Se connecter / S'enregistrer
Votre question

Virus ou pas

Tags :
  • messagerie
  • Sécurité
Dernière réponse : dans Sécurité et virus
23 Août 2011 11:32:38

Bonjour,
voici mon probleme depuis queques temps je n'arrive plus à avoir ma messagerie orange à partir d'internet explorer , j'ai peur que mon pc soit infecté , est ce que quelqu'un pourrait m'aider à voir un peu plus clair? je signale que je suis débutante en informatique merci de votre aide .
béa . résolu merci

Autres pages sur : virus

a c 548 8 Sécurité
23 Août 2011 11:51:09

Bonjour,

Qu'entends-tu par ne plus avoir accès à ta messagerie ?

Tu as une erreur de chargement de page ?
Tes identifiants et mot de passes sont erronés/refusé ?
23 Août 2011 12:01:50

j ai acces a ma page mais quand je clique sur ma messagerie rien ne vient et internet explorer mais tu tant a s ouvrir . merci
Contenus similaires
23 Août 2011 12:15:06

par les 2 liens que tu ma donner y a pas de souci j arrive ces juste internet eplorer que je ni arrive pas avant sa marchait bien donc je ne comprend pas pourquoi aujourd hui je ne peu plus passer par explorer .
23 Août 2011 12:15:54

oui ton 1 er lien ces par celle lui que je ne pas y acceder par explorer
a c 548 8 Sécurité
23 Août 2011 13:58:34

Re,

Télécharge CCleaner Slim (sans toolbar) de Piriform :

  • Lance l'installation en double cliquant sur le fichier Ccleaner***_slim.exe. (aide ici)
  • Ceci terminé, lance le programme.
  • Choisis Options -> Avancé -> et décoche "Effacer uniquement les fichiers du dossier temp plus vieux que 48h"
  • Choisis "Nettoyeur" puis clique sur "Analyse"
  • Laisse faire puis clique sur "Lancer le nettoyage" et accepte l'avertissement avec "Oui"

  • Ferme le programme


    Regarde s'il y a du mieux avec Internet explorer.
    23 Août 2011 22:49:28

    j ai fais comme si dessus mais toujours pareil merci a toi .
    a c 548 8 Sécurité
    24 Août 2011 11:15:34

    Re,

    Sous quel Windows es-tu ?

    Quelle version d'internet Explorer ? (dans Internet Explorer, menu "outil" (petite roue crantée) -> "A propos de Internet explorer" )

    24 Août 2011 11:21:30

    windows vista et internet explorer 9
    a c 548 8 Sécurité
    24 Août 2011 11:24:04

    Re,

    à essayer :

    - Démarrer Internet explorer en mode spécial :

    Démarrer -> tous les programmes -> accessoires -> outils systèmes -> Internet Explorer (sans module complémentaire)


    Y'a du mieux ou non ?
    24 Août 2011 11:39:04

    non toujours pareil
    a c 548 8 Sécurité
    24 Août 2011 12:23:02

    Re,

    Dans Internet Explorer, clique sur "Outils" (roue crantée) puis "Option internet"

    Clique sur l'onglet "Avancés" puis tout en bas sur "Réinitialiser"

    Ferme et réouvre Internet explorer et réessaye.
    24 Août 2011 12:49:39

    non toujours pareil désoler .
    a c 548 8 Sécurité
    24 Août 2011 14:16:11

    Re,

    On va tester d'autres trucs :

    Démarrer -> panneau de configuration -> programmes

    Dans le menu de droite "Afficher les mises à jours installées"

    Tu vas trouver ensuite dans le menu de droite une ligne "Windows Internet Explorer 9", sélectionne-là puis clique sur "Désinstaller" en haut
    Suis les étapes, tu va retrouver Internet Explorer 8

    Regarde si le souci existe aussi sous cette version.
    24 Août 2011 22:41:48

    re

    ok super sa fonctionne sur cette version 8 mais je le trouve long a s ouvrir si tu peu encore m aider je te remercie beaucoup de prendre de ton temps .
    a c 548 8 Sécurité
    24 Août 2011 23:05:43

    Re,

    Long comment ? Beaucoup plus que sous l'autre navigateur, Firefox ?
    24 Août 2011 23:22:02

    oui un peu plus long je l es connu plus rapide lol
    a c 548 8 Sécurité
    24 Août 2011 23:30:41

    Re,

    Ok mais c'est pour savoir si c'est quelque chose d'anormal ou de supportable.

    De toute façon, maintenant on va réinstaller IE9 pour voir :
    http://windows.microsoft.com/fr-fr/internet-explorer/pr...

    Normalement si c'était du à un souci des fichiers système d'IE ça devrait toujours être bon même en remettant la version qui fonctionnait pas avant ;) 
    25 Août 2011 07:56:08

    bonjour,

    j ai télécharger la version IE9 sa ne fonctionne plus a nouveau et sa mais bien plus de temps a s 'ouvrir . merci
    a c 548 8 Sécurité
    25 Août 2011 10:39:45

    Re,

    J'ai pas compris le sens de la phrase :

    - Cela fonctionne toujours ?
    - ou cela ne fonctionne plus ?
    25 Août 2011 10:42:05

    non sa ne fonctionne plus
    a c 548 8 Sécurité
    25 Août 2011 11:25:28

    Re,

    Bon, c'est bizarre quand même ...

    Repasse à Internet Explorer 8 alors (voir procédure dans le poste précédent)


    Je voudrais quand même regarder un truc en même temps :

    Télécharge OTL (de Old Timer) sur ton bureau.
  • Ferme toutes tes fenêtres, puis double clique sur OTL.exe pour le lancer.
    (Utilisateur de Vista/Windows 7 faites un clic droit -> "Exécuter en tant qu'administrateur")
  • Coche en haut la case devant "Tous les utilisateurs"
  • Sous Personnalisation, copie-colle l'ensemble du texte ci-dessous, laisse les autres options par défaut.
    netsvcs
    msconfig
    drivers32
    activex
    %SYSTEMDRIVE%\*.exe
    %ALLUSERSPROFILE%\Application Data\*.
    %ALLUSERSPROFILE%\Application Data\*.exe /s
    %APPDATA%\*.
    %APPDATA%\*.exe /s
    %systemroot%\*. /mp /s
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\Tasks\*.job /lockedfiles
    %systemroot%\system32\drivers\*.sys /lockedfiles
    hklm\software\clients\startmenuinternet|command /rs
    CREATERESTOREPOINT

  • Clique sur le bouton Analyse en haut à gauche puis patiente quelques instants.
  • A la fin du scan, deux rapports s'ouvriront OTL.Txt et Extras.Txt.
  • Pour les rapports, merci d'utiliser ce service de rapport en ligne : dépose le fichier via "parcourir" et poste simplement le lien obtenu dans ta réponse.

    Note : Les rapports sont aussi enregistrés sur le bureau
    25 Août 2011 12:13:14

    OTL Extras logfile created on: 25/08/2011 12:00:55 - Run 1
    OTL by OldTimer - Version 3.1.27.0 Folder = C:\Users\béa\Downloads
    Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
    Internet Explorer (Version = 8.0.6001.19048)
    Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy

    3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 60,00% Memory free
    6,00 Gb Paging File | 5,00 Gb Available in Paging File | 75,00% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
    Drive C: | 455,49 Gb Total Space | 345,98 Gb Free Space | 75,96% Space Free | Partition Type: NTFS
    Drive D: | 10,27 Gb Total Space | 1,49 Gb Free Space | 14,54% Space Free | Partition Type: NTFS
    E: Drive not present or media not loaded
    F: Drive not present or media not loaded
    G: Drive not present or media not loaded
    H: Drive not present or media not loaded
    I: Drive not present or media not loaded

    Computer Name: PC-DE-BÉA
    Current User Name: béa
    Logged in as Administrator.

    Current Boot Mode: Normal
    Scan Mode: All users
    Company Name Whitelist: On
    Skip Microsoft Files: On
    File Age = 14 Days
    Output = Standard
    Quick Scan

    ========== Extra Registry (SafeList) ==========


    ========== File Associations ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
    .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
    .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
    .html [@ = Reg Error: Value error.] -- Reg Error: Key error. File not found

    [HKEY_USERS\S-1-5-21-3283822198-2539521623-3953815957-1000\SOFTWARE\Classes\<extension>]
    .html [@ = ChromeHTML] -- C:\Users\béa\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.)

    ========== Shell Spawning ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
    batfile [open] -- "%1" %*
    cmdfile [open] -- "%1" %*
    comfile [open] -- "%1" %*
    cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
    exefile [open] -- "%1" %*
    helpfile [open] -- Reg Error: Key error.
    hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
    htmlfile [edit] -- "C:\Program Files\Microsoft Office\OFFICE11\msohtmed.exe" %1 (Microsoft Corporation)
    htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
    htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
    htmlfile [print] -- "C:\Program Files\Microsoft Office\OFFICE11\msohtmed.exe" /p %1 (Microsoft Corporation)
    http [open] -- Reg Error: Value error.
    https [open] -- Reg Error: Value error.
    inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
    piffile [open] -- "%1" %*
    regfile [merge] -- Reg Error: Key error.
    scrfile [config] -- "%1"
    scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
    scrfile [open] -- "%1" /S
    txtfile [edit] -- Reg Error: Key error.
    Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
    Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
    Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Directory [OneNote.Open] -- C:\PROGRA~1\MICROS~3\Office12\ONENOTE.EXE "%L" (Microsoft Corporation)
    Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
    Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
    Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
    CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

    ========== Security Center Settings ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
    "cval" = 1
    "UacDisableNotify" = 0
    "InternetSettingsDisableNotify" = 0
    "AutoUpdateDisableNotify" = 0

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
    "DisableMonitoring" = 1

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
    "DisableMonitoring" = 1

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
    "DisableMonitoring" = 1

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
    "AntiVirusOverride" = 0
    "AntiSpywareOverride" = 0
    "FirewallOverride" = 0
    "VistaSp1" = Reg Error: Unknown registry data type -- File not found
    "VistaSp2" = Reg Error: Unknown registry data type -- File not found

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 1

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 1

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
    "DisableNotifications" = 0
    "EnableFirewall" = 1
    "DoNotAllowExceptions" = 1

    ========== Authorized Applications List ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
    "C:\Program Files\Orange\Connectivity\ConnectivityManager.exe" = C:\Program Files\Orange\Connectivity\ConnectivityManager.exe:*:enabled:CSS -- (France Telecom SA)


    ========== Vista Active Open Ports Exception List ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
    "{2FB4EB2F-189B-49B2-81E0-9859F91982E8}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
    "{577A4353-1CE4-4ABA-B5F1-C37151733EB1}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
    "{8DA45409-DF41-498E-8266-0753DA10358B}" = lport=4371 | protocol=17 | dir=in | name=emule |
    "{94EB6BD8-C903-438D-925E-1A3994BBC2E3}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
    "{B7BCE6AF-9581-48F5-8EAE-4D728D65354C}" = lport=4361 | protocol=6 | dir=in | name=emule |
    "{CAB456AD-131D-40E8-9F13-24315A569499}" = lport=2869 | protocol=6 | dir=in | app=system |

    ========== Vista Active Application Exception List ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
    "{02A98890-FA17-4C3C-ACF1-D323CBF87169}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{0D233F8C-57D8-4B5A-ACFB-17A996C15583}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{0D948338-4933-47A9-A71D-B19537EC9EFC}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{1B789BB9-DC62-495B-880E-C69A2BAE1060}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{1FAEED62-FCE1-451A-8BE4-DFB09D796706}" = dir=in | app=c:\program files\cyberlink\powerdirector\pdr.exe |
    "{231424FD-0CEA-484E-8F6F-18D5A6DDF9B2}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{2D6EEB48-07ED-4AEC-8443-AA739114ABA2}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{2FA3EDA1-54A8-4A70-81DC-73E4F15E66CD}" = protocol=6 | dir=in | app=c:\program files\microsoft lifecam\lifecam.exe |
    "{31FBAB8C-5369-4BF2-BEF9-76F95955A6C8}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{36DA8100-0104-4179-968F-B4167CADFEA2}" = protocol=6 | dir=in | app=c:\program files\microsoft lifecam\lifeexp.exe |
    "{4737B171-9B8B-4D9C-A962-2EC25BB7A63D}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
    "{4E69606B-9653-42B3-A1AF-6BF18B7530C1}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{53079F05-E180-4435-B103-55245714A5D4}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{56A85675-0484-4EFE-B9D8-E233F9517F2A}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{59761C00-F78F-4795-8855-226F05A7A19A}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{5B6B6027-BA78-4003-815A-CFB34D0A62C3}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{5D7AD528-98A2-4061-B049-B3389BBDB89A}" = protocol=17 | dir=in | app=c:\program files\microsoft lifecam\lifecam.exe |
    "{64A24E6D-57EE-4BF8-B92C-21D537468567}" = protocol=17 | dir=in | app=c:\program files\orange\orangeupdate\service\oucore.exe |
    "{64C38654-575A-43D6-A94D-09A8ACF263D1}" = protocol=6 | dir=in | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{6C9F45C0-43BA-4C72-A309-94A3169BD7EE}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
    "{7209D1E4-D86B-41EC-AC90-C1C8DE7F04ED}" = protocol=17 | dir=in | app=c:\program files\microsoft lifecam\lifeenc2.exe |
    "{736A25B2-8953-465D-8F10-683C40247EC4}" = dir=in | app=c:\program files\windows live\sync\windowslivesync.exe |
    "{74CF9DCC-A50D-4D41-8B02-A2C5F2AF9F9F}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{7B6C7D36-6670-4804-A41C-D58D964919CA}" = protocol=6 | dir=in | app=c:\program files\microsoft lifecam\lifeenc2.exe |
    "{81FAC1EC-C5C6-47BE-AB6C-3CE942D20FF6}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{99A053EE-BFAF-45BB-BBB9-C3BD7403FCE9}" = protocol=17 | dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
    "{99D82C2D-7230-4B75-B531-2AA1276EBE98}" = protocol=17 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{A26BDBD1-F569-44C1-ACA8-96492BB557C7}" = protocol=17 | dir=in | app=c:\program files\microsoft lifecam\lifetray.exe |
    "{A8FE614F-03B2-4195-A998-8B59BE1800AA}" = protocol=17 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{B3BD4728-0456-4562-BC4D-A22480ECFBE3}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{BB571D8B-A10A-4DC3-91CE-BDE4CF35C70C}" = protocol=6 | dir=in | app=c:\program files\microsoft lifecam\lifetray.exe |
    "{BD10E861-C633-4F9D-AA81-0DFC429037F8}" = protocol=17 | dir=in | app=c:\program files\microsoft lifecam\lifeexp.exe |
    "{BE1B8C5B-347A-41CE-8285-72616BAE5502}" = dir=in | app=c:\program files\windows live\contacts\wlcomm.exe |
    "{C569330C-BEB8-4A9A-959F-B833A144B00D}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office12\onenote.exe |
    "{CD5C3F89-72EE-4EEC-8E37-A410DF03B8BE}" = protocol=6 | dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
    "{D6D3CBC2-1405-4DFD-BF7E-B8B98C5EEFD9}" = protocol=6 | dir=out | svc=rapimgr | app=%systemroot%\system32\svchost.exe |
    "{E2CBDC51-6140-40CD-8F4F-1718A2775BEB}" = protocol=6 | dir=out | svc=wcescomm | app=%systemroot%\system32\svchost.exe |
    "{FC6F5318-19FD-442F-9B09-2E926BD7C27C}" = protocol=6 | dir=in | app=c:\program files\orange\orangeupdate\service\oucore.exe |
    "TCP Query User{1A948EC2-428A-4D0F-A9F0-489E1CA3A365}C:\program files\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files\internet explorer\iexplore.exe |
    "TCP Query User{ACC46876-F4EF-44E2-AE7C-76E3A373C8E6}C:\program files\emule\emule.exe" = protocol=6 | dir=in | app=c:\program files\emule\emule.exe |
    "UDP Query User{8DC514E7-6E31-4A43-8D33-6D80A4C1E518}C:\program files\emule\emule.exe" = protocol=17 | dir=in | app=c:\program files\emule\emule.exe |
    "UDP Query User{E5A1A06F-2409-469F-A7AC-6DE020DF6E84}C:\program files\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files\internet explorer\iexplore.exe |

    ========== HKEY_LOCAL_MACHINE Uninstall List ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
    "{01930DB9-DF4B-44DB-166B-D9D9A1D0FD8B}" = Catalyst Control Center Localization Danish
    "{059EDAA4-242F-9425-5A89-C8AAF9550781}" = Catalyst Control Center Graphics Full New
    "{05E379CC-F626-4E7D-8354-463865B303BF}" = Windows Live UX Platform Language Pack
    "{09131B3A-D267-0BB7-3F06-DC9928B49A83}" = Catalyst Control Center Localization Korean
    "{0A2C5854-557E-48C8-835A-3B9F074BDCAA}" = Python 2.5
    "{0A8877D9-2951-7554-BBAC-573B45BA5261}" = Catalyst Control Center Localization Chinese Traditional
    "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
    "{0B135CFC-45FB-063A-197B-4DE76892F829}" = CCC Help Italian
    "{0CA6047C-D28B-4295-834A-07C52BA20C2D}" = Extension de Windows Live Toolbar (Windows Live Toolbar)
    "{0CC70FEF-5068-4CD5-B4DE-86FFD98EC929}" = Menus intelligents (Windows Live Toolbar)
    "{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP220_series" = Canon MP220 series
    "{11BB336F-0E58-4977-B866-F24FA334616B}" = HP Active Support Library
    "{12A76360-388E-4B27-ABEB-D5FC5378DD2A}" = HPPhotoSmartPhotobookWebPack1
    "{17342E3B-0818-4A6F-BFF8-99476605ADD6}" = livebox
    "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer
    "{19CC505B-7FC5-A8AC-F09B-8D73451A9B39}" = Catalyst Control Center Localization German
    "{1F85EC9D-8792-4ACD-9558-1F78237C3510}" = Catalyst Control Center Localization Turkish
    "{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite Deluxe
    "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
    "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer
    "{24F93FEC-6EC7-075C-249B-62442CA0026A}" = CCC Help Dutch
    "{254C37AA-6B72-4300-84F6-98A82419187E}" = Hewlett-Packard Active Check
    "{25E0A19C-1DDE-5B4B-1B0B-55258B980427}" = CCC Help Swedish
    "{26A24AE4-039D-4CA4-87B4-2F83216015FF}" = Java(TM) 6 Update 26
    "{272710E9-8E78-8A4C-BE61-B688EB6EF9B9}" = CCC Help French
    "{2F1F56CE-9F36-695E-5F6C-8F6554B17876}" = Catalyst Control Center Localization Czech
    "{2F34303C-F485-41FD-04D3-B71CE3352D9F}" = Catalyst Control Center Localization Portuguese
    "{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App" = Update Installer for WildTangent Games App
    "{3248F0A8-6813-11D6-A77B-00B0D0160010}" = Java(TM) SE Runtime Environment 6 Update 1
    "{34319F1F-7CF2-4CC9-B357-1AE7D2FF3AC5}" = Windows Live
    "{343F9F5A-AA17-4D61-B451-AA628D106B77}" = Skins
    "{34BFB099-07B2-4E95-A673-7362D60866A2}" = PSSWCORE
    "{36C97B5B-5593-45B8-B50E-DAD87036BD9D}" = Microsoft LifeCam
    "{37093BBD-A3ED-77CD-1483-7AF0428B2772}" = CCC Help Spanish
    "{3717A572-2F7F-7224-5A78-495257CD16E2}" = Catalyst Control Center Localization Finnish
    "{3B160861-7250-451E-B5EE-8B92BF30A710}" = Microsoft Works
    "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
    "{3DF537E0-614B-CAA6-5D12-D18A9804224A}" = CCC Help German
    "{3E31821C-7917-367E-938E-E65FC413EA31}" = Microsoft .NET Framework 3.5 Language Pack SP1 - fra
    "{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
    "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
    "{4CACFCD9-F71B-413A-8DF5-1A6419D5CDC6}" = Cards_Calendar_OrderGift_DoMorePlugout
    "{4E6BF3B3-9DAE-CB8E-97A3-F79AD996007E}" = CCC Help Thai
    "{4F027497-15AE-4DE5-B3BC-8E721C6127DE}" = ccc-Branding
    "{4F41AD68-89F2-4262-A32C-2F70B01FCE9E}" = Photorécit 3 pour Windows
    "{51EBE1ED-60AD-E43F-A1ED-282F9F217374}" = ccc-utility
    "{53BB5CF3-1BEE-DD11-8254-232E6C5C58AE}" = CCC Help Korean
    "{55979C41-7D6A-49CC-B591-64AC1BBE2C8B}" = HP Picasso Media Center Add-In
    "{58CE08B6-9BD4-8BE6-73C2-2D444026060C}" = CCC Help Greek
    "{5CF94ABE-4A38-8175-A7D1-5B42C4A936F6}" = ATI Catalyst Install Manager
    "{5D3170EA-B24F-2B5C-25FD-7FD3112C081D}" = Catalyst Control Center Localization Norwegian
    "{5DD4FCBD-A3C1-4155-9E17-4161C70AAABA}" = Segoe UI
    "{636194CF-A7A3-01FA-73D5-FA33EF7FDF7B}" = CCC Help Portuguese
    "{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites
    "{669D4A35-146B-4314-89F1-1AC3D7B88367}" = Hewlett-Packard Asset Agent for Health Check
    "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
    "{68BE4D42-AB44-A43C-0A1B-8E8E3F0E0C4D}" = Catalyst Control Center Graphics Previews Vista
    "{698F2F83-B413-A8A1-2DA4-FD1A3029526E}" = Catalyst Control Center Localization Greek
    "{69DE68DE-0E07-0EFA-0D03-15272DF054F7}" = CCC Help Finnish
    "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
    "{6B7F28D4-160E-40C6-B7C8-5EC6B9734DA7}" = Photo Notifier and Animation Creator
    "{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp" = WildTangent Games App (HP Games)
    "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
    "{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
    "{73A43E42-3658-4DD9-8551-FACDA3632538}" = HP Advisor
    "{76810709-A7D3-468D-9167-A1780C1E766C}" = Windows Live FolderShare
    "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
    "{77962FE1-396A-A7D6-EEB5-3AD84F95A9B7}" = Catalyst Control Center Localization French
    "{782FA1AF-9520-E518-B0EA-EE88F9DE0414}" = CCC Help Polish
    "{786C4AD1-DCBA-49A6-B0EF-B317A344BD66}" = Windows Live Favorites pour Windows Live Toolbar
    "{7ED124D9-8868-D71F-D30D-75A6369789E3}" = CCC Help Russian
    "{7F10292C-A190-4176-A665-A1ED3478DF86}" = LightScribe System Software
    "{81B5F83F-2291-48B0-8375-36B63A9BF5B0}" = Surligneur (Windows Live Toolbar)
    "{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
    "{83D013C0-D13C-A05F-ADAD-B7CCD5E4184A}" = Catalyst Control Center Localization Swedish
    "{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
    "{87A17751-BB5A-2AAE-E2B0-29779EB4890A}" = Catalyst Control Center Localization Chinese Standard
    "{8804F395-4CFA-E6F8-8BB8-4A77B880A8E2}" = Catalyst Control Center Localization Spanish
    "{89A43E80-AC6C-4DA8-9800-F4B30ED577C0}" = OLYMPUS ib
    "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
    "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
    "{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}" = TomTom HOME Visual Studio Merge Modules
    "{8F4B0B26-F5F5-DACD-80E8-354820F811C7}" = Catalyst Control Center Localization Italian
    "{90120000-0016-040C-0000-0000000FF1CE}" = Microsoft Office Excel MUI (French) 2007
    "{90120000-0016-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-0018-040C-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (French) 2007
    "{90120000-0018-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-001B-040C-0000-0000000FF1CE}" = Microsoft Office Word MUI (French) 2007
    "{90120000-001B-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-001F-0401-0000-0000000FF1CE}" = Microsoft Office Proof (Arabic) 2007
    "{90120000-001F-0401-0000-0000000FF1CE}_HOMESTUDENTR_{14809F99-C601-4D4A-9391-F1E8FAA964C5}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
    "{90120000-001F-0407-0000-0000000FF1CE}_HOMESTUDENTR_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
    "{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
    "{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    "{90120000-001F-0413-0000-0000000FF1CE}" = Microsoft Office Proof (Dutch) 2007
    "{90120000-001F-0413-0000-0000000FF1CE}_HOMESTUDENTR_{D66D5A44-E480-4BA4-B4F2-C554F6B30EBB}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    "{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
    "{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    "{90120000-0020-040C-0000-0000000FF1CE}" = Module de compatibilité pour Microsoft Office System 2007
    "{90120000-002C-040C-0000-0000000FF1CE}" = Microsoft Office Proofing (French) 2007
    "{90120000-006E-040C-0000-0000000FF1CE}" = Microsoft Office Shared MUI (French) 2007
    "{90120000-006E-040C-0000-0000000FF1CE}_HOMESTUDENTR_{B165D3C2-40AE-4D39-86F7-E5C87C4264C0}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90120000-00A1-040C-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (French) 2007
    "{90120000-00A1-040C-0000-0000000FF1CE}_HOMESTUDENTR_{AE187E0D-EBA5-4EE1-A397-BF1A577CB24C}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
    "{904CCF62-818D-4675-BC76-D37EB399F917}" = Gestionnaire pour appareils Windows Mobile
    "{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}" = Intel(R) Matrix Storage Manager
    "{9085040C-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Word Viewer 2003
    "{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
    "{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
    "{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
    "{91CB241A-31F6-0A86-574C-1C4D106533F1}" = Catalyst Control Center Graphics Light
    "{94D44A34-2542-012D-72E4-BC4F7A2D45FB}" = ccc-core-static
    "{95120000-00AF-040C-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (French)
    "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
    "{97BBECCF-B1FD-4010-8D4B-EFC9E3CCEECF}" = Driver Whiz
    "{9885A11E-60E4-417C-B58B-8B31B21C0B8A}" = HP Easy Setup - Frontend
    "{9A231406-6D78-55B7-D488-D39FE2DAAA12}" = Catalyst Control Center Graphics Full Existing
    "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
    "{9B163B70-C288-6B45-75D7-3FCC0B575F3D}" = Catalyst Control Center Localization Thai
    "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
    "{9DBA770F-BF73-4D39-B1DF-6035D95268FC}" = HP Customer Feedback
    "{9E3C27C5-7DF7-ADB9-0A03-2B4A51FCE75D}" = CCC Help Turkish
    "{A047FE02-C91C-41CB-898C-4ED21B86025A}" = ToolbarFR
    "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
    "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
    "{AB61A2E9-37D3-485D-9085-19FBDF8CEF4A}" = Windows Live Messenger
    "{AC3941FD-522A-0CA8-E7D4-B791EA1D05AE}" = Catalyst Control Center Localization Russian
    "{AC76BA86-7AD7-1036-7B44-A83000000003}" = Adobe Reader 8.3.0 - Français
    "{ADDA95FD-859F-8FF8-886C-1FCF3D45EC24}" = CCC Help Czech
    "{AEF545C7-9B16-D053-BD96-773DA14F9AB5}" = Catalyst Control Center Localization Hungarian
    "{AFAD41A9-9687-48A3-848F-693C11451433}" = HP Customer Experience Enhancements
    "{AFB784D9-36E4-4367-3225-7EA1F89795CC}" = Catalyst Control Center Localization Dutch
    "{B2544A03-10D0-4E5E-BA69-0362FFC20D18}" = OGA Notifier 2.0.0048.0
    "{B3BC9DB1-0B0A-48B0-B86B-EA77CAA7F800}" = Microsoft Corporation
    "{B588F1BF-02C9-2454-ABAB-420B371EA715}" = CCC Help Japanese
    "{BAD0FA60-09CF-4411-AE6A-C2844C8812FA}" = HP Photosmart Essential 2.5
    "{BE73C2EC-FFA1-DB9F-B4D1-A78813BDE46A}" = Catalyst Control Center Localization Polish
    "{C402BE7E-17AE-63D9-2418-CF87FB022946}" = Catalyst Control Center Graphics Previews Common
    "{C58167D3-4FEC-B217-0155-1E19C6B50C53}" = CCC Help Norwegian
    "{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
    "{C6150D8A-86ED-41D3-87BB-F3BB51B0B77F}" = Windows Live ID Sign-in Assistant
    "{C893D8C0-1BA0-4517-B11C-E89B65E72F70}" = Windows Live Photo Common
    "{C8E7B1C5-B9AA-18E2-049D-EF3792A71A47}" = CCC Help Hungarian
    "{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
    "{CB49B376-1136-44B4-83FA-036334B59937}" = OLYMPUS Master 2
    "{CD1EE4FF-BEED-47EA-9726-E2BB783BC4C1}" = Les offres internet Orange
    "{CD7340BF-69F5-0DEF-2DB9-806AB914F970}" = CCC Help Chinese Standard
    "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
    "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
    "{CFF8B8E8-E086-4DE0-935F-FE22CAB54F80}" = Microsoft Search Enhancement Pack
    "{D13FE823-C575-4451-AC37-E645A67AA581}_1.2.2.0" = Orange Installeur version 1.2.2.0
    "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
    "{DDD5104F-1C44-49EB-9E6B-29EC5D27658B}" = HP Update
    "{DDDE47E5-C711-4D17-9FA6-E3D7C340192A}" = OLYMPUS muvee theaterPack
    "{DEE88727-779B-47A9-ACEF-F87CA5F92A65}" = ScanSoft OmniPage SE 4
    "{E08DC77E-D09A-4e36-8067-D6DBBCC5F8DC}" = VideoToolkit01
    "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
    "{E2042C34-4B32-B3CD-17AD-AA645750FE35}" = CCC Help English
    "{E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218
    "{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger
    "{E7044E25-3038-4A76-9064-344AC038043E}" = Mise à jour du pilote du Gestionnaire pour appareils Windows Mobile
    "{E8C2622C-9FF1-4F60-8008-A0208154F9F3}" = muvee autoProducer 6.1
    "{E8FA1C46-100F-1825-0FFC-A50D808DCFCB}" = CCC Help Chinese Traditional
    "{EA7389EF-3392-6783-F681-9265BBEF1637}" = Catalyst Control Center Localization Japanese
    "{F07B861C-72B9-40A4-8B1A-AAED4C06A7E8}" = QuickTime
    "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
    "{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}" = Microsoft Office Live Add-in 1.5
    "{F8630C82-B5F7-80AA-B752-52224F82F185}" = CCC Help Danish
    "{F912A817-C97F-8DCC-BCE9-FFB2F2B39BD9}" = Catalyst Control Center Core Implementation
    "{ORAHSS}.UninstallSuite" = Orange - Logiciels Internet
    "Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites
    "ActiveScan 2.0" = Panda ActiveScan 2.0
    "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
    "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
    "AOL Toolbar" = AOL Toolbar 5.0
    "Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
    "BFGC" = Big Fish Games: Game Manager
    "Bigpoint_Games_FR Toolbar" = Bigpoint Games FR Toolbar
    "CanonMyPrinter" = Canon My Printer
    "CanonSolutionMenu" = Canon Utilities Solution Menu
    "CCleaner" = CCleaner
    "E77704EF5E71F4F18CADFBFA68595AFE036D5D97" = Package de pilotes Windows - OLYMPUS IMAGING CORP. Camera Communication Driver Package (09/09/2009 1.0.0.0)
    "Easy-PhotoPrint EX" = Canon Utilities Easy-PhotoPrint EX
    "eMule" = eMule
    "HOMESTUDENTR" = Microsoft Office Home and Student 2007
    "HP Photosmart Essential" = HP Photosmart Essential 2.5
    "InstallShield_{89A43E80-AC6C-4DA8-9800-F4B30ED577C0}" = OLYMPUS ib
    "InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
    "jeanmarcmorandini Toolbar" = jeanmarcmorandini Toolbar
    "KLiteCodecPack_is1" = K-Lite Codec Pack 3.8.5 Full
    "MailNotifier" = Notification Mail
    "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware version 1.51.1.1800
    "Microsoft .NET Framework 3.5 Language Pack SP1 - fra" = Module linguistique Microsoft .NET Framework 3.5 SP1- fra
    "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
    "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
    "Mozilla Firefox 5.0 (x86 fr)" = Mozilla Firefox 5.0 (x86 fr)
    "MP Navigator EX 1.0" = Canon MP Navigator EX 1.0
    "OrangeUpdateManager" = Orange update
    "OsdMaestro" = HP On-Screen Cap/Num/Scroll Lock Indicator
    "PC-Doctor 5 for Windows" = Outils de diagnostic du matériel
    "Photo Notifier and Animation Creator" = Photo Notifier and Animation Creator
    "TomTom HOME" = TomTom HOME 2.8.2.2264
    "WildTangent hp Master Uninstall" = My HP Games
    "WinLiveSuite" = Windows Live
    "YouTubeGet_is1" = YouTubeGet 4.8

    ========== HKEY_USERS Uninstall List ==========

    [HKEY_USERS\S-1-5-21-3283822198-2539521623-3953815957-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "Facebook Plug-In" = Facebook Plug-In
    "Google Chrome" = Google Chrome
    "Orange Inside" = Orange Inside

    ========== Last 10 Event Log Errors ==========

    [ Application Events ]
    Error - 23/08/2011 16:44:26 | Computer Name = PC-de-béa | Source = Application Error | ID = 1000
    Description = Application défaillante SystrayApp.exe, version 1.0.39.739, horodatage
    0x46f94eba, module défaillant SystrayApp.exe, version 1.0.39.739, horodatage 0x46f94eba,
    code d’exception 0xc0000005, décalage d’erreur 0x00001c1c, ID du processus 0xfd0,
    heure de début de l’application 0x01cc61d5526f04b3.

    Error - 23/08/2011 17:09:15 | Computer Name = PC-de-béa | Source = EventSystem | ID = 4621
    Description =

    Error - 24/08/2011 01:19:01 | Computer Name = PC-de-béa | Source = Application Error | ID = 1000
    Description = Application défaillante SystrayApp.exe, version 1.0.39.739, horodatage
    0x46f94eba, module défaillant SystrayApp.exe, version 1.0.39.739, horodatage 0x46f94eba,
    code d’exception 0xc0000005, décalage d’erreur 0x00001c1c, ID du processus 0xee8,
    heure de début de l’application 0x01cc621cfa489029.

    Error - 24/08/2011 15:47:34 | Computer Name = PC-de-béa | Source = Application Error | ID = 1000
    Description = Application défaillante SystrayApp.exe, version 1.0.39.739, horodatage
    0x46f94eba, module défaillant SystrayApp.exe, version 1.0.39.739, horodatage 0x46f94eba,
    code d’exception 0xc0000005, décalage d’erreur 0x00001c1c, ID du processus 0x2c0,
    heure de début de l’application 0x01cc629654853404.

    Error - 24/08/2011 16:36:23 | Computer Name = PC-de-béa | Source = Application Error | ID = 1000
    Description = Application défaillante SystrayApp.exe, version 1.0.39.739, horodatage
    0x46f94eba, module défaillant SystrayApp.exe, version 1.0.39.739, horodatage 0x46f94eba,
    code d’exception 0xc0000005, décalage d’erreur 0x00001c1c, ID du processus 0xc74,
    heure de début de l’application 0x01cc629d48215c47.

    Error - 24/08/2011 17:29:31 | Computer Name = PC-de-béa | Source = EventSystem | ID = 4621
    Description =

    Error - 25/08/2011 01:34:08 | Computer Name = PC-de-béa | Source = Application Error | ID = 1000
    Description = Application défaillante SystrayApp.exe, version 1.0.39.739, horodatage
    0x46f94eba, module défaillant SystrayApp.exe, version 1.0.39.739, horodatage 0x46f94eba,
    code d’exception 0xc0000005, décalage d’erreur 0x00001c1c, ID du processus 0xb80,
    heure de début de l’application 0x01cc62e80a04df29.

    Error - 25/08/2011 01:34:34 | Computer Name = PC-de-béa | Source = Application Error | ID = 1000
    Description = Application défaillante deskboard.exe, version 1.0.168.739, horodatage
    0x46f94a13, module défaillant PluginSrvHeader.dll, version 1.0.168.739, horodatage
    0x46f94a85, code d’exception 0xc0000005, décalage d’erreur 0x0000226f, ID du processus
    0x13ec, heure de début de l’application 0x01cc62e8a5f86509.

    Error - 25/08/2011 01:51:11 | Computer Name = PC-de-béa | Source = Application Error | ID = 1000
    Description = Application défaillante SystrayApp.exe, version 1.0.39.739, horodatage
    0x46f94eba, module défaillant SystrayApp.exe, version 1.0.39.739, horodatage 0x46f94eba,
    code d’exception 0xc0000005, décalage d’erreur 0x00001c1c, ID du processus 0xfe4,
    heure de début de l’application 0x01cc62eab4c7439a.

    Error - 25/08/2011 05:48:50 | Computer Name = PC-de-béa | Source = Application Error | ID = 1000
    Description = Application défaillante SystrayApp.exe, version 1.0.39.739, horodatage
    0x46f94eba, module défaillant SystrayApp.exe, version 1.0.39.739, horodatage 0x46f94eba,
    code d’exception 0xc0000005, décalage d’erreur 0x00001c1c, ID du processus 0x368,
    heure de début de l’application 0x01cc630bd1b40cd5.

    [ OSession Events ]
    Error - 28/02/2010 08:33:39 | Computer Name = PC-de-béa | Source = Microsoft Office 12 Sessions | ID = 7001
    Description = ID: 3, Application Name: Microsoft Office PowerPoint, Application
    Version: 12.0.6500.5000, Microsoft Office Version: 12.0.6425.1000. This session
    lasted 10 seconds with 0 seconds of active time. This session ended with a crash.

    [ System Events ]
    Error - 24/08/2011 01:17:06 | Computer Name = PC-de-béa | Source = Service Control Manager | ID = 7022
    Description =

    Error - 24/08/2011 05:36:30 | Computer Name = PC-de-béa | Source = DCOM | ID = 10016
    Description =

    Error - 24/08/2011 15:42:48 | Computer Name = PC-de-béa | Source = atikmdag | ID = 43033
    Description = Edid checksum error

    Error - 24/08/2011 15:42:48 | Computer Name = PC-de-béa | Source = atikmdag | ID = 43033
    Description = Edid checksum error

    Error - 24/08/2011 15:42:48 | Computer Name = PC-de-béa | Source = atikmdag | ID = 43033
    Description = Edid checksum error

    Error - 24/08/2011 16:32:23 | Computer Name = PC-de-béa | Source = atikmdag | ID = 43033
    Description = Edid checksum error

    Error - 24/08/2011 16:32:23 | Computer Name = PC-de-béa | Source = atikmdag | ID = 43033
    Description = Edid checksum error

    Error - 25/08/2011 01:29:01 | Computer Name = PC-de-béa | Source = atikmdag | ID = 43033
    Description = Edid checksum error

    Error - 25/08/2011 05:44:06 | Computer Name = PC-de-béa | Source = atikmdag | ID = 43033
    Description = Edid checksum error

    Error - 25/08/2011 05:44:06 | Computer Name = PC-de-béa | Source = atikmdag | ID = 43033
    Description = Edid checksum error


    < End of report >
    25 Août 2011 12:15:41

    TL logfile created on: 25/08/2011 12:00:55 - Run 1
    OTL by OldTimer - Version 3.1.27.0 Folder = C:\Users\béa\Downloads
    Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
    Internet Explorer (Version = 8.0.6001.19048)
    Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy

    3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 60,00% Memory free
    6,00 Gb Paging File | 5,00 Gb Available in Paging File | 75,00% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
    Drive C: | 455,49 Gb Total Space | 345,98 Gb Free Space | 75,96% Space Free | Partition Type: NTFS
    Drive D: | 10,27 Gb Total Space | 1,49 Gb Free Space | 14,54% Space Free | Partition Type: NTFS
    E: Drive not present or media not loaded
    F: Drive not present or media not loaded
    G: Drive not present or media not loaded
    H: Drive not present or media not loaded
    I: Drive not present or media not loaded

    Computer Name: PC-DE-BÉA
    Current User Name: béa
    Logged in as Administrator.

    Current Boot Mode: Normal
    Scan Mode: All users
    Company Name Whitelist: On
    Skip Microsoft Files: On
    File Age = 14 Days
    Output = Standard
    Quick Scan

    ========== Processes (SafeList) ==========

    PRC - [2011/08/25 11:54:36 | 00,548,352 | ---- | M] (OldTimer Tools) -- C:\Users\béa\Downloads\OTL.exe
    PRC - [2011/08/18 04:42:27 | 00,243,360 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\System32\Macromed\Flash\FlashUtil10v_ActiveX.exe
    PRC - [2011/07/29 06:35:15 | 00,307,376 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_32.exe
    PRC - [2011/05/13 14:49:42 | 00,025,456 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Live\Contacts\wlcomm.exe
    PRC - [2011/05/05 15:34:14 | 00,861,696 | ---- | M] (Orange) -- C:\Users\béa\AppData\Roaming\Orange\OrangeInside\one\OrangeInside.exe
    PRC - [2011/04/22 14:21:10 | 00,247,728 | ---- | M] (TomTom) -- C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe
    PRC - [2011/04/22 14:21:10 | 00,092,592 | ---- | M] (TomTom) -- C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
    PRC - [2011/04/08 12:59:52 | 00,254,696 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe
    PRC - [2011/03/28 20:31:16 | 00,193,920 | ---- | M] (Microsoft Corp.) -- C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
    PRC - [2011/03/28 20:31:14 | 01,713,536 | ---- | M] (Microsoft Corp.) -- C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
    PRC - [2011/03/11 16:17:30 | 00,093,360 | ---- | M] (OLYMPUS IMAGING CORP.) -- C:\Program Files\OLYMPUS\ib\olycamdetect.exe
    PRC - [2011/02/22 08:21:12 | 00,638,232 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Internet Explorer\iexplore.exe
    PRC - [2011/01/12 12:21:34 | 00,049,208 | ---- | M] (Hewlett-Packard) -- C:\Program Files\HP\HP Software Update\hpwuschd2.exe
    PRC - [2010/11/04 11:10:44 | 00,634,368 | ---- | M] () -- C:\Program Files\Orange\MailNotifier\MailNotifier.exe
    PRC - [2010/09/22 12:03:38 | 00,249,136 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
    PRC - [2009/11/01 22:02:18 | 00,039,408 | ---- | M] (Google Inc.) -- C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    PRC - [2009/08/05 11:27:00 | 01,644,088 | ---- | M] (Hewlett-Packard) -- C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe
    PRC - [2009/07/24 16:05:24 | 00,139,120 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft LifeCam\MSCamS32.exe
    PRC - [2009/07/21 14:33:58 | 00,185,089 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe
    PRC - [2009/06/26 18:21:00 | 00,757,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\vVX1000.exe
    PRC - [2009/05/13 16:47:40 | 00,108,289 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe
    PRC - [2009/04/11 08:27:36 | 02,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
    PRC - [2009/04/11 08:27:28 | 00,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conime.exe
    PRC - [2009/03/17 13:25:40 | 00,073,728 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    PRC - [2009/03/02 13:08:11 | 00,209,153 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
    PRC - [2009/01/26 15:31:16 | 02,144,088 | ---- | M] (Safer Networking Limited) -- C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    PRC - [2008/06/02 18:50:34 | 00,354,840 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe
    PRC - [2008/01/19 09:38:38 | 01,008,184 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Defender\MSASCui.exe
    PRC - [2008/01/19 09:33:40 | 00,142,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\WUDFHost.exe
    PRC - [2008/01/19 09:33:15 | 00,095,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mobsync.exe
    PRC - [2008/01/15 11:26:18 | 04,874,240 | ---- | M] (Realtek Semiconductor) -- C:\Windows\RtHDVCpl.exe
    PRC - [2007/09/25 20:28:12 | 00,065,536 | ---- | M] (France Telecom SA) -- C:\Program Files\Common Files\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe
    PRC - [2007/09/25 20:27:50 | 00,065,536 | ---- | M] (France Telecom SA) -- C:\Program Files\Common Files\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
    PRC - [2007/09/25 20:24:56 | 00,090,112 | ---- | M] (France Telecom SA) -- C:\Program Files\Common Files\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
    PRC - [2007/09/25 20:08:58 | 00,094,208 | ---- | M] (France Telecom SA) -- C:\Program Files\Orange\Systray\SystrayApp.exe
    PRC - [2007/09/25 19:58:46 | 00,598,016 | ---- | M] (France Telecom SA) -- C:\Program Files\Orange\Launcher\Launcher.exe
    PRC - [2007/09/25 19:33:26 | 00,716,800 | ---- | M] (France Telecom SA) -- C:\Program Files\Orange\Connectivity\ConnectivityManager.exe
    PRC - [2007/09/25 19:32:00 | 00,028,672 | ---- | M] (France Telecom SA) -- C:\Program Files\Orange\Connectivity\corecom\OraConfigRecover.exe
    PRC - [2007/09/25 19:31:52 | 00,360,448 | ---- | M] (France Telecom SA) -- C:\Program Files\Orange\Connectivity\corecom\CoreCom.exe
    PRC - [2007/09/19 18:30:52 | 00,065,536 | ---- | M] (Hewlett-Packard) -- c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Service.exe
    PRC - [2007/09/15 00:02:08 | 00,610,304 | ---- | M] (ATI Technologies Inc.) -- C:\Windows\System32\Ati2evxx.exe
    PRC - [2007/07/17 12:13:56 | 00,049,152 | ---- | M] (Advanced Micro Devices Inc.) -- c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
    PRC - [2007/07/17 12:13:34 | 00,049,152 | ---- | M] (ATI Technologies Inc.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
    PRC - [2007/05/31 09:21:28 | 00,648,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\WindowsMobile\wmdc.exe
    PRC - [2007/05/16 18:56:44 | 00,067,128 | ---- | M] (Hewlett-Packard Company) -- C:\hp\KBD\kbd.exe
    PRC - [2007/04/18 17:01:34 | 00,065,536 | ---- | M] (Hewlett-Packard Company) -- C:\hp\support\hpsysdrv.exe
    PRC - [2007/04/03 18:50:00 | 01,603,152 | ---- | M] (CANON INC.) -- C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
    PRC - [2007/02/15 13:59:00 | 00,118,784 | ---- | M] (OsdMaestro) -- C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
    PRC - [2007/02/04 13:02:14 | 00,079,400 | ---- | M] (Nuance Communications, Inc.) -- C:\Program Files\ScanSoft\OmniPageSE4\OpWareSE4.exe
    PRC - [2003/01/21 15:19:24 | 00,040,960 | ---- | M] (VM.) -- C:\Windows\VM_STI.EXE


    ========== Modules (SafeList) ==========

    MOD - [2011/08/25 11:54:36 | 00,548,352 | ---- | M] (OldTimer Tools) -- C:\Users\béa\Downloads\OTL.exe
    MOD - [2010/08/31 17:43:52 | 01,686,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18305_none_5cb72f2a088b0ed3\comctl32.dll


    ========== Win32 Services (SafeList) ==========

    SRV - [2011/05/20 11:13:26 | 01,055,872 | ---- | M] (France Telecom SA) [Auto | Stopped] -- C:\Program Files\Orange\OrangeUpdate\Service\OUCore.exe -- (Orange update Core Service)
    SRV - [2011/04/22 14:21:10 | 00,092,592 | ---- | M] (TomTom) [Auto | Running] -- C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe -- (TomTomHOMEService)
    SRV - [2011/03/28 20:31:14 | 01,713,536 | ---- | M] (Microsoft Corp.) [Auto | Running] -- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE -- (wlidsvc)
    SRV - [2011/02/22 15:33:09 | 00,797,696 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\FntCache.dll -- (FontCache)
    SRV - [2010/10/12 19:59:12 | 00,206,072 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files\WildTangent Games\App\GamesAppService.exe -- (GamesAppService)
    SRV - [2010/09/22 12:03:38 | 00,249,136 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe -- (SeaPort)
    SRV - [2010/03/18 13:16:28 | 00,753,504 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe -- (WPFFontCache_v0400)
    SRV - [2010/03/18 13:16:28 | 00,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
    SRV - [2010/01/25 07:07:25 | 00,135,664 | ---- | M] (Google Inc.) [On_Demand | Stopped] -- C:\Program Files\Google\Update\GoogleUpdate.exe -- (gupdatem) Service Google Update (gupdatem)
    SRV - [2010/01/25 07:07:25 | 00,135,664 | ---- | M] (Google Inc.) [Auto | Stopped] -- C:\Program Files\Google\Update\GoogleUpdate.exe -- (gupdate) Service Google Update (gupdate)
    SRV - [2009/11/01 22:02:17 | 00,182,768 | ---- | M] (Google) [On_Demand | Stopped] -- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe -- (gusvc)
    SRV - [2009/08/24 13:36:45 | 00,377,344 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- winhttp.dll -- (WinHttpAutoProxySvc)
    SRV - [2009/07/24 16:05:24 | 00,139,120 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft LifeCam\MSCamS32.exe -- (MSCamSvc)
    SRV - [2009/07/21 14:33:58 | 00,185,089 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
    SRV - [2009/05/13 16:47:40 | 00,108,289 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
    SRV - [2009/03/17 13:25:40 | 00,073,728 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe -- (LightScribeService)
    SRV - [2008/11/04 01:06:28 | 00,441,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv)
    SRV - [2008/06/02 18:50:34 | 00,354,840 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON) Intel(R)
    SRV - [2008/01/19 09:38:24 | 00,272,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
    SRV - [2007/09/25 20:27:50 | 00,065,536 | ---- | M] (France Telecom SA) [Auto | Running] -- C:\Program Files\Common Files\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe -- (FTRTSVC)
    SRV - [2007/09/19 18:30:52 | 00,065,536 | ---- | M] (Hewlett-Packard) [Auto | Running] -- c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe -- (HP Health Check Service)
    SRV - [2007/09/15 00:02:08 | 00,610,304 | ---- | M] (ATI Technologies Inc.) [Auto | Running] -- C:\Windows\System32\Ati2evxx.exe -- (Ati External Event Utility)
    SRV - [2007/05/31 09:21:24 | 00,379,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm)
    SRV - [2007/05/31 09:21:18 | 00,183,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr)
    SRV - [2006/11/02 14:35:29 | 00,013,312 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\ehome\ehstart.dll -- (ehstart)
    SRV - [2006/10/26 15:03:08 | 00,145,184 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE -- (ose)
    SRV - [2005/04/04 00:41:10 | 00,069,632 | ---- | M] (Macrovision Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe -- (IDriverT)


    ========== Standard Registry (SafeList) ==========


    ========== Internet Explorer ==========

    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [Binary data over 100 bytes]
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = [Binary data over 100 bytes]
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
    IE - HKLM\..\URLSearchHook: {58b525f4-b7d7-4600-86f4-46d30a9cc183} - C:\Program Files\jeanmarcmorandini\prxtbjea0.dll (Conduit Ltd.)
    IE - HKLM\..\URLSearchHook: {bf0ad41b-165c-42e1-8f4c-31ef000f9e77} - C:\Program Files\Bigpoint_Games_FR\prxtbBigp.dll (Conduit Ltd.)


    IE - HKU\.DEFAULT\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

    IE - HKU\S-1-5-18\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



    IE - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
    IE - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://r.orange.fr/r/Ohome_portail?ref=O_OI_defaultPage
    IE - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://fr.msn.com/?ocid=iehp
    IE - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = fr
    IE - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\S-1-5-21-3283822198-2539521623-3953815957-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

    ========== FireFox ==========

    FF - prefs.js..browser.search.defaultenginename: "MyStart Search"
    FF - prefs.js..browser.search.defaultthis.engineName: "jeanmarcmorandini Customized Web Search"
    FF - prefs.js..browser.search.defaulturl: "http://www.bing.com/search?FORM=IEFM1&q="
    FF - prefs.js..browser.search.selectedEngine: "Orange"
    FF - prefs.js..browser.search.useDBForOrder: true
    FF - prefs.js..browser.startup.homepage: "http://r.orange.fr/r/Ohome_portail?ref=O_OI_defaultPage"
    FF - prefs.js..keyword.URL: "http://rws.search.ke.voila.fr/RW/S/opensearch_orange?rd..."

    FF - user.js..browser.startup.homepage: "http://r.orange.fr/r/Ohome_portail?ref=O_OI_defaultPage"
    FF - user.js..browser.search.selectedEngine: "Orange"
    FF - user.js..keyword.URL: "http://rws.search.ke.voila.fr/RW/S/opensearch_orange?rd..."

    FF - HKLM\software\mozilla\Mozilla Firefox 5.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/08/09 22:41:07 | 00,000,000 | ---D | M]
    FF - HKLM\software\mozilla\Mozilla Firefox 5.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/07/10 12:29:23 | 00,000,000 | ---D | M]

    [2008/11/22 22:38:25 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\mozilla\Extensions
    [2008/11/22 22:38:25 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\mozilla\Extensions\home2@tomtom.com
    [2011/08/07 21:31:36 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\mozilla\Firefox\Profiles\vw8at1yx.default\extensions
    [2011/08/07 20:09:36 | 00,000,000 | ---D | M] (IncrediMail MediaBar Francais 2 Community Toolbar) -- C:\Users\béa\AppData\Roaming\mozilla\Firefox\Profiles\vw8at1yx.default\extensions\{249d74a3-bd19-4657-b6ce-e62f480a20de}
    [2011/07/11 22:20:29 | 00,000,000 | ---D | M] (No name found) -- C:\Users\béa\AppData\Roaming\mozilla\Firefox\Profiles\vw8at1yx.default\extensions\{4D9AE42B-F4C0-40e6-AEDB-4EC6E42B77AF}
    [2011/08/07 21:25:25 | 00,000,000 | ---D | M] (jeanmarcmorandini Community Toolbar) -- C:\Users\béa\AppData\Roaming\mozilla\Firefox\Profiles\vw8at1yx.default\extensions\{58b525f4-b7d7-4600-86f4-46d30a9cc183}
    [2011/08/07 21:25:26 | 00,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Users\béa\AppData\Roaming\mozilla\Firefox\Profiles\vw8at1yx.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
    [2008/09/29 19:59:18 | 00,000,000 | ---D | M] (No name found) -- C:\Users\béa\AppData\Roaming\mozilla\Firefox\Profiles\vw8at1yx.default\extensions\{991A772A-BA13-4c1d-A9EF-F897F31DEC7D}
    [2011/08/09 21:52:49 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\mozilla\Firefox\Profiles\vw8at1yx.default\extensions\menu_contextuel_orange@orange.fr
    [2011/07/26 21:56:07 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\mozilla\Firefox\Profiles\vw8at1yx.default\extensions\toolbar@Orange.fr
    [2010/06/22 17:32:57 | 00,001,819 | ---- | M] () -- C:\Users\béa\AppData\Roaming\Mozilla\FireFox\Profiles\vw8at1yx.default\searchplugins\bing.xml
    [2008/12/12 20:23:54 | 00,002,158 | ---- | M] () -- C:\Users\béa\AppData\Roaming\Mozilla\FireFox\Profiles\vw8at1yx.default\searchplugins\MySpace.xml
    [2011/08/07 20:05:55 | 00,002,187 | ---- | M] () -- C:\Users\béa\AppData\Roaming\Mozilla\FireFox\Profiles\vw8at1yx.default\searchplugins\MyStart Search.xml
    [2010/10/05 10:30:46 | 00,001,129 | ---- | M] () -- C:\Users\béa\AppData\Roaming\Mozilla\FireFox\Profiles\vw8at1yx.default\searchplugins\orange-1.xml
    [2011/08/09 21:52:46 | 00,001,132 | ---- | M] () -- C:\Users\béa\AppData\Roaming\Mozilla\FireFox\Profiles\vw8at1yx.default\searchplugins\orange.xml
    [2011/07/07 17:14:45 | 00,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
    [2010/06/23 19:30:32 | 00,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions\{4D9AE42B-F4C0-40e6-AEDB-4EC6E42B77AF}
    [2010/05/07 10:04:05 | 00,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
    [2010/08/07 21:50:41 | 00,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
    [2010/12/07 18:14:32 | 00,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
    [2011/01/10 23:28:55 | 00,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
    [2011/03/07 22:41:40 | 00,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
    [2011/07/07 17:14:45 | 00,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
    [2011/08/09 22:41:06 | 00,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browsercomps.dll
    [2011/05/04 04:52:23 | 00,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
    [2011/05/09 14:19:23 | 00,001,516 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\amazon-france.xml
    [2011/05/09 14:19:23 | 00,002,252 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\bing.xml
    [2011/05/09 14:19:23 | 00,001,822 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\cnrtl-tlfi-fr.xml
    [2011/05/09 14:19:23 | 00,001,154 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\eBay-france.xml
    [2011/05/09 14:19:23 | 00,001,426 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-fr.xml
    [2011/05/09 14:19:23 | 00,000,956 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\yahoo-france.xml

    O1 HOSTS File: ([2010/12/29 10:09:14 | 00,428,662 | R--- | M]) - C:\Windows\System32\drivers\etc\hosts
    O1 - Hosts: 127.0.0.1 localhost
    O1 - Hosts: ::1 localhost
    O1 - Hosts: 127.0.0.1 www.007guard.com
    O1 - Hosts: 127.0.0.1 007guard.com
    O1 - Hosts: 127.0.0.1 008i.com
    O1 - Hosts: 127.0.0.1 www.008k.com
    O1 - Hosts: 127.0.0.1 008k.com
    O1 - Hosts: 127.0.0.1 www.00hq.com
    O1 - Hosts: 127.0.0.1 00hq.com
    O1 - Hosts: 127.0.0.1 010402.com
    O1 - Hosts: 127.0.0.1 www.032439.com
    O1 - Hosts: 127.0.0.1 032439.com
    O1 - Hosts: 127.0.0.1 www.0scan.com
    O1 - Hosts: 127.0.0.1 0scan.com
    O1 - Hosts: 127.0.0.1 www.100888290cs.com
    O1 - Hosts: 127.0.0.1 100888290cs.com
    O1 - Hosts: 127.0.0.1 www.100sexlinks.com
    O1 - Hosts: 127.0.0.1 100sexlinks.com
    O1 - Hosts: 127.0.0.1 www.10sek.com
    O1 - Hosts: 127.0.0.1 10sek.com
    O1 - Hosts: 127.0.0.1 www.123topsearch.com
    O1 - Hosts: 127.0.0.1 123topsearch.com
    O1 - Hosts: 127.0.0.1 www.132.com
    O1 - Hosts: 127.0.0.1 132.com
    O1 - Hosts: 127.0.0.1 www.136136.net
    O1 - Hosts: 14760 more lines...
    O2 - BHO: (Aide pour le lien d'Adobe PDF Reader) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
    O2 - BHO: (ToolbarOrange.InitToolbarBHO) - {1d970ed5-3eda-438d-bffd-715931e2775b} - mscoree.dll (Microsoft Corporation)
    O2 - BHO: (jeanmarcmorandini Toolbar) - {58b525f4-b7d7-4600-86f4-46d30a9cc183} - C:\Program Files\jeanmarcmorandini\prxtbjea0.dll (Conduit Ltd.)
    O2 - BHO: (Search Helper) - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
    O2 - BHO: (AOL Toolbar Launcher) - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll (AOL)
    O2 - BHO: (BrowserHelper Class) - {8A9D74F9-560B-4FE7-ABEB-3B2E638E5CD6} - C:\Program Files\SGPSA\SearchAssistant.dll (Make The Web Better, LLC)
    O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
    O2 - BHO: (Bigpoint Games FR Toolbar) - {bf0ad41b-165c-42e1-8f4c-31ef000f9e77} - C:\Program Files\Bigpoint_Games_FR\prxtbBigp.dll (Conduit Ltd.)
    O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
    O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
    O3 - HKLM\..\Toolbar: (jeanmarcmorandini Toolbar) - {58b525f4-b7d7-4600-86f4-46d30a9cc183} - C:\Program Files\jeanmarcmorandini\prxtbjea0.dll (Conduit Ltd.)
    O3 - HKLM\..\Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No CLSID value found.
    O3 - HKLM\..\Toolbar: (Bigpoint Games FR Toolbar) - {bf0ad41b-165c-42e1-8f4c-31ef000f9e77} - C:\Program Files\Bigpoint_Games_FR\prxtbBigp.dll (Conduit Ltd.)
    O3 - HKLM\..\Toolbar: (barre d'outils Orange) - {c9a6357b-25cc-4bcf-96c1-78736985d412} - mscoree.dll (Microsoft Corporation)
    O3 - HKLM\..\Toolbar: (AOL Toolbar) - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll (AOL)
    O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
    O3 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
    O3 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
    O3 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\..\Toolbar\WebBrowser: (jeanmarcmorandini Toolbar) - {58B525F4-B7D7-4600-86F4-46D30A9CC183} - C:\Program Files\jeanmarcmorandini\prxtbjea0.dll (Conduit Ltd.)
    O3 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\..\Toolbar\WebBrowser: (Bigpoint Games FR Toolbar) - {BF0AD41B-165C-42E1-8F4C-31EF000F9E77} - C:\Program Files\Bigpoint_Games_FR\prxtbBigp.dll (Conduit Ltd.)
    O3 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\..\Toolbar\WebBrowser: (AOL Toolbar) - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll (AOL)
    O4 - HKLM..\Run: [] File not found
    O4 - HKLM..\Run: [Adobe ARM] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
    O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
    O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
    O4 - HKLM..\Run: [BigDogPath] C:\Windows\VM_STI.EXE (VM.)
    O4 - HKLM..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (CANON INC.)
    O4 - HKLM..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe (CANON INC.)
    O4 - HKLM..\Run: [HP Health Check Scheduler] File not found
    O4 - HKLM..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\hpwuschd2.exe (Hewlett-Packard)
    O4 - HKLM..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe (Hewlett-Packard Company)
    O4 - HKLM..\Run: [KBD] C:\hp\KBD\KbdStub.exe ()
    O4 - HKLM..\Run: [LifeCam] C:\Program Files\Microsoft LifeCam\LifeExp.exe (Microsoft Corporation)
    O4 - HKLM..\Run: [MDS_Menu] C:\Program Files\Olympus\ib\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
    O4 - HKLM..\Run: [Olympus ib] C:\Program Files\Olympus\ib\olycamdetect.exe (OLYMPUS IMAGING CORP.)
    O4 - HKLM..\Run: [OpwareSE4] C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe (Nuance Communications, Inc.)
    O4 - HKLM..\Run: [OsdMaestro] C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe (OsdMaestro)
    O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor)
    O4 - HKLM..\Run: [StartCCC] c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe ()
    O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Common Files\Java\Java Update\jusched.exe (Sun Microsystems, Inc.)
    O4 - HKLM..\Run: [SystrayORAHSS] C:\Program Files\Orange\Systray\SystrayApp.exe (France Telecom SA)
    O4 - HKLM..\Run: [VX1000] C:\Windows\vVX1000.exe (Microsoft Corporation)
    O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
    O4 - HKLM..\Run: [Windows Mobile Device Center] C:\Windows\WindowsMobile\wmdc.exe (Microsoft Corporation)
    O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
    O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
    O4 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000..\Run: [Google Update] C:\Users\béa\AppData\Local\Google\Update\GoogleUpdate.exe (Google Inc.)
    O4 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000..\Run: [HPAdvisor] C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe (Hewlett-Packard)
    O4 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000..\Run: [MailNotifier] C:\Program Files\Orange\MailNotifier\MailNotifier.exe ()
    O4 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000..\Run: [Olympus ib] C:\Program Files\Olympus\ib\olycamdetect.exe (OLYMPUS IMAGING CORP.)
    O4 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000..\Run: [OM2_Monitor] C:\Program Files\OLYMPUS\OLYMPUS Master 2\MMonitor.exe (OLYMPUS IMAGING CORP.)
    O4 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000..\Run: [orangeinside] C:\Users\béa\AppData\Roaming\Orange\OrangeInside\one\OrangeInside.exe (Orange)
    O4 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer Networking Limited)
    O4 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)
    O4 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000..\Run: [TomTomHOME.exe] C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe (TomTom)
    O7 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLogoff = 0
    O7 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoClose = 0
    O7 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableLockWorkstation = 0
    O7 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableChangePassword = 0
    O8 - Extra context menu item: ajouter cette page à vos favoris Orange - C:\Users\béa\AppData\Roaming\Orange\OrangeInside\src\addfavorites_html\addfavorites.html ()
    O8 - Extra context menu item: envoyer le texte sélectionné par sms - C:\Users\béa\AppData\Roaming\Orange\OrangeInside\src\sendsmsselectedtext_html\sendsmsselectedtext.html ()
    O8 - Extra context menu item: envoyer par sms - C:\Users\béa\AppData\Roaming\Orange\OrangeInside\src\sendsms_html\sendsms.html ()
    O8 - Extra context menu item: envoyer un mail - C:\Users\béa\AppData\Roaming\Orange\OrangeInside\src\sendmail_html\sendmail.html ()
    O8 - Extra context menu item: orange.fr - C:\Users\béa\AppData\Roaming\Orange\OrangeInside\src\orange_html\orange.html ()
    O8 - Extra context menu item: rechercher le texte sélectionné - C:\Users\béa\AppData\Roaming\Orange\OrangeInside\src\selectedsearch_html\selectedsearch.html ()
    O8 - Extra context menu item: traduire la page - C:\Users\béa\AppData\Roaming\Orange\OrangeInside\src\translate_html\translate.html ()
    O8 - Extra context menu item: traduire le texte sélectionné - C:\Users\béa\AppData\Roaming\Orange\OrangeInside\src\translateSelectedText_html\translateSelectedText.html ()
    O9 - Extra Button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
    O9 - Extra 'Tools' menuitem : &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
    O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
    O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
    O9 - Extra Button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll (AOL)
    O9 - Extra 'Tools' menuitem : Uninstall BitDefender Online Scanner - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe ()
    O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
    O13 - gopher Prefix: missing
    O15 - HKLM\..Trusted Domains: 72 domain(s) and sub-domain(s) not assigned to a zone.
    O15 - HKU\.DEFAULT\..Trusted Domains: 72 domain(s) and sub-domain(s) not assigned to a zone.
    O15 - HKU\S-1-5-18\..Trusted Domains: 72 domain(s) and sub-domain(s) not assigned to a zone.
    O15 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\..Trusted Domains: orange.fr ([logicielsgratuits] http in Sites de confiance)
    O15 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\..Trusted Domains: orange.fr ([www] http in Sites de confiance)
    O15 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\..Trusted Domains: 74 domain(s) and sub-domain(s) not assigned to a zone.
    O16 - DPF: {04CB5B64-5915-4629-B869-8945CEBADD21} https://static.impots.gouv.fr/abos/static/securite/cert... (Module de délivrance de certificat MINEFI)
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/download/E/5/6/E5611B10-0... (Windows Genuine Advantage Validation Tool)
    O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} http://messenger.zone.msn.com/binary/msgrchkr.cab56986.... (Checkers Class)
    O16 - DPF: {32C3FEAE-0877-4767-8C20-62A5829A0945} http://static.ak.facebook.com/fbplugin/win32/axfbootloa... (Reg Error: Key error.)
    O16 - DPF: {49232000-16E4-426C-A231-62846947304B} http://ipgweb.cce.hp.com/rdqemea/downloads/sysinfo.cab (SysData Class)
    O16 - DPF: {5A779DC0-837B-4590-AC42-C7C0847478C5} http://logicielsgratuits.orange.fr/download_service/Ins... (OrangeInstaller_ModuleIE Control)
    O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} http://download.bitdefender.com/resources/scanner/sourc... (BDSCANONLINE Control)
    O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-wind... (Java Plug-in 1.6.0_26)
    O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/curren... (Reg Error: Key error.)
    O16 - DPF: {9191F686-7F0A-441D-8A98-2FE3AC1BD913} http://acs.pandasoftware.com/activescan/cabs/as2stubie.... (ActiveScan 2.0 Installer Class)
    O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zone.msn.com/binary/MessengerStatsPACl... (MessengerStatsClient Class)
    O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_01-wind... (Java Plug-in 1.6.0_01)
    O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-wind... (Java Plug-in 1.6.0_26)
    O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-wind... (Java Plug-in 1.6.0_26)
    O16 - DPF: {CE69F98F-2AF3-4306-BAC6-A79070EDA1B4} http://eu.download.games.yahoo.com/zylom/activex/zyloml... (Zylom Loader Object)
    O16 - DPF: {D8089245-3211-40F6-819B-9E5E92CD61A2} https://signin3.valueactive.com/Register/Branding/olr33... (Reg Error: Key error.)
    O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
    O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
    O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
    O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.dll (Microsoft Corporation)
    O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
    O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
    O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - mscoree.dll (Microsoft Corporation)
    O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
    O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
    O24 - Desktop WallPaper: C:\Users\béa\Desktop\photos\cabane sur l eau le 21 aout 2011\P8200008.JPG
    O24 - Desktop BackupWallPaper: C:\Users\béa\Desktop\photos\cabane sur l eau le 21 aout 2011\P8200008.JPG
    O29 - HKLM SecurityProviders - (credssp.dll) - credssp.dll (Microsoft Corporation)
    O32 - HKLM CDRom: AutoRun - 1
    O32 - AutoRun File - [2007/11/24 18:17:52 | 00,000,074 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
    O33 - MountPoints2\{b0d6acea-b8d3-11dd-8293-001e8c4043bf}\Shell\AutoRun\command - "" = J:\InstallTomTomHOME.exe -- File not found
    O33 - MountPoints2\{b623d595-efa9-11dd-b0e3-001e8c4043bf}\Shell\AutoRun\command - "" = J:\InstallTomTomHOME.exe -- File not found
    O34 - HKLM BootExecute: (autocheck autochk *) - File not found
    O35 - comfile [open] -- "%1" %*
    O35 - exefile [open] -- "%1" %*

    ========== Files/Folders - Created Within 14 Days ==========

    [2011/08/25 12:00:44 | 00,000,000 | ---D | C] -- C:\_OTL
    [2011/08/25 10:37:21 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{452316C5-F6A7-4C53-90F1-5780C6EEE7ED}
    [2011/08/25 10:37:00 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{3418366A-9DD8-4222-8996-FD61A2AFB944}
    [2011/08/24 22:36:32 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{5493E3F1-98C6-4B06-A46C-5536193A5934}
    [2011/08/24 22:36:08 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{F1F4A1F5-79E2-4BE2-9081-E22F3473BFED}
    [2011/08/24 10:33:44 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{2A185BD0-669A-4495-A0E4-05089A711951}
    [2011/08/24 10:33:23 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{E10AE257-2755-44DA-9AE4-A0B5430A9126}
    [2011/08/23 22:32:59 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{94091368-4548-4E57-8E83-BF001487F3B6}
    [2011/08/23 22:32:37 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{DE21EB02-A8E9-4040-82D1-F162BD0C48BE}
    [2011/08/23 10:32:13 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{6376242A-513D-4D5C-9B08-EAFE2A6B82D8}
    [2011/08/23 10:31:51 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{822DBA82-D5EF-4299-A1AE-AD5234E9C33D}
    [2011/08/22 22:31:27 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{36C6E600-F2C4-42B1-AD4C-E72C22B74AD4}
    [2011/08/22 22:31:06 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{983143ED-F1D5-46D2-841C-BF78F5623480}
    [2011/08/22 10:30:42 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{BF97670E-C123-48BE-A2B0-3821B9BD218C}
    [2011/08/22 10:30:20 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{45D7A688-2E8D-4355-9C4C-65983F3A0117}
    [2011/08/19 04:44:56 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{329C49AA-6113-4394-A57B-7A51F4D63CBF}
    [2011/08/19 04:44:35 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{705954DD-276B-4F8C-883F-DDA9DC0E29BE}
    [2011/08/18 16:44:11 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{E317C126-00BB-4DAD-81F5-AE02834BDC84}
    [2011/08/18 16:43:49 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{E3787ECF-C637-4315-AA12-9743CF16DCC0}
    [2011/08/18 04:43:25 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{E792CCCA-10BC-4642-B2E3-FD8EBF8D4061}
    [2011/08/18 04:43:04 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{D6D15406-B321-461A-9774-E5B9DF7F51AB}
    [2011/08/17 16:42:40 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{8B9DFACE-3B22-4169-BDF3-76D776E67E1C}
    [2011/08/17 16:42:18 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{B341AB7F-A41B-4731-BD38-0E5D1B6EBFD7}
    [2011/08/17 04:41:29 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{76478EAE-6E2B-4406-8C94-F84BB6FF8167}
    [2011/08/17 04:40:31 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{F06A2ED8-D778-4AEF-B0AF-1D7C36348468}
    [2011/08/16 10:24:23 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{AF09655B-C070-4200-8747-301968B9C124}
    [2011/08/16 10:24:12 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{B520D8BB-5F80-4FEC-94D3-89203EDA40B3}
    [2011/08/15 17:08:05 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{9F889797-4FD1-4E5E-AE60-1BC4BB532D0A}
    [2011/08/15 17:07:44 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{D70200C0-E289-4AA2-B9CA-C6E1ACD4AC49}
    [2011/08/15 05:07:32 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{9A1B3125-CE8F-4FFF-9951-10C022BA6D45}
    [2011/08/15 05:07:21 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{25760002-1C06-43AE-A920-93242B46A2E8}
    [2011/08/13 22:05:34 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{D667DEEF-8809-42CF-BF09-DD0B16DE39B0}
    [2011/08/13 22:05:12 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{541CE60D-3DD0-4D4D-9DDB-E04A1C2B8CA7}
    [2011/08/13 10:05:00 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{AE3C9320-C712-464B-A892-BFEFE3CDDC78}
    [2011/08/13 10:04:39 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{5E4C03D8-C9B3-47B4-B8E1-CFDAB5BD3EA6}
    [2011/08/12 22:04:14 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{B9904D81-F642-4C02-AF98-7C72B6578559}
    [2011/08/12 22:03:52 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{D3312828-4799-4FBD-80ED-C298A6B0CA61}
    [2011/08/12 10:03:27 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{3F06A4FE-F36A-43BD-9EFC-1E49A34EC24E}
    [2011/08/12 10:03:05 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{EB76AEB8-ACDF-4099-8A50-DBF97AE670E5}
    [2011/08/11 22:02:40 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{18D4DB72-B02A-4C29-9253-579865F4FFEA}
    [2011/08/11 22:02:28 | 00,000,000 | ---D | C] -- C:\Users\béa\AppData\Local\{07CCA6D1-61F5-4E72-B5C6-FCD13B881294}
    [2011/08/11 12:33:55 | 00,000,000 | ---D | C] -- C:\Navilog1
    [2011/08/11 12:33:53 | 00,000,000 | ---D | C] -- C:\Program Files\Navilog1
    [2 C:\Users\béa\AppData\Local\*.tmp files -> C:\Users\béa\AppData\Local\*.tmp -> ]
    [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

    ========== Files - Modified Within 14 Days ==========

    [2011/08/25 12:01:27 | 08,388,608 | -HS- | M] () -- C:\Users\béa\ntuser.dat
    [2011/08/25 12:00:00 | 00,001,070 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3283822198-2539521623-3953815957-1000UA.job
    [2011/08/25 11:47:00 | 00,001,050 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
    [2011/08/25 11:45:50 | 00,001,046 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
    [2011/08/25 11:44:59 | 00,003,696 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
    [2011/08/25 11:44:59 | 00,003,696 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
    [2011/08/25 11:44:58 | 00,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
    [2011/08/25 11:44:46 | 00,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
    [2011/08/25 11:44:04 | 32,204,80000 | -HS- | M] () -- C:\hiberfil.sys
    [2011/08/25 11:43:01 | 00,000,012 | ---- | M] () -- C:\Windows\bthservsdp.dat
    [2011/08/25 11:42:11 | 00,524,288 | -HS- | M] () -- C:\Users\béa\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000001.regtrans-ms
    [2011/08/25 11:42:11 | 00,065,536 | -HS- | M] () -- C:\Users\béa\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TM.blf
    [2011/08/25 11:42:08 | 02,434,521 | -H-- | M] () -- C:\Users\béa\AppData\Local\IconCache.db
    [2011/08/25 08:00:00 | 00,001,018 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3283822198-2539521623-3953815957-1000Core.job
    [2011/08/24 08:03:30 | 00,016,896 | ---- | M] () -- C:\Users\béa\Documents\euro million.xlr
    [2011/08/24 08:03:30 | 00,003,270 | ---- | M] () -- C:\Users\béa\AppData\Roaming\wklnhst.dat
    [2011/08/23 22:33:08 | 00,000,766 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
    [2011/08/23 22:01:18 | 00,002,075 | ---- | M] () -- C:\Users\béa\Desktop\Google Chrome.lnk
    [2011/08/23 22:01:18 | 00,002,075 | ---- | M] () -- C:\Users\béa\Desktop\Google Chrome - Copie.lnk
    [2011/08/23 10:58:26 | 01,511,588 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI
    [2011/08/23 10:58:26 | 00,684,036 | ---- | M] () -- C:\Windows\System32\perfh00C.dat
    [2011/08/23 10:58:26 | 00,601,030 | ---- | M] () -- C:\Windows\System32\perfh009.dat
    [2011/08/23 10:58:26 | 00,128,848 | ---- | M] () -- C:\Windows\System32\perfc00C.dat
    [2011/08/23 10:58:26 | 00,106,300 | ---- | M] () -- C:\Windows\System32\perfc009.dat
    [2011/08/12 23:47:33 | 00,139,500 | ---- | M] () -- C:\Users\béa\Documents\ZHPDiag desinfection
    [2011/08/11 23:42:31 | 00,524,288 | -HS- | M] () -- C:\Users\béa\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000002.regtrans-ms
    [2 C:\Users\béa\AppData\Local\*.tmp files -> C:\Users\béa\AppData\Local\*.tmp -> ]
    [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

    ========== Files Created - No Company Name ==========

    [2011/08/24 21:48:12 | 00,002,075 | ---- | C] () -- C:\Users\béa\Desktop\Google Chrome - Copie.lnk
    [2011/08/23 22:33:07 | 00,000,766 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
    [2011/07/03 20:09:31 | 00,000,043 | ---- | C] () -- C:\Users\béa\AppData\Roaming\stats.txt
    [2010/11/14 15:40:43 | 00,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
    [2010/06/23 19:08:43 | 00,000,290 | RHS- | C] () -- C:\ProgramData\ntuser.pol
    [2010/04/12 21:06:41 | 00,000,036 | ---- | C] () -- C:\Users\béa\AppData\Local\housecall.guid.cache
    [2009/10/28 14:29:40 | 00,000,940 | ---- | C] () -- C:\Windows\bdoscandellang.ini
    [2009/10/27 18:34:08 | 00,000,716 | ---- | C] () -- C:\Windows\wininit.ini
    [2009/10/19 11:31:50 | 00,000,000 | ---- | C] () -- C:\Windows\QuickInstall.INI
    [2009/08/03 15:07:42 | 00,403,816 | ---- | C] () -- C:\Windows\System32\OGACheckControl.dll
    [2009/07/03 23:41:11 | 00,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
    [2008/08/02 10:36:47 | 00,000,090 | ---- | C] () -- C:\Users\béa\AppData\Local\uedkk.bat
    [2008/04/30 17:03:26 | 00,000,680 | ---- | C] () -- C:\Users\béa\AppData\Local\d3d9caps.dat
    [2008/04/04 18:58:07 | 00,164,352 | ---- | C] () -- C:\Windows\System32\unrar.dll
    [2008/04/04 18:58:03 | 00,755,027 | ---- | C] () -- C:\Windows\System32\xvidcore.dll
    [2008/04/04 18:58:02 | 03,596,288 | ---- | C] () -- C:\Windows\System32\qt-dx331.dll
    [2008/04/04 18:58:02 | 00,159,839 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll
    [2008/04/04 18:58:00 | 00,007,680 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll
    [2008/04/04 18:58:00 | 00,000,547 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll.manifest
    [2008/03/21 21:24:14 | 00,003,270 | ---- | C] () -- C:\Users\béa\AppData\Roaming\wklnhst.dat
    [2008/03/17 20:59:58 | 00,088,064 | ---- | C] () -- C:\Users\béa\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    [2008/03/10 13:39:15 | 00,000,412 | ---- | C] () -- C:\Windows\MAXLINK.INI
    [2007/11/24 18:09:10 | 00,000,342 | ---- | C] () -- C:\ProgramData\hpzinstall.log
    [2007/11/24 18:03:33 | 00,159,744 | ---- | C] () -- C:\Windows\System32\atitmmxx.dll
    [2007/11/24 17:51:51 | 00,102,400 | ---- | C] () -- C:\Windows\System32\pywintypes25.dll
    [2007/11/24 17:51:50 | 00,327,680 | ---- | C] () -- C:\Windows\System32\pythoncom25.dll
    [2007/04/10 23:46:52 | 00,015,498 | ---- | C] () -- C:\Windows\VX1000.ini
    [2006/11/02 14:35:32 | 00,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
    [2006/11/02 09:40:29 | 00,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini

    ========== LOP Check ==========

    [2011/08/23 22:35:21 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\Azureus
    [2009/01/23 19:57:15 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\Canon
    [2009/10/28 20:40:38 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\F-Secure
    [2010/05/08 18:42:25 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\Facebook
    [2009/10/19 09:30:22 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\HotSync
    [2009/10/19 09:36:59 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\Leadertech
    [2010/11/04 12:24:36 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\LimeWire
    [2010/08/28 21:40:46 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\MagicIndie
    [2010/08/23 18:55:04 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\Mariaglorum
    [2010/08/24 19:09:14 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\Merscom
    [2011/07/26 21:56:32 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\Orange
    [2008/08/23 14:51:08 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\PlayFirst
    [2008/03/10 13:39:09 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\ScanSoft
    [2011/04/28 03:40:58 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\Shareaza
    [2008/03/21 22:26:17 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\Template
    [2008/11/22 22:38:24 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\TomTom
    [2011/02/13 16:56:39 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\Uniblue
    [2008/03/31 14:45:42 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\WinBatch
    [2011/08/25 11:43:03 | 00,032,586 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

    ========== Purity Check ==========



    ========== Alternate Data Streams ==========

    @Alternate Data Stream - 16 bytes -> C:\Users\béa\Downloads:Shareaza.GUID
    @Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:E9FAC3AB
    @Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:208948F1
    @Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:008586AE
    @Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:BF6C81B2
    < End of report >

    desoler de le faire comme sa mais je le trouve pas sur mon ordi
    a c 548 8 Sécurité
    25 Août 2011 14:17:17

    Re,

    Il aurait mieux valu les envoyer via cijoint, mais bon ...


    Alors je pense savoir où est le souci :

    Tu possèdes les logiciels Orange, en plus d’être totalement inutile pour la plupart, ils interagissent avec Internet Explorer, ce qui doit provoquer ces soucis...

    On va donc désinstaller le plupart et voir s'il y a du mieux, tu as aussi des toolbars inutile ...


    1) Programmes à désinstaller via "ajout/suppression des programmes" (si présent) :

    - Java(TM) SE Runtime Environment 6 Update 1 (version obsolète tu possèdes une plus récente)
    - Driver Whiz (sauf réelle utilité, peu de pilote nécessite des mises à jour souvent ...)
    - ToolbarFR (toolbar Orange, sauf réelle utilité ...)
    - Les offres internet Orange (inutile, commercial)
    - Orange Installeur version 1.2.2.0 (inutile)
    - Orange - Logiciels Internet (inutile)
    - Orange update (idem)
    - Orange Inside (idem)
    - Panda ActiveScan 2.0 (inutile)
    - AOL Toolbar 5.0 (sauf réelle utilité ...)
    - Bigpoint Games FR Toolbar (toolbar, contient des fonction de traçage ...)
    - jeanmarcmorandini Toolbar (idem)
    - Spybot search and destroy (inutile et obsolète)


    Pour info c'est bien un logiciel orange qui fait planté Internet explorer :
    Citation :
    Error - 23/08/2011 16:44:26 | Computer Name = PC-de-béa | Source = Application Error | ID = 1000
    Description = Application défaillante SystrayApp.exe, version 1.0.39.739, horodatage
    0x46f94eba, module défaillant SystrayApp.exe, version 1.0.39.739, horodatage 0x46f94eba,
    code d’exception 0xc0000005, décalage d’erreur 0x00001c1c, ID du processus 0xfd0,
    heure de début de l’application 0x01cc61d5526f04b3.


    Citation :
    PRC - [2007/09/25 20:08:58 | 00,094,208 | ---- | M] (France Telecom SA) -- C:\Program Files\Orange\Systray\SystrayApp.exe



    Désinstalle déjà tous cela, dis-moi si tu as des questions.
    25 Août 2011 22:59:57

    Bigpoint Games FR Toolbar (toolbar, contient des fonction de traçage ..

    jeanmarcmorandini Toolbar (idem)

    je n es pas reussit a les désinstaller en faisant ajout suppression des programmes sinon tout fonctionne sur la version 8 et plus rapide merci
    a c 548 8 Sécurité
    26 Août 2011 10:12:04

    Re,

    On va les virer manuellement ceux là alors :

    Relance OTL.exe

  • Ferme toutes tes fenêtres, puis double clique sur OTL.exe pour le lancer.
    (Utilisateur de Vista/Windows 7 faites un clic droit -> "Exécuter en tant qu'administrateur")

  • Copie/colle ce qui suit dans le cadre Personnalisation en bas à gauche.
    :OTL
    IE - HKLM\..\URLSearchHook: {58b525f4-b7d7-4600-86f4-46d30a9cc183} - C:\Program Files\jeanmarcmorandini\prxtbjea0.dll (Conduit Ltd.)
    IE - HKLM\..\URLSearchHook: {bf0ad41b-165c-42e1-8f4c-31ef000f9e77} - C:\Program Files\Bigpoint_Games_FR\prxtbBigp.dll (Conduit Ltd.)
    FF - prefs.js..browser.search.defaultenginename: "MyStart Search"
    FF - prefs.js..browser.search.defaultthis.engineName: "jeanmarcmorandini Customized Web Search"
    [2011/08/07 20:09:36 | 00,000,000 | ---D | M] (IncrediMail MediaBar Francais 2 Community Toolbar) -- C:\Users\béa\AppData\Roaming\mozilla\Firefox\Profiles\vw8at1yx.default\extensions\{249d74a3-bd19-4657-b6ce-e62f480a20de}
    [2011/07/11 22:20:29 | 00,000,000 | ---D | M] (No name found) -- C:\Users\béa\AppData\Roaming\mozilla\Firefox\Profiles\vw8at1yx.default\extensions\{4D9AE42B-F4C0-40e6-AEDB-4EC6E42B77AF}
    [2011/08/07 21:25:25 | 00,000,000 | ---D | M] (jeanmarcmorandini Community Toolbar) -- C:\Users\béa\AppData\Roaming\mozilla\Firefox\Profiles\vw8at1yx.default\extensions\{58b525f4-b7d7-4600-86f4-46d30a9cc183}
    [2011/08/07 21:25:26 | 00,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Users\béa\AppData\Roaming\mozilla\Firefox\Profiles\vw8at1yx.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
    [2008/09/29 19:59:18 | 00,000,000 | ---D | M] (No name found) -- C:\Users\béa\AppData\Roaming\mozilla\Firefox\Profiles\vw8at1yx.default\extensions\{991A772A-BA13-4c1d-A9EF-F897F31DEC7D}
    [2011/08/09 21:52:49 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\mozilla\Firefox\Profiles\vw8at1yx.default\extensions\menu_contextuel_orange@orange.fr
    [2011/07/26 21:56:07 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\mozilla\Firefox\Profiles\vw8at1yx.default\extensions\toolbar@Orange.fr
    [2010/10/05 10:30:46 | 00,001,129 | ---- | M] () -- C:\Users\béa\AppData\Roaming\Mozilla\FireFox\Profiles\vw8at1yx.default\searchplugins\orange-1.xml
    [2011/08/09 21:52:46 | 00,001,132 | ---- | M] () -- C:\Users\béa\AppData\Roaming\Mozilla\FireFox\Profiles\vw8at1yx.default\searchplugins\orange.xml
    [2010/05/07 10:04:05 | 00,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
    [2010/08/07 21:50:41 | 00,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
    [2010/12/07 18:14:32 | 00,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
    [2011/01/10 23:28:55 | 00,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
    [2011/03/07 22:41:40 | 00,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
    O2 - BHO: (jeanmarcmorandini Toolbar) - {58b525f4-b7d7-4600-86f4-46d30a9cc183} - C:\Program Files\jeanmarcmorandini\prxtbjea0.dll (Conduit Ltd.)
    O2 - BHO: (AOL Toolbar Launcher) - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll (AOL)
    O2 - BHO: (BrowserHelper Class) - {8A9D74F9-560B-4FE7-ABEB-3B2E638E5CD6} - C:\Program Files\SGPSA\SearchAssistant.dll (Make The Web Better, LLC)
    O2 - BHO: (Bigpoint Games FR Toolbar) - {bf0ad41b-165c-42e1-8f4c-31ef000f9e77} - C:\Program Files\Bigpoint_Games_FR\prxtbBigp.dll (Conduit Ltd.)
    O3 - HKLM\..\Toolbar: (jeanmarcmorandini Toolbar) - {58b525f4-b7d7-4600-86f4-46d30a9cc183} - C:\Program Files\jeanmarcmorandini\prxtbjea0.dll (Conduit Ltd.)
    O3 - HKLM\..\Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No CLSID value found.
    O3 - HKLM\..\Toolbar: (Bigpoint Games FR Toolbar) - {bf0ad41b-165c-42e1-8f4c-31ef000f9e77} - C:\Program Files\Bigpoint_Games_FR\prxtbBigp.dll (Conduit Ltd.)
    O3 - HKLM\..\Toolbar: (barre d'outils Orange) - {c9a6357b-25cc-4bcf-96c1-78736985d412} - mscoree.dll (Microsoft Corporation)
    O3 - HKLM\..\Toolbar: (AOL Toolbar) - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll (AOL)
    O3 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\..\Toolbar\WebBrowser: (no name) - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No CLSID value found.
    O3 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\..\Toolbar\WebBrowser: (jeanmarcmorandini Toolbar) - {58B525F4-B7D7-4600-86F4-46D30A9CC183} - C:\Program Files\jeanmarcmorandini\prxtbjea0.dll (Conduit Ltd.)
    O3 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\..\Toolbar\WebBrowser: (Bigpoint Games FR Toolbar) - {BF0AD41B-165C-42E1-8F4C-31EF000F9E77} - C:\Program Files\Bigpoint_Games_FR\prxtbBigp.dll (Conduit Ltd.)
    O3 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\..\Toolbar\WebBrowser: (AOL Toolbar) - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll (AOL)
    O8 - Extra context menu item: envoyer le texte sélectionné par sms - C:\Users\béa\AppData\Roaming\Orange\OrangeInside\src\sendsmsselectedtext_html\sendsmsselectedtext.html ()
    O8 - Extra context menu item: envoyer par sms - C:\Users\béa\AppData\Roaming\Orange\OrangeInside\src\sendsms_html\sendsms.html ()
    O8 - Extra context menu item: envoyer un mail - C:\Users\béa\AppData\Roaming\Orange\OrangeInside\src\sendmail_html\sendmail.html ()
    O8 - Extra context menu item: orange.fr - C:\Users\béa\AppData\Roaming\Orange\OrangeInside\src\orange_html\orange.html ()
    O8 - Extra context menu item: rechercher le texte sélectionné - C:\Users\béa\AppData\Roaming\Orange\OrangeInside\src\selectedsearch_html\selectedsearch.html ()
    O8 - Extra context menu item: traduire la page - C:\Users\béa\AppData\Roaming\Orange\OrangeInside\src\translate_html\translate.html ()
    O8 - Extra context menu item: traduire le texte sélectionné - C:\Users\béa\AppData\Roaming\Orange\OrangeInside\src\translateSelectedText_html\translateSelectedText.html ()
    O9 - Extra Button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll (AOL)
    O9 - Extra 'Tools' menuitem : Uninstall BitDefender Online Scanner - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe ()
    O15 - HKLM\..Trusted Domains: 72 domain(s) and sub-domain(s) not assigned to a zone.
    O15 - HKU\.DEFAULT\..Trusted Domains: 72 domain(s) and sub-domain(s) not assigned to a zone.
    O15 - HKU\S-1-5-18\..Trusted Domains: 72 domain(s) and sub-domain(s) not assigned to a zone.
    O15 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\..Trusted Domains: orange.fr ([logicielsgratuits] http in Sites de confiance)
    O15 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\..Trusted Domains: orange.fr ([www] http in Sites de confiance)
    O15 - HKU\S-1-5-21-3283822198-2539521623-3953815957-1000\..Trusted Domains: 74 domain(s) and sub-domain(s) not assigned to a zone.
    O16 - DPF: {5A779DC0-837B-4590-AC42-C7C0847478C5} http://logicielsgratuits.orange.fr [...] taller.cab (OrangeInstaller_ModuleIE Control)
    O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} http://download.bitdefender.com/re [...] oscan8.cab (BDSCANONLINE Control)
    O16 - DPF: {9191F686-7F0A-441D-8A98-2FE3AC1BD913} http://acs.pandasoftware.com/activ [...] stubie.cab (ActiveScan 2.0 Installer Class)
    O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/j [...] s-i586.cab (Java Plug-in 1.6.0_01)
    O16 - DPF: {D8089245-3211-40F6-819B-9E5E92CD61A2} https://signin3.valueactive.com/Reg [...] lashax.cab (Reg Error: Key error.)
    [2011/08/11 12:33:55 | 00,000,000 | ---D | C] -- C:\Navilog1
    [2011/08/11 12:33:53 | 00,000,000 | ---D | C] -- C:\Program Files\Navilog1
    [2 C:\Users\béa\AppData\Local\*.tmp files -> C:\Users\béa\AppData\Local\*.tmp -> ]
    [1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
    [2010/04/12 21:06:41 | 00,000,036 | ---- | C] () -- C:\Users\béa\AppData\Local\housecall.guid.cache
    [2009/10/28 14:29:40 | 00,000,940 | ---- | C] () -- C:\Windows\bdoscandellang.ini
    [2009/10/28 20:40:38 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\F-Secure
    [2011/02/13 16:56:39 | 00,000,000 | ---D | M] -- C:\Users\béa\AppData\Roaming\Uniblue
    @Alternate Data Stream - 147 bytes -> C:\ProgramData\TEMP:E9FAC3AB
    @Alternate Data Stream - 125 bytes -> C:\ProgramData\TEMP:208948F1
    @Alternate Data Stream - 124 bytes -> C:\ProgramData\TEMP:008586AE
    @Alternate Data Stream - 122 bytes -> C:\ProgramData\TEMP:BF6C81B2

    :Reg
    [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Bigpoint_Games_FR Toolbar]
    [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\jeanmarcmorandini Toolbar]

    :Files
    C:\Program Files\jeanmarcmorandini
    C:\Program Files\Bigpoint_Games_FR
    C:\Program Files\AOL
    C:\Program Files\SGPSA

    :Commands
    [emptytemp]
    [emptyflash]
    [resethosts]


  • Puis clique sur le bouton Correction en haut à gauche
  • Si le pc demande à redémarrer accepte.
  • Poste le rapport de suppression.

    Note : le rapport est enregistré sous format ".log", il convient de changer cette extension en ".txt" si tu veux le déposer sur des sites en ligne.
    26 Août 2011 12:32:44

    bonjour,

    j ai fais tout ce que tu ma dit mais au moment de coller mon rapport ici je ne peu pas . pour info OTL n es pas en français mais en anglais .merci bonne journée .
    a c 548 8 Sécurité
    26 Août 2011 14:23:45

    Re,

    Tu ne peux pas car il doit être trop grand, fais ceci :

    Citation :
    Note : le rapport est enregistré sous format ".log", il convient de changer cette extension en ".txt" si tu veux le déposer sur des sites en ligne.

    Pour les rapports, merci d'utiliser ce service de rapport en ligne : dépose le fichier via "parcourir" et poste simplement le lien obtenu dans ta réponse.



    OTL est bien en français (sur les pc configuré en français), pense à bien le lancer en admin.

    Supprime ta version et télécharge une nouvelle :
    http://oldtimer.geekstogo.com/OTL.exe
    a c 548 8 Sécurité
    27 Août 2011 14:11:45

    Bonjour,

    On fait en sorte d’expliquer au mieux, faut pas hésiter justement à poser des questions ou dire ce qui ne va pas.

    Comment se comporte le pc à présent ? encore des soucis ?
    27 Août 2011 14:16:51

    re ,

    je suis toujours sur la version 8 explorer la tout va bien es ce que je remet la version 9 merci
    a c 548 8 Sécurité
    27 Août 2011 14:19:25

    Re,

    Testons oui.
    27 Août 2011 14:31:47

    re,

    je suis désoler la version 9 ne fonctionne toujours pas
    a c 548 8 Sécurité
    27 Août 2011 14:58:39

    Re,

    Amusant ça ... enfin, si on veut :lol: 

    Hé bien reste sous IE8 pour le moment, il est suivi par Microsoft donc pas de soucis ...

    [:_tom_:7]
    27 Août 2011 15:08:16

    ok donc je n es aucun virus ? ce qui es embetant ces qu il me demande sans arret la mise a jours explorer 9 mais bon je vais m y faire tant pis lol merci a toi d avoir donner de ton temps merci beaucoup . encore une petite question lol quand j ai eu mon ordi j ai mis un mot de passe pour l ouvrir comment je peu le supprimer je n en veut plus du mot de passe merci encore
    a c 548 8 Sécurité
    27 Août 2011 15:12:56

    Re,

    Non tu n'avais aucun virus de toute manière depuis le début, juste des truc inutile ;) 


    Pour empêcher une mise à jour :
    http://social.technet.microsoft.com/Forums/fr/1121/thre...


    Pour finir le ménage et enlever les outils utilisé :

    Relance OTL.exe
    (Utilisateur de Vista/Windows 7 faites un clic droit -> "Exécuter en tant qu'administrateur")

  • Clique sur "Purge d'outils"
  • Valide l'avertissement par "ok" et laisse le pc redémarrer.


    Pour démarrer une session sans mot de passe :
    http://www.zebulon.fr/astuces/216-demarrer-une-session-...

    [:_tom_:7]


    27 Août 2011 15:58:47

    ok super merci hyunkel30 plus de mot de passe impeccable et pour ce qui es d explorer sa va venir tout seul si j ai bien compris lol ou faut il que je remette la version 8 . promis j arrete avec mes questions lol mais quant on es debutante pas facile de tout comprendre vite . je retient l ardresse de se site je regarde d autre message et j apprend ces super encore merci . a bientot (enfin j espere pas lol )
    a c 548 8 Sécurité
    27 Août 2011 16:19:16

    [:archi]

    Tu peux indiquer ton sujet "réglé" en cliquant sur le bouton "éditer" dans ton tout premier message.
    -> Ajoute ensuite "résolu" à coté de ton titre et valide.

    Tu peux aussi, si tu le souhaites, valider une "meilleure réponse", ton sujet sera alors automatiquement marqué comme "résolu"

    A bientôt sur les forums Tom's Guide
    Tom's guide dans le monde
    • Allemagne
    • Italie
    • Irlande
    • Royaume Uni
    • Etats Unis
    Suivre Tom's Guide
    Inscrivez-vous à la Newsletter
    • ajouter à twitter
    • ajouter à facebook
    • ajouter un flux RSS