Supprimer do-search
Résolu/Fermé
claudedu17
Messages postés
65
Date d'inscription
vendredi 18 avril 2008
Statut
Membre
Dernière intervention
28 septembre 2014
-
20 déc. 2013 à 18:49
claudedu17 Messages postés 65 Date d'inscription vendredi 18 avril 2008 Statut Membre Dernière intervention 28 septembre 2014 - 24 déc. 2013 à 12:01
claudedu17 Messages postés 65 Date d'inscription vendredi 18 avril 2008 Statut Membre Dernière intervention 28 septembre 2014 - 24 déc. 2013 à 12:01
A voir également:
- Supprimer do-search
- Supprimer une page word - Guide
- Supprimer compte instagram - Guide
- Www.google.com search video - Télécharger - TV & Vidéo
- Impossible de supprimer un fichier - Guide
- Supprimer edge - Guide
29 réponses
lilidurhone
Messages postés
43347
Date d'inscription
lundi 25 avril 2011
Statut
Contributeur sécurité
Dernière intervention
31 octobre 2024
3 807
Modifié par lilidurhone le 20/12/2013 à 19:31
Modifié par lilidurhone le 20/12/2013 à 19:31
Hello
On va résoudre ce problème ;)
Peux tu suivre ce canned
=> http://sosvirus.net/viewtopic.php?f=281&t=572&p=3446#p3446
Si problème il y a il existe toujours une solution
N'oubliez pas de passer votre sujet en résolu
On va résoudre ce problème ;)
Peux tu suivre ce canned
=> http://sosvirus.net/viewtopic.php?f=281&t=572&p=3446#p3446
Si problème il y a il existe toujours une solution
N'oubliez pas de passer votre sujet en résolu
claudedu17
Messages postés
65
Date d'inscription
vendredi 18 avril 2008
Statut
Membre
Dernière intervention
28 septembre 2014
1
20 déc. 2013 à 19:37
20 déc. 2013 à 19:37
Merci beaucoup problème résolu
Merci les pros de comment ça marche
Merci les pros de comment ça marche
lilidurhone
Messages postés
43347
Date d'inscription
lundi 25 avril 2011
Statut
Contributeur sécurité
Dernière intervention
31 octobre 2024
3 807
20 déc. 2013 à 19:47
20 déc. 2013 à 19:47
Peux tu me poster le rapport?
claudedu17
Messages postés
65
Date d'inscription
vendredi 18 avril 2008
Statut
Membre
Dernière intervention
28 septembre 2014
1
20 déc. 2013 à 20:25
20 déc. 2013 à 20:25
je suis désolé je ne l'ai pas conservé puisque tout va bien !!!!
Merci encore
Merci encore
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
lilidurhone
Messages postés
43347
Date d'inscription
lundi 25 avril 2011
Statut
Contributeur sécurité
Dernière intervention
31 octobre 2024
3 807
20 déc. 2013 à 20:27
20 déc. 2013 à 20:27
Est ce que tu veux continuer?
claudedu17
Messages postés
65
Date d'inscription
vendredi 18 avril 2008
Statut
Membre
Dernière intervention
28 septembre 2014
1
20 déc. 2013 à 21:14
20 déc. 2013 à 21:14
continuer quoi ?
lilidurhone
Messages postés
43347
Date d'inscription
lundi 25 avril 2011
Statut
Contributeur sécurité
Dernière intervention
31 octobre 2024
3 807
20 déc. 2013 à 21:15
20 déc. 2013 à 21:15
Savoir si tu es infecté?
claudedu17
Messages postés
65
Date d'inscription
vendredi 18 avril 2008
Statut
Membre
Dernière intervention
28 septembre 2014
1
20 déc. 2013 à 21:54
20 déc. 2013 à 21:54
J'ai repassé le scan voici le rapport
# AdwCleaner v3.015 - Rapport créé le 20/12/2013 à 21:49:06
# Mis à jour le 10/12/2013 par Xplode
# Système d'exploitation : Windows 8.1 Pro (32 bits)
# Nom d'utilisateur : Claude - PC-DE-CLAUDE
# Exécuté depuis : C:\Users\Claude\Downloads\adwcleaner.exe
# Option : Nettoyer
***** [ Services ] *****
***** [ Fichiers / Dossiers ] *****
Fichier Supprimé : C:\WINDOWS\System32\Tasks\NCH Software
***** [ Raccourcis ] *****
***** [ Registre ] *****
***** [ Navigateurs ] *****
-\\ Internet Explorer v11.0.9600.16384
-\\ Mozilla Firefox v26.0 (en-US)
[ Fichier : C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Profiles\7ybwngwe.default\prefs.js ]
-\\ Google Chrome v31.0.1650.63
[ Fichier : C:\Users\Claude\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [62709 octets] - [20/12/2013 19:21:45]
AdwCleaner[R1].txt - [1106 octets] - [20/12/2013 21:48:09]
AdwCleaner[S0].txt - [62140 octets] - [20/12/2013 19:22:44]
AdwCleaner[S1].txt - [1029 octets] - [20/12/2013 21:49:06]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1089 octets] ##########
# AdwCleaner v3.015 - Rapport créé le 20/12/2013 à 21:49:06
# Mis à jour le 10/12/2013 par Xplode
# Système d'exploitation : Windows 8.1 Pro (32 bits)
# Nom d'utilisateur : Claude - PC-DE-CLAUDE
# Exécuté depuis : C:\Users\Claude\Downloads\adwcleaner.exe
# Option : Nettoyer
***** [ Services ] *****
***** [ Fichiers / Dossiers ] *****
Fichier Supprimé : C:\WINDOWS\System32\Tasks\NCH Software
***** [ Raccourcis ] *****
***** [ Registre ] *****
***** [ Navigateurs ] *****
-\\ Internet Explorer v11.0.9600.16384
-\\ Mozilla Firefox v26.0 (en-US)
[ Fichier : C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Profiles\7ybwngwe.default\prefs.js ]
-\\ Google Chrome v31.0.1650.63
[ Fichier : C:\Users\Claude\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [62709 octets] - [20/12/2013 19:21:45]
AdwCleaner[R1].txt - [1106 octets] - [20/12/2013 21:48:09]
AdwCleaner[S0].txt - [62140 octets] - [20/12/2013 19:22:44]
AdwCleaner[S1].txt - [1029 octets] - [20/12/2013 21:49:06]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1089 octets] ##########
lilidurhone
Messages postés
43347
Date d'inscription
lundi 25 avril 2011
Statut
Contributeur sécurité
Dernière intervention
31 octobre 2024
3 807
20 déc. 2013 à 22:27
20 déc. 2013 à 22:27
Hello
Peux tu me fournir un rapport zhpdiag en suivant ce tutoriel?
=> http://sosvirus.net/viewtopic.php?f=281&t=576
Peux tu me fournir un rapport zhpdiag en suivant ce tutoriel?
=> http://sosvirus.net/viewtopic.php?f=281&t=576
claudedu17
Messages postés
65
Date d'inscription
vendredi 18 avril 2008
Statut
Membre
Dernière intervention
28 septembre 2014
1
21 déc. 2013 à 11:39
21 déc. 2013 à 11:39
~ Rapport de ZHPDiag v2013.12.14.22 - Nicolas Coolman (14/12/2013)
~ Lancé par Claude (21/12/2013 11:32:10)
~ Adresse du Site Web https://nicolascoolman.webs.com/
~ Forums gratuits d'Assistance à la désinfection : https://nicolascoolman.webs.com/
~ Traduit par Nicolas Coolman
~ Etat de la version :
~ Liste blanche : Activée par le programme
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Deactivate by program
---\\ Navigateurs Internet
MSIE: Internet Explorer v11.0.9600.16476
MFIE: Mozilla Firefox 26.0
GCIE: Google Chrome v31.0.1650.63 (Defaut)
OPIE: Opera v12.16
OBIE: Safari v5.34.57.2
---\\ Informations sur les produits Windows
~ Langage: Français
Windows 8.1 Pro, 32-bit (Build 9600)
Windows Server License Manager Script : OK
~ ion : Windows(R) Operating System, RETAIL channel
Windows ID Activation : OK
~ Windows Partial Key : PJ8XV
Windows License : OK
~ Windows Remaining Initializations Number : 999
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK
---\\ Logiciels de protection du système
avast! Free Antivirus v9.0.2007
Windows Defender W8
---\\ Logiciels d'optimisation du système
---\\ Logiciels de partage PeerToPeer
---\\ Surveillance de Logiciels
Adobe Flash Player 11 Plugin
Extended Asian Language font pack for Adobe Reader XI
Java 7 Update 45
---\\ Informations sur le système
~ Processor: x86 Family 17 Model 3 Stepping 1, AuthenticAMD
~ Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3327 MB (67% free)
System Restore: Activé (Enable)
System drive C: has 33 GB (21%) free of 149 GB
---\\ Mode de connexion au système
~ Computer Name: PC-DE-CLAUDE
~ User Name: Claude
~ All Users Names: HomeGroupUser$, Claude, Administrateur,
~ Unselected Option: O45,O61,O62,O65,O66,O80,O82,O89
Logged in as Administrator
---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\Claude\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Claude\AppData\Roaming\
~ %Desktop% : C:\Users\Claude\Desktop\
~ %Favorites% : C:\Users\Claude\Favorites\
~ %LocalAppData% : C:\Users\Claude\AppData\Local\
~ %StartMenu% : C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\
---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 33 Go of 149 Go)
D: Hard drive, Flash drive, Thumb drive (Free 87 Go of 139 Go)
E: CD-ROM drive (Not Inserted)
---\\ Etat du Centre de Sécurité Windows
~ Security Center: 46 Legitimates Filtered in 00mn 00s
---\\ Recherche particulière de fichiers génériques
[MD5.1A0BC9598E4A58FC84570FFF5A108E58] - (.Microsoft Corporation - Explorateur Windows.) (.26/11/2013 - 14:54:52.) -- C:\Windows\Explorer.exe [2065448]
[MD5.02BC073156B3097E94D63C4D609020DD] - (.Microsoft Corporation - Application de démarrage de Windows.) (.22/08/2013 - 03:49:55.) -- C:\Windows\System32\Wininit.exe [112640]
[MD5.927FA6456AD6D7630F6854828D2FD16B] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.26/11/2013 - 07:33:33.) -- C:\Windows\System32\wininet.dll [1820160]
[MD5.94385F95EF948FB274A70DE3EDE5696D] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.22/08/2013 - 03:48:19.) -- C:\Windows\System32\Winlogon.exe [458752]
[MD5.570A1D37FEECE56BBF7A70A02C817B4E] - (.Microsoft Corporation - Bibliothèque de licences.) (.22/08/2013 - 04:20:10.) -- C:\Windows\System32\sppcomapi.dll [438272]
[MD5.2AF7DA157FFF947A507FCB4AB8BB4C7C] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.22/08/2013 - 07:13:54.) -- C:\Windows\system32\Drivers\AFD.sys [455168]
[MD5.72FCAE2CE6DFEAB2AB072435017F3417] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.22/08/2013 - 06:33:25.) -- C:\Windows\system32\Drivers\atapi.sys [23392]
[MD5.CE232BB0965C0C0B786C3F976CCBFB7D] - (.Microsoft Corporation - CD-ROM File System Driver.) (.22/08/2013 - 05:11:55.) -- C:\Windows\system32\Drivers\Cdfs.sys [73728]
[MD5.E2FC132D48EA4E8B04432C33EFB77801] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.22/08/2013 - 02:59:12.) -- C:\Windows\system32\Drivers\Cdrom.sys [124928]
[MD5.D4ADBFC2409EF883164F3AA49B22F366] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.22/08/2013 - 05:09:45.) -- C:\Windows\system32\Drivers\DfsC.sys [101376]
[MD5.A31901DE6A22EA67AB83AAF7036F98CC] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.22/08/2013 - 05:10:12.) -- C:\Windows\system32\Drivers\HDAudBus.sys [69632]
[MD5.5043E69532392A43549E5D41E22638AA] - (.Microsoft Corporation - Pilote de port i8042.) (.22/08/2013 - 05:10:59.) -- C:\Windows\system32\Drivers\i8042prt.sys [82944]
[MD5.2F6A88E76A949AC0A843FE517B8DFA7C] - (.Microsoft Corporation - IP Network Address Translator.) (.30/09/2013 - 05:01:56.) -- C:\Windows\system32\Drivers\IpNat.sys [126464]
[MD5.7CDAA49DFF6837706DE7AA1A43310DD2] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.30/09/2013 - 05:01:55.) -- C:\Windows\system32\Drivers\MRxSmb.sys [334848]
[MD5.BC242922B0D08F61CF7C87FD08FAFA8B] - (.Microsoft Corporation - MBT Transport driver.) (.22/08/2013 - 05:08:26.) -- C:\Windows\system32\Drivers\netBT.sys [218624]
[MD5.813F49CF41F561C52F3CF69A1B09E967] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.22/08/2013 - 07:13:53.) -- C:\Windows\system32\Drivers\ntfs.sys [1676128]
[MD5.4F30970F15ADCC382544B31D5D7E368E] - (.Microsoft Corporation - Pilote de port parallèle.) (.22/08/2013 - 05:11:49.) -- C:\Windows\system32\Drivers\Parport.sys [81408]
[MD5.C51AB62AB41A2E8560D12472B204CC00] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.22/08/2013 - 05:07:36.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [81920]
[MD5.67E91843B0344411820A012063E876B2] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.30/09/2013 - 04:51:00.) -- C:\Windows\system32\Drivers\rdpdr.sys [143872]
[MD5.DB0C184142CF9FA1746F598A16EE92B2] - (.Microsoft Corporation - TDI Translation Driver.) (.22/08/2013 - 07:13:54.) -- C:\Windows\system32\Drivers\tdx.sys [87040]
[MD5.5F9A69B5C5C34197037A7EA36F4A7BE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.22/08/2013 - 06:24:56.) -- C:\Windows\system32\Drivers\volsnap.sys [265568]
~ Generic Processes: Scanned in 00mn 00s
---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 3/74
~ Mes musiques (My Musics) : 2/12
~ Mes Videos (My Videos) : 3/270
~ Mes Favoris (My Favorites) : 1/57
~ Mes Documents (My Documents) : 2/987
~ Mon Bureau (My Desktop) : 2/9168
~ Menu demarrer (Programs) : 1/28
~ Hidden Files: Scanned in 00mn 01s
---\\ Processus lancés
[MD5.61A5597AB30F257BCC47A8E61711F039] - (.Microsoft Corporation - Processus hôte pour Tâches Windows.) -- C:\WINDOWS\system32\taskhostex.exe [66632] [PID.5092]
[MD5.B62DFF169637A7E69AEA0915F47716CD] - (.Microsoft Corporation - SkyDrive Sync Engine Host.) -- C:\Windows\System32\skydrive.exe [463360] [PID.4516]
[MD5.81C25E4D89A3ACDF8F3096D093F1DF40] - (.Glarysoft Ltd - Glary Utilities 4.) -- C:\Program Files\Glary Utilities 4\Integrator.exe [771872] [PID.2152]
[MD5.5B6E8E09BE6401A7E022F52FDFCB2FF8] - (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336] [PID.672]
[MD5.736E57247F12EACECDB224B8D1F7F187] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [3568312] [PID.3328]
[MD5.BAF535F843A3E790E04A7613811B55BC] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe [152392] [PID.2968]
[MD5.A63D5539C89E642567FBAD6AA6E807F2] - (.Ashampoo Development GmbH & Co. KG - Ashampoo Live-Tuner Client.) -- C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\LiveTuner.exe [2949480] [PID.4876]
[MD5.10E89F598469C60D8C87A8218089A87D] - (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\Claude\AppData\Local\Akamai\netsession_win.exe [4489472] [PID.3892]
[MD5.AB8420D9EFF346DDD72E9C985BE2FC5B] - (.Sony - Sony PC Companion.) -- C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [449248] [PID.4372]
[MD5.62F5202F8FD170A438B7E97860F4D0E2] - (...) -- C:\Program Files\Zinio Alert Messenger\Zinio Alert Messenger.exe [126976] [PID.2972]
[MD5.0F6D06A88A88007AAEE5F0EE1ECE42E4] - (...) -- C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe [70880] [PID.5468]
[MD5.BF214899CD982B0933098F09FA172EB6] - (.Adobe Systems Incorporated - Adobe® Flash® Player Utility.) -- C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe [851960] [PID.4668]
[MD5.0E05E41073CD9E52D04C52AB46DDE817] - (.Microsoft Corporation - Host Process for Setting Synchronization.) -- C:\Windows\System32\SettingSyncHost.exe [479744] [PID.2340]
[MD5.1ED34E4985B2AF577A1F8F234A0B8163] - (.Glarysoft Ltd - SoftwareUpdate.) -- C:\Program Files\Glary Utilities 4\SoftwareUpdate.exe [235296] [PID.6092]
[MD5.376A9B411BF8B77D5BF84B24D0C7DACD] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [863184] [PID.644]
[MD5.EE889775E0F9755C90FAEBFB93FBD781] - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe [805992] [PID.5084]
[MD5.2330B5A4A3824F042DC96D524893A6B5] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [8295936] [PID.4552]
~ Processes Running: Scanned in 00mn 01s
---\\ Opera, Plugins,Démarrage,Recherche (P1,B0,B1)
B0 - SPO: operaprefs.ini [Claude] Home URL=opera:speeddial
B1 - OSP: search.ini [Claude] URL=http://search.babylon.com =>PUP.Babylon
~ Opera Browser: 2 Legitimates Filtered in 00mn 00s
---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Claude\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] http://r.orange.fr
G2 - GCE: Preference [User Data\Default] [fnefekibahpibgnllfjpckodgobkpije] ObviousIdea v.2.0 (Désactivé)
~ Google Browser: 13 Legitimates Filtered in 00mn 00s
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Profiles\7ybwngwe.default\prefs.js
M3 - MFPP: Plugins - [Claude] -- C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Profiles\7ybwngwe.default\searchplugins\wiseconvert-15-customized-web-search.xml =>Toolbar.Conduit
M3 - MFPP: Plugins - [Claude] -- C:\Program Files\Mozilla FireFox\searchplugins\do-search.xml =>PUP.DoSearches
M2 - MFEP: prefs.js [Claude - 7ybwngwe.default\toolbarbutton@obviousidea.us] [] ObviousIdea Addon v2.0 (..)
~ Firefox Browser: 19 Legitimates Filtered in 00mn 00s
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;<local>
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s
---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s
---\\ Hosts file redirection (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 21
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Soda PDF 5 IE Helper - {C737F472-1193-4281-BF53-A00B67AB3E19} . (.LULU Software - Soda PDF Helper.) -- C:\Program Files\Soda PDF 5\PDFIEHelper.dll
~ BHO: 10 Legitimates Filtered in 00mn 00s
---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: avast! Online Security - [HKLM]{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: Google Toolbar - [HKLM]{2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll =>Toolbar.Google
O3 - Toolbar: Soda PDF 5 IE Toolbar - [HKLM]{F335ABA2-FDB4-4644-92B2-5CC4B0FC91D6} . (.LULU Software - Soda PDF 5 Toolbar.) -- C:\Program Files\Soda PDF 5\PDFIEPlugin.dll
~ Toolbar: Scanned in 00mn 00s
---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop [Public]: Ashampoo WinOptimizer 10.lnk . (.Ashampoo Development GmbH & Co. KG - Ashampoo WinOptimizer 10.) -- C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\WO10.exe
O4 - GS\Desktop [Public]: CometBird.lnk . (.CometNetwork - CometBird.) -- C:\Program Files\CometBird\cometbird.exe
O4 - GS\Desktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - GS\Desktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O4 - GS\Desktop [Public]: Opera.lnk . (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe
O4 - GS\Program [Public]: CometBird.lnk . (.CometNetwork - CometBird.) -- C:\Program Files\CometBird\cometbird.exe
O4 - GS\Program [Public]: Desktop.lnk - Clé orpheline
O4 - GS\Program [Public]: Disketch - Logiciel pour étiquettes de CD.lnk . (...) -- C:\Program Files\NCH Software\Disketch\disketch.exe (.not file.)
O4 - GS\Program [Public]: Express Rip.lnk . (...) -- C:\Program Files\NCH Software\ExpressRip\expressrip.exe (.not file.)
O4 - GS\Program [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O4 - GS\Program [Public]: Opera.lnk . (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe
O4 - GS\Program [Public]: PhotoPad Image Editor.lnk . (...) -- C:\Program Files\NCH Software\PhotoPad\photopad.exe (.not file.)
O4 - GS\Program [Public]: Safari.lnk . (...) -- C:\WINDOWS\Installer\{C779648B-410E-4BBA-B75B-5815BCEFE71D}\SafariIco.exe
O4 - GS\Program [Public]: Serif PagePlus X6.lnk . (...) -- C:\WINDOWS\Installer\{33DBAFCC-569F-40DE-AC5F-E2586AC4DE87}\PagePlus.ico
O4 - GS\Program [Public]: Your Software Deals.lnk . (...) -- C:\ProgramData\Ashampoo\YourDeals.exe
O4 - GS\Program [Public]: Zinio Alert Messenger.lnk . (...) -- C:\Program Files\Zinio Alert Messenger\Zinio Alert Messenger.exe
O4 - GS\Program [Public]: Zinio Reader 4.lnk . (...) -- C:\Program Files\Zinio Reader 4\Zinio Reader 4.exe
O4 - GS\QuickLaunch [Claude]: 22find.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>Hijacker.22Find
O4 - GS\QuickLaunch [Claude]: Apple Safari.lnk . (...) -- C:\WINDOWS\Installer\{C779648B-410E-4BBA-B75B-5815BCEFE71D}\SafariIco.exe
O4 - GS\QuickLaunch [Claude]: Chromium.lnk . (.The Chromium Authors - Chromium.) -- C:\Users\Claude\AppData\Local\Chromium\Application\chrome.exe
O4 - GS\QuickLaunch [Claude]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - GS\QuickLaunch [Claude]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\QuickLaunch [Claude]: Online Video Recorder.lnk . (...) -- C:\Program Files\Online Video Recorder\OnlineVideoRecorder.exe
O4 - GS\Program [Claude]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\Desktop [Claude]: Chromium.lnk . (.The Chromium Authors - Chromium.) -- C:\Users\Claude\AppData\Local\Chromium\Application\chrome.exe
O4 - GS\Desktop [Claude]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\Desktop [Claude]: Safari - Raccourci.lnk . (.Apple Inc. - Safari.) -- C:\Program Files\Safari\Safari.exe
~ Global Startup: 67 Legitimates Filtered in 00mn 01s
---\\ Applications lancées au démarrage du sytème (O4)
O4 - GS\Startup [Claude]: Zinio Alert Messenger.lnk . (...) -- C:\Program Files\Zinio Alert Messenger\Zinio Alert Messenger.exe
O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle Corporation
O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe
O4 - HKLM\..\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [20131121] . (.AVAST Software - avast! Emergency Update.) -- C:\Program Files\AVAST Software\Avast\setup\emupdate\fcb91691-e4bb-49d0-a9c4-9b96a721e2be.exe
O4 - HKLM\..\Run: [Ashampoo WinOptimizer Live-Tuner] . (.Ashampoo Development GmbH & Co. KG - Ashampoo Live-Tuner Client.) -- C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\LiveTuner.exe
O4 - HKCU\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\Claude\AppData\Local\Akamai\netsession_win.exe
O4 - HKCU\..\Run: [Orange Installer] C:\Program Files\Orange\Orange Installer\OrangeInstaller.exe (.not file.)
O4 - HKCU\..\Run: [Sony PC Companion] . (.Sony - Sony PC Companion.) -- C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe
O4 - HKUS\S-1-5-21-383826441-192018370-2907649276-1000\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\Claude\AppData\Local\Akamai\netsession_win.exe
O4 - HKUS\S-1-5-21-383826441-192018370-2907649276-1000\..\Run: [Orange Installer] C:\Program Files\Orange\Orange Installer\OrangeInstaller.exe (.not file.)
O4 - HKUS\S-1-5-21-383826441-192018370-2907649276-1000\..\Run: [Sony PC Companion] . (.Sony - Sony PC Companion.) -- C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe
~ Application: Scanned in 00mn 00s
---\\ Site dans la Zone de confiance d'Internet Explorer (O15)
O15 - Trusted Zone: [HKCU\...\Domains] http.aeriagames.com
~ IE Zone Confiance: Scanned in 00mn 00s
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{1B7A7D10-64E9-4487-B02F-6D3EEA754BFF}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{1B7A7D10-64E9-4487-B02F-6D3EEA754BFF}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
~ Domain: Scanned in 00mn 00s
---\\ Protocole additionnel (O18)
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Dedicarz Service (Dedicarz Service) . (.Pas de propriétaire - DedicarzService.) - C:\Program Files\Orange\Assistance Livebox\dedicarz\DedicarzService.exe
O23 - Service: Soda PDF 5 Helper Service (Soda PDF 5 Helper Service) . (.LULU Software - Soda PDF 5 Helper Service.) - C:\Program Files\Soda PDF 5\HelperService.exe
O23 - Service: Soda PDF 5 Service (Soda PDF 5 Service) . (.LULU Software - Soda PDF 5 Conversion Service.) - C:\Program Files\Soda PDF 5\ConversionService.exe
O23 - Service: Ashampoo LiveTuner Service (WO_LiveService) . (...) - C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\LiveTunerService.exe
~ Services: 11 Legitimates Filtered in 00mn 04s
---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Desktop General: BackupWallPaper - .(...) - C:\Users\Claude\Pictures\champetre1024.jpg
O24 - Desktop General: WallPaper - .(...) - C:\Users\Claude\Pictures\champetre1024.jpg
~ Desktop Component: 4 Legitimates Filtered in 00mn 00s
---\\ Enumère les données de BootExecute (BEX) (O34)
O34 - HKLM BootExecute: (autocheck autochk * ) - File not found
~ BEX: 1 Legitimates Filtered in 00mn 00s
---\\ Tâches planifiées en automatique (O39)
[MD5.00000000000000000000000000000000] [APT] [4771] (...) -- C:\Users\Claude\AppData\Local\Temp\launchie.vbs \\B (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{20932006-0EDD-47F4-9684-9CD1BF8F7B6F}] (...) -- C:\Program Files\TARMAI~1\{889DF~1\Setup.exe (.not file.) [0] =>PUP.Tarma
~ Scheduled Task: 15 Legitimates Filtered in 00mn 07s
---\\ HKCU & HKLM Software Keys
[HKCU\Software\Rebit]
~ Key Software: 228 Legitimates Filtered in 00mn 00s
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 28/03/2013 - 19:15:08 - [32,453] ----D C:\ProgramData\Rebit 5
~ Program Folder: 213 Legitimates Filtered in 00mn 47s
---\\ Clé de registre Shell MountPoints2 (MPKS) (O51)
O51 - MPSK:{d06d7096-5ffa-11e3-b137-002354efc917}\AutoRun\command. (...) -- F:\Startme.exe (.not file.)
~ Keys: Scanned in 00mn 00s
---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
~ MWPS: 17 Legitimates Filtered in 00mn 00s
---\\ Liste des pilotes du système (SDL) (O58)
O58 - SDL:[MD5.548CCBD8B48FDF7E2435AD6017920A7F] - 08/10/2012 - 19:53:56 ---A- . (.Wondershare - Wondershare Virtual Audio Device.) -- C:\Windows\System32\Drivers\Apowersoft_AudioDevice.sys [26080]
O58 - SDL:[MD5.F385467DF95D0A73775CB3B076B8B969] - 23/10/2013 - 16:14:50 ---A- . (...) -- C:\Windows\System32\Drivers\aswRvrt.sys [49944]
O58 - SDL:[MD5.BADA8FD627F1D0E22308211C33F0BDB5] - 23/10/2013 - 16:14:50 ---A- . (...) -- C:\Windows\System32\Drivers\aswVmm.sys [178304]
O58 - SDL:[MD5.97AFFA9D95FFE20EEE6229BC6BE166CF] - 31/07/2007 - 02:39:00 ---A- . (.ATK0100 - ATK0100 ACPI Utility.) -- C:\Windows\System32\Drivers\ATKACPI.sys [7680]
O58 - SDL:[MD5.596DB7E4D0DB6AC32DF142C861001979] - 13/08/2013 - 00:25:32 ---A- . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\Windows\System32\Drivers\bcmfn2.sys [16088]
O58 - SDL:[MD5.B4489EA5810BF73778CD8BDC305109CE] - 22/08/2013 - 06:32:57 ---A- . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Windows x86.) -- C:\Windows\System32\Drivers\stexstor.sys [26976]
~ Drivers: 17 Legitimates Filtered in 00mn 04s
---\\ Liste des outils de désinfection (LATC) (O63)
O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s
---\\ Associations Shell Spawning (O67)
O67 - Shell Spawning: <.html> <ChromeHTML>[HKCU\..\open\Command] (.Not Key.)
~ FASS Keys: 11 Legitimates Filtered in 00mn 00s
---\\ Menu de démarrage Internet (SMI) (O68)
O68 - StartMenuInternet: <COMETBIRD.EXE> <CometBird>[HKLM\..\Shell\open\Command] (.CometNetwork - CometBird.) -- c:\program files\cometbird\cometbird.exe
O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- c:\program files\google\chrome\application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: <Opera> <Opera>[HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- c:\program files\opera\opera.exe
O68 - StartMenuInternet: <Safari.exe> <Safari>[HKLM\..\Shell\open\Command] (.Apple Inc. - Safari.) -- c:\program files\safari\safari.exe
~ Keys: Scanned in 00mn 00s
---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69)
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - https://www.bing.com/?toHttps=1&redig=69DA0EF8272048D9864AF4DB37211DE8
O69 - SBI: SearchScopes [HKCU] {12B0C690-30C2-4680-9B4F-0701238A1DD4} - (Search Here) - http://www.mysearchresults.com =>Adware.MyWebSearch
O69 - SBI: SearchScopes [HKCU] {1CD4B8FF-6929-4F99-81E3-53E3CC184DEC} - (Bing) - https://www.bing.com/?toHttps=1&redig=69DA0EF8272048D9864AF4DB37211DE8
O69 - SBI: SearchScopes [HKCU] {40439b93-f815-4122-8073-d03bed94c303} - (Winamp Web Search) - http://slirsredirect.search.aol.com
O69 - SBI: SearchScopes [HKCU] {67A2568C-7A0A-4EED-AECC-B5405DE63B64} - (Google) - https://www.google.com/?gws_rd=ssl
O69 - SBI: SearchScopes [HKCU] {69ABAE4C-47BC-4EAD-A2B3-ED08ED617830} - (softpublisher search Customized Web Search) - http://search.conduit.com
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - https://www.google.com/?gws_rd=ssl
O69 - SBI: SearchScopes [HKCU] {814C76CB-2623-43F4-AAD0-58A0E5190A20} - (Orange) - http://r.orange.fr
O69 - SBI: SearchScopes [HKCU] {90F923A7-DBF5-B32E-3FE9-2312DEA86938} - (Ask) - http://www.audacitystart.com
O69 - SBI: SearchScopes [HKCU] {c1d89ae7-449d-4929-b24b-fded04adbe06} - (Glary Search) - http://isearch.glarysoft.com
O69 - SBI: SearchScopes [HKCU] {D9E7112E-0575-4947-9F62-D73B2EAB6F28} [DefaultScope] - (Orange) - https://www.orange.fr/portail
O69 - SBI: SearchScopes [HKUS\.DEFAULT] {47AE1BA9-0BD1-44F4-88AE-45F8F7B605EF} - (BasicServe) - http://www.basicserve.com =>Adware.BasicScan
O69 - SBI: SearchScopes [HKUS\S-1-5-18] {47AE1BA9-0BD1-44F4-88AE-45F8F7B605EF} - (BasicServe) - http://www.basicserve.com =>Adware.BasicScan
~ Keys: Scanned in 00mn 00s
---\\ Recherche particulière à la racine du système (SPRF) (O84)
[MD5.0D26EF8C01E3E1C77877C303A9317F69] [SPRF][10/12/2013] (...) -- C:\Users\Claude\AppData\Local\Temp\Quarantine.exe [360051]
[MD5.0679D39A697632EBD50DD438AB633214] [SPRF][20/12/2013] (...) -- C:\Users\Claude\AppData\Local\Temp\SHSetup.exe [45665360] =>Crapware.SpyHunter
[MD5.5AFACF0F4E71865473DFC878331E6AD0] [SPRF][21/12/2013] (...) -- C:\Users\Claude\AppData\Local\Temp\~gu3-ver.dat [115]
[MD5.7902EF8D44D57F0608E52FAA0528610F] [SPRF][21/12/2013] (...) -- C:\Users\Claude\AppData\Local\Temp\~upgrade.dat [1094]
[MD5.CE5A4D488CA30BED06EAC0EFDB5191B3] [SPRF][14/11/2013] (...) -- C:\Users\Claude\AppData\Roaming\wklnhst.dat [2708]
~ Files: 5 Legitimates Filtered in 00mn 00s
---\\ Liste des exceptions du parefeu (FirewallRules) (O87)
O87 - FAEL: "{A034AE88-F0F5-4EF7-A66C-6A2F77C8ED9C}" |Out - None - P17 - TRUE | .(...) -- C:\Users\Claude\AppData\Local\Temp\ibtmp395f617\component_612.decrpt (.not file.)
O87 - FAEL: "{7E3B225F-70FF-4608-89CA-701ACB74A667}" |In - None - P17 - TRUE | .(...) -- C:\Users\Claude\AppData\Local\Temp\ibtmp395f617\component_612.decrpt (.not file.)
O87 - FAEL: "{56C25F1B-8299-4012-BC1C-B78D411811E2}" | Out - None - P17 - TRUE | .(.Pas de propriétaire - Installer.) -- C:\Users\Claude\Downloads\DownloadManagerSetup.exe
O87 - FAEL: "{E8C1D198-F145-4717-A6DE-19F66B1908CB}" | In - None - P17 - TRUE | .(.Pas de propriétaire - Installer.) -- C:\Users\Claude\Downloads\DownloadManagerSetup.exe
~ Firewall: 274 Legitimates Filtered in 00mn 02s
---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS)
[MD5.EFC9D67ADBB184A59C9ABE597CF9432A] [WIS][15/12/2013] (.LULU SOFTWARE LIMITED - Soda PDF 5 Installer.) -- C:\Windows\Installer\7ecfb34.msi [55652352]
~ WIS: 39 Legitimates Filtered in 00mn 08s
---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Demand 10/12/2013 257416 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
SS - | Demand 07/07/2011 1037312 | (GSService) . (...) - C:\WINDOWS\system32\GSService.exe
SS - | Auto 13/12/2012 116648 | (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 13/12/2012 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 22/12/2012 194032 | (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
SS - | Demand 05/12/2013 119408 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
SS - | Auto 29/08/2013 1073160 | (Orange update Core Service) . (.Orange SA.) - C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe
SS - | Auto 05/09/2013 171680 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe
SS - | Demand 04/02/2013 155824 | (Sony PC Companion) . (.Avanquest Software.) - C:\Program Files\Sony\Sony PC Companion\PCCService.exe
SS - | Demand 22/08/2013 31552 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 11/05/2013 65640 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
SR - | Auto 07/09/2013 55624 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - | Auto 09/11/2013 50344 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
SR - | Auto 30/08/2011 390504 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SR - | Auto 10/06/2013 1966960 | (Dedicarz Service) . (...) - C:\Program Files\Orange\Assistance Livebox\dedicarz\DedicarzService.exe
SR - | Demand 02/11/2013 553288 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe
SR - | Auto 05/07/2013 1238344 | (Soda PDF 5 Helper Service) . (.LULU Software.) - C:\Program Files\Soda PDF 5\HelperService.exe
SR - | Auto 05/07/2013 877896 | (Soda PDF 5 Service) . (.LULU Software.) - C:\Program Files\Soda PDF 5\ConversionService.exe
SR - | Demand 22/08/2013 22240 | (WinDefend) . (.Microsoft Corporation.) - C:\Program Files\Windows Defender\MsMpEng.exe
SR - | Auto 15/05/2013 885096 | (WO_LiveService) . (...) - C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\LiveTunerService.exe
~ Services: Scanned in 00mn 11s
---\\ Scan Additionnel (O88)
Database Version : 13013 - (14/12/2013)
Clés trouvées (Keys found) : 9
Valeurs trouvées (Values found) : 1
Dossiers trouvés (Folders found) : 1
Fichiers trouvés (Files found) : 1
[HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}] =>Toolbar.Ask
[HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21111111-1111-1111-1111-110211181110}] =>Adware.VidSaver
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F335ABA2-FDB4-4644-92B2-5CC4B0FC91D6}] =>Toolbar.Agent
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F335ABA2-FDB4-4644-92B2-5CC4B0FC91D6}] =>Toolbar.Agent
[HKLM\Software\Classes\CLSID\{F335ABA2-FDB4-4644-92B2-5CC4B0FC91D6}] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Dealply] =>PUP.DealPly
[HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110211181110}] =>PUP.CrossRider
[HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110211181110}] =>PUP.CrossRider
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110211181110}] =>PUP.CrossRider
[HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{2318C2B1-4965-11d4-9B18-009027A5CD4F} =>Toolbar.Google^
C:\Users\Claude\AppData\Local\Software =>Adware.Boxore
C:\Users\Claude\AppData\Local\Temp\SHSetup.exe =>Crapware.SpyHunter^
~ Additionnel Scan: 317102 Items scanned in 00mn 31s
---\\ Récapitulatif des détections trouvées sur votre station
~ http://nicolascoolman.webs.com/apps/blog/show/26627369-toolbar-babylon =>PUP.Babylon
~ http://nicolascoolman.webs.com/apps/blog/show/29507721-toolbar-conduit =>Toolbar.Conduit
~ http://nicolascoolman.webs.com/apps/blog/show/33477786-pup-dosearches =>PUP.DoSearches
~ http://nicolascoolman.webs.com/apps/blog/show/26630379-hijacker-22find =>Hijacker.22Find
~ http://nicolascoolman.webs.com/apps/blog/show/29637859-toolbar-tarma =>PUP.Tarma
~ http://nicolascoolman.webs.com/apps/blog/show/27146838-adware-mywebsearch =>Adware.MyWebSearch
~ http://nicolascoolman.webs.com/apps/blog/show/26712089-adware-basicscan =>Adware.BasicScan
~ http://nicolascoolman.webs.com/apps/blog/show/26609241-crapware-spyhunter =>Crapware.SpyHunter
~ http://nicolascoolman.webs.com/apps/blog/show/28927746-toolbar-ask =>Toolbar.Ask
~ http://nicolascoolman.webs.com/apps/blog/show/27557062-adware-vidsaver =>Adware.VidSaver
~ http://nicolascoolman.webs.com/apps/blog/show/28060597-pup-dealply =>PUP.DealPly
~ http://nicolascoolman.webs.com/apps/blog/show/27583526-pup-crossrider =>PUP.CrossRider
~ http://nicolascoolman.webs.com/apps/blog/show/26626977-adware-boxore =>Adware.Boxore
~ MSI: 13 link(s) detected in 00mn 31s
~ 1038 Legitimates filtered by white list
End of the scan (480 lines in 02mn 51s)(0)
~ Lancé par Claude (21/12/2013 11:32:10)
~ Adresse du Site Web https://nicolascoolman.webs.com/
~ Forums gratuits d'Assistance à la désinfection : https://nicolascoolman.webs.com/
~ Traduit par Nicolas Coolman
~ Etat de la version :
~ Liste blanche : Activée par le programme
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Deactivate by program
---\\ Navigateurs Internet
MSIE: Internet Explorer v11.0.9600.16476
MFIE: Mozilla Firefox 26.0
GCIE: Google Chrome v31.0.1650.63 (Defaut)
OPIE: Opera v12.16
OBIE: Safari v5.34.57.2
---\\ Informations sur les produits Windows
~ Langage: Français
Windows 8.1 Pro, 32-bit (Build 9600)
Windows Server License Manager Script : OK
~ ion : Windows(R) Operating System, RETAIL channel
Windows ID Activation : OK
~ Windows Partial Key : PJ8XV
Windows License : OK
~ Windows Remaining Initializations Number : 999
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK
---\\ Logiciels de protection du système
avast! Free Antivirus v9.0.2007
Windows Defender W8
---\\ Logiciels d'optimisation du système
---\\ Logiciels de partage PeerToPeer
---\\ Surveillance de Logiciels
Adobe Flash Player 11 Plugin
Extended Asian Language font pack for Adobe Reader XI
Java 7 Update 45
---\\ Informations sur le système
~ Processor: x86 Family 17 Model 3 Stepping 1, AuthenticAMD
~ Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3327 MB (67% free)
System Restore: Activé (Enable)
System drive C: has 33 GB (21%) free of 149 GB
---\\ Mode de connexion au système
~ Computer Name: PC-DE-CLAUDE
~ User Name: Claude
~ All Users Names: HomeGroupUser$, Claude, Administrateur,
~ Unselected Option: O45,O61,O62,O65,O66,O80,O82,O89
Logged in as Administrator
---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\Claude\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Claude\AppData\Roaming\
~ %Desktop% : C:\Users\Claude\Desktop\
~ %Favorites% : C:\Users\Claude\Favorites\
~ %LocalAppData% : C:\Users\Claude\AppData\Local\
~ %StartMenu% : C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\
---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 33 Go of 149 Go)
D: Hard drive, Flash drive, Thumb drive (Free 87 Go of 139 Go)
E: CD-ROM drive (Not Inserted)
---\\ Etat du Centre de Sécurité Windows
~ Security Center: 46 Legitimates Filtered in 00mn 00s
---\\ Recherche particulière de fichiers génériques
[MD5.1A0BC9598E4A58FC84570FFF5A108E58] - (.Microsoft Corporation - Explorateur Windows.) (.26/11/2013 - 14:54:52.) -- C:\Windows\Explorer.exe [2065448]
[MD5.02BC073156B3097E94D63C4D609020DD] - (.Microsoft Corporation - Application de démarrage de Windows.) (.22/08/2013 - 03:49:55.) -- C:\Windows\System32\Wininit.exe [112640]
[MD5.927FA6456AD6D7630F6854828D2FD16B] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.26/11/2013 - 07:33:33.) -- C:\Windows\System32\wininet.dll [1820160]
[MD5.94385F95EF948FB274A70DE3EDE5696D] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.22/08/2013 - 03:48:19.) -- C:\Windows\System32\Winlogon.exe [458752]
[MD5.570A1D37FEECE56BBF7A70A02C817B4E] - (.Microsoft Corporation - Bibliothèque de licences.) (.22/08/2013 - 04:20:10.) -- C:\Windows\System32\sppcomapi.dll [438272]
[MD5.2AF7DA157FFF947A507FCB4AB8BB4C7C] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.22/08/2013 - 07:13:54.) -- C:\Windows\system32\Drivers\AFD.sys [455168]
[MD5.72FCAE2CE6DFEAB2AB072435017F3417] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.22/08/2013 - 06:33:25.) -- C:\Windows\system32\Drivers\atapi.sys [23392]
[MD5.CE232BB0965C0C0B786C3F976CCBFB7D] - (.Microsoft Corporation - CD-ROM File System Driver.) (.22/08/2013 - 05:11:55.) -- C:\Windows\system32\Drivers\Cdfs.sys [73728]
[MD5.E2FC132D48EA4E8B04432C33EFB77801] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.22/08/2013 - 02:59:12.) -- C:\Windows\system32\Drivers\Cdrom.sys [124928]
[MD5.D4ADBFC2409EF883164F3AA49B22F366] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.22/08/2013 - 05:09:45.) -- C:\Windows\system32\Drivers\DfsC.sys [101376]
[MD5.A31901DE6A22EA67AB83AAF7036F98CC] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.22/08/2013 - 05:10:12.) -- C:\Windows\system32\Drivers\HDAudBus.sys [69632]
[MD5.5043E69532392A43549E5D41E22638AA] - (.Microsoft Corporation - Pilote de port i8042.) (.22/08/2013 - 05:10:59.) -- C:\Windows\system32\Drivers\i8042prt.sys [82944]
[MD5.2F6A88E76A949AC0A843FE517B8DFA7C] - (.Microsoft Corporation - IP Network Address Translator.) (.30/09/2013 - 05:01:56.) -- C:\Windows\system32\Drivers\IpNat.sys [126464]
[MD5.7CDAA49DFF6837706DE7AA1A43310DD2] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.30/09/2013 - 05:01:55.) -- C:\Windows\system32\Drivers\MRxSmb.sys [334848]
[MD5.BC242922B0D08F61CF7C87FD08FAFA8B] - (.Microsoft Corporation - MBT Transport driver.) (.22/08/2013 - 05:08:26.) -- C:\Windows\system32\Drivers\netBT.sys [218624]
[MD5.813F49CF41F561C52F3CF69A1B09E967] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.22/08/2013 - 07:13:53.) -- C:\Windows\system32\Drivers\ntfs.sys [1676128]
[MD5.4F30970F15ADCC382544B31D5D7E368E] - (.Microsoft Corporation - Pilote de port parallèle.) (.22/08/2013 - 05:11:49.) -- C:\Windows\system32\Drivers\Parport.sys [81408]
[MD5.C51AB62AB41A2E8560D12472B204CC00] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.22/08/2013 - 05:07:36.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [81920]
[MD5.67E91843B0344411820A012063E876B2] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.30/09/2013 - 04:51:00.) -- C:\Windows\system32\Drivers\rdpdr.sys [143872]
[MD5.DB0C184142CF9FA1746F598A16EE92B2] - (.Microsoft Corporation - TDI Translation Driver.) (.22/08/2013 - 07:13:54.) -- C:\Windows\system32\Drivers\tdx.sys [87040]
[MD5.5F9A69B5C5C34197037A7EA36F4A7BE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.22/08/2013 - 06:24:56.) -- C:\Windows\system32\Drivers\volsnap.sys [265568]
~ Generic Processes: Scanned in 00mn 00s
---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 3/74
~ Mes musiques (My Musics) : 2/12
~ Mes Videos (My Videos) : 3/270
~ Mes Favoris (My Favorites) : 1/57
~ Mes Documents (My Documents) : 2/987
~ Mon Bureau (My Desktop) : 2/9168
~ Menu demarrer (Programs) : 1/28
~ Hidden Files: Scanned in 00mn 01s
---\\ Processus lancés
[MD5.61A5597AB30F257BCC47A8E61711F039] - (.Microsoft Corporation - Processus hôte pour Tâches Windows.) -- C:\WINDOWS\system32\taskhostex.exe [66632] [PID.5092]
[MD5.B62DFF169637A7E69AEA0915F47716CD] - (.Microsoft Corporation - SkyDrive Sync Engine Host.) -- C:\Windows\System32\skydrive.exe [463360] [PID.4516]
[MD5.81C25E4D89A3ACDF8F3096D093F1DF40] - (.Glarysoft Ltd - Glary Utilities 4.) -- C:\Program Files\Glary Utilities 4\Integrator.exe [771872] [PID.2152]
[MD5.5B6E8E09BE6401A7E022F52FDFCB2FF8] - (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336] [PID.672]
[MD5.736E57247F12EACECDB224B8D1F7F187] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [3568312] [PID.3328]
[MD5.BAF535F843A3E790E04A7613811B55BC] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe [152392] [PID.2968]
[MD5.A63D5539C89E642567FBAD6AA6E807F2] - (.Ashampoo Development GmbH & Co. KG - Ashampoo Live-Tuner Client.) -- C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\LiveTuner.exe [2949480] [PID.4876]
[MD5.10E89F598469C60D8C87A8218089A87D] - (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\Claude\AppData\Local\Akamai\netsession_win.exe [4489472] [PID.3892]
[MD5.AB8420D9EFF346DDD72E9C985BE2FC5B] - (.Sony - Sony PC Companion.) -- C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [449248] [PID.4372]
[MD5.62F5202F8FD170A438B7E97860F4D0E2] - (...) -- C:\Program Files\Zinio Alert Messenger\Zinio Alert Messenger.exe [126976] [PID.2972]
[MD5.0F6D06A88A88007AAEE5F0EE1ECE42E4] - (...) -- C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe [70880] [PID.5468]
[MD5.BF214899CD982B0933098F09FA172EB6] - (.Adobe Systems Incorporated - Adobe® Flash® Player Utility.) -- C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe [851960] [PID.4668]
[MD5.0E05E41073CD9E52D04C52AB46DDE817] - (.Microsoft Corporation - Host Process for Setting Synchronization.) -- C:\Windows\System32\SettingSyncHost.exe [479744] [PID.2340]
[MD5.1ED34E4985B2AF577A1F8F234A0B8163] - (.Glarysoft Ltd - SoftwareUpdate.) -- C:\Program Files\Glary Utilities 4\SoftwareUpdate.exe [235296] [PID.6092]
[MD5.376A9B411BF8B77D5BF84B24D0C7DACD] - (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe [863184] [PID.644]
[MD5.EE889775E0F9755C90FAEBFB93FBD781] - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe [805992] [PID.5084]
[MD5.2330B5A4A3824F042DC96D524893A6B5] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [8295936] [PID.4552]
~ Processes Running: Scanned in 00mn 01s
---\\ Opera, Plugins,Démarrage,Recherche (P1,B0,B1)
B0 - SPO: operaprefs.ini [Claude] Home URL=opera:speeddial
B1 - OSP: search.ini [Claude] URL=http://search.babylon.com =>PUP.Babylon
~ Opera Browser: 2 Legitimates Filtered in 00mn 00s
---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Claude\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] http://r.orange.fr
G2 - GCE: Preference [User Data\Default] [fnefekibahpibgnllfjpckodgobkpije] ObviousIdea v.2.0 (Désactivé)
~ Google Browser: 13 Legitimates Filtered in 00mn 00s
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Profiles\7ybwngwe.default\prefs.js
M3 - MFPP: Plugins - [Claude] -- C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Profiles\7ybwngwe.default\searchplugins\wiseconvert-15-customized-web-search.xml =>Toolbar.Conduit
M3 - MFPP: Plugins - [Claude] -- C:\Program Files\Mozilla FireFox\searchplugins\do-search.xml =>PUP.DoSearches
M2 - MFEP: prefs.js [Claude - 7ybwngwe.default\toolbarbutton@obviousidea.us] [] ObviousIdea Addon v2.0 (..)
~ Firefox Browser: 19 Legitimates Filtered in 00mn 00s
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;<local>
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s
---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s
---\\ Hosts file redirection (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 21
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Soda PDF 5 IE Helper - {C737F472-1193-4281-BF53-A00B67AB3E19} . (.LULU Software - Soda PDF Helper.) -- C:\Program Files\Soda PDF 5\PDFIEHelper.dll
~ BHO: 10 Legitimates Filtered in 00mn 00s
---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: avast! Online Security - [HKLM]{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: Google Toolbar - [HKLM]{2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll =>Toolbar.Google
O3 - Toolbar: Soda PDF 5 IE Toolbar - [HKLM]{F335ABA2-FDB4-4644-92B2-5CC4B0FC91D6} . (.LULU Software - Soda PDF 5 Toolbar.) -- C:\Program Files\Soda PDF 5\PDFIEPlugin.dll
~ Toolbar: Scanned in 00mn 00s
---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop [Public]: Ashampoo WinOptimizer 10.lnk . (.Ashampoo Development GmbH & Co. KG - Ashampoo WinOptimizer 10.) -- C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\WO10.exe
O4 - GS\Desktop [Public]: CometBird.lnk . (.CometNetwork - CometBird.) -- C:\Program Files\CometBird\cometbird.exe
O4 - GS\Desktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - GS\Desktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O4 - GS\Desktop [Public]: Opera.lnk . (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe
O4 - GS\Program [Public]: CometBird.lnk . (.CometNetwork - CometBird.) -- C:\Program Files\CometBird\cometbird.exe
O4 - GS\Program [Public]: Desktop.lnk - Clé orpheline
O4 - GS\Program [Public]: Disketch - Logiciel pour étiquettes de CD.lnk . (...) -- C:\Program Files\NCH Software\Disketch\disketch.exe (.not file.)
O4 - GS\Program [Public]: Express Rip.lnk . (...) -- C:\Program Files\NCH Software\ExpressRip\expressrip.exe (.not file.)
O4 - GS\Program [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O4 - GS\Program [Public]: Opera.lnk . (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe
O4 - GS\Program [Public]: PhotoPad Image Editor.lnk . (...) -- C:\Program Files\NCH Software\PhotoPad\photopad.exe (.not file.)
O4 - GS\Program [Public]: Safari.lnk . (...) -- C:\WINDOWS\Installer\{C779648B-410E-4BBA-B75B-5815BCEFE71D}\SafariIco.exe
O4 - GS\Program [Public]: Serif PagePlus X6.lnk . (...) -- C:\WINDOWS\Installer\{33DBAFCC-569F-40DE-AC5F-E2586AC4DE87}\PagePlus.ico
O4 - GS\Program [Public]: Your Software Deals.lnk . (...) -- C:\ProgramData\Ashampoo\YourDeals.exe
O4 - GS\Program [Public]: Zinio Alert Messenger.lnk . (...) -- C:\Program Files\Zinio Alert Messenger\Zinio Alert Messenger.exe
O4 - GS\Program [Public]: Zinio Reader 4.lnk . (...) -- C:\Program Files\Zinio Reader 4\Zinio Reader 4.exe
O4 - GS\QuickLaunch [Claude]: 22find.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe =>Hijacker.22Find
O4 - GS\QuickLaunch [Claude]: Apple Safari.lnk . (...) -- C:\WINDOWS\Installer\{C779648B-410E-4BBA-B75B-5815BCEFE71D}\SafariIco.exe
O4 - GS\QuickLaunch [Claude]: Chromium.lnk . (.The Chromium Authors - Chromium.) -- C:\Users\Claude\AppData\Local\Chromium\Application\chrome.exe
O4 - GS\QuickLaunch [Claude]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - GS\QuickLaunch [Claude]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\QuickLaunch [Claude]: Online Video Recorder.lnk . (...) -- C:\Program Files\Online Video Recorder\OnlineVideoRecorder.exe
O4 - GS\Program [Claude]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\Desktop [Claude]: Chromium.lnk . (.The Chromium Authors - Chromium.) -- C:\Users\Claude\AppData\Local\Chromium\Application\chrome.exe
O4 - GS\Desktop [Claude]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\Desktop [Claude]: Safari - Raccourci.lnk . (.Apple Inc. - Safari.) -- C:\Program Files\Safari\Safari.exe
~ Global Startup: 67 Legitimates Filtered in 00mn 01s
---\\ Applications lancées au démarrage du sytème (O4)
O4 - GS\Startup [Claude]: Zinio Alert Messenger.lnk . (...) -- C:\Program Files\Zinio Alert Messenger\Zinio Alert Messenger.exe
O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle Corporation
O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe
O4 - HKLM\..\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [20131121] . (.AVAST Software - avast! Emergency Update.) -- C:\Program Files\AVAST Software\Avast\setup\emupdate\fcb91691-e4bb-49d0-a9c4-9b96a721e2be.exe
O4 - HKLM\..\Run: [Ashampoo WinOptimizer Live-Tuner] . (.Ashampoo Development GmbH & Co. KG - Ashampoo Live-Tuner Client.) -- C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\LiveTuner.exe
O4 - HKCU\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\Claude\AppData\Local\Akamai\netsession_win.exe
O4 - HKCU\..\Run: [Orange Installer] C:\Program Files\Orange\Orange Installer\OrangeInstaller.exe (.not file.)
O4 - HKCU\..\Run: [Sony PC Companion] . (.Sony - Sony PC Companion.) -- C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe
O4 - HKUS\S-1-5-21-383826441-192018370-2907649276-1000\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\Claude\AppData\Local\Akamai\netsession_win.exe
O4 - HKUS\S-1-5-21-383826441-192018370-2907649276-1000\..\Run: [Orange Installer] C:\Program Files\Orange\Orange Installer\OrangeInstaller.exe (.not file.)
O4 - HKUS\S-1-5-21-383826441-192018370-2907649276-1000\..\Run: [Sony PC Companion] . (.Sony - Sony PC Companion.) -- C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe
~ Application: Scanned in 00mn 00s
---\\ Site dans la Zone de confiance d'Internet Explorer (O15)
O15 - Trusted Zone: [HKCU\...\Domains] http.aeriagames.com
~ IE Zone Confiance: Scanned in 00mn 00s
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{1B7A7D10-64E9-4487-B02F-6D3EEA754BFF}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{1B7A7D10-64E9-4487-B02F-6D3EEA754BFF}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
~ Domain: Scanned in 00mn 00s
---\\ Protocole additionnel (O18)
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Dedicarz Service (Dedicarz Service) . (.Pas de propriétaire - DedicarzService.) - C:\Program Files\Orange\Assistance Livebox\dedicarz\DedicarzService.exe
O23 - Service: Soda PDF 5 Helper Service (Soda PDF 5 Helper Service) . (.LULU Software - Soda PDF 5 Helper Service.) - C:\Program Files\Soda PDF 5\HelperService.exe
O23 - Service: Soda PDF 5 Service (Soda PDF 5 Service) . (.LULU Software - Soda PDF 5 Conversion Service.) - C:\Program Files\Soda PDF 5\ConversionService.exe
O23 - Service: Ashampoo LiveTuner Service (WO_LiveService) . (...) - C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\LiveTunerService.exe
~ Services: 11 Legitimates Filtered in 00mn 04s
---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Desktop General: BackupWallPaper - .(...) - C:\Users\Claude\Pictures\champetre1024.jpg
O24 - Desktop General: WallPaper - .(...) - C:\Users\Claude\Pictures\champetre1024.jpg
~ Desktop Component: 4 Legitimates Filtered in 00mn 00s
---\\ Enumère les données de BootExecute (BEX) (O34)
O34 - HKLM BootExecute: (autocheck autochk * ) - File not found
~ BEX: 1 Legitimates Filtered in 00mn 00s
---\\ Tâches planifiées en automatique (O39)
[MD5.00000000000000000000000000000000] [APT] [4771] (...) -- C:\Users\Claude\AppData\Local\Temp\launchie.vbs \\B (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{20932006-0EDD-47F4-9684-9CD1BF8F7B6F}] (...) -- C:\Program Files\TARMAI~1\{889DF~1\Setup.exe (.not file.) [0] =>PUP.Tarma
~ Scheduled Task: 15 Legitimates Filtered in 00mn 07s
---\\ HKCU & HKLM Software Keys
[HKCU\Software\Rebit]
~ Key Software: 228 Legitimates Filtered in 00mn 00s
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 28/03/2013 - 19:15:08 - [32,453] ----D C:\ProgramData\Rebit 5
~ Program Folder: 213 Legitimates Filtered in 00mn 47s
---\\ Clé de registre Shell MountPoints2 (MPKS) (O51)
O51 - MPSK:{d06d7096-5ffa-11e3-b137-002354efc917}\AutoRun\command. (...) -- F:\Startme.exe (.not file.)
~ Keys: Scanned in 00mn 00s
---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
~ MWPS: 17 Legitimates Filtered in 00mn 00s
---\\ Liste des pilotes du système (SDL) (O58)
O58 - SDL:[MD5.548CCBD8B48FDF7E2435AD6017920A7F] - 08/10/2012 - 19:53:56 ---A- . (.Wondershare - Wondershare Virtual Audio Device.) -- C:\Windows\System32\Drivers\Apowersoft_AudioDevice.sys [26080]
O58 - SDL:[MD5.F385467DF95D0A73775CB3B076B8B969] - 23/10/2013 - 16:14:50 ---A- . (...) -- C:\Windows\System32\Drivers\aswRvrt.sys [49944]
O58 - SDL:[MD5.BADA8FD627F1D0E22308211C33F0BDB5] - 23/10/2013 - 16:14:50 ---A- . (...) -- C:\Windows\System32\Drivers\aswVmm.sys [178304]
O58 - SDL:[MD5.97AFFA9D95FFE20EEE6229BC6BE166CF] - 31/07/2007 - 02:39:00 ---A- . (.ATK0100 - ATK0100 ACPI Utility.) -- C:\Windows\System32\Drivers\ATKACPI.sys [7680]
O58 - SDL:[MD5.596DB7E4D0DB6AC32DF142C861001979] - 13/08/2013 - 00:25:32 ---A- . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\Windows\System32\Drivers\bcmfn2.sys [16088]
O58 - SDL:[MD5.B4489EA5810BF73778CD8BDC305109CE] - 22/08/2013 - 06:32:57 ---A- . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Windows x86.) -- C:\Windows\System32\Drivers\stexstor.sys [26976]
~ Drivers: 17 Legitimates Filtered in 00mn 04s
---\\ Liste des outils de désinfection (LATC) (O63)
O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s
---\\ Associations Shell Spawning (O67)
O67 - Shell Spawning: <.html> <ChromeHTML>[HKCU\..\open\Command] (.Not Key.)
~ FASS Keys: 11 Legitimates Filtered in 00mn 00s
---\\ Menu de démarrage Internet (SMI) (O68)
O68 - StartMenuInternet: <COMETBIRD.EXE> <CometBird>[HKLM\..\Shell\open\Command] (.CometNetwork - CometBird.) -- c:\program files\cometbird\cometbird.exe
O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- c:\program files\google\chrome\application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: <Opera> <Opera>[HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- c:\program files\opera\opera.exe
O68 - StartMenuInternet: <Safari.exe> <Safari>[HKLM\..\Shell\open\Command] (.Apple Inc. - Safari.) -- c:\program files\safari\safari.exe
~ Keys: Scanned in 00mn 00s
---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69)
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - https://www.bing.com/?toHttps=1&redig=69DA0EF8272048D9864AF4DB37211DE8
O69 - SBI: SearchScopes [HKCU] {12B0C690-30C2-4680-9B4F-0701238A1DD4} - (Search Here) - http://www.mysearchresults.com =>Adware.MyWebSearch
O69 - SBI: SearchScopes [HKCU] {1CD4B8FF-6929-4F99-81E3-53E3CC184DEC} - (Bing) - https://www.bing.com/?toHttps=1&redig=69DA0EF8272048D9864AF4DB37211DE8
O69 - SBI: SearchScopes [HKCU] {40439b93-f815-4122-8073-d03bed94c303} - (Winamp Web Search) - http://slirsredirect.search.aol.com
O69 - SBI: SearchScopes [HKCU] {67A2568C-7A0A-4EED-AECC-B5405DE63B64} - (Google) - https://www.google.com/?gws_rd=ssl
O69 - SBI: SearchScopes [HKCU] {69ABAE4C-47BC-4EAD-A2B3-ED08ED617830} - (softpublisher search Customized Web Search) - http://search.conduit.com
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - https://www.google.com/?gws_rd=ssl
O69 - SBI: SearchScopes [HKCU] {814C76CB-2623-43F4-AAD0-58A0E5190A20} - (Orange) - http://r.orange.fr
O69 - SBI: SearchScopes [HKCU] {90F923A7-DBF5-B32E-3FE9-2312DEA86938} - (Ask) - http://www.audacitystart.com
O69 - SBI: SearchScopes [HKCU] {c1d89ae7-449d-4929-b24b-fded04adbe06} - (Glary Search) - http://isearch.glarysoft.com
O69 - SBI: SearchScopes [HKCU] {D9E7112E-0575-4947-9F62-D73B2EAB6F28} [DefaultScope] - (Orange) - https://www.orange.fr/portail
O69 - SBI: SearchScopes [HKUS\.DEFAULT] {47AE1BA9-0BD1-44F4-88AE-45F8F7B605EF} - (BasicServe) - http://www.basicserve.com =>Adware.BasicScan
O69 - SBI: SearchScopes [HKUS\S-1-5-18] {47AE1BA9-0BD1-44F4-88AE-45F8F7B605EF} - (BasicServe) - http://www.basicserve.com =>Adware.BasicScan
~ Keys: Scanned in 00mn 00s
---\\ Recherche particulière à la racine du système (SPRF) (O84)
[MD5.0D26EF8C01E3E1C77877C303A9317F69] [SPRF][10/12/2013] (...) -- C:\Users\Claude\AppData\Local\Temp\Quarantine.exe [360051]
[MD5.0679D39A697632EBD50DD438AB633214] [SPRF][20/12/2013] (...) -- C:\Users\Claude\AppData\Local\Temp\SHSetup.exe [45665360] =>Crapware.SpyHunter
[MD5.5AFACF0F4E71865473DFC878331E6AD0] [SPRF][21/12/2013] (...) -- C:\Users\Claude\AppData\Local\Temp\~gu3-ver.dat [115]
[MD5.7902EF8D44D57F0608E52FAA0528610F] [SPRF][21/12/2013] (...) -- C:\Users\Claude\AppData\Local\Temp\~upgrade.dat [1094]
[MD5.CE5A4D488CA30BED06EAC0EFDB5191B3] [SPRF][14/11/2013] (...) -- C:\Users\Claude\AppData\Roaming\wklnhst.dat [2708]
~ Files: 5 Legitimates Filtered in 00mn 00s
---\\ Liste des exceptions du parefeu (FirewallRules) (O87)
O87 - FAEL: "{A034AE88-F0F5-4EF7-A66C-6A2F77C8ED9C}" |Out - None - P17 - TRUE | .(...) -- C:\Users\Claude\AppData\Local\Temp\ibtmp395f617\component_612.decrpt (.not file.)
O87 - FAEL: "{7E3B225F-70FF-4608-89CA-701ACB74A667}" |In - None - P17 - TRUE | .(...) -- C:\Users\Claude\AppData\Local\Temp\ibtmp395f617\component_612.decrpt (.not file.)
O87 - FAEL: "{56C25F1B-8299-4012-BC1C-B78D411811E2}" | Out - None - P17 - TRUE | .(.Pas de propriétaire - Installer.) -- C:\Users\Claude\Downloads\DownloadManagerSetup.exe
O87 - FAEL: "{E8C1D198-F145-4717-A6DE-19F66B1908CB}" | In - None - P17 - TRUE | .(.Pas de propriétaire - Installer.) -- C:\Users\Claude\Downloads\DownloadManagerSetup.exe
~ Firewall: 274 Legitimates Filtered in 00mn 02s
---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS)
[MD5.EFC9D67ADBB184A59C9ABE597CF9432A] [WIS][15/12/2013] (.LULU SOFTWARE LIMITED - Soda PDF 5 Installer.) -- C:\Windows\Installer\7ecfb34.msi [55652352]
~ WIS: 39 Legitimates Filtered in 00mn 08s
---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Demand 10/12/2013 257416 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
SS - | Demand 07/07/2011 1037312 | (GSService) . (...) - C:\WINDOWS\system32\GSService.exe
SS - | Auto 13/12/2012 116648 | (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 13/12/2012 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 22/12/2012 194032 | (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
SS - | Demand 05/12/2013 119408 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
SS - | Auto 29/08/2013 1073160 | (Orange update Core Service) . (.Orange SA.) - C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe
SS - | Auto 05/09/2013 171680 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe
SS - | Demand 04/02/2013 155824 | (Sony PC Companion) . (.Avanquest Software.) - C:\Program Files\Sony\Sony PC Companion\PCCService.exe
SS - | Demand 22/08/2013 31552 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 11/05/2013 65640 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
SR - | Auto 07/09/2013 55624 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - | Auto 09/11/2013 50344 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
SR - | Auto 30/08/2011 390504 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SR - | Auto 10/06/2013 1966960 | (Dedicarz Service) . (...) - C:\Program Files\Orange\Assistance Livebox\dedicarz\DedicarzService.exe
SR - | Demand 02/11/2013 553288 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe
SR - | Auto 05/07/2013 1238344 | (Soda PDF 5 Helper Service) . (.LULU Software.) - C:\Program Files\Soda PDF 5\HelperService.exe
SR - | Auto 05/07/2013 877896 | (Soda PDF 5 Service) . (.LULU Software.) - C:\Program Files\Soda PDF 5\ConversionService.exe
SR - | Demand 22/08/2013 22240 | (WinDefend) . (.Microsoft Corporation.) - C:\Program Files\Windows Defender\MsMpEng.exe
SR - | Auto 15/05/2013 885096 | (WO_LiveService) . (...) - C:\Program Files\Ashampoo\Ashampoo WinOptimizer 10\LiveTunerService.exe
~ Services: Scanned in 00mn 11s
---\\ Scan Additionnel (O88)
Database Version : 13013 - (14/12/2013)
Clés trouvées (Keys found) : 9
Valeurs trouvées (Values found) : 1
Dossiers trouvés (Folders found) : 1
Fichiers trouvés (Files found) : 1
[HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}] =>Toolbar.Ask
[HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21111111-1111-1111-1111-110211181110}] =>Adware.VidSaver
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F335ABA2-FDB4-4644-92B2-5CC4B0FC91D6}] =>Toolbar.Agent
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F335ABA2-FDB4-4644-92B2-5CC4B0FC91D6}] =>Toolbar.Agent
[HKLM\Software\Classes\CLSID\{F335ABA2-FDB4-4644-92B2-5CC4B0FC91D6}] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Dealply] =>PUP.DealPly
[HKLM\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110211181110}] =>PUP.CrossRider
[HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110211181110}] =>PUP.CrossRider
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110211181110}] =>PUP.CrossRider
[HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{2318C2B1-4965-11d4-9B18-009027A5CD4F} =>Toolbar.Google^
C:\Users\Claude\AppData\Local\Software =>Adware.Boxore
C:\Users\Claude\AppData\Local\Temp\SHSetup.exe =>Crapware.SpyHunter^
~ Additionnel Scan: 317102 Items scanned in 00mn 31s
---\\ Récapitulatif des détections trouvées sur votre station
~ http://nicolascoolman.webs.com/apps/blog/show/26627369-toolbar-babylon =>PUP.Babylon
~ http://nicolascoolman.webs.com/apps/blog/show/29507721-toolbar-conduit =>Toolbar.Conduit
~ http://nicolascoolman.webs.com/apps/blog/show/33477786-pup-dosearches =>PUP.DoSearches
~ http://nicolascoolman.webs.com/apps/blog/show/26630379-hijacker-22find =>Hijacker.22Find
~ http://nicolascoolman.webs.com/apps/blog/show/29637859-toolbar-tarma =>PUP.Tarma
~ http://nicolascoolman.webs.com/apps/blog/show/27146838-adware-mywebsearch =>Adware.MyWebSearch
~ http://nicolascoolman.webs.com/apps/blog/show/26712089-adware-basicscan =>Adware.BasicScan
~ http://nicolascoolman.webs.com/apps/blog/show/26609241-crapware-spyhunter =>Crapware.SpyHunter
~ http://nicolascoolman.webs.com/apps/blog/show/28927746-toolbar-ask =>Toolbar.Ask
~ http://nicolascoolman.webs.com/apps/blog/show/27557062-adware-vidsaver =>Adware.VidSaver
~ http://nicolascoolman.webs.com/apps/blog/show/28060597-pup-dealply =>PUP.DealPly
~ http://nicolascoolman.webs.com/apps/blog/show/27583526-pup-crossrider =>PUP.CrossRider
~ http://nicolascoolman.webs.com/apps/blog/show/26626977-adware-boxore =>Adware.Boxore
~ MSI: 13 link(s) detected in 00mn 31s
~ 1038 Legitimates filtered by white list
End of the scan (480 lines in 02mn 51s)(0)
lilidurhone
Messages postés
43347
Date d'inscription
lundi 25 avril 2011
Statut
Contributeur sécurité
Dernière intervention
31 octobre 2024
3 807
21 déc. 2013 à 12:25
21 déc. 2013 à 12:25
Rapport incomplet!
Désinstalles
=> Glary et Ashampoo WinOptimizer 10
Servent à rien!!!!
Refais un zhpdiag
* A l'ouverture du logiciel il te sera proposé deux options "rechercher" et "configurer"
* Cliques sur configurer
* Options puis tous
* Clique sur l'icône représentant une loupe + (« Lancer le diagnostic »)
* Enregistre le rapport sur ton Bureau à l'aide de l'icône représentant une disquette
* Pour héberger le rapport, rends toi sur cjoint.com
* Clique sur choisissez un fichier va chercher le rapport dans ton PC.
* Le rapport est sauvegardé dans C:\ZHP\ZHPDiag.txt
* Une fois le rapport trouvé, sélectionne le, et clique sur Ouvrir
* Choisis le type de diffusion(je te conseille privée 4 jours il sera détruit)
* Puis cliques sur créer le lien cjoint
* Une fois que tu auras obtenu le lien copies colle dans ta prochaine réponse
* Pour t'aider http://www.forum-entraide-informatique.com/support/cjoint-com-tutoriel-t2939.html ou https://www.commentcamarche.net/faq/29493-utiliser-cjoint-pour-heberger-des-fichiers
Désinstalles
=> Glary et Ashampoo WinOptimizer 10
Servent à rien!!!!
Refais un zhpdiag
* A l'ouverture du logiciel il te sera proposé deux options "rechercher" et "configurer"
* Cliques sur configurer
* Options puis tous
* Clique sur l'icône représentant une loupe + (« Lancer le diagnostic »)
* Enregistre le rapport sur ton Bureau à l'aide de l'icône représentant une disquette
* Pour héberger le rapport, rends toi sur cjoint.com
* Clique sur choisissez un fichier va chercher le rapport dans ton PC.
* Le rapport est sauvegardé dans C:\ZHP\ZHPDiag.txt
* Une fois le rapport trouvé, sélectionne le, et clique sur Ouvrir
* Choisis le type de diffusion(je te conseille privée 4 jours il sera détruit)
* Puis cliques sur créer le lien cjoint
* Une fois que tu auras obtenu le lien copies colle dans ta prochaine réponse
* Pour t'aider http://www.forum-entraide-informatique.com/support/cjoint-com-tutoriel-t2939.html ou https://www.commentcamarche.net/faq/29493-utiliser-cjoint-pour-heberger-des-fichiers
claudedu17
Messages postés
65
Date d'inscription
vendredi 18 avril 2008
Statut
Membre
Dernière intervention
28 septembre 2014
1
21 déc. 2013 à 17:06
21 déc. 2013 à 17:06
Voici le lien obtenu
https://www.cjoint.com/?3LvrfnPuooE
https://www.cjoint.com/?3LvrfnPuooE
lilidurhone
Messages postés
43347
Date d'inscription
lundi 25 avril 2011
Statut
Contributeur sécurité
Dernière intervention
31 octobre 2024
3 807
21 déc. 2013 à 20:20
21 déc. 2013 à 20:20
* Télécharge Junkware Removal Tool à cette adresse (ne clique pas sur télécharger, le téléchargement va débuter automatiquement) : https://www.bleepingcomputer.com/download/junkware-removal-tool/dl/131/
* Enregistre-le sur ton bureau.
* Ferme toutes les applications en cours.
* Ouvre JRT.exe et appuie sur Entrée : si tu es sous Windows Vista, 7 ou 8, ouvre-le en faisant : clic droit => Exécuter en tant qu'administrateur.
* Patiente le temps que l'outil travaille : le bureau va disparaître quelques instants, c'est tout à fait normal.
* À la fin de l'analyse, un rapport nommé JRT.txt va s'ouvrir. Héberge-le comme ceci et poste le lien obtenu dans ta prochaine réponse.
Tutoriel : http://www.forum-entraide-informatique.com/support/junkware-removal-tool-tutoriel-t8260.html
* Enregistre-le sur ton bureau.
* Ferme toutes les applications en cours.
* Ouvre JRT.exe et appuie sur Entrée : si tu es sous Windows Vista, 7 ou 8, ouvre-le en faisant : clic droit => Exécuter en tant qu'administrateur.
* Patiente le temps que l'outil travaille : le bureau va disparaître quelques instants, c'est tout à fait normal.
* À la fin de l'analyse, un rapport nommé JRT.txt va s'ouvrir. Héberge-le comme ceci et poste le lien obtenu dans ta prochaine réponse.
Tutoriel : http://www.forum-entraide-informatique.com/support/junkware-removal-tool-tutoriel-t8260.html
claudedu17
Messages postés
65
Date d'inscription
vendredi 18 avril 2008
Statut
Membre
Dernière intervention
28 septembre 2014
1
21 déc. 2013 à 20:56
21 déc. 2013 à 20:56
Voilà le résulta
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 8.1 Pro x86
Ran by Claude on 21/12/2013 at 20:46:43,42
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{A2DF06F9-A21A-44A8-8A99-8B9C84F29160}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-383826441-192018370-2907649276-1000\Software\sweetim
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-383826441-192018370-2907649276-1000\Software\wajam
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\upgradecodes\f928123a039649549966d4c29d35b1c9
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110211181110}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110211181110}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{12B0C690-30C2-4680-9B4F-0701238A1DD4}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{40439b93-f815-4122-8073-d03bed94c303}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{69ABAE4C-47BC-4EAD-A2B3-ED08ED617830}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{40439b93-f815-4122-8073-d03bed94c303}
Successfully deleted: [Registry Key] "hkey_current_user\software\microsoft\internet explorer\low rights\elevationpolicy\{a5aa24ea-11b8-4113-95ae-9ed71deaf12a}"
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\ProgramData\fixio pc utilities"
Successfully deleted: [Folder] "C:\Users\Claude\AppData\Roaming\fixio pc utilities"
Successfully deleted: [Folder] "C:\Users\Claude\appdata\local\software"
Successfully deleted: [Folder] "C:\WINDOWS\system32\ai_recyclebin"
~~~ FireFox
Emptied folder: C:\Users\Claude\AppData\Roaming\mozilla\firefox\profiles\7ybwngwe.default\minidumps [286 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 21/12/2013 at 20:50:53,77
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Peux tu me donner un peu d'explications sur ces activités ?
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 8.1 Pro x86
Ran by Claude on 21/12/2013 at 20:46:43,42
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{A2DF06F9-A21A-44A8-8A99-8B9C84F29160}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-383826441-192018370-2907649276-1000\Software\sweetim
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-383826441-192018370-2907649276-1000\Software\wajam
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\installer\upgradecodes\f928123a039649549966d4c29d35b1c9
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-110211181110}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110211181110}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{12B0C690-30C2-4680-9B4F-0701238A1DD4}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{40439b93-f815-4122-8073-d03bed94c303}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{69ABAE4C-47BC-4EAD-A2B3-ED08ED617830}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{40439b93-f815-4122-8073-d03bed94c303}
Successfully deleted: [Registry Key] "hkey_current_user\software\microsoft\internet explorer\low rights\elevationpolicy\{a5aa24ea-11b8-4113-95ae-9ed71deaf12a}"
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\ProgramData\fixio pc utilities"
Successfully deleted: [Folder] "C:\Users\Claude\AppData\Roaming\fixio pc utilities"
Successfully deleted: [Folder] "C:\Users\Claude\appdata\local\software"
Successfully deleted: [Folder] "C:\WINDOWS\system32\ai_recyclebin"
~~~ FireFox
Emptied folder: C:\Users\Claude\AppData\Roaming\mozilla\firefox\profiles\7ybwngwe.default\minidumps [286 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 21/12/2013 at 20:50:53,77
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Peux tu me donner un peu d'explications sur ces activités ?
lilidurhone
Messages postés
43347
Date d'inscription
lundi 25 avril 2011
Statut
Contributeur sécurité
Dernière intervention
31 octobre 2024
3 807
21 déc. 2013 à 21:13
21 déc. 2013 à 21:13
Tu as eu des adwares
Pour demain un nouveau rapport zhpdiag
Pour demain un nouveau rapport zhpdiag
claudedu17
Messages postés
65
Date d'inscription
vendredi 18 avril 2008
Statut
Membre
Dernière intervention
28 septembre 2014
1
21 déc. 2013 à 21:45
21 déc. 2013 à 21:45
~ Rapport de ZHPDiag v2013.12.14.22 - Nicolas Coolman (14/12/2013)
~ Lancé par Claude (21/12/2013 21:37:48)
~ Adresse du Site Web https://nicolascoolman.webs.com/
~ Forums gratuits d'Assistance à la désinfection : https://nicolascoolman.webs.com/
~ Traduit par Nicolas Coolman
~ Etat de la version :
~ Liste blanche : Activée par le programme
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Deactivate by program
---\\ Navigateurs Internet
MSIE: Internet Explorer v11.0.9600.16476
MFIE: Mozilla Firefox 26.0
GCIE: Google Chrome v31.0.1650.63
OPIE: Opera v12.16 (Defaut)
OBIE: Safari v5.34.57.2
---\\ Informations sur les produits Windows
~ Langage: Français
Windows 8.1 Pro, 32-bit (Build 9600)
Windows Server License Manager Script : OK
~ ion : Windows(R) Operating System, RETAIL channel
Windows ID Activation : OK
~ Windows Partial Key : PJ8XV
Windows License : OK
~ Windows Remaining Initializations Number : 999
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK
---\\ Logiciels de protection du système
avast! Free Antivirus v9.0.2007
Windows Defender W8
---\\ Logiciels d'optimisation du système
---\\ Logiciels de partage PeerToPeer
---\\ Surveillance de Logiciels
Adobe Flash Player 11 Plugin
Extended Asian Language font pack for Adobe Reader XI
Java 7 Update 45
---\\ Informations sur le système
~ Processor: x86 Family 17 Model 3 Stepping 1, AuthenticAMD
~ Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3327 MB (62% free)
System Restore: Activé (Enable)
System drive C: has 32 GB (21%) free of 149 GB
---\\ Mode de connexion au système
~ Computer Name: PC-DE-CLAUDE
~ User Name: Claude
~ All Users Names: HomeGroupUser$, Claude, Administrateur,
~ Unselected Option: None
Logged in as Administrator
---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\Claude\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Claude\AppData\Roaming\
~ %Desktop% : C:\Users\Claude\Desktop\
~ %Favorites% : C:\Users\Claude\Favorites\
~ %LocalAppData% : C:\Users\Claude\AppData\Local\
~ %StartMenu% : C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\
---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 32 Go of 149 Go)
D: Hard drive, Flash drive, Thumb drive (Free 87 Go of 139 Go)
E: CD-ROM drive (Not Inserted)
---\\ Etat du Centre de Sécurité Windows
~ Security Center: 46 Legitimates Filtered in 00mn 00s
---\\ Recherche particulière de fichiers génériques
[MD5.1A0BC9598E4A58FC84570FFF5A108E58] - (.Microsoft Corporation - Explorateur Windows.) (.26/11/2013 - 14:54:52.) -- C:\Windows\Explorer.exe [2065448]
[MD5.02BC073156B3097E94D63C4D609020DD] - (.Microsoft Corporation - Application de démarrage de Windows.) (.22/08/2013 - 03:49:55.) -- C:\Windows\System32\Wininit.exe [112640]
[MD5.927FA6456AD6D7630F6854828D2FD16B] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.26/11/2013 - 07:33:33.) -- C:\Windows\System32\wininet.dll [1820160]
[MD5.94385F95EF948FB274A70DE3EDE5696D] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.22/08/2013 - 03:48:19.) -- C:\Windows\System32\Winlogon.exe [458752]
[MD5.570A1D37FEECE56BBF7A70A02C817B4E] - (.Microsoft Corporation - Bibliothèque de licences.) (.22/08/2013 - 04:20:10.) -- C:\Windows\System32\sppcomapi.dll [438272]
[MD5.2AF7DA157FFF947A507FCB4AB8BB4C7C] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.22/08/2013 - 07:13:54.) -- C:\Windows\system32\Drivers\AFD.sys [455168]
[MD5.72FCAE2CE6DFEAB2AB072435017F3417] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.22/08/2013 - 06:33:25.) -- C:\Windows\system32\Drivers\atapi.sys [23392]
[MD5.CE232BB0965C0C0B786C3F976CCBFB7D] - (.Microsoft Corporation - CD-ROM File System Driver.) (.22/08/2013 - 05:11:55.) -- C:\Windows\system32\Drivers\Cdfs.sys [73728]
[MD5.E2FC132D48EA4E8B04432C33EFB77801] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.22/08/2013 - 02:59:12.) -- C:\Windows\system32\Drivers\Cdrom.sys [124928]
[MD5.D4ADBFC2409EF883164F3AA49B22F366] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.22/08/2013 - 05:09:45.) -- C:\Windows\system32\Drivers\DfsC.sys [101376]
[MD5.A31901DE6A22EA67AB83AAF7036F98CC] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.22/08/2013 - 05:10:12.) -- C:\Windows\system32\Drivers\HDAudBus.sys [69632]
[MD5.5043E69532392A43549E5D41E22638AA] - (.Microsoft Corporation - Pilote de port i8042.) (.22/08/2013 - 05:10:59.) -- C:\Windows\system32\Drivers\i8042prt.sys [82944]
[MD5.2F6A88E76A949AC0A843FE517B8DFA7C] - (.Microsoft Corporation - IP Network Address Translator.) (.30/09/2013 - 05:01:56.) -- C:\Windows\system32\Drivers\IpNat.sys [126464]
[MD5.7CDAA49DFF6837706DE7AA1A43310DD2] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.30/09/2013 - 05:01:55.) -- C:\Windows\system32\Drivers\MRxSmb.sys [334848]
[MD5.BC242922B0D08F61CF7C87FD08FAFA8B] - (.Microsoft Corporation - MBT Transport driver.) (.22/08/2013 - 05:08:26.) -- C:\Windows\system32\Drivers\netBT.sys [218624]
[MD5.813F49CF41F561C52F3CF69A1B09E967] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.22/08/2013 - 07:13:53.) -- C:\Windows\system32\Drivers\ntfs.sys [1676128]
[MD5.4F30970F15ADCC382544B31D5D7E368E] - (.Microsoft Corporation - Pilote de port parallèle.) (.22/08/2013 - 05:11:49.) -- C:\Windows\system32\Drivers\Parport.sys [81408]
[MD5.C51AB62AB41A2E8560D12472B204CC00] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.22/08/2013 - 05:07:36.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [81920]
[MD5.67E91843B0344411820A012063E876B2] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.30/09/2013 - 04:51:00.) -- C:\Windows\system32\Drivers\rdpdr.sys [143872]
[MD5.DB0C184142CF9FA1746F598A16EE92B2] - (.Microsoft Corporation - TDI Translation Driver.) (.22/08/2013 - 07:13:54.) -- C:\Windows\system32\Drivers\tdx.sys [87040]
[MD5.5F9A69B5C5C34197037A7EA36F4A7BE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.22/08/2013 - 06:24:56.) -- C:\Windows\system32\Drivers\volsnap.sys [265568]
~ Generic Processes: Scanned in 00mn 00s
---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 3/74
~ Mes musiques (My Musics) : 2/12
~ Mes Videos (My Videos) : 3/270
~ Mes Favoris (My Favorites) : 1/57
~ Mes Documents (My Documents) : 2/987
~ Mon Bureau (My Desktop) : 2/9173
~ Menu demarrer (Programs) : 1/27
~ Hidden Files: Scanned in 00mn 01s
---\\ Processus lancés
[MD5.61A5597AB30F257BCC47A8E61711F039] - (.Microsoft Corporation - Processus hôte pour Tâches Windows.) -- C:\WINDOWS\system32\taskhostex.exe [66632] [PID.5092]
[MD5.B62DFF169637A7E69AEA0915F47716CD] - (.Microsoft Corporation - SkyDrive Sync Engine Host.) -- C:\Windows\System32\skydrive.exe [463360] [PID.4516]
[MD5.5B6E8E09BE6401A7E022F52FDFCB2FF8] - (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336] [PID.672]
[MD5.736E57247F12EACECDB224B8D1F7F187] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [3568312] [PID.3328]
[MD5.BAF535F843A3E790E04A7613811B55BC] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe [152392] [PID.2968]
[MD5.10E89F598469C60D8C87A8218089A87D] - (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\Claude\AppData\Local\Akamai\netsession_win.exe [4489472] [PID.3892]
[MD5.AB8420D9EFF346DDD72E9C985BE2FC5B] - (.Sony - Sony PC Companion.) -- C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [449248] [PID.4372]
[MD5.62F5202F8FD170A438B7E97860F4D0E2] - (...) -- C:\Program Files\Zinio Alert Messenger\Zinio Alert Messenger.exe [126976] [PID.2972]
[MD5.0F6D06A88A88007AAEE5F0EE1ECE42E4] - (...) -- C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe [70880] [PID.5468]
[MD5.0E05E41073CD9E52D04C52AB46DDE817] - (.Microsoft Corporation - Host Process for Setting Synchronization.) -- C:\Windows\System32\SettingSyncHost.exe [479744] [PID.2340]
[MD5.58920E6A409046BA06548D9D139CE0F0] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe [20584608] [PID.21504]
[MD5.EE889775E0F9755C90FAEBFB93FBD781] - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe [805992] [PID.23180]
[MD5.2330B5A4A3824F042DC96D524893A6B5] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [8295936] [PID.9380]
~ Processes Running: Scanned in 00mn 02s
---\\ Opera, Plugins,Démarrage,Recherche (P1,B0,B1)
B0 - SPO: operaprefs.ini [Claude] Home URL=opera:speeddial
B1 - OSP: search.ini [Claude] URL=http://search.babylon.com =>PUP.Babylon
~ Opera Browser: 2 Legitimates Filtered in 00mn 00s
---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Claude\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] http://r.orange.fr
G2 - GCE: Preference [User Data\Default] [fnefekibahpibgnllfjpckodgobkpije] ObviousIdea v.2.0 (Désactivé)
~ Google Browser: 14 Legitimates Filtered in 00mn 03s
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Profiles\7ybwngwe.default\prefs.js
M3 - MFPP: Plugins - [Claude] -- C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Profiles\7ybwngwe.default\searchplugins\wiseconvert-15-customized-web-search.xml =>Toolbar.Conduit
M3 - MFPP: Plugins - [Claude] -- C:\Program Files\Mozilla FireFox\searchplugins\do-search.xml =>PUP.DoSearches
M2 - MFEP: prefs.js [Claude - 7ybwngwe.default\toolbarbutton@obviousidea.us] [] ObviousIdea Addon v2.0 (..)
~ Firefox Browser: 19 Legitimates Filtered in 00mn 00s
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;<local>
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s
---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s
---\\ Hosts file redirection (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 21
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Soda PDF 5 IE Helper - {C737F472-1193-4281-BF53-A00B67AB3E19} . (.LULU Software - Soda PDF Helper.) -- C:\Program Files\Soda PDF 5\PDFIEHelper.dll
~ BHO: 10 Legitimates Filtered in 00mn 00s
---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: avast! Online Security - [HKLM]{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: Google Toolbar - [HKLM]{2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll =>Toolbar.Google
O3 - Toolbar: Soda PDF 5 IE Toolbar - [HKLM]{F335ABA2-FDB4-4644-92B2-5CC4B0FC91D6} . (.LULU Software - Soda PDF 5 Toolbar.) -- C:\Program Files\Soda PDF 5\PDFIEPlugin.dll
~ Toolbar: Scanned in 00mn 00s
---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop [Public]: CometBird.lnk . (.CometNetwork - CometBird.) -- C:\Program Files\CometBird\cometbird.exe
O4 - GS\Desktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - GS\Desktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O4 - GS\Desktop [Public]: Opera.lnk . (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe
O4 - GS\Program [Public]: CometBird.lnk . (.CometNetwork - CometBird.) -- C:\Program Files\CometBird\cometbird.exe
O4 - GS\Program [Public]: Desktop.lnk - Clé orpheline
O4 - GS\Program [Public]: Disketch - Logiciel pour étiquettes de CD.lnk . (...) -- C:\Program Files\NCH Software\Disketch\disketch.exe (.not file.)
O4 - GS\Program [Public]: Express Rip.lnk . (...) -- C:\Program Files\NCH Software\ExpressRip\expressrip.exe (.not file.)
O4 - GS\Program [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O4 - GS\Program [Public]: Opera.lnk . (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe
O4 - GS\Program [Public]: PhotoPad Image Editor.lnk . (...) -- C:\Program Files\NCH Software\PhotoPad\photopad.exe (.not file.)
O4 - GS\Program [Public]: Safari.lnk . (...) -- C:\WINDOWS\Installer\{C779648B-410E-4BBA-B75B-5815BCEFE71D}\SafariIco.exe
O4 - GS\Program [Public]: Serif PagePlus X6.lnk . (...) -- C:\WINDOWS\Installer\{33DBAFCC-569F-40DE-AC5F-E2586AC4DE87}\PagePlus.ico
O4 - GS\Program [Public]: Your Software Deals.lnk . (...) -- C:\ProgramData\Ashampoo\YourDeals.exe
O4 - GS\Program [Public]: Zinio Alert Messenger.lnk . (...) -- C:\Program Files\Zinio Alert Messenger\Zinio Alert Messenger.exe
O4 - GS\Program [Public]: Zinio Reader 4.lnk . (...) -- C:\Program Files\Zinio Reader 4\Zinio Reader 4.exe
O4 - GS\QuickLaunch [Claude]: Apple Safari.lnk . (...) -- C:\WINDOWS\Installer\{C779648B-410E-4BBA-B75B-5815BCEFE71D}\SafariIco.exe
O4 - GS\QuickLaunch [Claude]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - GS\QuickLaunch [Claude]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\QuickLaunch [Claude]: Online Video Recorder.lnk . (...) -- C:\Program Files\Online Video Recorder\OnlineVideoRecorder.exe
O4 - GS\Program [Claude]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\Desktop [Claude]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\Desktop [Claude]: Safari - Raccourci.lnk . (.Apple Inc. - Safari.) -- C:\Program Files\Safari\Safari.exe
~ Global Startup: 58 Legitimates Filtered in 00mn 00s
---\\ Applications lancées au démarrage du sytème (O4)
O4 - GS\Startup [Claude]: Zinio Alert Messenger.lnk . (...) -- C:\Program Files\Zinio Alert Messenger\Zinio Alert Messenger.exe
O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle Corporation
O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe
O4 - HKLM\..\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [20131121] . (.AVAST Software - avast! Emergency Update.) -- C:\Program Files\AVAST Software\Avast\setup\emupdate\fcb91691-e4bb-49d0-a9c4-9b96a721e2be.exe
O4 - HKCU\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\Claude\AppData\Local\Akamai\netsession_win.exe
O4 - HKCU\..\Run: [Orange Installer] C:\Program Files\Orange\Orange Installer\OrangeInstaller.exe (.not file.)
O4 - HKCU\..\Run: [Sony PC Companion] . (.Sony - Sony PC Companion.) -- C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe
O4 - HKUS\S-1-5-21-383826441-192018370-2907649276-1000\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\Claude\AppData\Local\Akamai\netsession_win.exe
O4 - HKUS\S-1-5-21-383826441-192018370-2907649276-1000\..\Run: [Orange Installer] C:\Program Files\Orange\Orange Installer\OrangeInstaller.exe (.not file.)
O4 - HKUS\S-1-5-21-383826441-192018370-2907649276-1000\..\Run: [Sony PC Companion] . (.Sony - Sony PC Companion.) -- C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe
~ Application: Scanned in 00mn 00s
---\\ Site dans la Zone de confiance d'Internet Explorer (O15)
O15 - Trusted Zone: [HKCU\...\Domains] http.aeriagames.com
~ IE Zone Confiance: Scanned in 00mn 00s
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{1B7A7D10-64E9-4487-B02F-6D3EEA754BFF}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{1B7A7D10-64E9-4487-B02F-6D3EEA754BFF}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
~ Domain: Scanned in 00mn 00s
---\\ Protocole additionnel (O18)
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Dedicarz Service (Dedicarz Service) . (.Pas de propriétaire - DedicarzService.) - C:\Program Files\Orange\Assistance Livebox\dedicarz\DedicarzService.exe
O23 - Service: Soda PDF 5 Helper Service (Soda PDF 5 Helper Service) . (.LULU Software - Soda PDF 5 Helper Service.) - C:\Program Files\Soda PDF 5\HelperService.exe
O23 - Service: Soda PDF 5 Service (Soda PDF 5 Service) . (.LULU Software - Soda PDF 5 Conversion Service.) - C:\Program Files\Soda PDF 5\ConversionService.exe
~ Services: 10 Legitimates Filtered in 00mn 05s
---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Desktop General: BackupWallPaper - .(...) - C:\Users\Claude\Pictures\champetre1024.jpg
O24 - Desktop General: WallPaper - .(...) - C:\Users\Claude\Pictures\champetre1024.jpg
~ Desktop Component: 4 Legitimates Filtered in 00mn 00s
---\\ Tâches planifiées en automatique (O39)
[MD5.00000000000000000000000000000000] [APT] [4771] (...) -- C:\Users\Claude\AppData\Local\Temp\launchie.vbs \\B (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{20932006-0EDD-47F4-9684-9CD1BF8F7B6F}] (...) -- C:\Program Files\TARMAI~1\{889DF~1\Setup.exe (.not file.) [0] =>PUP.Tarma
~ Scheduled Task: 13 Legitimates Filtered in 00mn 05s
---\\ HKCU & HKLM Software Keys
[HKCU\Software\Rebit]
~ Key Software: 222 Legitimates Filtered in 00mn 00s
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 28/03/2013 - 19:15:08 - [32,453] ----D C:\ProgramData\Rebit 5
~ Program Folder: 209 Legitimates Filtered in 00mn 04s
---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.AABB248321CFD3253D8EEB226ACF303A] - 05/12/2013 - 13:38:48 ---A- - C:\Windows\Prefetch\CAPTVTY-1.11.9.7-AUTOEXTRACT.-1870E220.pf
O45 - LFCP:[MD5.E6A50A17100A25B9405BBF61F86FC23A] - 05/12/2013 - 18:19:28 ---A- - C:\Windows\Prefetch\PHOTOSAPP.EXE-0B65831E.pf
O45 - LFCP:[MD5.4086D90221A9DB8E0166D0350EFC5B5C] - 05/12/2013 - 18:26:58 ---A- - C:\Windows\Prefetch\ONLINEVIDEORECORDER.EXE-800ADC42.pf
O45 - LFCP:[MD5.E119CB306B508EA85C2342FDD5D9C389] - 08/12/2013 - 14:27:23 ---A- - C:\Windows\Prefetch\DRIVERSMANAGER_SCAN_01NET.TMP-A4F0A157.pf
O45 - LFCP:[MD5.CD67A61BE9A4977B209F58934C833111] - 08/12/2013 - 14:27:27 ---A- - C:\Windows\Prefetch\DRIVERSMANAGER_SCAN_01NET.TMP-A171204E.pf
O45 - LFCP:[MD5.3B662C55DEADB45CB3A4E8AD4CF9B101] - 08/12/2013 - 14:27:42 ---A- - C:\Windows\Prefetch\DRIVERSMANAGER.EXE-733860A2.pf
O45 - LFCP:[MD5.5BA410F3E6783DC8CAAD333522D59C20] - 12/12/2013 - 20:24:54 ---A- - C:\Windows\Prefetch\STARTME.EXE-DB3CA801.pf
O45 - LFCP:[MD5.139FE098EDCAA9ECA06758BC9DF33F9A] - 12/12/2013 - 20:25:04 ---A- - C:\Windows\Prefetch\STARTME.EXE-FFCDC9A2.pf
O45 - LFCP:[MD5.CAF900EE04AE45DB70088F53E8BD382F] - 14/12/2013 - 11:18:01 ---A- - C:\Windows\Prefetch\CAPTVTY-1.11.10-AUTOEXTRACT.E-5EEC3ECF.pf
O45 - LFCP:[MD5.1AC9F23C8311A70535F8968C239D15B3] - 15/12/2013 - 10:53:08 ---A- - C:\Windows\Prefetch\SODA_PDF_5.0_NEXTMEDIA_INSTAL-F2A27B74.pf
O45 - LFCP:[MD5.46493B7C969905BCCADB675F0A41F31D] - 18/12/2013 - 14:25:26 ---A- - C:\Windows\Prefetch\MOZILLA_FIREFOX_V26.0.EXE-C2840235.pf
O45 - LFCP:[MD5.0EDB7C89C2B6363BE0471CA958E43EBD] - 20/12/2013 - 17:50:03 ---A- - C:\Windows\Prefetch\DRIVERSMANAGER_SCAN_01NET.TMP-AE62623B.pf
O45 - LFCP:[MD5.3ECAAAEF6C392198FDCDEAA0C3AE51E9] - 20/12/2013 - 18:09:36 ---A- - C:\Windows\Prefetch\UPDATE_4206_10.03.00.TMP-E337C987.pf
O45 - LFCP:[MD5.75C3BAE04DE315B280F0F54D97D0D86C] - 20/12/2013 - 18:10:59 ---A- - C:\Windows\Prefetch\ADUSETUP_ASHAMPOO.TMP-551AF311.pf
O45 - LFCP:[MD5.34A63F3526C37976DA10701FE36C410C] - 20/12/2013 - 18:11:05 ---A- - C:\Windows\Prefetch\ADU.EXE-F132DA4B.pf
O45 - LFCP:[MD5.321D02F059AD23D8F5558C8BC75252F7] - 20/12/2013 - 21:52:03 ---A- - C:\Windows\Prefetch\UPGRADE.EXE-B9687F71.pf
O45 - LFCP:[MD5.489D874D3EA67C8D1C4318FEA6050EFF] - 21/12/2013 - 10:43:23 ---A- - C:\Windows\Prefetch\PCCOMPANION.EXE-4D74AE82.pf
O45 - LFCP:[MD5.3183F0640B297CFBD9581785B17F4C04] - 21/12/2013 - 13:15:39 ---A- - C:\Windows\Prefetch\dynreservedpri.db
O45 - LFCP:[MD5.FD1022CC0CC9B173EF65E965A9BF18EB] - 21/12/2013 - 15:09:18 ---A- - C:\Windows\Prefetch\UNINST.EXE-0733A8AE.pf
O45 - LFCP:[MD5.81DECC63F2F52919AD2ABF5AFB3EAD0D] - 21/12/2013 - 15:09:23 ---A- - C:\Windows\Prefetch\NSE39.TMP-187AEFE5.pf
O45 - LFCP:[MD5.888BC02EB182F9EFBA1349D9BC4886D8] - 21/12/2013 - 15:10:38 ---A- - C:\Windows\Prefetch\WO_CHECKREMOVE.EXE-82F0C5B1.pf
O45 - LFCP:[MD5.A999610DD8FECDC30E09ABBD83166BDC] - 21/12/2013 - 15:10:46 ---A- - C:\Windows\Prefetch\DFSDKS.EXE-B998EA87.pf
O45 - LFCP:[MD5.8AEDE08F17C1A9CFE75E90133B81B8E8] - 21/12/2013 - 15:10:52 ---A- - C:\Windows\Prefetch\WO10.EXE-99BA148F.pf
O45 - LFCP:[MD5.519E0AD8E65A45E53FA7DFA1897A2BF5] - 21/12/2013 - 15:11:02 ---A- - C:\Windows\Prefetch\EXIT.EXE-45E82A2E.pf
O45 - LFCP:[MD5.F1BA91316089DF5118EFBA3054998078] - 21/12/2013 - 19:50:46 ---A- - C:\Windows\Prefetch\INSTUP.EXE-7E543EAF.pf
O45 - LFCP:[MD5.890BADB4A5B89421F699A23CA66DE50F] - 21/12/2013 - 20:44:05 ---A- - C:\Windows\Prefetch\PfPre_53359fe8.db
O45 - LFCP:[MD5.2471E2659678BF7F04677A5906485788] - 21/12/2013 - 20:46:25 ---A- - C:\Windows\Prefetch\WGET.DAT-7A9B93D1.pf
O45 - LFCP:[MD5.8BA700B544632E5CC9AB6988D6133D3C] - 21/12/2013 - 20:46:29 ---A- - C:\Windows\Prefetch\JRT.EXE-92B3FD72.pf
O45 - LFCP:[MD5.75607A378BAF081FAFC2B79A78461C59] - 21/12/2013 - 20:47:05 ---A- - C:\Windows\Prefetch\CHOICE.DAT-EBF9A5DD.pf
O45 - LFCP:[MD5.7AA09445A0B04007E95AAA93B1BE11CA] - 21/12/2013 - 20:49:48 ---A- - C:\Windows\Prefetch\FC.EXE-6D8DB995.pf
O45 - LFCP:[MD5.4EC05CC8C6759D574DAE891215B16956] - 21/12/2013 - 20:50:11 ---A- - C:\Windows\Prefetch\FIND.EXE-E2237F6D.pf
O45 - LFCP:[MD5.6CDB778A6CB3A4A98DDC82BD6C0BB0B4] - 21/12/2013 - 20:50:38 ---A- - C:\Windows\Prefetch\CUT.DAT-E4E564FA.pf
O45 - LFCP:[MD5.9C7ABE3625368647CD22B77B365DA52C] - 21/12/2013 - 20:50:52 ---A- - C:\Windows\Prefetch\SHORTCUT.DAT-202BC152.pf
O45 - LFCP:[MD5.F46ABCD2C67DFA88452BCBDF39D7523F] - 21/12/2013 - 20:50:53 ---A- - C:\Windows\Prefetch\NIRCMD.DAT-8AC1B367.pf
O45 - LFCP:[MD5.DF3C2A29FEA3BF2AA6B1CDCF53D0D41F] - 21/12/2013 - 20:50:53 ---A- - C:\Windows\Prefetch\SED.DAT-685B9C2A.pf
O45 - LFCP:[MD5.11136D9D115AD553EE527F83D8E6E85B] - 21/12/2013 - 21:24:13 ---A- - C:\Windows\Prefetch\COMETBIRD.EXE-FE417A20.pf
O45 - LFCP:[MD5.1A9F2739C8481DC18A87701756FF0EBF] - 21/12/2013 - 21:27:04 ---A- - C:\Windows\Prefetch\_IU14D2N.TMP-11935378.pf
~ Prefetcher: 207 Legitimates Filtered in 00mn 02s
---\\ Clé de registre Shell MountPoints2 (MPKS) (O51)
O51 - MPSK:{d06d7096-5ffa-11e3-b137-002354efc917}\AutoRun\command. (...) -- F:\Startme.exe (.not file.)
~ Keys: Scanned in 00mn 00s
---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
~ MWPS: 19 Legitimates Filtered in 00mn 00s
---\\ Liste des pilotes du système (SDL) (O58)
O58 - SDL:[MD5.548CCBD8B48FDF7E2435AD6017920A7F] - 08/10/2012 - 19:53:56 ---A- . (.Wondershare - Wondershare Virtual Audio Device.) -- C:\Windows\System32\Drivers\Apowersoft_AudioDevice.sys [26080]
O58 - SDL:[MD5.F385467DF95D0A73775CB3B076B8B969] - 23/10/2013 - 16:14:50 ---A- . (...) -- C:\Windows\System32\Drivers\aswRvrt.sys [49944]
O58 - SDL:[MD5.BADA8FD627F1D0E22308211C33F0BDB5] - 23/10/2013 - 16:14:50 ---A- . (...) -- C:\Windows\System32\Drivers\aswVmm.sys [178304]
O58 - SDL:[MD5.97AFFA9D95FFE20EEE6229BC6BE166CF] - 31/07/2007 - 02:39:00 ---A- . (.ATK0100 - ATK0100 ACPI Utility.) -- C:\Windows\System32\Drivers\ATKACPI.sys [7680]
O58 - SDL:[MD5.596DB7E4D0DB6AC32DF142C861001979] - 13/08/2013 - 00:25:32 ---A- . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\Windows\System32\Drivers\bcmfn2.sys [16088]
O58 - SDL:[MD5.B4489EA5810BF73778CD8BDC305109CE] - 22/08/2013 - 06:32:57 ---A- . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Windows x86.) -- C:\Windows\System32\Drivers\stexstor.sys [26976]
~ Drivers: 19 Legitimates Filtered in 00mn 02s
---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Cookies [75776]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Cookies-journal [16384]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Current Session [1993]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Current Tabs [1781]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Extension Rules\CURRENT [16]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Extension Rules\LOG [145]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Extension Rules\LOG.old [145]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Favicons [49152]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Favicons-journal [16384]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\History [479232]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\History Index 2013-11 [110592]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\History Index 2013-11-journal [16384]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\History Index 2013-12 [192512]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\History Index 2013-12-journal [16384]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\History Provider Cache [4942]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\History-journal [16384]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Last Session [5315]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Last Tabs [3604]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Local Storage\http_www.delta-search.com_0.localstorage [3072] =>Toolbar.DeltaSearch
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Local Storage\http_www.delta-search.com_0.localstorage-journal [3608] =>Toolbar.DeltaSearch
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Managed Mode Settings [8]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Preferences [41075]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\QuotaManager [13312]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\QuotaManager-journal [8768]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Session Storage\CURRENT [16]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Session Storage\LOG [269]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Session Storage\LOG.old [274]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Session Storage\MANIFEST-000155 [391] =>.Google Inc
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Sync Data\SyncData.sqlite3 [106496]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Sync Data\SyncData.sqlite3-journal [16384]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\TransportSecurity [8]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Visited Links [131072]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Web Data [81920]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Web Data-journal [4624]
O61 - LFC: 20/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\bookmarkbackups\bookmarks-2013-12-20.json [7185]
O61 - LFC: 20/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\pluginreg.dat [7254]
O61 - LFC: 21/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Local State [14495]
O61 - LFC: 21/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\CometNetwork\CometBird\Profiles\qys4z2ji.default\urlclassifier.pset [32]
O61 - LFC: 21/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\CometNetwork\CometBird\Profiles\qys4z2ji.default\urlclassifier3.sqlite [5242880]
O61 - LFC: 21/12/2013 - 21:38:39 ---A- . (...) -- C:\Users\Claude\AppData\Local\Google\Chrome\User Data\Certificate Revocation Lists [265578]
O61 - LFC: 21/12/2013 - 21:38:39 ---A- . (...) -- C:\Users\Claude\AppData\Local\Google\Chrome\User Data\chrome_shutdown_ms.txt [5]
O61 - LFC: 21/12/2013 - 21:38:43 ---A- . (...) -- C:\Users\Claude\AppData\Local\Google\Chrome\User Data\First Run [0]
O61 - LFC: 21/12/2013 - 21:38:43 ---A- . (...) -- C:\Users\Claude\AppData\Local\Google\Chrome\User Data\Local State [113773]
O61 - LFC: 21/12/2013 - 21:38:43 ---A- . (...) -- C:\Users\Claude\AppData\Local\Google\Chrome\User Data\en-US-3-0.bdic [440949]
O61 - LFC: 21/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\bookmarkbackups\bookmarks-2013-12-21.json [7185]
O61 - LFC: 21/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\cert8.db [98304]
O61 - LFC: 21/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\cookies.sqlite [524288]
O61 - LFC: 21/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\key3.db [16384]
O61 - LFC: 21/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\localstore.rdf [1027]
O61 - LFC: 21/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\places.sqlite [10485760]
O61 - LFC: 21/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\prefs.js [3814]
O61 - LFC: 21/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\sessionstore.bak [1203]
O61 - LFC: 21/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\sessionstore.js [1203]
O61 - LFC: 21/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\urlclassifierkey3.txt [154]
O61 - LFC: 21/12/2013 - 21:38:56 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\ZHP\Log.txt [61726] =>.Nicolas Coolman
O61 - LFC: 21/12/2013 - 21:38:56 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\ZHP\TestsZHPDiag.txt [2816] =>.Nicolas Coolman
O61 - LFC: 21/12/2013 - 21:38:56 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\ZHP\ZHPADSReport.txt [351] =>.Nicolas Coolman
O61 - LFC: 21/12/2013 - 21:38:56 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\ZHP\ZHPDiag.txt [45284] =>.Nicolas Coolman
~ 20 Fichiers temporaires (Temporary files)
~ 1 Fichiers cookies (Cookies files)
~ Files: 877 Legitimates Filtered in 00mn 38s
---\\ Liste des outils de désinfection (LATC) (O63)
O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s
---\\ Menu de démarrage Internet (SMI) (O68)
O68 - StartMenuInternet: <COMETBIRD.EXE> <CometBird>[HKLM\..\Shell\open\Command] (.CometNetwork - CometBird.) -- c:\program files\cometbird\cometbird.exe
O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: <Opera> <Opera>[HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- c:\program files\opera\opera.exe
O68 - StartMenuInternet: <Safari.exe> <Safari>[HKLM\..\Shell\open\Command] (.Apple Inc. - Safari.) -- c:\program files\safari\safari.exe
~ Keys: Scanned in 00mn 00s
---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69)
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - https://www.bing.com/?toHttps=1&redig=69DA0EF8272048D9864AF4DB37211DE8
O69 - SBI: SearchScopes [HKCU] {1CD4B8FF-6929-4F99-81E3-53E3CC184DEC} - (Bing) - https://www.bing.com/?toHttps=1&redig=69DA0EF8272048D9864AF4DB37211DE8
O69 - SBI: SearchScopes [HKCU] {67A2568C-7A0A-4EED-AECC-B5405DE63B64} - (Google) - https://www.google.com/?gws_rd=ssl
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - https://www.google.com/?gws_rd=ssl
O69 - SBI: SearchScopes [HKCU] {814C76CB-2623-43F4-AAD0-58A0E5190A20} - (Orange) - http://r.orange.fr
O69 - SBI: SearchScopes [HKCU] {90F923A7-DBF5-B32E-3FE9-2312DEA86938} - (Ask) - http://www.audacitystart.com
O69 - SBI: SearchScopes [HKCU] {c1d89ae7-449d-4929-b24b-fded04adbe06} - (Glary Search) - http://isearch.glarysoft.com
O69 - SBI: SearchScopes [HKCU] {D9E7112E-0575-4947-9F62-D73B2EAB6F28} [DefaultScope] - (Orange) - https://www.orange.fr/portail
O69 - SBI: SearchScopes [HKUS\.DEFAULT] {47AE1BA9-0BD1-44F4-88AE-45F8F7B605EF} - (BasicServe) - http://www.basicserve.com =>Adware.BasicScan
O69 - SBI: SearchScopes [HKUS\S-1-5-18] {47AE1BA9-0BD1-44F4-88AE-45F8F7B605EF} - (BasicServe) - http://www.basicserve.com =>Adware.BasicScan
~ Keys: Scanned in 00mn 00s
---\\ Recherche particulière à la racine du système (SPRF) (O84)
[MD5.0D26EF8C01E3E1C77877C303A9317F69] [SPRF][10/12/2013] (...) -- C:\Users\Claude\AppData\Local\Temp\Quarantine.exe [360051]
[MD5.0679D39A697632EBD50DD438AB633214] [SPRF][20/12/2013] (...) -- C:\Users\Claude\AppData\Local\Temp\SHSetup.exe [45665360] =>Crapware.SpyHunter
[MD5.5AFACF0F4E71865473DFC878331E6AD0] [SPRF][21/12/2013] (...) -- C:\Users\Claude\AppData\Local\Temp\~gu3-ver.dat [115]
[MD5.7902EF8D44D57F0608E52FAA0528610F] [SPRF][21/12/2013] (...) -- C:\Users\Claude\AppData\Local\Temp\~upgrade.dat [1094]
[MD5.CE5A4D488CA30BED06EAC0EFDB5191B3] [SPRF][14/11/2013] (...) -- C:\Users\Claude\AppData\Roaming\wklnhst.dat [2708]
~ Files: 5 Legitimates Filtered in 00mn 00s
---\\ Liste des exceptions du parefeu (FirewallRules) (O87)
O87 - FAEL: "{A034AE88-F0F5-4EF7-A66C-6A2F77C8ED9C}" |Out - None - P17 - TRUE | .(...) -- C:\Users\Claude\AppData\Local\Temp\ibtmp395f617\component_612.decrpt (.not file.)
O87 - FAEL: "{7E3B225F-70FF-4608-89CA-701ACB74A667}" |In - None - P17 - TRUE | .(...) -- C:\Users\Claude\AppData\Local\Temp\ibtmp395f617\component_612.decrpt (.not file.)
O87 - FAEL: "{56C25F1B-8299-4012-BC1C-B78D411811E2}" | Out - None - P17 - TRUE | .(.Pas de propriétaire - Installer.) -- C:\Users\Claude\Downloads\DownloadManagerSetup.exe
O87 - FAEL: "{E8C1D198-F145-4717-A6DE-19F66B1908CB}" | In - None - P17 - TRUE | .(.Pas de propriétaire - Installer.) -- C:\Users\Claude\Downloads\DownloadManagerSetup.exe
~ Firewall: 274 Legitimates Filtered in 00mn 01s
---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS)
[MD5.EFC9D67ADBB184A59C9ABE597CF9432A] [WIS][15/12/2013] (.LULU SOFTWARE LIMITED - Soda PDF 5 Installer.) -- C:\Windows\Installer\7ecfb34.msi [55652352]
~ WIS: 39 Legitimates Filtered in 00mn 08s
---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Demand 10/12/2013 257416 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
SS - | Demand 07/07/2011 1037312 | (GSService) . (...) - C:\WINDOWS\system32\GSService.exe
SS - | Demand 13/12/2012 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 22/12/2012 194032 | (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
SS - | Demand 05/12/2013 119408 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
SS - | Auto 29/08/2013 1073160 | (Orange update Core Service) . (.Orange SA.) - C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe
SS - | Auto 05/09/2013 171680 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe
SS - | Demand 04/02/2013 155824 | (Sony PC Companion) . (.Avanquest Software.) - C:\Program Files\Sony\Sony PC Companion\PCCService.exe
SS - | Demand 22/08/2013 31552 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 11/05/2013 65640 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
SR - | Auto 07/09/2013 55624 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - | Auto 09/11/2013 50344 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
SR - | Auto 30/08/2011 390504 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SR - | Auto 10/06/2013 1966960 | (Dedicarz Service) . (...) - C:\Program Files\Orange\Assistance Livebox\dedicarz\DedicarzService.exe
SR - | Auto 13/12/2012 116648 | (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SR - | Demand 02/11/2013 553288 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe
SR - | Auto 05/07/2013 1238344 | (Soda PDF 5 Helper Service) . (.LULU Software.) - C:\Program Files\Soda PDF 5\HelperService.exe
SR - | Auto 05/07/2013 877896 | (Soda PDF 5 Service) . (.LULU Software.) - C:\Program Files\Soda PDF 5\ConversionService.exe
SR - | Demand 22/08/2013 22240 | (WinDefend) . (.Microsoft Corporation.) - C:\Program Files\Windows Defender\MsMpEng.exe
~ Services: Scanned in 00mn 10s
---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80)
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
Run by Claude at 21/12/2013 21:39:58
device: opened successfully
user: MBR read successfully
Disk trace:
called modules: ntoskrnl.exe CLASSPNP.SYS disk.sys storport.sys halmacpi.dll storahci.sys
1 nt!IofCallDriver[0x81C7FF80] >> \Device\Harddisk0\DR0[0x860DA668]
kernel: MBR read successfully
user & kernel MBR OK
~ MBR: 12 Legitimates Filtered in 00mn 02s
---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by Claude at 21/12/2013 21:40:00
********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin
~ MBR: Scanned in 00mn 04s
---\\ Scan Additionnel (O88)
Database Version : 13013 - (14/12/2013)
Clés trouvées (Keys found) : 6
Valeurs trouvées (Values found) : 1
Dossiers trouvés (Folders found) : 0
Fichiers trouvés (Files found) : 1
[HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21111111-1111-1111-1111-110211181110}] =>Adware.VidSaver
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F335ABA2-FDB4-4644-92B2-5CC4B0FC91D6}] =>Toolbar.Agent
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F335ABA2-FDB4-4644-92B2-5CC4B0FC91D6}] =>Toolbar.Agent
[HKLM\Software\Classes\CLSID\{F335ABA2-FDB4-4644-92B2-5CC4B0FC91D6}] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Dealply] =>PUP.DealPly
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110211181110}] =>PUP.CrossRider
[HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{2318C2B1-4965-11d4-9B18-009027A5CD4F} =>Toolbar.Google^
C:\Users\Claude\AppData\Local\Temp\SHSetup.exe =>Crapware.SpyHunter^
~ Additionnel Scan: 315262 Items scanned in 00mn 30s
---\\ Récapitulatif des détections trouvées sur votre station
~ http://nicolascoolman.webs.com/apps/blog/show/26627369-toolbar-babylon =>PUP.Babylon
~ http://nicolascoolman.webs.com/apps/blog/show/29507721-toolbar-conduit =>Toolbar.Conduit
~ http://nicolascoolman.webs.com/apps/blog/show/33477786-pup-dosearches =>PUP.DoSearches
~ http://nicolascoolman.webs.com/apps/blog/show/29637859-toolbar-tarma =>PUP.Tarma
~ http://nicolascoolman.webs.com/apps/blog/show/27875657-toolbar-deltasearch =>Toolbar.DeltaSearch
~ http://nicolascoolman.webs.com/apps/blog/show/26712089-adware-basicscan =>Adware.BasicScan
~ http://nicolascoolman.webs.com/apps/blog/show/26609241-crapware-spyhunter =>Crapware.SpyHunter
~ http://nicolascoolman.webs.com/apps/blog/show/27557062-adware-vidsaver =>Adware.VidSaver
~ http://nicolascoolman.webs.com/apps/blog/show/28060597-pup-dealply =>PUP.DealPly
~ http://nicolascoolman.webs.com/apps/blog/show/27583526-pup-crossrider =>PUP.CrossRider
~ MSI: 10 link(s) detected in 00mn 30s
~ 2123 Legitimates filtered by white list
End of the scan (582 lines in 02mn 43s)(0)
nouveau rapport
Cldt
~ Lancé par Claude (21/12/2013 21:37:48)
~ Adresse du Site Web https://nicolascoolman.webs.com/
~ Forums gratuits d'Assistance à la désinfection : https://nicolascoolman.webs.com/
~ Traduit par Nicolas Coolman
~ Etat de la version :
~ Liste blanche : Activée par le programme
~ Elévation des Privilèges : OK
~ User Account Control (UAC): Deactivate by program
---\\ Navigateurs Internet
MSIE: Internet Explorer v11.0.9600.16476
MFIE: Mozilla Firefox 26.0
GCIE: Google Chrome v31.0.1650.63
OPIE: Opera v12.16 (Defaut)
OBIE: Safari v5.34.57.2
---\\ Informations sur les produits Windows
~ Langage: Français
Windows 8.1 Pro, 32-bit (Build 9600)
Windows Server License Manager Script : OK
~ ion : Windows(R) Operating System, RETAIL channel
Windows ID Activation : OK
~ Windows Partial Key : PJ8XV
Windows License : OK
~ Windows Remaining Initializations Number : 999
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK
---\\ Logiciels de protection du système
avast! Free Antivirus v9.0.2007
Windows Defender W8
---\\ Logiciels d'optimisation du système
---\\ Logiciels de partage PeerToPeer
---\\ Surveillance de Logiciels
Adobe Flash Player 11 Plugin
Extended Asian Language font pack for Adobe Reader XI
Java 7 Update 45
---\\ Informations sur le système
~ Processor: x86 Family 17 Model 3 Stepping 1, AuthenticAMD
~ Operating System: 32 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3327 MB (62% free)
System Restore: Activé (Enable)
System drive C: has 32 GB (21%) free of 149 GB
---\\ Mode de connexion au système
~ Computer Name: PC-DE-CLAUDE
~ User Name: Claude
~ All Users Names: HomeGroupUser$, Claude, Administrateur,
~ Unselected Option: None
Logged in as Administrator
---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\Claude\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\Claude\AppData\Roaming\
~ %Desktop% : C:\Users\Claude\Desktop\
~ %Favorites% : C:\Users\Claude\Favorites\
~ %LocalAppData% : C:\Users\Claude\AppData\Local\
~ %StartMenu% : C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\
---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 32 Go of 149 Go)
D: Hard drive, Flash drive, Thumb drive (Free 87 Go of 139 Go)
E: CD-ROM drive (Not Inserted)
---\\ Etat du Centre de Sécurité Windows
~ Security Center: 46 Legitimates Filtered in 00mn 00s
---\\ Recherche particulière de fichiers génériques
[MD5.1A0BC9598E4A58FC84570FFF5A108E58] - (.Microsoft Corporation - Explorateur Windows.) (.26/11/2013 - 14:54:52.) -- C:\Windows\Explorer.exe [2065448]
[MD5.02BC073156B3097E94D63C4D609020DD] - (.Microsoft Corporation - Application de démarrage de Windows.) (.22/08/2013 - 03:49:55.) -- C:\Windows\System32\Wininit.exe [112640]
[MD5.927FA6456AD6D7630F6854828D2FD16B] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.26/11/2013 - 07:33:33.) -- C:\Windows\System32\wininet.dll [1820160]
[MD5.94385F95EF948FB274A70DE3EDE5696D] - (.Microsoft Corporation - Application d'ouverture de session Windows.) (.22/08/2013 - 03:48:19.) -- C:\Windows\System32\Winlogon.exe [458752]
[MD5.570A1D37FEECE56BBF7A70A02C817B4E] - (.Microsoft Corporation - Bibliothèque de licences.) (.22/08/2013 - 04:20:10.) -- C:\Windows\System32\sppcomapi.dll [438272]
[MD5.2AF7DA157FFF947A507FCB4AB8BB4C7C] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.22/08/2013 - 07:13:54.) -- C:\Windows\system32\Drivers\AFD.sys [455168]
[MD5.72FCAE2CE6DFEAB2AB072435017F3417] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.22/08/2013 - 06:33:25.) -- C:\Windows\system32\Drivers\atapi.sys [23392]
[MD5.CE232BB0965C0C0B786C3F976CCBFB7D] - (.Microsoft Corporation - CD-ROM File System Driver.) (.22/08/2013 - 05:11:55.) -- C:\Windows\system32\Drivers\Cdfs.sys [73728]
[MD5.E2FC132D48EA4E8B04432C33EFB77801] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.22/08/2013 - 02:59:12.) -- C:\Windows\system32\Drivers\Cdrom.sys [124928]
[MD5.D4ADBFC2409EF883164F3AA49B22F366] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.22/08/2013 - 05:09:45.) -- C:\Windows\system32\Drivers\DfsC.sys [101376]
[MD5.A31901DE6A22EA67AB83AAF7036F98CC] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.22/08/2013 - 05:10:12.) -- C:\Windows\system32\Drivers\HDAudBus.sys [69632]
[MD5.5043E69532392A43549E5D41E22638AA] - (.Microsoft Corporation - Pilote de port i8042.) (.22/08/2013 - 05:10:59.) -- C:\Windows\system32\Drivers\i8042prt.sys [82944]
[MD5.2F6A88E76A949AC0A843FE517B8DFA7C] - (.Microsoft Corporation - IP Network Address Translator.) (.30/09/2013 - 05:01:56.) -- C:\Windows\system32\Drivers\IpNat.sys [126464]
[MD5.7CDAA49DFF6837706DE7AA1A43310DD2] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.30/09/2013 - 05:01:55.) -- C:\Windows\system32\Drivers\MRxSmb.sys [334848]
[MD5.BC242922B0D08F61CF7C87FD08FAFA8B] - (.Microsoft Corporation - MBT Transport driver.) (.22/08/2013 - 05:08:26.) -- C:\Windows\system32\Drivers\netBT.sys [218624]
[MD5.813F49CF41F561C52F3CF69A1B09E967] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.22/08/2013 - 07:13:53.) -- C:\Windows\system32\Drivers\ntfs.sys [1676128]
[MD5.4F30970F15ADCC382544B31D5D7E368E] - (.Microsoft Corporation - Pilote de port parallèle.) (.22/08/2013 - 05:11:49.) -- C:\Windows\system32\Drivers\Parport.sys [81408]
[MD5.C51AB62AB41A2E8560D12472B204CC00] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.22/08/2013 - 05:07:36.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [81920]
[MD5.67E91843B0344411820A012063E876B2] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.30/09/2013 - 04:51:00.) -- C:\Windows\system32\Drivers\rdpdr.sys [143872]
[MD5.DB0C184142CF9FA1746F598A16EE92B2] - (.Microsoft Corporation - TDI Translation Driver.) (.22/08/2013 - 07:13:54.) -- C:\Windows\system32\Drivers\tdx.sys [87040]
[MD5.5F9A69B5C5C34197037A7EA36F4A7BE7] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.22/08/2013 - 06:24:56.) -- C:\Windows\system32\Drivers\volsnap.sys [265568]
~ Generic Processes: Scanned in 00mn 00s
---\\ Etat des fichiers cachés (Caché/Total)
~ Mes images (My Pictures) : 3/74
~ Mes musiques (My Musics) : 2/12
~ Mes Videos (My Videos) : 3/270
~ Mes Favoris (My Favorites) : 1/57
~ Mes Documents (My Documents) : 2/987
~ Mon Bureau (My Desktop) : 2/9173
~ Menu demarrer (Programs) : 1/27
~ Hidden Files: Scanned in 00mn 01s
---\\ Processus lancés
[MD5.61A5597AB30F257BCC47A8E61711F039] - (.Microsoft Corporation - Processus hôte pour Tâches Windows.) -- C:\WINDOWS\system32\taskhostex.exe [66632] [PID.5092]
[MD5.B62DFF169637A7E69AEA0915F47716CD] - (.Microsoft Corporation - SkyDrive Sync Engine Host.) -- C:\Windows\System32\skydrive.exe [463360] [PID.4516]
[MD5.5B6E8E09BE6401A7E022F52FDFCB2FF8] - (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336] [PID.672]
[MD5.736E57247F12EACECDB224B8D1F7F187] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [3568312] [PID.3328]
[MD5.BAF535F843A3E790E04A7613811B55BC] - (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe [152392] [PID.2968]
[MD5.10E89F598469C60D8C87A8218089A87D] - (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\Claude\AppData\Local\Akamai\netsession_win.exe [4489472] [PID.3892]
[MD5.AB8420D9EFF346DDD72E9C985BE2FC5B] - (.Sony - Sony PC Companion.) -- C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe [449248] [PID.4372]
[MD5.62F5202F8FD170A438B7E97860F4D0E2] - (...) -- C:\Program Files\Zinio Alert Messenger\Zinio Alert Messenger.exe [126976] [PID.2972]
[MD5.0F6D06A88A88007AAEE5F0EE1ECE42E4] - (...) -- C:\Program Files\Sony\Sony PC Companion\PCCompanionInfo.exe [70880] [PID.5468]
[MD5.0E05E41073CD9E52D04C52AB46DDE817] - (.Microsoft Corporation - Host Process for Setting Synchronization.) -- C:\Windows\System32\SettingSyncHost.exe [479744] [PID.2340]
[MD5.58920E6A409046BA06548D9D139CE0F0] - (.Skype Technologies S.A. - Skype.) -- C:\Program Files\Skype\Phone\Skype.exe [20584608] [PID.21504]
[MD5.EE889775E0F9755C90FAEBFB93FBD781] - (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe [805992] [PID.23180]
[MD5.2330B5A4A3824F042DC96D524893A6B5] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files\ZHPDiag\ZHPDiag.exe [8295936] [PID.9380]
~ Processes Running: Scanned in 00mn 02s
---\\ Opera, Plugins,Démarrage,Recherche (P1,B0,B1)
B0 - SPO: operaprefs.ini [Claude] Home URL=opera:speeddial
B1 - OSP: search.ini [Claude] URL=http://search.babylon.com =>PUP.Babylon
~ Opera Browser: 2 Legitimates Filtered in 00mn 00s
---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\Claude\AppData\Local\Google\Chrome\User Data\Default\Preferences
G1 - GCS: Preference [User Data\Default] http://r.orange.fr
G2 - GCE: Preference [User Data\Default] [fnefekibahpibgnllfjpckodgobkpije] ObviousIdea v.2.0 (Désactivé)
~ Google Browser: 14 Legitimates Filtered in 00mn 03s
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Profiles\7ybwngwe.default\prefs.js
M3 - MFPP: Plugins - [Claude] -- C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Profiles\7ybwngwe.default\searchplugins\wiseconvert-15-customized-web-search.xml =>Toolbar.Conduit
M3 - MFPP: Plugins - [Claude] -- C:\Program Files\Mozilla FireFox\searchplugins\do-search.xml =>PUP.DoSearches
M2 - MFEP: prefs.js [Claude - 7ybwngwe.default\toolbarbutton@obviousidea.us] [] ObviousIdea Addon v2.0 (..)
~ Firefox Browser: 19 Legitimates Filtered in 00mn 00s
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;<local>
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = no key
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s
---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s
---\\ Hosts file redirection (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 21
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Soda PDF 5 IE Helper - {C737F472-1193-4281-BF53-A00B67AB3E19} . (.LULU Software - Soda PDF Helper.) -- C:\Program Files\Soda PDF 5\PDFIEHelper.dll
~ BHO: 10 Legitimates Filtered in 00mn 00s
---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: avast! Online Security - [HKLM]{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} . (.AVAST Software - IE Webrep plugin.) -- C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: Google Toolbar - [HKLM]{2318C2B1-4965-11d4-9B18-009027A5CD4F} . (.Google Inc. - Google Toolbar.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll =>Toolbar.Google
O3 - Toolbar: Soda PDF 5 IE Toolbar - [HKLM]{F335ABA2-FDB4-4644-92B2-5CC4B0FC91D6} . (.LULU Software - Soda PDF 5 Toolbar.) -- C:\Program Files\Soda PDF 5\PDFIEPlugin.dll
~ Toolbar: Scanned in 00mn 00s
---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop [Public]: CometBird.lnk . (.CometNetwork - CometBird.) -- C:\Program Files\CometBird\cometbird.exe
O4 - GS\Desktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - GS\Desktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O4 - GS\Desktop [Public]: Opera.lnk . (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe
O4 - GS\Program [Public]: CometBird.lnk . (.CometNetwork - CometBird.) -- C:\Program Files\CometBird\cometbird.exe
O4 - GS\Program [Public]: Desktop.lnk - Clé orpheline
O4 - GS\Program [Public]: Disketch - Logiciel pour étiquettes de CD.lnk . (...) -- C:\Program Files\NCH Software\Disketch\disketch.exe (.not file.)
O4 - GS\Program [Public]: Express Rip.lnk . (...) -- C:\Program Files\NCH Software\ExpressRip\expressrip.exe (.not file.)
O4 - GS\Program [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O4 - GS\Program [Public]: Opera.lnk . (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\opera.exe
O4 - GS\Program [Public]: PhotoPad Image Editor.lnk . (...) -- C:\Program Files\NCH Software\PhotoPad\photopad.exe (.not file.)
O4 - GS\Program [Public]: Safari.lnk . (...) -- C:\WINDOWS\Installer\{C779648B-410E-4BBA-B75B-5815BCEFE71D}\SafariIco.exe
O4 - GS\Program [Public]: Serif PagePlus X6.lnk . (...) -- C:\WINDOWS\Installer\{33DBAFCC-569F-40DE-AC5F-E2586AC4DE87}\PagePlus.ico
O4 - GS\Program [Public]: Your Software Deals.lnk . (...) -- C:\ProgramData\Ashampoo\YourDeals.exe
O4 - GS\Program [Public]: Zinio Alert Messenger.lnk . (...) -- C:\Program Files\Zinio Alert Messenger\Zinio Alert Messenger.exe
O4 - GS\Program [Public]: Zinio Reader 4.lnk . (...) -- C:\Program Files\Zinio Reader 4\Zinio Reader 4.exe
O4 - GS\QuickLaunch [Claude]: Apple Safari.lnk . (...) -- C:\WINDOWS\Installer\{C779648B-410E-4BBA-B75B-5815BCEFE71D}\SafariIco.exe
O4 - GS\QuickLaunch [Claude]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O4 - GS\QuickLaunch [Claude]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\QuickLaunch [Claude]: Online Video Recorder.lnk . (...) -- C:\Program Files\Online Video Recorder\OnlineVideoRecorder.exe
O4 - GS\Program [Claude]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\Desktop [Claude]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O4 - GS\Desktop [Claude]: Safari - Raccourci.lnk . (.Apple Inc. - Safari.) -- C:\Program Files\Safari\Safari.exe
~ Global Startup: 58 Legitimates Filtered in 00mn 00s
---\\ Applications lancées au démarrage du sytème (O4)
O4 - GS\Startup [Claude]: Zinio Alert Messenger.lnk . (...) -- C:\Program Files\Zinio Alert Messenger\Zinio Alert Messenger.exe
O4 - HKLM\..\Run: [Adobe ARM] . (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Systems Incorporated
O4 - HKLM\..\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java(TM) Update Scheduler.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe =>.Oracle Corporation
O4 - HKLM\..\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files\QuickTime\QTTask.exe
O4 - HKLM\..\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
O4 - HKLM\..\Run: [AvastUI.exe] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
O4 - HKLM\..\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [20131121] . (.AVAST Software - avast! Emergency Update.) -- C:\Program Files\AVAST Software\Avast\setup\emupdate\fcb91691-e4bb-49d0-a9c4-9b96a721e2be.exe
O4 - HKCU\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\Claude\AppData\Local\Akamai\netsession_win.exe
O4 - HKCU\..\Run: [Orange Installer] C:\Program Files\Orange\Orange Installer\OrangeInstaller.exe (.not file.)
O4 - HKCU\..\Run: [Sony PC Companion] . (.Sony - Sony PC Companion.) -- C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe
O4 - HKUS\S-1-5-21-383826441-192018370-2907649276-1000\..\Run: [Akamai NetSession Interface] . (.Akamai Technologies, Inc. - Akamai NetSession Client.) -- C:\Users\Claude\AppData\Local\Akamai\netsession_win.exe
O4 - HKUS\S-1-5-21-383826441-192018370-2907649276-1000\..\Run: [Orange Installer] C:\Program Files\Orange\Orange Installer\OrangeInstaller.exe (.not file.)
O4 - HKUS\S-1-5-21-383826441-192018370-2907649276-1000\..\Run: [Sony PC Companion] . (.Sony - Sony PC Companion.) -- C:\Program Files\Sony\Sony PC Companion\PCCompanion.exe
~ Application: Scanned in 00mn 00s
---\\ Site dans la Zone de confiance d'Internet Explorer (O15)
O15 - Trusted Zone: [HKCU\...\Domains] http.aeriagames.com
~ IE Zone Confiance: Scanned in 00mn 00s
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{1B7A7D10-64E9-4487-B02F-6D3EEA754BFF}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{1B7A7D10-64E9-4487-B02F-6D3EEA754BFF}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
~ Domain: Scanned in 00mn 00s
---\\ Protocole additionnel (O18)
O18 - Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Dedicarz Service (Dedicarz Service) . (.Pas de propriétaire - DedicarzService.) - C:\Program Files\Orange\Assistance Livebox\dedicarz\DedicarzService.exe
O23 - Service: Soda PDF 5 Helper Service (Soda PDF 5 Helper Service) . (.LULU Software - Soda PDF 5 Helper Service.) - C:\Program Files\Soda PDF 5\HelperService.exe
O23 - Service: Soda PDF 5 Service (Soda PDF 5 Service) . (.LULU Software - Soda PDF 5 Conversion Service.) - C:\Program Files\Soda PDF 5\ConversionService.exe
~ Services: 10 Legitimates Filtered in 00mn 05s
---\\ Enumération Active Desktop & MHTML Editor (O24)
O24 - Desktop General: BackupWallPaper - .(...) - C:\Users\Claude\Pictures\champetre1024.jpg
O24 - Desktop General: WallPaper - .(...) - C:\Users\Claude\Pictures\champetre1024.jpg
~ Desktop Component: 4 Legitimates Filtered in 00mn 00s
---\\ Tâches planifiées en automatique (O39)
[MD5.00000000000000000000000000000000] [APT] [4771] (...) -- C:\Users\Claude\AppData\Local\Temp\launchie.vbs \\B (.not file.) [0]
[MD5.00000000000000000000000000000000] [APT] [{20932006-0EDD-47F4-9684-9CD1BF8F7B6F}] (...) -- C:\Program Files\TARMAI~1\{889DF~1\Setup.exe (.not file.) [0] =>PUP.Tarma
~ Scheduled Task: 13 Legitimates Filtered in 00mn 05s
---\\ HKCU & HKLM Software Keys
[HKCU\Software\Rebit]
~ Key Software: 222 Legitimates Filtered in 00mn 00s
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 28/03/2013 - 19:15:08 - [32,453] ----D C:\ProgramData\Rebit 5
~ Program Folder: 209 Legitimates Filtered in 00mn 04s
---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.AABB248321CFD3253D8EEB226ACF303A] - 05/12/2013 - 13:38:48 ---A- - C:\Windows\Prefetch\CAPTVTY-1.11.9.7-AUTOEXTRACT.-1870E220.pf
O45 - LFCP:[MD5.E6A50A17100A25B9405BBF61F86FC23A] - 05/12/2013 - 18:19:28 ---A- - C:\Windows\Prefetch\PHOTOSAPP.EXE-0B65831E.pf
O45 - LFCP:[MD5.4086D90221A9DB8E0166D0350EFC5B5C] - 05/12/2013 - 18:26:58 ---A- - C:\Windows\Prefetch\ONLINEVIDEORECORDER.EXE-800ADC42.pf
O45 - LFCP:[MD5.E119CB306B508EA85C2342FDD5D9C389] - 08/12/2013 - 14:27:23 ---A- - C:\Windows\Prefetch\DRIVERSMANAGER_SCAN_01NET.TMP-A4F0A157.pf
O45 - LFCP:[MD5.CD67A61BE9A4977B209F58934C833111] - 08/12/2013 - 14:27:27 ---A- - C:\Windows\Prefetch\DRIVERSMANAGER_SCAN_01NET.TMP-A171204E.pf
O45 - LFCP:[MD5.3B662C55DEADB45CB3A4E8AD4CF9B101] - 08/12/2013 - 14:27:42 ---A- - C:\Windows\Prefetch\DRIVERSMANAGER.EXE-733860A2.pf
O45 - LFCP:[MD5.5BA410F3E6783DC8CAAD333522D59C20] - 12/12/2013 - 20:24:54 ---A- - C:\Windows\Prefetch\STARTME.EXE-DB3CA801.pf
O45 - LFCP:[MD5.139FE098EDCAA9ECA06758BC9DF33F9A] - 12/12/2013 - 20:25:04 ---A- - C:\Windows\Prefetch\STARTME.EXE-FFCDC9A2.pf
O45 - LFCP:[MD5.CAF900EE04AE45DB70088F53E8BD382F] - 14/12/2013 - 11:18:01 ---A- - C:\Windows\Prefetch\CAPTVTY-1.11.10-AUTOEXTRACT.E-5EEC3ECF.pf
O45 - LFCP:[MD5.1AC9F23C8311A70535F8968C239D15B3] - 15/12/2013 - 10:53:08 ---A- - C:\Windows\Prefetch\SODA_PDF_5.0_NEXTMEDIA_INSTAL-F2A27B74.pf
O45 - LFCP:[MD5.46493B7C969905BCCADB675F0A41F31D] - 18/12/2013 - 14:25:26 ---A- - C:\Windows\Prefetch\MOZILLA_FIREFOX_V26.0.EXE-C2840235.pf
O45 - LFCP:[MD5.0EDB7C89C2B6363BE0471CA958E43EBD] - 20/12/2013 - 17:50:03 ---A- - C:\Windows\Prefetch\DRIVERSMANAGER_SCAN_01NET.TMP-AE62623B.pf
O45 - LFCP:[MD5.3ECAAAEF6C392198FDCDEAA0C3AE51E9] - 20/12/2013 - 18:09:36 ---A- - C:\Windows\Prefetch\UPDATE_4206_10.03.00.TMP-E337C987.pf
O45 - LFCP:[MD5.75C3BAE04DE315B280F0F54D97D0D86C] - 20/12/2013 - 18:10:59 ---A- - C:\Windows\Prefetch\ADUSETUP_ASHAMPOO.TMP-551AF311.pf
O45 - LFCP:[MD5.34A63F3526C37976DA10701FE36C410C] - 20/12/2013 - 18:11:05 ---A- - C:\Windows\Prefetch\ADU.EXE-F132DA4B.pf
O45 - LFCP:[MD5.321D02F059AD23D8F5558C8BC75252F7] - 20/12/2013 - 21:52:03 ---A- - C:\Windows\Prefetch\UPGRADE.EXE-B9687F71.pf
O45 - LFCP:[MD5.489D874D3EA67C8D1C4318FEA6050EFF] - 21/12/2013 - 10:43:23 ---A- - C:\Windows\Prefetch\PCCOMPANION.EXE-4D74AE82.pf
O45 - LFCP:[MD5.3183F0640B297CFBD9581785B17F4C04] - 21/12/2013 - 13:15:39 ---A- - C:\Windows\Prefetch\dynreservedpri.db
O45 - LFCP:[MD5.FD1022CC0CC9B173EF65E965A9BF18EB] - 21/12/2013 - 15:09:18 ---A- - C:\Windows\Prefetch\UNINST.EXE-0733A8AE.pf
O45 - LFCP:[MD5.81DECC63F2F52919AD2ABF5AFB3EAD0D] - 21/12/2013 - 15:09:23 ---A- - C:\Windows\Prefetch\NSE39.TMP-187AEFE5.pf
O45 - LFCP:[MD5.888BC02EB182F9EFBA1349D9BC4886D8] - 21/12/2013 - 15:10:38 ---A- - C:\Windows\Prefetch\WO_CHECKREMOVE.EXE-82F0C5B1.pf
O45 - LFCP:[MD5.A999610DD8FECDC30E09ABBD83166BDC] - 21/12/2013 - 15:10:46 ---A- - C:\Windows\Prefetch\DFSDKS.EXE-B998EA87.pf
O45 - LFCP:[MD5.8AEDE08F17C1A9CFE75E90133B81B8E8] - 21/12/2013 - 15:10:52 ---A- - C:\Windows\Prefetch\WO10.EXE-99BA148F.pf
O45 - LFCP:[MD5.519E0AD8E65A45E53FA7DFA1897A2BF5] - 21/12/2013 - 15:11:02 ---A- - C:\Windows\Prefetch\EXIT.EXE-45E82A2E.pf
O45 - LFCP:[MD5.F1BA91316089DF5118EFBA3054998078] - 21/12/2013 - 19:50:46 ---A- - C:\Windows\Prefetch\INSTUP.EXE-7E543EAF.pf
O45 - LFCP:[MD5.890BADB4A5B89421F699A23CA66DE50F] - 21/12/2013 - 20:44:05 ---A- - C:\Windows\Prefetch\PfPre_53359fe8.db
O45 - LFCP:[MD5.2471E2659678BF7F04677A5906485788] - 21/12/2013 - 20:46:25 ---A- - C:\Windows\Prefetch\WGET.DAT-7A9B93D1.pf
O45 - LFCP:[MD5.8BA700B544632E5CC9AB6988D6133D3C] - 21/12/2013 - 20:46:29 ---A- - C:\Windows\Prefetch\JRT.EXE-92B3FD72.pf
O45 - LFCP:[MD5.75607A378BAF081FAFC2B79A78461C59] - 21/12/2013 - 20:47:05 ---A- - C:\Windows\Prefetch\CHOICE.DAT-EBF9A5DD.pf
O45 - LFCP:[MD5.7AA09445A0B04007E95AAA93B1BE11CA] - 21/12/2013 - 20:49:48 ---A- - C:\Windows\Prefetch\FC.EXE-6D8DB995.pf
O45 - LFCP:[MD5.4EC05CC8C6759D574DAE891215B16956] - 21/12/2013 - 20:50:11 ---A- - C:\Windows\Prefetch\FIND.EXE-E2237F6D.pf
O45 - LFCP:[MD5.6CDB778A6CB3A4A98DDC82BD6C0BB0B4] - 21/12/2013 - 20:50:38 ---A- - C:\Windows\Prefetch\CUT.DAT-E4E564FA.pf
O45 - LFCP:[MD5.9C7ABE3625368647CD22B77B365DA52C] - 21/12/2013 - 20:50:52 ---A- - C:\Windows\Prefetch\SHORTCUT.DAT-202BC152.pf
O45 - LFCP:[MD5.F46ABCD2C67DFA88452BCBDF39D7523F] - 21/12/2013 - 20:50:53 ---A- - C:\Windows\Prefetch\NIRCMD.DAT-8AC1B367.pf
O45 - LFCP:[MD5.DF3C2A29FEA3BF2AA6B1CDCF53D0D41F] - 21/12/2013 - 20:50:53 ---A- - C:\Windows\Prefetch\SED.DAT-685B9C2A.pf
O45 - LFCP:[MD5.11136D9D115AD553EE527F83D8E6E85B] - 21/12/2013 - 21:24:13 ---A- - C:\Windows\Prefetch\COMETBIRD.EXE-FE417A20.pf
O45 - LFCP:[MD5.1A9F2739C8481DC18A87701756FF0EBF] - 21/12/2013 - 21:27:04 ---A- - C:\Windows\Prefetch\_IU14D2N.TMP-11935378.pf
~ Prefetcher: 207 Legitimates Filtered in 00mn 02s
---\\ Clé de registre Shell MountPoints2 (MPKS) (O51)
O51 - MPSK:{d06d7096-5ffa-11e3-b137-002354efc917}\AutoRun\command. (...) -- F:\Startme.exe (.not file.)
~ Keys: Scanned in 00mn 00s
---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
~ MWPS: 19 Legitimates Filtered in 00mn 00s
---\\ Liste des pilotes du système (SDL) (O58)
O58 - SDL:[MD5.548CCBD8B48FDF7E2435AD6017920A7F] - 08/10/2012 - 19:53:56 ---A- . (.Wondershare - Wondershare Virtual Audio Device.) -- C:\Windows\System32\Drivers\Apowersoft_AudioDevice.sys [26080]
O58 - SDL:[MD5.F385467DF95D0A73775CB3B076B8B969] - 23/10/2013 - 16:14:50 ---A- . (...) -- C:\Windows\System32\Drivers\aswRvrt.sys [49944]
O58 - SDL:[MD5.BADA8FD627F1D0E22308211C33F0BDB5] - 23/10/2013 - 16:14:50 ---A- . (...) -- C:\Windows\System32\Drivers\aswVmm.sys [178304]
O58 - SDL:[MD5.97AFFA9D95FFE20EEE6229BC6BE166CF] - 31/07/2007 - 02:39:00 ---A- . (.ATK0100 - ATK0100 ACPI Utility.) -- C:\Windows\System32\Drivers\ATKACPI.sys [7680]
O58 - SDL:[MD5.596DB7E4D0DB6AC32DF142C861001979] - 13/08/2013 - 00:25:32 ---A- . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\Windows\System32\Drivers\bcmfn2.sys [16088]
O58 - SDL:[MD5.B4489EA5810BF73778CD8BDC305109CE] - 22/08/2013 - 06:32:57 ---A- . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Windows x86.) -- C:\Windows\System32\Drivers\stexstor.sys [26976]
~ Drivers: 19 Legitimates Filtered in 00mn 02s
---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Cookies [75776]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Cookies-journal [16384]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Current Session [1993]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Current Tabs [1781]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Extension Rules\CURRENT [16]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Extension Rules\LOG [145]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Extension Rules\LOG.old [145]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Favicons [49152]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Favicons-journal [16384]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\History [479232]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\History Index 2013-11 [110592]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\History Index 2013-11-journal [16384]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\History Index 2013-12 [192512]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\History Index 2013-12-journal [16384]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\History Provider Cache [4942]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\History-journal [16384]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Last Session [5315]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Last Tabs [3604]
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Local Storage\http_www.delta-search.com_0.localstorage [3072] =>Toolbar.DeltaSearch
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Local Storage\http_www.delta-search.com_0.localstorage-journal [3608] =>Toolbar.DeltaSearch
O61 - LFC: 20/12/2013 - 21:38:37 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Managed Mode Settings [8]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Preferences [41075]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\QuotaManager [13312]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\QuotaManager-journal [8768]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Session Storage\CURRENT [16]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Session Storage\LOG [269]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Session Storage\LOG.old [274]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Session Storage\MANIFEST-000155 [391] =>.Google Inc
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Sync Data\SyncData.sqlite3 [106496]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Sync Data\SyncData.sqlite3-journal [16384]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\TransportSecurity [8]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Visited Links [131072]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Web Data [81920]
O61 - LFC: 20/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Default\Web Data-journal [4624]
O61 - LFC: 20/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\bookmarkbackups\bookmarks-2013-12-20.json [7185]
O61 - LFC: 20/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\pluginreg.dat [7254]
O61 - LFC: 21/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\Chromium\User Data\Local State [14495]
O61 - LFC: 21/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\CometNetwork\CometBird\Profiles\qys4z2ji.default\urlclassifier.pset [32]
O61 - LFC: 21/12/2013 - 21:38:38 ---A- . (...) -- C:\Users\Claude\AppData\Local\CometNetwork\CometBird\Profiles\qys4z2ji.default\urlclassifier3.sqlite [5242880]
O61 - LFC: 21/12/2013 - 21:38:39 ---A- . (...) -- C:\Users\Claude\AppData\Local\Google\Chrome\User Data\Certificate Revocation Lists [265578]
O61 - LFC: 21/12/2013 - 21:38:39 ---A- . (...) -- C:\Users\Claude\AppData\Local\Google\Chrome\User Data\chrome_shutdown_ms.txt [5]
O61 - LFC: 21/12/2013 - 21:38:43 ---A- . (...) -- C:\Users\Claude\AppData\Local\Google\Chrome\User Data\First Run [0]
O61 - LFC: 21/12/2013 - 21:38:43 ---A- . (...) -- C:\Users\Claude\AppData\Local\Google\Chrome\User Data\Local State [113773]
O61 - LFC: 21/12/2013 - 21:38:43 ---A- . (...) -- C:\Users\Claude\AppData\Local\Google\Chrome\User Data\en-US-3-0.bdic [440949]
O61 - LFC: 21/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\bookmarkbackups\bookmarks-2013-12-21.json [7185]
O61 - LFC: 21/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\cert8.db [98304]
O61 - LFC: 21/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\cookies.sqlite [524288]
O61 - LFC: 21/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\key3.db [16384]
O61 - LFC: 21/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\localstore.rdf [1027]
O61 - LFC: 21/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\places.sqlite [10485760]
O61 - LFC: 21/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\prefs.js [3814]
O61 - LFC: 21/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\sessionstore.bak [1203]
O61 - LFC: 21/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\sessionstore.js [1203]
O61 - LFC: 21/12/2013 - 21:38:54 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\CometNetwork\CometBird\Profiles\qys4z2ji.default\urlclassifierkey3.txt [154]
O61 - LFC: 21/12/2013 - 21:38:56 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\ZHP\Log.txt [61726] =>.Nicolas Coolman
O61 - LFC: 21/12/2013 - 21:38:56 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\ZHP\TestsZHPDiag.txt [2816] =>.Nicolas Coolman
O61 - LFC: 21/12/2013 - 21:38:56 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\ZHP\ZHPADSReport.txt [351] =>.Nicolas Coolman
O61 - LFC: 21/12/2013 - 21:38:56 ---A- . (...) -- C:\Users\Claude\AppData\Roaming\ZHP\ZHPDiag.txt [45284] =>.Nicolas Coolman
~ 20 Fichiers temporaires (Temporary files)
~ 1 Fichiers cookies (Cookies files)
~ Files: 877 Legitimates Filtered in 00mn 38s
---\\ Liste des outils de désinfection (LATC) (O63)
O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s
---\\ Menu de démarrage Internet (SMI) (O68)
O68 - StartMenuInternet: <COMETBIRD.EXE> <CometBird>[HKLM\..\Shell\open\Command] (.CometNetwork - CometBird.) -- c:\program files\cometbird\cometbird.exe
O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: <Google Chrome> <Google Chrome>[HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files\Google\Chrome\Application\chrome.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
O68 - StartMenuInternet: <Opera> <Opera>[HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- c:\program files\opera\opera.exe
O68 - StartMenuInternet: <Safari.exe> <Safari>[HKLM\..\Shell\open\Command] (.Apple Inc. - Safari.) -- c:\program files\safari\safari.exe
~ Keys: Scanned in 00mn 00s
---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69)
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - https://www.bing.com/?toHttps=1&redig=69DA0EF8272048D9864AF4DB37211DE8
O69 - SBI: SearchScopes [HKCU] {1CD4B8FF-6929-4F99-81E3-53E3CC184DEC} - (Bing) - https://www.bing.com/?toHttps=1&redig=69DA0EF8272048D9864AF4DB37211DE8
O69 - SBI: SearchScopes [HKCU] {67A2568C-7A0A-4EED-AECC-B5405DE63B64} - (Google) - https://www.google.com/?gws_rd=ssl
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) - https://www.google.com/?gws_rd=ssl
O69 - SBI: SearchScopes [HKCU] {814C76CB-2623-43F4-AAD0-58A0E5190A20} - (Orange) - http://r.orange.fr
O69 - SBI: SearchScopes [HKCU] {90F923A7-DBF5-B32E-3FE9-2312DEA86938} - (Ask) - http://www.audacitystart.com
O69 - SBI: SearchScopes [HKCU] {c1d89ae7-449d-4929-b24b-fded04adbe06} - (Glary Search) - http://isearch.glarysoft.com
O69 - SBI: SearchScopes [HKCU] {D9E7112E-0575-4947-9F62-D73B2EAB6F28} [DefaultScope] - (Orange) - https://www.orange.fr/portail
O69 - SBI: SearchScopes [HKUS\.DEFAULT] {47AE1BA9-0BD1-44F4-88AE-45F8F7B605EF} - (BasicServe) - http://www.basicserve.com =>Adware.BasicScan
O69 - SBI: SearchScopes [HKUS\S-1-5-18] {47AE1BA9-0BD1-44F4-88AE-45F8F7B605EF} - (BasicServe) - http://www.basicserve.com =>Adware.BasicScan
~ Keys: Scanned in 00mn 00s
---\\ Recherche particulière à la racine du système (SPRF) (O84)
[MD5.0D26EF8C01E3E1C77877C303A9317F69] [SPRF][10/12/2013] (...) -- C:\Users\Claude\AppData\Local\Temp\Quarantine.exe [360051]
[MD5.0679D39A697632EBD50DD438AB633214] [SPRF][20/12/2013] (...) -- C:\Users\Claude\AppData\Local\Temp\SHSetup.exe [45665360] =>Crapware.SpyHunter
[MD5.5AFACF0F4E71865473DFC878331E6AD0] [SPRF][21/12/2013] (...) -- C:\Users\Claude\AppData\Local\Temp\~gu3-ver.dat [115]
[MD5.7902EF8D44D57F0608E52FAA0528610F] [SPRF][21/12/2013] (...) -- C:\Users\Claude\AppData\Local\Temp\~upgrade.dat [1094]
[MD5.CE5A4D488CA30BED06EAC0EFDB5191B3] [SPRF][14/11/2013] (...) -- C:\Users\Claude\AppData\Roaming\wklnhst.dat [2708]
~ Files: 5 Legitimates Filtered in 00mn 00s
---\\ Liste des exceptions du parefeu (FirewallRules) (O87)
O87 - FAEL: "{A034AE88-F0F5-4EF7-A66C-6A2F77C8ED9C}" |Out - None - P17 - TRUE | .(...) -- C:\Users\Claude\AppData\Local\Temp\ibtmp395f617\component_612.decrpt (.not file.)
O87 - FAEL: "{7E3B225F-70FF-4608-89CA-701ACB74A667}" |In - None - P17 - TRUE | .(...) -- C:\Users\Claude\AppData\Local\Temp\ibtmp395f617\component_612.decrpt (.not file.)
O87 - FAEL: "{56C25F1B-8299-4012-BC1C-B78D411811E2}" | Out - None - P17 - TRUE | .(.Pas de propriétaire - Installer.) -- C:\Users\Claude\Downloads\DownloadManagerSetup.exe
O87 - FAEL: "{E8C1D198-F145-4717-A6DE-19F66B1908CB}" | In - None - P17 - TRUE | .(.Pas de propriétaire - Installer.) -- C:\Users\Claude\Downloads\DownloadManagerSetup.exe
~ Firewall: 274 Legitimates Filtered in 00mn 01s
---\\ Recherche des packages WindowsInstaller (WIS) (O93) (NTFS)
[MD5.EFC9D67ADBB184A59C9ABE597CF9432A] [WIS][15/12/2013] (.LULU SOFTWARE LIMITED - Soda PDF 5 Installer.) -- C:\Windows\Installer\7ecfb34.msi [55652352]
~ WIS: 39 Legitimates Filtered in 00mn 08s
---\\ Etat général des services non Microsoft (EGS) (SR=Running, SS=Stopped)
SS - | Demand 10/12/2013 257416 | (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
SS - | Demand 07/07/2011 1037312 | (GSService) . (...) - C:\WINDOWS\system32\GSService.exe
SS - | Demand 13/12/2012 116648 | (gupdatem) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SS - | Demand 22/12/2012 194032 | (gusvc) . (.Google.) - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
SS - | Demand 05/12/2013 119408 | (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
SS - | Auto 29/08/2013 1073160 | (Orange update Core Service) . (.Orange SA.) - C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe
SS - | Auto 05/09/2013 171680 | (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files\Skype\Updater\Updater.exe
SS - | Demand 04/02/2013 155824 | (Sony PC Companion) . (.Avanquest Software.) - C:\Program Files\Sony\Sony PC Companion\PCCService.exe
SS - | Demand 22/08/2013 31552 | C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation.) - C:\Windows\System32\svchost.exe
SR - | Auto 11/05/2013 65640 | (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
SR - | Auto 07/09/2013 55624 | (Apple Mobile Device) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
SR - | Auto 09/11/2013 50344 | (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
SR - | Auto 30/08/2011 390504 | (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe
SR - | Auto 10/06/2013 1966960 | (Dedicarz Service) . (...) - C:\Program Files\Orange\Assistance Livebox\dedicarz\DedicarzService.exe
SR - | Auto 13/12/2012 116648 | (gupdate) . (.Google Inc..) - C:\Program Files\Google\Update\GoogleUpdate.exe
SR - | Demand 02/11/2013 553288 | (iPod Service) . (.Apple Inc..) - C:\Program Files\iPod\bin\iPodService.exe
SR - | Auto 05/07/2013 1238344 | (Soda PDF 5 Helper Service) . (.LULU Software.) - C:\Program Files\Soda PDF 5\HelperService.exe
SR - | Auto 05/07/2013 877896 | (Soda PDF 5 Service) . (.LULU Software.) - C:\Program Files\Soda PDF 5\ConversionService.exe
SR - | Demand 22/08/2013 22240 | (WinDefend) . (.Microsoft Corporation.) - C:\Program Files\Windows Defender\MsMpEng.exe
~ Services: Scanned in 00mn 10s
---\\ Recherche d'infection sur le Master Boot Record (MBR)(O80)
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
Run by Claude at 21/12/2013 21:39:58
device: opened successfully
user: MBR read successfully
Disk trace:
called modules: ntoskrnl.exe CLASSPNP.SYS disk.sys storport.sys halmacpi.dll storahci.sys
1 nt!IofCallDriver[0x81C7FF80] >> \Device\Harddisk0\DR0[0x860DA668]
kernel: MBR read successfully
user & kernel MBR OK
~ MBR: 12 Legitimates Filtered in 00mn 02s
---\\ Recherche d'infection sur le Master Boot Record (MBRCheck)(O80)
Written by ad13, http://ad13.geekstog
Run by Claude at 21/12/2013 21:40:00
********* Dump file Name *********
C:\PhysicalDisk0_MBR.bin
~ MBR: Scanned in 00mn 04s
---\\ Scan Additionnel (O88)
Database Version : 13013 - (14/12/2013)
Clés trouvées (Keys found) : 6
Valeurs trouvées (Values found) : 1
Dossiers trouvés (Folders found) : 0
Fichiers trouvés (Files found) : 1
[HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21111111-1111-1111-1111-110211181110}] =>Adware.VidSaver
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F335ABA2-FDB4-4644-92B2-5CC4B0FC91D6}] =>Toolbar.Agent
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F335ABA2-FDB4-4644-92B2-5CC4B0FC91D6}] =>Toolbar.Agent
[HKLM\Software\Classes\CLSID\{F335ABA2-FDB4-4644-92B2-5CC4B0FC91D6}] =>Toolbar.Agent
[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Dealply] =>PUP.DealPly
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110211181110}] =>PUP.CrossRider
[HKLM\Software\Microsoft\Internet Explorer\Toolbar]:{2318C2B1-4965-11d4-9B18-009027A5CD4F} =>Toolbar.Google^
C:\Users\Claude\AppData\Local\Temp\SHSetup.exe =>Crapware.SpyHunter^
~ Additionnel Scan: 315262 Items scanned in 00mn 30s
---\\ Récapitulatif des détections trouvées sur votre station
~ http://nicolascoolman.webs.com/apps/blog/show/26627369-toolbar-babylon =>PUP.Babylon
~ http://nicolascoolman.webs.com/apps/blog/show/29507721-toolbar-conduit =>Toolbar.Conduit
~ http://nicolascoolman.webs.com/apps/blog/show/33477786-pup-dosearches =>PUP.DoSearches
~ http://nicolascoolman.webs.com/apps/blog/show/29637859-toolbar-tarma =>PUP.Tarma
~ http://nicolascoolman.webs.com/apps/blog/show/27875657-toolbar-deltasearch =>Toolbar.DeltaSearch
~ http://nicolascoolman.webs.com/apps/blog/show/26712089-adware-basicscan =>Adware.BasicScan
~ http://nicolascoolman.webs.com/apps/blog/show/26609241-crapware-spyhunter =>Crapware.SpyHunter
~ http://nicolascoolman.webs.com/apps/blog/show/27557062-adware-vidsaver =>Adware.VidSaver
~ http://nicolascoolman.webs.com/apps/blog/show/28060597-pup-dealply =>PUP.DealPly
~ http://nicolascoolman.webs.com/apps/blog/show/27583526-pup-crossrider =>PUP.CrossRider
~ MSI: 10 link(s) detected in 00mn 30s
~ 2123 Legitimates filtered by white list
End of the scan (582 lines in 02mn 43s)(0)
nouveau rapport
Cldt
claudedu17
Messages postés
65
Date d'inscription
vendredi 18 avril 2008
Statut
Membre
Dernière intervention
28 septembre 2014
1
23 déc. 2013 à 16:38
23 déc. 2013 à 16:38
Quel est le verdict ?
lilidurhone
Messages postés
43347
Date d'inscription
lundi 25 avril 2011
Statut
Contributeur sécurité
Dernière intervention
31 octobre 2024
3 807
23 déc. 2013 à 16:46
23 déc. 2013 à 16:46
* Télécharge http://www.archive-host.com SFTGC.exe
(de Pierre13) sur ton Bureau.
* Lance SFTGC, exécuter en tant qu'administrateur sous Windows : 7/8 et Vista
* Clique sur GO
image http://img11.hostingpics.net/pics/122370401.png
* Note : A la fin un rapport va s'ouvrir
* Une fois le scan terminé rends toi sur le bureau, le fichier SFT.txt à été créé.
* Héberge le rapport sur https://www.cjoint.com/ ==> Copie/colle la totalité du rapport SFT.txt dans ta prochaine réponse.
(de Pierre13) sur ton Bureau.
* Lance SFTGC, exécuter en tant qu'administrateur sous Windows : 7/8 et Vista
* Clique sur GO
image http://img11.hostingpics.net/pics/122370401.png
* Note : A la fin un rapport va s'ouvrir
* Une fois le scan terminé rends toi sur le bureau, le fichier SFT.txt à été créé.
* Héberge le rapport sur https://www.cjoint.com/ ==> Copie/colle la totalité du rapport SFT.txt dans ta prochaine réponse.
claudedu17
Messages postés
65
Date d'inscription
vendredi 18 avril 2008
Statut
Membre
Dernière intervention
28 septembre 2014
1
23 déc. 2013 à 17:33
23 déc. 2013 à 17:33
claudedu17
Messages postés
65
Date d'inscription
vendredi 18 avril 2008
Statut
Membre
Dernière intervention
28 septembre 2014
1
23 déc. 2013 à 17:39
23 déc. 2013 à 17:39
Rapport de SFTGC (Pierre13) du Lundi 23 Décembre 2013 à 17:28:00 version : 2.0.0.60
Mis à jour le 27/11/2013
Outil lancé en Mode normal et En tant qu'administrateur
Windows 8.1 Pro 32 bits
Tool start in C:\Users\Claude\Downloads
2542 éléments supprimés => 203.08 Mo libérés. (2 mn 6 s)
C:\Users\Claude\AppData\Local\Temp\13520_10891
C:\Users\Claude\AppData\Local\Temp\33420_29997
C:\Users\Claude\AppData\Local\Temp\58EE.tmp
C:\Users\Claude\AppData\Local\Temp\644_7858
C:\Users\Claude\AppData\Local\Temp\A6E5.tmp
C:\Users\Claude\AppData\Local\Temp\acrord32_sbx
C:\Users\Claude\AppData\Local\Temp\acro_rd_dir
C:\Users\Claude\AppData\Local\Temp\AdobeARM.log
C:\Users\Claude\AppData\Local\Temp\AdwCleaner.jpg
C:\Users\Claude\AppData\Local\Temp\chrome_installer.log
C:\Users\Claude\AppData\Local\Temp\Cleaning.ico
C:\Users\Claude\AppData\Local\Temp\Donate.ico
C:\Users\Claude\AppData\Local\Temp\DownloadMngWeb
C:\Users\Claude\AppData\Local\Temp\FE4E.tmp
C:\Users\Claude\AppData\Local\Temp\FXSAPIDebugLogFile.txt
C:\Users\Claude\AppData\Local\Temp\geColladaModelCacheLock
C:\Users\Claude\AppData\Local\Temp\geIconCacheLock
C:\Users\Claude\AppData\Local\Temp\JRT.txt
C:\Users\Claude\AppData\Local\Temp\jusched.log
C:\Users\Claude\AppData\Local\Temp\MicroThemePackDir
C:\Users\Claude\AppData\Local\Temp\Quarantine.exe
C:\Users\Claude\AppData\Local\Temp\Report.ico
C:\Users\Claude\AppData\Local\Temp\Scan.ico
C:\Users\Claude\AppData\Local\Temp\SHSetup.exe
C:\Users\Claude\AppData\Local\Temp\tmp6E93.tmp
C:\Users\Claude\AppData\Local\Temp\Uninstall.ico
C:\Users\Claude\AppData\Local\Temp\winstore.log
C:\Users\Claude\AppData\Local\Temp\_avast_
C:\Users\Claude\AppData\Local\Temp\_iu14D2N.tmp
C:\Users\Claude\AppData\Local\Temp\~DF27CB66D2071B4EE4.TMP
C:\Users\Claude\AppData\Local\Temp\~DF715360A87D287C8C.TMP
C:\Users\Claude\AppData\Local\Temp\~DF72BFB8DB50D024D8.TMP
C:\Users\Claude\AppData\Local\Temp\~DF7E24EB93F2DF5BEC.TMP
C:\Users\Claude\AppData\Local\Temp\~gu3-ver.dat
C:\Users\Claude\AppData\Local\Temp\~nsu.tmp
C:\Users\Claude\AppData\Local\Temp\~upgrade.dat
C:\Users\Claude\AppData\Local\Temp\~nsu.tmp\Au_.exe
C:\Users\Claude\AppData\Local\Temp\Sony\Sony PC Companion\AutoUpdate
C:\Users\Claude\AppData\Local\Temp\Low\_avast_
C:\Users\Claude\AppData\Local\Temp\jrt\APPID_clsid.dat
C:\Users\Claude\AppData\Local\Temp\jrt\APPID_files.dat
C:\Users\Claude\AppData\Local\Temp\jrt\appinit64_null.reg
C:\Users\Claude\AppData\Local\Temp\jrt\appinit_null.reg
C:\Users\Claude\AppData\Local\Temp\jrt\APPPATHS.dat
C:\Users\Claude\AppData\Local\Temp\jrt\APPROVEDEXTENSIONS_clsid.dat
C:\Users\Claude\AppData\Local\Temp\jrt\ask.bat
C:\Users\Claude\AppData\Local\Temp\jrt\askCLSID.dat
C:\Users\Claude\AppData\Local\Temp\jrt\askregkey_x64.dat
C:\Users\Claude\AppData\Local\Temp\jrt\askregkey_x86.dat
C:\Users\Claude\AppData\Local\Temp\jrt\askregvalue_x64.dat
C:\Users\Claude\AppData\Local\Temp\jrt\askregvalue_x86.dat
C:\Users\Claude\AppData\Local\Temp\jrt\askservices.dat
C:\Users\Claude\AppData\Local\Temp\jrt\badAPPINIT.dat
C:\Users\Claude\AppData\Local\Temp\jrt\badFOLDERS.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\badFOLDERScom.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\badFOLDERSstart.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\badLNK.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\badvalues.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\BHO_clsid.dat
C:\Users\Claude\AppData\Local\Temp\jrt\BHO_name.dat
C:\Users\Claude\AppData\Local\Temp\jrt\browsermngr_keys.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\browsermngr_values.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\CHOICE.DAT
C:\Users\Claude\AppData\Local\Temp\jrt\chrome.bat
C:\Users\Claude\AppData\Local\Temp\jrt\CHRregkey_x64.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\CHRregkey_x86.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\CHR_extensions.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\CHR_open_x64.reg
C:\Users\Claude\AppData\Local\Temp\jrt\CHR_open_x86.reg
C:\Users\Claude\AppData\Local\Temp\jrt\clean_shortcut.vbs
C:\Users\Claude\AppData\Local\Temp\jrt\CLSID_clsid.dat
C:\Users\Claude\AppData\Local\Temp\jrt\currentmd5.txt
C:\Users\Claude\AppData\Local\Temp\jrt\CUT.DAT
C:\Users\Claude\AppData\Local\Temp\jrt\datamngr_del.reg
C:\Users\Claude\AppData\Local\Temp\jrt\defaultscope.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\delfolders.bat
C:\Users\Claude\AppData\Local\Temp\jrt\delorphans.bat
C:\Users\Claude\AppData\Local\Temp\jrt\ELEVATIONPOLICY_clsid.dat
C:\Users\Claude\AppData\Local\Temp\jrt\erunt
C:\Users\Claude\AppData\Local\Temp\jrt\ev_clear.bat
C:\Users\Claude\AppData\Local\Temp\jrt\EXT.dat
C:\Users\Claude\AppData\Local\Temp\jrt\FFbrowsermngr.dat
C:\Users\Claude\AppData\Local\Temp\jrt\FFextensions.dat
C:\Users\Claude\AppData\Local\Temp\jrt\FFpluginREG.dat
C:\Users\Claude\AppData\Local\Temp\jrt\FFplugins.dat
C:\Users\Claude\AppData\Local\Temp\jrt\FFprefs.dat
C:\Users\Claude\AppData\Local\Temp\jrt\FFregkey_x64.dat
C:\Users\Claude\AppData\Local\Temp\jrt\FFregkey_x86.dat
C:\Users\Claude\AppData\Local\Temp\jrt\FFwhtlist.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\FFXML.dat
C:\Users\Claude\AppData\Local\Temp\jrt\FFXPI.dat
C:\Users\Claude\AppData\Local\Temp\jrt\FF_open_x64.reg
C:\Users\Claude\AppData\Local\Temp\jrt\FF_open_x86.reg
C:\Users\Claude\AppData\Local\Temp\jrt\firefox.bat
C:\Users\Claude\AppData\Local\Temp\jrt\FWCLSID.dat
C:\Users\Claude\AppData\Local\Temp\jrt\FWPolicy.bat
C:\Users\Claude\AppData\Local\Temp\jrt\get.bat
C:\Users\Claude\AppData\Local\Temp\jrt\IEwhtlst.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\iexplore.bat
C:\Users\Claude\AppData\Local\Temp\jrt\IE_open_x64.reg
C:\Users\Claude\AppData\Local\Temp\jrt\IE_open_x86.reg
C:\Users\Claude\AppData\Local\Temp\jrt\IFEO.dat
C:\Users\Claude\AppData\Local\Temp\jrt\INTERFACE_clsid.dat
C:\Users\Claude\AppData\Local\Temp\jrt\JRT.bat
C:\Users\Claude\AppData\Local\Temp\jrt\medfos.bat
C:\Users\Claude\AppData\Local\Temp\jrt\MENUEXT.dat
C:\Users\Claude\AppData\Local\Temp\jrt\misc.bat
C:\Users\Claude\AppData\Local\Temp\jrt\modules.bat
C:\Users\Claude\AppData\Local\Temp\jrt\modules.dat
C:\Users\Claude\AppData\Local\Temp\jrt\moduleservices.dat
C:\Users\Claude\AppData\Local\Temp\jrt\newmd5.txt
C:\Users\Claude\AppData\Local\Temp\jrt\NIRCMD.DAT
C:\Users\Claude\AppData\Local\Temp\jrt\NOTIFY.dat
C:\Users\Claude\AppData\Local\Temp\jrt\PREAPPROVED_clsid.dat
C:\Users\Claude\AppData\Local\Temp\jrt\prelim.bat
C:\Users\Claude\AppData\Local\Temp\jrt\PRODUCTS.dat
C:\Users\Claude\AppData\Local\Temp\jrt\REGhcr.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\REGhkcu_and_hklm_allow.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\REGhkcu_and_hklm_software.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\REGhkcu_software_appdatalow.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\REGhkcu_software_microsoft.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\REGhklm_software_classes.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\REGISTRYUSERSID.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\runvalues.bat
C:\Users\Claude\AppData\Local\Temp\jrt\runvalues_x64.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\runvalues_x86.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\S1518COMPONENTS.dat
C:\Users\Claude\AppData\Local\Temp\jrt\searchlnk.bat
C:\Users\Claude\AppData\Local\Temp\jrt\SED.DAT
C:\Users\Claude\AppData\Local\Temp\jrt\sednewline.txt
C:\Users\Claude\AppData\Local\Temp\jrt\services.dat
C:\Users\Claude\AppData\Local\Temp\jrt\serviceseventlog.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\SETTINGS_clsid.dat
C:\Users\Claude\AppData\Local\Temp\jrt\SHORTCUT.DAT
C:\Users\Claude\AppData\Local\Temp\jrt\STATS_clsid.dat
C:\Users\Claude\AppData\Local\Temp\jrt\TDL4.bat
C:\Users\Claude\AppData\Local\Temp\jrt\temp
C:\Users\Claude\AppData\Local\Temp\jrt\TRACING.dat
C:\Users\Claude\AppData\Local\Temp\jrt\TYPELIB_clsid.dat
C:\Users\Claude\AppData\Local\Temp\jrt\UNINSTALL.dat
C:\Users\Claude\AppData\Local\Temp\jrt\UpgradeCodes.dat
C:\Users\Claude\AppData\Local\Temp\jrt\WGET.DAT
C:\Users\Claude\AppData\Local\Temp\jrt\WOW6432NODE.dat
C:\Users\Claude\AppData\Local\Temp\jrt\temp\null.txt
C:\Users\Claude\AppData\Local\Temp\jrt\erunt\ERDNT.E_E
C:\Users\Claude\AppData\Local\Temp\jrt\erunt\ERDNTDOS.LOC
C:\Users\Claude\AppData\Local\Temp\jrt\erunt\ERDNTWIN.LOC
C:\Users\Claude\AppData\Local\Temp\jrt\erunt\ERUNT.EXE
C:\Users\Claude\AppData\Local\Temp\jrt\erunt\ERUNT.EXE.manifest
C:\Users\Claude\AppData\Local\Temp\jrt\erunt\ERUNT.LOC
C:\Users\Claude\AppData\Local\Temp\jrt\erunt\README.TXT
C:\Users\Claude\AppData\Local\Temp\644_7858\crl-set
C:\Users\Claude\AppData\Local\Temp\644_7858\manifest.fingerprint
C:\Users\Claude\AppData\Local\Temp\644_7858\manifest.json
C:\Users\Claude\AppData\Local\Temp\33420_29997\crl-set
C:\Users\Claude\AppData\Local\Temp\33420_29997\manifest.fingerprint
C:\Users\Claude\AppData\Local\Temp\33420_29997\manifest.json
C:\Users\Claude\AppData\Local\Temp\13520_10891\crl-set
C:\Users\Claude\AppData\Local\Temp\13520_10891\manifest.fingerprint
C:\Users\Claude\AppData\Local\Temp\13520_10891\manifest.json
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\desktop.ini
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\Icones divers.lnk
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\Internet.lnk
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\Paris, années folles_France 3_2013_12_02_20_45.lnk
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\Programmes.lnk
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\releve-frais-bancaires-2012.lnk
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\Téléchargements.lnk
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\Vidéos.lnk
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\ZHP.lnk
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\ZHPDiag.lnk
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\ZHPDiag02.lnk
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\16ec093b8f51508f.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\1c3c28b25e13726b.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\28c8b86deab549a1.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\2d70f449198b5ef.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\58243947b603842f.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\5d696d521de238c3.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\6824f4a902c78fbd.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\6c810151099d596c.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\74d7f43c1561fc1e.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\74ea779831912e30.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\7e4dca80246863e3.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\83b03b46dcd30a0e.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\b9483f7924f9da8f.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\bfbfdf7871e8b5f0.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\d93f411851d7c929.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\da5a7077b2b54a11.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\EWM3I0CSZLAU2GP7FG4F.temp
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\f01b4d95cf55d32a.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\S0OI0QPCQHPQP15A2479.temp
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\16ec093b8f51508f.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\17d1c91f77b48425.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\1da3c90a72bf5527.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\1ded3aa577f51a31.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\230591a922eacc7a.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\26bfbdac8c66cb7d.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\28c8b86deab549a1.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\2b88af31b31e51e0.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\3355ae6abae97972.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\36a544b3e9019647.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\43578521d78096c6.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\4cb9c5750d51c07f.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\5d696d521de238c3.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\74d7f43c1561fc1e.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\7b5c98cbfa323717.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\7e4dca80246863e3.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\918e0ecb43d17e23.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\9d5b1032b428d3f3.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\9fda41b86ddcf1db.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\a6fdbfe7f691224e.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\adc1cc1f58ef409f.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\ae6df75df512bd06.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\b3f13480c2785ae.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\cb9ad8ad41d1d385.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\ce2b855427a09fe3.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\d64293cd816830d0.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\ea57996c51cec432.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\f01b4d95cf55d32a.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\f30583f2eab29b80.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\f3c90dec42360729.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\ff103e2cc310d0d.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\00812f51-80ba-4f9f-80c7-24bda612f7d4.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\00812f51-80ba-4f9f-80c7-24bda612f7d4.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\00b0edb3-ac1a-4557-b8b5-9326eeac5278.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\00b0edb3-ac1a-4557-b8b5-9326eeac5278.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\00c743d1-9566-4af3-a7c5-495f22cbec72.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\00c743d1-9566-4af3-a7c5-495f22cbec72.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\00da3986-c0d7-4c24-8613-e5936dd0841f.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\00da3986-c0d7-4c24-8613-e5936dd0841f.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\016c6a0f-8609-4d29-8b26-825a6a673f63.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\016c6a0f-8609-4d29-8b26-825a6a673f63.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\019dec58-2074-4ff1-9113-a481e0ca4ba8.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\019dec58-2074-4ff1-9113-a481e0ca4ba8.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\035a87ef-90ee-414e-a9e0-6e74b1bc7b76.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\035a87ef-90ee-414e-a9e0-6e74b1bc7b76.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\03cb6e24-14e4-4511-9f49-da5cfe8fe636.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\03cb6e24-14e4-4511-9f49-da5cfe8fe636.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\04e2a509-e4a6-488f-83d1-4d8da8061640.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\04e2a509-e4a6-488f-83d1-4d8da8061640.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\051606ab-af95-4ee9-b5a1-b48728b2967c.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\051606ab-af95-4ee9-b5a1-b48728b2967c.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\067f0892-058b-4942-bffa-e47540ab7fa3.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\067f0892-058b-4942-bffa-e47540ab7fa3.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\07861612-ae56-4d47-b3fd-4c8f25b73aee.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\07861612-ae56-4d47-b3fd-4c8f25b73aee.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\07b61a40-9b81-4e11-a56e-720ff0a367ab.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\07b61a40-9b81-4e11-a56e-720ff0a367ab.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\07d8e719-4245-44e7-995f-a2a9431e4a5d.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\07d8e719-4245-44e7-995f-a2a9431e4a5d.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\08414552-da10-4f85-9027-83331f3bff2f.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\08414552-da10-4f85-9027-83331f3bff2f.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\087276f1-2e48-4be1-a6e7-ccb39f3579eb.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\087276f1-2e48-4be1-a6e7-ccb39f3579eb.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\08a65dc8-afbf-46f4-9b41-d5e611da270d.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\08a65dc8-afbf-46f4-9b41-d5e611da270d.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\08af6a5b-b720-40d3-a60c-61636ff1f053.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\08af6a5b-b720-40d3-a60c-61636ff1f053.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\08b6536f-e909-4703-8ca1-96cb81ba4a15.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\08b6536f-e909-4703-8ca1-96cb81ba4a15.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0a77aaef-8eea-4293-bc7e-b0dbe75e7fe5.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0a77aaef-8eea-4293-bc7e-b0dbe75e7fe5.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0aca1cbd-a071-4410-b04b-cc11c55cfb21.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0aca1cbd-a071-4410-b04b-cc11c55cfb21.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0b542695-e3fa-4b33-be2d-6d105da8bcc5.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0b542695-e3fa-4b33-be2d-6d105da8bcc5.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0c868f19-003f-4aaf-acc3-2668e3a5e51e.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0c868f19-003f-4aaf-acc3-2668e3a5e51e.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0da3ad71-272f-44e0-b97d-162dc60abe06.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0da3ad71-272f-44e0-b97d-162dc60abe06.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0ef49bde-2a29-40fe-8437-1fd6e22b46b1.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0ef49bde-2a29-40fe-8437-1fd6e22b46b1.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0f056865-e468-4d25-aaf9-5dafaff67318.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0f056865-e468-4d25-aaf9-5dafaff67318.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0f554b24-92b6-41a4-8198-e7c1a285f9cc.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0f554b24-92b6-41a4-8198-e7c1a285f9cc.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0f5a6242-ce44-48ba-b191-2ead545dfd6a.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0f5a6242-ce44-48ba-b191-2ead545dfd6a.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\10422875-f5ba-45ac-8f1e-8a28fbbc88da.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\10422875-f5ba-45ac-8f1e-8a28fbbc88da.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\106ad41a-2b4e-413c-816f-b393620a7619.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\106ad41a-2b4e-413c-816f-b393620a7619.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\10b17774-b1cc-460f-83aa-baff60b5030e.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\10b17774-b1cc-460f-83aa-baff60b5030e.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\11176cf0-39f7-4235-a27e-3f662a7d1fa3.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\11176cf0-39f7-4235-a27e-3f662a7d1fa3.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1135c0f0-3169-47a3-9dc1-cecd2de07f2c.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1135c0f0-3169-47a3-9dc1-cecd2de07f2c.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\114779b6-19fd-4d39-a737-772489901e00.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\114779b6-19fd-4d39-a737-772489901e00.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\11d1ff98-9c24-46ce-933b-e67fbd1f491d.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\11d1ff98-9c24-46ce-933b-e67fbd1f491d.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\12b14161-213b-4793-baac-1d513b99d7e1.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\12b14161-213b-4793-baac-1d513b99d7e1.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\134f7bbb-d27a-4fb4-a8c2-58660b870e03.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\134f7bbb-d27a-4fb4-a8c2-58660b870e03.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\13a10819-8d44-469f-9e5b-1a8e5e4c29e1.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\13a10819-8d44-469f-9e5b-1a8e5e4c29e1.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\13dc5ff9-5b77-4c33-a0b8-787111b79199.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\13dc5ff9-5b77-4c33-a0b8-787111b79199.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\13e26f47-c7d3-45ac-991a-a43dfae4e818.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\13e26f47-c7d3-45ac-991a-a43dfae4e818.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\14051ae5-57ac-4077-b4b2-31f328171767.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\14051ae5-57ac-4077-b4b2-31f328171767.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\14054c7b-791e-4419-9c98-42832ad51c04.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\14054c7b-791e-4419-9c98-42832ad51c04.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\14da8371-7608-428a-ba70-80fb9e856a98.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\14da8371-7608-428a-ba70-80fb9e856a98.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\14f9fc19-b028-43bb-b4bd-558b1cba808d.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\14f9fc19-b028-43bb-b4bd-558b1cba808d.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\15063f76-cec5-45ec-bd8e-c9cecd97dc5a.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\15063f76-cec5-45ec-bd8e-c9cecd97dc5a.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\15086e82-7e8f-4610-bb16-657ccc5b8d1c.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\15086e82-7e8f-4610-bb16-657ccc5b8d1c.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\151d411a-f810-41f3-8d54-062b5c1e2248.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\151d411a-f810-41f3-8d54-062b5c1e2248.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\15201ced-624c-4066-ab54-7920eb903b00.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\15201ced-624c-4066-ab54-7920eb903b00.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\155c9682-9c32-452a-b740-b3e5cab561c7.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\155c9682-9c32-452a-b740-b3e5cab561c7.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\165a3a67-707e-4bce-8f24-c865c98dc82b.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\165a3a67-707e-4bce-8f24-c865c98dc82b.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1663e593-f625-4307-856a-dc6558c29b0d.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1663e593-f625-4307-856a-dc6558c29b0d.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1792b99a-e7a2-4462-838e-1250a36b7d11.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1792b99a-e7a2-4462-838e-1250a36b7d11.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\18a07f09-da66-40d5-a538-8b6c7fd1b59a.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\18a07f09-da66-40d5-a538-8b6c7fd1b59a.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\193708fa-32f6-4994-89c8-8601eb3147b8.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\193708fa-32f6-4994-89c8-8601eb3147b8.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1a3073ef-e3eb-4884-9e94-c5fbf3b7948f.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1a3073ef-e3eb-4884-9e94-c5fbf3b7948f.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1a9c8b88-4ce2-4201-bebf-f7f8074d830e.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1a9c8b88-4ce2-4201-bebf-f7f8074d830e.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1b4e7ec7-4a7f-4d29-b097-9f678a5dfe17.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1b4e7ec7-4a7f-4d29-b097-9f678a5dfe17.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1b585df7-5f75-4213-add1-8ddc81cfaabe.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1b585df7-5f75-4213-add1-8ddc81cfaabe.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1c362f2f-9cd5-4542-97f6-4f40aea4ccf9.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1c362f2f-9cd5-4542-97f6-4f40aea4ccf9.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1c717ceb-ea42-42f6-8da4-4ccfcd53a367.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1c717ceb-ea42-42f6-8da4-4ccfcd53a367.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1c75374b-a40a-4bf1-b2c1-9c9b184dff7f.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1c75374b-a40a-4bf1-b2c1-9c9b184dff7f.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1d3fbfeb-83f6-4902-8663-6e2ebfa65601.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1d3fbfeb-83f6-4902-8663-6e2ebfa65601.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1d695ffc-19e0-4e7e-9b89-a578fa590012.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1d695ffc-19e0-4e7e-9b89-a578fa590012.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1dc46841-d0f2-4281-80e3-08eff61dd309.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1dc46841-d0f2-4281-80e3-08eff61dd309.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1ebd86e7-800c-49b3-8404-f6d36397c456.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1ebd86e7-800c-49b3-8404-f6d36397c456.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1ee0df22-8a2a-4248-bae9-34f4d651504f.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1ee0df22-8a2a-4248-bae9-34f4d651504f.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\207842be-ba96-469a-9732-723813f57beb.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\207842be-ba96-469a-9732-723813f57beb.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\219f0100-d721-43aa-923e-2277afad737b.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\219f0100-d721-43aa-923e-2277afad737b.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\22231957-cd6c-4d7f-af73-d52912093223.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\22231957-cd6c-4d7f-af73-d52912093223.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\22d01c36-a5a4-4449-a146-f84d4c33c751.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\22d01c36-a5a4-4449-a146-f84d4c33c751.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\232aa215-7baa-4664-95b1-ab506e654778.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\232aa215-7baa-4664-95b1-ab506e654778.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\23a6df20-5470-4f90-bb72-96cf8f0119cf.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\23a6df20-5470-4f90-bb72-96cf8f0119cf.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\251f3bc3-0f64-42f3-9936-1bb05efdf665.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\251f3bc3-0f64-42f3-9936-1bb05efdf665.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\255f8b55-cc77-43f5-b44a-6c600ae48a98.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\255f8b55-cc77-43f5-b44a-6c600ae48a98.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\258ccbc2-6c24-4589-8327-235efcba5362.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\258ccbc2-6c24-4589-8327-235efcba5362.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\26046ee9-f373-4bfa-948d-a3f8adc09471.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\26046ee9-f373-4bfa-948d-a3f8adc09471.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\26198744-def9-47ba-9a2d-1c45d890e324.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\26198744-def9-47ba-9a2d-1c45d890e324.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\282f5c79-257d-4446-8070-77c4d6ec9b4d.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\282f5c79-257d-4446-8070-77c4d6ec9b4d.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\288d60cf-5ec1-45bf-9c76-8544f8be9a89.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\288d60cf-5ec1-45bf-9c76-8544f8be9a89.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\289e3d06-fc1b-4162-9083-121dfead4c54.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\289e3d06-fc1b-4162-9083-121dfead4c54.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\299b1b30-f5b1-4f11-baba-e46f47e6655e.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\299b1b30-f5b1-4f11-baba-e46f47e6655e.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2a6b3722-57cd-4403-b1b6-3c81f586cafc.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2a6b3722-57cd-4403-b1b6-3c81f586cafc.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2abce2af-ce3f-4191-94ef-669248509f33.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2abce2af-ce3f-4191-94ef-669248509f33.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2ae2aa05-ee0e-4788-8ac9-18edf10c8a3a.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2ae2aa05-ee0e-4788-8ac9-18edf10c8a3a.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2b338f83-1dd9-4b25-8afa-b3c3ad8fdad5.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2b338f83-1dd9-4b25-8afa-b3c3ad8fdad5.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2c349a41-2b06-47c2-97fd-3374d03bad51.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2c349a41-2b06-47c2-97fd-3374d03bad51.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2c5aef5f-9ed8-4c09-97fe-3cfe600ea9d5.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2c5aef5f-9ed8-4c09-97fe-3cfe600ea9d5.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2cc30903-a9d6-43b6-b489-7aae89a525bd.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2cc30903-a9d6-43b6-b489-7aae89a525bd.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2d03c038-5633-4112-b3b8-ffa9c56152e8.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2d03c038-5633-4112-b3b8-ffa9c56152e8.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2d081253-86b3-4aac-a723-755ccb8784f4.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2d081253-86b3-4aac-a723-755ccb8784f4.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2de307f0-f8e9-4406-91ff-2310ac69281d.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2de307f0-f8e9-4406-91ff-2310ac69281d.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2e559292-c9f2-42de-84d9-4be99d09b29b.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2e559292-c9f2-42de-84d9-4be99d09b29b.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2eb1b5ec-9d3b-4efd-8eaf-ad6184d45fce.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2eb1b5ec-9d3b-4efd-8eaf-ad6184d45fce.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2ebb8e4f-c243-4ba6-a349-dc3857ea5ffe.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2ebb8e4f-c243-4ba6-a349-dc3857ea5ffe.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2ec07f89-a395-4276-9d6a-54385093f6d8.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2ec07f89-a395-4276-9d6a-54385093f6d8.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2feff1b9-380e-4c59-9581-fe15f59b86a9.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2feff1b9-380e-4c59-9581-fe15f59b86a9.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2ffb7ace-742d-420c-9021-5e0cf90bb53d.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2ffb7ace-742d-420c-9021-5e0cf90bb53d.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\302aab58-24e4-4d68-b450-f90462b2429f.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\302aab58-24e4-4d68-b450-f90462b2429f.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3127200a-bf68-4540-9b9d-d065de24b69d.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3127200a-bf68-4540-9b9d-d065de24b69d.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\31489aa4-bc4e-48a9-a538-6a276465dfea.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\31489aa4-bc4e-48a9-a538-6a276465dfea.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\32439494-1149-40b2-a30d-c3ae771aca80.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\32439494-1149-40b2-a30d-c3ae771aca80.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\32606e02-e903-4807-a444-f1ff4dadfbf4.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\32606e02-e903-4807-a444-f1ff4dadfbf4.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\333e9caa-c076-40b6-bb28-f7b8ebc666fb.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\333e9caa-c076-40b6-bb28-f7b8ebc666fb.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3342e7bf-3b79-4568-9dc5-5618bd848fb0.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3342e7bf-3b79-4568-9dc5-5618bd848fb0.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\33e53a05-9fe1-4c2f-9384-8194375fe458.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\33e53a05-9fe1-4c2f-9384-8194375fe458.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\33e881e2-fd82-4e98-ae28-61c63b41b833.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\33e881e2-fd82-4e98-ae28-61c63b41b833.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\33f73808-4f3b-4a9d-9bc9-189fddd54c1c.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\33f73808-4f3b-4a9d-9bc9-189fddd54c1c.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3425886d-2d43-4a48-8edf-405c7bdf0cb1.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3425886d-2d43-4a48-8edf-405c7bdf0cb1.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\34fbced0-3a3c-4c36-b49f-73c4b4902c1c.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\34fbced0-3a3c-4c36-b49f-73c4b4902c1c.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\36076c39-05e9-413b-8921-cc9f38e56442.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\36076c39-05e9-413b-8921-cc9f38e56442.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\367c67d6-da2e-49dd-a335-004bf39a338b.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\367c67d6-da2e-49dd-a335-004bf39a338b.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\368c75d7-8b63-41cb-91b6-09f86d7e556d.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\368c75d7-8b63-41cb-91b6-09f86d7e556d.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\381aca8e-44e0-4d02-99e7-4686394cb69e.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\381aca8e-44e0-4d02-99e7-4686394cb69e.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\38b78a7d-c7fd-4be4-81fd-6aaaddc571ad.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\38b78a7d-c7fd-4be4-81fd-6aaaddc571ad.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\38c3997e-0cbd-49bd-bb87-f24055f97564.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\38c3997e-0cbd-49bd-bb87-f24055f97564.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\38db5907-2a23-4e8a-b3dc-00b4f7f89c53.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\38db5907-2a23-4e8a-b3dc-00b4f7f89c53.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\391b4906-689d-46b7-b681-d73def41d2df.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\391b4906-689d-46b7-b681-d73def41d2df.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\39458d11-9ffd-4137-8014-5fbd0c56fbe7.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\39458d11-9ffd-4137-8014-5fbd0c56fbe7.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\39dcbd49-64fe-4cb5-a247-b3fba0362123.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\39dcbd49-64fe-4cb5-a247-b3fba0362123.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\39dde932-b38b-4352-bedb-81d1452ae1ac.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\39dde932-b38b-4352-bedb-81d1452ae1ac.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\39df8767-79c2-435e-b097-0fff5a3e1ece.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\39df8767-79c2-435e-b097-0fff5a3e1ece.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3a232f0d-e996-4202-a6ab-a170118abc93.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3a232f0d-e996-4202-a6ab-a170118abc93.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3a5a8ccd-891f-45ba-ac98-593e1c97aa91.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3a5a8ccd-891f-45ba-ac98-593e1c97aa91.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3b3aa2db-b5bc-415a-8b9d-a5aa1b7823db.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3b3aa2db-b5bc-415a-8b9d-a5aa1b7823db.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3c330578-2aeb-4050-8902-20fc71e12aeb.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3c330578-2aeb-4050-8902-20fc71e12aeb.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3cb0c95d-cf0b-49fe-a082-7c4583ad1b12.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3cb0c95d-cf0b-49fe-a082-7c4583ad1b12.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3dbbf15f-3f21-460b-884a-0d23c349faf0.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3dbbf15f-3f21-460b-884a-0d23c349faf0.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3e79fccb-36d2-444f-b1ec-bf341a0b9fb7.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3e79fccb-36d2-444f-b1ec-bf341a0b9fb7.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3ed8ca20-d873-43fa-969a-e57366e6dac4.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3ed8ca20-d873-43fa-969a-e57366e6dac4.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3f4a7a80-c5a9-4f7c-9691-ad7994e0a3be.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3f4a7a80-c5a9-4f7c-9691-ad7994e0a3be.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3f6ef5b9-7206-4799-a661-26e2ae5dd2f0.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3f6ef5b9-7206-4799-a661-26e2ae5dd2f0.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\402fa776-5dc4-4d4a-a13f-dce0ff2c732b.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\402fa776-5dc4-4d4a-a13f-dce0ff2c732b.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\40f2fbb8-990f-44cb-b1d4-e1bbdc608dbb.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\40f2fbb8-990f-44cb-b1d4-e1bbdc608dbb.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\413c8053-b39c-4996-ad6c-503e64b514b1.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\413c8053-b39c-4996-ad6c-503e64b514b1.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\417df7b4-01e6-4ec5-9ba8-0dcbe2dd1376.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\417df7b4-01e6-4ec5-9ba8-0dcbe2dd1376.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\41f5485b-59ba-42fd-b235-c4ff78215242.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\41f5485b-59ba-42fd-b235-c4ff78215242.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\42ecc935-1ac0-4f95-a1af-d9b43c0c3402.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\42ecc935-1ac0-4f95-a1af-d9b43c0c3402.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\442168b5-d173-4790-b6c4-b24bc6cfea25.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\442168b5-d173-4790-b6c4-b24bc6cfea25.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4464a454-4a34-4888-9aad-2adba38b5f8f.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4464a454-4a34-4888-9aad-2adba38b5f8f.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\446b28b2-1c68-4e01-8349-ab479c90ac7a.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\446b28b2-1c68-4e01-8349-ab479c90ac7a.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\447db69c-64fd-410f-b693-6af3c8c7151c.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\447db69c-64fd-410f-b693-6af3c8c7151c.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\449e0157-a2d6-4474-9d33-47b7be9450be.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\449e0157-a2d6-4474-9d33-47b7be9450be.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\44a8dd04-0f15-431b-8582-fc84e13d8e8e.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\44a8dd04-0f15-431b-8582-fc84e13d8e8e.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\44b80479-3ce8-454e-8689-6ec59d5218f4.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\44b80479-3ce8-454e-8689-6ec59d5218f4.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\44cd7f34-6b6c-4870-9559-0ae99deea5a9.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\44cd7f34-6b6c-4870-9559-0ae99deea5a9.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\45da11a1-77e9-4ffd-a426-eca900fec46e.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\45da11a1-77e9-4ffd-a426-eca900fec46e.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\47711b74-c3d0-405d-b501-9ce0c5688b76.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\47711b74-c3d0-405d-b501-9ce0c5688b76.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\487d46e9-d9de-4197-8389-ab38091a3830.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\487d46e9-d9de-4197-8389-ab38091a3830.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4995be76-c1ea-4584-a257-893f42719b2e.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4995be76-c1ea-4584-a257-893f42719b2e.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4abaa65f-a233-4734-97a1-35d1a6eb1162.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4abaa65f-a233-4734-97a1-35d1a6eb1162.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4b1f1915-b9c9-4e59-b5bc-2c8b499c3ceb.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4b1f1915-b9c9-4e59-b5bc-2c8b499c3ceb.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4baa9338-c662-41a8-8e9f-70c96409580a.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4baa9338-c662-41a8-8e9f-70c96409580a.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4c7879df-5a55-4812-bbff-4e029b1e2a63.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4c7879df-5a55-4812-bbff-4e029b1e2a63.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4d088c37-f255-482f-adf6-ad5ccddbdf2b.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4d088c37-f255-482f-adf6-ad5ccddbdf2b.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4d2515dd-29a9-44f7-81eb-69a484fa0e2e.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4d2515dd-29a9-44f7-81eb-69a484fa0e2e.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4d67b247-d927-48d1-ab02-ef9a804bb77a.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4d67b247-d927-48d1-ab02-ef9a804bb77a.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4ecb669a-6f57-47dc-a555-fd937dd4ba56.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4ecb669a-6f57-47dc-a555-fd937dd4ba56.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4edc9455-8cd9-48ff-941c-5e54e4eaa598.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4edc9455-8cd9-48ff-941c-5e54e4eaa598.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4efa4f83-8682-4f9c-b0a6-f5016d4dda9d.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4efa4f83-8682-4f9c-b0a6-f5016d4dda9d.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4f15473e-8a2b-4b2c-9c23-62e008aade31.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4f15473e-8a2b-4b2c-9c23-62e008aade31.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4f976789-065e-492a-9426-20a20d37a343.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4f976789-065e-492a-9426-20a20d37a343.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4f9ec8de-2acd-415b-af39-4aa752645ab8.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4f9ec8de-2acd-415b-af39-4aa752645ab8.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5039e4ff-3e58-45bb-9dd8-7890eef195ce.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5039e4ff-3e58-45bb-9dd8-7890eef195ce.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\50641755-05a1-4969-aca2-da9a1b6b5b25.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\50641755-05a1-4969-aca2-da9a1b6b5b25.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\509bc96d-21ee-4f61-8e31-b4501648237c.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\509bc96d-21ee-4f61-8e31-b4501648237c.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\51216c01-4604-4a45-a8ca-6d7bb4594d13.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\51216c01-4604-4a45-a8ca-6d7bb4594d13.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5146a5e8-89f2-469c-abd9-80b4b975b3d9.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5146a5e8-89f2-469c-abd9-80b4b975b3d9.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\51aa462d-fa73-4b0d-9afc-292709ca7b5f.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\51aa462d-fa73-4b0d-9afc-292709ca7b5f.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\52541a28-3763-426e-9946-1061fce2b0e7.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\52541a28-3763-426e-9946-1061fce2b0e7.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\53323745-52d9-4433-a34a-6ac743d04513.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\53323745-52d9-4433-a34a-6ac743d04513.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\53845cfb-d0b2-4730-a9f0-0624f3823c13.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\53845cfb-d0b2-4730-a9f0-0624f3823c13.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\538a160a-f4e1-4108-8714-072ba91488f8.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\538a160a-f4e1-4108-8714-072ba91488f8.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\53fce45e-d905-41b3-9673-f4053c714b06.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\53fce45e-d905-41b3-9673-f4053c714b06.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\54e4cf8e-3f9d-44ed-8523-d3ded604e5ae.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\54e4cf8e-3f9d-44ed-8523-d3ded604e5ae.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5604a172-1b2e-4b77-afa2-f96ea229a5d1.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5604a172-1b2e-4b77-afa2-f96ea229a5d1.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5642cc4a-f776-474d-9c95-2c6491129be9.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5642cc4a-f776-474d-9c95-2c6491129be9.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\56868786-4203-43d3-af42-a2841b5f1831.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\56868786-4203-43d3-af42-a2841b5f1831.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\575f4633-bee2-4e3b-b323-f3db2e52a45c.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\575f4633-bee2-4e3b-b323-f3db2e52a45c.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\57f74664-a69b-4ce3-91bf-7d3bc9c60fe7.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\57f74664-a69b-4ce3-91bf-7d3bc9c60fe7.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\58909ad2-db40-49a3-b4fc-b96d9757e4f0.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\58909ad2-db40-49a3-b4fc-b96d9757e4f0.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\589113f7-e039-4733-a98a-5d36b3c219ce.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\589113f7-e039-4733-a98a-5d36b3c219ce.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\595ed418-aa94-428b-ae84-48fde58a1c51.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\595ed418-aa94-428b-ae84-48fde58a1c51.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5a11561f-e5a6-4581-8b4e-45b3847273cf.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5a11561f-e5a6-4581-8b4e-45b3847273cf.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5a41400e-9d25-4af9-9b21-309697831bb2.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5a41400e-9d25-4af9-9b21-309697831bb2.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5a8d0b6b-773c-4b21-9d38-d0ee45ffb9fc.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5a8d0b6b-773c-4b21-9d38-d0ee45ffb9fc.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5b881935-ae45-4aba-909f-a382168a3324.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5b881935-ae45-4aba-909f-a382168a3324.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5be13e6a-8055-4470-97b0-c28e094e2497.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5be13e6a-8055-4470-97b0-c28e094e2497.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5c4aa466-e5a2-4349-92bb-b55a873b8ebf.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5c4aa466-e5a2-4349-92bb-b55a873b8ebf.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5c83eee7-dc06-4386-9432-a50c3aa9a475.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5c83eee7-dc06-4386-9432-a50c3aa9a475.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5d710bfc-b33f-4525-9bd3-2848ed70f514.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5d710bfc-b33f-4525-9bd3-2848ed70f514.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5dd67b00-0da7-4d26-a75a-c819fdf92f5c.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5dd67b00-0da7-4d26-a75a-c819fdf92f5c.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5fb1daed-607f-40f9-b2f6-a725b9c5168a.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5fb1daed-607f-40f9-b2f6-a725b9c5168a.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\61842b5c-320c-4eda-86fc-a6fc4db7691a.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\61842b5c-320c-4eda-86fc-a6fc4db7691a.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\62654df6-5935-447b-a12d-682282aacf28.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\62654df6-5935-447b-a12d-682282aacf28.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\62d07358-ad89-49e8-81d2-9d48521bd66a.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\62d07358-ad89-49e8-81d2-9d48521bd66a.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\6445a2e1-abd9-4f1c-8638-19e8c91eb815.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\6445a2e1-abd9-4f1c-8638-19e8c91eb815.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\6516cb77-e9c1-43f6-bb1f-950d80d63084.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\6516cb77-e9c1-43f6-bb1f-950d80d63084.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\662e85e3-2ef8-455e-969f-a657e88bb472.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\662e85e3-2ef8-455e-969f-a657e88bb472.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\669f79f0-957b-4545-8bc4-571761e8c71f.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\669f79f0-957b-4545-8bc4-571761e8c71f.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\66c1f462-1a57-45bd-a775-c00848dbf855.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\66c1f462-1a57-45bd-a775-c00848dbf855.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\692551b7-b8b7-4d45-98b3-0e83079c1b8e.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\692551b7-b8b7-4d45-98b3-0e83079c1b8e.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\69f0aae2-e75d-443a-96fe-820a08b5b23e.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\69f0aae2-e75d-443a-96fe-820a08b5b23e.extra
C:\Users\Claude\AppData\Roaming\Mozill
Mis à jour le 27/11/2013
Outil lancé en Mode normal et En tant qu'administrateur
Windows 8.1 Pro 32 bits
Tool start in C:\Users\Claude\Downloads
2542 éléments supprimés => 203.08 Mo libérés. (2 mn 6 s)
C:\Users\Claude\AppData\Local\Temp\13520_10891
C:\Users\Claude\AppData\Local\Temp\33420_29997
C:\Users\Claude\AppData\Local\Temp\58EE.tmp
C:\Users\Claude\AppData\Local\Temp\644_7858
C:\Users\Claude\AppData\Local\Temp\A6E5.tmp
C:\Users\Claude\AppData\Local\Temp\acrord32_sbx
C:\Users\Claude\AppData\Local\Temp\acro_rd_dir
C:\Users\Claude\AppData\Local\Temp\AdobeARM.log
C:\Users\Claude\AppData\Local\Temp\AdwCleaner.jpg
C:\Users\Claude\AppData\Local\Temp\chrome_installer.log
C:\Users\Claude\AppData\Local\Temp\Cleaning.ico
C:\Users\Claude\AppData\Local\Temp\Donate.ico
C:\Users\Claude\AppData\Local\Temp\DownloadMngWeb
C:\Users\Claude\AppData\Local\Temp\FE4E.tmp
C:\Users\Claude\AppData\Local\Temp\FXSAPIDebugLogFile.txt
C:\Users\Claude\AppData\Local\Temp\geColladaModelCacheLock
C:\Users\Claude\AppData\Local\Temp\geIconCacheLock
C:\Users\Claude\AppData\Local\Temp\JRT.txt
C:\Users\Claude\AppData\Local\Temp\jusched.log
C:\Users\Claude\AppData\Local\Temp\MicroThemePackDir
C:\Users\Claude\AppData\Local\Temp\Quarantine.exe
C:\Users\Claude\AppData\Local\Temp\Report.ico
C:\Users\Claude\AppData\Local\Temp\Scan.ico
C:\Users\Claude\AppData\Local\Temp\SHSetup.exe
C:\Users\Claude\AppData\Local\Temp\tmp6E93.tmp
C:\Users\Claude\AppData\Local\Temp\Uninstall.ico
C:\Users\Claude\AppData\Local\Temp\winstore.log
C:\Users\Claude\AppData\Local\Temp\_avast_
C:\Users\Claude\AppData\Local\Temp\_iu14D2N.tmp
C:\Users\Claude\AppData\Local\Temp\~DF27CB66D2071B4EE4.TMP
C:\Users\Claude\AppData\Local\Temp\~DF715360A87D287C8C.TMP
C:\Users\Claude\AppData\Local\Temp\~DF72BFB8DB50D024D8.TMP
C:\Users\Claude\AppData\Local\Temp\~DF7E24EB93F2DF5BEC.TMP
C:\Users\Claude\AppData\Local\Temp\~gu3-ver.dat
C:\Users\Claude\AppData\Local\Temp\~nsu.tmp
C:\Users\Claude\AppData\Local\Temp\~upgrade.dat
C:\Users\Claude\AppData\Local\Temp\~nsu.tmp\Au_.exe
C:\Users\Claude\AppData\Local\Temp\Sony\Sony PC Companion\AutoUpdate
C:\Users\Claude\AppData\Local\Temp\Low\_avast_
C:\Users\Claude\AppData\Local\Temp\jrt\APPID_clsid.dat
C:\Users\Claude\AppData\Local\Temp\jrt\APPID_files.dat
C:\Users\Claude\AppData\Local\Temp\jrt\appinit64_null.reg
C:\Users\Claude\AppData\Local\Temp\jrt\appinit_null.reg
C:\Users\Claude\AppData\Local\Temp\jrt\APPPATHS.dat
C:\Users\Claude\AppData\Local\Temp\jrt\APPROVEDEXTENSIONS_clsid.dat
C:\Users\Claude\AppData\Local\Temp\jrt\ask.bat
C:\Users\Claude\AppData\Local\Temp\jrt\askCLSID.dat
C:\Users\Claude\AppData\Local\Temp\jrt\askregkey_x64.dat
C:\Users\Claude\AppData\Local\Temp\jrt\askregkey_x86.dat
C:\Users\Claude\AppData\Local\Temp\jrt\askregvalue_x64.dat
C:\Users\Claude\AppData\Local\Temp\jrt\askregvalue_x86.dat
C:\Users\Claude\AppData\Local\Temp\jrt\askservices.dat
C:\Users\Claude\AppData\Local\Temp\jrt\badAPPINIT.dat
C:\Users\Claude\AppData\Local\Temp\jrt\badFOLDERS.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\badFOLDERScom.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\badFOLDERSstart.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\badLNK.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\badvalues.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\BHO_clsid.dat
C:\Users\Claude\AppData\Local\Temp\jrt\BHO_name.dat
C:\Users\Claude\AppData\Local\Temp\jrt\browsermngr_keys.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\browsermngr_values.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\CHOICE.DAT
C:\Users\Claude\AppData\Local\Temp\jrt\chrome.bat
C:\Users\Claude\AppData\Local\Temp\jrt\CHRregkey_x64.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\CHRregkey_x86.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\CHR_extensions.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\CHR_open_x64.reg
C:\Users\Claude\AppData\Local\Temp\jrt\CHR_open_x86.reg
C:\Users\Claude\AppData\Local\Temp\jrt\clean_shortcut.vbs
C:\Users\Claude\AppData\Local\Temp\jrt\CLSID_clsid.dat
C:\Users\Claude\AppData\Local\Temp\jrt\currentmd5.txt
C:\Users\Claude\AppData\Local\Temp\jrt\CUT.DAT
C:\Users\Claude\AppData\Local\Temp\jrt\datamngr_del.reg
C:\Users\Claude\AppData\Local\Temp\jrt\defaultscope.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\delfolders.bat
C:\Users\Claude\AppData\Local\Temp\jrt\delorphans.bat
C:\Users\Claude\AppData\Local\Temp\jrt\ELEVATIONPOLICY_clsid.dat
C:\Users\Claude\AppData\Local\Temp\jrt\erunt
C:\Users\Claude\AppData\Local\Temp\jrt\ev_clear.bat
C:\Users\Claude\AppData\Local\Temp\jrt\EXT.dat
C:\Users\Claude\AppData\Local\Temp\jrt\FFbrowsermngr.dat
C:\Users\Claude\AppData\Local\Temp\jrt\FFextensions.dat
C:\Users\Claude\AppData\Local\Temp\jrt\FFpluginREG.dat
C:\Users\Claude\AppData\Local\Temp\jrt\FFplugins.dat
C:\Users\Claude\AppData\Local\Temp\jrt\FFprefs.dat
C:\Users\Claude\AppData\Local\Temp\jrt\FFregkey_x64.dat
C:\Users\Claude\AppData\Local\Temp\jrt\FFregkey_x86.dat
C:\Users\Claude\AppData\Local\Temp\jrt\FFwhtlist.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\FFXML.dat
C:\Users\Claude\AppData\Local\Temp\jrt\FFXPI.dat
C:\Users\Claude\AppData\Local\Temp\jrt\FF_open_x64.reg
C:\Users\Claude\AppData\Local\Temp\jrt\FF_open_x86.reg
C:\Users\Claude\AppData\Local\Temp\jrt\firefox.bat
C:\Users\Claude\AppData\Local\Temp\jrt\FWCLSID.dat
C:\Users\Claude\AppData\Local\Temp\jrt\FWPolicy.bat
C:\Users\Claude\AppData\Local\Temp\jrt\get.bat
C:\Users\Claude\AppData\Local\Temp\jrt\IEwhtlst.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\iexplore.bat
C:\Users\Claude\AppData\Local\Temp\jrt\IE_open_x64.reg
C:\Users\Claude\AppData\Local\Temp\jrt\IE_open_x86.reg
C:\Users\Claude\AppData\Local\Temp\jrt\IFEO.dat
C:\Users\Claude\AppData\Local\Temp\jrt\INTERFACE_clsid.dat
C:\Users\Claude\AppData\Local\Temp\jrt\JRT.bat
C:\Users\Claude\AppData\Local\Temp\jrt\medfos.bat
C:\Users\Claude\AppData\Local\Temp\jrt\MENUEXT.dat
C:\Users\Claude\AppData\Local\Temp\jrt\misc.bat
C:\Users\Claude\AppData\Local\Temp\jrt\modules.bat
C:\Users\Claude\AppData\Local\Temp\jrt\modules.dat
C:\Users\Claude\AppData\Local\Temp\jrt\moduleservices.dat
C:\Users\Claude\AppData\Local\Temp\jrt\newmd5.txt
C:\Users\Claude\AppData\Local\Temp\jrt\NIRCMD.DAT
C:\Users\Claude\AppData\Local\Temp\jrt\NOTIFY.dat
C:\Users\Claude\AppData\Local\Temp\jrt\PREAPPROVED_clsid.dat
C:\Users\Claude\AppData\Local\Temp\jrt\prelim.bat
C:\Users\Claude\AppData\Local\Temp\jrt\PRODUCTS.dat
C:\Users\Claude\AppData\Local\Temp\jrt\REGhcr.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\REGhkcu_and_hklm_allow.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\REGhkcu_and_hklm_software.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\REGhkcu_software_appdatalow.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\REGhkcu_software_microsoft.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\REGhklm_software_classes.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\REGISTRYUSERSID.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\runvalues.bat
C:\Users\Claude\AppData\Local\Temp\jrt\runvalues_x64.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\runvalues_x86.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\S1518COMPONENTS.dat
C:\Users\Claude\AppData\Local\Temp\jrt\searchlnk.bat
C:\Users\Claude\AppData\Local\Temp\jrt\SED.DAT
C:\Users\Claude\AppData\Local\Temp\jrt\sednewline.txt
C:\Users\Claude\AppData\Local\Temp\jrt\services.dat
C:\Users\Claude\AppData\Local\Temp\jrt\serviceseventlog.cfg
C:\Users\Claude\AppData\Local\Temp\jrt\SETTINGS_clsid.dat
C:\Users\Claude\AppData\Local\Temp\jrt\SHORTCUT.DAT
C:\Users\Claude\AppData\Local\Temp\jrt\STATS_clsid.dat
C:\Users\Claude\AppData\Local\Temp\jrt\TDL4.bat
C:\Users\Claude\AppData\Local\Temp\jrt\temp
C:\Users\Claude\AppData\Local\Temp\jrt\TRACING.dat
C:\Users\Claude\AppData\Local\Temp\jrt\TYPELIB_clsid.dat
C:\Users\Claude\AppData\Local\Temp\jrt\UNINSTALL.dat
C:\Users\Claude\AppData\Local\Temp\jrt\UpgradeCodes.dat
C:\Users\Claude\AppData\Local\Temp\jrt\WGET.DAT
C:\Users\Claude\AppData\Local\Temp\jrt\WOW6432NODE.dat
C:\Users\Claude\AppData\Local\Temp\jrt\temp\null.txt
C:\Users\Claude\AppData\Local\Temp\jrt\erunt\ERDNT.E_E
C:\Users\Claude\AppData\Local\Temp\jrt\erunt\ERDNTDOS.LOC
C:\Users\Claude\AppData\Local\Temp\jrt\erunt\ERDNTWIN.LOC
C:\Users\Claude\AppData\Local\Temp\jrt\erunt\ERUNT.EXE
C:\Users\Claude\AppData\Local\Temp\jrt\erunt\ERUNT.EXE.manifest
C:\Users\Claude\AppData\Local\Temp\jrt\erunt\ERUNT.LOC
C:\Users\Claude\AppData\Local\Temp\jrt\erunt\README.TXT
C:\Users\Claude\AppData\Local\Temp\644_7858\crl-set
C:\Users\Claude\AppData\Local\Temp\644_7858\manifest.fingerprint
C:\Users\Claude\AppData\Local\Temp\644_7858\manifest.json
C:\Users\Claude\AppData\Local\Temp\33420_29997\crl-set
C:\Users\Claude\AppData\Local\Temp\33420_29997\manifest.fingerprint
C:\Users\Claude\AppData\Local\Temp\33420_29997\manifest.json
C:\Users\Claude\AppData\Local\Temp\13520_10891\crl-set
C:\Users\Claude\AppData\Local\Temp\13520_10891\manifest.fingerprint
C:\Users\Claude\AppData\Local\Temp\13520_10891\manifest.json
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\desktop.ini
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\Icones divers.lnk
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\Internet.lnk
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\Paris, années folles_France 3_2013_12_02_20_45.lnk
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\Programmes.lnk
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\releve-frais-bancaires-2012.lnk
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\Téléchargements.lnk
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\Vidéos.lnk
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\ZHP.lnk
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\ZHPDiag.lnk
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\ZHPDiag02.lnk
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\16ec093b8f51508f.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\1c3c28b25e13726b.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\28c8b86deab549a1.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\2d70f449198b5ef.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\58243947b603842f.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\5d696d521de238c3.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\6824f4a902c78fbd.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\6c810151099d596c.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\74d7f43c1561fc1e.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\74ea779831912e30.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\7e4dca80246863e3.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\83b03b46dcd30a0e.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\b9483f7924f9da8f.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\bfbfdf7871e8b5f0.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\d93f411851d7c929.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\da5a7077b2b54a11.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\EWM3I0CSZLAU2GP7FG4F.temp
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\f01b4d95cf55d32a.customDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\CustomDestinations\S0OI0QPCQHPQP15A2479.temp
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\16ec093b8f51508f.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\17d1c91f77b48425.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\1da3c90a72bf5527.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\1ded3aa577f51a31.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\230591a922eacc7a.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\26bfbdac8c66cb7d.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\28c8b86deab549a1.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\2b88af31b31e51e0.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\3355ae6abae97972.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\36a544b3e9019647.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\43578521d78096c6.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\4cb9c5750d51c07f.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\5d696d521de238c3.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\74d7f43c1561fc1e.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\7b5c98cbfa323717.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\7e4dca80246863e3.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\918e0ecb43d17e23.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\9d5b1032b428d3f3.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\9fda41b86ddcf1db.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\a6fdbfe7f691224e.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\adc1cc1f58ef409f.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\ae6df75df512bd06.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\b3f13480c2785ae.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\cb9ad8ad41d1d385.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\ce2b855427a09fe3.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\d64293cd816830d0.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\ea57996c51cec432.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\f01b4d95cf55d32a.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\f30583f2eab29b80.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\f3c90dec42360729.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Microsoft\Windows\Recent\AutomaticDestinations\ff103e2cc310d0d.automaticDestinations-ms
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\00812f51-80ba-4f9f-80c7-24bda612f7d4.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\00812f51-80ba-4f9f-80c7-24bda612f7d4.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\00b0edb3-ac1a-4557-b8b5-9326eeac5278.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\00b0edb3-ac1a-4557-b8b5-9326eeac5278.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\00c743d1-9566-4af3-a7c5-495f22cbec72.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\00c743d1-9566-4af3-a7c5-495f22cbec72.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\00da3986-c0d7-4c24-8613-e5936dd0841f.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\00da3986-c0d7-4c24-8613-e5936dd0841f.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\016c6a0f-8609-4d29-8b26-825a6a673f63.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\016c6a0f-8609-4d29-8b26-825a6a673f63.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\019dec58-2074-4ff1-9113-a481e0ca4ba8.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\019dec58-2074-4ff1-9113-a481e0ca4ba8.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\035a87ef-90ee-414e-a9e0-6e74b1bc7b76.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\035a87ef-90ee-414e-a9e0-6e74b1bc7b76.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\03cb6e24-14e4-4511-9f49-da5cfe8fe636.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\03cb6e24-14e4-4511-9f49-da5cfe8fe636.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\04e2a509-e4a6-488f-83d1-4d8da8061640.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\04e2a509-e4a6-488f-83d1-4d8da8061640.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\051606ab-af95-4ee9-b5a1-b48728b2967c.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\051606ab-af95-4ee9-b5a1-b48728b2967c.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\067f0892-058b-4942-bffa-e47540ab7fa3.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\067f0892-058b-4942-bffa-e47540ab7fa3.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\07861612-ae56-4d47-b3fd-4c8f25b73aee.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\07861612-ae56-4d47-b3fd-4c8f25b73aee.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\07b61a40-9b81-4e11-a56e-720ff0a367ab.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\07b61a40-9b81-4e11-a56e-720ff0a367ab.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\07d8e719-4245-44e7-995f-a2a9431e4a5d.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\07d8e719-4245-44e7-995f-a2a9431e4a5d.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\08414552-da10-4f85-9027-83331f3bff2f.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\08414552-da10-4f85-9027-83331f3bff2f.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\087276f1-2e48-4be1-a6e7-ccb39f3579eb.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\087276f1-2e48-4be1-a6e7-ccb39f3579eb.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\08a65dc8-afbf-46f4-9b41-d5e611da270d.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\08a65dc8-afbf-46f4-9b41-d5e611da270d.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\08af6a5b-b720-40d3-a60c-61636ff1f053.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\08af6a5b-b720-40d3-a60c-61636ff1f053.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\08b6536f-e909-4703-8ca1-96cb81ba4a15.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\08b6536f-e909-4703-8ca1-96cb81ba4a15.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0a77aaef-8eea-4293-bc7e-b0dbe75e7fe5.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0a77aaef-8eea-4293-bc7e-b0dbe75e7fe5.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0aca1cbd-a071-4410-b04b-cc11c55cfb21.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0aca1cbd-a071-4410-b04b-cc11c55cfb21.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0b542695-e3fa-4b33-be2d-6d105da8bcc5.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0b542695-e3fa-4b33-be2d-6d105da8bcc5.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0c868f19-003f-4aaf-acc3-2668e3a5e51e.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0c868f19-003f-4aaf-acc3-2668e3a5e51e.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0da3ad71-272f-44e0-b97d-162dc60abe06.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0da3ad71-272f-44e0-b97d-162dc60abe06.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0ef49bde-2a29-40fe-8437-1fd6e22b46b1.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0ef49bde-2a29-40fe-8437-1fd6e22b46b1.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0f056865-e468-4d25-aaf9-5dafaff67318.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0f056865-e468-4d25-aaf9-5dafaff67318.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0f554b24-92b6-41a4-8198-e7c1a285f9cc.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0f554b24-92b6-41a4-8198-e7c1a285f9cc.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0f5a6242-ce44-48ba-b191-2ead545dfd6a.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\0f5a6242-ce44-48ba-b191-2ead545dfd6a.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\10422875-f5ba-45ac-8f1e-8a28fbbc88da.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\10422875-f5ba-45ac-8f1e-8a28fbbc88da.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\106ad41a-2b4e-413c-816f-b393620a7619.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\106ad41a-2b4e-413c-816f-b393620a7619.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\10b17774-b1cc-460f-83aa-baff60b5030e.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\10b17774-b1cc-460f-83aa-baff60b5030e.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\11176cf0-39f7-4235-a27e-3f662a7d1fa3.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\11176cf0-39f7-4235-a27e-3f662a7d1fa3.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1135c0f0-3169-47a3-9dc1-cecd2de07f2c.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1135c0f0-3169-47a3-9dc1-cecd2de07f2c.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\114779b6-19fd-4d39-a737-772489901e00.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\114779b6-19fd-4d39-a737-772489901e00.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\11d1ff98-9c24-46ce-933b-e67fbd1f491d.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\11d1ff98-9c24-46ce-933b-e67fbd1f491d.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\12b14161-213b-4793-baac-1d513b99d7e1.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\12b14161-213b-4793-baac-1d513b99d7e1.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\134f7bbb-d27a-4fb4-a8c2-58660b870e03.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\134f7bbb-d27a-4fb4-a8c2-58660b870e03.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\13a10819-8d44-469f-9e5b-1a8e5e4c29e1.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\13a10819-8d44-469f-9e5b-1a8e5e4c29e1.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\13dc5ff9-5b77-4c33-a0b8-787111b79199.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\13dc5ff9-5b77-4c33-a0b8-787111b79199.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\13e26f47-c7d3-45ac-991a-a43dfae4e818.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\13e26f47-c7d3-45ac-991a-a43dfae4e818.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\14051ae5-57ac-4077-b4b2-31f328171767.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\14051ae5-57ac-4077-b4b2-31f328171767.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\14054c7b-791e-4419-9c98-42832ad51c04.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\14054c7b-791e-4419-9c98-42832ad51c04.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\14da8371-7608-428a-ba70-80fb9e856a98.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\14da8371-7608-428a-ba70-80fb9e856a98.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\14f9fc19-b028-43bb-b4bd-558b1cba808d.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\14f9fc19-b028-43bb-b4bd-558b1cba808d.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\15063f76-cec5-45ec-bd8e-c9cecd97dc5a.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\15063f76-cec5-45ec-bd8e-c9cecd97dc5a.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\15086e82-7e8f-4610-bb16-657ccc5b8d1c.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\15086e82-7e8f-4610-bb16-657ccc5b8d1c.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\151d411a-f810-41f3-8d54-062b5c1e2248.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\151d411a-f810-41f3-8d54-062b5c1e2248.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\15201ced-624c-4066-ab54-7920eb903b00.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\15201ced-624c-4066-ab54-7920eb903b00.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\155c9682-9c32-452a-b740-b3e5cab561c7.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\155c9682-9c32-452a-b740-b3e5cab561c7.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\165a3a67-707e-4bce-8f24-c865c98dc82b.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\165a3a67-707e-4bce-8f24-c865c98dc82b.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1663e593-f625-4307-856a-dc6558c29b0d.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1663e593-f625-4307-856a-dc6558c29b0d.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1792b99a-e7a2-4462-838e-1250a36b7d11.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1792b99a-e7a2-4462-838e-1250a36b7d11.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\18a07f09-da66-40d5-a538-8b6c7fd1b59a.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\18a07f09-da66-40d5-a538-8b6c7fd1b59a.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\193708fa-32f6-4994-89c8-8601eb3147b8.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\193708fa-32f6-4994-89c8-8601eb3147b8.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1a3073ef-e3eb-4884-9e94-c5fbf3b7948f.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1a3073ef-e3eb-4884-9e94-c5fbf3b7948f.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1a9c8b88-4ce2-4201-bebf-f7f8074d830e.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1a9c8b88-4ce2-4201-bebf-f7f8074d830e.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1b4e7ec7-4a7f-4d29-b097-9f678a5dfe17.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1b4e7ec7-4a7f-4d29-b097-9f678a5dfe17.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1b585df7-5f75-4213-add1-8ddc81cfaabe.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1b585df7-5f75-4213-add1-8ddc81cfaabe.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1c362f2f-9cd5-4542-97f6-4f40aea4ccf9.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1c362f2f-9cd5-4542-97f6-4f40aea4ccf9.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1c717ceb-ea42-42f6-8da4-4ccfcd53a367.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1c717ceb-ea42-42f6-8da4-4ccfcd53a367.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1c75374b-a40a-4bf1-b2c1-9c9b184dff7f.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1c75374b-a40a-4bf1-b2c1-9c9b184dff7f.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1d3fbfeb-83f6-4902-8663-6e2ebfa65601.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1d3fbfeb-83f6-4902-8663-6e2ebfa65601.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1d695ffc-19e0-4e7e-9b89-a578fa590012.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1d695ffc-19e0-4e7e-9b89-a578fa590012.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1dc46841-d0f2-4281-80e3-08eff61dd309.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1dc46841-d0f2-4281-80e3-08eff61dd309.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1ebd86e7-800c-49b3-8404-f6d36397c456.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1ebd86e7-800c-49b3-8404-f6d36397c456.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1ee0df22-8a2a-4248-bae9-34f4d651504f.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\1ee0df22-8a2a-4248-bae9-34f4d651504f.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\207842be-ba96-469a-9732-723813f57beb.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\207842be-ba96-469a-9732-723813f57beb.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\219f0100-d721-43aa-923e-2277afad737b.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\219f0100-d721-43aa-923e-2277afad737b.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\22231957-cd6c-4d7f-af73-d52912093223.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\22231957-cd6c-4d7f-af73-d52912093223.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\22d01c36-a5a4-4449-a146-f84d4c33c751.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\22d01c36-a5a4-4449-a146-f84d4c33c751.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\232aa215-7baa-4664-95b1-ab506e654778.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\232aa215-7baa-4664-95b1-ab506e654778.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\23a6df20-5470-4f90-bb72-96cf8f0119cf.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\23a6df20-5470-4f90-bb72-96cf8f0119cf.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\251f3bc3-0f64-42f3-9936-1bb05efdf665.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\251f3bc3-0f64-42f3-9936-1bb05efdf665.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\255f8b55-cc77-43f5-b44a-6c600ae48a98.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\255f8b55-cc77-43f5-b44a-6c600ae48a98.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\258ccbc2-6c24-4589-8327-235efcba5362.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\258ccbc2-6c24-4589-8327-235efcba5362.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\26046ee9-f373-4bfa-948d-a3f8adc09471.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\26046ee9-f373-4bfa-948d-a3f8adc09471.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\26198744-def9-47ba-9a2d-1c45d890e324.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\26198744-def9-47ba-9a2d-1c45d890e324.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\282f5c79-257d-4446-8070-77c4d6ec9b4d.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\282f5c79-257d-4446-8070-77c4d6ec9b4d.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\288d60cf-5ec1-45bf-9c76-8544f8be9a89.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\288d60cf-5ec1-45bf-9c76-8544f8be9a89.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\289e3d06-fc1b-4162-9083-121dfead4c54.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\289e3d06-fc1b-4162-9083-121dfead4c54.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\299b1b30-f5b1-4f11-baba-e46f47e6655e.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\299b1b30-f5b1-4f11-baba-e46f47e6655e.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2a6b3722-57cd-4403-b1b6-3c81f586cafc.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2a6b3722-57cd-4403-b1b6-3c81f586cafc.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2abce2af-ce3f-4191-94ef-669248509f33.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2abce2af-ce3f-4191-94ef-669248509f33.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2ae2aa05-ee0e-4788-8ac9-18edf10c8a3a.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2ae2aa05-ee0e-4788-8ac9-18edf10c8a3a.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2b338f83-1dd9-4b25-8afa-b3c3ad8fdad5.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2b338f83-1dd9-4b25-8afa-b3c3ad8fdad5.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2c349a41-2b06-47c2-97fd-3374d03bad51.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2c349a41-2b06-47c2-97fd-3374d03bad51.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2c5aef5f-9ed8-4c09-97fe-3cfe600ea9d5.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2c5aef5f-9ed8-4c09-97fe-3cfe600ea9d5.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2cc30903-a9d6-43b6-b489-7aae89a525bd.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2cc30903-a9d6-43b6-b489-7aae89a525bd.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2d03c038-5633-4112-b3b8-ffa9c56152e8.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2d03c038-5633-4112-b3b8-ffa9c56152e8.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2d081253-86b3-4aac-a723-755ccb8784f4.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2d081253-86b3-4aac-a723-755ccb8784f4.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2de307f0-f8e9-4406-91ff-2310ac69281d.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2de307f0-f8e9-4406-91ff-2310ac69281d.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2e559292-c9f2-42de-84d9-4be99d09b29b.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2e559292-c9f2-42de-84d9-4be99d09b29b.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2eb1b5ec-9d3b-4efd-8eaf-ad6184d45fce.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2eb1b5ec-9d3b-4efd-8eaf-ad6184d45fce.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2ebb8e4f-c243-4ba6-a349-dc3857ea5ffe.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2ebb8e4f-c243-4ba6-a349-dc3857ea5ffe.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2ec07f89-a395-4276-9d6a-54385093f6d8.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2ec07f89-a395-4276-9d6a-54385093f6d8.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2feff1b9-380e-4c59-9581-fe15f59b86a9.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2feff1b9-380e-4c59-9581-fe15f59b86a9.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2ffb7ace-742d-420c-9021-5e0cf90bb53d.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\2ffb7ace-742d-420c-9021-5e0cf90bb53d.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\302aab58-24e4-4d68-b450-f90462b2429f.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\302aab58-24e4-4d68-b450-f90462b2429f.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3127200a-bf68-4540-9b9d-d065de24b69d.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3127200a-bf68-4540-9b9d-d065de24b69d.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\31489aa4-bc4e-48a9-a538-6a276465dfea.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\31489aa4-bc4e-48a9-a538-6a276465dfea.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\32439494-1149-40b2-a30d-c3ae771aca80.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\32439494-1149-40b2-a30d-c3ae771aca80.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\32606e02-e903-4807-a444-f1ff4dadfbf4.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\32606e02-e903-4807-a444-f1ff4dadfbf4.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\333e9caa-c076-40b6-bb28-f7b8ebc666fb.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\333e9caa-c076-40b6-bb28-f7b8ebc666fb.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3342e7bf-3b79-4568-9dc5-5618bd848fb0.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3342e7bf-3b79-4568-9dc5-5618bd848fb0.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\33e53a05-9fe1-4c2f-9384-8194375fe458.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\33e53a05-9fe1-4c2f-9384-8194375fe458.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\33e881e2-fd82-4e98-ae28-61c63b41b833.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\33e881e2-fd82-4e98-ae28-61c63b41b833.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\33f73808-4f3b-4a9d-9bc9-189fddd54c1c.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\33f73808-4f3b-4a9d-9bc9-189fddd54c1c.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3425886d-2d43-4a48-8edf-405c7bdf0cb1.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3425886d-2d43-4a48-8edf-405c7bdf0cb1.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\34fbced0-3a3c-4c36-b49f-73c4b4902c1c.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\34fbced0-3a3c-4c36-b49f-73c4b4902c1c.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\36076c39-05e9-413b-8921-cc9f38e56442.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\36076c39-05e9-413b-8921-cc9f38e56442.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\367c67d6-da2e-49dd-a335-004bf39a338b.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\367c67d6-da2e-49dd-a335-004bf39a338b.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\368c75d7-8b63-41cb-91b6-09f86d7e556d.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\368c75d7-8b63-41cb-91b6-09f86d7e556d.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\381aca8e-44e0-4d02-99e7-4686394cb69e.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\381aca8e-44e0-4d02-99e7-4686394cb69e.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\38b78a7d-c7fd-4be4-81fd-6aaaddc571ad.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\38b78a7d-c7fd-4be4-81fd-6aaaddc571ad.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\38c3997e-0cbd-49bd-bb87-f24055f97564.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\38c3997e-0cbd-49bd-bb87-f24055f97564.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\38db5907-2a23-4e8a-b3dc-00b4f7f89c53.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\38db5907-2a23-4e8a-b3dc-00b4f7f89c53.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\391b4906-689d-46b7-b681-d73def41d2df.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\391b4906-689d-46b7-b681-d73def41d2df.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\39458d11-9ffd-4137-8014-5fbd0c56fbe7.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\39458d11-9ffd-4137-8014-5fbd0c56fbe7.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\39dcbd49-64fe-4cb5-a247-b3fba0362123.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\39dcbd49-64fe-4cb5-a247-b3fba0362123.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\39dde932-b38b-4352-bedb-81d1452ae1ac.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\39dde932-b38b-4352-bedb-81d1452ae1ac.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\39df8767-79c2-435e-b097-0fff5a3e1ece.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\39df8767-79c2-435e-b097-0fff5a3e1ece.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3a232f0d-e996-4202-a6ab-a170118abc93.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3a232f0d-e996-4202-a6ab-a170118abc93.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3a5a8ccd-891f-45ba-ac98-593e1c97aa91.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3a5a8ccd-891f-45ba-ac98-593e1c97aa91.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3b3aa2db-b5bc-415a-8b9d-a5aa1b7823db.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3b3aa2db-b5bc-415a-8b9d-a5aa1b7823db.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3c330578-2aeb-4050-8902-20fc71e12aeb.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3c330578-2aeb-4050-8902-20fc71e12aeb.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3cb0c95d-cf0b-49fe-a082-7c4583ad1b12.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3cb0c95d-cf0b-49fe-a082-7c4583ad1b12.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3dbbf15f-3f21-460b-884a-0d23c349faf0.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3dbbf15f-3f21-460b-884a-0d23c349faf0.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3e79fccb-36d2-444f-b1ec-bf341a0b9fb7.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3e79fccb-36d2-444f-b1ec-bf341a0b9fb7.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3ed8ca20-d873-43fa-969a-e57366e6dac4.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3ed8ca20-d873-43fa-969a-e57366e6dac4.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3f4a7a80-c5a9-4f7c-9691-ad7994e0a3be.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3f4a7a80-c5a9-4f7c-9691-ad7994e0a3be.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3f6ef5b9-7206-4799-a661-26e2ae5dd2f0.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\3f6ef5b9-7206-4799-a661-26e2ae5dd2f0.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\402fa776-5dc4-4d4a-a13f-dce0ff2c732b.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\402fa776-5dc4-4d4a-a13f-dce0ff2c732b.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\40f2fbb8-990f-44cb-b1d4-e1bbdc608dbb.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\40f2fbb8-990f-44cb-b1d4-e1bbdc608dbb.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\413c8053-b39c-4996-ad6c-503e64b514b1.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\413c8053-b39c-4996-ad6c-503e64b514b1.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\417df7b4-01e6-4ec5-9ba8-0dcbe2dd1376.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\417df7b4-01e6-4ec5-9ba8-0dcbe2dd1376.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\41f5485b-59ba-42fd-b235-c4ff78215242.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\41f5485b-59ba-42fd-b235-c4ff78215242.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\42ecc935-1ac0-4f95-a1af-d9b43c0c3402.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\42ecc935-1ac0-4f95-a1af-d9b43c0c3402.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\442168b5-d173-4790-b6c4-b24bc6cfea25.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\442168b5-d173-4790-b6c4-b24bc6cfea25.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4464a454-4a34-4888-9aad-2adba38b5f8f.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4464a454-4a34-4888-9aad-2adba38b5f8f.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\446b28b2-1c68-4e01-8349-ab479c90ac7a.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\446b28b2-1c68-4e01-8349-ab479c90ac7a.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\447db69c-64fd-410f-b693-6af3c8c7151c.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\447db69c-64fd-410f-b693-6af3c8c7151c.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\449e0157-a2d6-4474-9d33-47b7be9450be.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\449e0157-a2d6-4474-9d33-47b7be9450be.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\44a8dd04-0f15-431b-8582-fc84e13d8e8e.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\44a8dd04-0f15-431b-8582-fc84e13d8e8e.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\44b80479-3ce8-454e-8689-6ec59d5218f4.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\44b80479-3ce8-454e-8689-6ec59d5218f4.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\44cd7f34-6b6c-4870-9559-0ae99deea5a9.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\44cd7f34-6b6c-4870-9559-0ae99deea5a9.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\45da11a1-77e9-4ffd-a426-eca900fec46e.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\45da11a1-77e9-4ffd-a426-eca900fec46e.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\47711b74-c3d0-405d-b501-9ce0c5688b76.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\47711b74-c3d0-405d-b501-9ce0c5688b76.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\487d46e9-d9de-4197-8389-ab38091a3830.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\487d46e9-d9de-4197-8389-ab38091a3830.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4995be76-c1ea-4584-a257-893f42719b2e.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4995be76-c1ea-4584-a257-893f42719b2e.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4abaa65f-a233-4734-97a1-35d1a6eb1162.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4abaa65f-a233-4734-97a1-35d1a6eb1162.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4b1f1915-b9c9-4e59-b5bc-2c8b499c3ceb.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4b1f1915-b9c9-4e59-b5bc-2c8b499c3ceb.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4baa9338-c662-41a8-8e9f-70c96409580a.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4baa9338-c662-41a8-8e9f-70c96409580a.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4c7879df-5a55-4812-bbff-4e029b1e2a63.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4c7879df-5a55-4812-bbff-4e029b1e2a63.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4d088c37-f255-482f-adf6-ad5ccddbdf2b.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4d088c37-f255-482f-adf6-ad5ccddbdf2b.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4d2515dd-29a9-44f7-81eb-69a484fa0e2e.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4d2515dd-29a9-44f7-81eb-69a484fa0e2e.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4d67b247-d927-48d1-ab02-ef9a804bb77a.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4d67b247-d927-48d1-ab02-ef9a804bb77a.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4ecb669a-6f57-47dc-a555-fd937dd4ba56.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4ecb669a-6f57-47dc-a555-fd937dd4ba56.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4edc9455-8cd9-48ff-941c-5e54e4eaa598.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4edc9455-8cd9-48ff-941c-5e54e4eaa598.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4efa4f83-8682-4f9c-b0a6-f5016d4dda9d.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4efa4f83-8682-4f9c-b0a6-f5016d4dda9d.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4f15473e-8a2b-4b2c-9c23-62e008aade31.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4f15473e-8a2b-4b2c-9c23-62e008aade31.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4f976789-065e-492a-9426-20a20d37a343.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4f976789-065e-492a-9426-20a20d37a343.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4f9ec8de-2acd-415b-af39-4aa752645ab8.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\4f9ec8de-2acd-415b-af39-4aa752645ab8.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5039e4ff-3e58-45bb-9dd8-7890eef195ce.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5039e4ff-3e58-45bb-9dd8-7890eef195ce.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\50641755-05a1-4969-aca2-da9a1b6b5b25.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\50641755-05a1-4969-aca2-da9a1b6b5b25.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\509bc96d-21ee-4f61-8e31-b4501648237c.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\509bc96d-21ee-4f61-8e31-b4501648237c.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\51216c01-4604-4a45-a8ca-6d7bb4594d13.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\51216c01-4604-4a45-a8ca-6d7bb4594d13.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5146a5e8-89f2-469c-abd9-80b4b975b3d9.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5146a5e8-89f2-469c-abd9-80b4b975b3d9.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\51aa462d-fa73-4b0d-9afc-292709ca7b5f.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\51aa462d-fa73-4b0d-9afc-292709ca7b5f.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\52541a28-3763-426e-9946-1061fce2b0e7.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\52541a28-3763-426e-9946-1061fce2b0e7.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\53323745-52d9-4433-a34a-6ac743d04513.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\53323745-52d9-4433-a34a-6ac743d04513.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\53845cfb-d0b2-4730-a9f0-0624f3823c13.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\53845cfb-d0b2-4730-a9f0-0624f3823c13.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\538a160a-f4e1-4108-8714-072ba91488f8.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\538a160a-f4e1-4108-8714-072ba91488f8.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\53fce45e-d905-41b3-9673-f4053c714b06.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\53fce45e-d905-41b3-9673-f4053c714b06.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\54e4cf8e-3f9d-44ed-8523-d3ded604e5ae.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\54e4cf8e-3f9d-44ed-8523-d3ded604e5ae.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5604a172-1b2e-4b77-afa2-f96ea229a5d1.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5604a172-1b2e-4b77-afa2-f96ea229a5d1.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5642cc4a-f776-474d-9c95-2c6491129be9.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5642cc4a-f776-474d-9c95-2c6491129be9.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\56868786-4203-43d3-af42-a2841b5f1831.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\56868786-4203-43d3-af42-a2841b5f1831.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\575f4633-bee2-4e3b-b323-f3db2e52a45c.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\575f4633-bee2-4e3b-b323-f3db2e52a45c.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\57f74664-a69b-4ce3-91bf-7d3bc9c60fe7.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\57f74664-a69b-4ce3-91bf-7d3bc9c60fe7.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\58909ad2-db40-49a3-b4fc-b96d9757e4f0.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\58909ad2-db40-49a3-b4fc-b96d9757e4f0.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\589113f7-e039-4733-a98a-5d36b3c219ce.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\589113f7-e039-4733-a98a-5d36b3c219ce.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\595ed418-aa94-428b-ae84-48fde58a1c51.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\595ed418-aa94-428b-ae84-48fde58a1c51.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5a11561f-e5a6-4581-8b4e-45b3847273cf.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5a11561f-e5a6-4581-8b4e-45b3847273cf.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5a41400e-9d25-4af9-9b21-309697831bb2.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5a41400e-9d25-4af9-9b21-309697831bb2.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5a8d0b6b-773c-4b21-9d38-d0ee45ffb9fc.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5a8d0b6b-773c-4b21-9d38-d0ee45ffb9fc.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5b881935-ae45-4aba-909f-a382168a3324.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5b881935-ae45-4aba-909f-a382168a3324.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5be13e6a-8055-4470-97b0-c28e094e2497.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5be13e6a-8055-4470-97b0-c28e094e2497.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5c4aa466-e5a2-4349-92bb-b55a873b8ebf.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5c4aa466-e5a2-4349-92bb-b55a873b8ebf.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5c83eee7-dc06-4386-9432-a50c3aa9a475.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5c83eee7-dc06-4386-9432-a50c3aa9a475.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5d710bfc-b33f-4525-9bd3-2848ed70f514.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5d710bfc-b33f-4525-9bd3-2848ed70f514.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5dd67b00-0da7-4d26-a75a-c819fdf92f5c.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5dd67b00-0da7-4d26-a75a-c819fdf92f5c.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5fb1daed-607f-40f9-b2f6-a725b9c5168a.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\5fb1daed-607f-40f9-b2f6-a725b9c5168a.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\61842b5c-320c-4eda-86fc-a6fc4db7691a.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\61842b5c-320c-4eda-86fc-a6fc4db7691a.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\62654df6-5935-447b-a12d-682282aacf28.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\62654df6-5935-447b-a12d-682282aacf28.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\62d07358-ad89-49e8-81d2-9d48521bd66a.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\62d07358-ad89-49e8-81d2-9d48521bd66a.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\6445a2e1-abd9-4f1c-8638-19e8c91eb815.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\6445a2e1-abd9-4f1c-8638-19e8c91eb815.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\6516cb77-e9c1-43f6-bb1f-950d80d63084.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\6516cb77-e9c1-43f6-bb1f-950d80d63084.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\662e85e3-2ef8-455e-969f-a657e88bb472.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\662e85e3-2ef8-455e-969f-a657e88bb472.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\669f79f0-957b-4545-8bc4-571761e8c71f.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\669f79f0-957b-4545-8bc4-571761e8c71f.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\66c1f462-1a57-45bd-a775-c00848dbf855.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\66c1f462-1a57-45bd-a775-c00848dbf855.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\692551b7-b8b7-4d45-98b3-0e83079c1b8e.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\692551b7-b8b7-4d45-98b3-0e83079c1b8e.extra
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\69f0aae2-e75d-443a-96fe-820a08b5b23e.dmp
C:\Users\Claude\AppData\Roaming\Mozilla\Firefox\Crash Reports\pending\69f0aae2-e75d-443a-96fe-820a08b5b23e.extra
C:\Users\Claude\AppData\Roaming\Mozill
lilidurhone
Messages postés
43347
Date d'inscription
lundi 25 avril 2011
Statut
Contributeur sécurité
Dernière intervention
31 octobre 2024
3 807
23 déc. 2013 à 18:10
23 déc. 2013 à 18:10
Refais un zhpdiag