~ Rapport de ZHPDiag v2013.10.12.33 - Nicolas Coolman (12/10/2013)
~ Lancé par BAMBABADRA (13/10/2013 16:03:14)
~ Adresse du Site Web
https://nicolascoolman.webs.com
~ Traduit par Nicolas Coolman
~ Etat de la version :
~ Liste blanche : Activée par le programme
~ Elévation des Privilèges : OK
~ User Account Control (UAC):
---\\ Navigateurs Internet
MSIE: Internet Explorer v10.0.9200.16688
MFIE: Mozilla Firefox 10.0.2
---\\ Informations sur les produits Windows
~ Langage: Français
Windows 8 Business Edition, 64-bit (Build 9200)
Windows Server License Manager Script : OK
~ ion : Windows(R) Operating System, OEM_DM channel
Windows ID Activation : OK
~ Windows Partial Key : 7MFFC
Windows License : OK
~ Windows Remaining Initializations Number : 998
Software Protection Service (Protection logicielle) : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK
---\\ Logiciels de protection du système
avast! Free Antivirus v8.0.1497.0
Windows Defender W8
---\\ Logiciels d'optimisation du système
---\\ Logiciels de partage PeerToPeer
µTorrent v2.2.1 =>P2P.µTorrent
---\\ Surveillance de Logiciels
Adobe Flash Player 10 Plugin
Adobe Reader 9 - Français
---\\ Informations sur le système
~ Processor: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
~ Operating System: 64 Bits
Boot mode: Normal (Normal boot)
Total RAM: 3976 MB (41% free)
System Restore: Activé (Enable)
System drive C: has 270 GB (60%) free of 449 GB
---\\ Mode de connexion au système
~ Computer Name: IDRISS
~ User Name: BAMBABADRA
~ All Users Names: Guest, BAMBABADRA, Administrator,
~ Unselected Option: None
Logged in as Administrator
---\\ Variables d'environnement
~ System Unit : C:\
~ %AppZHP% : C:\Users\BAMBABADRA\AppData\Roaming\ZHP\
~ %AppData% : C:\Users\BAMBABADRA\AppData\Roaming\
~ %Desktop% : C:\Users\BAMBABADRA\Desktop\
~ %Favorites% : C:\Users\BAMBABADRA\Favorites\
~ %LocalAppData% : C:\Users\BAMBABADRA\AppData\Local\
~ %StartMenu% : C:\Users\BAMBABADRA\AppData\Roaming\Microsoft\Windows\Start Menu\
~ %Windir% : C:\Windows\
~ %System% : C:\Windows\System32\
---\\ Enumération des unités disques
C: Hard drive, Flash drive, Thumb drive (Free 270 Go of 449 Go)
D: Hard drive, Flash drive, Thumb drive (Free 2 Go of 2 Go)
E: CD-ROM drive (Not Inserted)
F: Hard drive, Flash drive, Thumb drive (Free 13 Go of 13 Go)
G: Floppy drive, Flash card reader, USB Key (Not Inserted)
H: Floppy drive, Flash card reader, USB Key (Free 7 Go of 7 Go)
---\\ Etat du Centre de Sécurité Windows
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
~ Security Center: 35 Legitimates Filtered in 00mn 00s
---\\ Recherche particulière de fichiers génériques
[MD5.928791755FDDEA721B053535EF84FA17] - (.Microsoft Corporation - Explorateur Windows.) (.25/07/2012 - 20:49:13.) -- C:\Windows\Explorer.exe [2380440]
[MD5.FE9AB232B56A12224E8A3F3F9878C9A3] - (.Microsoft Corporation - Application de démarrage de Windows.) (.25/07/2012 - 19:08:50.) -- C:\Windows\System32\Wininit.exe [132608]
[MD5.6DBE239FF1C9650A794C974B8C7913D7] - (.Microsoft Corporation - Extensions Internet pour Win32.) (.20/08/2013 - 20:12:06.) -- C:\Windows\System32\wininet.dll [2241024]
[MD5.93AB226C07A9789B2EC7B41F73602F76] - (.Microsoft Corporation - Application d‚ouverture de session Windows.) (.25/07/2012 - 19:08:50.) -- C:\Windows\System32\Winlogon.exe [516608]
[MD5.9448F5740A037EC0C18F0E9177232DD0] - (.Microsoft Corporation - Bibliothèque de licences.) (.25/07/2012 - 19:07:20.) -- C:\Windows\System32\sppcomapi.dll [273408]
[MD5.9E975BDC89C83900B2C534C4E1B018F8] - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) (.25/07/2012 - 21:26:47.) -- C:\Windows\system32\Drivers\AFD.sys [561152]
[MD5.A721FF570C2387E383BDDEA9632863C9] - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) (.25/07/2012 - 21:00:48.) -- C:\Windows\system32\Drivers\atapi.sys [25840]
[MD5.990B1BABE6E81FB18E65A87EBEFB1772] - (.Microsoft Corporation - CD-ROM File System Driver.) (.25/07/2012 - 18:30:10.) -- C:\Windows\system32\Drivers\Cdfs.sys [108544]
[MD5.339BFF85D788268752DA8C9644B188EE] - (.Microsoft Corporation - SCSI CD-ROM Driver.) (.25/07/2012 - 18:26:36.) -- C:\Windows\system32\Drivers\Cdrom.sys [174080]
[MD5.09D9EB9E7898F8E6561473A20CC808B9] - (.Microsoft Corporation - DFS Namespace Client Driver.) (.25/07/2012 - 18:26:53.) -- C:\Windows\system32\Drivers\DfsC.sys [118784]
[MD5.8D6810577E9C4F56DCB8E9BACAC7287B] - (.Microsoft Corporation - High Definition Audio Bus Driver.) (.25/07/2012 - 18:27:36.) -- C:\Windows\system32\Drivers\HDAudBus.sys [71168]
[MD5.C9E9CBF73AFFBFE3E801EFB516787BA3] - (.Microsoft Corporation - Pilote de port i8042.) (.25/07/2012 - 18:28:51.) -- C:\Windows\system32\Drivers\i8042prt.sys [112640]
[MD5.3969B9C218DD3FAA9F4ED2FFC3651C02] - (.Microsoft Corporation - IP Network Address Translator.) (.25/07/2012 - 18:23:01.) -- C:\Windows\system32\Drivers\IpNat.sys [145920]
[MD5.93179D48066918323628CB016D8C94DC] - (.Microsoft Corporation - Minirdr SMB Windows NT.) (.05/02/2013 - 14:29:09.) -- C:\Windows\system32\Drivers\MRxSmb.sys [370688]
[MD5.7CEC25C682D319D484630B3952C31A11] - (.Microsoft Corporation - MBT Transport driver.) (.25/07/2012 - 18:24:28.) -- C:\Windows\system32\Drivers\netBT.sys [331776]
[MD5.76929F4A69E425911A63B407E26C2589] - (.Microsoft Corporation - Pilote du système de fichiers NT.) (.02/02/2013 - 02:54:54.) -- C:\Windows\system32\Drivers\ntfs.sys [1933544]
[MD5.4563DAF8C6A740AD7F501E219BD10766] - (.Microsoft Corporation - Pilote de port parallèle.) (.25/07/2012 - 18:29:53.) -- C:\Windows\system32\Drivers\Parport.sys [105984]
[MD5.A14D625C5AEE5FFE0F47D1A1D419FAAE] - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) (.25/07/2012 - 18:23:17.) -- C:\Windows\system32\Drivers\Rasl2tp.sys [124928]
[MD5.B2A3AD74FF2E2FFA73AF2567108231B3] - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RDP.) (.25/07/2012 - 18:25:18.) -- C:\Windows\system32\Drivers\rdpdr.sys [179712]
[MD5.73DC722CE5DF26D7638CE2446F2655C7] - (.Microsoft Corporation - TDI Translation Driver.) (.25/07/2012 - 21:26:47.) -- C:\Windows\system32\Drivers\tdx.sys [117248]
[MD5.2FB3CDFD5EAF4CD9D4AFAF96877D13AE] - (.Microsoft Corporation - Pilote de cliché instantané du volume.) (.25/07/2012 - 20:57:09.) -- C:\Windows\system32\Drivers\volsnap.sys [332016]
~ Generic Processes: Scanned in 00mn 01s
---\\ Etat des fichiers cachés (Caché/Total)
~ Mes musiques (My Musics) : 1/242
~ Mes Favoris (My Favorites) : 1/3
~ Mes Documents (My Documents) : 1/11
~ Mon Bureau (My Desktop) : 1/6173
~ Menu demarrer (Programs) : 1/26
~ Hidden Files: Scanned in 00mn 01s
---\\ Processus lancés
[MD5.CBC7D8E5416AD30CF16DC2FD4A6AA399] - (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe [4858968] [PID.4980]
[MD5.0D3745CA2F064F2D6B6388C6AA5D3BC7] - (.Google Inc. - Google Chrome.) -- C:\Users\BAMBABADRA\AppData\Local\Google\Chrome\Application\chrome.exe [844752] [PID.9212]
[MD5.1ACC305A386B6D29251215651A70C6D4] - (...) -- C:\Program Files (x86)\Mobile Partner\Mobile Partner.exe [516096] [PID.1076]
[MD5.0148A96C7A964E2973BE276E231F1A20] - (.ISPCE - ISPCE.) -- C:\Program Files (x86)\ISPCE\ISPCE-2.2.exe [1085440] [PID.11616]
[MD5.276AC7BAE1F596A3A1D4B6D43AEF099C] - (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe [399736] [PID.8248] =>P2P.BitTorrent
[MD5.E1A49C030CA2F679B70D92EC3637BF1E] - (...) -- C:\Users\BAMBABADRA\Desktop\Ultra Surf 1301 Mega-Games1.exe [2000488] [PID.5728]
[MD5.C5F101D7E53AA530BB0496EB9556807C] - (.Nicolas Coolman - ZHPDiag.) -- C:\Program Files (x86)\ZHPDiag\ZHPDiag.exe [8076288] [PID.2168]
~ Processes Running: Scanned in 00mn 02s
---\\ Google Chrome, Démarrage,Recherche,Extensions (G0,G1,G2)
C:\Users\BAMBABADRA\AppData\Local\Google\Chrome\User Data\Default\Preferences
G2 - GCE: Preference [User Data\Default] [ncffjdbbodifgldkcbhmiiljfcnbgjab] DigitalPersona Extension v.1.0.0.5193 (Activé)
~ Google Browser: 10 Legitimates Filtered in 00mn 05s
---\\ Mozilla Firefox, Plugins,Demarrage,Recherche,Extensions (P2,M0,M1,M2,M3)
C:\Users\BAMBABADRA\AppData\Roaming\Mozilla\Firefox\Profiles\zg92rkwd.default\prefs.js
M0 - MFSP: prefs.js [BAMBABADRA - zg92rkwd.default]
https://www.ask.com
~ Firefox Browser: 12 Legitimates Filtered in 00mn 00s
---\\ Internet Explorer, Démarrage,Recherche,URLSearchHook, Phishing (R0,R1,R3,R4)
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
https://www.ask.com
R3 - URLSearchHook: UrlSearchHook Class [64Bits] - {00000000-6E41-4FD3-8538-502F5495E5FC} . (.Ask - Ask Toolbar.) (5.13.2.19379) -- C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll =>Toolbar.Ask
~ IE Browser: 14 Legitimates Filtered in 00mn 00s
---\\ Internet Explorer, Proxy Management (R5)
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:9666 =>Hijacker.Proxy
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
~ Proxy management: Scanned in 00mn 00s
---\\ Analyse des lignes F0, F1, F2, F3 - IniFiles, Autoloading programs
F2 - REG:system.ini: USERINIT=C:\Windows\system32\userinit.exe,c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe,
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe
F2 - REG:system.ini: VMApplet=C:\Windows\System32\SystemPropertiesPerformance.exe
~ Keys: Scanned in 00mn 00s
---\\ Hosts file redirection (O1)
~ Le fichier hosts est sain (The hosts file is clean).
~ Hosts File: Scanned in 00mn 00s
~ Nombre de lignes (Lines number): 21
---\\ Browser Helper Objects de navigateur (O2)
O2 - BHO: Ask Toolbar BHO [64Bits] - {D4027C7F-154A-4066-A1AD-4243D8127440} . (.Ask - Ask Toolbar.) -- C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll =>Toolbar.Ask
~ BHO: 7 Legitimates Filtered in 00mn 00s
---\\ Internet Explorer Toolbars (O3)
O3 - Toolbar: (no name) [64Bits] - [HKLM]{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} Clé orpheline
O3 - Toolbar\WebBrowser: (no name) [64Bits] - [HKCU]{D4027C7F-154A-4066-A1AD-4243D8127440} Clé orpheline
~ Toolbar: Scanned in 00mn 00s
---\\ Autres liens utilisateurs (O4)
O4 - GS\Desktop [Public]: GOM Player.lnk . (.Gretech Corp. - GOM Player.) -- C:\Program Files (x86)\GRETECH\GomPlayer\GOM.exe
O4 - GS\Desktop [Public]: ISPCE.lnk . (.ISPCE - ISPCE.) -- C:\Program Files (x86)\ISPCE\ISPCE-2.2.exe
O4 - GS\Desktop [Public]: Mobile Partner.lnk . (...) -- C:\Program Files (x86)\Mobile Partner\Mobile Partner.exe
O4 - GS\Desktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O4 - GS\Desktop [Public]: Serif PhotoPlus SE.lnk . (.Serif (Europe) Ltd. - Serif PhotoPlus SE.) -- C:\Program Files (x86)\Serif\PhotoPlus SE\1.0\Program\PhotoPlsSE.exe
O4 - GS\Desktop [Public]: µTorrent.lnk . (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe =>P2P.BitTorrent
O4 - GS\Program [Public]: Desktop.lnk - Clé orpheline
O4 - GS\Program [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O4 - GS\Program [Public]: Serif PhotoPlus SE.lnk . (...) -- C:\Windows\Installer\{09234F0D-5971-4701-94EE-89CB6926E273}\PhotoPlus.ico
O4 - GS\Program [Public]: SRS Premium Sound.lnk . (...) -- C:\Program Files (x86)\IDT\WDM\IDTNGUI.exe (.not file.)
O4 - GS\QuickLaunch [BAMBABADRA]: GOM Player.lnk . (.Gretech Corp. - GOM Player.) -- C:\Program Files (x86)\GRETECH\GomPlayer\GOM.exe
O4 - GS\QuickLaunch [BAMBABADRA]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - GS\QuickLaunch [BAMBABADRA]: µTorrent.lnk . (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe =>P2P.BitTorrent
O4 - GS\TaskBar [BAMBABADRA]: File Explorer (2).lnk . (...) -- C:\Users\BAMBABADRA\AppData\Roaming\Microsoft\Windows\Libraries
O4 - GS\TaskBar [BAMBABADRA]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Users\BAMBABADRA\AppData\Local\Google\Chrome\Application\chrome.exe
O4 - GS\TaskBar [BAMBABADRA]: Internet Explorer (2).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - GS\TaskBar [BAMBABADRA]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - GS\TaskBar [BAMBABADRA]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O4 - GS\TaskBar [BAMBABADRA]: µTorrent.lnk . (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe =>P2P.BitTorrent
O4 - GS\Program [BAMBABADRA]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - GS\Desktop [BAMBABADRA]: Cheat Engine.lnk . (...) -- C:\Program Files (x86)\Cheat Engine 6.3\Cheat Engine.exe
O4 - GS\Desktop [BAMBABADRA]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Users\BAMBABADRA\AppData\Local\Google\Chrome\Application\chrome.exe
O4 - GS\Desktop [BAMBABADRA]: IDRISS.lnk . (...) -- C:\Users\BAMBABADRA
O4 - GS\Desktop [BAMBABADRA]: Le Grand Robert.lnk . (.Bureau Van Dijk – Dictionnaires Le Robert - Le Grand Robert de la langue française.) -- C:\Program Files (x86)\Le Grand Robert\grwin.exe
O4 - GS\Desktop [BAMBABADRA]: Ordinateur.lnk - Clé orpheline
O4 - GS\Desktop [BAMBABADRA]: Panneau de configuration.lnk - Clé orpheline
O4 - GS\Desktop [BAMBABADRA]: SosVirus Forum.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
https://www.sosvirus.net
O4 - GS\Desktop [BAMBABADRA]: SosVirus On Facebook.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
https://www.facebook.com
O4 - GS\QuickLaunch [Administrator]: GOM Player.lnk . (.Gretech Corp. - GOM Player.) -- C:\Program Files (x86)\GRETECH\GomPlayer\GOM.exe
O4 - GS\TaskBar [Administrator]: File Explorer (2).lnk . (...) -- C:\Users\BAMBABADRA\AppData\Roaming\Microsoft\Windows\Libraries
O4 - GS\TaskBar [Administrator]: File Explorer (3).lnk . (...) -- C:\Users\BAMBABADRA\AppData\Roaming\Microsoft\Windows\Libraries
O4 - GS\TaskBar [Administrator]: Internet Explorer (2).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - GS\TaskBar [Administrator]: Internet Explorer (3).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - GS\TaskBar [Administrator]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - GS\Program [Administrator]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
O4 - GS\Desktop [Administrator]: Le Grand Robert.lnk . (.Bureau Van Dijk – Dictionnaires Le Robert - Le Grand Robert de la langue française.) -- C:\Program Files (x86)\Le Grand Robert\grwin.exe
~ Global Startup: 85 Legitimates Filtered in 00mn 01s
---\\ Applications lancées au démarrage du sytème (O4)
O4 - GS\Startup [BAMBABADRA]: OneNote 2010 - Capture d‚écran et lancement.lnk . (.Microsoft Corporation - Microsoft OneNote Quick Launcher.) -- C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.exe =>.Microsoft Corporation
O4 - HKLM\..\Run: [BtPreLoad] . (...) -- C:\Program Files (x86)\Bluetooth Suite\BtPreLoad.exe
O4 - HKLM\..\Run: [IgfxTray] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe
O4 - HKCU\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - HKCU\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\BAMBABADRA\AppData\Local\Google\Update\GoogleUpdate.exe =>.Google Inc
O4 - HKCU\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\BAMBABADRA\AppData\Local\Facebook\Update\FacebookUpdate.exe
O4 - HKCU\..\Run: [uTorrent] . (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe =>P2P.BitTorrent
O4 - HKLM\..\Wow6432Node\Run: [PDF Complete] . (.PDF Complete Inc - Sentry for PDF.) -- C:\Program Files (x86)\PDF Complete\pdfsty.exe =>.PDF Complete Inc
O4 - HKLM\..\Wow6432Node\Run: [QLBController] . (.Hewlett-Packard Company - QLBController.) -- C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
O4 - HKLM\..\Wow6432Node\Run: [HP HD Webcam Driver_Monitor] . (.Pas de propriétaire - BACK Monitor Application.) -- C:\Program Files (x86)\HP HD Webcam Driver\monitor.exe
O4 - HKLM\..\Wow6432Node\Run: [CLMLServer_For_P2G8] . (.CyberLink - CyberLink MediaLibray Service.) -- c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
O4 - HKLM\..\Wow6432Node\Run: [CLVirtualDrive] . (.CyberLink Corp. - CyberLink Virtual Drive.) -- c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe
O4 - HKLM\..\Wow6432Node\Run: [RemoteControl10] . (.CyberLink Corp. - PowerDVD RC Service.) -- c:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
O4 - HKLM\..\Wow6432Node\Run: [Adobe Reader Speed Launcher] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe
O4 - HKLM\..\Wow6432Node\Run: [ApnUpdater] . (.Ask - Ask Updater.) -- C:\Program Files (x86)\Ask.com\Updater\Updater.exe
O4 - HKLM\..\Wow6432Node\Run: [QuickTime Task] . (.Apple Inc. - QuickTime Task.) -- C:\Program Files (x86)\QuickTime\QTTask.exe
O4 - HKLM\..\Wow6432Node\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper Module.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe
O4 - HKLM\..\Wow6432Node\Run: [avast] . (.AVAST Software - avast! Antivirus.) -- C:\Program Files\AVAST Software\Avast\avastUI.exe
O4 - HKUS\S-1-5-21-1993135528-1120135855-3366920663-1002\..\Run: [Skype] . (.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Technologies S.A.
O4 - HKUS\S-1-5-21-1993135528-1120135855-3366920663-1002\..\Run: [Google Update] . (.Google Inc. - Programme d'installation de Google.) -- C:\Users\BAMBABADRA\AppData\Local\Google\Update\GoogleUpdate.exe =>.Google Inc
O4 - HKUS\S-1-5-21-1993135528-1120135855-3366920663-1002\..\Run: [Facebook Update] . (.Facebook Inc. - Programme d'installation de Facebook.) -- C:\Users\BAMBABADRA\AppData\Local\Facebook\Update\FacebookUpdate.exe
O4 - HKUS\S-1-5-21-1993135528-1120135855-3366920663-1002\..\Run: [uTorrent] . (.BitTorrent, Inc. - µTorrent.) -- C:\Program Files (x86)\uTorrent\uTorrent.exe =>P2P.BitTorrent
~ Application: Scanned in 00mn 00s
---\\ Boutons situés sur la barre d'outils principale d'Internet Explorer (O9)
O9 - Extra button: &Envoyer à OneNote [64Bits] - {2670000A-7350-4f3c-8081-5663EE0C6C49} . (.Microsoft Corporation - Microsoft OneNote Internet Explorer Add-in.) -- C:\Program Files\MICROS~1\Office14\ONBttnIE.dll =>.Microsoft Corporation
O9 - Extra button: Notes &liées OneNote [64Bits] - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} . (.Microsoft Corporation - Microsoft OneNote Internet Explorer Add-in.) -- C:\Program Files\MICROS~1\Office14\ONBTTN~1.dll =>.Microsoft Corporation
~ IE Extra Buttons: Scanned in 00mn 00s
---\\ Modification Domaine/Adresses DNS (O17)
O17 - HKLM\System\CCS\Services\Tcpip\..\{60B9D52F-426B-44CF-AD56-A9C250250243}: DhcpNameServer = 213.136.96.157 213.136.96.37
O17 - HKLM\System\CCS\Services\Tcpip\..\{827C2D60-C920-4268-B140-1E701E1F4EA6}: DhcpNameServer = 213.136.96.157 213.136.96.37
O17 - HKLM\System\CCS\Services\Tcpip\..\{8EA469C1-D0FA-4811-ACF9-A58870DFE2A1}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{C857EE56-4685-47D8-A512-67D01E259B6A}: DhcpNameServer = 213.136.96.157 213.136.96.37
O17 - HKLM\System\CS1\Services\Tcpip\..\{60B9D52F-426B-44CF-AD56-A9C250250243}: DhcpNameServer = 213.136.96.157 213.136.96.37
O17 - HKLM\System\CS1\Services\Tcpip\..\{827C2D60-C920-4268-B140-1E701E1F4EA6}: DhcpNameServer = 213.136.96.157 213.136.96.37
O17 - HKLM\System\CS1\Services\Tcpip\..\{8EA469C1-D0FA-4811-ACF9-A58870DFE2A1}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{C857EE56-4685-47D8-A512-67D01E259B6A}: DhcpNameServer = 213.136.96.157 213.136.96.37
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 213.136.96.157 213.136.96.37
~ Domain: Scanned in 00mn 00s
---\\ Protocole additionnel (O18)
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.dll =>.Microsoft Corporation
~ Protocole Additionnel: Scanned in 00mn 00s
---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (autorun) (O20)
O20 - Winlogon Notify: igfxcui . (.Intel Corporation - igfxdev Module.) -- C:\Windows\System32\igfxdev.dll
~ Winlogon: Scanned in 00mn 00s
---\\ Liste des services NT non Microsoft et non désactivés (O23)
O23 - Service: Mobile Partner. OUC (Mobile Partner. RunOuc) . (...) - C:\Program Files (x86)\Mobile Partner\UpdateDog\ouc.exe
O23 - Service: ZAtheros Bt&Wlan Coex Agent (ZAtheros Bt&Wlan Coex Agent) . (.Atheros - Atheros Coex Service Application.) - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
~ Services: 19 Legitimates Filtered in 00mn 29s
---\\ Tàches planifiées en automatique (O39)
[MD5.14426438EDA546F331650854F4CD63A8] [APT] [Scheduled Update for Ask Toolbar] (...) -- C:\Program Files (x86)\Ask.com\UpdateTask.exe [134824] =>Toolbar.Ask
~ Scheduled Task: 18 Legitimates Filtered in 00mn 05s
---\\ Logiciels installés (O42)
O42 - Logiciel: Ask Toolbar - (.Ask.com.) [HKLM][64Bits] -- {86D4B82A-ABED-442A-BE86-96357B70F4FE} =>Toolbar.Ask
O42 - Logiciel: ISPCE version 2.2.101 - (.Nulled Erman.) [HKLM][64Bits] -- {88A909B9-791F-40D5-915A-A5F656F99877}_is1
~ Logic: 95 Legitimates Filtered in 00mn 00s
---\\ HKCU & HKLM Software Keys
[HKCU\Software\APN]
[HKCU\Software\Ask.com]
[HKCU\Software\SMAD?V]
[HKCU\Software\Softonic] =>Toolbar.Conduit
[HKLM\Software\Wow6432Node\APN]
[HKLM\Software\Wow6432Node\AskToolbar]
[HKLM\Software\Wow6432Node\IVTUPDATE]
~ Key Software: 177 Legitimates Filtered in 00mn 00s
---\\ Contenu des dossiers Programs/ProgramFiles/ProgramData/AppData (O43)
O43 - CFD: 27/09/2013 - 23:37:42 - [2,827] ----D C:\Program Files (x86)\Ask.com
O43 - CFD: 05/10/2013 - 13:43:49 - [1,726] ----D C:\Program Files (x86)\ISPCE
O43 - CFD: 08/09/2012 - 02:24:37 - [44,265] ----D C:\ProgramData\{AFF99647-6D64-46F2-934A-F12F468037F6}
~ Program Folder: 145 Legitimates Filtered in 00mn 02s
---\\ Derniers fichiers modifiés ou crées sous Windows et System32 (O44)
O44 - LFC:[MD5.2CE63B3A60C54BF7421B090429C286B0] - 03/10/2013 - 14:46:20 ---A- . (...) -- C:\Windows\SysNative\ApnDatabase.xml [387583]
O44 - LFC:[MD5.2CE63B3A60C54BF7421B090429C286B0] - 03/10/2013 - 14:46:20 ---A- . (...) -- C:\Windows\System32\ApnDatabase.xml [387583]
O44 - LFC:[MD5.F5520DBB47C60EE83024B38720ABDA24] - 07/10/2013 - 17:30:47 ---A- . (.TeamViewer GmbH - TeamViewerVPN Network Adapter.) -- C:\Windows\System32\Drivers\teamviewervpn.sys [35112]
O44 - LFC:[MD5.F134415D8C5CBDA4EC5C7CEB431F8FC4] - 13/10/2013 - 12:12:36 ----- . (...) -- C:\UsbFix [Scan 1] IDRISS.txt [12940]
O44 - LFC:[MD5.AA5CB4466766A1FD986A0F1B72A2B38D] - 13/10/2013 - 13:22:26 ---A- . (...) -- C:\UsbFix [Clean 1] IDRISS.txt [14301]
O44 - LFC:[MD5.DAA6AAD525D12F8985695B882301336F] - 29/09/2013 - 17:30:05 ---A- . (...) -- C:\Windows\win.ini [167]
~ Files: 830 Legitimates Filtered in 00mn 18s
---\\ Derniers fichiers créés dans Windows Prefetcher (O45)
O45 - LFCP:[MD5.345C5274A85FAA5D772D4DE69C43C7EE] - 02/10/2013 - 21:53:53 ---A- - C:\Windows\Prefetch\KIS13.0.0.3370EN.EXE-2B1B738B.pf
O45 - LFCP:[MD5.261AA0293F59018200207B551AFA82C5] - 03/10/2013 - 12:11:28 ---A- - C:\Windows\Prefetch\SMADAV90.EXE-85D936D0.pf
O45 - LFCP:[MD5.5B30B5E8FBF32786DA86F633F44EB6C1] - 03/10/2013 - 12:11:43 ---A- - C:\Windows\Prefetch\SMADAV 2012 REV. 9.0.EXE-99392181.pf
O45 - LFCP:[MD5.09D2C5840E7EC5D57ACA51ABC56E4ECD] - 03/10/2013 - 12:12:51 ---A- - C:\Windows\Prefetch\SM?RTP.EXE-87A55E9C.pf
O45 - LFCP:[MD5.C70A7E31DAE2612AB4C0EF869AA0B897] - 03/10/2013 - 12:14:58 ---A- - C:\Windows\Prefetch\SMADAV 2012 REV. 9.0.EXE-F0837F6E.pf
O45 - LFCP:[MD5.E717953CDF4F084B0E78902C3EC72045] - 03/10/2013 - 14:51:01 ---A- - C:\Windows\Prefetch\SOFTONICDOWNLOADER_POUR_AVAST-29FFAC45.pf =>Toolbar.Conduit
O45 - LFCP:[MD5.A6A834C971212F9F5BCF604B45F179E8] - 06/10/2013 - 14:38:33 ---A- - C:\Windows\Prefetch\INSTALLER.EXE-1F601541.pf
O45 - LFCP:[MD5.81AC75FD97D55C555E2B1421FE988D23] - 06/10/2013 - 14:47:50 ---A- - C:\Windows\Prefetch\ICREINSTALL_FIREFOX-64BIT-X64-0E388189.pf
O45 - LFCP:[MD5.9175CDB1F54B61CA6F0611221B9352A2] - 09/10/2013 - 13:13:52 ---A- - C:\Windows\Prefetch\VIDEOCAP.EXE-C78A9DD3.pf
O45 - LFCP:[MD5.7F701EDA5A25803962A37D5EDC694190] - 10/10/2013 - 18:36:13 ---A- - C:\Windows\Prefetch\CHEATENGINE63.TMP-DE774354.pf
O45 - LFCP:[MD5.A073DC54D82B553A4F29D072F3C59BC4] - 12/10/2013 - 14:17:58 ---A- - C:\Windows\Prefetch\PHOTOPLSSE.EXE-83063FAA.pf
O45 - LFCP:[MD5.5D58C726DE90CCF1A3B07CD5FA62D46B] - 12/10/2013 - 15:11:31 ---A- - C:\Windows\Prefetch\SYSTEMSETTINGS.EXE-D8CC3B5E.pf
O45 - LFCP:[MD5.74684EB0EB67437FD9F7E3A5BC2932F0] - 12/10/2013 - 20:10:58 ---A- - C:\Windows\Prefetch\dynreservedpri.db
O45 - LFCP:[MD5.5F573C2E165F519F04140E565591763F] - 13/10/2013 - 08:04:44 ---A- - C:\Windows\Prefetch\GRWIN.EXE-E2D726DD.pf
O45 - LFCP:[MD5.FB8D2FFCD8D8EA9D832548E4994297A8] - 13/10/2013 - 13:23:26 ---A- - C:\Windows\Prefetch\MOBILE PARTNER.EXE-A8FB20AB.pf
O45 - LFCP:[MD5.C2A1C749FA96A81EE64127D1F4B56100] - 13/10/2013 - 13:24:10 ---A- - C:\Windows\Prefetch\ISPCE-2.2.EXE-3E0CEC1E.pf
O45 - LFCP:[MD5.1087C8ABE159D1A5C564B7B20C245EF5] - 13/10/2013 - 13:24:23 ---A- - C:\Windows\Prefetch\ULTRA SURF 1301 MEGA-GAMES1.E-91F66A84.pf
O45 - LFCP:[MD5.C8463100D8345DCB81B5601B147AFDF2] - 13/10/2013 - 13:38:28 ---A- - C:\Windows\Prefetch\CHEATENGINE-X86_64.EXE-FA93D3D0.pf
O45 - LFCP:[MD5.296FD8255DC5ABA2070F27B8C438BA8E] - 13/10/2013 - 14:49:18 ---A- - C:\Windows\Prefetch\WSHOST.EXE-05F0A3AF.pf
O45 - LFCP:[MD5.BBEF95B1AEEADB60B39E3F8BD4093895] - 27/09/2013 - 22:37:56 ---A- - C:\Windows\Prefetch\FSS_PHOTOPLUSSE.EXE-C5E86502.pf
O45 - LFCP:[MD5.D016C33595FC8035D0C28F830457F368] - 27/09/2013 - 22:39:34 ---A- - C:\Windows\Prefetch\GOMWIZ.EXE-953380BA.pf
O45 - LFCP:[MD5.6289935CE7E702399864B748E90A6DBA] - 27/09/2013 - 22:41:28 ---A- - C:\Windows\Prefetch\LE GRAND ROBERT.EXE-D51984DC.pf
O45 - LFCP:[MD5.5CBC26E06C6C6B98D7ADFB453EC5159F] - 27/09/2013 - 23:35:26 ---A- - C:\Windows\Prefetch\PROMO.EXE-C86831A7.pf
O45 - LFCP:[MD5.8E40FCB727B08813F25BE01C30A44BE6] - 28/09/2013 - 21:48:27 ---A- - C:\Windows\Prefetch\CEL32.EXE-BEC1C2F6.pf
~ Prefetcher: 173 Legitimates Filtered in 00mn 01s
---\\ Enumération des clés de registre PoliciesSystem (MWPS) (O55)
O55 - MWPS:[HKLM\...\Policies\System] - "EnableUIADesktopToggle"=0
O55 - MWPS:[HKLM\...\Policies\System] - "FilterAdministratorToken"=0
O55 - MWPS:[HKLM\...\Policies\System] - "DisableCAD"=1
~ MWPS: 18 Legitimates Filtered in 00mn 00s
---\\ Enumération des clés de registre PoliciesExplorer (MWPE) (O56)
O56 - MWPE:[HKLM\...\policies\Explorer] - "NoActiveDesktopChanges"=1
~ MWPE Keys: 7 Legitimates Filtered in 00mn 00s
---\\ Liste des pilotes du système (SDL) (O58)
O58 - SDL:[MD5.286193DC28CFB4CEB8D378E20A0850A9] - 29/08/2013 - 23:48:10 ---A- . (...) -- C:\Windows\System32\Drivers\aswRvrt.sys [65336]
~ Drivers: 18 Legitimates Filtered in 00mn 00s
---\\ Derniers fichiers modifiés ou crées (Utilisateur) (O61)
O61 - LFC: 13/10/2013 - 16:04:36 ---A- . (...) -- C:\Users\BAMBABADRA\AppData\Local\Google\Chrome\User Data\Certificate Revocation Lists [262612]
O61 - LFC: 13/10/2013 - 16:04:39 ---A- . (...) -- C:\Users\BAMBABADRA\AppData\Local\Google\Chrome\User Data\Local State [43673]
O61 - LFC: 13/10/2013 - 16:04:59 ---A- . (...) -- C:\Users\BAMBABADRA\Downloads\Brazil Xposed (Evil Angel) XXX NEW 2013 (Split Scenes)\22267_01_hd.mp4 [598162487]
O61 - LFC: 13/10/2013 - 16:04:59 ---A- . (...) -- C:\Users\BAMBABADRA\Downloads\Brazil Xposed (Evil Angel) XXX NEW 2013 (Split Scenes)\22267_02_hd.mp4 [344180304]
O61 - LFC: 13/10/2013 - 16:04:59 ---A- . (...) -- C:\Users\BAMBABADRA\Downloads\Brazil Xposed (Evil Angel) XXX NEW 2013 (Split Scenes)\22267_03_hd.mp4 [428574343]
O61 - LFC: 13/10/2013 - 16:04:59 ---A- . (...) -- C:\Users\BAMBABADRA\Downloads\Brazil Xposed (Evil Angel) XXX NEW 2013 (Split Scenes)\22267_04_hd.mp4 [646630188]
O61 - LFC: 13/10/2013 - 16:04:59 ---A- . (...) -- C:\Users\BAMBABADRA\Downloads\Brazil Xposed (Evil Angel) XXX NEW 2013 (Split Scenes)\22267_05_hd.mp4 [582336098]
O61 - LFC: 13/10/2013 - 16:04:59 ---A- . (...) -- C:\Users\BAMBABADRA\Downloads\Superman.Man.of.Steel.2013.720p.R6.LiNE.x264.AAC-DiGiTAL\Man.of.Steel.2013.720p.R6.LiNE.x264.AAC-DiGiTAL.mkv [2733201449]
O61 - LFC: 13/10/2013 - 16:04:59 ---A- . (...) -- C:\Users\BAMBABADRA\Downloads\Superman.Man.of.Steel.2013.720p.R6.LiNE.x264.AAC-DiGiTAL\Man.of.Steel.2013.720p.R6.LiNE.x264.AAC-DiGiTAL.nfo [745]
O61 - LFC: 13/10/2013 - 16:04:59 ---A- . (...) -- C:\Users\BAMBABADRA\Downloads\Superman.Man.of.Steel.2013.720p.R6.LiNE.x264.AAC-DiGiTAL\Man.of.Steel.2013.720p.R6.LiNE.x264.AAC-DiGiTAL.sample.mkv [19908585]
O61 - LFC: 13/10/2013 - 16:05:03 ---A- . (...) -- C:\Users\BAMBABADRA\PUTTY.RND [600]
~ 4 Fichiers temporaires (Temporary files)
~ Files: 85 Legitimates Filtered in 00mn 29s
---\\ Liste des outils de désinfection (LATC) (O63)
O63 - Logiciel: UsbFix By El Desaparecido - (.El Desaparecido -
https://www.usbfix.net.) [HKLM] -- Usbfix
O63 - Logiciel: ZHPDiag 2013 - (.Nicolas Coolman.) [HKLM] -- ZHPDiag_is1 =>.Nicolas Coolman
~ ADS: Scanned in 00mn 00s
---\\ Menu de démarrage Internet (SMI) (O68)
O68 - StartMenuInternet: <FIREFOX.EXE> <Mozilla Firefox>[HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer>[HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
~ Keys: Scanned in 00mn 00s
---\\ Recherche d'infection sur les navigateurs internet (SBI) (O69)
O69 - SBI: prefs.js [BAMBABADRA - zg92rkwd.default] user_pref("extensions.asktb.ff-original-keyword-url", "");
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) -
https://www.bing.com
O69 - SBI: SearchScopes [HKCU] {09C05002-6198-4A58-A8AC-FCDD612EA491} - (Ask Search) -
https://websearch.ask.com =>Toolbar.Ask
O69 - SBI: SearchScopes [HKCU] {6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Google) -
https://www.google.com
~ Keys: Scanned in 00mn 00s
---\\ Enumère les fichiers Crack & Keygen (CKF) (O82)
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeAPE3.3-mul\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeAPE3.3_x64-mul\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeBridge5-mul\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeBridge5-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeBridge5-mul\customaction.data =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeBridge5-mul-x64\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeBridge5-mul-x64\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeBridge5-mul-x64\customaction.data =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeCameraRaw7.0All\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeCameraRaw7.0All-x64\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeCameraRawProfile7.0All\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeCMaps4-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeCMaps4_x64-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeColorCommonSetCMYK4_0-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeColorCommonSetRGB4_0-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeColorEU_ExtraSettings4_0-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeColorEU_Recommended4_0-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeColorJA_ExtraSettings4_0-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeColorJA_Recommended4_0-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeColorNA_ExtraSettings4_0-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeColorNA_Recommended4_0-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeColorPhotoshop4_0-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeCSXSExtensions3-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeCSXSExtensions3-mul\customaction.data =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeCSXSInfrastructure3-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeCSXSInfrastructure3-mul\customaction.data =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeDynamicLinkMediaServer1All\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeDynamiclinkSupport6All\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeExtendScriptToolkit3.8.0-mul\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeExtendScriptToolkit3.8.0-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeExtensionManager6.0All\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeExtensionManager6.0All\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeFontsRecommended-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeFontsRecommended_x64-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeFontsRequired-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeFontsRequired_x64-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeHunspellPlugin_4_0_All\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeHunspellPlugin_4_0_All_x64\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeLinguistics_4_0_All\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeLinguistics_4_0_All\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeLinguistics_4_0_All_x64\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeMiniBridge2-mul\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePDFL10.9-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePDFL10.9_x64-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePDFSettings11-ja_JP\AdobePDFSettings11-ja_JP.msi =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePDFSettings11-mul\AdobePDFSettings11-mul.msi =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-Core\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-Core\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-Core_x64\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-Core_x64\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-cs_CZ\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-cs_CZ_x64\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-Driver\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-Driver\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-en_AE\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-en_AE_x64\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-en_IL\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-en_IL_x64\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-fr_MA\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-fr_MA_x64\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-hu_HU\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-hu_HU_x64\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-pl_PL\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-pl_PL_x64\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-ru_RU\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-ru_RU_x64\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-Support\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-tr_TR\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-tr_TR_x64\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-uk_UA\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobePhotoshop13-uk_UA_x64\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeSuiteSharedConfiguration3-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeTypeSupport11-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeTypeSupport11_x64-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeVideoProfilesCS4_0-mul\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeWinSoftLinguisticsPluginAll\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeWinSoftLinguisticsPluginAll_x64\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\AdobeXMPPanelsAll\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\Microsoft VC 2005 Redist (x64)\vcredist_x64.EXE =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\Microsoft VC 2005 Redist (x86)\vcredist_x86.exe =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\Microsoft VC 2008 Redist (x64)\vcredist_x64.exe =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\Microsoft VC 2008 Redist (x86)\vcredist_x86.exe =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\Microsoft VC 2010 Redist (x64)\vcredist_x64.exe =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\Microsoft VC 2010 Redist (x86)\vcredist_x86.exe =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\Microsoft_VC80_CRT_x86\Microsoft_VC80_CRT_x86.msi =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\Microsoft_VC90_CRT_x86\Microsoft_VC90_CRT_x86.msi =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\SwitchBoard2.0All\Assets1_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\payloads\SwitchBoard2.0All\Assets2_1.zip =>.Adobe Systems Incorporated
C:\Users\BAMBABADRA\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage (cracked dll) [ChingLiu]\Adobe CS6\Set-up.exe =>.Adobe Systems Incorporated