.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\korean_uninst_ko.ini
6.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Norwegian_uninst.ini
6.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\polish_uninst_pl.ini
6.8s C:\ProgramData\Comodo\Cis\Quarantine\data\{B7078964-E3D7-4437-B633-E924A8BD8119}
6.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\portugese_uninst_pt.ini
6.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Portuguese_uninst.ini
7.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\russian_uninst_ru.ini
7.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\spanish_uninst.ini
7.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\swedish_uninst.ini
7.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\traditionalcn_uninst_zh-tw.ini
7.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Turkish_uninst_tr.ini
7.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\PC Clean Plus\
7.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\PC Clean Plus\PC Clean Plus.lnk
7.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\PC Clean Plus\Register PC Clean Plus.lnk
7.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\PC Clean Plus\Désinstaller PC Clean Plus.lnk
7.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\unins000.msg

C:\Users\Jean-Marie\AppData\Local\Temp\3af454be676f41389bf7735539b36072\OneSystemCare.exe -> Deleted
Size . . . . . . . : 4 417 080 bytes
Age . . . . . . . : 0.8 days (2017-03-13 14:45:08)
Entropy . . . . . : 8.0
SHA-256 . . . . . : BA2AD0554878A326D4A59B114B1D6A13189F068818E6ED485E9A7AA3BD2BF8D1
Description
Version . . . . . : 4.4.0.3
Copyright
RSA Key Size . . . : 2048
Authenticode . . . : Valid
> Kaspersky . . . . : not-a-virus:Downloader.Win32.DoubleAgent.eqp
> HitmanPro . . . . : App/Generic-PC
Fuzzy . . . . . . : 101.0
Forensic Cluster
-46.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\SR24NUCL.cookie
-46.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\cc_check[1].js
-45.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\coupontime[1].js
-45.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\PF5ZAXW9.cookie
-45.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\get[1].js
-27.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\u[1].js
-27.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\tv-classic-noboot-fg[1].js
-26.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\index[1].htm
-25.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\s[1].js
-25.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\u[1].js
-25.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\jquery-1.11.3.min[1].js
-25.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\tr[1].js
-25.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\external_b_v2[1].js
-25.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\popdl[1].js
-25.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\bt[1].jpg
-25.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\x[1].jpg
-25.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\ablk[1].js
-25.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\dl.min[1].js
-24.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\pmjson[1].js
-24.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\footer[1].txt
-24.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\f[1].jpg
-20.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\Cache\L5ET2CBU\favicon[1].ico
-19.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\videoplayer_edge_poc_v2[1].json
-8.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\voicefr.m4a[1].dat
-0.0s C:\Users\Jean-Marie\AppData\Local\Temp\3af454be676f41389bf7735539b36072\
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\3af454be676f41389bf7735539b36072\OneSystemCare.exe
2.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\Cache\NB8ITU48\hdplayer_lo[1].ico
22.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\cc_check[2].js
25.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\storage[1].swf
25.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\r[1].js
25.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\u[2].js
27.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\get[1].js
28.5s C:\Users\Jean-Marie\AppData\Local\Temp\nszF48B.tmp\
28.5s C:\Users\Jean-Marie\AppData\Local\Temp\nszF48B.tmp\System.dll
29.3s C:\Users\Jean-Marie\AppData\Local\Temp\nszF48B.tmp\exdll.dll
33.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\MVTOVCLT.cookie
38.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\index[1].htm
38.4s C:\Users\Jean-Marie\AppData\Local\Temp\nszF48B.tmp\installer.dll
39.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\popdl[1].js
39.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\alert22[1].png
40.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\footer[1].txt
44.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\T3LFLKU2\www.greatapps11[1].xml
45.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\fbg[1].png
46.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\videoplayer_edge_poc_v2[2].json
50.6s C:\Users\Jean-Marie\AppData\Local\Temp\nszF48B.tmp\UserInfo.dll
51.4s C:\Users\Jean-Marie\AppData\Local\Temp\nszF48B.tmp\insth.dll

C:\Users\Jean-Marie\AppData\Local\Temp\3D26.tmp -> Quarantined
Size . . . . . . . : 10 118 442 bytes
Age . . . . . . . : 0.9 days (2017-03-13 12:35:56)
Entropy . . . . . : 7.6
SHA-256 . . . . . : 0E077EFEE48BDEF261380EC7126CC1CF75CA60B0F441F1B2902E74D15F926DD5
> Kaspersky . . . . : not-a-virus:HEUR:Downloader.Win32.Wajam.gen
Fuzzy . . . . . . : 115.0
Forensic Cluster
-47.2s C:\Users\Jean-Marie\AppData\Local\Temp\849D.tmp
-42.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\9G5SCJFJ.cookie
-38.3s C:\Users\Jean-Marie\AppData\Local\Temp\A79A.tmp
-33.6s C:\Users\Jean-Marie\AppData\Local\Temp\B9CB.tmp
-25.0s C:\Users\Jean-Marie\AppData\Local\Temp\DB9C.tmp
-7.7s C:\Users\Jean-Marie\AppData\Local\Temp\1F26.tmp.exe
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\3D26.tmp
1.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\2WVEGG9O.cookie

C:\Users\Jean-Marie\AppData\Local\Temp\549a198b33bb411a84e1785a6d3080e2\Setup__20877.exe -> Deleted
Size . . . . . . . : 737 792 bytes
Age . . . . . . . : 0.8 days (2017-03-13 14:48:48)
Entropy . . . . . : 7.9
SHA-256 . . . . . : CBD87F429FCD32FF2E3AD686EC189FC1C0419C4D4C9FDE30AC7F0BFFE88E1E75
> Bitdefender . . . : Application.Downloader.AKK
> Kaspersky . . . . : not-a-virus:HEUR:Downloader.Win32.Generic
Fuzzy . . . . . . : 116.0
Forensic Cluster
-6.9s C:\Users\Jean-Marie\AppData\Local\Temp\5f49ef14bd1e4a9bab0a1f57bd7ec502\
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\549a198b33bb411a84e1785a6d3080e2\
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\549a198b33bb411a84e1785a6d3080e2\Setup__20877.exe
0.1s C:\ProgramData\Comodo\Cis\Quarantine\data\{8E335691-8C86-4812-BCDC-5B83A151338E}
3.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\r[2].js

C:\Users\Jean-Marie\AppData\Local\Temp\9BCA.tmp -> Quarantined
Size . . . . . . . : 4 446 120 bytes
Age . . . . . . . : 0.9 days (2017-03-13 12:39:37)
Entropy . . . . . : 8.0
SHA-256 . . . . . : 5CBF201A2EE72DB8CB2BC46B1D6D4483F0AE9736AEB0491694D648A60CADC539
Description
Version . . . . . : 4.4.0.3
Copyright
RSA Key Size . . . : 2048
Authenticode . . . : Self-signed
> Kaspersky . . . . : not-a-virus:HEUR:RiskTool.Win32.Generic
Fuzzy . . . . . . : 115.0
Forensic Cluster
-104.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\
-104.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers.exe
-96.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\2496.tmp
-95.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy\LocalState\ContentManagementSDK\Creatives\243289\1489405081
-90.4s C:\Users\Jean-Marie\AppData\Local\Temp\nsf3AA4.tmp
-87.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\ffmpegsumo.dll
-86.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\icudtl.dat
-86.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\Nanazejenim[1].png
-86.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\BG01[1].png
-86.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\Litalatili[1].png
-86.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\Linilila[1].png
-86.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\Totavener[1].png
-85.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\Doroledol[1].png
-85.3s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\Jimomoromoj_logo[2].png
-85.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\FR[1].png
-84.8s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\Tefenece_logo_black[2].png
-84.3s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\Taderonadan_Y2[1].png
-84.3s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\Naninil[1].png
-83.8s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\clc[1].msi
-83.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\FF_logo_new[1].png
-83.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\nw.pak
-83.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\logo[2].png
-83.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\IE_logo_new[1].png
-82.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\logo[3].png
-82.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\CH_logo_new[1].png
-82.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\Yusuriyiru[1].png
-81.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\Yusuriyiru_BG[1].jpg
-81.8s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\Yaraheheg_11Jul16[1].png
-81.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\
-81.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\am.pak
-81.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ar.pak
-81.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\bg.pak
-81.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\bn.pak
-81.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ca.pak
-81.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\cs.pak
-81.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\da.pak
-81.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\de.pak
-81.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\el.pak
-81.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\en-GB.pak
-81.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\en-US.pak
-81.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\es-419.pak
-81.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\es.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\et.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\fa.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\fi.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\fil.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\fr.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\gu.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\hi.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\hr.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\hu.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\id.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\it.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\iw.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ja.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\kn.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ko.pak
-81.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\lt.pak
-81.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\lv.pak
-81.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ml.pak
-81.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\mr.pak
-81.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ms.pak
-81.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\Lolosobeken[1].jpg
-81.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\nl.pak
-81.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\no.pak
-81.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\pl.pak
-81.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\pt-BR.pak
-81.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\pt-PT.pak
-81.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ro.pak
-81.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ru.pak
-81.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\sk.pak
-81.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\sl.pak
-81.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\Lolosobeken_fs[2].png
-81.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\sr.pak
-81.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\sv.pak
-81.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\sw.pak
-81.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ta.pak
-81.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\te.pak
-81.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\th.pak
-81.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\tr.pak
-81.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\uk.pak
-81.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\vi.pak
-81.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\zh-CN.pak
-81.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\zh-TW.pak
-80.7s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\66B5903C22544E7D33160BECCC726D9C
-80.7s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\66B5903C22544E7D33160BECCC726D9C
-80.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\Lolosobeken_logo[2].png
-80.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\lolosobeken_mod[2].png
-80.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\lolosobeken_mod_logo[2].png
-80.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\IE_logo[1].png
-79.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\CH_logo[1].png
-79.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\FF_logo[1].png
-79.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\Wocemeta_1[1].png
-79.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\Bisli_M_Logo[1].png
-78.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\logo[4].png
-78.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\fusion_bg[3].png
-78.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\bg_v2_US[1].png
-77.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\tooltip[1].png
-77.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\logo[2].png
-77.3s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\Nininininon[1].png
-76.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\Mogemamameg[1].jpg
-75.8s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\BG[1].jpg
-75.8s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\BG_FS[2].jpg
-75.5s C:\Users\Jean-Marie\AppData\Local\Temp\74EA.tmp
-75.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\BG_FS_LONG[1].png
-75.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\BG_LONG[1].png
-74.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\BG_FS_TC[1].png
-74.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\BG_TC[2].png
-74.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\BG_TT_FS[2].png
-73.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\Bomonobinok_CI_rg[1].png
-63.3s C:\Users\Jean-Marie\AppData\Local\Temp\A467.tmp
-51.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\Uninstall.exe
-51.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\
-49.5s C:\ProgramData\Comodo\Cis\tempscrpt\C_cmd.exe_41BF0D5329D42E48B317E47E591C98D7988A124B.bat
-46.9s C:\Users\Jean-Marie\AppData\Local\Temp\E48E.tmp
-46.3s C:\Users\Jean-Marie\AppData\Local\Microsoft\Internet Explorer\Recovery\Last Active\{A07F8687-07E1-11E7-BCAB-4C72B9F956A2}.dat
-45.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Uninstall.lnk
-42.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-ISUQU.tmp\_isetup\
-42.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-ISUQU.tmp\_isetup\_setup64.tmp
-42.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-ISUQU.tmp\
-42.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-ISUQU.tmp\_isetup\_shfoldr.dll
-41.7s C:\Users\Jean-Marie\AppData\Local\Temp\is-ISUQU.tmp\itdownload.dll
-40.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\AppTrailers.lnk
-40.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\storage.json
-39.9s C:\Users\Jean-Marie\AppData\Local\Temp\is-ISUQU.tmp\installer.exe.config
-37.7s C:\Windows\Installer\SourceHash{63FABE20-831D-40D0-A1F8-3373B3C5CC3A}
-34.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\C7FC7A22-0830-488F-98F5-7CFA62086972[1].htm
-33.7s C:\Users\Jean-Marie\AppData\Local\Temp\nsi17F6.tmp
-29.5s C:\Users\Jean-Marie\AppData\Local\Temp\is-MPAE7.tmp\_isetup\
-29.5s C:\Users\Jean-Marie\AppData\Local\Temp\is-MPAE7.tmp\_isetup\_setup64.tmp
-29.5s C:\Users\Jean-Marie\AppData\Local\Temp\is-MPAE7.tmp\
-29.4s C:\Users\Jean-Marie\AppData\Local\Temp\is-MPAE7.tmp\_isetup\_shfoldr.dll
-29.3s C:\Users\Jean-Marie\AppData\Local\Temp\is-MPAE7.tmp\itdownload.dll
-26.9s C:\Users\Jean-Marie\AppData\Local\Temp\is-MPAE7.tmp\installer.exe.config
-26.8s C:\ProgramData\Comodo\Cis\Quarantine\data\{1B37A644-1476-4E76-80ED-C8C9FE822F4F}
-23.2s C:\ProgramData\Comodo\Cis\tempscrpt\C_cmd.exe_77D8DFED1604DF137FDCC70AB8977439728D30EA.bat
-14.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\G7FL6JEI.cookie
-13.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\L3M2W7OX.cookie
-10.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\NetUtils2016.sys
-10.7s C:\Windows\System32\drivers\NetUtils2016.sys.06595d04
-9.7s C:\Windows\System32\NetUtils2016.dll
-8.4s C:\Windows\System32\sstmp\
-3.0s C:\Program Files\dc052114c37ad4b0da86805370b748a8\
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\9BCA.tmp
0.0s C:\Program Files\dc052114c37ad4b0da86805370b748a8\2cb2ccc883184b30c94db7caedabef42
0.0s C:\Windows\System32\drivers\8df1bf629e6a39ef0a34133f460ff3ed.sys
0.4s C:\Program Files\dc052114c37ad4b0da86805370b748a8\63b25d5c033a4239a89eff506dde143b.exe
2.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\WBCDX4C7.cookie

C:\Users\Jean-Marie\AppData\Local\Temp\A79A.tmp -> Deleted
Size . . . . . . . : 1 769 984 bytes
Age . . . . . . . : 0.9 days (2017-03-13 12:35:18)
Entropy . . . . . : 1.8
SHA-256 . . . . . : C92B481EAFEEE43134E1BF4435C90BE8A976C02FFCA477FDF6CA9DBE57F18360
> Bitdefender . . . : Gen:Variant.Zusy.223121
> Kaspersky . . . . : not-a-virus:AdWare.Win32.ConvertAd.cnum
Fuzzy . . . . . . : 112.0
Forensic Cluster
-8.9s C:\Users\Jean-Marie\AppData\Local\Temp\849D.tmp
-3.8s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\9G5SCJFJ.cookie
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\A79A.tmp
4.6s C:\Users\Jean-Marie\AppData\Local\Temp\B9CB.tmp
13.3s C:\Users\Jean-Marie\AppData\Local\Temp\DB9C.tmp
30.6s C:\Users\Jean-Marie\AppData\Local\Temp\1F26.tmp.exe
38.3s C:\Users\Jean-Marie\AppData\Local\Temp\3D26.tmp
39.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\2WVEGG9O.cookie

C:\Users\Jean-Marie\AppData\Local\Temp\B9CB.tmp -> Deleted
Size . . . . . . . : 1 769 472 bytes
Age . . . . . . . : 0.9 days (2017-03-13 12:35:22)
Entropy . . . . . : 1.8
SHA-256 . . . . . : 4D10D86299E64A36889F5C1DB0F73B200FD14EAA93258AA21A90AE107CAC3D8D
> Bitdefender . . . : Gen:Variant.Zusy.223121
> Kaspersky . . . . : not-a-virus:AdWare.Win32.ConvertAd.cnuo
Fuzzy . . . . . . : 112.0
Forensic Cluster
-13.6s C:\Users\Jean-Marie\AppData\Local\Temp\849D.tmp
-8.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\9G5SCJFJ.cookie
-4.6s C:\Users\Jean-Marie\AppData\Local\Temp\A79A.tmp
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\B9CB.tmp
8.7s C:\Users\Jean-Marie\AppData\Local\Temp\DB9C.tmp
26.0s C:\Users\Jean-Marie\AppData\Local\Temp\1F26.tmp.exe
33.6s C:\Users\Jean-Marie\AppData\Local\Temp\3D26.tmp
35.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\2WVEGG9O.cookie

C:\Users\Jean-Marie\AppData\Local\Temp\ba1998de128f4f7ea832954d6ab9b863\Setup__20877.exe -> Deleted
Size . . . . . . . : 737 792 bytes
Age . . . . . . . : 0.8 days (2017-03-13 15:00:30)
Entropy . . . . . : 7.9
SHA-256 . . . . . : 68891DB28EFD3CA811D730DC1D0FFE250A0E72C17BFACC64122C1050DD2E042A
> Bitdefender . . . : Application.Downloader.AKK
> Kaspersky . . . . : not-a-virus:HEUR:Downloader.Win32.Generic
Fuzzy . . . . . . : 116.0
Forensic Cluster
-154.6s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileNav_GG.png
-154.2s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileNav_FF.png
-153.8s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileNav_OP.png
-153.4s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileNav_IE.png
-152.9s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileCluff_FR.txt
-152.5s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileCluff_EN.txt
-152.1s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileIcone.ico
-151.6s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileBGSocial.png
-151.2s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileBroom.png
-150.6s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileForum.png
-150.1s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileCheck.png
-149.7s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileRapport.png
-149.0s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileTransGui.jpg
-148.5s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFilelogo-texte.png
-148.1s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileClose.png
-147.6s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileDetected.png
-147.0s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileExit-40.png
-146.2s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileInfo.png
-145.5s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFilePercent.png
-144.9s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileQuestion.png
-144.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\cc_check[2].js
-144.5s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileSearch.png
-144.1s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFilePayPal.png
-143.7s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileFB.png
-143.4s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileGP.png
-143.0s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileQuar.png
-142.5s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileExit-40.bmp
-141.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\ZHPCleaner.exe
-141.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\css[1].css
-140.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\jquery.min[2].js
-140.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\jquery-ui.min[1].js
-139.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\MQU89XM7.cookie
-138.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\font-awesome[1].css
-138.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\bootstrap.min[1].css
-137.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\bootstrap.min[1].js
-135.5s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AF4EE75E3A4ABA658C0087EB9A0BB5B_AE5D366FD4C084FC03F41D468B6EDD57
-135.4s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AF4EE75E3A4ABA658C0087EB9A0BB5B_AE5D366FD4C084FC03F41D468B6EDD57
-135.2s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\74F831100DEB0B8799203064F3E38B68
-135.1s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\74F831100DEB0B8799203064F3E38B68
-129.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\zhpcleaner_version[1].txt
-129.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\T3LFLKU2\traffic.getmyads[1].xml
-128.7s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D530B267735F8FA434C0E244F20BC934
-128.7s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D530B267735F8FA434C0E244F20BC934
-118.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\9OW9MNR7.cookie
-117.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\banner[1].htm
-117.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\atrk[1].js
-116.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\fontawesome-webfont[1].woff2
-115.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\Cache\6XO3B951\favicon[3].ico
-114.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\NJP7D1I5.cookie
-109.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\atrk[1].gif
-105.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\test[1].png
-104.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\affs[3].js
-103.1s C:\Users\Jean-Marie\ZHPCleaner.exe
-95.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\cc_check[3].js
-95.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\get[3].js
-71.7s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\91D45B9FD0AB831D005595625889DE9CAAECD35C
-69.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{418F29B2-07F5-11E7-BCAB-4C72B9F956A2}.dat
-65.9s C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\datareporting\archived\2017-03\1489409602203.477a2cfb-2171-47a5-ac44-1cc85aabd2ef.main.jsonlz4
-62.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\display[2].htm
-57.3s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\CDA944DF6D23F8D43AD62F67F33315E71D13F538
-46.5s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\A3C5E5085BDC426D38C288A0113E53E2E3EBE9C2
-43.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\affs[4].js
-38.7s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\A5981DF8553F27134D8D3636465D0C8786A907AA
-24.2s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\FAE8288709E1AC13EEC6B1B20505ACF75EB930F7
-22.5s C:\Users\Jean-Marie\AppData\Local\Temp\a82b526ea2f1435c89706334fa2c91ed\
-21.2s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_SS
-11.3s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\BC1720C9DD5D545A9F78C4EF02B0B2B6A09E4B63
-1.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\u[4].js
-1.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{6A24EFF8-07F5-11E7-BCAB-4C72B9F956A2}.dat
-0.0s C:\Users\Jean-Marie\AppData\Local\Temp\ba1998de128f4f7ea832954d6ab9b863\
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\ba1998de128f4f7ea832954d6ab9b863\Setup__20877.exe
8.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\0AF54N6A.cookie
9.9s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_SS2
14.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\ups[1].htm
16.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\base_css[1].css
16.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\flash_css[1].css
17.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\helpers[1].js
17.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\active_button_css[1].css
17.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\a_background[1].jpg
17.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\dl.min[1].js
28.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\chrome_download_hint[1].png
28.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\chrome_arrow_anim[1].gif
28.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\chrome_download_hint_anim[2].png
31.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\ZDR2XME1\b8p.sqfbboutlearn[1].xml
32.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\affs[5].js
33.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\Cache\NB8ITU48\hdplayer_lo[2].ico
39.6s C:\Users\Jean-Marie\AppData\Local\Temp\3420.tmp.exe
56.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\display[3].htm
56.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\get[1].json
56.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\get[2].json
60.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\0UQZ2LFD.cookie
61.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\4SA2OOSU\www.nanoadexchange[1].xml
68.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{8DD531AD-07F5-11E7-BCAB-4C72B9F956A2}.dat
82.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\cc_check[3].js
83.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\get[4].js
93.9s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_BHO
100.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\index[2].htm
104.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\amipb[1].js
113.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\videoplayer_edge_poc_v2[1].json
120.7s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_BHO2
131.9s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_BHO_T
134.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\cc_check[4].js
135.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\get[5].js
137.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\u[1].js
137.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{BCE99920-07F5-11E7-BCAB-4C72B9F956A2}.dat
144.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\index[3].htm
148.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\videoplayer_edge_poc_v2[1].json
159.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\r[3].js
165.0s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\ED4725678FB6E283F22BFCF30FA398CB
165.0s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\ED4725678FB6E283F22BFCF30FA398CB
173.2s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\1E7AFB499F0D8E4335FF705D37EAA854AC310643
177.4s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\E2BD2F8449491269FD2B4B20FE8A2FE50DF668AF
178.2s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_TB
207.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{E6CB49F3-07F5-11E7-BCAB-4C72B9F956A2}.dat
210.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\MHGNZVY4.cookie
214.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\1[2].htm
224.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\host[2].js
227.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\321u11uo3&sub-id=1243241&s2=[1].htm
245.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\all-styles[1].css
245.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\planetfr_s[1].png
245.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\welcome-media_s[1].png
245.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\special-styles[1].css
246.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\mistergagnant_s[1].png
246.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\choisir_s[1].png
246.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\skripte[1].js
246.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\avis_de_bons_s[1].png
247.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\azorica_s[1].png
258.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\T3LFLKU2\grand-choix-produits[1].xml
258.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\bg0[1].jpg
259.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\80_proz_000[1].png
263.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\CLR_v2.0\UsageLogs\myçHYMyclJ.exe.log
264.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\store[1].htm
265.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\get[3].json
268.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\321u11uo3&sub-id=1243241&s2=[1].htm
270.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\iframe[1].css
271.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\r[2].js
272.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\4SA2OOSU\cdncache-a.akamaihd[1].xml
274.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{0E378DD7-07F6-11E7-BCAB-4C72B9F956A2}.dat
295.8s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_TB2

C:\Users\Jean-Marie\AppData\Local\Temp\d25d39665e23440e85d445c2547b21e5\OneSystemCare.exe -> Deleted
Size . . . . . . . : 4 417 080 bytes
Age . . . . . . . : 0.8 days (2017-03-13 14:56:12)
Entropy . . . . . : 8.0
SHA-256 . . . . . : BA2AD0554878A326D4A59B114B1D6A13189F068818E6ED485E9A7AA3BD2BF8D1
Description
Version . . . . . : 4.4.0.3
Copyright
RSA Key Size . . . : 2048
Authenticode . . . : Valid
> Kaspersky . . . . : not-a-virus:Downloader.Win32.DoubleAgent.eqp
> HitmanPro . . . . : App/Generic-PC
Fuzzy . . . . . . : 101.0
Forensic Cluster
-13.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{C8D9AE93-07F4-11E7-BCAB-4C72B9F956A2}.dat
-12.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\L0E1PFCT.cookie
-10.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\cc_check[1].js
-9.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\get[3].js
-1.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\download[1].htm
-0.0s C:\Users\Jean-Marie\AppData\Local\Temp\d25d39665e23440e85d445c2547b21e5\
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\d25d39665e23440e85d445c2547b21e5\OneSystemCare.exe
1.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\browser-params.min[1].js
2.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\css[2].css
2.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\knockout-3.3.0[1].js
2.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\secure-icon-fr[1].png
2.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\pm-scrn-scanning-winxp_fr[1].png
2.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\review-cnet-4[1].gif
3.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\jquery.min[1].js
3.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\image7[1].gif
3.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\click[1].htm
5.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\affs[2].js
8.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\gtm[1].js
9.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\hotjar-20[1].js
9.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\sidebar-cont-bg[1].jpg
9.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\pcm-logo[1].gif
9.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\header-bg[1].gif
9.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\repair-check-1[1].gif
9.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\arrow[1].gif
10.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\download[1].gif
10.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\compatible[1].gif
10.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\arrow-green[1].gif
10.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\steps-sprite[1].gif
10.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\sidebar-bg[1].jpg
10.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\microsoft[1].gif
10.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\repair-check-2[1].gif
10.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\horiz-line[1].gif
10.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\button-sprite[1].gif
15.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\f[3].txt
15.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\B9ZEFS5H.htm
18.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\4SA2OOSU\www.uniblue[1].xml
19.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\edge[1].png
19.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\xjAJXh38I15wypJXxuGMBo4P5ICox8Kq3LLUNMylGO4[1].woff2
19.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\k3k702ZOKiLJc3WVjuplzOgdm0LZdjqr5-oayXSOefg[1].woff2
19.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\MTP_ySUJH_bn48VBG8sNSugdm0LZdjqr5-oayXSOefg[1].woff2
21.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\Cache\JJVQQ1QG\favicon[2].ico
21.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\Cache\6XO3B951\favicon[1].png
22.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\download-arrow-large[1].png
22.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\r[1].js
25.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\u[3].js
26.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\download-arrow[1].png
26.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\fr_uac[1].png
27.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\fr_step-1_edge[1].png
27.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\fr_installer[1].png
35.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\nr-100[1].js
38.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\63c6c33caf[1].js

C:\Users\Jean-Marie\AppData\Local\Temp\DB9C.tmp -> Deleted
Size . . . . . . . : 3 825 557 bytes
Age . . . . . . . : 0.9 days (2017-03-13 12:35:31)
Entropy . . . . . : 8.0
SHA-256 . . . . . : DBB87C232358A8E0B3928C64CC6D13B5FF96C0FD7866C5DC5725B995A9CF3142
Product . . . . . : Setup
Description . . . : Setup
Version . . . . . : 1.3.0
Copyright
LanguageID . . . . : 1033
> Bitdefender . . . : Adware.GenericKD.4532616
> Kaspersky . . . . : not-a-virus:HEUR:RiskTool.Win32.BitCoinMiner.gen
Fuzzy . . . . . . : 117.0
Forensic Cluster
-22.2s C:\Users\Jean-Marie\AppData\Local\Temp\849D.tmp
-17.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\9G5SCJFJ.cookie
-13.3s C:\Users\Jean-Marie\AppData\Local\Temp\A79A.tmp
-8.7s C:\Users\Jean-Marie\AppData\Local\Temp\B9CB.tmp
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\DB9C.tmp
17.3s C:\Users\Jean-Marie\AppData\Local\Temp\1F26.tmp.exe
25.0s C:\Users\Jean-Marie\AppData\Local\Temp\3D26.tmp
26.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\2WVEGG9O.cookie

C:\Users\Jean-Marie\AppData\Local\Temp\E48E.tmp -> Deleted
Size . . . . . . . : 1 125 376 bytes
Age . . . . . . . : 0.9 days (2017-03-13 12:38:50)
Entropy . . . . . : 7.5
SHA-256 . . . . . : 52F4427E84B8E8CC8FEB6836B2B6A38EE603695DE1F2208E3F9D11C37AE629CD
> Bitdefender . . . : Trojan.Agent.CEPO
> HitmanPro . . . . : Mal/Generic-S
Fuzzy . . . . . . : 120.0
Forensic Cluster
-57.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\
-57.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers.exe
-49.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\2496.tmp
-48.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy\LocalState\ContentManagementSDK\Creatives\243289\1489405081
-43.5s C:\Users\Jean-Marie\AppData\Local\Temp\nsf3AA4.tmp
-40.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\ffmpegsumo.dll
-39.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\icudtl.dat
-39.8s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\Nanazejenim[1].png
-39.8s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\BG01[1].png
-39.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\Litalatili[1].png
-39.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\Linilila[1].png
-39.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\Totavener[1].png
-38.8s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\Doroledol[1].png
-38.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\Jimomoromoj_logo[2].png
-38.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\FR[1].png
-37.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\Tefenece_logo_black[2].png
-37.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\Taderonadan_Y2[1].png
-37.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\Naninil[1].png
-36.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\clc[1].msi
-36.8s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\FF_logo_new[1].png
-36.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\nw.pak
-36.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\logo[2].png
-36.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\IE_logo_new[1].png
-36.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\logo[3].png
-35.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\CH_logo_new[1].png
-35.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\Yusuriyiru[1].png
-35.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\Yusuriyiru_BG[1].jpg
-34.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\Yaraheheg_11Jul16[1].png
-34.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\
-34.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\am.pak
-34.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ar.pak
-34.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\bg.pak
-34.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\bn.pak
-34.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ca.pak
-34.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\cs.pak
-34.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\da.pak
-34.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\de.pak
-34.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\el.pak
-34.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\en-GB.pak
-34.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\en-US.pak
-34.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\es-419.pak
-34.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\es.pak
-34.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\et.pak
-34.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\fa.pak
-34.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\fi.pak
-34.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\fil.pak
-34.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\fr.pak
-34.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\gu.pak
-34.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\hi.pak
-34.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\hr.pak
-34.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\hu.pak
-34.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\id.pak
-34.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\it.pak
-34.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\iw.pak
-34.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ja.pak
-34.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\kn.pak
-34.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ko.pak
-34.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\lt.pak
-34.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\lv.pak
-34.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ml.pak
-34.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\mr.pak
-34.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ms.pak
-34.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\Lolosobeken[1].jpg
-34.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\nl.pak
-34.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\no.pak
-34.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\pl.pak
-34.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\pt-BR.pak
-34.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\pt-PT.pak
-34.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ro.pak
-34.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ru.pak
-34.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\sk.pak
-34.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\sl.pak
-34.3s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\Lolosobeken_fs[2].png
-34.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\sr.pak
-34.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\sv.pak
-34.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\sw.pak
-34.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ta.pak
-34.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\te.pak
-34.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\th.pak
-34.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\tr.pak
-34.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\uk.pak
-34.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\vi.pak
-34.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\zh-CN.pak
-34.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\zh-TW.pak
-33.8s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\66B5903C22544E7D33160BECCC726D9C
-33.8s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\66B5903C22544E7D33160BECCC726D9C
-33.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\Lolosobeken_logo[2].png
-33.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\lolosobeken_mod[2].png
-33.3s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\lolosobeken_mod_logo[2].png
-33.3s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\IE_logo[1].png
-32.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\CH_logo[1].png
-32.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\FF_logo[1].png
-32.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\Wocemeta_1[1].png
-32.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\Bisli_M_Logo[1].png
-31.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\logo[4].png
-31.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\fusion_bg[3].png
-31.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\bg_v2_US[1].png
-31.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\tooltip[1].png
-30.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\logo[2].png
-30.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\Nininininon[1].png
-29.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\Mogemamameg[1].jpg
-28.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\BG[1].jpg
-28.8s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\BG_FS[2].jpg
-28.6s C:\Users\Jean-Marie\AppData\Local\Temp\74EA.tmp
-28.3s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\BG_FS_LONG[1].png
-28.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\BG_LONG[1].png
-27.8s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\BG_FS_TC[1].png
-27.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\BG_TC[2].png
-27.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\BG_TT_FS[2].png
-26.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\Bomonobinok_CI_rg[1].png
-16.4s C:\Users\Jean-Marie\AppData\Local\Temp\A467.tmp
-4.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\Uninstall.exe
-4.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\
-2.6s C:\ProgramData\Comodo\Cis\tempscrpt\C_cmd.exe_41BF0D5329D42E48B317E47E591C98D7988A124B.bat
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\E48E.tmp
0.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Internet Explorer\Recovery\Last Active\{A07F8687-07E1-11E7-BCAB-4C72B9F956A2}.dat
1.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Uninstall.lnk
4.7s C:\Users\Jean-Marie\AppData\Local\Temp\is-ISUQU.tmp\_isetup\
4.7s C:\Users\Jean-Marie\AppData\Local\Temp\is-ISUQU.tmp\_isetup\_setup64.tmp
4.7s C:\Users\Jean-Marie\AppData\Local\Temp\is-ISUQU.tmp\
4.8s C:\Users\Jean-Marie\AppData\Local\Temp\is-ISUQU.tmp\_isetup\_shfoldr.dll
5.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-ISUQU.tmp\itdownload.dll
6.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\AppTrailers.lnk
6.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\storage.json
7.0s C:\Users\Jean-Marie\AppData\Local\Temp\is-ISUQU.tmp\installer.exe.config
9.2s C:\Windows\Installer\SourceHash{63FABE20-831D-40D0-A1F8-3373B3C5CC3A}
12.8s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\C7FC7A22-0830-488F-98F5-7CFA62086972[1].htm
13.2s C:\Users\Jean-Marie\AppData\Local\Temp\nsi17F6.tmp
17.5s C:\Users\Jean-Marie\AppData\Local\Temp\is-MPAE7.tmp\_isetup\
17.5s C:\Users\Jean-Marie\AppData\Local\Temp\is-MPAE7.tmp\_isetup\_setup64.tmp
17.5s C:\Users\Jean-Marie\AppData\Local\Temp\is-MPAE7.tmp\
17.5s C:\Users\Jean-Marie\AppData\Local\Temp\is-MPAE7.tmp\_isetup\_shfoldr.dll
17.6s C:\Users\Jean-Marie\AppData\Local\Temp\is-MPAE7.tmp\itdownload.dll
20.0s C:\Users\Jean-Marie\AppData\Local\Temp\is-MPAE7.tmp\installer.exe.config
20.2s C:\ProgramData\Comodo\Cis\Quarantine\data\{1B37A644-1476-4E76-80ED-C8C9FE822F4F}
23.8s C:\ProgramData\Comodo\Cis\tempscrpt\C_cmd.exe_77D8DFED1604DF137FDCC70AB8977439728D30EA.bat
32.8s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\G7FL6JEI.cookie
33.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\L3M2W7OX.cookie
36.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\NetUtils2016.sys
36.3s C:\Windows\System32\drivers\NetUtils2016.sys.06595d04
37.2s C:\Windows\System32\NetUtils2016.dll
38.5s C:\Windows\System32\sstmp\
44.0s C:\Program Files\dc052114c37ad4b0da86805370b748a8\
46.9s C:\Users\Jean-Marie\AppData\Local\Temp\9BCA.tmp
46.9s C:\Program Files\dc052114c37ad4b0da86805370b748a8\2cb2ccc883184b30c94db7caedabef42
47.0s C:\Windows\System32\drivers\8df1bf629e6a39ef0a34133f460ff3ed.sys
47.3s C:\Program Files\dc052114c37ad4b0da86805370b748a8\63b25d5c033a4239a89eff506dde143b.exe
49.3s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\WBCDX4C7.cookie

C:\Users\Jean-Marie\AppData\Local\Temp\F018.tmp -> Quarantined
Size . . . . . . . : 44 768 bytes
Age . . . . . . . : 0.9 days (2017-03-13 12:37:47)
Entropy . . . . . : 6.9
SHA-256 . . . . . : 15EA0D48ED864B9153F37D37CD813C7C60B23BBB5B58DFBEA2FC13D228169465
> Kaspersky . . . . : not-a-virus:AdWare.Win32.Ocna.bng
Fuzzy . . . . . . : 112.0

C:\Users\Jean-Marie\AppData\Local\Temp\ff87242ed1084885ab2e6f199c728cce\Setup.exe -> Quarantined
Size . . . . . . . : 301 568 bytes
Age . . . . . . . : 0.8 days (2017-03-13 14:52:58)
Entropy . . . . . : 6.5
SHA-256 . . . . . : 934A7793C4907B1DDF9FB6362B24531770A1F3CF486737CCB624D524B6964942
Version . . . . . : 1.0.2.7
> Kaspersky . . . . : HEUR:Trojan.Win32.Generic
Fuzzy . . . . . . : 105.0
Forensic Cluster
-210.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\index[2].htm
-208.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\jquery.min[4].js
-207.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\itn[1].js
-207.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\index_src[1].htm
-205.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\style[2].css
-205.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\23[1].png
-204.7s C:\Users\Jean-Marie\AppData\Roaming\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cdncache-a.akamaihd.net\
-204.5s C:\Users\Jean-Marie\AppData\Roaming\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cdncache-a.akamaihd.net\settings.sol
-203.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\reimage-rank[1].png
-203.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\reimage-repair-software-screen.fr[1].png
-202.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\bg[1].png
-201.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\fr-ms-seal[1].png
-201.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\getseal[1].js
-200.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\hd-icon[1].png
-200.6s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\1060B7ADDE0FF6DE85637BF89FC4CEBC_C2736EF4CC427A0C7A3E9D96A5DE6678
-200.6s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\1060B7ADDE0FF6DE85637BF89FC4CEBC_C2736EF4CC427A0C7A3E9D96A5DE6678
-200.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\jquery.fancybox-2[1].css
-200.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\Cache\JJVQQ1QG\reimage[1].ico
-199.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\right-box-bg[1].gif
-199.7s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\8CFEDCFFDD2FA38C0C8C71E5FF0E66A9
-199.6s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\8CFEDCFFDD2FA38C0C8C71E5FF0E66A9
-199.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\link-icon1[1].png
-199.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\f[2].txt
-198.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\fr-download-button[1].png
-198.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\patent[1].png
-197.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\reimage-compatible-windows-xp[1].png
-197.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\reimage-compatible-windows-7[1].png
-197.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\link-icon2[1].png
-197.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\reimage-compatible-windows-8[1].png
-197.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\gray-box-top[1].png
-196.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\icon-step1[1].png
-196.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\icon-step2[1].png
-196.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\icon-step3[1].png
-196.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\jquery.fancybox-2[1].js
-195.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\gray-box-bottom[1].png
-195.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\comment-icon[1].gif
-193.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\1[1].js
-193.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\host[1].js
-189.4s C:\Users\Jean-Marie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\5C8Y3PVC\#AppContainer\
-189.3s C:\Users\Jean-Marie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\5C8Y3PVC\#AppContainer\cdncache-a.akamaihd.net\
-189.2s C:\Users\Jean-Marie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\5C8Y3PVC\#AppContainer\cdncache-a.akamaihd.net\items\
-189.0s C:\Users\Jean-Marie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\5C8Y3PVC\#AppContainer\cdncache-a.akamaihd.net\items\e6a00\
-188.8s C:\Users\Jean-Marie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\5C8Y3PVC\#AppContainer\cdncache-a.akamaihd.net\items\e6a00\storage.swf\
-167.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\R8C1FQ56.js
-167.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\s[1].gif
-159.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\s[1].gif
-159.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\4MLS29YC.js
-151.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\JJWR4P7D.js
-151.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\s[2].gif
-141.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\z7b85[1].js
-128.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\jquery2[1].js
-113.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\s[2].gif
-87.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\affs[1].js
-82.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\pops[1].js
-82.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\s[3].gif
-78.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\s[3].gif
-75.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\arrow-10x10[1].png
-74.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\PPZ[1].png
-73.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\R2o[1].png
-73.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\AzC[1].png
-71.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\s[4].gif
-70.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\PPa[1].gif
-69.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\s[5].gif
-69.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\ZDR2XME1\onclkds[1].xml
-67.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\affs[1].js
-53.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\1ZOVPWVD.htm
-50.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\cc_check[1].js
-50.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\get[2].js
-41.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\cc_check[2].js
-40.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\get[1].js
-40.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\I8LGI6OK.cookie
-39.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\u[1].js
-39.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\bg[1].htm
-39.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\2[1].htm
-38.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\u[3].js
-37.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\config[1].js
-37.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\style[1].css
-37.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\theme-responsive[1].css
-37.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\foundstrap[1].css
-37.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\font-awesome.min[1].css
-37.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\settings[1].css
-36.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\jquery.waypoints.min[1].js
-36.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\modernizr[1].js
-36.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\foundstrap[1].js
-36.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\jquery.min[1].js
-36.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\jquery.sscr[1].js
-36.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\theme-script[1].js
-36.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\jquery.scrollUp[1].js
-36.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\jquery.themepunch.revolution.min[1].js
-36.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\owl.carousel.min[1].js
-36.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\jquery.themepunch.tools.min[1].js
-36.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\jquery.retina[1].js
-36.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\5star[1].png
-36.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\slide1-bg[1].png
-35.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\logo[1].png
-35.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\FR[1].png
-35.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\slide1-img1[1].png
-35.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\US[1].png
-35.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\www[1].png
-35.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\chalkboard[1].png
-35.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\rocket[1].png
-35.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\secure-shield[1].jpg
-35.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\trigon[1].png
-35.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\slide3-bg[1].jpg
-34.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\r[1].js
-33.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\lang_fr[1].js
-32.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\smartmenu.min[1].css
-32.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\linea-icon.min[1].css
-32.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\css[1].css
-32.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\css[2].css
-32.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\animate.min[1].css
-32.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\fancybox[1].css
-32.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\owl-carousel.min[1].css
-32.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\element[1].css
-32.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\css[1].css
-31.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\revolution-responsive[1].css
-31.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\orange[1].css
-30.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\cJZKeOuBrn4kERxqtaUH3VtXRa8TVwTICgirnJhmVJw[1].woff2
-30.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\seal_fr[1].png
-30.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\DXI1ORHCpsQm3Vp6mXoaTegdm0LZdjqr5-oayXSOefg[1].woff2
-29.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\Hgo13k-tfSpn0qi1SFdUfVtXRa8TVwTICgirnJhmVJw[1].woff2
-29.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\mnpfi9pxYH-Go5UiibESIltXRa8TVwTICgirnJhmVJw[1].woff2
-29.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\4SA2OOSU\static.cmptch[1].xml
-29.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\fontawesome-webfont[1].woff2
-29.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\linea-icon[1].woff
-28.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\style[2].css
-28.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\l5lwlGTN3pEY5Bf-rQEuIAQibyVIKv8boZ0oFv0g-Lo[1].woff2
-28.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\WarningSticker-1[1].png
-28.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\loading[1].gif
-27.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\jquery-1.11.3.min[1].js
-27.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\affs[1].js
-27.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\bg-parallax1[1].png
-26.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\ZDR2XME1\bienordinateur[1].xml
-24.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\Safety\url\local\sH+PUvjAGNIx1Luj0gr41Q==
-20.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\bg[1].jpg
-17.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\cc_check[3].js
-16.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\get[2].js
-16.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\Y2092RLU.cookie
-15.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\QOOD66Z9.cookie
-15.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\5DBGBYLS.cookie
-14.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\u[2].js
-13.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\0D77WV4O\www.bridgeiqplus[1].xml
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\ff87242ed1084885ab2e6f199c728cce\
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\ff87242ed1084885ab2e6f199c728cce\Setup.exe
1.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\r[2].js
16.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\RDP63H0C.cookie
36.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\3ER8VY61.htm
46.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\get[1].json
47.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\display[1].htm
52.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\r[1].js
63.8s C:\Users\Jean-Marie\AppData\Local\Temp\AC20.tmp.exe
64.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\exit[1].js
64.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\logo[1].png
65.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\arrow[1].jpg
65.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\cart[1].png
65.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\planet[1].jpg
66.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\portrait[1].png
68.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\raven.min[1].js
69.4s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C8E7EC0C85688F4738F3BE49B104BA67
69.4s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\C8E7EC0C85688F4738F3BE49B104BA67
69.5s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\ACF244F1A10D4DBED0D88EBA0C43A9B5_16756CC7371BB76A269719AA1471E96C
69.5s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\ACF244F1A10D4DBED0D88EBA0C43A9B5_16756CC7371BB76A269719AA1471E96C
70.9s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A053CFB63FC8E6507871752236B5CCD5_81708501C82EBC23042A93BEC47F5284
70.9s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\26FAECAB15AD715CB7849E2211F9473B
70.9s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A053CFB63FC8E6507871752236B5CCD5_81708501C82EBC23042A93BEC47F5284
70.9s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\26FAECAB15AD715CB7849E2211F9473B
74.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\s[4].gif
81.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\segoeui[1].ttf
81.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\seguibl[1].ttf
82.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\Warning-French[1].mp3
82.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\Cache\6XO3B951\favicon[2].ico
82.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\Warning-French[1].dat
83.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\Cache\NB8ITU48\favicon[2].ico
85.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\welcome1[1].mp3
86.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\affs[2].js
92.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\fr_instructions_edge[1].png
93.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\ReimageRepair[1].exe
93.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\fancybox_sprite[1].png
93.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\set_download[1].htm
94.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\fancybox_loading[1].gif
115.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\0D77WV4O\wlt.kd2244[1].xml
117.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\Cache\L5ET2CBU\favicon[2].ico
117.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\affs[3].js
137.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\r[2].js

C:\Users\Jean-Marie\AppData\Local\Temp\is-8QIVB.tmp\installer.exe -> Quarantined
Size . . . . . . . : 5 632 bytes
Age . . . . . . . : 0.8 days (2017-03-13 14:13:46)
Entropy . . . . . : 4.2
SHA-256 . . . . . : D495C7DB2A15533594BB2A7E3818B6DEAA91E810EDD00FBCCCF7A96DFA33D7BE
Product
Publisher
Description
Version . . . . . : 1.0.0.0
LanguageID . . . . : 0
> Bitdefender . . . : Trojan.GenericKD.4583339
Fuzzy . . . . . . : 105.0
Forensic Cluster
-17.7s C:\Users\Jean-Marie\AppData\Local\Temp\is-QEL0Q.tmp\
-17.7s C:\Users\Jean-Marie\AppData\Local\Temp\is-QEL0Q.tmp\EB9B.tmp
-15.7s C:\Users\Jean-Marie\AppData\Local\Temp\is-4ECJM.tmp\
-15.7s C:\Users\Jean-Marie\AppData\Local\Temp\is-4ECJM.tmp\EBC0.tmp
-4.9s C:\Users\Jean-Marie\AppData\Local\Temp\is-E8SG3.tmp\_isetup\
-4.9s C:\Users\Jean-Marie\AppData\Local\Temp\is-E8SG3.tmp\_isetup\_setup64.tmp
-4.9s C:\Users\Jean-Marie\AppData\Local\Temp\is-E8SG3.tmp\_isetup\_shfoldr.dll
-4.9s C:\Users\Jean-Marie\AppData\Local\Temp\is-E8SG3.tmp\
-4.8s C:\Users\Jean-Marie\AppData\Local\Temp\is-E8SG3.tmp\itdownload.dll
-4.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\END
-4.0s C:\Users\Jean-Marie\AppData\Local\Temp\is-E8SG3.tmp\installer.exe.config
-4.0s C:\Users\Jean-Marie\AppData\Local\Temp\is-E8SG3.tmp\installer.exe
-1.4s C:\Users\Jean-Marie\AppData\Local\Temp\is-8QIVB.tmp\_isetup\
-1.4s C:\Users\Jean-Marie\AppData\Local\Temp\is-8QIVB.tmp\_isetup\_setup64.tmp
-1.4s C:\Users\Jean-Marie\AppData\Local\Temp\is-8QIVB.tmp\
-1.4s C:\Users\Jean-Marie\AppData\Local\Temp\is-8QIVB.tmp\_isetup\_shfoldr.dll
-1.3s C:\Users\Jean-Marie\AppData\Local\Temp\is-8QIVB.tmp\itdownload.dll
-0.0s C:\Users\Jean-Marie\AppData\Local\Temp\is-8QIVB.tmp\installer.exe.config
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\is-8QIVB.tmp\installer.exe
4.8s C:\Users\Jean-Marie\AppData\Local\Temp\is-EPAFV.tmp\
5.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-EPAFV.tmp\setup.exe
8.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\ext[1].htm
8.8s C:\$RECYCLE.BIN\S-1-5-21-1766228302-1366166313-1596766668-1001\$RZ581XQ\

C:\Users\Jean-Marie\AppData\Local\Temp\is-E8SG3.tmp\installer.exe -> Quarantined
Size . . . . . . . : 5 632 bytes
Age . . . . . . . : 0.8 days (2017-03-13 14:13:42)
Entropy . . . . . : 4.2
SHA-256 . . . . . : D495C7DB2A15533594BB2A7E3818B6DEAA91E810EDD00FBCCCF7A96DFA33D7BE
Product
Publisher
Description
Version . . . . . : 1.0.0.0
LanguageID . . . . : 0
> Bitdefender . . . : Trojan.GenericKD.4583339
Fuzzy . . . . . . : 105.0
Forensic Cluster
-13.7s C:\Users\Jean-Marie\AppData\Local\Temp\is-QEL0Q.tmp\
-13.7s C:\Users\Jean-Marie\AppData\Local\Temp\is-QEL0Q.tmp\EB9B.tmp
-11.8s C:\Users\Jean-Marie\AppData\Local\Temp\is-4ECJM.tmp\
-11.8s C:\Users\Jean-Marie\AppData\Local\Temp\is-4ECJM.tmp\EBC0.tmp
-1.0s C:\Users\Jean-Marie\AppData\Local\Temp\is-E8SG3.tmp\_isetup\
-1.0s C:\Users\Jean-Marie\AppData\Local\Temp\is-E8SG3.tmp\_isetup\_setup64.tmp
-1.0s C:\Users\Jean-Marie\AppData\Local\Temp\is-E8SG3.tmp\_isetup\_shfoldr.dll
-1.0s C:\Users\Jean-Marie\AppData\Local\Temp\is-E8SG3.tmp\
-0.8s C:\Users\Jean-Marie\AppData\Local\Temp\is-E8SG3.tmp\itdownload.dll
-0.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\END
-0.0s C:\Users\Jean-Marie\AppData\Local\Temp\is-E8SG3.tmp\installer.exe.config
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\is-E8SG3.tmp\installer.exe
2.5s C:\Users\Jean-Marie\AppData\Local\Temp\is-8QIVB.tmp\_isetup\
2.5s C:\Users\Jean-Marie\AppData\Local\Temp\is-8QIVB.tmp\_isetup\_setup64.tmp
2.5s C:\Users\Jean-Marie\AppData\Local\Temp\is-8QIVB.tmp\
2.5s C:\Users\Jean-Marie\AppData\Local\Temp\is-8QIVB.tmp\_isetup\_shfoldr.dll
2.6s C:\Users\Jean-Marie\AppData\Local\Temp\is-8QIVB.tmp\itdownload.dll
3.9s C:\Users\Jean-Marie\AppData\Local\Temp\is-8QIVB.tmp\installer.exe.config
4.0s C:\Users\Jean-Marie\AppData\Local\Temp\is-8QIVB.tmp\installer.exe
8.8s C:\Users\Jean-Marie\AppData\Local\Temp\is-EPAFV.tmp\
9.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-EPAFV.tmp\setup.exe
11.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\ext[1].htm
12.8s C:\$RECYCLE.BIN\S-1-5-21-1766228302-1366166313-1596766668-1001\$RZ581XQ\

C:\Users\Jean-Marie\AppData\Local\Temp\is-EPAFV.tmp\setup.exe -> Quarantined
Size . . . . . . . : 2 404 928 bytes
Age . . . . . . . : 0.8 days (2017-03-13 14:13:51)
Entropy . . . . . : 6.6
SHA-256 . . . . . : CB19DF3951E6417045FE37492B16611FE33F3D0DF9BCBE0C41E1EB7F394B36B0
RSA Key Size . . . : 2048
Authenticode . . . : Valid
> Bitdefender . . . : Gen:Variant.Application.Sobrab.1
Fuzzy . . . . . . : 101.0
Forensic Cluster
-22.9s C:\Users\Jean-Marie\AppData\Local\Temp\is-QEL0Q.tmp\
-22.9s C:\Users\Jean-Marie\AppData\Local\Temp\is-QEL0Q.tmp\EB9B.tmp
-21.0s C:\Users\Jean-Marie\AppData\Local\Temp\is-4ECJM.tmp\
-21.0s C:\Users\Jean-Marie\AppData\Local\Temp\is-4ECJM.tmp\EBC0.tmp
-10.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-E8SG3.tmp\_isetup\
-10.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-E8SG3.tmp\_isetup\_setup64.tmp
-10.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-E8SG3.tmp\_isetup\_shfoldr.dll
-10.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-E8SG3.tmp\
-10.0s C:\Users\Jean-Marie\AppData\Local\Temp\is-E8SG3.tmp\itdownload.dll
-9.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\END
-9.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-E8SG3.tmp\installer.exe.config
-9.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-E8SG3.tmp\installer.exe
-6.7s C:\Users\Jean-Marie\AppData\Local\Temp\is-8QIVB.tmp\_isetup\
-6.7s C:\Users\Jean-Marie\AppData\Local\Temp\is-8QIVB.tmp\_isetup\_setup64.tmp
-6.7s C:\Users\Jean-Marie\AppData\Local\Temp\is-8QIVB.tmp\
-6.7s C:\Users\Jean-Marie\AppData\Local\Temp\is-8QIVB.tmp\_isetup\_shfoldr.dll
-6.6s C:\Users\Jean-Marie\AppData\Local\Temp\is-8QIVB.tmp\itdownload.dll
-5.3s C:\Users\Jean-Marie\AppData\Local\Temp\is-8QIVB.tmp\installer.exe.config
-5.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-8QIVB.tmp\installer.exe
-0.4s C:\Users\Jean-Marie\AppData\Local\Temp\is-EPAFV.tmp\
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\is-EPAFV.tmp\setup.exe
2.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\ext[1].htm
3.6s C:\$RECYCLE.BIN\S-1-5-21-1766228302-1366166313-1596766668-1001\$RZ581XQ\

C:\Users\Jean-Marie\AppData\Local\Temp\is-MPAE7.tmp\installer.exe -> Deleted
Size . . . . . . . : 312 528 bytes
Age . . . . . . . : 0.9 days (2017-03-13 12:41:40)
Entropy . . . . . : 6.1
SHA-256 . . . . . : 80F75B2932F05C93F3D3C79A390AC34B17DE483163BB0310F469459E0AB31DDF
Product . . . . . : /ProductName
Publisher . . . . : /Soft company
Description . . . : /Files downloader
Version . . . . . : 3.1.3.3
Copyright . . . . : /All right copyright
RSA Key Size . . . : 2048
LanguageID . . . . : 1033
Authenticode . . . : Valid
> Bitdefender . . . : Trojan.GenericKD.4587170
> Kaspersky . . . . : not-a-virus:Downloader.Win32.Agent.hrer
Fuzzy . . . . . . : 95.0

C:\Users\Jean-Marie\AppData\Local\Temp\nseA7D8.tmp -> Deleted
Size . . . . . . . : 2 635 277 bytes
Age . . . . . . . : 1.0 days (2017-03-13 11:26:29)
Entropy . . . . . : 8.0
SHA-256 . . . . . : 916584AD8EE197CE2C3099AE4A037285D51B5F0B138F9822787E9AB56C84E7AB
> Bitdefender . . . : Gen:Variant.Adware.ConvertAd.1255
> Kaspersky . . . . : not-a-virus:HEUR:AdWare.Win32.Generic
Fuzzy . . . . . . : 120.0
Forensic Cluster
-159.9s C:\SkinPack\
-159.9s C:\SkinPack\Install.ico
-159.9s C:\SkinPack\license.txt
-159.9s C:\SkinPack\uninst.exe
-159.7s C:\SkinPack\rp.exe
-153.7s C:\SkinPack\RP.vbs
-153.5s C:\SkinPack Creator\
-153.5s C:\SkinPack Creator\Install.ico
-153.5s C:\SkinPack Creator\license.txt
-153.5s C:\SkinPack Creator\uninst.exe
-153.0s C:\Users\Jean-Marie\AppData\Local\Temp\ns78854F86\39E937B3_stp\
-152.9s C:\SkinPack Creator\SPIS.exe
-152.4s C:\SkinPack Creator\SP.exe
-152.4s C:\Users\Jean-Marie\AppData\Local\Temp\nsx90C1.tmp\nsExec.dll
-37.9s C:\SkinPack Creator\Extras\Skins\8\SkinPack.theme
-37.9s C:\SkinPack Creator\Extras\Skins\10\SkinPack.theme
-37.9s C:\SkinPack Creator\Extras\Skins\7\SkinPack.theme
-37.9s C:\SkinPack Creator\Extras\program\RocketDock\Languages\Language IDs.URL
-37.5s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorerframe.dll\
-37.5s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorerframe.dll\280.png
-37.5s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorerframe.dll\281.png
-37.5s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorerframe.dll\288.png
-37.5s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorerframe.dll\291.png
-37.5s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorerframe.dll\294.png
-37.5s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorerframe.dll\34560.png
-37.5s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorerframe.dll\34561.png
-37.5s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorerframe.dll\34562.png
-37.4s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorerframe.dll\34569.png
-37.4s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorerframe.dll\34570.png
-37.1s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorerframe.dll\34571.png
-37.1s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorerframe.dll\34575.png
-36.7s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorerframe.dll\34576.png
-36.7s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorerframe.dll\34577.png
-36.6s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorerframe.dll\34581.png
-36.6s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorerframe.dll\34582.png
-36.6s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorerframe.dll\34583.png
-36.6s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorerframe.dll\577.png
-36.6s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorerframe.dll\578.png
-36.5s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorerframe.dll\579.png
-36.5s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorerframe.dll\581.png
-36.5s C:\SkinPack Creator\Extras\Skins\7\SkinPack\Shell32.dll\632.png
-36.5s C:\SkinPack Creator\Extras\Skins\7\SkinPack\Shell32.dll\633.png
-36.4s C:\SkinPack Creator\Extras\Skins\7\SkinPack\Shell32.dll\634.png
-36.4s C:\SkinPack Creator\Extras\Skins\7\SkinPack\Shell32.dll\635.png
-36.4s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorer.exe\
-36.4s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorer.exe\6801.png
-36.4s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorer.exe\6805.png
-36.4s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorer.exe\6809.png
-36.3s C:\SkinPack Creator\Extras\Skins\7\SkinPack\explorer.exe\7013.png
-36.3s C:\SkinPack Creator\Extras\program\RocketDock\Data\
-36.3s C:\SkinPack Creator\Extras\program\RocketDock\Data\About.png
-36.3s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Aero Milk\Aeroglass.png
-35.9s C:\SkinPack Creator\Extras\program\RocketDock\Data\Behavior.png
-35.9s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Metro\bg.png
-35.9s C:\SkinPack Creator\Extras\program\RocketDock\Skins\VistaBlack\bg.png
-35.9s C:\SkinPack Creator\Extras\program\RocketDock\Defaults\DefaultSkin\bg.png
-35.4s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Crystal\bg.png
-35.4s C:\SkinPack Creator\Extras\program\RocketDock\Skins\AstroGrey\bg.png
-35.4s C:\SkinPack Creator\Extras\program\RocketDock\Skins\AstroIron\bg.png
-35.4s C:\SkinPack Creator\Extras\program\RocketDock\Skins\AstroGlass\bg.png
-35.1s C:\SkinPack Creator\Extras\program\RocketDock\Skins\AstroSteel\bg.png
-35.1s C:\SkinPack Creator\Extras\program\RocketDock\Skins\AstroOrange\bg.png
-35.1s C:\SkinPack Creator\Extras\program\RocketDock\Skins\AstroLife\bg.png
-35.1s C:\SkinPack Creator\Extras\program\RocketDock\Skins\ProtoSky\bg.png
-35.1s C:\SkinPack Creator\Extras\program\RocketDock\Skins\ProtoClay\bg.png
-34.8s C:\SkinPack Creator\Extras\program\RocketDock\Skins\ProtoSteel\bg.png
-34.8s C:\SkinPack Creator\Extras\program\RocketDock\Skins\ProtoSea\bg.png
-34.8s C:\SkinPack Creator\Extras\program\RocketDock\Skins\ProtoIron\bg.png
-34.8s C:\SkinPack Creator\Extras\program\RocketDock\Skins\ProtoGlass\bg.png
-34.4s C:\Users\Jean-Marie\AppData\Local\Temp\ns0F827F10\39E937B3_stp\
-34.3s C:\SkinPack Creator\Extras\program\RocketDock\Skins\ProtoTree\bg.png
-34.2s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Blank\Blank.png
-34.2s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Brushed\Brushed.png
-34.2s C:\SkinPack Creator\Extras\program\RocketDock\Icons\
-34.2s C:\SkinPack Creator\Extras\program\RocketDock\Icons\Clock.png
-33.5s C:\SkinPack Creator\Extras\program\RocketDock\Icons\Columbia Blue.png
-33.5s C:\SkinPack Creator\Extras\program\RocketDock\Icons\Control Panel.png
-33.5s C:\SkinPack Creator\Extras\program\RocketDock\Docklets\StackDocklet\Images\
-33.5s C:\SkinPack Creator\Extras\program\RocketDock\Docklets\StackDocklet\Images\Default icon.png
-33.5s C:\SkinPack Creator\Extras\program\RocketDock\Icons\Folder.png
-32.8s C:\Program Files (x86)\ScreenShot\
-32.8s C:\SkinPack Creator\Extras\program\RocketDock\Data\General.png
-32.8s C:\SkinPack Creator\Extras\program\RocketDock\Icons\Hammer.png
-32.7s C:\SkinPack Creator\Extras\program\RocketDock\Icons\Hard Drive.png
-32.4s C:\SkinPack Creator\Extras\program\RocketDock\Icons\Help.png
-32.3s C:\SkinPack Creator\Extras\program\RocketDock\Data\Icons.png
-32.3s C:\SkinPack Creator\Extras\program\RocketDock\Docklets\RocketClock\Images\
-32.3s C:\SkinPack Creator\Extras\program\RocketDock\Docklets\RocketClock\Images\Hour.png
-32.3s C:\SkinPack Creator\Extras\program\RocketDock\Defaults\DefaultIndicator\
-32.3s C:\Program Files (x86)\ScreenShot\local
-32.0s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Inspirat\Inspirat.png
-32.0s C:\SkinPack Creator\Extras\program\RocketDock\Defaults\DefaultIndicator\Indicator.png
-32.0s C:\SkinPack Creator\Extras\program\RocketDock\Icons\Internet Shortcut.png
-32.0s C:\SkinPack Creator\Extras\Skins\10\SkinPack\Shell\NormalColor\en-US\Leopardlogo2.png
-31.7s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Luminous\Luminous.png
-31.6s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Milk1\Milk1.png
-31.6s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Milk2\Milk2.png
-31.5s C:\Program Files (x86)\ScreenShot\msvcp110.dll
-31.3s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Minired\Minired.png
-31.2s C:\SkinPack Creator\Extras\program\RocketDock\Docklets\RocketClock\Images\Minute.png
-31.1s C:\SkinPack\uxstyle32.exe
-31.0s C:\SkinPack\uxstyle64.exe
-30.8s C:\SkinPack Creator\Extras\program\RocketDock\Icons\My Computer.png
-30.8s C:\SkinPack Creator\Extras\program\RocketDock\Icons\My Documents.png
-30.8s C:\SkinPack Creator\Extras\program\RocketDock\Icons\My Music.png
-30.8s C:\SkinPack Creator\Extras\program\RocketDock\Icons\My Network Places.png
-30.7s C:\SkinPack Creator\Extras\program\RocketDock\Icons\My Pictures.png
-30.7s C:\SkinPack Creator\Extras\program\RocketDock\Icons\My RocketDock.png
-30.7s C:\SkinPack Creator\Extras\program\RocketDock\Docklets\StackDocklet\Images\Open folder.png
-30.7s C:\SkinPack Creator\Extras\program\RocketDock\Icons\Notepad.png
-30.3s C:\Program Files (x86)\ScreenShot\msvcr110.dll
-30.0s C:\SkinPack Creator\Extras\program\RocketDock\Icons\Options.png
-29.9s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Painting\Painting.png
-29.9s C:\SkinPack Creator\Extras\program\RocketDock\Defaults\DefaultPoof\
-29.9s C:\SkinPack Creator\Extras\program\RocketDock\Defaults\DefaultPoof\Poof.png
-29.5s C:\SkinPack Creator\Extras\program\RocketDock\Data\Position.png
-29.5s C:\SkinPack Creator\Extras\program\RocketDock\Icons\Recycle Bin (full).png
-29.5s C:\SkinPack Creator\Extras\program\RocketDock\Icons\Recycle Bin.png
-29.5s C:\SkinPack Creator\Extras\program\RocketDock\Icons\RocketDock Options.png
-29.5s C:\SkinPack Creator\Extras\program\RocketDock\Docklets\RocketClock\Images\Second.png
-29.5s C:\SkinPack Creator\Extras\program\RocketDock\Icons\RocketDock.png
-29.1s C:\SkinPack Creator\Extras\program\RocketDock\Skins\AstroGlass\sep.png
-29.1s C:\SkinPack Creator\Extras\program\RocketDock\Skins\AstroOrange\sep.png
-29.1s C:\SkinPack Creator\Extras\program\RocketDock\Skins\AstroGrey\sep.png
-29.1s C:\SkinPack Creator\Extras\program\RocketDock\Skins\AstroIron\sep.png
-29.1s C:\SkinPack Creator\Extras\program\RocketDock\Skins\AstroSteel\sep.png
-29.1s C:\SkinPack Creator\Extras\program\RocketDock\Skins\AstroLife\sep.png
-28.8s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Metro\sep.png
-28.8s C:\SkinPack Creator\Extras\program\RocketDock\Defaults\DefaultSkin\sep.png
-28.8s C:\SkinPack Creator\Extras\program\RocketDock\Skins\VistaBlack\sep.png
-28.8s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Crystal\sep.png
-28.8s C:\SkinPack Creator\Extras\program\RocketDock\Skins\ProtoGlass\sep.png
-28.8s C:\SkinPack Creator\Extras\program\RocketDock\Skins\ProtoSky\sep.png
-28.8s C:\SkinPack Creator\Extras\program\RocketDock\Skins\ProtoIron\sep.png
-28.3s C:\SkinPack Creator\Extras\program\RocketDock\Skins\ProtoClay\sep.png
-28.3s C:\SkinPack Creator\Extras\program\RocketDock\Skins\ProtoSteel\sep.png
-28.3s C:\SkinPack Creator\Extras\program\RocketDock\Skins\ProtoSea\sep.png
-28.3s C:\SkinPack Creator\Extras\program\RocketDock\Skins\ProtoTree\sep.png
-27.8s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Simply\Separator.png
-27.8s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Brushed\Separator.png
-27.8s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Vista\Separator.png
-27.8s C:\SkinPack Creator\Extras\program\RocketDock\Skins\ZaKtoon\Separator.png
-27.7s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Aero Milk\Separator.png
-27.7s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Minired\Separator.png
-27.7s C:\SkinPack Creator\Extras\program\RocketDock\Skins\WhiteCristal\Separator.png
-27.7s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Milk1\Separator.png
-27.0s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Milk2\Separator.png
-27.0s C:\SkinPack Creator\Extras\program\RocketDock\Skins\ToonBLue\Separator.png
-27.0s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Inspirat\Separator.png
-27.0s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Special-RD\Separator.png
-27.0s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Luminous\Separator.png
-27.0s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Painting\Separator.png
-27.0s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Blank\Separator.png
-27.0s C:\SkinPack Creator\Extras\program\RocketDock\Docklets\StackDocklet\Images\Shadow.png
-27.0s C:\SkinPack Creator\Extras\program\RocketDock\Icons\Shirt.png
-26.6s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Simply\Simply.png
-26.6s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Special-RD\Special-RD.png
-26.6s C:\SkinPack Creator\Extras\program\RocketDock\Data\Style.png
-26.6s C:\SkinPack Creator\Extras\program\RocketDock\Skins\ToonBLue\Toonblue.png
-26.0s C:\SkinPack Creator\Extras\program\RocketDock\Defaults\DefaultIcons\
-26.0s C:\SkinPack Creator\Extras\program\RocketDock\Skins\Vista\Vista.png
-26.0s C:\SkinPack Creator\Extras\program\RocketDock\Defaults\DefaultIcons\Unknown.png
-26.0s C:\SkinPack Creator\Extras\program\RocketDock\Data\Warnings.png
-26.0s C:\SkinPack Creator\Extras\program\RocketDock\Skins\WhiteCristal\Whitecristal.png
-25.1s C:\SkinPack Creator\Extras\program\RocketDock\Skins\ZaKtoon\ZaKtoon.png
-25.1s C:\SkinPack Creator\Extras\program\RocketDock\Icons\Wrench.png
-25.1s C:\SkinPack Creator\Extras\logon\
-25.1s C:\SkinPack Creator\Extras\logon\BACKGROUNDDEFAULT.jpg
-25.1s C:\Program Files (x86)\ScreenShot\ScreenShot.exe
-25.1s C:\SkinPack Creator\Extras\Wallpaper\
-24.5s C:\SkinPack Creator\Extras\Wallpaper\SkinPack.jpg
-23.1s C:\SkinPack Creator\misc\utilities\
-23.1s C:\SkinPack Creator\misc\utilities\aero.exe
-23.1s C:\SkinPack Creator\misc\
-23.1s C:\SkinPack Creator\misc\license.txt
-22.8s C:\SkinPack Creator\misc\utilities\iIcons.exe
-22.8s C:\Program Files (x86)\ScreenShot\skins\
-22.7s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\ScreenShot\
-22.7s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\
-22.7s C:\SkinPack Creator\misc\dialogs\
-22.7s C:\SkinPack Creator\misc\dialogs\modern_headerbmp.exe
-22.7s C:\SkinPack Creator\misc\dialogs\modern_smalldesc.exe
-22.4s C:\SkinPack Creator\misc\utilities\rd.exe
-22.3s C:\SkinPack Creator\misc\utilities\re.exe
-22.0s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\ScreenShot\arrow_button.png
-21.9s C:\SkinPack Creator\misc\utilities\reg.exe
-21.8s C:\SkinPack Creator\misc\utilities\reg64.exe
-21.4s C:\SkinPack Creator\misc\utilities\ric.exe
-21.3s C:\SkinPack Creator\misc\utilities\rp.exe
-21.3s C:\SkinPack Creator\misc\utilities\theme.exe
-20.7s C:\SkinPack Creator\misc\utilities\uIcons.exe
-20.7s C:\SkinPack Creator\misc\utilities\UxStyle.exe
-20.2s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\ScreenShot\brush_pen.png
-19.7s C:\SkinPack Creator\misc\utilities\UxStyle10.exe
-18.8s C:\SkinPack Creator\misc\utilities\uxstyle32.exe
-18.4s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\ScreenShot\capture.png
-17.4s C:\SkinPack Creator\misc\utilities\uxstyle64.exe
-16.7s C:\SkinPack Creator\misc\plugins\
-16.7s C:\SkinPack Creator\misc\plugins\ExecCmd.dll
-16.6s C:\SkinPack Creator\misc\plugins\registry.dll
-16.6s C:\SkinPack Creator\misc\utilities\ThemeResourceChanger.dll
-16.3s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\ScreenShot\clear.png
-16.3s C:\SkinPack Creator\misc\utilities\trc64\
-16.2s C:\SkinPack Creator\misc\utilities\trc64\ThemeResourceChanger.dll
-16.2s C:\SkinPack Creator\misc\images\
-16.2s C:\SkinPack Creator\misc\images\header.bmp
-15.7s C:\SkinPack Creator\misc\images\wizard.bmp
-15.7s C:\SkinPack Creator\misc\Thumbs.db
-15.4s C:\SkinPack Creator\misc\images\Install.ico
-15.3s C:\SkinPack Creator\misc\scripts\
-15.3s C:\SkinPack Creator\misc\images\Uninstall.ico
-15.3s C:\SkinPack Creator\misc\scripts\Defines.nsi
-15.3s C:\SkinPack Creator\misc\scripts\Functions.nsi
-15.3s C:\SkinPack Creator\misc\utilities\trc.reg
-15.3s C:\SkinPack Creator\misc\plugins\inetc.dll
-15.3s C:\SkinPack Creator\Fusion.dll
-14.0s C:\SkinPack Creator\FusionSdk.nsh
-14.0s C:\SkinPack Creator\Plugins\FindProcDLL.dll
-14.0s C:\SkinPack Creator\Plugins\x86-ansi\FindProcDLL.dll
-13.9s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\ScreenShot\complete.png
-13.7s C:\SkinPack Creator\Plugins\nsProcess.dll
-13.7s C:\SkinPack Creator\Plugins\nsProcessW.dll
-12.8s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\ScreenShot\ellipse.png
-11.4s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\ScreenShot\hover.png
-11.4s C:\SkinPack\UxStyle_Core_Jul13_x64.msi
-9.9s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\ScreenShot\line.png
-9.6s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\ScreenShot\point_large.png
-8.3s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\ScreenShot\point_middle.png
-7.5s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\ScreenShot\point_small.png
-6.9s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\ScreenShot\press.png
-6.8s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SkinPack Creator\
-6.8s C:\SkinPack Creator\SkinPack Creator.url
-6.3s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SkinPack Creator\Website.lnk
-4.8s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\ScreenShot\quit.png
-4.1s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\ScreenShot\rectangle.png
-3.1s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\ScreenShot\save.png
-2.7s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\ScreenShot\setting.png
-2.0s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\uninstall\
-1.1s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\uninstall\close_default.png
-0.1s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SkinPack Creator\Uninstall.lnk
-0.0s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SkinPack Creator\Skin Pack Installer System Menu.lnk
-0.0s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\uninstall\close_over.png
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\nsx90C1.tmp\inetc.dll
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\nseA7D8.tmp
0.1s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\DC2135CED98D8A4D7C0CEE202BB0B810
0.2s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\DC2135CED98D8A4D7C0CEE202BB0B810
1.0s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\uninstall\install_btn_hover.png
1.4s C:\Program Files (x86)\ScreenShot\skins\ScreenShot\uninstall\install_btn_normal.png
2.9s C:\Program Files (x86)\ScreenShot\SSCommon.dll
3.3s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F5A17C00E427F919C4A49EEF5AD0EE53
3.3s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F5A17C00E427F919C4A49EEF5AD0EE53
3.4s C:\ProgramData\Comodo\Cis\tempscrpt\C_cmd.exe_C7A09A0354EC879CA1C41B2AE97393E8038A0686.bat
6.2s C:\Program Files (x86)\ScreenShot\SSCore.dll
9.2s C:\Program Files (x86)\ScreenShot\SSHelper.exe
10.6s C:\Program Files (x86)\ScreenShot\SSInst.exe
13.9s C:\Program Files (x86)\ScreenShot\SSSvc.exe
16.9s C:\Program Files (x86)\Aidfile recovery\
16.9s C:\Program Files (x86)\Aidfile recovery\unins000.dat
18.2s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScreenShot\
18.2s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScreenShot\ScreenShot.lnk
18.5s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScreenShot\SSInst.lnk
22.9s C:\Users\Jean-Marie\AppData\Local\Temp\ns0F827F10\39E937B3_stp\screenshot_ins.exe
31.8s C:\ProgramData\Comodo\Cis\tempscrpt\C_cmd.exe_CCE188289A5A3DF76B610D07898C96866D9EAC68.bat
33.3s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aidfile recovery\
36.6s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aidfile recovery\Aidfile recovery software.lnk
37.0s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aidfile recovery\Aidfile recovery software on the Web.url
37.0s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aidfile recovery\Uninstall Aidfile recovery software.lnk
1333.8s C:\Program Files (x86)\Aidfile recovery\unins000.exe
1333.9s C:\Program Files (x86)\Aidfile recovery\Aidfile.exe
1336.0s C:\Program Files (x86)\Aidfile recovery\Aidfile.chm
1337.6s C:\Users\Jean-Marie\Desktop\1ers giveaways & cadeaux récompense après lfs ultra & 100% sécurisé finalis\Aidfile recovery software.lnk

C:\Users\Jean-Marie\AppData\Local\Temp\nsi6EA0.tmp -> Quarantined
Size . . . . . . . : 183 975 bytes
Age . . . . . . . : 0.9 days (2017-03-13 11:34:59)
Entropy . . . . . : 7.9
SHA-256 . . . . . : 9A510C0B8E395AE18149502E6AB536C5423CDEE08337CE74407E54DA116EE99F
> Kaspersky . . . . : Trojan-Ransom.NSIS.MyxaH.nvp
Fuzzy . . . . . . : 120.0
Forensic Cluster
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\nsi6EA0.tmp
2.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\xKYTZdXZ[1].exe

C:\Users\Jean-Marie\AppData\Local\Temp\nsw436B.tmp -> Deleted
Size . . . . . . . : 2 635 277 bytes
Age . . . . . . . : 0.9 days (2017-03-13 11:34:48)
Entropy . . . . . : 8.0
SHA-256 . . . . . : 916584AD8EE197CE2C3099AE4A037285D51B5F0B138F9822787E9AB56C84E7AB
> Bitdefender . . . : Gen:Variant.Adware.ConvertAd.1255
> Kaspersky . . . . : not-a-virus:HEUR:AdWare.Win32.Generic
Fuzzy . . . . . . : 120.0

C:\Users\Jean-Marie\AppData\Local\Temp\RarSFX8\LogicHandler.exe -> Deleted
Size . . . . . . . : 3 786 752 bytes
Age . . . . . . . : 0.9 days (2017-03-13 12:44:05)
Entropy . . . . . : 6.6
SHA-256 . . . . . : 4303EDF63788AAD46BC5A71CD443001F44AF150D8D4964640DC5B1F8DCB229B7
Product . . . . . : ExtManager
LanguageID . . . . : 0
> Bitdefender . . . : Gen:Variant.Zusy.213626
> Kaspersky . . . . : not-a-virus:WebToolbar.MSIL.Agent.bkqa
Fuzzy . . . . . . : 108.0
Forensic Cluster
-0.0s C:\Users\Jean-Marie\AppData\Local\Temp\RarSFX8\
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\RarSFX8\LogicHandler.exe
0.1s C:\Users\Jean-Marie\AppData\Local\Temp\RarSFX8\LogicHandler.exe.config
0.1s C:\Users\Jean-Marie\AppData\Local\Temp\RarSFX8\System.Data.SQLite.dll
0.1s C:\Users\Jean-Marie\AppData\Local\Temp\RarSFX8\System.Data.SQLite.Linq.dll
3.9s C:\Microsoft\
3.9s C:\Microsoft\Windows\
3.9s C:\Microsoft\Windows\PowerShell\

C:\Users\Jean-Marie\AppData\Roaming\Kyubey\Kyubey.exe -> Deleted
Size . . . . . . . : 113 664 bytes
Age . . . . . . . : 0.4 days (2017-03-14 01:15:42)
Entropy . . . . . : 6.3
SHA-256 . . . . . : 71A6AD4E3A2C1C77BDCDCCC33F18972683F4F04A122520290B3B229DF9FCE63E
Service . . . . . : Kyubey
> Bitdefender . . . : Application.Elex.DM
> Kaspersky . . . . : not-a-virus:Downloader.Win32.Agent.hsct
Fuzzy . . . . . . : 113.0
Startup
HKLM\SYSTEM\CurrentControlSet\Services\Kyubey\
Forensic Cluster
-0.0s C:\Users\Jean-Marie\AppData\Roaming\Kyubey\
0.0s C:\Users\Jean-Marie\AppData\Roaming\Kyubey\Kyubey.exe

C:\Users\Jean-Marie\AppData\Roaming\WinSAPSvc\WinSAP.dll -> PendingDelete
Size . . . . . . . : 184 320 bytes
Age . . . . . . . : 0.4 days (2017-03-14 01:12:01)
Entropy . . . . . : 6.5
SHA-256 . . . . . : F11468936DEF8C0AD0B82DA3D9DC489B6A919259776F72BBD44146BF7D0CFD58
Product . . . . . : Windows
Publisher . . . . : Windows
Description . . . : Windows
Version . . . . . : 1.0.0.1
Service . . . . . : WinSAPSvc
LanguageID . . . . : 2052
> Bitdefender . . . : Application.Elex.DN
> Kaspersky . . . . : not-a-virus:AdWare.Win32.ELEX.azz
Fuzzy . . . . . . : 109.0
Startup
HKLM\SYSTEM\CurrentControlSet\Services\WinSAPSvc\
Forensic Cluster
-0.0s C:\Users\Jean-Marie\AppData\Roaming\WinSAPSvc\
0.0s C:\Users\Jean-Marie\AppData\Roaming\WinSAPSvc\WinSAP.dll

C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\IsSing.exe -> Deleted
Size . . . . . . . : 1 125 376 bytes
Age . . . . . . . : 0.9 days (2017-03-13 12:42:57)
Entropy . . . . . : 7.5
SHA-256 . . . . . : 52F4427E84B8E8CC8FEB6836B2B6A38EE603695DE1F2208E3F9D11C37AE629CD
> Bitdefender . . . : Trojan.Agent.CEPO
> HitmanPro . . . . : Mal/Generic-S
Fuzzy . . . . . . : 116.0
Forensic Cluster
-36.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\cookies
-36.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\cookies-journal
-35.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Local Storage\file__0.localstorage
-35.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Local Storage\file__0.localstorage-journal
-35.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\
-35.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\index
-34.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\234986793e71f265_0
-33.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\index-dir\
-33.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\index-dir\the-real-index
-31.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\b3986aa6d1a5b1ca_0
-30.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\5388fb7643147573_0
-30.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\1e20774a42d716f3_0
-30.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\e5a24438c9b179f5_0
-30.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\ab6bc8112cf834f6_0
-30.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\f74a8c1655500d73_0
-30.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\fbef9ceaf336383d_0
-30.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\dd1fa8967c9eedf1_0
-30.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\0ed7399215f555d7_0
-30.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\5125b9f58b582f46_0
-30.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\08bc571418449ead_0
-30.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\4e6eff9b133c383f_0
-30.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\a9423296c2c84f57_0
-30.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\bfbe9938bbb38577_0
-29.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\2819c5233c1f77b4_0
-29.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\66e510668b4796e9_0
-29.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\02cdb733b079655d_0
-29.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\3082972055161e5d_0
-26.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-KIO2E.tmp\
-26.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-KIO2E.tmp\_isetup\
-26.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-KIO2E.tmp\_isetup\_setup64.tmp
-26.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-KIO2E.tmp\_isetup\_shfoldr.dll
-26.0s C:\Users\Jean-Marie\AppData\Local\Temp\is-KIO2E.tmp\itdownload.dll
-25.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\b3edef432256edd5_0
-24.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-KIO2E.tmp\installer.exe.config
-23.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\f552ab47376f113e_0
-19.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\60eb469a84b06c8e_0
-16.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\fc9db45d6e0f5ea1_0
-16.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\c6c25da0ebd11114_0
-16.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\63d386aae7200fc5_0
-16.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\bd174a37c9cb36f6_0
-16.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\fdeae45b0a34c71e_0
-16.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\a73b7c74f7e96d5f_0
-16.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\13bc7fe2ce10c502_0
-16.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\e1c7854226713de7_0
-16.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\3519acc902218652_0
-16.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\fb42fe0d5b102549_0
-16.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\29fcd7b8b5c2ecc5_0
-16.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\9b0045bb563130f7_0
-13.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Local Storage\http_www.imdb.com_0.localstorage
-13.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Local Storage\http_www.imdb.com_0.localstorage-journal
-10.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\c487316b1c7eb401_0
-10.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\dc7c883ebdb4ce43_0
-8.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\301548b569835618_0
-7.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\26968e7a0c71776d_0
-6.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\f050cdc4f0727c58_0
-5.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\1a96e6eb777f1c98_0
-5.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\c3329b5e71fb9773_0
-5.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\442182c02ee0a243_0
-5.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\fddd11ea475c5135_0
-4.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\2ac381ccd53e2ce0_0
-2.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\8e4bbf83d3575725_0
-1.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\8f60e69a4afd6f60_0
-1.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\d48a903ae25fb25c_0
-1.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\0ed73590870cfbd2_0
-1.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\0fc3db66b9cbe75d_0
-1.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\a1f309cd5a3eb6fa_0
-1.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\3a977894dc0fcd39_0
-1.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\1dff67c9badf383d_0
-0.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\be189d201694bf89_0
0.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\IsSing.exe
0.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\8d9b27c428a8f6a3_0
0.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\7e97e17fac42a0ca_0
0.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\5ede7465ad814101_0
0.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\8326a92c0f293bc4_0
1.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\d19a15ac54bfa3ba_0
1.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\83a226c1379f7a18_0
3.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\1b72c2d37a2af109_0
3.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\0ef5b10d79d9f0cb_0
3.9s C:\Users\Jean-Marie\AppData\Roaming\IsSing.tst
4.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\4d75eab78299f375_0
4.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\6a049d05dc31f2bf_0
4.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\c8bff37e9d993e8c_0
4.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\2b11e2e523e5d524_0
4.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\cda276472aafd1d9_0
4.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\d48fc62e79cd2bfc_0
5.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\f4beaede20fc0699_0
6.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\d652598e0bff0a74_0
8.2s C:\Users\Jean-Marie\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\4CA77D36767B6202D4786BF3D1EC5242
8.2s C:\Users\Jean-Marie\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\4CA77D36767B6202D4786BF3D1EC5242
8.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Cache\690236e4ca6ee8d1_0

C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\Logic Cramble\set.exe -> Deleted
Size . . . . . . . : 3 786 752 bytes
Age . . . . . . . : 0.9 days (2017-03-13 12:44:28)
Entropy . . . . . : 6.6
SHA-256 . . . . . : 4303EDF63788AAD46BC5A71CD443001F44AF150D8D4964640DC5B1F8DCB229B7
Product . . . . . : ExtManager
LanguageID . . . . : 0
> Bitdefender . . . : Gen:Variant.Zusy.213626
> Kaspersky . . . . : not-a-virus:WebToolbar.MSIL.Agent.bkqa
Fuzzy . . . . . . : 108.0
Forensic Cluster
-8.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\Logic Cramble\
-2.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\Logic Cramble\Config.json
-2.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\LogicHandler.exe.log
0.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\Logic Cramble\set.exe
1.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\Logic Cramble\set.exe.config
2.3s C:\Program Files (x86)\Common Files\Ozer-Com\
2.3s C:\Program Files (x86)\Common Files\Ozer-Com\uninstall.exe
3.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\Logic Cramble\X64\
3.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\Logic Cramble\X64\SQLite.Interop.dll
3.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\Logic Cramble\System.Data.SQLite.dll
3.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\Logic Cramble\X86\
3.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\Logic Cramble\X86\SQLite.Interop.dll
3.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\Logic Cramble\System.Data.SQLite.Linq.dll
4.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\Logic Cramble\System.Data.SQLite.xml
4.6s C:\Program Files (x86)\Common Files\Ozer-Com\uninstall.dat
5.9s C:\Program Files (x86)\Common Files\Ozer-Com\InstallationConfiguration.xml
10.2s C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\PowerShell\ModuleAnalysisCache
12.2s C:\Program Files (x86)\Common Files\Ozer-Com\uninstall.ico
12.7s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B912B2C6928A18B8CD7D50CF08BEA95B_B921F1AAAE0C7DA9757AD53AAC95551A
12.7s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CAEDF689AA6DC9642B833051B2B77D1A
12.7s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B912B2C6928A18B8CD7D50CF08BEA95B_B921F1AAAE0C7DA9757AD53AAC95551A
12.7s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CAEDF689AA6DC9642B833051B2B77D1A
13.3s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0D704203BDA0CEEDCD2BBB4ACE02F586
13.3s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0D704203BDA0CEEDCD2BBB4ACE02F586
16.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\E48E.tmp.log

C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\isxdl.dll -> Quarantined
Size . . . . . . . : 157 864 bytes
Age . . . . . . . : 0.8 days (2017-03-13 14:41:47)
Entropy . . . . . : 6.4
SHA-256 . . . . . : A05E06ADC9110C6B825A9684A2D8ECB20A74768E7231BFA35650FCF55B66CA0B
Product . . . . . : ISX Download DLL
Publisher . . . . : Bjørnar Henden
Description . . . : Download DLL
Version . . . . . : 5.1.5.0
RSA Key Size . . . : 2048
LanguageID . . . . : 0
Authenticode . . . : Valid
> Bitdefender . . . : Adware.GenericKD.4278977
Fuzzy . . . . . . : 98.0
Forensic Cluster
-3.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\
-3.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\unins000.dat
-3.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\unins000.exe
-0.7s C:\Users\Jean-Marie\AppData\Local\Temp\076a09e567e148908cd068b2b435529f\
-0.6s C:\Users\Jean-Marie\AppData\Local\Temp\076a09e567e148908cd068b2b435529f\Setup.exe
-0.5s C:\ProgramData\Comodo\Cis\Quarantine\data\{0605E189-CD08-47CE-990E-09E676FD0591}
-0.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\install_left_image.bmp
0.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\isxdl.dll
2.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Chinese_pcp.ini
2.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Danish_pcp.ini
2.1s C:\ProgramData\Comodo\Cis\Quarantine\data\{9FA3C00E-0209-4E8D-8C58-72C16F629875}
2.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Dutch_pcp.ini
2.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\eng_pcp.ini
2.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\French_pcp.ini
2.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\German_pcp.ini
2.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Italian_pcp.ini
2.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Japanese_pcp.ini
2.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Norwegian_pcp.ini
3.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Portuguese_pcp.ini
3.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Spanish_pcp.ini
3.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Swedish_pcp.ini
3.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Finnish_pcp_fi.ini
3.9s C:\ProgramData\Comodo\Cis\Quarantine\data\{C13F3A27-8357-43F8-810C-17E1712AB38A}
4.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\portugese_pcp_pt.ini
4.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\russian_pcp_ru.ini
4.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\greek_pcp_el.ini
4.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\turkish_pcp_tr.ini
4.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\polish_pcp_pl.ini
4.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\korean_pcp_ko.ini
4.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\TraditionalCn_pcp_zh-tw.ini
4.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\FileList.pcp
4.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\RegList.pcp
4.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\xmllite.dll
4.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\TPS.ico
5.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Chinese_uninst.ini
5.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Danish_uninst.ini
5.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Dutch_uninst.ini
5.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\eng_uninst.ini
5.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Finnish_uninst_fi.ini
5.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\French_uninst.ini
5.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\German_uninst.ini
6.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\greek_uninst_el.ini
6.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Italian_uninst.ini
6.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Japanese_uninst.ini
6.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\korean_uninst_ko.ini
6.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Norwegian_uninst.ini
6.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\polish_uninst_pl.ini
6.2s C:\ProgramData\Comodo\Cis\Quarantine\data\{B7078964-E3D7-4437-B633-E924A8BD8119}
6.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\portugese_uninst_pt.ini
6.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Portuguese_uninst.ini
6.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\russian_uninst_ru.ini
6.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\spanish_uninst.ini
6.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\swedish_uninst.ini
6.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\traditionalcn_uninst_zh-tw.ini
6.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\Turkish_uninst_tr.ini
6.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\PC Clean Plus\
6.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\PC Clean Plus\PC Clean Plus.lnk
6.9s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\PC Clean Plus\Register PC Clean Plus.lnk
7.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\PC Clean Plus\Désinstaller PC Clean Plus.lnk
7.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\PC Clean Plus\unins000.msg

C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\pccleanplus\uninstaller.exe -> Quarantined
Size . . . . . . . : 201 728 bytes
Age . . . . . . . : 0.8 days (2017-03-13 14:41:30)
Entropy . . . . . : 7.0
SHA-256 . . . . . : 298526BBEC47B34200E02C43649C4B504F88924246B7391FC17B57B53D924FE8
Needs elevation . : Yes
Product . . . . . : sdgshdgs
Publisher . . . . : sgdshdsh
Description . . . : sdfsgf
Version . . . . . : 7.5.3.0
LanguageID . . . . : 0
> Kaspersky . . . . : HEUR:Trojan.Win32.Generic
Fuzzy . . . . . . : 106.0
Forensic Cluster
-12.7s C:\Program Files\Pale Moon\{df7-76-01-b041b-a0df5-d183-5a666}\
-11.9s C:\Program Files\Pale Moon\{df7-76-01-b041b-a0df5-d183-5a666}\myçHYMyclJ.exe.config
-9.4s C:\Program Files\Pale Moon\{df7-76-01-b041b-a0df5-d183-5a666}\vKbç--38&j.exe
-9.4s C:\Program Files\Pale Moon\{df7-76-01-b041b-a0df5-d183-5a666}\vKbç--38&j.exe.config
-6.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\pccleanplus\
-2.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\pccleanplus\pccleanplus.exe
0.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\pccleanplus\uninstaller.exe
0.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\pccleanplus\uninstaller.exe.config
0.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\CLR_v2.0\UsageLogs\3D02.tmp.log

C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\WebShield[1].exe -> Deleted
Size . . . . . . . : 194 560 bytes
Age . . . . . . . : 0.8 days (2017-03-13 14:12:48)
Entropy . . . . . : 6.5
SHA-256 . . . . . : D1F4CACE438FFBE2283764B5F7B415124A6EC548CB9869BF5B5A4561D9C9C76D
> Bitdefender . . . : Gen:Variant.Zusy.216923
> Kaspersky . . . . : Trojan.Win32.Hosts2.gen
Fuzzy . . . . . . : 108.0
Forensic Cluster
-16.1s C:\Windows\Temp\AB71.tmp
-16.1s C:\Windows\Temp\ABB9.tmp
-5.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\lst[1].htm
0.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\WebShield[1].exe
0.3s C:\Windows\Temp\EBBF.tmp
3.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\brastub6ab_ftptn_inst[1].exe
3.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\WDSrvWrapper[1].exe
3.7s C:\ProgramData\Comodo\Cis\Quarantine\data\{19B59887-84A7-4D51-A1A4-8A54834881B5}

C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\OneClick2RP.exe -> Quarantined
Size . . . . . . . : 739 397 bytes
Age . . . . . . . : 2.0 days (2017-03-12 10:48:38)
Entropy . . . . . : 6.4
SHA-256 . . . . . : 04D95109E2E866B38409FB1FC2F8B1097D4D82E231CAE7BBC5254436DC0A7350
> HitmanPro . . . . : Malware
Fuzzy . . . . . . : 108.0
Forensic Cluster
-62766.7s C:\Program Files (x86)\Roadkil.Net\
-62766.6s C:\Program Files (x86)\Roadkil.Net\unins000.dat
-62766.5s C:\Program Files (x86)\Roadkil.Net\unins000.exe
-62766.3s C:\Program Files (x86)\Roadkil.Net\UnstopCpy_5_2_Win2K_UP.exe
-62766.0s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roadkil.Net\
-62765.7s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roadkil.Net\Roadkil's Unstoppable Copier.lnk
-62735.4s C:\Program Files (x86)\WinMend\File Copy\
-62735.4s C:\Program Files (x86)\WinMend\
-62735.4s C:\Program Files (x86)\WinMend\File Copy\unins000.dat
-62735.4s C:\Program Files (x86)\WinMend\File Copy\unins000.exe
-62735.0s C:\Program Files (x86)\WinMend\File Copy\FileCopy.exe
-62733.4s C:\Program Files (x86)\WinMend\File Copy\common.dll
-62732.8s C:\Program Files (x86)\WinMend\File Copy\HelpUs.dll
-62731.4s C:\Program Files (x86)\WinMend\File Copy\setting.ini
-62731.3s C:\Program Files (x86)\WinMend\File Copy\livereplace.exe
-62730.6s C:\Program Files (x86)\WinMend\File Copy\LiveUpdate.exe
-62730.1s C:\Program Files (x86)\WinMend\File Copy\basefunc.dat
-62730.1s C:\Program Files (x86)\WinMend\File Copy\basefunc.dll
-62729.4s C:\Program Files (x86)\WinMend\File Copy\basefunc.ini
-62729.2s C:\Program Files (x86)\WinMend\File Copy\checkupdate.exe
-62726.7s C:\Program Files (x86)\WinMend\File Copy\commonbase.dll
-62724.7s C:\Program Files (x86)\WinMend\File Copy\commonwnd.dll
-62723.5s C:\Program Files (x86)\WinMend\File Copy\core.dll
-62723.0s C:\Program Files (x86)\WinMend\File Copy\corem.dll
-62722.7s C:\Program Files (x86)\WinMend\File Copy\corez.dll
-62722.6s C:\Program Files (x86)\WinMend\File Copy\drag.dll
-62722.2s C:\Program Files (x86)\WinMend\File Copy\mload.dll
-62721.2s C:\Program Files (x86)\WinMend\File Copy\drsa.dll
-62721.1s C:\Program Files (x86)\WinMend\File Copy\filedown.dll
-62720.9s C:\Program Files (x86)\WinMend\File Copy\kslist.dat
-62720.9s C:\Program Files (x86)\WinMend\File Copy\language\
-62720.8s C:\Program Files (x86)\WinMend\File Copy\language\lang_French.ico
-62720.8s C:\Program Files (x86)\WinMend\File Copy\language\lang_German.ico
-62720.7s C:\Program Files (x86)\WinMend\File Copy\language\lang_Italian.ico
-62720.6s C:\Program Files (x86)\WinMend\File Copy\language\lang_Russian.ico
-62720.5s C:\Program Files (x86)\WinMend\File Copy\language\Thumbs.db
-62720.4s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\
-62720.4s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\basefunc.dll.ini
-62720.4s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\language.ini
-62720.3s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\lang_Arabic.ico
-62720.2s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\liveupdate.exe.ini
-62720.2s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\ourproducts.html
-62720.1s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\register.html
-62720.0s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\Thumbs.db
-62720.0s C:\Program Files (x86)\WinMend\File Copy\language\English\
-62720.0s C:\Program Files (x86)\WinMend\File Copy\language\English\basefunc.dll.ini
-62719.9s C:\Program Files (x86)\WinMend\File Copy\language\English\language.ini
-62719.8s C:\Program Files (x86)\WinMend\File Copy\language\English\lang_English.ico
-62719.7s C:\Program Files (x86)\WinMend\File Copy\language\English\liveupdate.exe.ini
-62719.5s C:\Program Files (x86)\WinMend\File Copy\language\English\ourproducts.html
-62719.4s C:\Program Files (x86)\WinMend\File Copy\language\English\register.html
-62719.3s C:\Program Files (x86)\WinMend\File Copy\language\English\Thumbs.db
-62719.2s C:\Program Files (x86)\WinMend\File Copy\language\Hungarian\
-62719.1s C:\Program Files (x86)\WinMend\File Copy\language\Hungarian\basefunc.dll.ini
-62719.1s C:\Program Files (x86)\WinMend\File Copy\language\Hungarian\language.ini
-62718.9s C:\Program Files (x86)\WinMend\File Copy\language\Hungarian\lang_Hungary.ico
-62718.8s C:\Program Files (x86)\WinMend\File Copy\language\Hungarian\liveupdate.exe.ini
-62718.8s C:\Program Files (x86)\WinMend\File Copy\language\Hungarian\ourproducts.html
-62718.7s C:\Program Files (x86)\WinMend\File Copy\language\Hungarian\register.html
-62718.6s C:\Program Files (x86)\WinMend\File Copy\language\Iron\
-62718.6s C:\Program Files (x86)\WinMend\File Copy\language\Iron\basefunc.dll.ini
-62718.5s C:\Program Files (x86)\WinMend\File Copy\language\Iron\language.ini
-62718.4s C:\Program Files (x86)\WinMend\File Copy\language\Iron\lang_Iran.ico
-62718.2s C:\Program Files (x86)\WinMend\File Copy\language\Iron\liveupdate.exe.ini
-62718.1s C:\Program Files (x86)\WinMend\File Copy\language\Iron\ourproducts.html
-62717.9s C:\Program Files (x86)\WinMend\File Copy\language\Iron\register.html
-62717.8s C:\Program Files (x86)\WinMend\File Copy\language\Iron\Thumbs.db
-62717.7s C:\Program Files (x86)\WinMend\File Copy\language\Persian\
-62717.7s C:\Program Files (x86)\WinMend\File Copy\language\Persian\basefunc.dll.ini
-62717.7s C:\Program Files (x86)\WinMend\File Copy\language\Persian\language.ini
-62717.6s C:\Program Files (x86)\WinMend\File Copy\language\Persian\lang_Persain.ico
-62717.4s C:\Program Files (x86)\WinMend\File Copy\language\Persian\liveupdate.exe.ini
-62717.0s C:\Program Files (x86)\WinMend\File Copy\language\Persian\ourproducts.html
-62716.6s C:\Program Files (x86)\WinMend\File Copy\language\Persian\register.html
-62716.6s C:\Program Files (x86)\WinMend\File Copy\language\Persian\Thumbs.db
-62716.4s C:\Program Files (x86)\WinMend\File Copy\language\Russia\
-62716.4s C:\Program Files (x86)\WinMend\File Copy\language\Russia\basefunc.dll.ini
-62716.2s C:\Program Files (x86)\WinMend\File Copy\language\Russia\language.ini
-62716.2s C:\Program Files (x86)\WinMend\File Copy\language\Russia\lang_Russian.ico
-62716.1s C:\Program Files (x86)\WinMend\File Copy\language\Russia\liveupdate.exe.ini
-62716.1s C:\Program Files (x86)\WinMend\File Copy\language\Russia\ourproducts.html
-62716.0s C:\Program Files (x86)\WinMend\File Copy\language\Russia\register.html
-62715.9s C:\Program Files (x86)\WinMend\File Copy\language\Russia\Thumbs.db
-62715.7s C:\Program Files (x86)\WinMend\File Copy\language\Turkish\
-62715.7s C:\Program Files (x86)\WinMend\File Copy\language\Turkish\basefunc.dll.ini
-62715.7s C:\Program Files (x86)\WinMend\File Copy\language\Turkish\language.ini
-62715.5s C:\Program Files (x86)\WinMend\File Copy\language\Turkish\lang_Turkish.ico
-62715.4s C:\Program Files (x86)\WinMend\File Copy\language\Turkish\liveupdate.exe.ini
-62715.3s C:\Program Files (x86)\WinMend\File Copy\language\Turkish\ourproducts.html
-62715.0s C:\Program Files (x86)\WinMend\File Copy\language\Turkish\register.html
-62714.9s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\
-62714.9s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\basefunc.dll.ini
-62714.8s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\language.ini
-62714.8s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\lang_Vietnamese.ico
-62714.6s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\liveupdate.exe.ini
-62714.5s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\ourproducts.html
-62714.4s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\register.html
-62714.4s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\Thumbs.db
-62714.2s C:\Program Files (x86)\WinMend\File Copy\images\
-62714.2s C:\Program Files (x86)\WinMend\File Copy\images\aboutusbg.png
-62714.0s C:\Program Files (x86)\WinMend\File Copy\images\bg.png
-62713.8s C:\Program Files (x86)\WinMend\File Copy\images\blank.gif
-62713.7s C:\Program Files (x86)\WinMend\File Copy\images\button_t_h.png
-62713.2s C:\Program Files (x86)\WinMend\File Copy\images\button_t_n.png
-62713.1s C:\Program Files (x86)\WinMend\File Copy\images\buy01_h.gif
-62713.0s C:\Program Files (x86)\WinMend\File Copy\images\buy01_n.gif
-62712.9s C:\Program Files (x86)\WinMend\File Copy\images\fb.gif
-62712.8s C:\Program Files (x86)\WinMend\File Copy\images\h2.gif
-62712.6s C:\Program Files (x86)\WinMend\File Copy\images\helpup.gif
-62712.4s C:\Program Files (x86)\WinMend\File Copy\images\iepngfix.htc
-62712.3s C:\Program Files (x86)\WinMend\File Copy\images\line01.gif
-62712.3s C:\Program Files (x86)\WinMend\File Copy\images\logo.png
-62712.2s C:\Program Files (x86)\WinMend\File Copy\images\ourproduct.gif
-62712.2s C:\Program Files (x86)\WinMend\File Copy\images\p01.gif
-62712.1s C:\Program Files (x86)\WinMend\File Copy\images\p02.gif
-62712.0s C:\Program Files (x86)\WinMend\File Copy\images\p03.gif
-62712.0s C:\Program Files (x86)\WinMend\File Copy\images\p04.gif
-62711.9s C:\Program Files (x86)\WinMend\File Copy\images\p05.gif
-62711.8s C:\Program Files (x86)\WinMend\File Copy\images\p06.gif
-62711.8s C:\Program Files (x86)\WinMend\File Copy\images\p07.gif
-62711.7s C:\Program Files (x86)\WinMend\File Copy\images\p08.gif
-62711.7s C:\Program Files (x86)\WinMend\File Copy\images\p09.gif
-62711.6s C:\Program Files (x86)\WinMend\File Copy\images\p10.gif
-62711.5s C:\Program Files (x86)\WinMend\File Copy\images\progress_bar.gif
-62711.5s C:\Program Files (x86)\WinMend\File Copy\images\progress_barbg.gif
-62711.4s C:\Program Files (x86)\WinMend\File Copy\images\tabbg01.png
-62711.3s C:\Program Files (x86)\WinMend\File Copy\images\tabbg02.png
-62711.2s C:\Program Files (x86)\WinMend\File Copy\images\tabbg03.png
-62711.1s C:\Program Files (x86)\WinMend\File Copy\images\tabtitlebg.gif
-62711.0s C:\Program Files (x86)\WinMend\File Copy\images\td01.png
-62710.8s C:\Program Files (x86)\WinMend\File Copy\images\td02.png
-62710.7s C:\Program Files (x86)\WinMend\File Copy\images\td03.png
-62710.5s C:\Program Files (x86)\WinMend\File Copy\images\td04.png
-62710.4s C:\Program Files (x86)\WinMend\File Copy\images\td05.png
-62710.1s C:\Program Files (x86)\WinMend\File Copy\images\td06.png
-62710.0s C:\Program Files (x86)\WinMend\File Copy\images\td07.png
-62710.0s C:\Program Files (x86)\WinMend\File Copy\images\td08.png
-62709.9s C:\Program Files (x86)\WinMend\File Copy\images\td09.png
-62709.7s C:\Program Files (x86)\WinMend\File Copy\images\Thumbs.db
-62709.5s C:\Program Files (x86)\WinMend\File Copy\images\title.gif
-62709.3s C:\Program Files (x86)\WinMend\File Copy\images\trackbar_bg.BMP
-62709.2s C:\Program Files (x86)\WinMend\File Copy\images\trackbar_bg.png
-62708.8s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinMend\
-62708.8s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinMend\File Copy\
-62708.4s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinMend\File Copy\File Copy.lnk
-62708.4s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinMend\File Copy\Home Page.lnk
-62708.3s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinMend\File Copy\Uninstall File Copy.lnk
-62708.3s C:\Users\Jean-Marie\Desktop\video editor pour efm du mh2mol & data copy apps for youcam 8 & photodirector 9 essentials\WinMend File Copy.lnk
-62708.1s C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WinMend File Copy.lnk
-62708.1s C:\Program Files (x86)\WinMend\File Copy\winmend.url
-62706.6s C:\Users\Jean-Marie\Desktop\1ers giveaways & cadeaux récompense après lfs ultra & 100% sécurisé finalis\Mozilla Thunderbird.lnk
-61820.9s C:\Program Files (x86)\IObit\IObit Unlocker\
-61820.9s C:\Program Files (x86)\IObit\IObit Unlocker\unins000.dat
-61820.9s C:\Program Files (x86)\IObit\
-61820.9s C:\Program Files (x86)\IObit\IObit Unlocker\unins000.exe
-61820.7s C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.exe
-61820.3s C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.dll
-61820.2s C:\Program Files (x86)\IObit\IObit Unlocker\SpecialDir.ini
-61820.2s C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll
-61820.1s C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys
-61820.0s C:\Program Files (x86)\IObit\IObit Unlocker\Language\
-61820.0s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Arabic.lng
-61820.0s C:\Program Files (x86)\IObit\IObit Unlocker\Language\ChineseSimp.lng
-61819.9s C:\Program Files (x86)\IObit\IObit Unlocker\Language\ChineseTrad.lng
-61819.9s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Czech.lng
-61819.9s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Danish.lng
-61819.8s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Dutch.lng
-61819.8s C:\Program Files (x86)\IObit\IObit Unlocker\Language\English.lng
-61819.7s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Finnish.lng
-61819.7s C:\Program Files (x86)\IObit\IObit Unlocker\Language\German.lng
-61819.7s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Hungarian.lng
-61819.6s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Italian.lng
-61819.6s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Japanese.lng
-61819.5s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Polish.lng
-61819.4s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Russian.lng
-61819.4s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Spanish.lng
-61819.4s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Swedish.lng
-61819.3s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Turkish.lng
-61819.3s C:\Program Files (x86)\IObit\IObit Unlocker\help\
-61819.3s C:\Program Files (x86)\IObit\IObit Unlocker\help\help.html
-61819.2s C:\Program Files (x86)\IObit\IObit Unlocker\help\img\
-61819.2s C:\Program Files (x86)\IObit\IObit Unlocker\help\img\1.png
-61819.1s C:\Program Files (x86)\IObit\IObit Unlocker\help\img\2.png
-61819.0s C:\Program Files (x86)\IObit\IObit Unlocker\help\img\3.png
-61818.9s C:\Program Files (x86)\IObit\IObit Unlocker\help\img\4.png
-61818.9s C:\Program Files (x86)\IObit\IObit Unlocker\help\img\5.png
-61818.8s C:\Program Files (x86)\IObit\IObit Unlocker\EULA.rtf
-61818.7s C:\Program Files (x86)\IObit\IObit Unlocker\fav.ico
-61818.5s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Unlocker\
-61818.4s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Unlocker\Désinstaller IObit Unlocker.lnk
-61818.2s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Unlocker\IObit Unlocker.lnk
-61818.2s C:\Users\Jean-Marie\Desktop\video editor pour efm du mh2mol & data copy apps for youcam 8 & photodirector 9 essentials\IObit Unlocker.lnk
-61818.2s C:\ProgramData\IObit\IObit Unlocker\
-61818.2s C:\ProgramData\IObit\IObit Unlocker\IObitUnlocker.ini
-61818.2s C:\ProgramData\IObit\
-61813.0s C:\Program Files (x86)\IObit\IObit Unlocker\unins000.msg
-61813.0s C:\ProgramData\IObit\IObit Unlocker\Main.ini
-61805.8s C:\Program Files (x86)\IObit\IObit Unlocker\update.ini
-61794.6s C:\Program Files\Ultracopier\
-61794.6s C:\Program Files\Ultracopier\ultracopier.exe
-61794.0s C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ultracopier\
-61793.9s C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ultracopier\Ultracopier.lnk
-61793.9s C:\Program Files\Ultracopier\COPYING.txt
-61793.8s C:\Program Files\Ultracopier\Qt5Core.dll
-61791.7s C:\Program Files\Ultracopier\Qt5Gui.dll
-61790.4s C:\Program Files\Ultracopier\Qt5Network.dll
-61789.6s C:\Program Files\Ultracopier\Qt5Widgets.dll
-61787.1s C:\Program Files\Ultracopier\Qt5Xml.dll
-61787.0s C:\Program Files\Ultracopier\README.txt
-61787.0s C:\Program Files\Ultracopier\libgcc_s_seh-1.dll
-61786.9s C:\Program Files\Ultracopier\libstdc++-6.dll
-61786.6s C:\Program Files\Ultracopier\libwinpthread-1.dll
-61786.5s C:\Program Files\Ultracopier\CopyEngine\
-61786.5s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\
-61786.5s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\copyEngine.dll
-61786.2s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\informations-rsync.xml
-61786.2s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\informations.xml
-61786.2s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ar\
-61786.2s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ar\translation.qm
-61786.2s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\
-61786.0s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\de\
-61786.0s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\de\translation.qm
-61786.0s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\el\
-61786.0s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\el\translation.qm
-61786.0s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\en\
-61786.0s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\en\translation.qm
-61786.0s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\es\
-61786.0s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\es\translation.qm
-61785.9s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\fr\
-61785.9s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\fr\translation.qm
-61785.9s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\hi\
-61785.9s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\hi\translation.qm
-61785.9s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\hu\
-61785.9s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\hu\translation.qm
-61785.9s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\id\
-61785.9s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\id\translation.qm
-61785.9s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\it\
-61785.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\it\translation.qm
-61785.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ja\
-61785.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ja\translation.qm
-61785.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ko\
-61785.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ko\translation.qm
-61785.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\nl\
-61785.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\nl\translation.qm
-61785.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\no\
-61785.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\no\translation.qm
-61785.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\pl\
-61785.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\pl\translation.qm
-61785.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\pt\
-61785.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\pt\translation.qm
-61785.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ru\
-61785.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ru\translation.qm
-61785.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\th\
-61785.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\th\translation.qm
-61785.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\tr\
-61785.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\tr\translation.qm
-61785.7s C:\Program Files\Ultracopier\Languages\
-61785.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\zh\
-61785.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\zh\translation.qm
-61785.7s C:\Program Files\Ultracopier\Languages\ar\
-61785.7s C:\Program Files\Ultracopier\Languages\ar\flag.png
-61785.6s C:\Program Files\Ultracopier\Languages\ar\informations.xml
-61785.6s C:\Program Files\Ultracopier\Languages\ar\qt.qm
-61785.6s C:\Program Files\Ultracopier\Languages\ar\translation.qm
-61785.6s C:\Program Files\Ultracopier\Languages\de\
-61785.6s C:\Program Files\Ultracopier\Languages\de\flag.png
-61785.6s C:\Program Files\Ultracopier\Languages\de\informations.xml
-61785.6s C:\Program Files\Ultracopier\Languages\de\translation.qm
-61785.6s C:\Program Files\Ultracopier\Languages\el\
-61785.5s C:\Program Files\Ultracopier\Languages\el\flag.png
-61785.5s C:\Program Files\Ultracopier\Languages\el\informations.xml
-61785.5s C:\Program Files\Ultracopier\Languages\el\translation.qm
-61785.5s C:\Program Files\Ultracopier\Languages\es\
-61785.5s C:\Program Files\Ultracopier\Languages\es\flag.png
-61785.5s C:\Program Files\Ultracopier\Languages\es\informations.xml
-61785.5s C:\Program Files\Ultracopier\Languages\es\qt.qm
-61785.5s C:\Program Files\Ultracopier\Languages\es\translation.qm
-61785.5s C:\Program Files\Ultracopier\Languages\fr\
-61785.4s C:\Program Files\Ultracopier\Languages\fr\flag.png
-61785.4s C:\Program Files\Ultracopier\Languages\fr\informations.xml
-61785.4s C:\Program Files\Ultracopier\Languages\fr\qt.qm
-61785.4s C:\Program Files\Ultracopier\Languages\fr\translation.qm
-61785.4s C:\Program Files\Ultracopier\Languages\hi\
-61785.4s C:\Program Files\Ultracopier\Languages\hi\flag.png
-61785.4s C:\Program Files\Ultracopier\Languages\hi\informations.xml
-61785.4s C:\Program Files\Ultracopier\Languages\hi\translation.qm
-61785.4s C:\Program Files\Ultracopier\Languages\hu\
-61785.3s C:\Program Files\Ultracopier\Languages\hu\flag.png
-61785.3s C:\Program Files\Ultracopier\Languages\hu\informations.xml
-61785.3s C:\Program Files\Ultracopier\Languages\hu\translation.qm
-61785.3s C:\Program Files\Ultracopier\Languages\id\
-61785.3s C:\Program Files\Ultracopier\Languages\id\flag.png
-61785.3s C:\Program Files\Ultracopier\Languages\id\informations.xml
-61785.3s C:\Program Files\Ultracopier\Languages\id\translation.qm
-61785.3s C:\Program Files\Ultracopier\Languages\it\
-61785.3s C:\Program Files\Ultracopier\Languages\it\flag.png
-61785.3s C:\Program Files\Ultracopier\Languages\it\informations.xml
-61785.3s C:\Program Files\Ultracopier\Languages\it\translation.qm
-61785.3s C:\Program Files\Ultracopier\Languages\ja\
-61785.2s C:\Program Files\Ultracopier\Languages\ja\flag.png
-61785.2s C:\Program Files\Ultracopier\Languages\ja\informations.xml
-61785.2s C:\Program Files\Ultracopier\Languages\ja\qt.qm
-61785.1s C:\Program Files\Ultracopier\Languages\ja\translation.qm
-61785.1s C:\Program Files\Ultracopier\Languages\ko\
-61785.1s C:\Program Files\Ultracopier\Languages\ko\flag.png
-61785.1s C:\Program Files\Ultracopier\Languages\ko\informations.xml
-61785.1s C:\Program Files\Ultracopier\Languages\ko\qt.qm
-61785.0s C:\Program Files\Ultracopier\Languages\ko\translation.qm
-61785.0s C:\Program Files\Ultracopier\Languages\nl\
-61785.0s C:\Program Files\Ultracopier\Languages\nl\flag.png
-61785.0s C:\Program Files\Ultracopier\Languages\nl\informations.xml
-61785.0s C:\Program Files\Ultracopier\Languages\nl\translation.qm
-61785.0s C:\Program Files\Ultracopier\Languages\no\
-61785.0s C:\Program Files\Ultracopier\Languages\no\flag.png
-61785.0s C:\Program Files\Ultracopier\Languages\no\informations.xml
-61785.0s C:\Program Files\Ultracopier\Languages\no\translation.qm
-61785.0s C:\Program Files\Ultracopier\Languages\pl\
-61785.0s C:\Program Files\Ultracopier\Languages\pl\flag.png
-61785.0s C:\Program Files\Ultracopier\Languages\pl\informations.xml
-61785.0s C:\Program Files\Ultracopier\Languages\pl\qt.qm
-61784.9s C:\Program Files\Ultracopier\Languages\pl\translation.qm
-61784.9s C:\Program Files\Ultracopier\Languages\pt\
-61784.9s C:\Program Files\Ultracopier\Languages\pt\flag.png
-61784.9s C:\Program Files\Ultracopier\Languages\pt\informations.xml
-61784.9s C:\Program Files\Ultracopier\Languages\pt\qt.qm
-61784.8s C:\Program Files\Ultracopier\Languages\pt\translation.qm
-61784.8s C:\Program Files\Ultracopier\Languages\ru\
-61784.8s C:\Program Files\Ultracopier\Languages\ru\flag.png
-61784.8s C:\Program Files\Ultracopier\Languages\ru\informations.xml
-61784.7s C:\Program Files\Ultracopier\Languages\ru\qt.qm
-61784.7s C:\Program Files\Ultracopier\Languages\ru\translation.qm
-61784.7s C:\Program Files\Ultracopier\Languages\th\
-61784.7s C:\Program Files\Ultracopier\Languages\th\flag.png
-61784.7s C:\Program Files\Ultracopier\Languages\th\informations.xml
-61784.7s C:\Program Files\Ultracopier\Languages\th\translation.qm
-61784.7s C:\Program Files\Ultracopier\Languages\tr\
-61784.7s C:\Program Files\Ultracopier\Languages\tr\flag.png
-61784.7s C:\Program Files\Ultracopier\Languages\tr\informations.xml
-61784.7s C:\Program Files\Ultracopier\Languages\tr\translation.qm
-61784.7s C:\Program Files\Ultracopier\Languages\zh\
-61784.7s C:\Program Files\Ultracopier\Languages\zh\flag.png
-61784.7s C:\Program Files\Ultracopier\Listener\catchcopy-v0002\
-61784.7s C:\Program Files\Ultracopier\Listener\catchcopy-v0002\informations.xml
-61784.7s C:\Program Files\Ultracopier\Languages\zh\informations.xml
-61784.7s C:\Program Files\Ultracopier\Languages\zh\translation.qm
-61784.7s C:\Program Files\Ultracopier\Listener\
-61784.7s C:\Program Files\Ultracopier\Listener\catchcopy-v0002\listener.dll
-61784.7s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\
-61784.7s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\catchcopy32.dll
-61784.7s C:\Program Files\Ultracopier\PluginLoader\
-61784.6s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\catchcopy64.dll
-61784.5s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\informations.xml
-61784.5s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\pluginLoader.dll
-61784.5s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\
-61784.5s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ar\
-61784.5s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ar\translation.qm
-61784.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\de\
-61784.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\de\translation.qm
-61784.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\el\
-61784.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\el\translation.qm
-61784.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\en\
-61784.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\en\translation.qm
-61784.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\es\
-61784.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\es\translation.qm
-61784.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\fr\
-61784.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\fr\translation.qm
-61784.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\hi\
-61784.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\hi\translation.qm
-61784.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\hu\
-61784.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\hu\translation.qm
-61784.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\id\
-61784.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\id\translation.qm
-61784.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\it\
-61784.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\it\translation.qm
-61784.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ja\
-61784.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ja\translation.qm
-61784.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ko\
-61784.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ko\translation.qm
-61784.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\nl\
-61784.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\nl\translation.qm
-61784.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\no\
-61784.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\no\translation.qm
-61784.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\pl\
-61784.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\pl\translation.qm
-61784.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\pt\
-61784.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\pt\translation.qm
-61784.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ru\
-61784.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ru\translation.qm
-61784.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\th\
-61784.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\th\translation.qm
-61784.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\tr\
-61784.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\tr\translation.qm
-61784.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\zh\
-61784.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\zh\translation.qm
-61784.2s C:\Program Files\Ultracopier\SessionLoader\
-61784.2s C:\Program Files\Ultracopier\SessionLoader\Windows\
-61784.2s C:\Program Files\Ultracopier\SessionLoader\Windows\informations.xml
-61784.2s C:\Program Files\Ultracopier\SessionLoader\Windows\sessionLoader.dll
-61784.1s C:\Program Files\Ultracopier\Themes\
-61784.1s C:\Program Files\Ultracopier\Themes\Oxygen\
-61784.1s C:\Program Files\Ultracopier\Themes\Oxygen\informations.xml
-61784.1s C:\Program Files\Ultracopier\Themes\Oxygen\interface.dll
-61783.9s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\
-61783.9s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ar\
-61783.9s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ar\translation.qm
-61783.9s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\de\
-61783.9s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\de\translation.qm
-61783.9s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\el\
-61783.9s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\el\translation.qm
-61783.8s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\en\
-61783.8s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\en\translation.qm
-61783.8s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\es\
-61783.8s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\es\translation.qm
-61783.8s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\fr\
-61783.8s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\fr\translation.qm
-61783.8s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\hi\
-61783.8s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\hi\translation.qm
-61783.8s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\hu\
-61783.8s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\hu\translation.qm
-61783.7s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\id\
-61783.7s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\id\translation.qm
-61783.7s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\it\
-61783.7s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\it\translation.qm
-61783.7s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ja\
-61783.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ja\translation.qm
-61783.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ko\
-61783.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ko\translation.qm
-61783.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\nl\
-61783.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\nl\translation.qm
-61783.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\no\
-61783.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\no\translation.qm
-61783.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\pl\
-61783.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\pl\translation.qm
-61783.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\pt\
-61783.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\pt\translation.qm
-61783.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ru\
-61783.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ru\translation.qm
-61783.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\th\
-61783.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\th\translation.qm
-61783.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\tr\
-61783.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\tr\translation.qm
-61783.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\zh\
-61783.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\zh\translation.qm
-61783.5s C:\Program Files\Ultracopier\qt-plugins\
-61783.5s C:\Program Files\Ultracopier\qt-plugins\platforms\
-61783.5s C:\Program Files\Ultracopier\qt-plugins\platforms\qwindows.dll
-61775.4s C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ultracopier\Uninstall.lnk
-61775.4s C:\Program Files\Ultracopier\uninst.exe
-10192.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\
-10192.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\unins000.dat
-10192.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\unins000.exe
-10191.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\
-10191.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\0.png
-10191.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\1.png
-10191.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\2.png
-10191.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\3.png
-10191.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\4.png
-10191.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\5.png
-10191.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\6.png
-10191.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\7.png
-10191.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\8.png
-10191.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\9.png
-10191.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\account_disable.png
-10191.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\account_hover.png
-10191.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\account_normal.png
-10191.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\account_press.png
-10191.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\activation.png
-10191.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\activation_click.png
-10191.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\activation_disable.png
-10191.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\activation_over.png
-10191.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\active_leftdays.png
-10191.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\ArrowL.png
-10191.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\arrowU.png
-10191.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\arrow_down.png
-10191.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\arrow_up.png
-10191.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\blink.gif
-10191.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\buy.png
-10191.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\buy_click.png
-10191.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\buy_disable.png
-10191.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\buy_over.png
-10191.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\checkbox_no.png
-10191.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\checkbox_semi_election.png
-10191.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\checkbox_yes.png
-10191.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\close.png
-10191.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\close_disable.png
-10191.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\close_hover.png
-10191.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\close_normal.png
-10190.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\close_press.png
-10190.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\complete_normal.png
-10190.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\defaultFolder.png
-10190.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\disconnect.png
-10190.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon.ico
-10190.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_about_down.png
-10190.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_disable.png
-10190.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_folder_disable.png
-10190.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_folder_hover.png
-10190.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_folder_normal.png
-10190.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_folder_press.png
-10190.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_hover.png
-10190.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_normal.png
-10190.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_press.png
-10190.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_attribute_disable.png
-10190.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_attribute_hover.png
-10190.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_attribute_nomral.png
-10190.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_attribute_normal.png
-10190.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_attribute_press.png
-10190.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_cloud.png
-10190.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_cloud_1.png
-10190.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_cloud_active.png
-10190.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_cloud_active_1.png
-10190.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_cloud_hover.png
-10190.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_cloud_press.png
-10190.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_computer.png
-10190.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_computer_1.png
-10190.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_computer_active.png
-10190.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_computer_active_1.png
-10190.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_computer_hover.png
-10190.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_computer_press.png
-10190.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_create.png
-10190.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_create_down.png
-10190.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_create_hover.png
-10190.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_download_disable.png
-10189.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_download_hover.png
-10189.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_download_normal.png
-10189.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_download_press.png
-10189.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_ftp.png
-10189.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_ftp_1.png
-10189.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_ftp_active.png
-10189.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_ftp_active_1.png
-10189.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_ftp_hover.png
-10189.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_ftp_press.png
-10189.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_help_down.png
-10189.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_logs_down.png
-10189.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_setting.png
-10189.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_settings.png
-10189.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_setting_down.png
-10189.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_setting_hover.png
-10189.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_disable.png
-10189.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_hover.png
-10189.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_left_hover.png
-10189.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_left_normal.png
-10189.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_left_press.png
-10189.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_left_s_hover.png
-10189.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_left_s_normal.png
-10189.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_left_s_press.png
-10189.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_normal.png
-10189.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_press.png
-10189.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_right_hover.png
-10189.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_right_normal.png
-10189.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_right_press.png
-10189.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_right_s_hover.png
-10189.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_right_s_normal.png
-10189.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_right_s_press.png
-10189.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_s_disable.png
-10189.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_s_hover.png
-10189.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_s_normal.png
-10189.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_s_press.png
-10189.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_upgrade_down.png
-10189.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_arrow1_close_hover.png
-10188.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_arrow1_open.png
-10188.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_arrow1_open_hover.png
-10188.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_arrow_open_hover.png
-10188.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_cloud.png
-10188.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_cloud_hover.png
-10188.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_computer.png
-10188.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_computer_hover.png
-10188.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_ftp.png
-10188.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_ftp_hover.png
-10188.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login_cloud.png
-10188.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login_cloud_green.png
-10188.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login_ftp.png
-10188.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login_ftp_green.png
-10188.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\logo_title.png
-10188.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_disable.png
-10188.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_hover.png
-10188.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_normal.png
-10188.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_press.png
-10188.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_restore_disable.png
-10188.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_restore_hover.png
-10188.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_restore_normal.png
-10188.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_restore_press.png
-10188.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\minimize_disable.png
-10188.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\minimize_hover.png
-10188.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\minimize_normal.png
-10188.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\minimize_press.png
-10188.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\pause_disable.png
-10188.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\pause_hover.png
-10188.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\pause_normal.png
-10188.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\pause_press.png
-10188.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\radio_no_hover.png
-10188.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\radio_no_normal.png
-10188.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\radio_no_press.png
-10188.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\radio_no_press_.png
-10188.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\radio_yes_hover.png
-10188.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\radio_yes_normal.png
-10188.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\radio_yes_press.png
-10188.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\select_path_cloud.png
-10187.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\select_path_computer.png
-10187.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\select_path_ftp.png
-10187.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\start.png
-10187.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\start_disable.png
-10187.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\start_hover.png
-10187.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\start_loading.gif
-10187.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\start_normal.png
-10187.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\start_press.png
-10187.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\switch_off.png
-10187.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\switch_on.png
-10187.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow.png
-10187.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_hover.png
-10187.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_left.png
-10187.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_left_hover.png
-10187.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_left_press.png
-10187.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_press.png
-10187.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_right.png
-10187.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_right_hover.png
-10187.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_right_press.png
-10187.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\sync_complete.png
-10187.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\sync_error.png
-10187.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\sync_go.png
-10187.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\sync_lock.png
-10187.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\tray_setting_disable.png
-10187.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\tray_setting_hover.png
-10187.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\tray_setting_normal.png
-10187.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\tray_setting_press.png
-10187.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\
-10187.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\1.png
-10187.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\10.png
-10187.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\11.png
-10187.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\12.png
-10187.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\13.png
-10187.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\14.png
-10187.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\15.png
-10187.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\16.png
-10187.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\17.png
-10187.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\18.png
-10187.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\19.png
-10186.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\2.png
-10186.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\20.png
-10186.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\3.png
-10186.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\4.png
-10186.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\5.png
-10186.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\6.png
-10186.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\7.png
-10186.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\8.png
-10186.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\9.png
-10186.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\
-10186.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\1.png
-10186.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\10.png
-10186.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\11.png
-10186.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\12.png
-10186.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\13.png
-10186.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\14.png
-10186.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\15.png
-10186.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\16.png
-10186.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\17.png
-10186.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\18.png
-10186.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\19.png
-10186.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\2.png
-10186.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\20.png
-10186.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\3.png
-10186.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\4.png
-10186.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\5.png
-10186.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\6.png
-10186.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\7.png
-10186.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\8.png
-10186.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\9.png
-10186.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\
-10186.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0001.png
-10186.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0002.png
-10186.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0003.png
-10186.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0004.png
-10186.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0005.png
-10186.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0006.png
-10186.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0007.png
-10185.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0008.png
-10185.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0009.png
-10185.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0010.png
-10185.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0011.png
-10185.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0012.png
-10185.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0013.png
-10185.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0014.png
-10185.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0015.png
-10185.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0016.png
-10185.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0017.png
-10185.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0018.png
-10185.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0019.png
-10185.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0020.png
-10185.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0021.png
-10185.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0022.png
-10185.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0023.png
-10185.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0024.png
-10185.5s C:\Users\Jean-Marie\AppData\Roaming\eufsc\
-10185.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\
-10185.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\fsmainui.qm
-10185.5s C:\Users\Jean-Marie\AppData\Roaming\eufsc\canrun.data
-10185.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\string\
-10185.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\string\errorindex.ini
-10185.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\string\error_eu.ini
-10185.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\string\url.ini
-10185.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\string\web_eu.ini
-10185.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\BPQtLib.dll
-10185.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\cacerts.txt
-10185.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\ComSetup.exe
-10184.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\ComSetupx64.exe
-10184.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EaseUSEverySyncCache.exe
-10184.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\errReport.exe
-10183.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\ESLoadService.exe
-10183.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EUActive.dll
-10183.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EuActiveOnline.dll
-10183.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EuFileSyncLive.exe
-10182.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EuFileSyncLive.exe.config
-10182.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EUFyncFtp.dll
-10182.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EuNetDetect.exe
-10182.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EuPipe.dll
-10182.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EuShlAgent.dll
-10181.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EUSyncExtMenu.dll
-10181.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EUSyncExtMenux64.dll
-10181.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EverySync.exe
-10181.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EverySyncExplorerOverlay.dll
-10180.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EverySyncExplorerOverlayX64.dll
-10180.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\fscdb.dll
-10180.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\fscLog.dll
-10180.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\FSyncCC.dll
-10179.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\FSyncCCProxy.dll
-10179.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\GatherHistroySyncTask.exe
-10179.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\GatherHistroySyncTaskX64.exe
-10179.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\GDStorage.exe
-10178.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\icudt52.dll
-10175.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\icuin52.dll
-10174.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\icuuc52.dll
-10174.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\idfield
-10174.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\libeay32.dll
-10174.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\Microsoft.Live.dll
-10173.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\Microsoft.VC90.CRT.manifest
-10173.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\msvcm90.dll
-10173.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\msvcp120.dll
-10173.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\msvcp90.dll
-10173.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\msvcr120.dll
-10173.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\msvcr90.dll
-10173.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\python27.dll
-10172.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\python27.zip
-10170.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\Qt5Core.dll
-10169.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\Qt5Gui.dll
-10168.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\Qt5Widgets.dll
-10167.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\sqlite.dll
-10167.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\ssleay32.dll
-10167.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\StorageMgr.dll
-10166.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\uexper.dll
-10166.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\uexper.ini
-10166.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\uexperice.exe
-10166.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\uiconfig
-10166.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\UpdateInfo.dll
-10166.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\
-10166.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\bz2.pyd
-10166.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\dropbox.egg
-10166.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\pyexpat.pyd
-10165.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\select.pyd
-10165.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\sqlite3.dll
-10165.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\tcl85.dll
-10165.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\tclpip85.dll
-10165.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\tk85.dll
-10165.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\unicodedata.pyd
-10164.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\winsound.pyd
-10164.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_bsddb.pyd
-10164.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_ctypes.pyd
-10164.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_ctypes_test.pyd
-10164.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_elementtree.pyd
-10164.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_hashlib.pyd
-10164.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_msi.pyd
-10164.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_multiprocessing.pyd
-10164.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_socket.pyd
-10164.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_sqlite3.pyd
-10164.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_ssl.pyd
-10163.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_testcapi.pyd
-10163.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_tkinter.pyd
-10163.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\iconengines\
-10163.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\iconengines\qsvgicon.dll
-10163.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\imageformats\
-10163.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\imageformats\qgif.dll
-10163.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\imageformats\qico.dll
-10163.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\platforms\
-10163.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\platforms\qminimal.dll
-10163.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\platforms\qoffscreen.dll
-10163.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\platforms\qwindows.dll
-10162.6s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS EverySync 3.0\
-10161.8s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS EverySync 3.0\EaseUS EverySync 3.0.lnk
-10161.7s C:\Users\Jean-Marie\Desktop\location 1 tache gratuite copie auto youcam 8\EaseUS EverySync 3.0.lnk
-10161.5s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS EverySync 3.0\Uninstall EaseUS EverySync 3.0.lnk
-10161.5s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS EverySync 3.0\Visit EaseUS on the Web.url
-10161.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\unins000.msg
-10152.8s C:\Users\Jean-Marie\AppData\Roaming\eufsc\template.dat
-10152.7s C:\Users\Jean-Marie\AppData\Roaming\eufsc\eufscdb.db
-10145.0s C:\Users\Jean-Marie\AppData\Roaming\eufsc\uexper.ini
-10144.8s C:\Users\Jean-Marie\AppData\Roaming\eufsc\idfield
-10144.6s C:\Users\Jean-Marie\AppData\Roaming\eufsc\easeusue.log
-10129.2s C:\Users\Jean-Marie\Desktop\location 1 tache gratuite copie auto youcam 8\
-187.9s C:\Users\Jean-Marie\Desktop\Réinitialisation d'internet.bat
-187.8s C:\Users\Jean-Marie\Desktop\réparation internet.txt
-187.7s C:\Users\Jean-Marie\Desktop\autres applications\DAEMON Tools Lite.lnk
-187.6s C:\Users\Jean-Marie\Desktop\autres applications\Dashlane.lnk
-187.6s C:\Users\Jean-Marie\Desktop\autres applications\Free Download Manager 5.lnk
-187.6s C:\Users\Jean-Marie\Desktop\autres applications\Free Partition Manager.lnk
-187.5s C:\Users\Jean-Marie\Desktop\autres applications\OUTDATEfighter.lnk
-187.5s C:\Users\Jean-Marie\Desktop\autres applications\PASSWORDfighter.lnk
-187.2s C:\Users\Jean-Marie\Desktop\autres applications\Software Informer.lnk
-187.2s C:\Users\Jean-Marie\Desktop\autres applications\Software Update Pro.lnk
-186.9s C:\Users\Jean-Marie\Desktop\autres applications\Video Watermark Pro.lnk
-186.9s C:\Users\Jean-Marie\Desktop\autres applications\WinRAR.lnk
-186.7s C:\Users\Jean-Marie\Desktop\autres applications\ZHPCleaner.lnk
-186.7s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\
-186.7s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\240 e de plus à payer avec le 1ère logiciel Cewbé d (1).txt
-186.7s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\240 e de plus à payer avec le 1ère logiciel Cewbé d (1)_txt.zip
-186.6s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\240 e de plus à payer avec le 1ère logiciel Cewbé d.txt
-186.6s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\240 e de plus à payer avec le 1ère logiciel Cewbé d_txt.zip
-186.6s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\achats ecb janv 2016.txt
-186.5s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\clés de lic rebit saveme et dt pro 7.txt
-186.5s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\Demande D'aide 5 PC micro-astuces.txt
-186.4s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\Me, Myself and I (Beyoncé song).epub
-186.4s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\Rebit 5 Et Daemon Tools Pro 7 Licenses.txt
-185.1s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\rebit5_W8.1_AQFR.exe
-176.7s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\rebitpro-setup-5.1.3001.14505.exe
-161.1s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\rebitpro-setup-5.1.3001.14505_exe.zip
-141.0s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\rebitpro-setup-browser-5.1.3001.exe
-131.2s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\rebitpro-setup-browser-5.1.3001_exe.zip
-123.4s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\topic pc 1.rtf
-123.3s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\topic pc 2.rtf
-123.3s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\topic pc 3 à 5.rtf
-123.2s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\
-123.2s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\Demande D'aide 5 PC micro-astuces.txt
-123.2s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\topic pc 1.rtf
-123.1s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\topic pc 2.rtf
-123.1s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\topic pc 3 à 5.rtf
-123.1s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prél PC 3-4-5\
-123.1s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prél PC 3-4-5\AdsFix.txt
-123.0s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prél PC 3-4-5\Pre_Scan.txt
-122.8s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prél PC 3-4-5\UsbFix_Report.txt
-121.7s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\
-121.7s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\AdwCleaner[C0].txt
-121.6s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\Look_my_hardware.txt
-121.6s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\mbam application rapport by malwarebytes.txt
-121.5s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\QuickDiag.txt
-121.4s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\RKreport_DEL_01202017_205524.log
-121.2s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\UsbFix_Report.txt
-120.4s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\ZHPDiag.txt
-120.4s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 2\
-120.3s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 2\Pre_Scan.txt
-120.3s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 2\UsbFix [Clean 1] DESKTOP-CGKKC4S.txt
-120.2s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports prélim pc 3 tour compaq remix\
-120.2s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports prélim pc 3 tour compaq remix\AdsFix.txt
-120.0s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports prélim pc 3 tour compaq remix\UsbFix_Report 22 1 17 tour compaq remix.txt
-119.0s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\Win 7 tools\
-118.7s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\Win 7 tools\look-my-hardware_2_02.01.17.1.exe
-118.0s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\Win 7 tools\quickdiag_3_23.01.17.4.exe
-117.2s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\Win 7 tools\RepairDNS.exe
-116.4s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\Win 7 tools\ResetBrowser.exe
-116.1s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\
-116.1s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\Copy Handler.lnk
-116.0s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\ExtremeCopy Pro.lnk
-116.0s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\FastCopy.lnk
-115.9s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\MiniCopier.lnk
-115.9s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\Roadkil's Unstoppable Copier.lnk
-115.9s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\TeraCopy.lnk
-115.8s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\WinMend File Copy.lnk
-115.8s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\WinRoboCopy.lnk
-115.8s C:\Users\Jean-Marie\Desktop\desktop cleaner - barr - pour 1ère image bng after lfsu & 100%S f du 31 janv\
-115.8s C:\Users\Jean-Marie\Desktop\desktop cleaner - barr - pour 1ère image bng after lfsu & 100%S f du 31 janv\CyberLink WaveEditor 2.lnk
-115.8s C:\Users\Jean-Marie\Desktop\desktop cleaner - barr - pour 1ère image bng after lfsu & 100%S f du 31 janv\desktop.ini
-115.7s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\
-115.7s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\
-113.7s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\42ustcdn.exe
-113.5s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\adwcleaner_6.043.exe
-112.4s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\Appsdiagnostic10.diagcab
-112.3s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\auto-SFC.zip
-112.3s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\bluescreenview-x64.zip
-112.2s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\bluescreenview.zip
-112.1s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\chrome_cleanup_tool.exe
-111.6s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\ComIntRep_2852.zip
-107.7s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\ComIntRep_2852_Setup.exe
-107.1s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\dbr-1.3.0.0(2).zip
-106.8s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\dbr-1.3.0.0.zip
-106.0s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\delfix_1.013.exe
-105.6s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\FGdabWZafsB_The-Restore-Point-Créator.rar
-105.1s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\FRST.exe
-99.3s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\FRST64.exe
-98.1s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\FSS.exe
-97.8s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\gmer(2).zip
-97.6s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\gmer(3).zip
-97.4s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\gmer.zip
-97.1s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\guw-guide-utile-windows_1.886.zip
-94.4s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\hdhacker.zip
-93.6s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\iExplore.exe
-93.2s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\JRT(2).exe
-87.4s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\JRT.exe
-86.6s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\loadtool_7.0.0.exe
-58.8s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\logonfix_1.1.exe
-52.4s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\mb3-setup-consumer-3.0.6.1469(2).exe
-30.0s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\mb3-setup-consumer-3.0.6.1469.exe
-16.6s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\mbae-setup-1.09.1.1334.exe
-14.4s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\MBRBackup.exe
-13.8s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\MiniToolBox.exe
-9.3s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\MKV.exe
-9.0s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\NetAdapterRepair1.2(2).exe
-8.7s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\NetAdapterRepair1.2.exe
-8.5s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\NetFxRepairTool.exe
0.0s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\OneClick2RP.exe
0.4s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\Outils_depannage_Windows.pdf
0.9s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\Privacy Statement for Microsoft .NET Repair tool.rtf
0.9s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\regassassin-setup-1.03.exe
28.7s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\Report_CHKDSK.exe
29.2s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\ResetBrowser(2).exe
30.1s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\ResetBrowser.exe
30.6s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\ResetWUEng.zip
30.9s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\rkill(2).zip
32.0s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\rkill.com
33.2s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\rkill.exe
33.8s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\rkill.zip
368.9s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\Pre_Scan_Donate.lnk.vir
371.5s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\ashampoo_zip_2017_25435.exe
371.6s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\Pre_Scan_Restore.lnk.vir
378.8s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\CCleaner.lnk
378.8s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\CyberLink LabelPrint 2.5.lnk
378.9s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\DAEMON Tools Lite.lnk
378.9s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\EaseUS EverySync 3.0.lnk
379.0s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\EaseUS Todo PCTrans.lnk
379.0s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Easy Photo Unblur.lnk
379.1s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Foxit Reader.lnk
379.1s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Free Download Manager 5.lnk
379.2s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\IObit Uninstaller.lnk
379.2s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\IObit Unlocker.lnk
379.3s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Malwarebytes.lnk
379.3s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Mozilla Thunderbird.lnk
379.4s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Nero BackItUp.lnk
379.8s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\pre-scan_7_31.01.17.1.exe
380.7s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Reflect.lnk
380.8s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\SDFormatterv4.zip
383.7s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\RogueKiller.lnk.vir
386.1s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\Sophos Clean.lnk.vir
388.9s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\TeraCopy.lnk.vir
390.0s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\setup.exe
396.6s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\siinst.exe
396.6s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\TweakBit Anti-Malware.lnk.vir
400.2s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\UCheck.lnk.vir
402.6s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\UsbFix.lnk.vir
403.2s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Unlocker_Portable_1.9.2_32-64_Multilingual.exe
403.4s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\VLC media player.lnk
403.4s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\WinToUSB.lnk
405.2s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\Voodoo Shield.lnk.vir
407.7s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\Wise JetSearch.lnk.vir
410.4s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\ZHPCleaner.lnk.vir
412.8s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\ZHPDiag.lnk.vir
413.5s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\WinToUSB_Free.exe
415.3s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Wondershare Filmora.lnk
415.3s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Wondershare MePub.lnk
415.4s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\ZHPCleaner.lnk
415.4s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\SDFormatterv4\
416.2s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\SDFormatterv4\setup.exe
419.1s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\J\
419.1s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\FilesOnReboot.txt
421.6s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\R\
424.2s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\S\
424.2s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\S\Autorun.inf.vir
425.5s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\S\start.exe.vir
515.6s C:\Users\Jean-Marie\Documents\CyberLink_Power2Go_Downloader.exe
516.1s C:\Users\Jean-Marie\Documents\Disk Fixer.rtf
516.1s C:\Users\Jean-Marie\Documents\error message internet framakey salix.PNG
525.2s C:\Users\Jean-Marie\Documents\filmora_setup_full1084.exe
525.6s C:\Users\Jean-Marie\Documents\install.txt
526.1s C:\Users\Jean-Marie\Documents\KCinst.exe
526.4s C:\Users\Jean-Marie\Documents\license-gpl3.txt
526.7s C:\Users\Jean-Marie\Documents\OneDriveSetup.exe
551.4s C:\Users\Jean-Marie\Documents\PortableApps.com_Platform_Setup_14.2.paf.exe
552.8s C:\Users\Jean-Marie\Documents\processclose_2_08.01.17.1.exe
554.8s C:\Users\Jean-Marie\Documents\ResetBrowser.exe
555.3s C:\Users\Jean-Marie\Documents\setup.exe
555.5s C:\Users\Jean-Marie\Documents\setup.msi
555.7s C:\Users\Jean-Marie\Documents\starburn.txt
555.8s C:\Users\Jean-Marie\Documents\supercopier-portable-windows-x86-1.2.3.5.zip
559.8s C:\Users\Jean-Marie\Documents\supercopier-windows-x86-1.2.3.5-setup.exe
562.7s C:\Users\Jean-Marie\Documents\ultracopier-windows-x86-1.2.3.5-setup.exe
564.7s C:\Users\Jean-Marie\Documents\wilson strike - post pour son & micro sd après ultra formatage nettoyer tout le lecteur forum saamu.rtf
564.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\
564.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\
564.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Applist.dat
564.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Complete.wav
564.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Help.CHM
567.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\unin00000.exe
567.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Uninstall.txt
567.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Updata.dat
567.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Upgrade.exe
571.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\VideoWatermark.exe
571.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\
571.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\avcodec-54.dll
574.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\avdevice-54.dll
574.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\avfilter-3.dll
574.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\avformat-54.dll
575.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\avutil-52.dll
575.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\OldFilm.Dat
575.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\SDL.dll
575.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\swresample-0.dll
575.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\swscale-2.dll
575.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\
575.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\
576.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\01.gif
576.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\010.gif
576.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\011.gif
576.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\012.gif
576.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\013.gif
576.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\014.gif
576.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\015.gif
576.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\016.gif
576.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\017.gif
576.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\018.gif
576.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\019.gif
576.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\02.gif
576.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\020.gif
576.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\021.gif
576.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\022.gif
576.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\023.gif
576.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\024.gif
576.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\025.gif
576.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\026.gif
576.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\027.gif
576.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\028.gif
576.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\029.gif
576.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\03.gif
576.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\030.gif
576.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\031.gif
576.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\032.gif
576.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\033.gif
576.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\034.gif
576.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\035.gif
576.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\036.gif
577.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\037.gif
577.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\038.gif
577.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\039.gif
577.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\04.gif
577.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\040.gif
577.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\041.gif
577.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\042.gif
577.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\043.gif
577.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\044.gif
577.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\045.gif
577.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\046.gif
577.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\047.gif
577.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\048.gif
577.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\049.gif
577.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\05.gif
577.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\050.gif
577.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\051.gif
577.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\052.gif
577.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\053.gif
577.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\054.gif
577.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\055.gif
577.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\056.gif
577.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\057.gif
577.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\058.gif
577.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\059.gif
577.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\06.gif
578.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\060.gif
578.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\061.gif
578.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\062.gif
578.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\063.gif
578.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\064.gif
578.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\065.gif
578.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\066.gif
578.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\067.gif
578.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\068.gif
578.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\069.gif
578.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\07.gif
578.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\070.gif
578.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\071.gif
578.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\072.gif
578.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\073.gif
578.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\08.gif
578.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\09.gif
578.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\
578.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\01.png
578.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\02.png
578.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\03.png
578.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\04.png
578.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\05.png
578.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\06.png
578.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\07.png
578.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\08.png
578.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\09.png
578.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\10.png
579.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\11.png
579.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\12.png
579.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\13.png
579.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\14.png
579.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\15.png
579.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\
579.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\01.png
579.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\02.png
579.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\03.png
579.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\04.png
579.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\05.png
579.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\06.png
579.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\07.png
579.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\08.png
579.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\09.png
579.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\10.png
579.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\11.png
579.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\12.png
579.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\13.png
579.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\14.png
579.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\15.png
579.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\16.png
579.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\17.png
579.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\18.png
579.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\19.png
579.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\20.png
579.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\
579.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\01.png
579.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\02.png
579.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\03.png
580.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\04.png
580.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\05.png
580.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\06.png
580.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\07.png
580.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\08.png
580.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\09.png
580.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\10.png
580.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\11.png
580.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\
580.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\01.png
580.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\02.png
580.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\03.png
580.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\04.png
580.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\05.png
580.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\06.png
580.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\07.png
580.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\08.png
580.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\09.png
580.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\10.png
580.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\11.png
580.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\12.png
580.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\13.png
580.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\14.png
580.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\15.png
580.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\
580.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\01.png
580.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\02.png
581.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\03.png
581.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\04.png
581.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\05.png
581.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\06.png
581.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\07.png
581.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\08.png
581.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\09.png
581.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\10.png
581.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\11.png
581.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\12.png
581.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\13.png
581.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\14.png
581.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\15.png
581.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\16.png
581.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\
581.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\01.png
581.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\02.png
581.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\03.png
581.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\04.png
581.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\05.png
581.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\06.png
581.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\07.png
581.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\08.png
581.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\09.png
581.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\10.png
581.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\11.png
582.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\12.png
582.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\13.png
582.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\14.png
582.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\
582.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\01.png
582.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\02.png
582.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\03.png
582.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\04.png
582.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\05.png
582.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\06.png
582.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\07.png
582.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\08.png
582.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\09.png
582.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\10.png
582.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\11.png
582.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\12.png
582.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\13.png
582.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\14.png
582.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\15.png
582.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\16.png
582.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\17.png
582.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\
582.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\01.png
582.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\02.png
582.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\03.png
582.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\04.png
582.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\05.png
582.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\06.png
582.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\07.png
582.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\08.png
583.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\09.png
583.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\10.png
583.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\11.png
583.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\12.png
583.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\13.png
583.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\
583.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\01.png
583.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\02.png
583.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\03.png
583.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\04.png
583.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\05.png
583.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\06.png
583.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\07.png
583.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\08.png
583.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\09.png
583.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\10.png
583.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\11.png
583.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\12.png
583.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\13.png
583.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\14.png
583.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\15.png
583.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\16.png
583.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\17.png
583.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\18.png
583.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\19.png
583.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\User\
583.8s C:\Users\Jean-Marie\Documents\Nero BackItUp Device Backup\
583.8s C:\Users\Jean-Marie\Documents\PASSWORDfighter Passwords\
583.8s C:\Users\Jean-Marie\Documents\PASSWORDfighter Passwords\desktop.ini
583.8s C:\Users\Jean-Marie\Documents\pcmover proffessionnal license code & setup\
583.8s C:\Users\Jean-Marie\Documents\pcmover proffessionnal license code & setup\Pc tranfert v10 proffessionnal by avanquest licens.txt
583.9s C:\Users\Jean-Marie\Documents\pcmover proffessionnal license code & setup\PCmover_10_Pro_UG_FRE.pdf
588.1s C:\Users\Jean-Marie\Documents\pcmover proffessionnal license code & setup\pcmover_fr_10.exe
101357.8s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileNav_GG.png
101358.3s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileNav_FF.png
101358.7s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileNav_OP.png
101359.1s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileNav_IE.png
101359.6s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileCluff_FR.txt
101359.9s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileCluff_EN.txt
101360.4s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileIcone.ico
101360.9s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileBGSocial.png
101361.3s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileBroom.png
101361.9s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileForum.png
101362.3s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileCheck.png
101362.7s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileRapport.png
101363.4s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileTransGui.jpg
101363.9s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFilelogo-texte.png
101364.4s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileClose.png
101364.8s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileDetected.png
101365.4s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileExit-40.png
101366.3s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileInfo.png
101367.0s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFilePercent.png
101367.6s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileQuestion.png
101367.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\cc_check[2].js
101367.9s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileSearch.png
101368.3s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFilePayPal.png
101368.8s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileFB.png
101369.1s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileGP.png
101369.4s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileQuar.png
101370.0s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileExit-40.bmp
101370.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\ZHPCleaner.exe
101371.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\css[1].css
101371.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\jquery.min[2].js
101371.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\jquery-ui.min[1].js
101373.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\MQU89XM7.cookie
101373.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\font-awesome[1].css
101373.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\bootstrap.min[1].css
101374.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\bootstrap.min[1].js
101377.0s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AF4EE75E3A4ABA658C0087EB9A0BB5B_AE5D366FD4C084FC03F41D468B6EDD57
101377.0s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AF4EE75E3A4ABA658C0087EB9A0BB5B_AE5D366FD4C084FC03F41D468B6EDD57
101377.3s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\74F831100DEB0B8799203064F3E38B68
101377.3s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\74F831100DEB0B8799203064F3E38B68
101383.3s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\zhpcleaner_version[1].txt
101383.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\T3LFLKU2\traffic.getmyads[1].xml
101383.7s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D530B267735F8FA434C0E244F20BC934
101383.7s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D530B267735F8FA434C0E244F20BC934
101394.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\9OW9MNR7.cookie
101395.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\banner[1].htm
101395.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\atrk[1].js
101396.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\fontawesome-webfont[1].woff2
101396.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\Cache\6XO3B951\favicon[3].ico
101398.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\NJP7D1I5.cookie
101402.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\atrk[1].gif
101407.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\test[1].png
101407.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\affs[3].js
101409.3s C:\Users\Jean-Marie\ZHPCleaner.exe
101416.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\cc_check[3].js
101416.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\get[3].js
101440.8s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\91D45B9FD0AB831D005595625889DE9CAAECD35C
101443.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{418F29B2-07F5-11E7-BCAB-4C72B9F956A2}.dat
101446.6s C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\datareporting\archived\2017-03\1489409602203.477a2cfb-2171-47a5-ac44-1cc85aabd2ef.main.jsonlz4
101449.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\display[2].htm
101455.2s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\CDA944DF6D23F8D43AD62F67F33315E71D13F538
101466.0s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\A3C5E5085BDC426D38C288A0113E53E2E3EBE9C2
101468.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\affs[4].js
101473.8s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\A5981DF8553F27134D8D3636465D0C8786A907AA
101488.2s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\FAE8288709E1AC13EEC6B1B20505ACF75EB930F7
101489.9s C:\Users\Jean-Marie\AppData\Local\Temp\a82b526ea2f1435c89706334fa2c91ed\
101491.2s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_SS
101501.2s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\BC1720C9DD5D545A9F78C4EF02B0B2B6A09E4B63
101511.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\u[4].js
101511.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{6A24EFF8-07F5-11E7-BCAB-4C72B9F956A2}.dat
101512.5s C:\Users\Jean-Marie\AppData\Local\Temp\ba1998de128f4f7ea832954d6ab9b863\
101512.5s C:\Users\Jean-Marie\AppData\Local\Temp\ba1998de128f4f7ea832954d6ab9b863\Setup__20877.exe
101520.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\0AF54N6A.cookie
101522.3s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_SS2
101526.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\ups[1].htm
101528.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\base_css[1].css
101528.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\flash_css[1].css
101529.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\helpers[1].js
101529.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\active_button_css[1].css
101529.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\a_background[1].jpg
101529.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\dl.min[1].js
101540.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\chrome_download_hint[1].png
101540.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\chrome_arrow_anim[1].gif
101541.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\chrome_download_hint_anim[2].png
101544.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\ZDR2XME1\b8p.sqfbboutlearn[1].xml
101545.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\affs[5].js
101545.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\Cache\NB8ITU48\hdplayer_lo[2].ico
101552.0s C:\Users\Jean-Marie\AppData\Local\Temp\3420.tmp.exe
101568.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\display[3].htm
101568.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\get[1].json
101568.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\get[2].json
101572.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\0UQZ2LFD.cookie
101573.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\4SA2OOSU\www.nanoadexchange[1].xml
101580.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{8DD531AD-07F5-11E7-BCAB-4C72B9F956A2}.dat
101595.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\cc_check[3].js
101596.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\get[4].js
101606.4s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_BHO
101613.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\index[2].htm
101616.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\amipb[1].js
101626.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\videoplayer_edge_poc_v2[1].json
101633.1s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_BHO2
101644.4s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_BHO_T
101647.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\cc_check[4].js
101647.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\get[5].js
101649.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\u[1].js
101650.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{BCE99920-07F5-11E7-BCAB-4C72B9F956A2}.dat
101657.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\index[3].htm
101660.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\videoplayer_edge_poc_v2[1].json
101671.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\r[3].js
101677.5s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\ED4725678FB6E283F22BFCF30FA398CB
101677.5s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\ED4725678FB6E283F22BFCF30FA398CB
101685.7s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\1E7AFB499F0D8E4335FF705D37EAA854AC310643
101689.9s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\E2BD2F8449491269FD2B4B20FE8A2FE50DF668AF
101690.6s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_TB
101720.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{E6CB49F3-07F5-11E7-BCAB-4C72B9F956A2}.dat
101722.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\MHGNZVY4.cookie
101727.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\1[2].htm
101736.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\host[2].js
101740.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\321u11uo3&sub-id=1243241&s2=[1].htm
101757.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\all-styles[1].css
101758.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\planetfr_s[1].png
101758.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\welcome-media_s[1].png
101758.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\special-styles[1].css
101758.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\mistergagnant_s[1].png
101758.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\choisir_s[1].png
101759.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\skripte[1].js
101759.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\avis_de_bons_s[1].png
101759.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\azorica_s[1].png
101770.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\T3LFLKU2\grand-choix-produits[1].xml
101771.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\bg0[1].jpg
101771.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\80_proz_000[1].png
101776.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\CLR_v2.0\UsageLogs\myçHYMyclJ.exe.log
101776.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\store[1].htm
101777.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\get[3].json
101780.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\321u11uo3&sub-id=1243241&s2=[1].htm
101783.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\iframe[1].css
101783.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\r[2].js
101784.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\4SA2OOSU\cdncache-a.akamaihd[1].xml
101786.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{0E378DD7-07F6-11E7-BCAB-4C72B9F956A2}.dat
101808.3s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_TB2

C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\rsthosts_2.0.exe -> Quarantined
Size . . . . . . . : 353 632 bytes
Age . . . . . . . : 2.0 days (2017-03-12 10:49:51)
Entropy . . . . . : 7.9
SHA-256 . . . . . : F8B3BE0EFD0A3A59513D250285A209593284285AA168D6318C9271DB7048E7F2
> HitmanPro . . . . : Malware
Fuzzy . . . . . . : 116.0

C:\Users\Jean-Marie\Documents\ad-aware & powerdvd trial bundled with webcompanion\Ad-Aware_Setup.exe -> Quarantined
Size . . . . . . . : 449 727 bytes
Age . . . . . . . : 1.7 days (2017-03-12 18:18:24)
Entropy . . . . . : 6.6
SHA-256 . . . . . : 86B8485AC1DB168091A0CD1BE2B95B27C187ED44A16E7C2C6845900D4A9CB30B
Product . . . . . : Ad-Aware
Publisher . . . . : Software Assistant
Description . . . : Ad-Aware
Version . . . . . : 3.0.0.159
LanguageID . . . . : 0
> Kaspersky . . . . : not-a-virus:HEUR:Downloader.Win32.DownloadAsist.gen
Fuzzy . . . . . . : 103.0

C:\Users\Jean-Marie\Documents\ad-aware & powerdvd trial bundled with webcompanion\PowerDVD_Setup.exe -> Quarantined
Size . . . . . . . : 441 015 bytes
Age . . . . . . . : 1.7 days (2017-03-12 18:20:46)
Entropy . . . . . : 6.6
SHA-256 . . . . . : B9612D321C03CA7BB65BF29038B9B2680AF0EB6131E1C1538DFD18883C692231
Product . . . . . : PowerDVD
Publisher . . . . : Software Assistant
Description . . . : PowerDVD
Version . . . . . : 3.0.0.159
LanguageID . . . . : 0
> Kaspersky . . . . : not-a-virus:HEUR:Downloader.Win32.DownloadAsist.gen
Fuzzy . . . . . . : 103.0

C:\Users\Jean-Marie\Documents\udusetupsite.exe -> Deleted
Size . . . . . . . : 8 243 112 bytes
Age . . . . . . . : 2.7 days (2017-03-11 18:28:09)
Entropy . . . . . : 8.0
SHA-256 . . . . . : F252A943DD182605FA9B47172567F986E6B905D20F7CAE2A8C4E52A6F7AC3C7D
Product . . . . . : Universal Driver Updater
Publisher . . . . : universaldriverupdator.com
Description . . . : Universal Driver Updater Installation File
Version . . . . . : 1.1.0.2
RSA Key Size . . . : 2048
LanguageID . . . . : 0
Authenticode . . . : Valid
> Kaspersky . . . . : not-a-virus:RiskTool.Win32.UDU.a
> HitmanPro . . . . : App/UniUpdate-B
Fuzzy . . . . . . : 98.0

C:\WINDOWS\aead19358f7df24ddb2ea25477c1ac3c.exe -> Quarantined
Size . . . . . . . : 3 186 367 bytes
Age . . . . . . . : 0.9 days (2017-03-13 12:43:54)
Entropy . . . . . : 6.2
SHA-256 . . . . . : 8E6A31F67ABF5F1ED0435ED7B68D3C8A921252FCADF08D8224C39EDEA1FB7F75
> Kaspersky . . . . : not-a-virus:HEUR:Downloader.Win32.Wajam.gen
Fuzzy . . . . . . : 110.0
Forensic Cluster
-1.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\CLR_v4.0_32\UsageLogs\IsSing.exe.log
0.0s C:\Windows\aead19358f7df24ddb2ea25477c1ac3c.exe
3.0s C:\Users\Jean-Marie\AppData\Roaming\ZooTech.bin

C:\WINDOWS\system32\drivers\8df1bf629e6a39ef0a34133f460ff3ed.sys -> PendingDelete
Size . . . . . . . : 96 272 bytes
Age . . . . . . . : 0.9 days (2017-03-13 12:39:37)
Entropy . . . . . : 5.9
SHA-256 . . . . . : 6BB98A9BB926D303A6EEA9FA095AD2B121ECA3106D8C7BD77C9CF78B457BBBD1
Product . . . . . : 3ED5AY
Publisher . . . . : 3ED5AY
Description
Version . . . . . : 11.13.1.23
RSA Key Size . . . : 2048
LanguageID . . . . : 4105
Authenticode . . . : Valid
> Bitdefender . . . : Application.Agent.AKV
> Kaspersky . . . . : not-a-virus:NetTool.Win64.NetFilter.rb
Fuzzy . . . . . . : 97.0
Forensic Cluster
-104.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\
-104.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers.exe
-96.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\2496.tmp
-95.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy\LocalState\ContentManagementSDK\Creatives\243289\1489405081
-90.4s C:\Users\Jean-Marie\AppData\Local\Temp\nsf3AA4.tmp
-87.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\ffmpegsumo.dll
-86.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\icudtl.dat
-86.8s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\Nanazejenim[1].png
-86.8s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\BG01[1].png
-86.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\Litalatili[1].png
-86.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\Linilila[1].png
-86.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\Totavener[1].png
-85.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\Doroledol[1].png
-85.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\Jimomoromoj_logo[2].png
-85.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\FR[1].png
-84.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\Tefenece_logo_black[2].png
-84.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\Taderonadan_Y2[1].png
-84.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\Naninil[1].png
-83.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\clc[1].msi
-83.8s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\FF_logo_new[1].png
-83.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\nw.pak
-83.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\logo[2].png
-83.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\IE_logo_new[1].png
-82.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\logo[3].png
-82.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\CH_logo_new[1].png
-82.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\Yusuriyiru[1].png
-81.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\Yusuriyiru_BG[1].jpg
-81.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\Yaraheheg_11Jul16[1].png
-81.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\
-81.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\am.pak
-81.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ar.pak
-81.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\bg.pak
-81.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\bn.pak
-81.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ca.pak
-81.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\cs.pak
-81.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\da.pak
-81.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\de.pak
-81.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\el.pak
-81.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\en-GB.pak
-81.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\en-US.pak
-81.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\es-419.pak
-81.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\es.pak
-81.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\et.pak
-81.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\fa.pak
-81.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\fi.pak
-81.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\fil.pak
-81.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\fr.pak
-81.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\gu.pak
-81.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\hi.pak
-81.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\hr.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\hu.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\id.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\it.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\iw.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ja.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\kn.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ko.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\lt.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\lv.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ml.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\mr.pak
-81.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ms.pak
-81.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\Lolosobeken[1].jpg
-81.4s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\nl.pak
-81.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\no.pak
-81.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\pl.pak
-81.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\pt-BR.pak
-81.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\pt-PT.pak
-81.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ro.pak
-81.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ru.pak
-81.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\sk.pak
-81.3s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\sl.pak
-81.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\Lolosobeken_fs[2].png
-81.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\sr.pak
-81.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\sv.pak
-81.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\sw.pak
-81.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\ta.pak
-81.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\te.pak
-81.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\th.pak
-81.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\tr.pak
-81.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\uk.pak
-81.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\vi.pak
-81.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\zh-CN.pak
-81.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\locales\zh-TW.pak
-80.7s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\66B5903C22544E7D33160BECCC726D9C
-80.7s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\66B5903C22544E7D33160BECCC726D9C
-80.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\Lolosobeken_logo[2].png
-80.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\lolosobeken_mod[2].png
-80.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\lolosobeken_mod_logo[2].png
-80.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\IE_logo[1].png
-79.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\CH_logo[1].png
-79.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\FF_logo[1].png
-79.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\Wocemeta_1[1].png
-79.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\Bisli_M_Logo[1].png
-78.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\logo[4].png
-78.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\fusion_bg[3].png
-78.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\bg_v2_US[1].png
-78.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\tooltip[1].png
-77.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\logo[2].png
-77.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\Nininininon[1].png
-76.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\Mogemamameg[1].jpg
-75.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\BG[1].jpg
-75.8s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\BG_FS[2].jpg
-75.5s C:\Users\Jean-Marie\AppData\Local\Temp\74EA.tmp
-75.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\BG_FS_LONG[1].png
-75.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\BG_LONG[1].png
-74.7s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\BG_FS_TC[1].png
-74.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\BG_TC[2].png
-74.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\NOBCKTI6\BG_TT_FS[2].png
-73.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\GY81056S\Bomonobinok_CI_rg[1].png
-63.4s C:\Users\Jean-Marie\AppData\Local\Temp\A467.tmp
-51.6s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\Uninstall.exe
-51.5s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\
-49.5s C:\ProgramData\Comodo\Cis\tempscrpt\C_cmd.exe_41BF0D5329D42E48B317E47E591C98D7988A124B.bat
-47.0s C:\Users\Jean-Marie\AppData\Local\Temp\E48E.tmp
-46.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Internet Explorer\Recovery\Last Active\{A07F8687-07E1-11E7-BCAB-4C72B9F956A2}.dat
-45.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\Uninstall.lnk
-42.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-ISUQU.tmp\_isetup\
-42.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-ISUQU.tmp\_isetup\_setup64.tmp
-42.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-ISUQU.tmp\
-42.2s C:\Users\Jean-Marie\AppData\Local\Temp\is-ISUQU.tmp\_isetup\_shfoldr.dll
-41.7s C:\Users\Jean-Marie\AppData\Local\Temp\is-ISUQU.tmp\itdownload.dll
-40.2s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\AppTrailers\AppTrailers.lnk
-40.1s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\AppTrailers\storage.json
-40.0s C:\Users\Jean-Marie\AppData\Local\Temp\is-ISUQU.tmp\installer.exe.config
-37.8s C:\Windows\Installer\SourceHash{63FABE20-831D-40D0-A1F8-3373B3C5CC3A}
-34.1s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\C7FC7A22-0830-488F-98F5-7CFA62086972[1].htm
-33.8s C:\Users\Jean-Marie\AppData\Local\Temp\nsi17F6.tmp
-29.5s C:\Users\Jean-Marie\AppData\Local\Temp\is-MPAE7.tmp\_isetup\
-29.5s C:\Users\Jean-Marie\AppData\Local\Temp\is-MPAE7.tmp\_isetup\_setup64.tmp
-29.5s C:\Users\Jean-Marie\AppData\Local\Temp\is-MPAE7.tmp\
-29.5s C:\Users\Jean-Marie\AppData\Local\Temp\is-MPAE7.tmp\_isetup\_shfoldr.dll
-29.3s C:\Users\Jean-Marie\AppData\Local\Temp\is-MPAE7.tmp\itdownload.dll
-27.0s C:\Users\Jean-Marie\AppData\Local\Temp\is-MPAE7.tmp\installer.exe.config
-26.8s C:\ProgramData\Comodo\Cis\Quarantine\data\{1B37A644-1476-4E76-80ED-C8C9FE822F4F}
-23.2s C:\ProgramData\Comodo\Cis\tempscrpt\C_cmd.exe_77D8DFED1604DF137FDCC70AB8977439728D30EA.bat
-14.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\G7FL6JEI.cookie
-13.9s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\L3M2W7OX.cookie
-10.7s C:\Users\Jean-Marie\AppData\Roaming\ZHP\Quarantine\NetUtils2016.sys
-10.7s C:\Windows\System32\drivers\NetUtils2016.sys.06595d04
-9.8s C:\Windows\System32\NetUtils2016.dll
-8.4s C:\Windows\System32\sstmp\
-3.0s C:\Program Files\dc052114c37ad4b0da86805370b748a8\
-0.0s C:\Users\Jean-Marie\AppData\Local\Temp\9BCA.tmp
-0.0s C:\Program Files\dc052114c37ad4b0da86805370b748a8\2cb2ccc883184b30c94db7caedabef42
0.0s C:\Windows\System32\drivers\8df1bf629e6a39ef0a34133f460ff3ed.sys
0.4s C:\Program Files\dc052114c37ad4b0da86805370b748a8\63b25d5c033a4239a89eff506dde143b.exe
2.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\WBCDX4C7.cookie


Suspicious files ____________________________________________________________

C:\Users\Jean-Marie\AppData\Local\Temp\nsk35EA.tmp
Size . . . . . . . : 3 019 342 bytes
Age . . . . . . . : 0.8 days (2017-03-13 14:06:34)
Entropy . . . . . : 7.8
SHA-256 . . . . . : A27975E0D50F1B3172C128561EF952428EB6D31E6A5BBBF0ED119D37E79C1687
Fuzzy . . . . . . : 22.0
Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs.
The file name extension of this program is not common.
Authors name is missing in version info. This is not common to most programs.
Version control is missing. This file is probably created by an individual. This is not typical for most programs.
Time indicates that the file appeared recently on this computer.
Program contains PE structure anomalies. This is not typical for most programs.
Forensic Cluster
-12.7s C:\Users\Jean-Marie\AppData\Local\Temp\nsv449.tmp
-12.5s C:\Users\Jean-Marie\AppData\Local\Temp\nsl4F5.tmp
-7.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\66A77Bk[1]
-7.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\PAYpg0KO7[1]
-0.7s C:\Users\Jean-Marie\AppData\Local\Temp\nso32FC.tmp
-0.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\qtD3xG5[1].exe
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\nsk35EA.tmp
1.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\9lW6C9[1].exe

C:\Users\Jean-Marie\AppData\Local\Temp\nso32FC.tmp
Size . . . . . . . : 3 019 342 bytes
Age . . . . . . . : 0.8 days (2017-03-13 14:06:33)
Entropy . . . . . : 7.8
SHA-256 . . . . . : A27975E0D50F1B3172C128561EF952428EB6D31E6A5BBBF0ED119D37E79C1687
Fuzzy . . . . . . : 22.0
Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs.
The file name extension of this program is not common.
Authors name is missing in version info. This is not common to most programs.
Version control is missing. This file is probably created by an individual. This is not typical for most programs.
Time indicates that the file appeared recently on this computer.
Program contains PE structure anomalies. This is not typical for most programs.
Forensic Cluster
-12.0s C:\Users\Jean-Marie\AppData\Local\Temp\nsv449.tmp
-11.8s C:\Users\Jean-Marie\AppData\Local\Temp\nsl4F5.tmp
-6.5s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\66A77Bk[1]
-6.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\PAYpg0KO7[1]
0.0s C:\Users\Jean-Marie\AppData\Local\Temp\nso32FC.tmp
0.3s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\qtD3xG5[1].exe
0.7s C:\Users\Jean-Marie\AppData\Local\Temp\nsk35EA.tmp
2.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\9lW6C9[1].exe

C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\FRST.exe
Size . . . . . . . : 1 764 352 bytes
Age . . . . . . . : 2.0 days (2017-03-12 10:46:53)
Entropy . . . . . : 7.6
SHA-256 . . . . . : 9B6D255E0430BC5CC45FC29D3EAFF08EF375E64CDEE3BF21569B2E09FDD32A0A
Needs elevation . : Yes
Fuzzy . . . . . . : 24.0
Program has no publisher information but prompts the user for permission elevation.
Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs.
Authors name is missing in version info. This is not common to most programs.
Version control is missing. This file is probably created by an individual. This is not typical for most programs.
Time indicates that the file appeared recently on this computer.
Forensic Cluster
-62661.6s C:\Program Files (x86)\Roadkil.Net\
-62661.5s C:\Program Files (x86)\Roadkil.Net\unins000.dat
-62661.4s C:\Program Files (x86)\Roadkil.Net\unins000.exe
-62661.2s C:\Program Files (x86)\Roadkil.Net\UnstopCpy_5_2_Win2K_UP.exe
-62660.9s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roadkil.Net\
-62660.6s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roadkil.Net\Roadkil's Unstoppable Copier.lnk
-62630.3s C:\Program Files (x86)\WinMend\File Copy\
-62630.3s C:\Program Files (x86)\WinMend\
-62630.3s C:\Program Files (x86)\WinMend\File Copy\unins000.dat
-62630.3s C:\Program Files (x86)\WinMend\File Copy\unins000.exe
-62629.9s C:\Program Files (x86)\WinMend\File Copy\FileCopy.exe
-62628.3s C:\Program Files (x86)\WinMend\File Copy\common.dll
-62627.7s C:\Program Files (x86)\WinMend\File Copy\HelpUs.dll
-62626.3s C:\Program Files (x86)\WinMend\File Copy\setting.ini
-62626.2s C:\Program Files (x86)\WinMend\File Copy\livereplace.exe
-62625.5s C:\Program Files (x86)\WinMend\File Copy\LiveUpdate.exe
-62625.0s C:\Program Files (x86)\WinMend\File Copy\basefunc.dat
-62625.0s C:\Program Files (x86)\WinMend\File Copy\basefunc.dll
-62624.3s C:\Program Files (x86)\WinMend\File Copy\basefunc.ini
-62624.1s C:\Program Files (x86)\WinMend\File Copy\checkupdate.exe
-62621.6s C:\Program Files (x86)\WinMend\File Copy\commonbase.dll
-62619.6s C:\Program Files (x86)\WinMend\File Copy\commonwnd.dll
-62618.4s C:\Program Files (x86)\WinMend\File Copy\core.dll
-62617.9s C:\Program Files (x86)\WinMend\File Copy\corem.dll
-62617.6s C:\Program Files (x86)\WinMend\File Copy\corez.dll
-62617.5s C:\Program Files (x86)\WinMend\File Copy\drag.dll
-62617.1s C:\Program Files (x86)\WinMend\File Copy\mload.dll
-62616.1s C:\Program Files (x86)\WinMend\File Copy\drsa.dll
-62616.0s C:\Program Files (x86)\WinMend\File Copy\filedown.dll
-62615.8s C:\Program Files (x86)\WinMend\File Copy\kslist.dat
-62615.8s C:\Program Files (x86)\WinMend\File Copy\language\
-62615.7s C:\Program Files (x86)\WinMend\File Copy\language\lang_French.ico
-62615.7s C:\Program Files (x86)\WinMend\File Copy\language\lang_German.ico
-62615.7s C:\Program Files (x86)\WinMend\File Copy\language\lang_Italian.ico
-62615.5s C:\Program Files (x86)\WinMend\File Copy\language\lang_Russian.ico
-62615.4s C:\Program Files (x86)\WinMend\File Copy\language\Thumbs.db
-62615.3s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\
-62615.3s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\basefunc.dll.ini
-62615.3s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\language.ini
-62615.2s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\lang_Arabic.ico
-62615.1s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\liveupdate.exe.ini
-62615.1s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\ourproducts.html
-62615.0s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\register.html
-62614.9s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\Thumbs.db
-62614.9s C:\Program Files (x86)\WinMend\File Copy\language\English\
-62614.9s C:\Program Files (x86)\WinMend\File Copy\language\English\basefunc.dll.ini
-62614.8s C:\Program Files (x86)\WinMend\File Copy\language\English\language.ini
-62614.7s C:\Program Files (x86)\WinMend\File Copy\language\English\lang_English.ico
-62614.6s C:\Program Files (x86)\WinMend\File Copy\language\English\liveupdate.exe.ini
-62614.4s C:\Program Files (x86)\WinMend\File Copy\language\English\ourproducts.html
-62614.3s C:\Program Files (x86)\WinMend\File Copy\language\English\register.html
-62614.2s C:\Program Files (x86)\WinMend\File Copy\language\English\Thumbs.db
-62614.1s C:\Program Files (x86)\WinMend\File Copy\language\Hungarian\
-62614.0s C:\Program Files (x86)\WinMend\File Copy\language\Hungarian\basefunc.dll.ini
-62614.0s C:\Program Files (x86)\WinMend\File Copy\language\Hungarian\language.ini
-62613.8s C:\Program Files (x86)\WinMend\File Copy\language\Hungarian\lang_Hungary.ico
-62613.7s C:\Program Files (x86)\WinMend\File Copy\language\Hungarian\liveupdate.exe.ini
-62613.7s C:\Program Files (x86)\WinMend\File Copy\language\Hungarian\ourproducts.html
-62613.6s C:\Program Files (x86)\WinMend\File Copy\language\Hungarian\register.html
-62613.5s C:\Program Files (x86)\WinMend\File Copy\language\Iron\
-62613.5s C:\Program Files (x86)\WinMend\File Copy\language\Iron\basefunc.dll.ini
-62613.4s C:\Program Files (x86)\WinMend\File Copy\language\Iron\language.ini
-62613.3s C:\Program Files (x86)\WinMend\File Copy\language\Iron\lang_Iran.ico
-62613.1s C:\Program Files (x86)\WinMend\File Copy\language\Iron\liveupdate.exe.ini
-62613.0s C:\Program Files (x86)\WinMend\File Copy\language\Iron\ourproducts.html
-62612.8s C:\Program Files (x86)\WinMend\File Copy\language\Iron\register.html
-62612.7s C:\Program Files (x86)\WinMend\File Copy\language\Iron\Thumbs.db
-62612.6s C:\Program Files (x86)\WinMend\File Copy\language\Persian\
-62612.6s C:\Program Files (x86)\WinMend\File Copy\language\Persian\basefunc.dll.ini
-62612.6s C:\Program Files (x86)\WinMend\File Copy\language\Persian\language.ini
-62612.5s C:\Program Files (x86)\WinMend\File Copy\language\Persian\lang_Persain.ico
-62612.3s C:\Program Files (x86)\WinMend\File Copy\language\Persian\liveupdate.exe.ini
-62611.9s C:\Program Files (x86)\WinMend\File Copy\language\Persian\ourproducts.html
-62611.5s C:\Program Files (x86)\WinMend\File Copy\language\Persian\register.html
-62611.5s C:\Program Files (x86)\WinMend\File Copy\language\Persian\Thumbs.db
-62611.3s C:\Program Files (x86)\WinMend\File Copy\language\Russia\
-62611.3s C:\Program Files (x86)\WinMend\File Copy\language\Russia\basefunc.dll.ini
-62611.2s C:\Program Files (x86)\WinMend\File Copy\language\Russia\language.ini
-62611.1s C:\Program Files (x86)\WinMend\File Copy\language\Russia\lang_Russian.ico
-62611.0s C:\Program Files (x86)\WinMend\File Copy\language\Russia\liveupdate.exe.ini
-62611.0s C:\Program Files (x86)\WinMend\File Copy\language\Russia\ourproducts.html
-62610.9s C:\Program Files (x86)\WinMend\File Copy\language\Russia\register.html
-62610.8s C:\Program Files (x86)\WinMend\File Copy\language\Russia\Thumbs.db
-62610.6s C:\Program Files (x86)\WinMend\File Copy\language\Turkish\
-62610.6s C:\Program Files (x86)\WinMend\File Copy\language\Turkish\basefunc.dll.ini
-62610.6s C:\Program Files (x86)\WinMend\File Copy\language\Turkish\language.ini
-62610.4s C:\Program Files (x86)\WinMend\File Copy\language\Turkish\lang_Turkish.ico
-62610.3s C:\Program Files (x86)\WinMend\File Copy\language\Turkish\liveupdate.exe.ini
-62610.2s C:\Program Files (x86)\WinMend\File Copy\language\Turkish\ourproducts.html
-62609.9s C:\Program Files (x86)\WinMend\File Copy\language\Turkish\register.html
-62609.8s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\
-62609.8s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\basefunc.dll.ini
-62609.7s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\language.ini
-62609.7s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\lang_Vietnamese.ico
-62609.5s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\liveupdate.exe.ini
-62609.4s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\ourproducts.html
-62609.3s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\register.html
-62609.3s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\Thumbs.db
-62609.1s C:\Program Files (x86)\WinMend\File Copy\images\
-62609.1s C:\Program Files (x86)\WinMend\File Copy\images\aboutusbg.png
-62608.9s C:\Program Files (x86)\WinMend\File Copy\images\bg.png
-62608.7s C:\Program Files (x86)\WinMend\File Copy\images\blank.gif
-62608.6s C:\Program Files (x86)\WinMend\File Copy\images\button_t_h.png
-62608.1s C:\Program Files (x86)\WinMend\File Copy\images\button_t_n.png
-62608.0s C:\Program Files (x86)\WinMend\File Copy\images\buy01_h.gif
-62607.9s C:\Program Files (x86)\WinMend\File Copy\images\buy01_n.gif
-62607.8s C:\Program Files (x86)\WinMend\File Copy\images\fb.gif
-62607.7s C:\Program Files (x86)\WinMend\File Copy\images\h2.gif
-62607.5s C:\Program Files (x86)\WinMend\File Copy\images\helpup.gif
-62607.3s C:\Program Files (x86)\WinMend\File Copy\images\iepngfix.htc
-62607.2s C:\Program Files (x86)\WinMend\File Copy\images\line01.gif
-62607.2s C:\Program Files (x86)\WinMend\File Copy\images\logo.png
-62607.1s C:\Program Files (x86)\WinMend\File Copy\images\ourproduct.gif
-62607.1s C:\Program Files (x86)\WinMend\File Copy\images\p01.gif
-62607.0s C:\Program Files (x86)\WinMend\File Copy\images\p02.gif
-62606.9s C:\Program Files (x86)\WinMend\File Copy\images\p03.gif
-62606.9s C:\Program Files (x86)\WinMend\File Copy\images\p04.gif
-62606.8s C:\Program Files (x86)\WinMend\File Copy\images\p05.gif
-62606.7s C:\Program Files (x86)\WinMend\File Copy\images\p06.gif
-62606.7s C:\Program Files (x86)\WinMend\File Copy\images\p07.gif
-62606.7s C:\Program Files (x86)\WinMend\File Copy\images\p08.gif
-62606.6s C:\Program Files (x86)\WinMend\File Copy\images\p09.gif
-62606.5s C:\Program Files (x86)\WinMend\File Copy\images\p10.gif
-62606.4s C:\Program Files (x86)\WinMend\File Copy\images\progress_bar.gif
-62606.4s C:\Program Files (x86)\WinMend\File Copy\images\progress_barbg.gif
-62606.3s C:\Program Files (x86)\WinMend\File Copy\images\tabbg01.png
-62606.2s C:\Program Files (x86)\WinMend\File Copy\images\tabbg02.png
-62606.1s C:\Program Files (x86)\WinMend\File Copy\images\tabbg03.png
-62606.0s C:\Program Files (x86)\WinMend\File Copy\images\tabtitlebg.gif
-62605.9s C:\Program Files (x86)\WinMend\File Copy\images\td01.png
-62605.7s C:\Program Files (x86)\WinMend\File Copy\images\td02.png
-62605.7s C:\Program Files (x86)\WinMend\File Copy\images\td03.png
-62605.4s C:\Program Files (x86)\WinMend\File Copy\images\td04.png
-62605.3s C:\Program Files (x86)\WinMend\File Copy\images\td05.png
-62605.0s C:\Program Files (x86)\WinMend\File Copy\images\td06.png
-62604.9s C:\Program Files (x86)\WinMend\File Copy\images\td07.png
-62604.9s C:\Program Files (x86)\WinMend\File Copy\images\td08.png
-62604.8s C:\Program Files (x86)\WinMend\File Copy\images\td09.png
-62604.6s C:\Program Files (x86)\WinMend\File Copy\images\Thumbs.db
-62604.4s C:\Program Files (x86)\WinMend\File Copy\images\title.gif
-62604.2s C:\Program Files (x86)\WinMend\File Copy\images\trackbar_bg.BMP
-62604.1s C:\Program Files (x86)\WinMend\File Copy\images\trackbar_bg.png
-62603.7s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinMend\
-62603.7s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinMend\File Copy\
-62603.3s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinMend\File Copy\File Copy.lnk
-62603.3s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinMend\File Copy\Home Page.lnk
-62603.2s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinMend\File Copy\Uninstall File Copy.lnk
-62603.2s C:\Users\Jean-Marie\Desktop\video editor pour efm du mh2mol & data copy apps for youcam 8 & photodirector 9 essentials\WinMend File Copy.lnk
-62603.0s C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WinMend File Copy.lnk
-62603.0s C:\Program Files (x86)\WinMend\File Copy\winmend.url
-62601.5s C:\Users\Jean-Marie\Desktop\1ers giveaways & cadeaux récompense après lfs ultra & 100% sécurisé finalis\Mozilla Thunderbird.lnk
-61715.8s C:\Program Files (x86)\IObit\IObit Unlocker\
-61715.8s C:\Program Files (x86)\IObit\IObit Unlocker\unins000.dat
-61715.8s C:\Program Files (x86)\IObit\
-61715.8s C:\Program Files (x86)\IObit\IObit Unlocker\unins000.exe
-61715.7s C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.exe
-61715.2s C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.dll
-61715.1s C:\Program Files (x86)\IObit\IObit Unlocker\SpecialDir.ini
-61715.1s C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll
-61715.0s C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys
-61714.9s C:\Program Files (x86)\IObit\IObit Unlocker\Language\
-61714.9s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Arabic.lng
-61714.9s C:\Program Files (x86)\IObit\IObit Unlocker\Language\ChineseSimp.lng
-61714.9s C:\Program Files (x86)\IObit\IObit Unlocker\Language\ChineseTrad.lng
-61714.8s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Czech.lng
-61714.8s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Danish.lng
-61714.7s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Dutch.lng
-61714.7s C:\Program Files (x86)\IObit\IObit Unlocker\Language\English.lng
-61714.6s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Finnish.lng
-61714.6s C:\Program Files (x86)\IObit\IObit Unlocker\Language\German.lng
-61714.6s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Hungarian.lng
-61714.5s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Italian.lng
-61714.5s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Japanese.lng
-61714.4s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Polish.lng
-61714.4s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Russian.lng
-61714.3s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Spanish.lng
-61714.3s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Swedish.lng
-61714.2s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Turkish.lng
-61714.2s C:\Program Files (x86)\IObit\IObit Unlocker\help\
-61714.2s C:\Program Files (x86)\IObit\IObit Unlocker\help\help.html
-61714.1s C:\Program Files (x86)\IObit\IObit Unlocker\help\img\
-61714.1s C:\Program Files (x86)\IObit\IObit Unlocker\help\img\1.png
-61714.0s C:\Program Files (x86)\IObit\IObit Unlocker\help\img\2.png
-61713.9s C:\Program Files (x86)\IObit\IObit Unlocker\help\img\3.png
-61713.8s C:\Program Files (x86)\IObit\IObit Unlocker\help\img\4.png
-61713.8s C:\Program Files (x86)\IObit\IObit Unlocker\help\img\5.png
-61713.7s C:\Program Files (x86)\IObit\IObit Unlocker\EULA.rtf
-61713.6s C:\Program Files (x86)\IObit\IObit Unlocker\fav.ico
-61713.4s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Unlocker\
-61713.3s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Unlocker\Désinstaller IObit Unlocker.lnk
-61713.2s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Unlocker\IObit Unlocker.lnk
-61713.1s C:\Users\Jean-Marie\Desktop\video editor pour efm du mh2mol & data copy apps for youcam 8 & photodirector 9 essentials\IObit Unlocker.lnk
-61713.1s C:\ProgramData\IObit\IObit Unlocker\
-61713.1s C:\ProgramData\IObit\IObit Unlocker\IObitUnlocker.ini
-61713.1s C:\ProgramData\IObit\
-61707.9s C:\Program Files (x86)\IObit\IObit Unlocker\unins000.msg
-61707.9s C:\ProgramData\IObit\IObit Unlocker\Main.ini
-61700.7s C:\Program Files (x86)\IObit\IObit Unlocker\update.ini
-61689.5s C:\Program Files\Ultracopier\
-61689.5s C:\Program Files\Ultracopier\ultracopier.exe
-61688.9s C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ultracopier\
-61688.8s C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ultracopier\Ultracopier.lnk
-61688.8s C:\Program Files\Ultracopier\COPYING.txt
-61688.7s C:\Program Files\Ultracopier\Qt5Core.dll
-61686.6s C:\Program Files\Ultracopier\Qt5Gui.dll
-61685.3s C:\Program Files\Ultracopier\Qt5Network.dll
-61684.5s C:\Program Files\Ultracopier\Qt5Widgets.dll
-61682.0s C:\Program Files\Ultracopier\Qt5Xml.dll
-61681.9s C:\Program Files\Ultracopier\README.txt
-61681.9s C:\Program Files\Ultracopier\libgcc_s_seh-1.dll
-61681.8s C:\Program Files\Ultracopier\libstdc++-6.dll
-61681.5s C:\Program Files\Ultracopier\libwinpthread-1.dll
-61681.4s C:\Program Files\Ultracopier\CopyEngine\
-61681.4s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\
-61681.4s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\copyEngine.dll
-61681.1s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\informations-rsync.xml
-61681.1s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\informations.xml
-61681.1s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ar\
-61681.1s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ar\translation.qm
-61681.1s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\
-61680.9s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\de\
-61680.9s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\de\translation.qm
-61680.9s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\el\
-61680.9s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\el\translation.qm
-61680.9s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\en\
-61680.9s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\en\translation.qm
-61680.9s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\es\
-61680.9s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\es\translation.qm
-61680.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\fr\
-61680.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\fr\translation.qm
-61680.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\hi\
-61680.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\hi\translation.qm
-61680.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\hu\
-61680.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\hu\translation.qm
-61680.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\id\
-61680.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\id\translation.qm
-61680.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\it\
-61680.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\it\translation.qm
-61680.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ja\
-61680.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ja\translation.qm
-61680.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ko\
-61680.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ko\translation.qm
-61680.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\nl\
-61680.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\nl\translation.qm
-61680.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\no\
-61680.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\no\translation.qm
-61680.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\pl\
-61680.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\pl\translation.qm
-61680.6s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\pt\
-61680.6s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\pt\translation.qm
-61680.6s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ru\
-61680.6s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ru\translation.qm
-61680.6s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\th\
-61680.6s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\th\translation.qm
-61680.6s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\tr\
-61680.6s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\tr\translation.qm
-61680.6s C:\Program Files\Ultracopier\Languages\
-61680.6s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\zh\
-61680.6s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\zh\translation.qm
-61680.6s C:\Program Files\Ultracopier\Languages\ar\
-61680.6s C:\Program Files\Ultracopier\Languages\ar\flag.png
-61680.5s C:\Program Files\Ultracopier\Languages\ar\informations.xml
-61680.5s C:\Program Files\Ultracopier\Languages\ar\qt.qm
-61680.5s C:\Program Files\Ultracopier\Languages\ar\translation.qm
-61680.5s C:\Program Files\Ultracopier\Languages\de\
-61680.5s C:\Program Files\Ultracopier\Languages\de\flag.png
-61680.5s C:\Program Files\Ultracopier\Languages\de\informations.xml
-61680.5s C:\Program Files\Ultracopier\Languages\de\translation.qm
-61680.5s C:\Program Files\Ultracopier\Languages\el\
-61680.4s C:\Program Files\Ultracopier\Languages\el\flag.png
-61680.4s C:\Program Files\Ultracopier\Languages\el\informations.xml
-61680.4s C:\Program Files\Ultracopier\Languages\el\translation.qm
-61680.4s C:\Program Files\Ultracopier\Languages\es\
-61680.4s C:\Program Files\Ultracopier\Languages\es\flag.png
-61680.4s C:\Program Files\Ultracopier\Languages\es\informations.xml
-61680.4s C:\Program Files\Ultracopier\Languages\es\qt.qm
-61680.4s C:\Program Files\Ultracopier\Languages\es\translation.qm
-61680.4s C:\Program Files\Ultracopier\Languages\fr\
-61680.3s C:\Program Files\Ultracopier\Languages\fr\flag.png
-61680.3s C:\Program Files\Ultracopier\Languages\fr\informations.xml
-61680.3s C:\Program Files\Ultracopier\Languages\fr\qt.qm
-61680.3s C:\Program Files\Ultracopier\Languages\fr\translation.qm
-61680.3s C:\Program Files\Ultracopier\Languages\hi\
-61680.3s C:\Program Files\Ultracopier\Languages\hi\flag.png
-61680.3s C:\Program Files\Ultracopier\Languages\hi\informations.xml
-61680.3s C:\Program Files\Ultracopier\Languages\hi\translation.qm
-61680.3s C:\Program Files\Ultracopier\Languages\hu\
-61680.2s C:\Program Files\Ultracopier\Languages\hu\flag.png
-61680.2s C:\Program Files\Ultracopier\Languages\hu\informations.xml
-61680.2s C:\Program Files\Ultracopier\Languages\hu\translation.qm
-61680.2s C:\Program Files\Ultracopier\Languages\id\
-61680.2s C:\Program Files\Ultracopier\Languages\id\flag.png
-61680.2s C:\Program Files\Ultracopier\Languages\id\informations.xml
-61680.2s C:\Program Files\Ultracopier\Languages\id\translation.qm
-61680.2s C:\Program Files\Ultracopier\Languages\it\
-61680.2s C:\Program Files\Ultracopier\Languages\it\flag.png
-61680.2s C:\Program Files\Ultracopier\Languages\it\informations.xml
-61680.2s C:\Program Files\Ultracopier\Languages\it\translation.qm
-61680.2s C:\Program Files\Ultracopier\Languages\ja\
-61680.1s C:\Program Files\Ultracopier\Languages\ja\flag.png
-61680.1s C:\Program Files\Ultracopier\Languages\ja\informations.xml
-61680.1s C:\Program Files\Ultracopier\Languages\ja\qt.qm
-61680.0s C:\Program Files\Ultracopier\Languages\ja\translation.qm
-61680.0s C:\Program Files\Ultracopier\Languages\ko\
-61680.0s C:\Program Files\Ultracopier\Languages\ko\flag.png
-61680.0s C:\Program Files\Ultracopier\Languages\ko\informations.xml
-61680.0s C:\Program Files\Ultracopier\Languages\ko\qt.qm
-61679.9s C:\Program Files\Ultracopier\Languages\ko\translation.qm
-61679.9s C:\Program Files\Ultracopier\Languages\nl\
-61679.9s C:\Program Files\Ultracopier\Languages\nl\flag.png
-61679.9s C:\Program Files\Ultracopier\Languages\nl\informations.xml
-61679.9s C:\Program Files\Ultracopier\Languages\nl\translation.qm
-61679.9s C:\Program Files\Ultracopier\Languages\no\
-61679.9s C:\Program Files\Ultracopier\Languages\no\flag.png
-61679.9s C:\Program Files\Ultracopier\Languages\no\informations.xml
-61679.9s C:\Program Files\Ultracopier\Languages\no\translation.qm
-61679.9s C:\Program Files\Ultracopier\Languages\pl\
-61679.9s C:\Program Files\Ultracopier\Languages\pl\flag.png
-61679.9s C:\Program Files\Ultracopier\Languages\pl\informations.xml
-61679.9s C:\Program Files\Ultracopier\Languages\pl\qt.qm
-61679.8s C:\Program Files\Ultracopier\Languages\pl\translation.qm
-61679.8s C:\Program Files\Ultracopier\Languages\pt\
-61679.8s C:\Program Files\Ultracopier\Languages\pt\flag.png
-61679.8s C:\Program Files\Ultracopier\Languages\pt\informations.xml
-61679.8s C:\Program Files\Ultracopier\Languages\pt\qt.qm
-61679.7s C:\Program Files\Ultracopier\Languages\pt\translation.qm
-61679.7s C:\Program Files\Ultracopier\Languages\ru\
-61679.7s C:\Program Files\Ultracopier\Languages\ru\flag.png
-61679.7s C:\Program Files\Ultracopier\Languages\ru\informations.xml
-61679.7s C:\Program Files\Ultracopier\Languages\ru\qt.qm
-61679.7s C:\Program Files\Ultracopier\Languages\ru\translation.qm
-61679.7s C:\Program Files\Ultracopier\Languages\th\
-61679.6s C:\Program Files\Ultracopier\Languages\th\flag.png
-61679.6s C:\Program Files\Ultracopier\Languages\th\informations.xml
-61679.6s C:\Program Files\Ultracopier\Languages\th\translation.qm
-61679.6s C:\Program Files\Ultracopier\Languages\tr\
-61679.6s C:\Program Files\Ultracopier\Languages\tr\flag.png
-61679.6s C:\Program Files\Ultracopier\Languages\tr\informations.xml
-61679.6s C:\Program Files\Ultracopier\Languages\tr\translation.qm
-61679.6s C:\Program Files\Ultracopier\Languages\zh\
-61679.6s C:\Program Files\Ultracopier\Languages\zh\flag.png
-61679.6s C:\Program Files\Ultracopier\Listener\catchcopy-v0002\
-61679.6s C:\Program Files\Ultracopier\Listener\catchcopy-v0002\informations.xml
-61679.6s C:\Program Files\Ultracopier\Languages\zh\informations.xml
-61679.6s C:\Program Files\Ultracopier\Languages\zh\translation.qm
-61679.6s C:\Program Files\Ultracopier\Listener\
-61679.6s C:\Program Files\Ultracopier\Listener\catchcopy-v0002\listener.dll
-61679.6s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\
-61679.6s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\catchcopy32.dll
-61679.6s C:\Program Files\Ultracopier\PluginLoader\
-61679.5s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\catchcopy64.dll
-61679.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\informations.xml
-61679.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\pluginLoader.dll
-61679.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\
-61679.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ar\
-61679.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ar\translation.qm
-61679.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\de\
-61679.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\de\translation.qm
-61679.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\el\
-61679.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\el\translation.qm
-61679.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\en\
-61679.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\en\translation.qm
-61679.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\es\
-61679.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\es\translation.qm
-61679.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\fr\
-61679.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\fr\translation.qm
-61679.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\hi\
-61679.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\hi\translation.qm
-61679.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\hu\
-61679.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\hu\translation.qm
-61679.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\id\
-61679.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\id\translation.qm
-61679.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\it\
-61679.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\it\translation.qm
-61679.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ja\
-61679.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ja\translation.qm
-61679.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ko\
-61679.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ko\translation.qm
-61679.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\nl\
-61679.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\nl\translation.qm
-61679.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\no\
-61679.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\no\translation.qm
-61679.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\pl\
-61679.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\pl\translation.qm
-61679.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\pt\
-61679.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\pt\translation.qm
-61679.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ru\
-61679.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ru\translation.qm
-61679.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\th\
-61679.1s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\th\translation.qm
-61679.1s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\tr\
-61679.1s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\tr\translation.qm
-61679.1s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\zh\
-61679.1s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\zh\translation.qm
-61679.1s C:\Program Files\Ultracopier\SessionLoader\
-61679.1s C:\Program Files\Ultracopier\SessionLoader\Windows\
-61679.1s C:\Program Files\Ultracopier\SessionLoader\Windows\informations.xml
-61679.1s C:\Program Files\Ultracopier\SessionLoader\Windows\sessionLoader.dll
-61679.0s C:\Program Files\Ultracopier\Themes\
-61679.0s C:\Program Files\Ultracopier\Themes\Oxygen\
-61679.0s C:\Program Files\Ultracopier\Themes\Oxygen\informations.xml
-61679.0s C:\Program Files\Ultracopier\Themes\Oxygen\interface.dll
-61678.8s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\
-61678.8s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ar\
-61678.8s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ar\translation.qm
-61678.8s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\de\
-61678.8s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\de\translation.qm
-61678.8s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\el\
-61678.8s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\el\translation.qm
-61678.7s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\en\
-61678.7s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\en\translation.qm
-61678.7s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\es\
-61678.7s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\es\translation.qm
-61678.7s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\fr\
-61678.7s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\fr\translation.qm
-61678.7s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\hi\
-61678.7s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\hi\translation.qm
-61678.7s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\hu\
-61678.7s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\hu\translation.qm
-61678.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\id\
-61678.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\id\translation.qm
-61678.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\it\
-61678.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\it\translation.qm
-61678.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ja\
-61678.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ja\translation.qm
-61678.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ko\
-61678.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ko\translation.qm
-61678.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\nl\
-61678.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\nl\translation.qm
-61678.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\no\
-61678.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\no\translation.qm
-61678.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\pl\
-61678.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\pl\translation.qm
-61678.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\pt\
-61678.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\pt\translation.qm
-61678.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ru\
-61678.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ru\translation.qm
-61678.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\th\
-61678.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\th\translation.qm
-61678.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\tr\
-61678.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\tr\translation.qm
-61678.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\zh\
-61678.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\zh\translation.qm
-61678.4s C:\Program Files\Ultracopier\qt-plugins\
-61678.4s C:\Program Files\Ultracopier\qt-plugins\platforms\
-61678.4s C:\Program Files\Ultracopier\qt-plugins\platforms\qwindows.dll
-61670.3s C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ultracopier\Uninstall.lnk
-61670.3s C:\Program Files\Ultracopier\uninst.exe
-10087.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\
-10087.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\unins000.dat
-10087.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\unins000.exe
-10086.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\
-10086.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\0.png
-10086.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\1.png
-10086.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\2.png
-10086.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\3.png
-10086.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\4.png
-10086.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\5.png
-10086.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\6.png
-10086.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\7.png
-10086.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\8.png
-10086.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\9.png
-10086.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\account_disable.png
-10086.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\account_hover.png
-10086.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\account_normal.png
-10086.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\account_press.png
-10086.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\activation.png
-10086.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\activation_click.png
-10086.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\activation_disable.png
-10086.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\activation_over.png
-10086.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\active_leftdays.png
-10086.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\ArrowL.png
-10086.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\arrowU.png
-10086.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\arrow_down.png
-10086.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\arrow_up.png
-10086.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\blink.gif
-10086.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\buy.png
-10086.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\buy_click.png
-10086.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\buy_disable.png
-10086.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\buy_over.png
-10086.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\checkbox_no.png
-10086.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\checkbox_semi_election.png
-10086.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\checkbox_yes.png
-10086.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\close.png
-10085.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\close_disable.png
-10085.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\close_hover.png
-10085.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\close_normal.png
-10085.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\close_press.png
-10085.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\complete_normal.png
-10085.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\defaultFolder.png
-10085.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\disconnect.png
-10085.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon.ico
-10085.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_about_down.png
-10085.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_disable.png
-10085.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_folder_disable.png
-10085.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_folder_hover.png
-10085.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_folder_normal.png
-10085.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_folder_press.png
-10085.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_hover.png
-10085.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_normal.png
-10085.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_press.png
-10085.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_attribute_disable.png
-10085.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_attribute_hover.png
-10085.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_attribute_nomral.png
-10085.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_attribute_normal.png
-10085.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_attribute_press.png
-10085.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_cloud.png
-10085.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_cloud_1.png
-10085.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_cloud_active.png
-10085.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_cloud_active_1.png
-10085.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_cloud_hover.png
-10085.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_cloud_press.png
-10085.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_computer.png
-10085.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_computer_1.png
-10085.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_computer_active.png
-10085.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_computer_active_1.png
-10085.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_computer_hover.png
-10085.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_computer_press.png
-10084.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_create.png
-10084.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_create_down.png
-10084.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_create_hover.png
-10084.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_download_disable.png
-10084.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_download_hover.png
-10084.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_download_normal.png
-10084.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_download_press.png
-10084.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_ftp.png
-10084.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_ftp_1.png
-10084.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_ftp_active.png
-10084.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_ftp_active_1.png
-10084.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_ftp_hover.png
-10084.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_ftp_press.png
-10084.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_help_down.png
-10084.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_logs_down.png
-10084.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_setting.png
-10084.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_settings.png
-10084.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_setting_down.png
-10084.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_setting_hover.png
-10084.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_disable.png
-10084.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_hover.png
-10084.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_left_hover.png
-10084.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_left_normal.png
-10084.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_left_press.png
-10084.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_left_s_hover.png
-10084.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_left_s_normal.png
-10084.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_left_s_press.png
-10084.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_normal.png
-10084.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_press.png
-10084.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_right_hover.png
-10084.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_right_normal.png
-10084.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_right_press.png
-10084.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_right_s_hover.png
-10084.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_right_s_normal.png
-10084.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_right_s_press.png
-10084.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_s_disable.png
-10084.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_s_hover.png
-10083.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_s_normal.png
-10083.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_s_press.png
-10083.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_upgrade_down.png
-10083.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_arrow1_close_hover.png
-10083.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_arrow1_open.png
-10083.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_arrow1_open_hover.png
-10083.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_arrow_open_hover.png
-10083.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_cloud.png
-10083.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_cloud_hover.png
-10083.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_computer.png
-10083.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_computer_hover.png
-10083.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_ftp.png
-10083.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_ftp_hover.png
-10083.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login_cloud.png
-10083.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login_cloud_green.png
-10083.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login_ftp.png
-10083.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login_ftp_green.png
-10083.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\logo_title.png
-10083.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_disable.png
-10083.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_hover.png
-10083.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_normal.png
-10083.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_press.png
-10083.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_restore_disable.png
-10083.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_restore_hover.png
-10083.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_restore_normal.png
-10083.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_restore_press.png
-10083.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\minimize_disable.png
-10083.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\minimize_hover.png
-10083.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\minimize_normal.png
-10083.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\minimize_press.png
-10083.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\pause_disable.png
-10083.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\pause_hover.png
-10083.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\pause_normal.png
-10083.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\pause_press.png
-10083.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\radio_no_hover.png
-10083.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\radio_no_normal.png
-10083.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\radio_no_press.png
-10083.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\radio_no_press_.png
-10082.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\radio_yes_hover.png
-10082.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\radio_yes_normal.png
-10082.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\radio_yes_press.png
-10082.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\select_path_cloud.png
-10082.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\select_path_computer.png
-10082.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\select_path_ftp.png
-10082.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\start.png
-10082.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\start_disable.png
-10082.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\start_hover.png
-10082.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\start_loading.gif
-10082.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\start_normal.png
-10082.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\start_press.png
-10082.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\switch_off.png
-10082.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\switch_on.png
-10082.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow.png
-10082.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_hover.png
-10082.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_left.png
-10082.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_left_hover.png
-10082.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_left_press.png
-10082.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_press.png
-10082.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_right.png
-10082.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_right_hover.png
-10082.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_right_press.png
-10082.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\sync_complete.png
-10082.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\sync_error.png
-10082.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\sync_go.png
-10082.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\sync_lock.png
-10082.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\tray_setting_disable.png
-10082.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\tray_setting_hover.png
-10082.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\tray_setting_normal.png
-10082.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\tray_setting_press.png
-10082.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\
-10082.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\1.png
-10082.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\10.png
-10082.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\11.png
-10082.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\12.png
-10082.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\13.png
-10082.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\14.png
-10082.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\15.png
-10082.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\16.png
-10082.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\17.png
-10081.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\18.png
-10081.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\19.png
-10081.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\2.png
-10081.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\20.png
-10081.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\3.png
-10081.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\4.png
-10081.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\5.png
-10081.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\6.png
-10081.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\7.png
-10081.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\8.png
-10081.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\9.png
-10081.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\
-10081.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\1.png
-10081.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\10.png
-10081.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\11.png
-10081.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\12.png
-10081.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\13.png
-10081.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\14.png
-10081.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\15.png
-10081.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\16.png
-10081.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\17.png
-10081.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\18.png
-10081.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\19.png
-10081.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\2.png
-10081.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\20.png
-10081.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\3.png
-10081.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\4.png
-10081.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\5.png
-10081.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\6.png
-10081.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\7.png
-10081.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\8.png
-10081.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\9.png
-10081.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\
-10081.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0001.png
-10081.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0002.png
-10081.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0003.png
-10080.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0004.png
-10080.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0005.png
-10080.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0006.png
-10080.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0007.png
-10080.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0008.png
-10080.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0009.png
-10080.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0010.png
-10080.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0011.png
-10080.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0012.png
-10080.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0013.png
-10080.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0014.png
-10080.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0015.png
-10080.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0016.png
-10080.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0017.png
-10080.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0018.png
-10080.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0019.png
-10080.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0020.png
-10080.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0021.png
-10080.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0022.png
-10080.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0023.png
-10080.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0024.png
-10080.4s C:\Users\Jean-Marie\AppData\Roaming\eufsc\
-10080.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\
-10080.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\fsmainui.qm
-10080.4s C:\Users\Jean-Marie\AppData\Roaming\eufsc\canrun.data
-10080.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\string\
-10080.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\string\errorindex.ini
-10080.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\string\error_eu.ini
-10080.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\string\url.ini
-10080.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\string\web_eu.ini
-10080.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\BPQtLib.dll
-10080.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\cacerts.txt
-10080.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\ComSetup.exe
-10079.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\ComSetupx64.exe
-10079.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EaseUSEverySyncCache.exe
-10078.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\errReport.exe
-10078.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\ESLoadService.exe
-10078.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EUActive.dll
-10078.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EuActiveOnline.dll
-10078.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EuFileSyncLive.exe
-10077.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EuFileSyncLive.exe.config
-10077.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EUFyncFtp.dll
-10077.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EuNetDetect.exe
-10077.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EuPipe.dll
-10077.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EuShlAgent.dll
-10076.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EUSyncExtMenu.dll
-10076.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EUSyncExtMenux64.dll
-10076.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EverySync.exe
-10076.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EverySyncExplorerOverlay.dll
-10075.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EverySyncExplorerOverlayX64.dll
-10075.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\fscdb.dll
-10075.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\fscLog.dll
-10075.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\FSyncCC.dll
-10074.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\FSyncCCProxy.dll
-10074.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\GatherHistroySyncTask.exe
-10074.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\GatherHistroySyncTaskX64.exe
-10074.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\GDStorage.exe
-10073.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\icudt52.dll
-10070.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\icuin52.dll
-10069.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\icuuc52.dll
-10069.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\idfield
-10069.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\libeay32.dll
-10068.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\Microsoft.Live.dll
-10068.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\Microsoft.VC90.CRT.manifest
-10068.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\msvcm90.dll
-10068.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\msvcp120.dll
-10068.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\msvcp90.dll
-10068.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\msvcr120.dll
-10068.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\msvcr90.dll
-10068.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\python27.dll
-10067.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\python27.zip
-10065.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\Qt5Core.dll
-10064.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\Qt5Gui.dll
-10063.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\Qt5Widgets.dll
-10062.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\sqlite.dll
-10062.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\ssleay32.dll
-10061.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\StorageMgr.dll
-10061.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\uexper.dll
-10061.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\uexper.ini
-10061.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\uexperice.exe
-10061.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\uiconfig
-10061.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\UpdateInfo.dll
-10061.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\
-10061.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\bz2.pyd
-10060.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\dropbox.egg
-10060.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\pyexpat.pyd
-10060.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\select.pyd
-10060.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\sqlite3.dll
-10060.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\tcl85.dll
-10060.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\tclpip85.dll
-10060.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\tk85.dll
-10060.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\unicodedata.pyd
-10059.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\winsound.pyd
-10059.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_bsddb.pyd
-10059.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_ctypes.pyd
-10059.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_ctypes_test.pyd
-10059.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_elementtree.pyd
-10059.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_hashlib.pyd
-10059.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_msi.pyd
-10059.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_multiprocessing.pyd
-10059.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_socket.pyd
-10059.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_sqlite3.pyd
-10059.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_ssl.pyd
-10058.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_testcapi.pyd
-10058.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_tkinter.pyd
-10058.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\iconengines\
-10058.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\iconengines\qsvgicon.dll
-10058.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\imageformats\
-10058.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\imageformats\qgif.dll
-10058.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\imageformats\qico.dll
-10058.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\platforms\
-10058.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\platforms\qminimal.dll
-10058.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\platforms\qoffscreen.dll
-10057.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\platforms\qwindows.dll
-10057.5s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS EverySync 3.0\
-10056.7s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS EverySync 3.0\EaseUS EverySync 3.0.lnk
-10056.6s C:\Users\Jean-Marie\Desktop\location 1 tache gratuite copie auto youcam 8\EaseUS EverySync 3.0.lnk
-10056.4s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS EverySync 3.0\Uninstall EaseUS EverySync 3.0.lnk
-10056.4s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS EverySync 3.0\Visit EaseUS on the Web.url
-10056.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\unins000.msg
-10047.7s C:\Users\Jean-Marie\AppData\Roaming\eufsc\template.dat
-10047.6s C:\Users\Jean-Marie\AppData\Roaming\eufsc\eufscdb.db
-10039.9s C:\Users\Jean-Marie\AppData\Roaming\eufsc\uexper.ini
-10039.7s C:\Users\Jean-Marie\AppData\Roaming\eufsc\idfield
-10039.5s C:\Users\Jean-Marie\AppData\Roaming\eufsc\easeusue.log
-10024.1s C:\Users\Jean-Marie\Desktop\location 1 tache gratuite copie auto youcam 8\
-82.8s C:\Users\Jean-Marie\Desktop\Réinitialisation d'internet.bat
-82.8s C:\Users\Jean-Marie\Desktop\réparation internet.txt
-82.6s C:\Users\Jean-Marie\Desktop\autres applications\DAEMON Tools Lite.lnk
-82.6s C:\Users\Jean-Marie\Desktop\autres applications\Dashlane.lnk
-82.5s C:\Users\Jean-Marie\Desktop\autres applications\Free Download Manager 5.lnk
-82.5s C:\Users\Jean-Marie\Desktop\autres applications\Free Partition Manager.lnk
-82.4s C:\Users\Jean-Marie\Desktop\autres applications\OUTDATEfighter.lnk
-82.4s C:\Users\Jean-Marie\Desktop\autres applications\PASSWORDfighter.lnk
-82.1s C:\Users\Jean-Marie\Desktop\autres applications\Software Informer.lnk
-82.1s C:\Users\Jean-Marie\Desktop\autres applications\Software Update Pro.lnk
-81.8s C:\Users\Jean-Marie\Desktop\autres applications\Video Watermark Pro.lnk
-81.8s C:\Users\Jean-Marie\Desktop\autres applications\WinRAR.lnk
-81.6s C:\Users\Jean-Marie\Desktop\autres applications\ZHPCleaner.lnk
-81.6s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\
-81.6s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\240 e de plus à payer avec le 1ère logiciel Cewbé d (1).txt
-81.6s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\240 e de plus à payer avec le 1ère logiciel Cewbé d (1)_txt.zip
-81.5s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\240 e de plus à payer avec le 1ère logiciel Cewbé d.txt
-81.5s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\240 e de plus à payer avec le 1ère logiciel Cewbé d_txt.zip
-81.5s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\achats ecb janv 2016.txt
-81.4s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\clés de lic rebit saveme et dt pro 7.txt
-81.4s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\Demande D'aide 5 PC micro-astuces.txt
-81.3s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\Me, Myself and I (Beyoncé song).epub
-81.3s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\Rebit 5 Et Daemon Tools Pro 7 Licenses.txt
-80.0s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\rebit5_W8.1_AQFR.exe
-71.6s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\rebitpro-setup-5.1.3001.14505.exe
-56.0s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\rebitpro-setup-5.1.3001.14505_exe.zip
-35.9s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\rebitpro-setup-browser-5.1.3001.exe
-26.1s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\rebitpro-setup-browser-5.1.3001_exe.zip
-18.3s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\topic pc 1.rtf
-18.2s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\topic pc 2.rtf
-18.2s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\topic pc 3 à 5.rtf
-18.1s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\
-18.1s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\Demande D'aide 5 PC micro-astuces.txt
-18.1s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\topic pc 1.rtf
-18.0s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\topic pc 2.rtf
-18.0s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\topic pc 3 à 5.rtf
-18.0s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prél PC 3-4-5\
-18.0s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prél PC 3-4-5\AdsFix.txt
-17.9s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prél PC 3-4-5\Pre_Scan.txt
-17.7s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prél PC 3-4-5\UsbFix_Report.txt
-16.6s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\
-16.6s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\AdwCleaner[C0].txt
-16.6s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\Look_my_hardware.txt
-16.5s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\mbam application rapport by malwarebytes.txt
-16.4s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\QuickDiag.txt
-16.3s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\RKreport_DEL_01202017_205524.log
-16.1s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\UsbFix_Report.txt
-15.3s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\ZHPDiag.txt
-15.3s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 2\
-15.3s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 2\Pre_Scan.txt
-15.2s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 2\UsbFix [Clean 1] DESKTOP-CGKKC4S.txt
-15.1s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports prélim pc 3 tour compaq remix\
-15.1s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports prélim pc 3 tour compaq remix\AdsFix.txt
-14.9s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports prélim pc 3 tour compaq remix\UsbFix_Report 22 1 17 tour compaq remix.txt
-13.9s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\Win 7 tools\
-13.6s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\Win 7 tools\look-my-hardware_2_02.01.17.1.exe
-12.9s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\Win 7 tools\quickdiag_3_23.01.17.4.exe
-12.1s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\Win 7 tools\RepairDNS.exe
-11.3s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\Win 7 tools\ResetBrowser.exe
-11.0s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\
-11.0s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\Copy Handler.lnk
-10.9s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\ExtremeCopy Pro.lnk
-10.9s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\FastCopy.lnk
-10.8s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\MiniCopier.lnk
-10.8s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\Roadkil's Unstoppable Copier.lnk
-10.8s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\TeraCopy.lnk
-10.7s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\WinMend File Copy.lnk
-10.7s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\WinRoboCopy.lnk
-10.7s C:\Users\Jean-Marie\Desktop\desktop cleaner - barr - pour 1ère image bng after lfsu & 100%S f du 31 janv\
-10.7s C:\Users\Jean-Marie\Desktop\desktop cleaner - barr - pour 1ère image bng after lfsu & 100%S f du 31 janv\CyberLink WaveEditor 2.lnk
-10.7s C:\Users\Jean-Marie\Desktop\desktop cleaner - barr - pour 1ère image bng after lfsu & 100%S f du 31 janv\desktop.ini
-10.7s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\
-10.6s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\
-8.6s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\42ustcdn.exe
-8.4s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\adwcleaner_6.043.exe
-7.3s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\Appsdiagnostic10.diagcab
-7.2s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\auto-SFC.zip
-7.2s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\bluescreenview-x64.zip
-7.1s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\bluescreenview.zip
-7.0s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\chrome_cleanup_tool.exe
-6.5s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\ComIntRep_2852.zip
-2.6s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\ComIntRep_2852_Setup.exe
-2.0s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\dbr-1.3.0.0(2).zip
-1.7s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\dbr-1.3.0.0.zip
-0.9s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\delfix_1.013.exe
-0.6s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\FGdabWZafsB_The-Restore-Point-Créator.rar
0.0s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\FRST.exe
5.8s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\FRST64.exe
7.0s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\FSS.exe
7.3s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\gmer(2).zip
7.5s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\gmer(3).zip
7.7s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\gmer.zip
8.0s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\guw-guide-utile-windows_1.886.zip
10.7s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\hdhacker.zip
11.5s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\iExplore.exe
11.9s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\JRT(2).exe
17.7s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\JRT.exe
18.5s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\loadtool_7.0.0.exe
46.3s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\logonfix_1.1.exe
52.7s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\mb3-setup-consumer-3.0.6.1469(2).exe
75.1s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\mb3-setup-consumer-3.0.6.1469.exe
88.5s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\mbae-setup-1.09.1.1334.exe
90.7s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\MBRBackup.exe
91.3s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\MiniToolBox.exe
95.7s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\MKV.exe
96.1s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\NetAdapterRepair1.2(2).exe
96.4s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\NetAdapterRepair1.2.exe
96.6s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\NetFxRepairTool.exe
105.1s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\OneClick2RP.exe
105.5s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\Outils_depannage_Windows.pdf
106.0s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\Privacy Statement for Microsoft .NET Repair tool.rtf
106.0s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\regassassin-setup-1.03.exe
133.8s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\Report_CHKDSK.exe
134.3s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\ResetBrowser(2).exe
135.1s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\ResetBrowser.exe
135.7s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\ResetWUEng.zip
136.0s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\rkill(2).zip
137.1s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\rkill.com
138.3s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\rkill.exe
138.9s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\rkill.zip
474.0s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\Pre_Scan_Donate.lnk.vir
476.6s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\ashampoo_zip_2017_25435.exe
476.7s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\Pre_Scan_Restore.lnk.vir
483.9s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\CCleaner.lnk
483.9s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\CyberLink LabelPrint 2.5.lnk
484.0s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\DAEMON Tools Lite.lnk
484.0s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\EaseUS EverySync 3.0.lnk
484.0s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\EaseUS Todo PCTrans.lnk
484.1s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Easy Photo Unblur.lnk
484.2s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Foxit Reader.lnk
484.2s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Free Download Manager 5.lnk
484.3s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\IObit Uninstaller.lnk
484.3s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\IObit Unlocker.lnk
484.4s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Malwarebytes.lnk
484.4s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Mozilla Thunderbird.lnk
484.5s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Nero BackItUp.lnk
484.9s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\pre-scan_7_31.01.17.1.exe
485.7s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Reflect.lnk
485.9s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\SDFormatterv4.zip
488.7s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\RogueKiller.lnk.vir
491.2s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\Sophos Clean.lnk.vir
494.0s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\TeraCopy.lnk.vir
495.1s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\setup.exe
501.7s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\siinst.exe
501.7s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\TweakBit Anti-Malware.lnk.vir
505.3s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\UCheck.lnk.vir
507.7s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\UsbFix.lnk.vir
508.3s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Unlocker_Portable_1.9.2_32-64_Multilingual.exe
508.4s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\VLC media player.lnk
508.5s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\WinToUSB.lnk
510.3s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\Voodoo Shield.lnk.vir
512.8s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\Wise JetSearch.lnk.vir
515.5s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\ZHPCleaner.lnk.vir
517.9s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\ZHPDiag.lnk.vir
518.6s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\WinToUSB_Free.exe
520.4s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Wondershare Filmora.lnk
520.4s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Wondershare MePub.lnk
520.5s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\ZHPCleaner.lnk
520.5s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\SDFormatterv4\
521.3s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\SDFormatterv4\setup.exe
524.2s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\J\
524.2s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\FilesOnReboot.txt
526.7s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\R\
529.2s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\S\
529.3s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\S\Autorun.inf.vir
530.6s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\S\start.exe.vir
620.7s C:\Users\Jean-Marie\Documents\CyberLink_Power2Go_Downloader.exe
621.2s C:\Users\Jean-Marie\Documents\Disk Fixer.rtf
621.2s C:\Users\Jean-Marie\Documents\error message internet framakey salix.PNG
630.3s C:\Users\Jean-Marie\Documents\filmora_setup_full1084.exe
630.7s C:\Users\Jean-Marie\Documents\install.txt
631.2s C:\Users\Jean-Marie\Documents\KCinst.exe
631.5s C:\Users\Jean-Marie\Documents\license-gpl3.txt
631.8s C:\Users\Jean-Marie\Documents\OneDriveSetup.exe
656.5s C:\Users\Jean-Marie\Documents\PortableApps.com_Platform_Setup_14.2.paf.exe
657.9s C:\Users\Jean-Marie\Documents\processclose_2_08.01.17.1.exe
659.9s C:\Users\Jean-Marie\Documents\ResetBrowser.exe
660.4s C:\Users\Jean-Marie\Documents\setup.exe
660.6s C:\Users\Jean-Marie\Documents\setup.msi
660.8s C:\Users\Jean-Marie\Documents\starburn.txt
660.9s C:\Users\Jean-Marie\Documents\supercopier-portable-windows-x86-1.2.3.5.zip
664.9s C:\Users\Jean-Marie\Documents\supercopier-windows-x86-1.2.3.5-setup.exe
667.8s C:\Users\Jean-Marie\Documents\ultracopier-windows-x86-1.2.3.5-setup.exe
669.8s C:\Users\Jean-Marie\Documents\wilson strike - post pour son & micro sd après ultra formatage nettoyer tout le lecteur forum saamu.rtf
669.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\
669.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\
669.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Applist.dat
669.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Complete.wav
669.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Help.CHM
672.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\unin00000.exe
672.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Uninstall.txt
672.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Updata.dat
672.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Upgrade.exe
676.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\VideoWatermark.exe
676.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\
677.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\avcodec-54.dll
679.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\avdevice-54.dll
679.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\avfilter-3.dll
679.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\avformat-54.dll
680.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\avutil-52.dll
680.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\OldFilm.Dat
680.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\SDL.dll
680.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\swresample-0.dll
680.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\swscale-2.dll
681.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\
681.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\
681.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\01.gif
681.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\010.gif
681.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\011.gif
681.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\012.gif
681.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\013.gif
681.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\014.gif
681.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\015.gif
681.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\016.gif
681.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\017.gif
681.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\018.gif
681.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\019.gif
681.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\02.gif
681.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\020.gif
681.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\021.gif
681.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\022.gif
681.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\023.gif
681.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\024.gif
681.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\025.gif
681.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\026.gif
681.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\027.gif
681.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\028.gif
681.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\029.gif
681.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\03.gif
681.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\030.gif
681.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\031.gif
681.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\032.gif
681.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\033.gif
682.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\034.gif
682.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\035.gif
682.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\036.gif
682.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\037.gif
682.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\038.gif
682.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\039.gif
682.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\04.gif
682.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\040.gif
682.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\041.gif
682.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\042.gif
682.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\043.gif
682.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\044.gif
682.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\045.gif
682.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\046.gif
682.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\047.gif
682.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\048.gif
682.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\049.gif
682.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\05.gif
682.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\050.gif
682.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\051.gif
682.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\052.gif
682.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\053.gif
682.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\054.gif
682.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\055.gif
682.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\056.gif
682.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\057.gif
682.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\058.gif
683.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\059.gif
683.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\06.gif
683.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\060.gif
683.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\061.gif
683.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\062.gif
683.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\063.gif
683.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\064.gif
683.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\065.gif
683.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\066.gif
683.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\067.gif
683.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\068.gif
683.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\069.gif
683.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\07.gif
683.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\070.gif
683.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\071.gif
683.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\072.gif
683.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\073.gif
683.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\08.gif
683.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\09.gif
683.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\
683.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\01.png
683.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\02.png
683.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\03.png
683.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\04.png
683.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\05.png
683.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\06.png
683.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\07.png
683.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\08.png
684.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\09.png
684.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\10.png
684.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\11.png
684.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\12.png
684.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\13.png
684.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\14.png
684.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\15.png
684.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\
684.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\01.png
684.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\02.png
684.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\03.png
684.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\04.png
684.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\05.png
684.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\06.png
684.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\07.png
684.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\08.png
684.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\09.png
684.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\10.png
684.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\11.png
684.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\12.png
684.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\13.png
684.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\14.png
684.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\15.png
684.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\16.png
684.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\17.png
684.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\18.png
684.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\19.png
684.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\20.png
684.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\
685.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\01.png
685.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\02.png
685.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\03.png
685.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\04.png
685.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\05.png
685.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\06.png
685.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\07.png
685.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\08.png
685.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\09.png
685.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\10.png
685.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\11.png
685.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\
685.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\01.png
685.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\02.png
685.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\03.png
685.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\04.png
685.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\05.png
685.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\06.png
685.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\07.png
685.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\08.png
685.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\09.png
685.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\10.png
685.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\11.png
685.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\12.png
685.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\13.png
685.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\14.png
685.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\15.png
686.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\
686.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\01.png
686.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\02.png
686.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\03.png
686.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\04.png
686.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\05.png
686.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\06.png
686.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\07.png
686.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\08.png
686.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\09.png
686.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\10.png
686.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\11.png
686.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\12.png
686.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\13.png
686.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\14.png
686.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\15.png
686.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\16.png
686.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\
686.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\01.png
686.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\02.png
686.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\03.png
686.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\04.png
686.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\05.png
686.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\06.png
686.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\07.png
686.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\08.png
687.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\09.png
687.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\10.png
687.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\11.png
687.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\12.png
687.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\13.png
687.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\14.png
687.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\
687.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\01.png
687.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\02.png
687.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\03.png
687.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\04.png
687.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\05.png
687.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\06.png
687.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\07.png
687.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\08.png
687.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\09.png
687.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\10.png
687.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\11.png
687.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\12.png
687.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\13.png
687.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\14.png
687.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\15.png
687.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\16.png
687.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\17.png
687.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\
687.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\01.png
687.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\02.png
687.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\03.png
687.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\04.png
687.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\05.png
688.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\06.png
688.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\07.png
688.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\08.png
688.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\09.png
688.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\10.png
688.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\11.png
688.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\12.png
688.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\13.png
688.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\
688.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\01.png
688.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\02.png
688.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\03.png
688.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\04.png
688.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\05.png
688.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\06.png
688.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\07.png
688.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\08.png
688.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\09.png
688.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\10.png
688.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\11.png
688.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\12.png
688.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\13.png
688.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\14.png
688.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\15.png
688.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\16.png
688.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\17.png
688.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\18.png
688.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\19.png
688.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\User\
688.9s C:\Users\Jean-Marie\Documents\Nero BackItUp Device Backup\
688.9s C:\Users\Jean-Marie\Documents\PASSWORDfighter Passwords\
688.9s C:\Users\Jean-Marie\Documents\PASSWORDfighter Passwords\desktop.ini
688.9s C:\Users\Jean-Marie\Documents\pcmover proffessionnal license code & setup\
688.9s C:\Users\Jean-Marie\Documents\pcmover proffessionnal license code & setup\Pc tranfert v10 proffessionnal by avanquest licens.txt
689.0s C:\Users\Jean-Marie\Documents\pcmover proffessionnal license code & setup\PCmover_10_Pro_UG_FRE.pdf
693.2s C:\Users\Jean-Marie\Documents\pcmover proffessionnal license code & setup\pcmover_fr_10.exe
101462.9s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileNav_GG.png
101463.4s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileNav_FF.png
101463.8s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileNav_OP.png
101464.2s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileNav_IE.png
101464.7s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileCluff_FR.txt
101465.0s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileCluff_EN.txt
101465.5s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileIcone.ico
101466.0s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileBGSocial.png
101466.4s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileBroom.png
101467.0s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileForum.png
101467.4s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileCheck.png
101467.8s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileRapport.png
101468.5s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileTransGui.jpg
101469.0s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFilelogo-texte.png
101469.5s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileClose.png
101469.9s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileDetected.png
101470.5s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileExit-40.png
101471.4s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileInfo.png
101472.1s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFilePercent.png
101472.7s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileQuestion.png
101473.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\cc_check[2].js
101473.0s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileSearch.png
101473.4s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFilePayPal.png
101473.8s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileFB.png
101474.2s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileGP.png
101474.5s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileQuar.png
101475.1s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileExit-40.bmp
101475.8s C:\Users\Jean-Marie\AppData\Roaming\ZHP\ZHPCleaner.exe
101476.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\css[1].css
101476.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\jquery.min[2].js
101476.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\jquery-ui.min[1].js
101478.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\MQU89XM7.cookie
101478.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\font-awesome[1].css
101478.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\bootstrap.min[1].css
101479.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\bootstrap.min[1].js
101482.1s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AF4EE75E3A4ABA658C0087EB9A0BB5B_AE5D366FD4C084FC03F41D468B6EDD57
101482.1s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AF4EE75E3A4ABA658C0087EB9A0BB5B_AE5D366FD4C084FC03F41D468B6EDD57
101482.4s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\74F831100DEB0B8799203064F3E38B68
101482.4s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\74F831100DEB0B8799203064F3E38B68
101488.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\zhpcleaner_version[1].txt
101488.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\T3LFLKU2\traffic.getmyads[1].xml
101488.8s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D530B267735F8FA434C0E244F20BC934
101488.8s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D530B267735F8FA434C0E244F20BC934
101499.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\9OW9MNR7.cookie
101500.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\banner[1].htm
101500.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\atrk[1].js
101501.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\fontawesome-webfont[1].woff2
101501.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\Cache\6XO3B951\favicon[3].ico
101503.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\NJP7D1I5.cookie
101507.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\atrk[1].gif
101512.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\test[1].png
101512.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\affs[3].js
101514.4s C:\Users\Jean-Marie\ZHPCleaner.exe
101521.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\cc_check[3].js
101521.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\get[3].js
101545.9s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\91D45B9FD0AB831D005595625889DE9CAAECD35C
101548.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{418F29B2-07F5-11E7-BCAB-4C72B9F956A2}.dat
101551.7s C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\datareporting\archived\2017-03\1489409602203.477a2cfb-2171-47a5-ac44-1cc85aabd2ef.main.jsonlz4
101555.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\display[2].htm
101560.3s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\CDA944DF6D23F8D43AD62F67F33315E71D13F538
101571.1s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\A3C5E5085BDC426D38C288A0113E53E2E3EBE9C2
101574.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\affs[4].js
101578.9s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\A5981DF8553F27134D8D3636465D0C8786A907AA
101593.3s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\FAE8288709E1AC13EEC6B1B20505ACF75EB930F7
101595.0s C:\Users\Jean-Marie\AppData\Local\Temp\a82b526ea2f1435c89706334fa2c91ed\
101596.3s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_SS
101606.3s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\BC1720C9DD5D545A9F78C4EF02B0B2B6A09E4B63
101616.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\u[4].js
101616.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{6A24EFF8-07F5-11E7-BCAB-4C72B9F956A2}.dat
101617.6s C:\Users\Jean-Marie\AppData\Local\Temp\ba1998de128f4f7ea832954d6ab9b863\
101617.6s C:\Users\Jean-Marie\AppData\Local\Temp\ba1998de128f4f7ea832954d6ab9b863\Setup__20877.exe
101625.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\0AF54N6A.cookie
101627.4s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_SS2
101631.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\ups[1].htm
101634.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\base_css[1].css
101634.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\flash_css[1].css
101634.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\helpers[1].js
101634.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\active_button_css[1].css
101634.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\a_background[1].jpg
101634.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\dl.min[1].js
101646.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\chrome_download_hint[1].png
101646.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\chrome_arrow_anim[1].gif
101646.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\chrome_download_hint_anim[2].png
101649.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\ZDR2XME1\b8p.sqfbboutlearn[1].xml
101650.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\affs[5].js
101650.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\Cache\NB8ITU48\hdplayer_lo[2].ico
101657.1s C:\Users\Jean-Marie\AppData\Local\Temp\3420.tmp.exe
101673.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\display[3].htm
101673.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\get[1].json
101673.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\get[2].json
101677.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\0UQZ2LFD.cookie
101678.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\4SA2OOSU\www.nanoadexchange[1].xml
101685.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{8DD531AD-07F5-11E7-BCAB-4C72B9F956A2}.dat
101700.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\cc_check[3].js
101701.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\get[4].js
101711.5s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_BHO
101718.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\index[2].htm
101722.0s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\amipb[1].js
101731.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\videoplayer_edge_poc_v2[1].json
101738.2s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_BHO2
101749.5s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_BHO_T
101752.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\cc_check[4].js
101752.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\get[5].js
101754.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\u[1].js
101755.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{BCE99920-07F5-11E7-BCAB-4C72B9F956A2}.dat
101762.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\index[3].htm
101765.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\videoplayer_edge_poc_v2[1].json
101776.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\r[3].js
101782.6s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\ED4725678FB6E283F22BFCF30FA398CB
101782.6s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\ED4725678FB6E283F22BFCF30FA398CB
101790.7s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\1E7AFB499F0D8E4335FF705D37EAA854AC310643
101795.0s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\E2BD2F8449491269FD2B4B20FE8A2FE50DF668AF
101795.7s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_TB
101825.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{E6CB49F3-07F5-11E7-BCAB-4C72B9F956A2}.dat
101827.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\MHGNZVY4.cookie
101832.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\1[2].htm
101842.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\host[2].js
101845.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\321u11uo3&sub-id=1243241&s2=[1].htm
101862.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\all-styles[1].css
101863.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\planetfr_s[1].png
101863.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\welcome-media_s[1].png
101863.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\special-styles[1].css
101863.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\mistergagnant_s[1].png
101863.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\choisir_s[1].png
101864.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\skripte[1].js
101864.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\avis_de_bons_s[1].png
101864.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\azorica_s[1].png
101875.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\T3LFLKU2\grand-choix-produits[1].xml
101876.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\bg0[1].jpg
101876.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\80_proz_000[1].png
101881.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\CLR_v2.0\UsageLogs\myçHYMyclJ.exe.log
101881.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\store[1].htm
101882.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\get[3].json
101885.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\321u11uo3&sub-id=1243241&s2=[1].htm
101888.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\iframe[1].css
101888.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\r[2].js
101889.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\4SA2OOSU\cdncache-a.akamaihd[1].xml
101891.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{0E378DD7-07F6-11E7-BCAB-4C72B9F956A2}.dat
101913.4s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_TB2

C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\FRST64.exe
Size . . . . . . . : 2 422 784 bytes
Age . . . . . . . : 2.0 days (2017-03-12 10:46:59)
Entropy . . . . . : 7.6
SHA-256 . . . . . : C2280BABEB08B58E46141BA6BE499ACA4779C2DE22910F8C56BCD041AD8E07D6
Needs elevation . : Yes
Fuzzy . . . . . . : 24.0
Program has no publisher information but prompts the user for permission elevation.
Entropy (or randomness) indicates the program is encrypted, compressed or obfuscated. This is not typical for most programs.
Authors name is missing in version info. This is not common to most programs.
Version control is missing. This file is probably created by an individual. This is not typical for most programs.
Time indicates that the file appeared recently on this computer.
Forensic Cluster
-62667.4s C:\Program Files (x86)\Roadkil.Net\
-62667.4s C:\Program Files (x86)\Roadkil.Net\unins000.dat
-62667.3s C:\Program Files (x86)\Roadkil.Net\unins000.exe
-62667.0s C:\Program Files (x86)\Roadkil.Net\UnstopCpy_5_2_Win2K_UP.exe
-62666.7s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roadkil.Net\
-62666.5s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roadkil.Net\Roadkil's Unstoppable Copier.lnk
-62636.1s C:\Program Files (x86)\WinMend\File Copy\
-62636.1s C:\Program Files (x86)\WinMend\
-62636.1s C:\Program Files (x86)\WinMend\File Copy\unins000.dat
-62636.1s C:\Program Files (x86)\WinMend\File Copy\unins000.exe
-62635.7s C:\Program Files (x86)\WinMend\File Copy\FileCopy.exe
-62634.1s C:\Program Files (x86)\WinMend\File Copy\common.dll
-62633.5s C:\Program Files (x86)\WinMend\File Copy\HelpUs.dll
-62632.1s C:\Program Files (x86)\WinMend\File Copy\setting.ini
-62632.0s C:\Program Files (x86)\WinMend\File Copy\livereplace.exe
-62631.3s C:\Program Files (x86)\WinMend\File Copy\LiveUpdate.exe
-62630.9s C:\Program Files (x86)\WinMend\File Copy\basefunc.dat
-62630.8s C:\Program Files (x86)\WinMend\File Copy\basefunc.dll
-62630.1s C:\Program Files (x86)\WinMend\File Copy\basefunc.ini
-62630.0s C:\Program Files (x86)\WinMend\File Copy\checkupdate.exe
-62627.4s C:\Program Files (x86)\WinMend\File Copy\commonbase.dll
-62625.4s C:\Program Files (x86)\WinMend\File Copy\commonwnd.dll
-62624.2s C:\Program Files (x86)\WinMend\File Copy\core.dll
-62623.7s C:\Program Files (x86)\WinMend\File Copy\corem.dll
-62623.5s C:\Program Files (x86)\WinMend\File Copy\corez.dll
-62623.3s C:\Program Files (x86)\WinMend\File Copy\drag.dll
-62622.9s C:\Program Files (x86)\WinMend\File Copy\mload.dll
-62621.9s C:\Program Files (x86)\WinMend\File Copy\drsa.dll
-62621.8s C:\Program Files (x86)\WinMend\File Copy\filedown.dll
-62621.7s C:\Program Files (x86)\WinMend\File Copy\kslist.dat
-62621.6s C:\Program Files (x86)\WinMend\File Copy\language\
-62621.6s C:\Program Files (x86)\WinMend\File Copy\language\lang_French.ico
-62621.5s C:\Program Files (x86)\WinMend\File Copy\language\lang_German.ico
-62621.5s C:\Program Files (x86)\WinMend\File Copy\language\lang_Italian.ico
-62621.3s C:\Program Files (x86)\WinMend\File Copy\language\lang_Russian.ico
-62621.2s C:\Program Files (x86)\WinMend\File Copy\language\Thumbs.db
-62621.1s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\
-62621.1s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\basefunc.dll.ini
-62621.1s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\language.ini
-62621.0s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\lang_Arabic.ico
-62620.9s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\liveupdate.exe.ini
-62620.9s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\ourproducts.html
-62620.8s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\register.html
-62620.8s C:\Program Files (x86)\WinMend\File Copy\language\Arabic\Thumbs.db
-62620.7s C:\Program Files (x86)\WinMend\File Copy\language\English\
-62620.7s C:\Program Files (x86)\WinMend\File Copy\language\English\basefunc.dll.ini
-62620.6s C:\Program Files (x86)\WinMend\File Copy\language\English\language.ini
-62620.5s C:\Program Files (x86)\WinMend\File Copy\language\English\lang_English.ico
-62620.4s C:\Program Files (x86)\WinMend\File Copy\language\English\liveupdate.exe.ini
-62620.2s C:\Program Files (x86)\WinMend\File Copy\language\English\ourproducts.html
-62620.1s C:\Program Files (x86)\WinMend\File Copy\language\English\register.html
-62620.0s C:\Program Files (x86)\WinMend\File Copy\language\English\Thumbs.db
-62619.9s C:\Program Files (x86)\WinMend\File Copy\language\Hungarian\
-62619.9s C:\Program Files (x86)\WinMend\File Copy\language\Hungarian\basefunc.dll.ini
-62619.8s C:\Program Files (x86)\WinMend\File Copy\language\Hungarian\language.ini
-62619.6s C:\Program Files (x86)\WinMend\File Copy\language\Hungarian\lang_Hungary.ico
-62619.5s C:\Program Files (x86)\WinMend\File Copy\language\Hungarian\liveupdate.exe.ini
-62619.5s C:\Program Files (x86)\WinMend\File Copy\language\Hungarian\ourproducts.html
-62619.4s C:\Program Files (x86)\WinMend\File Copy\language\Hungarian\register.html
-62619.3s C:\Program Files (x86)\WinMend\File Copy\language\Iron\
-62619.3s C:\Program Files (x86)\WinMend\File Copy\language\Iron\basefunc.dll.ini
-62619.2s C:\Program Files (x86)\WinMend\File Copy\language\Iron\language.ini
-62619.1s C:\Program Files (x86)\WinMend\File Copy\language\Iron\lang_Iran.ico
-62619.0s C:\Program Files (x86)\WinMend\File Copy\language\Iron\liveupdate.exe.ini
-62618.8s C:\Program Files (x86)\WinMend\File Copy\language\Iron\ourproducts.html
-62618.6s C:\Program Files (x86)\WinMend\File Copy\language\Iron\register.html
-62618.5s C:\Program Files (x86)\WinMend\File Copy\language\Iron\Thumbs.db
-62618.4s C:\Program Files (x86)\WinMend\File Copy\language\Persian\
-62618.4s C:\Program Files (x86)\WinMend\File Copy\language\Persian\basefunc.dll.ini
-62618.4s C:\Program Files (x86)\WinMend\File Copy\language\Persian\language.ini
-62618.3s C:\Program Files (x86)\WinMend\File Copy\language\Persian\lang_Persain.ico
-62618.1s C:\Program Files (x86)\WinMend\File Copy\language\Persian\liveupdate.exe.ini
-62617.7s C:\Program Files (x86)\WinMend\File Copy\language\Persian\ourproducts.html
-62617.3s C:\Program Files (x86)\WinMend\File Copy\language\Persian\register.html
-62617.3s C:\Program Files (x86)\WinMend\File Copy\language\Persian\Thumbs.db
-62617.1s C:\Program Files (x86)\WinMend\File Copy\language\Russia\
-62617.1s C:\Program Files (x86)\WinMend\File Copy\language\Russia\basefunc.dll.ini
-62617.0s C:\Program Files (x86)\WinMend\File Copy\language\Russia\language.ini
-62616.9s C:\Program Files (x86)\WinMend\File Copy\language\Russia\lang_Russian.ico
-62616.9s C:\Program Files (x86)\WinMend\File Copy\language\Russia\liveupdate.exe.ini
-62616.8s C:\Program Files (x86)\WinMend\File Copy\language\Russia\ourproducts.html
-62616.7s C:\Program Files (x86)\WinMend\File Copy\language\Russia\register.html
-62616.6s C:\Program Files (x86)\WinMend\File Copy\language\Russia\Thumbs.db
-62616.4s C:\Program Files (x86)\WinMend\File Copy\language\Turkish\
-62616.4s C:\Program Files (x86)\WinMend\File Copy\language\Turkish\basefunc.dll.ini
-62616.4s C:\Program Files (x86)\WinMend\File Copy\language\Turkish\language.ini
-62616.3s C:\Program Files (x86)\WinMend\File Copy\language\Turkish\lang_Turkish.ico
-62616.1s C:\Program Files (x86)\WinMend\File Copy\language\Turkish\liveupdate.exe.ini
-62616.0s C:\Program Files (x86)\WinMend\File Copy\language\Turkish\ourproducts.html
-62615.7s C:\Program Files (x86)\WinMend\File Copy\language\Turkish\register.html
-62615.6s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\
-62615.6s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\basefunc.dll.ini
-62615.5s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\language.ini
-62615.5s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\lang_Vietnamese.ico
-62615.3s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\liveupdate.exe.ini
-62615.2s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\ourproducts.html
-62615.1s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\register.html
-62615.1s C:\Program Files (x86)\WinMend\File Copy\language\Vietnamese\Thumbs.db
-62614.9s C:\Program Files (x86)\WinMend\File Copy\images\
-62614.9s C:\Program Files (x86)\WinMend\File Copy\images\aboutusbg.png
-62614.7s C:\Program Files (x86)\WinMend\File Copy\images\bg.png
-62614.6s C:\Program Files (x86)\WinMend\File Copy\images\blank.gif
-62614.4s C:\Program Files (x86)\WinMend\File Copy\images\button_t_h.png
-62613.9s C:\Program Files (x86)\WinMend\File Copy\images\button_t_n.png
-62613.8s C:\Program Files (x86)\WinMend\File Copy\images\buy01_h.gif
-62613.7s C:\Program Files (x86)\WinMend\File Copy\images\buy01_n.gif
-62613.6s C:\Program Files (x86)\WinMend\File Copy\images\fb.gif
-62613.5s C:\Program Files (x86)\WinMend\File Copy\images\h2.gif
-62613.3s C:\Program Files (x86)\WinMend\File Copy\images\helpup.gif
-62613.1s C:\Program Files (x86)\WinMend\File Copy\images\iepngfix.htc
-62613.0s C:\Program Files (x86)\WinMend\File Copy\images\line01.gif
-62613.0s C:\Program Files (x86)\WinMend\File Copy\images\logo.png
-62612.9s C:\Program Files (x86)\WinMend\File Copy\images\ourproduct.gif
-62612.9s C:\Program Files (x86)\WinMend\File Copy\images\p01.gif
-62612.8s C:\Program Files (x86)\WinMend\File Copy\images\p02.gif
-62612.7s C:\Program Files (x86)\WinMend\File Copy\images\p03.gif
-62612.7s C:\Program Files (x86)\WinMend\File Copy\images\p04.gif
-62612.6s C:\Program Files (x86)\WinMend\File Copy\images\p05.gif
-62612.6s C:\Program Files (x86)\WinMend\File Copy\images\p06.gif
-62612.5s C:\Program Files (x86)\WinMend\File Copy\images\p07.gif
-62612.5s C:\Program Files (x86)\WinMend\File Copy\images\p08.gif
-62612.4s C:\Program Files (x86)\WinMend\File Copy\images\p09.gif
-62612.3s C:\Program Files (x86)\WinMend\File Copy\images\p10.gif
-62612.3s C:\Program Files (x86)\WinMend\File Copy\images\progress_bar.gif
-62612.2s C:\Program Files (x86)\WinMend\File Copy\images\progress_barbg.gif
-62612.1s C:\Program Files (x86)\WinMend\File Copy\images\tabbg01.png
-62612.0s C:\Program Files (x86)\WinMend\File Copy\images\tabbg02.png
-62611.9s C:\Program Files (x86)\WinMend\File Copy\images\tabbg03.png
-62611.8s C:\Program Files (x86)\WinMend\File Copy\images\tabtitlebg.gif
-62611.7s C:\Program Files (x86)\WinMend\File Copy\images\td01.png
-62611.5s C:\Program Files (x86)\WinMend\File Copy\images\td02.png
-62611.5s C:\Program Files (x86)\WinMend\File Copy\images\td03.png
-62611.3s C:\Program Files (x86)\WinMend\File Copy\images\td04.png
-62611.1s C:\Program Files (x86)\WinMend\File Copy\images\td05.png
-62610.8s C:\Program Files (x86)\WinMend\File Copy\images\td06.png
-62610.7s C:\Program Files (x86)\WinMend\File Copy\images\td07.png
-62610.7s C:\Program Files (x86)\WinMend\File Copy\images\td08.png
-62610.6s C:\Program Files (x86)\WinMend\File Copy\images\td09.png
-62610.4s C:\Program Files (x86)\WinMend\File Copy\images\Thumbs.db
-62610.2s C:\Program Files (x86)\WinMend\File Copy\images\title.gif
-62610.1s C:\Program Files (x86)\WinMend\File Copy\images\trackbar_bg.BMP
-62609.9s C:\Program Files (x86)\WinMend\File Copy\images\trackbar_bg.png
-62609.5s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinMend\
-62609.5s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinMend\File Copy\
-62609.1s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinMend\File Copy\File Copy.lnk
-62609.1s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinMend\File Copy\Home Page.lnk
-62609.1s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinMend\File Copy\Uninstall File Copy.lnk
-62609.0s C:\Users\Jean-Marie\Desktop\video editor pour efm du mh2mol & data copy apps for youcam 8 & photodirector 9 essentials\WinMend File Copy.lnk
-62608.8s C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WinMend File Copy.lnk
-62608.8s C:\Program Files (x86)\WinMend\File Copy\winmend.url
-62607.4s C:\Users\Jean-Marie\Desktop\1ers giveaways & cadeaux récompense après lfs ultra & 100% sécurisé finalis\Mozilla Thunderbird.lnk
-61721.6s C:\Program Files (x86)\IObit\IObit Unlocker\
-61721.6s C:\Program Files (x86)\IObit\IObit Unlocker\unins000.dat
-61721.6s C:\Program Files (x86)\IObit\
-61721.6s C:\Program Files (x86)\IObit\IObit Unlocker\unins000.exe
-61721.5s C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.exe
-61721.0s C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.dll
-61720.9s C:\Program Files (x86)\IObit\IObit Unlocker\SpecialDir.ini
-61720.9s C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll
-61720.8s C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys
-61720.8s C:\Program Files (x86)\IObit\IObit Unlocker\Language\
-61720.8s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Arabic.lng
-61720.7s C:\Program Files (x86)\IObit\IObit Unlocker\Language\ChineseSimp.lng
-61720.7s C:\Program Files (x86)\IObit\IObit Unlocker\Language\ChineseTrad.lng
-61720.6s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Czech.lng
-61720.6s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Danish.lng
-61720.5s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Dutch.lng
-61720.5s C:\Program Files (x86)\IObit\IObit Unlocker\Language\English.lng
-61720.4s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Finnish.lng
-61720.4s C:\Program Files (x86)\IObit\IObit Unlocker\Language\German.lng
-61720.4s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Hungarian.lng
-61720.3s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Italian.lng
-61720.3s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Japanese.lng
-61720.3s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Polish.lng
-61720.2s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Russian.lng
-61720.1s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Spanish.lng
-61720.1s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Swedish.lng
-61720.1s C:\Program Files (x86)\IObit\IObit Unlocker\Language\Turkish.lng
-61720.0s C:\Program Files (x86)\IObit\IObit Unlocker\help\
-61720.0s C:\Program Files (x86)\IObit\IObit Unlocker\help\help.html
-61719.9s C:\Program Files (x86)\IObit\IObit Unlocker\help\img\
-61719.9s C:\Program Files (x86)\IObit\IObit Unlocker\help\img\1.png
-61719.8s C:\Program Files (x86)\IObit\IObit Unlocker\help\img\2.png
-61719.7s C:\Program Files (x86)\IObit\IObit Unlocker\help\img\3.png
-61719.6s C:\Program Files (x86)\IObit\IObit Unlocker\help\img\4.png
-61719.6s C:\Program Files (x86)\IObit\IObit Unlocker\help\img\5.png
-61719.5s C:\Program Files (x86)\IObit\IObit Unlocker\EULA.rtf
-61719.4s C:\Program Files (x86)\IObit\IObit Unlocker\fav.ico
-61719.2s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Unlocker\
-61719.1s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Unlocker\Désinstaller IObit Unlocker.lnk
-61719.0s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Unlocker\IObit Unlocker.lnk
-61718.9s C:\Users\Jean-Marie\Desktop\video editor pour efm du mh2mol & data copy apps for youcam 8 & photodirector 9 essentials\IObit Unlocker.lnk
-61718.9s C:\ProgramData\IObit\IObit Unlocker\
-61718.9s C:\ProgramData\IObit\IObit Unlocker\IObitUnlocker.ini
-61718.9s C:\ProgramData\IObit\
-61713.8s C:\Program Files (x86)\IObit\IObit Unlocker\unins000.msg
-61713.7s C:\ProgramData\IObit\IObit Unlocker\Main.ini
-61706.5s C:\Program Files (x86)\IObit\IObit Unlocker\update.ini
-61695.4s C:\Program Files\Ultracopier\
-61695.4s C:\Program Files\Ultracopier\ultracopier.exe
-61694.8s C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ultracopier\
-61694.6s C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ultracopier\Ultracopier.lnk
-61694.6s C:\Program Files\Ultracopier\COPYING.txt
-61694.5s C:\Program Files\Ultracopier\Qt5Core.dll
-61692.4s C:\Program Files\Ultracopier\Qt5Gui.dll
-61691.2s C:\Program Files\Ultracopier\Qt5Network.dll
-61690.3s C:\Program Files\Ultracopier\Qt5Widgets.dll
-61687.8s C:\Program Files\Ultracopier\Qt5Xml.dll
-61687.7s C:\Program Files\Ultracopier\README.txt
-61687.7s C:\Program Files\Ultracopier\libgcc_s_seh-1.dll
-61687.7s C:\Program Files\Ultracopier\libstdc++-6.dll
-61687.3s C:\Program Files\Ultracopier\libwinpthread-1.dll
-61687.3s C:\Program Files\Ultracopier\CopyEngine\
-61687.3s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\
-61687.2s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\copyEngine.dll
-61687.0s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\informations-rsync.xml
-61687.0s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\informations.xml
-61686.9s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ar\
-61686.9s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ar\translation.qm
-61686.9s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\
-61686.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\de\
-61686.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\de\translation.qm
-61686.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\el\
-61686.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\el\translation.qm
-61686.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\en\
-61686.8s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\en\translation.qm
-61686.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\es\
-61686.7s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\es\translation.qm
-61686.6s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\fr\
-61686.6s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\fr\translation.qm
-61686.6s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\hi\
-61686.6s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\hi\translation.qm
-61686.6s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\hu\
-61686.6s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\hu\translation.qm
-61686.6s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\id\
-61686.6s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\id\translation.qm
-61686.6s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\it\
-61686.5s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\it\translation.qm
-61686.5s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ja\
-61686.5s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ja\translation.qm
-61686.5s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ko\
-61686.5s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ko\translation.qm
-61686.5s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\nl\
-61686.5s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\nl\translation.qm
-61686.5s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\no\
-61686.5s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\no\translation.qm
-61686.5s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\pl\
-61686.5s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\pl\translation.qm
-61686.5s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\pt\
-61686.5s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\pt\translation.qm
-61686.5s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ru\
-61686.5s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\ru\translation.qm
-61686.4s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\th\
-61686.4s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\th\translation.qm
-61686.4s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\tr\
-61686.4s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\tr\translation.qm
-61686.4s C:\Program Files\Ultracopier\Languages\
-61686.4s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\zh\
-61686.4s C:\Program Files\Ultracopier\CopyEngine\Ultracopier\Languages\zh\translation.qm
-61686.4s C:\Program Files\Ultracopier\Languages\ar\
-61686.4s C:\Program Files\Ultracopier\Languages\ar\flag.png
-61686.3s C:\Program Files\Ultracopier\Languages\ar\informations.xml
-61686.3s C:\Program Files\Ultracopier\Languages\ar\qt.qm
-61686.3s C:\Program Files\Ultracopier\Languages\ar\translation.qm
-61686.3s C:\Program Files\Ultracopier\Languages\de\
-61686.3s C:\Program Files\Ultracopier\Languages\de\flag.png
-61686.3s C:\Program Files\Ultracopier\Languages\de\informations.xml
-61686.3s C:\Program Files\Ultracopier\Languages\de\translation.qm
-61686.3s C:\Program Files\Ultracopier\Languages\el\
-61686.2s C:\Program Files\Ultracopier\Languages\el\flag.png
-61686.2s C:\Program Files\Ultracopier\Languages\el\informations.xml
-61686.2s C:\Program Files\Ultracopier\Languages\el\translation.qm
-61686.2s C:\Program Files\Ultracopier\Languages\es\
-61686.2s C:\Program Files\Ultracopier\Languages\es\flag.png
-61686.2s C:\Program Files\Ultracopier\Languages\es\informations.xml
-61686.2s C:\Program Files\Ultracopier\Languages\es\qt.qm
-61686.2s C:\Program Files\Ultracopier\Languages\es\translation.qm
-61686.2s C:\Program Files\Ultracopier\Languages\fr\
-61686.1s C:\Program Files\Ultracopier\Languages\fr\flag.png
-61686.1s C:\Program Files\Ultracopier\Languages\fr\informations.xml
-61686.1s C:\Program Files\Ultracopier\Languages\fr\qt.qm
-61686.1s C:\Program Files\Ultracopier\Languages\fr\translation.qm
-61686.1s C:\Program Files\Ultracopier\Languages\hi\
-61686.1s C:\Program Files\Ultracopier\Languages\hi\flag.png
-61686.1s C:\Program Files\Ultracopier\Languages\hi\informations.xml
-61686.1s C:\Program Files\Ultracopier\Languages\hi\translation.qm
-61686.1s C:\Program Files\Ultracopier\Languages\hu\
-61686.1s C:\Program Files\Ultracopier\Languages\hu\flag.png
-61686.0s C:\Program Files\Ultracopier\Languages\hu\informations.xml
-61686.0s C:\Program Files\Ultracopier\Languages\hu\translation.qm
-61686.0s C:\Program Files\Ultracopier\Languages\id\
-61686.0s C:\Program Files\Ultracopier\Languages\id\flag.png
-61686.0s C:\Program Files\Ultracopier\Languages\id\informations.xml
-61686.0s C:\Program Files\Ultracopier\Languages\id\translation.qm
-61686.0s C:\Program Files\Ultracopier\Languages\it\
-61686.0s C:\Program Files\Ultracopier\Languages\it\flag.png
-61686.0s C:\Program Files\Ultracopier\Languages\it\informations.xml
-61686.0s C:\Program Files\Ultracopier\Languages\it\translation.qm
-61686.0s C:\Program Files\Ultracopier\Languages\ja\
-61685.9s C:\Program Files\Ultracopier\Languages\ja\flag.png
-61685.9s C:\Program Files\Ultracopier\Languages\ja\informations.xml
-61685.9s C:\Program Files\Ultracopier\Languages\ja\qt.qm
-61685.8s C:\Program Files\Ultracopier\Languages\ja\translation.qm
-61685.8s C:\Program Files\Ultracopier\Languages\ko\
-61685.8s C:\Program Files\Ultracopier\Languages\ko\flag.png
-61685.8s C:\Program Files\Ultracopier\Languages\ko\informations.xml
-61685.8s C:\Program Files\Ultracopier\Languages\ko\qt.qm
-61685.7s C:\Program Files\Ultracopier\Languages\ko\translation.qm
-61685.7s C:\Program Files\Ultracopier\Languages\nl\
-61685.7s C:\Program Files\Ultracopier\Languages\nl\flag.png
-61685.7s C:\Program Files\Ultracopier\Languages\nl\informations.xml
-61685.7s C:\Program Files\Ultracopier\Languages\nl\translation.qm
-61685.7s C:\Program Files\Ultracopier\Languages\no\
-61685.7s C:\Program Files\Ultracopier\Languages\no\flag.png
-61685.7s C:\Program Files\Ultracopier\Languages\no\informations.xml
-61685.7s C:\Program Files\Ultracopier\Languages\no\translation.qm
-61685.7s C:\Program Files\Ultracopier\Languages\pl\
-61685.7s C:\Program Files\Ultracopier\Languages\pl\flag.png
-61685.7s C:\Program Files\Ultracopier\Languages\pl\informations.xml
-61685.7s C:\Program Files\Ultracopier\Languages\pl\qt.qm
-61685.6s C:\Program Files\Ultracopier\Languages\pl\translation.qm
-61685.6s C:\Program Files\Ultracopier\Languages\pt\
-61685.6s C:\Program Files\Ultracopier\Languages\pt\flag.png
-61685.6s C:\Program Files\Ultracopier\Languages\pt\informations.xml
-61685.6s C:\Program Files\Ultracopier\Languages\pt\qt.qm
-61685.6s C:\Program Files\Ultracopier\Languages\pt\translation.qm
-61685.5s C:\Program Files\Ultracopier\Languages\ru\
-61685.5s C:\Program Files\Ultracopier\Languages\ru\flag.png
-61685.5s C:\Program Files\Ultracopier\Languages\ru\informations.xml
-61685.5s C:\Program Files\Ultracopier\Languages\ru\qt.qm
-61685.5s C:\Program Files\Ultracopier\Languages\ru\translation.qm
-61685.5s C:\Program Files\Ultracopier\Languages\th\
-61685.5s C:\Program Files\Ultracopier\Languages\th\flag.png
-61685.5s C:\Program Files\Ultracopier\Languages\th\informations.xml
-61685.5s C:\Program Files\Ultracopier\Languages\th\translation.qm
-61685.5s C:\Program Files\Ultracopier\Languages\tr\
-61685.4s C:\Program Files\Ultracopier\Languages\tr\flag.png
-61685.4s C:\Program Files\Ultracopier\Languages\tr\informations.xml
-61685.4s C:\Program Files\Ultracopier\Languages\tr\translation.qm
-61685.4s C:\Program Files\Ultracopier\Languages\zh\
-61685.4s C:\Program Files\Ultracopier\Languages\zh\flag.png
-61685.4s C:\Program Files\Ultracopier\Listener\catchcopy-v0002\
-61685.4s C:\Program Files\Ultracopier\Listener\catchcopy-v0002\informations.xml
-61685.4s C:\Program Files\Ultracopier\Languages\zh\informations.xml
-61685.4s C:\Program Files\Ultracopier\Languages\zh\translation.qm
-61685.4s C:\Program Files\Ultracopier\Listener\
-61685.4s C:\Program Files\Ultracopier\Listener\catchcopy-v0002\listener.dll
-61685.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\
-61685.4s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\catchcopy32.dll
-61685.4s C:\Program Files\Ultracopier\PluginLoader\
-61685.3s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\catchcopy64.dll
-61685.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\informations.xml
-61685.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\pluginLoader.dll
-61685.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\
-61685.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ar\
-61685.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ar\translation.qm
-61685.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\de\
-61685.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\de\translation.qm
-61685.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\el\
-61685.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\el\translation.qm
-61685.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\en\
-61685.2s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\en\translation.qm
-61685.1s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\es\
-61685.1s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\es\translation.qm
-61685.1s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\fr\
-61685.1s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\fr\translation.qm
-61685.1s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\hi\
-61685.1s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\hi\translation.qm
-61685.1s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\hu\
-61685.1s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\hu\translation.qm
-61685.1s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\id\
-61685.1s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\id\translation.qm
-61685.1s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\it\
-61685.1s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\it\translation.qm
-61685.1s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ja\
-61685.1s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ja\translation.qm
-61685.1s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ko\
-61685.0s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ko\translation.qm
-61685.0s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\nl\
-61685.0s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\nl\translation.qm
-61685.0s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\no\
-61685.0s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\no\translation.qm
-61685.0s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\pl\
-61685.0s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\pl\translation.qm
-61685.0s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\pt\
-61685.0s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\pt\translation.qm
-61685.0s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ru\
-61685.0s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\ru\translation.qm
-61685.0s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\th\
-61685.0s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\th\translation.qm
-61685.0s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\tr\
-61685.0s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\tr\translation.qm
-61684.9s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\zh\
-61684.9s C:\Program Files\Ultracopier\PluginLoader\catchcopy-v0002\Languages\zh\translation.qm
-61684.9s C:\Program Files\Ultracopier\SessionLoader\
-61684.9s C:\Program Files\Ultracopier\SessionLoader\Windows\
-61684.9s C:\Program Files\Ultracopier\SessionLoader\Windows\informations.xml
-61684.9s C:\Program Files\Ultracopier\SessionLoader\Windows\sessionLoader.dll
-61684.9s C:\Program Files\Ultracopier\Themes\
-61684.9s C:\Program Files\Ultracopier\Themes\Oxygen\
-61684.8s C:\Program Files\Ultracopier\Themes\Oxygen\informations.xml
-61684.8s C:\Program Files\Ultracopier\Themes\Oxygen\interface.dll
-61684.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\
-61684.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ar\
-61684.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ar\translation.qm
-61684.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\de\
-61684.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\de\translation.qm
-61684.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\el\
-61684.6s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\el\translation.qm
-61684.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\en\
-61684.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\en\translation.qm
-61684.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\es\
-61684.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\es\translation.qm
-61684.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\fr\
-61684.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\fr\translation.qm
-61684.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\hi\
-61684.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\hi\translation.qm
-61684.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\hu\
-61684.5s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\hu\translation.qm
-61684.4s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\id\
-61684.4s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\id\translation.qm
-61684.4s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\it\
-61684.4s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\it\translation.qm
-61684.4s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ja\
-61684.4s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ja\translation.qm
-61684.4s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ko\
-61684.4s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ko\translation.qm
-61684.3s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\nl\
-61684.3s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\nl\translation.qm
-61684.3s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\no\
-61684.3s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\no\translation.qm
-61684.3s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\pl\
-61684.3s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\pl\translation.qm
-61684.3s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\pt\
-61684.3s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\pt\translation.qm
-61684.3s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ru\
-61684.3s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\ru\translation.qm
-61684.3s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\th\
-61684.3s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\th\translation.qm
-61684.3s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\tr\
-61684.3s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\tr\translation.qm
-61684.3s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\zh\
-61684.3s C:\Program Files\Ultracopier\Themes\Oxygen\Languages\zh\translation.qm
-61684.3s C:\Program Files\Ultracopier\qt-plugins\
-61684.3s C:\Program Files\Ultracopier\qt-plugins\platforms\
-61684.3s C:\Program Files\Ultracopier\qt-plugins\platforms\qwindows.dll
-61676.2s C:\Users\Jean-Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ultracopier\Uninstall.lnk
-61676.1s C:\Program Files\Ultracopier\uninst.exe
-10093.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\
-10093.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\unins000.dat
-10092.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\unins000.exe
-10092.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\
-10092.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\0.png
-10092.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\1.png
-10092.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\2.png
-10092.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\3.png
-10092.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\4.png
-10092.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\5.png
-10092.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\6.png
-10092.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\7.png
-10092.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\8.png
-10092.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\9.png
-10092.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\account_disable.png
-10092.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\account_hover.png
-10092.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\account_normal.png
-10092.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\account_press.png
-10092.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\activation.png
-10092.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\activation_click.png
-10092.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\activation_disable.png
-10092.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\activation_over.png
-10092.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\active_leftdays.png
-10092.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\ArrowL.png
-10092.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\arrowU.png
-10092.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\arrow_down.png
-10092.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\arrow_up.png
-10092.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\blink.gif
-10092.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\buy.png
-10092.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\buy_click.png
-10091.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\buy_disable.png
-10091.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\buy_over.png
-10091.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\checkbox_no.png
-10091.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\checkbox_semi_election.png
-10091.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\checkbox_yes.png
-10091.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\close.png
-10091.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\close_disable.png
-10091.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\close_hover.png
-10091.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\close_normal.png
-10091.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\close_press.png
-10091.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\complete_normal.png
-10091.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\defaultFolder.png
-10091.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\disconnect.png
-10091.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon.ico
-10091.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_about_down.png
-10091.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_disable.png
-10091.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_folder_disable.png
-10091.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_folder_hover.png
-10091.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_folder_normal.png
-10091.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_folder_press.png
-10091.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_hover.png
-10091.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_normal.png
-10091.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_add_press.png
-10091.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_attribute_disable.png
-10091.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_attribute_hover.png
-10091.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_attribute_nomral.png
-10091.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_attribute_normal.png
-10091.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_attribute_press.png
-10091.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_cloud.png
-10091.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_cloud_1.png
-10091.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_cloud_active.png
-10091.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_cloud_active_1.png
-10090.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_cloud_hover.png
-10090.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_cloud_press.png
-10090.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_computer.png
-10090.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_computer_1.png
-10090.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_computer_active.png
-10090.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_computer_active_1.png
-10090.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_computer_hover.png
-10090.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_computer_press.png
-10090.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_create.png
-10090.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_create_down.png
-10090.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_create_hover.png
-10090.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_download_disable.png
-10090.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_download_hover.png
-10090.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_download_normal.png
-10090.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_download_press.png
-10090.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_ftp.png
-10090.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_ftp_1.png
-10090.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_ftp_active.png
-10090.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_ftp_active_1.png
-10090.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_ftp_hover.png
-10090.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_ftp_press.png
-10090.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_help_down.png
-10090.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_logs_down.png
-10090.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_setting.png
-10090.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_settings.png
-10090.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_setting_down.png
-10090.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_setting_hover.png
-10090.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_disable.png
-10090.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_hover.png
-10090.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_left_hover.png
-10090.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_left_normal.png
-10090.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_left_press.png
-10090.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_left_s_hover.png
-10090.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_left_s_normal.png
-10090.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_left_s_press.png
-10090.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_normal.png
-10090.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_press.png
-10090.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_right_hover.png
-10090.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_right_normal.png
-10090.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_right_press.png
-10090.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_right_s_hover.png
-10089.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_right_s_normal.png
-10089.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_right_s_press.png
-10089.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_s_disable.png
-10089.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_s_hover.png
-10089.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_s_normal.png
-10089.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_synchronou_s_press.png
-10089.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\icon_upgrade_down.png
-10089.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_arrow1_close_hover.png
-10089.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_arrow1_open.png
-10089.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_arrow1_open_hover.png
-10089.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_arrow_open_hover.png
-10089.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_cloud.png
-10089.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_cloud_hover.png
-10089.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_computer.png
-10089.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_computer_hover.png
-10089.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_ftp.png
-10089.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\list_ftp_hover.png
-10089.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login_cloud.png
-10089.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login_cloud_green.png
-10089.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login_ftp.png
-10089.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login_ftp_green.png
-10089.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\logo_title.png
-10089.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_disable.png
-10089.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_hover.png
-10089.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_normal.png
-10089.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_press.png
-10089.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_restore_disable.png
-10089.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_restore_hover.png
-10089.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_restore_normal.png
-10089.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\maximize_restore_press.png
-10089.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\minimize_disable.png
-10089.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\minimize_hover.png
-10089.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\minimize_normal.png
-10089.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\minimize_press.png
-10089.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\pause_disable.png
-10088.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\pause_hover.png
-10088.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\pause_normal.png
-10088.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\pause_press.png
-10088.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\radio_no_hover.png
-10088.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\radio_no_normal.png
-10088.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\radio_no_press.png
-10088.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\radio_no_press_.png
-10088.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\radio_yes_hover.png
-10088.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\radio_yes_normal.png
-10088.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\radio_yes_press.png
-10088.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\select_path_cloud.png
-10088.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\select_path_computer.png
-10088.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\select_path_ftp.png
-10088.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\start.png
-10088.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\start_disable.png
-10088.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\start_hover.png
-10088.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\start_loading.gif
-10088.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\start_normal.png
-10088.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\start_press.png
-10088.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\switch_off.png
-10088.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\switch_on.png
-10088.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow.png
-10088.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_hover.png
-10088.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_left.png
-10088.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_left_hover.png
-10088.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_left_press.png
-10088.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_press.png
-10088.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_right.png
-10088.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_right_hover.png
-10088.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\synchronous_arrow_right_press.png
-10088.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\sync_complete.png
-10088.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\sync_error.png
-10088.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\sync_go.png
-10088.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\sync_lock.png
-10088.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\tray_setting_disable.png
-10088.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\tray_setting_hover.png
-10088.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\tray_setting_normal.png
-10088.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\tray_setting_press.png
-10088.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\
-10088.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\1.png
-10087.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\10.png
-10087.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\11.png
-10087.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\12.png
-10087.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\13.png
-10087.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\14.png
-10087.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\15.png
-10087.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\16.png
-10087.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\17.png
-10087.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\18.png
-10087.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\19.png
-10087.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\2.png
-10087.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\20.png
-10087.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\3.png
-10087.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\4.png
-10087.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\5.png
-10087.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\6.png
-10087.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\7.png
-10087.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\8.png
-10087.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\loading\9.png
-10087.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\
-10087.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\1.png
-10087.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\10.png
-10087.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\11.png
-10087.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\12.png
-10087.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\13.png
-10087.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\14.png
-10087.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\15.png
-10087.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\16.png
-10087.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\17.png
-10087.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\18.png
-10087.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\19.png
-10087.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\2.png
-10087.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\20.png
-10087.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\3.png
-10087.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\4.png
-10087.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\5.png
-10086.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\6.png
-10086.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\7.png
-10086.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\8.png
-10086.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\login\9.png
-10086.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\
-10086.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0001.png
-10086.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0002.png
-10086.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0003.png
-10086.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0004.png
-10086.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0005.png
-10086.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0006.png
-10086.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0007.png
-10086.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0008.png
-10086.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0009.png
-10086.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0010.png
-10086.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0011.png
-10086.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0012.png
-10086.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0013.png
-10086.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0014.png
-10086.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0015.png
-10086.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0016.png
-10086.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0017.png
-10086.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0018.png
-10086.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0019.png
-10086.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0020.png
-10086.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0021.png
-10086.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0022.png
-10086.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0023.png
-10086.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\res\syncing\loading_icon0024.png
-10086.3s C:\Users\Jean-Marie\AppData\Roaming\eufsc\
-10086.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\
-10086.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\fsmainui.qm
-10086.2s C:\Users\Jean-Marie\AppData\Roaming\eufsc\canrun.data
-10086.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\string\
-10086.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\string\errorindex.ini
-10086.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\string\error_eu.ini
-10086.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\string\url.ini
-10086.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\string\web_eu.ini
-10086.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\BPQtLib.dll
-10085.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\cacerts.txt
-10085.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\ComSetup.exe
-10085.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\ComSetupx64.exe
-10085.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EaseUSEverySyncCache.exe
-10084.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\errReport.exe
-10084.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\ESLoadService.exe
-10084.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EUActive.dll
-10083.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EuActiveOnline.dll
-10083.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EuFileSyncLive.exe
-10083.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EuFileSyncLive.exe.config
-10083.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EUFyncFtp.dll
-10083.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EuNetDetect.exe
-10083.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EuPipe.dll
-10082.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EuShlAgent.dll
-10082.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EUSyncExtMenu.dll
-10082.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EUSyncExtMenux64.dll
-10082.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EverySync.exe
-10081.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EverySyncExplorerOverlay.dll
-10081.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\EverySyncExplorerOverlayX64.dll
-10081.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\fscdb.dll
-10081.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\fscLog.dll
-10080.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\FSyncCC.dll
-10080.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\FSyncCCProxy.dll
-10080.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\GatherHistroySyncTask.exe
-10080.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\GatherHistroySyncTaskX64.exe
-10079.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\GDStorage.exe
-10079.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\icudt52.dll
-10075.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\icuin52.dll
-10075.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\icuuc52.dll
-10075.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\idfield
-10075.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\libeay32.dll
-10074.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\Microsoft.Live.dll
-10074.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\Microsoft.VC90.CRT.manifest
-10074.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\msvcm90.dll
-10074.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\msvcp120.dll
-10074.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\msvcp90.dll
-10074.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\msvcr120.dll
-10074.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\msvcr90.dll
-10074.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\python27.dll
-10073.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\python27.zip
-10071.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\Qt5Core.dll
-10070.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\Qt5Gui.dll
-10069.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\Qt5Widgets.dll
-10068.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\sqlite.dll
-10068.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\ssleay32.dll
-10067.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\StorageMgr.dll
-10067.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\uexper.dll
-10067.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\uexper.ini
-10067.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\uexperice.exe
-10067.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\uiconfig
-10067.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\UpdateInfo.dll
-10066.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\
-10066.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\bz2.pyd
-10066.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\dropbox.egg
-10066.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\pyexpat.pyd
-10066.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\select.pyd
-10066.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\sqlite3.dll
-10066.4s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\tcl85.dll
-10066.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\tclpip85.dll
-10066.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\tk85.dll
-10065.8s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\unicodedata.pyd
-10065.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\winsound.pyd
-10065.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_bsddb.pyd
-10065.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_ctypes.pyd
-10065.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_ctypes_test.pyd
-10065.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_elementtree.pyd
-10065.2s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_hashlib.pyd
-10065.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_msi.pyd
-10065.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_multiprocessing.pyd
-10065.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_socket.pyd
-10064.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_sqlite3.pyd
-10064.9s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_ssl.pyd
-10064.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_testcapi.pyd
-10064.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\DLLs\_tkinter.pyd
-10064.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\iconengines\
-10064.6s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\iconengines\qsvgicon.dll
-10064.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\imageformats\
-10064.5s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\imageformats\qgif.dll
-10064.3s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\imageformats\qico.dll
-10064.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\platforms\
-10064.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\platforms\qminimal.dll
-10064.0s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\platforms\qoffscreen.dll
-10063.7s C:\Program Files (x86)\EaseUS\EaseUS EverySync\bin\platforms\qwindows.dll
-10063.3s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS EverySync 3.0\
-10062.5s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS EverySync 3.0\EaseUS EverySync 3.0.lnk
-10062.4s C:\Users\Jean-Marie\Desktop\location 1 tache gratuite copie auto youcam 8\EaseUS EverySync 3.0.lnk
-10062.2s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS EverySync 3.0\Uninstall EaseUS EverySync 3.0.lnk
-10062.2s C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS EverySync 3.0\Visit EaseUS on the Web.url
-10062.1s C:\Program Files (x86)\EaseUS\EaseUS EverySync\unins000.msg
-10053.6s C:\Users\Jean-Marie\AppData\Roaming\eufsc\template.dat
-10053.4s C:\Users\Jean-Marie\AppData\Roaming\eufsc\eufscdb.db
-10045.7s C:\Users\Jean-Marie\AppData\Roaming\eufsc\uexper.ini
-10045.6s C:\Users\Jean-Marie\AppData\Roaming\eufsc\idfield
-10045.3s C:\Users\Jean-Marie\AppData\Roaming\eufsc\easeusue.log
-10029.9s C:\Users\Jean-Marie\Desktop\location 1 tache gratuite copie auto youcam 8\
-88.6s C:\Users\Jean-Marie\Desktop\Réinitialisation d'internet.bat
-88.6s C:\Users\Jean-Marie\Desktop\réparation internet.txt
-88.4s C:\Users\Jean-Marie\Desktop\autres applications\DAEMON Tools Lite.lnk
-88.4s C:\Users\Jean-Marie\Desktop\autres applications\Dashlane.lnk
-88.4s C:\Users\Jean-Marie\Desktop\autres applications\Free Download Manager 5.lnk
-88.3s C:\Users\Jean-Marie\Desktop\autres applications\Free Partition Manager.lnk
-88.3s C:\Users\Jean-Marie\Desktop\autres applications\OUTDATEfighter.lnk
-88.2s C:\Users\Jean-Marie\Desktop\autres applications\PASSWORDfighter.lnk
-87.9s C:\Users\Jean-Marie\Desktop\autres applications\Software Informer.lnk
-87.9s C:\Users\Jean-Marie\Desktop\autres applications\Software Update Pro.lnk
-87.6s C:\Users\Jean-Marie\Desktop\autres applications\Video Watermark Pro.lnk
-87.6s C:\Users\Jean-Marie\Desktop\autres applications\WinRAR.lnk
-87.5s C:\Users\Jean-Marie\Desktop\autres applications\ZHPCleaner.lnk
-87.4s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\
-87.4s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\240 e de plus à payer avec le 1ère logiciel Cewbé d (1).txt
-87.4s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\240 e de plus à payer avec le 1ère logiciel Cewbé d (1)_txt.zip
-87.4s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\240 e de plus à payer avec le 1ère logiciel Cewbé d.txt
-87.3s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\240 e de plus à payer avec le 1ère logiciel Cewbé d_txt.zip
-87.3s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\achats ecb janv 2016.txt
-87.2s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\clés de lic rebit saveme et dt pro 7.txt
-87.2s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\Demande D'aide 5 PC micro-astuces.txt
-87.2s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\Me, Myself and I (Beyoncé song).epub
-87.1s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\Rebit 5 Et Daemon Tools Pro 7 Licenses.txt
-85.9s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\rebit5_W8.1_AQFR.exe
-77.4s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\rebitpro-setup-5.1.3001.14505.exe
-61.8s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\rebitpro-setup-5.1.3001.14505_exe.zip
-41.7s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\rebitpro-setup-browser-5.1.3001.exe
-31.9s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\rebitpro-setup-browser-5.1.3001_exe.zip
-24.1s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\topic pc 1.rtf
-24.0s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\topic pc 2.rtf
-24.0s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\topic pc 3 à 5.rtf
-24.0s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\
-23.9s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\Demande D'aide 5 PC micro-astuces.txt
-23.9s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\topic pc 1.rtf
-23.9s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\topic pc 2.rtf
-23.8s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\topic pc 3 à 5.rtf
-23.8s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prél PC 3-4-5\
-23.8s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prél PC 3-4-5\AdsFix.txt
-23.8s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prél PC 3-4-5\Pre_Scan.txt
-23.5s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prél PC 3-4-5\UsbFix_Report.txt
-22.5s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\
-22.4s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\AdwCleaner[C0].txt
-22.4s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\Look_my_hardware.txt
-22.3s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\mbam application rapport by malwarebytes.txt
-22.2s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\QuickDiag.txt
-22.1s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\RKreport_DEL_01202017_205524.log
-21.9s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\UsbFix_Report.txt
-21.1s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 1\ZHPDiag.txt
-21.1s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 2\
-21.1s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 2\Pre_Scan.txt
-21.0s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports mét prélim PC 2\UsbFix [Clean 1] DESKTOP-CGKKC4S.txt
-21.0s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports prélim pc 3 tour compaq remix\
-20.9s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports prélim pc 3 tour compaq remix\AdsFix.txt
-20.7s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\rapports prélim pc 3 tour compaq remix\UsbFix_Report 22 1 17 tour compaq remix.txt
-19.7s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\Win 7 tools\
-19.4s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\Win 7 tools\look-my-hardware_2_02.01.17.1.exe
-18.8s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\Win 7 tools\quickdiag_3_23.01.17.4.exe
-17.9s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\Win 7 tools\RepairDNS.exe
-17.1s C:\Users\Jean-Marie\Desktop\cadeaux lfsu100%sf pt 6 24 jan & jessica-j my myself m moulue\demande d'aide pc 1 à 5 -wintobootic, zalm, sand con, arch-g ram\Win 7 tools\ResetBrowser.exe
-16.8s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\
-16.8s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\Copy Handler.lnk
-16.8s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\ExtremeCopy Pro.lnk
-16.7s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\FastCopy.lnk
-16.7s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\MiniCopier.lnk
-16.6s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\Roadkil's Unstoppable Copier.lnk
-16.6s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\TeraCopy.lnk
-16.6s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\WinMend File Copy.lnk
-16.5s C:\Users\Jean-Marie\Desktop\data copy tools for photodirector 9 & youcam 8\WinRoboCopy.lnk
-16.5s C:\Users\Jean-Marie\Desktop\desktop cleaner - barr - pour 1ère image bng after lfsu & 100%S f du 31 janv\
-16.5s C:\Users\Jean-Marie\Desktop\desktop cleaner - barr - pour 1ère image bng after lfsu & 100%S f du 31 janv\CyberLink WaveEditor 2.lnk
-16.5s C:\Users\Jean-Marie\Desktop\desktop cleaner - barr - pour 1ère image bng after lfsu & 100%S f du 31 janv\desktop.ini
-16.5s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\
-16.5s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\
-14.4s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\42ustcdn.exe
-14.2s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\adwcleaner_6.043.exe
-13.1s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\Appsdiagnostic10.diagcab
-13.1s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\auto-SFC.zip
-13.0s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\bluescreenview-x64.zip
-12.9s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\bluescreenview.zip
-12.8s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\chrome_cleanup_tool.exe
-12.3s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\ComIntRep_2852.zip
-8.4s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\ComIntRep_2852_Setup.exe
-7.8s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\dbr-1.3.0.0(2).zip
-7.5s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\dbr-1.3.0.0.zip
-6.7s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\delfix_1.013.exe
-6.4s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\FGdabWZafsB_The-Restore-Point-Créator.rar
-5.8s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\FRST.exe
0.0s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\FRST64.exe
1.2s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\FSS.exe
1.5s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\gmer(2).zip
1.7s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\gmer(3).zip
1.9s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\gmer.zip
2.2s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\guw-guide-utile-windows_1.886.zip
4.9s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\hdhacker.zip
5.7s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\iExplore.exe
6.1s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\JRT(2).exe
11.8s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\JRT.exe
12.7s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\loadtool_7.0.0.exe
40.5s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\logonfix_1.1.exe
46.8s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\mb3-setup-consumer-3.0.6.1469(2).exe
69.2s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\mb3-setup-consumer-3.0.6.1469.exe
82.7s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\mbae-setup-1.09.1.1334.exe
84.9s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\MBRBackup.exe
85.4s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\MiniToolBox.exe
89.9s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\MKV.exe
90.3s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\NetAdapterRepair1.2(2).exe
90.6s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\NetAdapterRepair1.2.exe
90.8s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\NetFxRepairTool.exe
99.3s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\OneClick2RP.exe
99.6s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\Outils_depannage_Windows.pdf
100.2s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\Privacy Statement for Microsoft .NET Repair tool.rtf
100.2s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\regassassin-setup-1.03.exe
128.0s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\Report_CHKDSK.exe
128.5s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\ResetBrowser(2).exe
129.3s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\ResetBrowser.exe
129.9s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\ResetWUEng.zip
130.2s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\rkill(2).zip
131.2s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\rkill.com
132.5s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\rkill.exe
133.1s C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\rkill.zip
468.1s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\Pre_Scan_Donate.lnk.vir
470.8s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\ashampoo_zip_2017_25435.exe
470.8s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\Pre_Scan_Restore.lnk.vir
478.1s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\CCleaner.lnk
478.1s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\CyberLink LabelPrint 2.5.lnk
478.2s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\DAEMON Tools Lite.lnk
478.2s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\EaseUS EverySync 3.0.lnk
478.2s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\EaseUS Todo PCTrans.lnk
478.3s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Easy Photo Unblur.lnk
478.3s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Foxit Reader.lnk
478.4s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Free Download Manager 5.lnk
478.4s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\IObit Uninstaller.lnk
478.5s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\IObit Unlocker.lnk
478.5s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Malwarebytes.lnk
478.6s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Mozilla Thunderbird.lnk
478.6s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Nero BackItUp.lnk
479.1s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\pre-scan_7_31.01.17.1.exe
479.9s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Reflect.lnk
480.0s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\SDFormatterv4.zip
482.9s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\RogueKiller.lnk.vir
485.4s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\Sophos Clean.lnk.vir
488.2s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\TeraCopy.lnk.vir
489.2s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\setup.exe
495.9s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\siinst.exe
495.9s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\TweakBit Anti-Malware.lnk.vir
499.4s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\UCheck.lnk.vir
501.9s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\UsbFix.lnk.vir
502.5s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Unlocker_Portable_1.9.2_32-64_Multilingual.exe
502.6s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\VLC media player.lnk
502.7s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\WinToUSB.lnk
504.4s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\Voodoo Shield.lnk.vir
507.0s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\Wise JetSearch.lnk.vir
509.7s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\ZHPCleaner.lnk.vir
512.1s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\M\ZHPDiag.lnk.vir
512.8s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\WinToUSB_Free.exe
514.6s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Wondershare Filmora.lnk
514.6s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\Wondershare MePub.lnk
514.7s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\ZHPCleaner.lnk
514.7s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\SDFormatterv4\
515.5s C:\Users\Jean-Marie\Desktop\simsjo - autres applications\SDFormatterv4\setup.exe
518.4s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\J\
518.4s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\FilesOnReboot.txt
520.9s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\R\
523.4s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\S\
523.4s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\S\Autorun.inf.vir
524.8s C:\Users\Jean-Marie\AppData\Roaming\UsbFix\Quarantine\S\start.exe.vir
614.9s C:\Users\Jean-Marie\Documents\CyberLink_Power2Go_Downloader.exe
615.4s C:\Users\Jean-Marie\Documents\Disk Fixer.rtf
615.4s C:\Users\Jean-Marie\Documents\error message internet framakey salix.PNG
624.5s C:\Users\Jean-Marie\Documents\filmora_setup_full1084.exe
624.9s C:\Users\Jean-Marie\Documents\install.txt
625.4s C:\Users\Jean-Marie\Documents\KCinst.exe
625.7s C:\Users\Jean-Marie\Documents\license-gpl3.txt
626.0s C:\Users\Jean-Marie\Documents\OneDriveSetup.exe
650.7s C:\Users\Jean-Marie\Documents\PortableApps.com_Platform_Setup_14.2.paf.exe
652.0s C:\Users\Jean-Marie\Documents\processclose_2_08.01.17.1.exe
654.1s C:\Users\Jean-Marie\Documents\ResetBrowser.exe
654.6s C:\Users\Jean-Marie\Documents\setup.exe
654.8s C:\Users\Jean-Marie\Documents\setup.msi
655.0s C:\Users\Jean-Marie\Documents\starburn.txt
655.1s C:\Users\Jean-Marie\Documents\supercopier-portable-windows-x86-1.2.3.5.zip
659.1s C:\Users\Jean-Marie\Documents\supercopier-windows-x86-1.2.3.5-setup.exe
662.0s C:\Users\Jean-Marie\Documents\ultracopier-windows-x86-1.2.3.5-setup.exe
664.0s C:\Users\Jean-Marie\Documents\wilson strike - post pour son & micro sd après ultra formatage nettoyer tout le lecteur forum saamu.rtf
664.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\
664.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\
664.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Applist.dat
664.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Complete.wav
664.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Help.CHM
666.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\unin00000.exe
666.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Uninstall.txt
666.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Updata.dat
667.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Upgrade.exe
670.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\VideoWatermark.exe
671.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\
671.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\avcodec-54.dll
673.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\avdevice-54.dll
673.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\avfilter-3.dll
673.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\avformat-54.dll
674.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\avutil-52.dll
674.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\OldFilm.Dat
674.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\SDL.dll
675.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\swresample-0.dll
675.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Data\swscale-2.dll
675.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\
675.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\
675.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\01.gif
675.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\010.gif
675.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\011.gif
675.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\012.gif
675.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\013.gif
675.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\014.gif
675.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\015.gif
675.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\016.gif
675.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\017.gif
675.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\018.gif
675.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\019.gif
675.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\02.gif
675.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\020.gif
675.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\021.gif
675.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\022.gif
675.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\023.gif
675.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\024.gif
675.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\025.gif
675.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\026.gif
675.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\027.gif
675.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\028.gif
675.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\029.gif
676.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\03.gif
676.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\030.gif
676.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\031.gif
676.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\032.gif
676.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\033.gif
676.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\034.gif
676.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\035.gif
676.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\036.gif
676.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\037.gif
676.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\038.gif
676.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\039.gif
676.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\04.gif
676.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\040.gif
676.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\041.gif
676.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\042.gif
676.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\043.gif
676.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\044.gif
676.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\045.gif
676.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\046.gif
676.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\047.gif
676.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\048.gif
676.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\049.gif
676.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\05.gif
676.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\050.gif
676.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\051.gif
676.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\052.gif
676.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\053.gif
676.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\054.gif
677.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\055.gif
677.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\056.gif
677.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\057.gif
677.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\058.gif
677.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\059.gif
677.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\06.gif
677.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\060.gif
677.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\061.gif
677.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\062.gif
677.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\063.gif
677.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\064.gif
677.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\065.gif
677.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\066.gif
677.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\067.gif
677.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\068.gif
677.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\069.gif
677.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\07.gif
677.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\070.gif
677.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\071.gif
677.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\072.gif
677.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\073.gif
677.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\08.gif
677.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Animated\09.gif
677.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\
677.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\01.png
677.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\02.png
677.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\03.png
678.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\04.png
678.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\05.png
678.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\06.png
678.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\07.png
678.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\08.png
678.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\09.png
678.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\10.png
678.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\11.png
678.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\12.png
678.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\13.png
678.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\14.png
678.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Business\15.png
678.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\
678.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\01.png
678.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\02.png
678.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\03.png
678.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\04.png
678.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\05.png
678.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\06.png
678.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\07.png
678.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\08.png
678.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\09.png
678.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\10.png
678.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\11.png
678.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\12.png
678.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\13.png
678.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\14.png
678.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\15.png
678.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\16.png
679.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\17.png
679.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\18.png
679.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\19.png
679.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Cute\20.png
679.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\
679.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\01.png
679.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\02.png
679.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\03.png
679.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\04.png
679.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\05.png
679.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\06.png
679.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\07.png
679.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\08.png
679.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\09.png
679.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\10.png
679.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Digital\11.png
679.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\
679.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\01.png
679.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\02.png
679.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\03.png
679.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\04.png
679.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\05.png
679.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\06.png
679.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\07.png
679.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\08.png
679.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\09.png
679.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\10.png
679.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\11.png
680.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\12.png
680.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\13.png
680.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\14.png
680.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Feature\15.png
680.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\
680.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\01.png
680.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\02.png
680.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\03.png
680.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\04.png
680.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\05.png
680.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\06.png
680.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\07.png
680.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\08.png
680.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\09.png
680.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\10.png
680.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\11.png
680.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\12.png
680.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\13.png
680.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\14.png
680.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\15.png
680.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Festival\16.png
680.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\
680.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\01.png
680.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\02.png
680.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\03.png
680.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\04.png
681.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\05.png
681.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\06.png
681.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\07.png
681.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\08.png
681.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\09.png
681.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\10.png
681.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\11.png
681.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\12.png
681.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\13.png
681.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Icon\14.png
681.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\
681.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\01.png
681.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\02.png
681.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\03.png
681.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\04.png
681.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\05.png
681.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\06.png
681.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\07.png
681.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\08.png
681.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\09.png
681.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\10.png
681.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\11.png
681.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\12.png
681.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\13.png
681.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\14.png
681.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\15.png
681.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\16.png
682.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Life\17.png
682.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\
682.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\01.png
682.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\02.png
682.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\03.png
682.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\04.png
682.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\05.png
682.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\06.png
682.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\07.png
682.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\08.png
682.2s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\09.png
682.3s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\10.png
682.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\11.png
682.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\12.png
682.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Love\13.png
682.4s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\
682.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\01.png
682.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\02.png
682.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\03.png
682.5s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\04.png
682.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\05.png
682.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\06.png
682.6s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\07.png
682.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\08.png
682.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\09.png
682.7s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\10.png
682.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\11.png
682.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\12.png
682.8s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\13.png
682.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\14.png
682.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\15.png
682.9s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\16.png
683.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\17.png
683.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\18.png
683.0s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\Protection\19.png
683.1s C:\Users\Jean-Marie\Documents\AoaoPhoto Digital Studio\Video Watermark Pro\Example\User\
683.1s C:\Users\Jean-Marie\Documents\Nero BackItUp Device Backup\
683.1s C:\Users\Jean-Marie\Documents\PASSWORDfighter Passwords\
683.1s C:\Users\Jean-Marie\Documents\PASSWORDfighter Passwords\desktop.ini
683.1s C:\Users\Jean-Marie\Documents\pcmover proffessionnal license code & setup\
683.1s C:\Users\Jean-Marie\Documents\pcmover proffessionnal license code & setup\Pc tranfert v10 proffessionnal by avanquest licens.txt
683.2s C:\Users\Jean-Marie\Documents\pcmover proffessionnal license code & setup\PCmover_10_Pro_UG_FRE.pdf
687.4s C:\Users\Jean-Marie\Documents\pcmover proffessionnal license code & setup\pcmover_fr_10.exe
101457.1s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileNav_GG.png
101457.6s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileNav_FF.png
101458.0s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileNav_OP.png
101458.4s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileNav_IE.png
101458.8s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileCluff_FR.txt
101459.2s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileCluff_EN.txt
101459.7s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileIcone.ico
101460.2s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileBGSocial.png
101460.6s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileBroom.png
101461.2s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileForum.png
101461.6s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileCheck.png
101462.0s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileRapport.png
101462.7s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileTransGui.jpg
101463.2s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFilelogo-texte.png
101463.7s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileClose.png
101464.1s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileDetected.png
101464.7s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileExit-40.png
101465.6s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileInfo.png
101466.3s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFilePercent.png
101466.9s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileQuestion.png
101467.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\cc_check[2].js
101467.2s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileSearch.png
101467.6s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFilePayPal.png
101468.0s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileFB.png
101468.4s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileGP.png
101468.7s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileQuar.png
101469.2s C:\Users\Jean-Marie\AppData\Local\Temp\ZHPCFileExit-40.bmp
101470.0s C:\Users\Jean-Marie\AppData\Roaming\ZHP\ZHPCleaner.exe
101470.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\css[1].css
101470.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\jquery.min[2].js
101470.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\jquery-ui.min[1].js
101472.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\MQU89XM7.cookie
101473.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\font-awesome[1].css
101473.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\bootstrap.min[1].css
101473.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\bootstrap.min[1].js
101476.2s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6AF4EE75E3A4ABA658C0087EB9A0BB5B_AE5D366FD4C084FC03F41D468B6EDD57
101476.3s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6AF4EE75E3A4ABA658C0087EB9A0BB5B_AE5D366FD4C084FC03F41D468B6EDD57
101476.6s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\74F831100DEB0B8799203064F3E38B68
101476.6s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\74F831100DEB0B8799203064F3E38B68
101482.6s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\AOIQLNB1\zhpcleaner_version[1].txt
101482.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\T3LFLKU2\traffic.getmyads[1].xml
101483.0s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\D530B267735F8FA434C0E244F20BC934
101483.0s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\D530B267735F8FA434C0E244F20BC934
101493.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\9OW9MNR7.cookie
101494.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\banner[1].htm
101494.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\atrk[1].js
101495.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\fontawesome-webfont[1].woff2
101496.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\Cache\6XO3B951\favicon[3].ico
101497.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\NJP7D1I5.cookie
101502.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\atrk[1].gif
101506.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\test[1].png
101507.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\affs[3].js
101508.6s C:\Users\Jean-Marie\ZHPCleaner.exe
101515.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\cc_check[3].js
101515.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\get[3].js
101540.1s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\91D45B9FD0AB831D005595625889DE9CAAECD35C
101542.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{418F29B2-07F5-11E7-BCAB-4C72B9F956A2}.dat
101545.8s C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\datareporting\archived\2017-03\1489409602203.477a2cfb-2171-47a5-ac44-1cc85aabd2ef.main.jsonlz4
101549.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\display[2].htm
101554.4s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\CDA944DF6D23F8D43AD62F67F33315E71D13F538
101565.2s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\A3C5E5085BDC426D38C288A0113E53E2E3EBE9C2
101568.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\affs[4].js
101573.1s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\A5981DF8553F27134D8D3636465D0C8786A907AA
101587.5s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\FAE8288709E1AC13EEC6B1B20505ACF75EB930F7
101589.2s C:\Users\Jean-Marie\AppData\Local\Temp\a82b526ea2f1435c89706334fa2c91ed\
101590.5s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_SS
101600.4s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\BC1720C9DD5D545A9F78C4EF02B0B2B6A09E4B63
101610.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\u[4].js
101610.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{6A24EFF8-07F5-11E7-BCAB-4C72B9F956A2}.dat
101611.7s C:\Users\Jean-Marie\AppData\Local\Temp\ba1998de128f4f7ea832954d6ab9b863\
101611.7s C:\Users\Jean-Marie\AppData\Local\Temp\ba1998de128f4f7ea832954d6ab9b863\Setup__20877.exe
101619.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\0AF54N6A.cookie
101621.6s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_SS2
101625.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\ups[1].htm
101628.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\base_css[1].css
101628.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\flash_css[1].css
101628.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\helpers[1].js
101628.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\active_button_css[1].css
101629.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\a_background[1].jpg
101629.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\dl.min[1].js
101640.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\chrome_download_hint[1].png
101640.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\chrome_arrow_anim[1].gif
101640.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\chrome_download_hint_anim[2].png
101643.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\ZDR2XME1\b8p.sqfbboutlearn[1].xml
101644.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\affs[5].js
101644.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\Cache\NB8ITU48\hdplayer_lo[2].ico
101651.3s C:\Users\Jean-Marie\AppData\Local\Temp\3420.tmp.exe
101667.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\display[3].htm
101667.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\get[1].json
101667.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\get[2].json
101671.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\0UQZ2LFD.cookie
101673.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\4SA2OOSU\www.nanoadexchange[1].xml
101679.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{8DD531AD-07F5-11E7-BCAB-4C72B9F956A2}.dat
101694.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\cc_check[3].js
101695.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\get[4].js
101705.6s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_BHO
101712.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\index[2].htm
101716.2s C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCache\IE\3I7IG5U4\amipb[1].js
101725.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\videoplayer_edge_poc_v2[1].json
101732.4s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_BHO2
101743.6s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_BHO_T
101746.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\cc_check[4].js
101747.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\get[5].js
101749.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\u[1].js
101749.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{BCE99920-07F5-11E7-BCAB-4C72B9F956A2}.dat
101756.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\index[3].htm
101759.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\videoplayer_edge_poc_v2[1].json
101770.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\r[3].js
101776.8s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\ED4725678FB6E283F22BFCF30FA398CB
101776.8s C:\Windows\System32\config\systemprofile\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\ED4725678FB6E283F22BFCF30FA398CB
101784.9s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\1E7AFB499F0D8E4335FF705D37EAA854AC310643
101789.1s C:\Users\Jean-Marie\AppData\Local\Mozilla\Firefox\Profiles\wkkqu5qo.default\cache2\entries\E2BD2F8449491269FD2B4B20FE8A2FE50DF668AF
101789.9s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_TB
101819.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{E6CB49F3-07F5-11E7-BCAB-4C72B9F956A2}.dat
101821.9s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\MHGNZVY4.cookie
101826.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\1[2].htm
101836.2s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\host[2].js
101839.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\321u11uo3&sub-id=1243241&s2=[1].htm
101857.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\all-styles[1].css
101857.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\planetfr_s[1].png
101857.3s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\welcome-media_s[1].png
101857.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\special-styles[1].css
101857.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\mistergagnant_s[1].png
101857.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\choisir_s[1].png
101858.5s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\skripte[1].js
101858.6s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\avis_de_bons_s[1].png
101859.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\azorica_s[1].png
101870.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\T3LFLKU2\grand-choix-produits[1].xml
101870.4s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\SB37MA3I\bg0[1].jpg
101870.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\80_proz_000[1].png
101875.4s C:\Users\Jean-Marie\AppData\Local\Microsoft\CLR_v2.0\UsageLogs\myçHYMyclJ.exe.log
101876.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\store[1].htm
101877.1s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\0A1OWPBA\get[3].json
101879.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\321u11uo3&sub-id=1243241&s2=[1].htm
101882.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\ZN3MOLA5\iframe[1].css
101882.7s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cache\6XDKLVWE\r[2].js
101884.0s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\User\Default\DOMStore\4SA2OOSU\cdncache-a.akamaihd[1].xml
101885.8s C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge\User\Default\Recovery\Active\{0E378DD7-07F6-11E7-BCAB-4C72B9F956A2}.dat
101907.6s C:\Users\Jean-Marie\AppData\Local\Temp\jrt\temp\IE_TB2

C:\Users\Jean-Marie\Desktop\Forums désinfection applications\Forums désinfection applications\tweaking.com_windows_repair_aio\Tweaking.com - Windows Repair\files\tweaking_rati.exe
Size . . . . . . . : 46 048 bytes
Age . . . . . . . : 2.0 days (2017-03-12 10:52:49)
Entropy . . . . . : 5.0
SHA-256 . . . . . : 8D1EE9D3F122DDEDBF80C213D868FAECF8D68352160CB9C3023A59CF03149BDC
Product . . . . . : Tweaking.com - Run As TrustedInstaller
Publisher . . . . : Tweaking.com
Description . . . : Tweaking.com - Run As TrustedInstaller
Version . . . . . : 2.1.0.0
Copyright . . . . : 2014
RSA Key Size . . . : 2048
LanguageID . . . . : 1033
Authenticode . . . : Invalid
Fuzzy . . . . . . : 22.0
Program is altered or corrupted since it was code signed by its author. This is typical for malware and pirated software.
Time indicates that the file appeared recently on this computer.


Potential Unwanted Programs _________________________________________________

HKLM\SOFTWARE\WOW6432Node\TweakBit\Google Analytics Package\ (TweakBit) -> Deleted

Cookies _____________________________________________________________________

C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\0CR4HBCW.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\3TH5RUGJ.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\5VGF88KD.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\8LQPSF3B.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\91BL6VAO.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\9934L5WD.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\C59T845E.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\F8XMXP22.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\G9CFT68N.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\JCTU306V.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\JQ7KK1E2.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\JXFC8C8P.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\JZ7WJ820.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\0T1GDAXM.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\13TL7BOA.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\1OOXD29P.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\1U1HHUCZ.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\1YY0J1A2.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\2AJ0YJOQ.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\2ATT1AAD.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\2EKZHPRK.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\2KXV6O3G.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\2TBZ0YJ0.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\34HFXRUZ.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\3CUZ8JY1.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\3FT9XG12.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\3KPQX6JH.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\4N0O6VF7.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\4OGSBC00.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\4V0BPNZ3.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\5MLNHO1C.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\67PW1TYR.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\6EOHKW3I.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\6H2DHQUK.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\6YXSXBHS.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\7GBWSORW.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\7I0VH59Q.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\7K028IGT.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\854ISJCS.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\8HYFIZA9.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\9PNJT4WP.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\A91CI8H3.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\B5S2DJ21.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\BKI8JWMU.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\BLC5B22R.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\BUK44YNZ.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\D45GS4FO.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\DV1IMCZL.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\DXWX3ROR.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\EMNV0FW0.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\ES33IRMW.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\ETPB4BOF.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\F106PO2J.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\F755MVU2.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\FJ9LEVOI.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\G0KZ854C.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\HGBHPL0T.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\HN472T9Z.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\HZB4ZGCJ.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\I852TB9V.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\IDSKCBCO.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\IHNQMP2P.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\J1M92KIM.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\JFYHJBAT.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\JTG5VOJ1.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\JWU8HCF8.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\KC0AWCKD.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\KDULG2IP.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\KEUI0SF9.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\KHEN5H0D.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\L3M2W7OX.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\L58DIQES.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\M55VQ1R3.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\MC6A3IY8.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\MMYEWAVX.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\MXDO6ZC8.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\NXPH2BPQ.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\P666KWDY.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\PR2BB133.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\Q0J5XQE8.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\QGQ8EHEZ.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\QL8T4OCM.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\QT7XT04V.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\RYM13073.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\S7OL8ER4.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\SWZIOGFD.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\TWHB0B86.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\UUG2O682.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\UVPC8NGO.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\UZFTFVFU.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\V07KHOGR.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\VR7PDT2P.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\W2VXS7CH.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\W3WO0VX8.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\Y3W1NTSW.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\Y9W0FY44.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\YCQYOIYT.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\Z0D8P80A.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\Z2E3KTFC.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\ZO4UTJ8X.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\ZSMXBCN0.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\Low\ZZMS85WS.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\MTLX5YDJ.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\NXBGYD5M.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\OAL7LXM2.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\SC7JXRFJ.cookie
C:\Users\Jean-Marie\AppData\Local\Microsoft\Windows\INetCookies\ZP0JT8YN.cookie
C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\3POI1HIZ.cookie
C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\4AHSE15M.cookie
C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\7WF3ASU9.cookie
C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\8MTH8QL2.cookie
C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\BK1WB7FA.cookie
C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\CU6WCB69.cookie
C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\LZIBEQFA.cookie
C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\T22O11XA.cookie
C:\Users\Jean-Marie\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\#!001\MicrosoftEdge\Cookies\WD9OGCJM.cookie
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:01netanalytics.solution.weborama.fr
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:254a.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:a.scorecardresearch.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:abmr.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:acuityplatform.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:ad.360yield.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:adaptv.advertising.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:adbrn.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:addthis.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:adfarm1.adition.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:adform.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:adgrx.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:adhigh.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:adingo.jp
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:adnxs.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:ads.avocet.io
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:ads.betweendigital.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:ads.chargeads.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:ads.converge-digital.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:ads.creative-serving.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:ads.kiosked.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:ads.linkedin.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:ads.programattik.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:ads.pubmatic.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:ads.stickyadstv.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:adscale.de
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:adscience.nl
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:adserver.pox.media
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:adserving-dev.ancora.iponweb.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:adsrvr.org
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:adsymptotic.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:adtech.de
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:adtechjp.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:adtechus.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:advertising.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:agkn.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:angsrvr.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:at.atwola.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:atdmt.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:atemda.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:basebanner.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:bidr.io
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:bidswitch.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:bluekai.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:bs.serving-sys.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:c.appier.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:casalemedia.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:chango.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:connexity.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:contextweb.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:crwdcntrl.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:cstatic.weborama.fr
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:ctnsnet.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:demdex.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:dotomi.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:doubleclick.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:dpm.demdex.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:emjcd.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:erne.co
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:everesttech.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:eyereturn.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:eyeviewads.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:go.sonobi.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:googleadservices.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:gssprt.jp
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:gwallet.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:ibeu2.mookie1.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:ibillboard.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:ih.adscale.de
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:imrworldwide.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:ipredictive.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:korrelate.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:krxd.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:legolas-media.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:lijit.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:match.adsby.bidtheatre.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:match.rundsp.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:mathtag.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:mediaplex.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:metrigo.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:mookie1.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:mxptint.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:nexac.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:openx.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:optimatic.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:orange.demdex.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:outbrain.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:owneriq.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:pagefair.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:pixel-a.sitescout.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:pixel.rubiconproject.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:pixel.sitescout.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:po.st
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:pool.admedo.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:pubmatic.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:revsci.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:rfihub.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:rlcdn.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:ru4.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:rubiconproject.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:sa.scorecardresearch.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:sandbox.bidswitch.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:scorecardresearch.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:serving-sys.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:simpli.fi
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:sitescout.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:skimresources.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:smartadserver.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:swid.switchads.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:sxp.smartclip.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:sync.go.sonobi.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:taboola.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:tap.rubiconproject.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:tapad.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:tidaltv.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:track.clktrkrdr.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:track.rtb-media.me
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:tradedoubler.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:trc.taboola.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:tremorhub.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:tribalfusion.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:tubemogul.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:turn.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:visualdna.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:w55c.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:weborama.fr
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:wtp101.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:xiti.com
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:yieldlab.net
C:\Users\Jean-Marie\AppData\Roaming\Mozilla\Firefox\Profiles\wkkqu5qo.default\cookies.sqlite:zedo.com


[/code]

Publicité


Signaler le contenu de ce document

Publicité