Se connecter / S'enregistrer
Votre question
Fermé

Pages web porno et autres qui s'ouvrent toutes seules [RESOLU]

Tags :
  • Firefox
  • Sécurité
Dernière réponse : dans Sécurité et virus
23 Février 2011 21:40:41

Comme le sujet le dit: Dans IE7 ou Firefox, j'ai des pages web pornos et autres pub qui s'ouvrent toutes seules (IE7 ou Firefox, même résultats). J'ai déjà essayé avec Ad-aware qui a trouvé 2 trucs à 'tuer' mais ça n'a rien donné.
Je ne trouve rien de récent publié sur le net ni dans votre site.
Merci de votre aide :??: 

Autres pages sur : pages web porno ouvrent seules resolu

23 Février 2011 23:31:19

Merci pour cette réponse rapide, mais, est-il fiable ce spybot? Avant de se lancer il demande une mise à jour des logiciels qui datent de ... 2004 (le plus ancien) et après vérification il me félicite car 'aucun mouchard n' a été trouvé'!
Contenus similaires
24 Février 2011 09:44:47

Bonjour

Supprimes spybot truc, Il est oboléte

Fais ce qui suit:

Télécharge OTL sur ton Bureau.

  • Prends le soin de fermer toutes les autres fenêtres Windows afin de ne pas interrompre le scan.
  • Double-clique sur OTL.exe pour le lancer.Sous Windows Vista/7, faire un clic droit sur OTL.exe puis choisir "Exécuter en tant qu'Administrateur" pour lancer l'outil.
  • L'écran principal de OTL s'affiche:



    (1) Si ce n'est déjà fait, dans le paragraphe Registre: Approfondi, cocher le bouton-radio Avec liste blanche

    (2) Coche (en haut) la case située devant Tous les utilisateurs

    (3) Coche également les cases à côté de Recherche Lop et Recherche purity.

    (4) Sélectionne très précisément tout ce qui est en gras avec la souris et copie/colle le contenu dans la zone Personnalisation de la fenêtre OTL


    netsvcs
    %SYSTEMDRIVE%\*.*
    %systemroot%\*. /mp /s
    CREATERESTOREPOINT
    SAVEMBR:0
    %systemroot%\System32\config\*.sav
    %systemroot%\Tasks\*.job /lockedfiles
    %systemroot%\system32\drivers\*.sys /lockedfiles
    %systemroot%\system32\*.dll /lockedfiles
    HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs
    /md5start
    explorer.exe
    winlogon.exe
    Userinit.exe
    svchost.exe
    iexplore.exe
    /md5stop



    (5) Puis cliquer sur le bouton Analyse

    - Laisser l'outil travailler sans l'interrompre.

  • Une fois l'analyse terminée, deux fenêtres vont s'ouvrir dans le Bloc-notes : OTL.txt et Extras.txt. Ils se trouvent au même endroit que OTL (donc par défaut sur le Bureau)
    a b È Firefox
    24 Février 2011 16:33:21

    Salut leo_85,

    Ne télécharge pas spybot, c'est obsolète.
    Si tu as des soucis, créé ton propre sujet et quelqu'un viendra t'aider.
    24 Février 2011 20:36:22

    Bonsoir,

    Je découvre la réponse du helper 'hackinginterdit' juste maintenant et je le remercie!
    OK pour suivre vos instructions mais ... après je fais quoi? Je voudrais juste clarifier qu'il n'y a pas un étape qui était oublié.
    1000 mercis encore!
    a b È Firefox
    24 Février 2011 20:49:14

    Salut ducres,

    Les instructions que t'ont fourni hackinginterdit vont dans un 1er temps servir à analyser ton problème, tu devras fournir 2 fichiers texte comme indiqué à la fin des instructions.
    Une fois qu'il aura analysé les fichiers, il te donnera plus d'infos ;) 
    24 Février 2011 20:49:54

    Bonsoir

    Merci Omar bonne soirée

    ducres

    Tu fais exactement ce que je t'ai demandé c'est a dire OTL
    24 Février 2011 21:10:10

    OK chef ;-)
    je reviens rapidement!
    25 Février 2011 07:46:00

    Bonjour

    Relance OTL.exe.

    Fais un double clic sur l'icône pour le lancer.Sous Windows Vista/7, faire un clic droit sur OTL.exe puis choisir "Exécuter en tant qu'Administrateur" pour lancer l'outil.

    Sélectionne très précisément tout ce qui est dans le cadre ci dessous , avec la souris et copie le contenu dans la zone "Personnalisation" de la fenêtre OTL

    RAS
    :OTL
    PRC - [2010/09/14 10:57:16 | 000,007,168 | ---- | M] () -- C:\Program Files\InstallPedia\lnetworker.exe
    O4 - HKLM..\Run: [IP Network] C:\Program Files\InstallPedia\lnetworker.exe ()
    O4 - HKU\S-1-5-21-1724974491-2249279454-2591999313-1000..\Run: [AdobeBridge] File not found
    O4 - HKU\S-1-5-21-1724974491-2249279454-2591999313-1000..\Run: [Spyware Doctor] File not found
    O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
    O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
    [1 C:\Users\Ducres\*.tmp files -> C:\Users\Ducres\*.tmp -> ]
    :Files
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop Lightroom 3.3.lnk
    C:\Windows\System32\Utils.dll
    C:\Program Files\InstallPedia\service.exe
    ipconfig /flushdns /c
    @Alternate Data Stream - 16 bytes -> C:\Users\Ducres\Documents\Shareaza Downloads:Shareaza.GUID
    :Services
    I.P services
    :Commands
    [emptytemp]
    [EMPTYFLASH]
    [CREATERESTOREPOINT]
    [Reboot]


    Ferme toutes les fenêtres de programme ouvertes (navigateur, traitement de texte, etc...).

  • Puis clique sur le bouton Correction en haut de la fenêtre.
  • Laisse le programme travailler sans te servir du PC!!!!!
  • Copie et colle le rapport dans ta réponse stp
    25 Février 2011 21:11:58

    All processes killed
    Error: Unable to interpret <RAS> in the current context!
    ========== OTL ==========
    No active process named lnetworker.exe was found!
    Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\IP Network deleted successfully.
    C:\Program Files\InstallPedia\lnetworker.exe moved successfully.
    Registry value HKEY_USERS\S-1-5-21-1724974491-2249279454-2591999313-1000\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge deleted successfully.
    Registry value HKEY_USERS\S-1-5-21-1724974491-2249279454-2591999313-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Spyware Doctor deleted successfully.
    Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet:/pagefile deleted successfully.
    Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
    Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
    C:\Users\Ducres\08B785C138934154B53BF5D341D0AAAA.TMP folder deleted successfully.
    ========== FILES ==========
    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop Lightroom 3.3.lnk moved successfully.
    C:\Windows\System32\Utils.dll moved successfully.
    C:\Program Files\InstallPedia\service.exe moved successfully.
    < ipconfig /flushdns /c >
    Configuration IP de Windows
    Cache de r‚solution DNS vid‚.
    C:\Users\Ducres\Desktop\cmd.bat deleted successfully.
    C:\Users\Ducres\Desktop\cmd.txt deleted successfully.
    Unable to delete ADS C:\Users\Ducres\Documents\Shareaza Downloads:Shareaza.GUID .
    ========== SERVICES/DRIVERS ==========
    Service I.P services stopped successfully!
    Service I.P services deleted successfully!
    ========== COMMANDS ==========

    [EMPTYTEMP]

    User: All Users

    User: Default
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes

    User: Default User
    ->Temp folder emptied: 0 bytes
    ->Temporary Internet Files folder emptied: 0 bytes

    User: Ducres
    ->Temp folder emptied: 16298375 bytes
    ->Temporary Internet Files folder emptied: 191546679 bytes
    ->Java cache emptied: 0 bytes
    ->FireFox cache emptied: 97527738 bytes
    ->Flash cache emptied: 16527 bytes

    User: Public

    %systemdrive% .tmp files removed: 0 bytes
    %systemroot% .tmp files removed: 0 bytes
    %systemroot%\System32 .tmp files removed: 0 bytes
    %systemroot%\System32\drivers .tmp files removed: 0 bytes
    Windows Temp folder emptied: 134676 bytes
    RecycleBin emptied: 1812199073 bytes

    Total Files Cleaned = 2.020,00 mb


    [EMPTYFLASH]

    User: All Users

    User: Default

    User: Default User

    User: Ducres
    ->Flash cache emptied: 0 bytes

    User: Public

    Total Flash Files Cleaned = 0,00 mb



    OTL by OldTimer - Version 3.2.21.0 log created on 02252011_210010

    Files\Folders moved on Reboot...

    Registry entries deleted on Reboot...



    ça va aller docteur??? :( 
    25 Février 2011 21:17:52

    Salut

    Citation :
    ça va aller docteur???

    Pour moi oui mais pour toi toujours des pages de pubs ?

    Si tu le possède déjà, passe l'étape de l'installation et va directement à la mise à jour

    Télécharge MalwareByte's Anti-Malware sur ton Bureau.



  • Installe-le en double-cliquant sur le fichier Download_mbam-setup.exe.
    Une fois l'installation et la mise à jour effectuées :



  • Exécute maintenant MalwareByte's Anti-Malware. Si cela n'est pas déjà fait, sélectionne "Exécuter un examen rapide".
  • Afin de lancer la recherche, clic sur " Rechercher ".
  • Une fois le scan terminé, une fenêtre s'ouvre, clic sur OK. Deux possibilités s'offrent à toi :
  • Si le programme n'a rien trouvé, appuie sur OK. Un rapport va apparaître, ferme-le.
  • Si des infections sont présentes, clic sur "Afficher les résultats"
    puis sur "Supprimer la sélection".

    Enregistre le rapport sur ton Bureau.
  • Fais redémarrer ton ordinateur normalement et poste le rapport dans ta prochaine réponse.

    REMARQUE : Si MalwareByte's Anti-Malware a besoin de redémarrer pour terminer la suppression, accepte en cliquant sur Ok.
    25 Février 2011 21:40:27

    C'est vrai que depuis hier je n'ai eu qu'une fenêtre de pub et encore ... civilisée, mais je me méfie toujours... En tout cas, je ne ferai plus des 'bêtises', promis, juré!

    J'exécute malgré tout la mise à jour et je vous tiens au courant!

    J'apprécie votre suivi rapide, claire et (j'espère) efficace !
    Merci beaucoup et bonne continuation :-)
    26 Février 2011 07:04:04

    Bonjour

    Une fois MBAM (malwarebytes) effectué post moi le rapport STP et je te donnerai les dernières manipulations a effectuées!
    26 Février 2011 08:29:56

    Bonjour,
    J'avais de problème connexion avec Internet hier, c'est pourquoi je ne l'ai pas posté directement. Le voici:

    Malwarebytes' Anti-Malware 1.46
    www.malwarebytes.org

    Version de la base de données: 5877

    Windows 6.1.7600
    Internet Explorer 8.0.7600.16385

    25/02/2011 22:12:19
    mbam-log-2011-02-25 (22-12-19).txt

    Type d'examen: Examen rapide
    Elément(s) analysé(s): 150055
    Temps écoulé: 3 minute(s), 22 seconde(s)

    Processus mémoire infecté(s): 0
    Module(s) mémoire infecté(s): 0
    Clé(s) du Registre infectée(s): 3
    Valeur(s) du Registre infectée(s): 0
    Elément(s) de données du Registre infecté(s): 0
    Dossier(s) infecté(s): 1
    Fichier(s) infecté(s): 4

    Processus mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Module(s) mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Clé(s) du Registre infectée(s):
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{e312764e-7706-43f1-8dab-fcdd2b1e416d} (PUP.Dealio) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{01398b87-61af-4ffb-9ab5-1a1c5fb39a9c} (PUP.Dealio) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{e312764e-7706-43f1-8dab-fcdd2b1e416d} (PUP.Dealio) -> Quarantined and deleted successfully.

    Valeur(s) du Registre infectée(s):
    (Aucun élément nuisible détecté)

    Elément(s) de données du Registre infecté(s):
    (Aucun élément nuisible détecté)

    Dossier(s) infecté(s):
    C:\Program Files\InstallPedia (Adware.InstallPedia) -> Quarantined and deleted successfully.

    Fichier(s) infecté(s):
    C:\Program Files\InstallPedia\Ionic.Zip.Reduced.dll (Adware.InstallPedia) -> Quarantined and deleted successfully.
    C:\Program Files\InstallPedia\networker.exe (Adware.InstallPedia) -> Quarantined and deleted successfully.
    C:\Program Files\InstallPedia\pref_updater.exe (Adware.InstallPedia) -> Quarantined and deleted successfully.
    C:\Program Files\InstallPedia\Utils.dll (Adware.InstallPedia) -> Quarantined and deleted successfully.
    26 Février 2011 08:43:05

    Citation :
    J'avais de problème connexion avec Internet hier

    Ah mince

    Tu vas supprimer OTL

    Double clique sur OTL.exe et clique sur le bouton purge outils
    Sous Windows Vista/7, faire un clic droit sur OTL.exe puis choisir "Exécuter en tant qu'Administrateur" pour lancer l'outil.
    OTL va faire redémarrer ton ordinateur.


    Il faut créer un nouveau point de restauration système.
    Après nettoyage du PC, il faut vider les fichiers stockés dans les dossiers de la Restauration système, puis créer un nouveau point de restauration qui sera utilisable en cas de problème.
    Méthode:
    Désactiver la restauration système, réactiver la restauration système, puis créer un nouveau point de restauration.
    Explications détaillées:

    aide pour XP

    Il faut toujours mettre à jour Internet Explorer. : IE 8 Même si tu utilises Firefox

    Il faut modifier tous les mots de passe importants.
    De nos jours, la plupart des nuisibles sont créés dans le seul but de voler des informations personnelles et/ou des mots de passe.
    Je te conseille de modifier tous les mots de passe importants comme ceux concernant la banque, les sites marchands, les réseaux sociaux, etc...
    Il est très important de créer des mots de passe solides et d'utiliser un mot de passe différent pour chaque site.

    Il faut sécuriser Firefox: Certaines extensions me semblent presque indispensables:

    Adblock Plus https://addons.mozilla.org/fr/firefox/addon/1865
    NoScript https://addons.mozilla.org/fr/firefox/addon/722
    WOT https://addons.mozilla.org/fr/firefox/addon/3456

    Proscrire l'utilisation de cracks, keygens et autres warez!
    Proscrire l'utilisation de P2P illicite!
    Azureus, BitTorrent, uTorrent:

    ducres Peux tu Ajouter [Résolu] au titre. Pour cela :
    Clique, sur ton premier message, sur le bouton "Editer"
    Rajoute la mention [RESOLU] à ton titre
    Clique ensuite sur "Valider votre message"

    Il ne me reste plus qu'à te souhaiter un bon week end et un bon surf sans malwares !!!!




    26 Février 2011 10:49:52

    super super génial
    même que je trouve votre service très professionnel j'espère ne plus en avoir besoin dans le futur:-)
    bon week-end à vous aussi
    ducres
    5 Mars 2012 21:08:02

    hackinginterdit a dit :
    Bonjour

    Supprimes spybot truc, Il est oboléte

    Fais ce qui suit:

    Télécharge OTL sur ton Bureau.

  • Prends le soin de fermer toutes les autres fenêtres Windows afin de ne pas interrompre le scan.
  • Double-clique sur OTL.exe pour le lancer.Sous Windows Vista/7, faire un clic droit sur OTL.exe puis choisir "Exécuter en tant qu'Administrateur" pour lancer l'outil.
  • L'écran principal de OTL s'affiche:



    (1) Si ce n'est déjà fait, dans le paragraphe Registre: Approfondi, cocher le bouton-radio Avec liste blanche

    (2) Coche (en haut) la case située devant Tous les utilisateurs

    (3) Coche également les cases à côté de Recherche Lop et Recherche purity.

    (4) Sélectionne très précisément tout ce qui est en gras avec la souris et copie/colle le contenu dans la zone Personnalisation de la fenêtre OTL


    netsvcs
    %SYSTEMDRIVE%\*.*
    %systemroot%\*. /mp /s
    CREATERESTOREPOINT
    SAVEMBR:0
    %systemroot%\System32\config\*.sav
    %systemroot%\Tasks\*.job /lockedfiles
    %systemroot%\system32\drivers\*.sys /lockedfiles
    %systemroot%\system32\*.dll /lockedfiles
    HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs
    /md5start
    explorer.exe
    winlogon.exe
    Userinit.exe
    svchost.exe
    iexplore.exe
    /md5stop



    (5) Puis cliquer sur le bouton Analyse

    - Laisser l'outil travailler sans l'interrompre.

  • Une fois l'analyse terminée, deux fenêtres vont s'ouvrir dans le Bloc-notes : OTL.txt et Extras.txt. Ils se trouvent au même endroit que OTL (donc par défaut sur le Bureau)


    5 Mars 2012 21:08:25

    OTL logfile created on: 05/03/2012 23:40:51 - Run 1
    OTL by OldTimer - Version 3.2.35.1 Folder = C:\Users\Didier\Desktop
    Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
    Internet Explorer (Version = 9.0.8112.16421)
    Locale: 0000040c | Country: France | Language: FRA | Date Format: dd/MM/yyyy

    3,25 Gb Total Physical Memory | 1,92 Gb Available Physical Memory | 59,08% Memory free
    6,70 Gb Paging File | 5,13 Gb Available in Paging File | 76,66% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
    Drive C: | 244,14 Gb Total Space | 130,02 Gb Free Space | 53,26% Space Free | Partition Type: NTFS

    Computer Name: PC-DE-DIDIER | User Name: Didier | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: All users
    Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

    ========== Processes (SafeList) ==========

    PRC - [2012/03/05 23:37:59 | 000,584,704 | ---- | M] (OldTimer Tools) -- C:\Users\Didier\Desktop\OTL.exe
    PRC - [2012/02/16 19:02:01 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
    PRC - [2011/11/28 22:01:24 | 003,744,552 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe
    PRC - [2011/04/21 15:31:04 | 000,982,656 | ---- | M] (PCTUTO) -- C:\Program Files\PCTuto\pctuto.exe
    PRC - [2011/03/02 18:43:58 | 000,663,168 | ---- | M] (PCTuto) -- C:\Users\Didier\AppData\Roaming\PCTuto\PCTuto\autoupdater.exe
    PRC - [2009/04/10 23:27:38 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
    PRC - [2008/01/21 06:23:32 | 001,008,184 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Defender\MSASCui.exe
    PRC - [2007/04/06 11:06:58 | 000,057,344 | ---- | M] (ZSMCSNAP) -- C:\Windows\ZSSnp211.exe
    PRC - [2006/08/18 16:58:14 | 000,049,152 | ---- | M] () -- C:\Windows\Domino.exe


    ========== Modules (No Company Name) ==========

    MOD - [2012/03/05 19:20:39 | 000,667,648 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Core\3.5.0.0__b77a5c561934e089\System.Core.dll
    MOD - [2012/02/17 12:46:54 | 000,240,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\9a22784f4af63232128cbaa639e1852b\WindowsFormsIntegration.ni.dll
    MOD - [2012/02/17 12:42:25 | 011,820,032 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\2598077ccea480c6120d3a1ad4455be0\System.Web.ni.dll
    MOD - [2012/02/17 12:42:15 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\5c3bfd69e0c268baff0d169e11a6a784\System.Runtime.Remoting.ni.dll
    MOD - [2012/02/17 12:42:00 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\7fd6c62196829d1e2dce5a253145d51a\System.Configuration.ni.dll
    MOD - [2012/02/17 12:10:10 | 005,450,752 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\d9f0f1dc8cbdb81f1ba122d77a6ab710\System.Xml.ni.dll
    MOD - [2012/02/17 12:09:48 | 012,430,848 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\65450889f3742aada2a6c0cf8e6173e3\System.Windows.Forms.ni.dll
    MOD - [2012/02/17 12:09:36 | 001,587,200 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\137696d0416b65dbc1561152971488b4\System.Drawing.ni.dll
    MOD - [2012/02/17 12:08:58 | 000,368,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\d48e106e015d0f8cb2d5295015cee508\PresentationFramework.Aero.ni.dll
    MOD - [2012/02/17 12:08:57 | 014,328,832 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\a8b83e9bce632f045bd41a23b1871a03\PresentationFramework.ni.dll
    MOD - [2012/02/17 12:08:37 | 012,216,832 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\b88a8c8526191ee538f40d330fd2bf56\PresentationCore.ni.dll
    MOD - [2012/02/17 12:08:21 | 003,325,952 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\1e258a951222c818540b33880ca45f2e\WindowsBase.ni.dll
    MOD - [2012/02/17 12:08:15 | 007,953,408 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\c50133cb67d7c013fa31e1ffb942060b\System.ni.dll
    MOD - [2012/02/16 19:02:01 | 001,911,768 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
    MOD - [2011/10/14 10:41:14 | 000,060,928 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\5aab9bc687029a908fc01473f8e5f77b\UIAutomationProvider.ni.dll
    MOD - [2011/10/14 10:05:10 | 011,490,816 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\b6632a8b2f276a8e31f5b0f6b2006cd1\mscorlib.ni.dll
    MOD - [2011/10/12 09:38:11 | 008,522,400 | ---- | M] () -- C:\Windows\System32\Macromed\Flash\NPSWF32.dll
    MOD - [2011/01/05 06:17:40 | 000,023,040 | ---- | M] () -- C:\Windows\System32\atitmpxx.dll
    MOD - [2011/01/04 22:06:00 | 000,095,232 | ---- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
    MOD - [2011/01/04 21:54:12 | 000,243,712 | ---- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
    MOD - [2009/03/29 21:42:28 | 000,430,080 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Windows.Forms.resources\2.0.0.0_fr_b77a5c561934e089\System.Windows.Forms.resources.dll
    MOD - [2009/03/29 21:42:28 | 000,311,296 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_fr_b77a5c561934e089\mscorlib.resources.dll
    MOD - [2009/03/29 21:42:28 | 000,212,992 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.resources\2.0.0.0_fr_b77a5c561934e089\System.resources.dll
    MOD - [2009/03/29 21:42:28 | 000,032,768 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Runtime.Remoting.resources\2.0.0.0_fr_b77a5c561934e089\System.Runtime.Remoting.resources.dll
    MOD - [2006/08/18 16:58:14 | 000,049,152 | ---- | M] () -- C:\Windows\Domino.exe


    ========== Win32 Services (SafeList) ==========

    SRV - [2012/01/03 17:10:42 | 000,063,928 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
    SRV - [2011/11/28 22:01:23 | 000,044,768 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus)
    SRV - [2011/01/05 06:57:32 | 000,176,128 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\System32\atiesrxx.exe -- (AMD External Events Utility)
    SRV - [2011/01/04 22:05:54 | 000,284,672 | ---- | M] (Advanced Micro Devices, Inc.) [Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe -- (AMD FUEL Service)
    SRV - [2010/06/17 05:23:34 | 000,140,224 | ---- | M] (Advanced Micro Devices) [Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe -- (AMD Reservation Manager)
    SRV - [2008/01/21 06:23:32 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend)


    ========== Driver Services (SafeList) ==========

    DRV - File not found [Kernel | On_Demand | Stopped] -- -- (NwlnkFwd)
    DRV - File not found [Kernel | On_Demand | Stopped] -- -- (NwlnkFlt)
    DRV - File not found [Kernel | On_Demand | Stopped] -- -- (IpInIp)
    DRV - File not found [Kernel | On_Demand | Stopped] -- -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
    DRV - File not found [Kernel | On_Demand | Stopped] -- -- (gdrv)
    DRV - [2011/11/28 21:53:53 | 000,435,032 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\System32\drivers\aswSnx.sys -- (aswSnx)
    DRV - [2011/11/28 21:53:35 | 000,314,456 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswSP.sys -- (aswSP)
    DRV - [2011/11/28 21:52:19 | 000,034,392 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswRdr.sys -- (aswRdr)
    DRV - [2011/11/28 21:52:16 | 000,052,952 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswTdi.sys -- (aswTdi)
    DRV - [2011/11/28 21:52:07 | 000,055,128 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswMonFlt.sys -- (aswMonFlt)
    DRV - [2011/11/28 21:51:50 | 000,020,568 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
    DRV - [2011/01/05 07:36:10 | 006,789,120 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atikmdag.sys -- (amdkmdag)
    DRV - [2011/01/05 06:19:18 | 000,235,520 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atikmpag.sys -- (amdkmdap)
    DRV - [2010/12/30 15:19:40 | 000,016,640 | ---- | M] (Wondershare) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys -- (Apowersoft_AudioDevice)
    DRV - [2010/11/17 16:04:12 | 000,097,296 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AtihdLH3.sys -- (AtiHDAudioService)
    DRV - [2010/08/12 12:07:50 | 000,292,712 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvmfdx32.sys -- (NVNET)
    DRV - [2010/04/08 22:32:36 | 000,215,656 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\nvstor32.sys -- (nvstor32)
    DRV - [2010/02/18 09:18:22 | 000,037,944 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\amdiox86.sys -- (amdiox86)
    DRV - [2010/02/05 05:16:10 | 000,028,048 | ---- | M] (CSR, plc) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\BthAvrcp.sys -- (BthAvrcp)
    DRV - [2007/08/31 10:00:00 | 000,474,368 | ---- | M] (Vimicro Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\vvftav.sys -- (vvftav)
    DRV - [2007/08/03 10:27:04 | 001,470,592 | ---- | M] (ZSMC.Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ZS211.sys -- (ZSMC30x)
    DRV - [2006/11/02 11:30:56 | 000,429,056 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\nvm60x32.sys -- (NVENETFD)


    ========== Standard Registry (SafeList) ==========


    ========== Internet Explorer ==========

    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search bar = http://search.msn.com/spbasic.htm
    IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
    IE - HKLM\..\SearchScopes,DefaultScope = {EEE6C360-6118-11DC-9C72-001320C79847}
    IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
    IE - HKLM\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = http://search.sweetim.com/search.asp?src=6&q={searchTerms}



    IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

    IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



    IE - HKU\S-1-5-21-1357999196-2640852219-2256871205-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
    IE - HKU\S-1-5-21-1357999196-2640852219-2256871205-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://fr.msn.com/?ocid=iehp
    IE - HKU\S-1-5-21-1357999196-2640852219-2256871205-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = fr
    IE - HKU\S-1-5-21-1357999196-2640852219-2256871205-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 90 28 1D 46 4A DB CB 01 [binary data]
    IE - HKU\S-1-5-21-1357999196-2640852219-2256871205-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
    IE - HKU\S-1-5-21-1357999196-2640852219-2256871205-1000\..\URLSearchHook: {9565115d-c7d6-46d3-bd63-b67b481a4368} - No CLSID value found
    IE - HKU\S-1-5-21-1357999196-2640852219-2256871205-1000\..\SearchScopes,DefaultScope = ${searchCLSID}
    IE - HKU\S-1-5-21-1357999196-2640852219-2256871205-1000\..\SearchScopes\${searchCLSID}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
    IE - HKU\S-1-5-21-1357999196-2640852219-2256871205-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
    IE - HKU\S-1-5-21-1357999196-2640852219-2256871205-1000\..\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}: "URL" = http://search.sweetim.com/search.asp?src=6&q={searchTerms}
    IE - HKU\S-1-5-21-1357999196-2640852219-2256871205-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

    ========== FireFox ==========


    FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
    FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
    FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
    FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
    FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll ( Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
    FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)
    FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll (Google Inc.)
    FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=1.1.5: C:\Program Files\VideoLAN\VLC\npvlc.dll (the VideoLAN Team)
    FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
    FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\Didier\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)

    FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2011/11/03 20:49:53 | 000,000,000 | ---D | M]
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0.2\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012/02/25 23:08:58 | 000,000,000 | ---D | M]
    FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 10.0.2\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012/01/15 10:59:18 | 000,000,000 | ---D | M]
    FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2011/11/03 20:49:53 | 000,000,000 | ---D | M]

    [2012/02/25 23:09:03 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Didier\AppData\Roaming\mozilla\Extensions
    [2012/02/26 11:43:14 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Didier\AppData\Roaming\mozilla\Firefox\Profiles\pkz6sgr7.default\extensions
    [2012/02/25 23:08:57 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\mozilla firefox\extensions
    [2012/02/16 19:02:01 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
    [2011/10/03 05:06:04 | 000,476,904 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
    [2012/02/16 15:40:00 | 000,001,516 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\amazon-france.xml
    [2012/02/25 19:26:40 | 000,002,288 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\babylon.xml
    [2012/02/16 15:28:38 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
    [2012/02/16 15:40:00 | 000,001,822 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\cnrtl-tlfi-fr.xml
    [2012/02/16 15:40:00 | 000,001,154 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\eBay-france.xml
    [2012/02/16 15:40:00 | 000,001,426 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-fr.xml
    [2012/02/16 15:40:00 | 000,000,956 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\yahoo-france.xml

    ========== Chrome ==========

    CHR - default_search_provider: Google (Enabled)
    CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:o riginalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
    CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
    CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
    CHR - plugin: Native Client (Enabled) = C:\Program Files\Google\Chrome\Application\17.0.963.56\ppGoogleNaClPluginChrome.dll
    CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files\Google\Chrome\Application\17.0.963.56\pdf.dll
    CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\17.0.963.56\gcswf32.dll
    CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\system32\Macromed\Flash\NPSWF32.dll
    CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Users\Didier\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.41.122.1_0\McChPlg.dll
    CHR - plugin: McAfee SiteAdvisor (Enabled) = C:\Program Files\McAfee\SiteAdvisor\npmcffplg32.dll
    CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll
    CHR - plugin: Java Deployment Toolkit 6.0.290.11 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll
    CHR - plugin: Java(TM) Platform SE 6 U29 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
    CHR - plugin: Picasa (Enabled) = C:\Program Files\Google\Picasa3\npPicasa3.dll
    CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.99\npGoogleUpdate3.dll
    CHR - plugin: VLC Multimedia Plug-in (Enabled) = C:\Program Files\VideoLAN\VLC\npvlc.dll
    CHR - plugin: Facebook Video Calling Plugin (Enabled) = C:\Users\Didier\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll
    CHR - plugin: Shockwave for Director (Enabled) = C:\Windows\system32\Adobe\Director\np32dsw.dll
    CHR - plugin: Silverlight Plug-In (Enabled) = c:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll
    CHR - plugin: Windows Presentation Foundation (Enabled) = c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
    CHR - plugin: Default Plug-in (Enabled) = default_plugin
    CHR - Extension: YouTube = C:\Users\Didier\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
    CHR - Extension: Recherche Google = C:\Users\Didier\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.17_0\
    CHR - Extension: SiteAdvisor = C:\Users\Didier\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.41.122.1_0\
    CHR - Extension: Gmail = C:\Users\Didier\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\

    O1 HOSTS File: ([2006/09/19 01:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
    O1 - Hosts: 127.0.0.1 localhost
    O1 - Hosts: ::1 localhost
    O2 - BHO: (PCTBHO Class) - {293A63F7-C3B6-423a-9845-901AC0A7EE6E} - C:\Program Files\PCTuto\pctutoBHO.dll (PCTUTO)
    O2 - BHO: (no name) - {2DA14D1D-AE74-4A74-A0FE-C79504755DB8} - No CLSID value found.
    O3 - HKU\S-1-5-21-1357999196-2640852219-2256871205-1000\..\Toolbar\WebBrowser: (no name) - {EEE6C35B-6118-11DC-9C72-001320C79847} - No CLSID value found.
    O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software)
    O4 - HKLM..\Run: [Domino] C:\Windows\Domino.exe ()
    O4 - HKLM..\Run: [PCTuto] C:\Program Files\PCTuto\pctuto.exe (PCTUTO)
    O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
    O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
    O4 - HKLM..\Run: [ZSSnp211] C:\Windows\ZSSnp211.exe (ZSMCSNAP)
    O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
    O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation)
    O4 - HKU\S-1-5-21-1357999196-2640852219-2256871205-1000..\Run: [AROReminder] C:\Program Files\ARO 2011\ARO.exe (Support.com)
    O4 - HKU\S-1-5-21-1357999196-2640852219-2256871205-1000..\Run: [Facebook Update] C:\Users\Didier\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
    O4 - HKLM..\RunOnce: [autoupdater] C:\Users\Didier\AppData\Roaming\PCTuto\PCTuto\autoupdater.exe (PCTuto)
    O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr (Google Inc.)
    O9 - Extra Button: Seeearch - {CDB982ED-F9D6-4E3B-B94B-96F705D35AD1} - Reg Error: Key error. File not found
    O9 - Extra 'Tools' menuitem : Seeearch - {CDB982ED-F9D6-4E3B-B94B-96F705D35AD1} - Reg Error: Key error. File not found
    O13 - gopher Prefix: missing
    O15 - HKU\S-1-5-21-1357999196-2640852219-2256871205-1000\..Trusted Domains: dainrauscher.com ([]https in Local intranet)
    O15 - HKU\S-1-5-21-1357999196-2640852219-2256871205-1000\..Trusted Domains: rbcdain.com ([]https in Local intranet)
    O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} http://messenger.zone.msn.com/MessengerGamesContent/Gam... (UnoCtrl Class)
    O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-wind... (Java Plug-in 1.6.0_29)
    O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zone.msn.com/binary/MessengerStatsPACl... (MessengerStatsClient Class)
    O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-wind... (Java Plug-in 1.6.0_29)
    O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_29-wind... (Java Plug-in 1.6.0_29)
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/fl... (Shockwave Flash Object)
    O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} http://messenger.zone.msn.com/binary/MineSweeper.cab569... (Minesweeper Flags Class)
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{14CFD418-D66A-4F67-9532-905DFD339851}: DhcpNameServer = 192.168.1.1
    O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
    O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
    O24 - Desktop WallPaper: C:\Users\Didier\AppData\Roaming\Microsoft\Windows Photo Gallery\Papier peint de la Galerie de photos Windows.jpg
    O24 - Desktop BackupWallPaper: C:\Users\Didier\AppData\Roaming\Microsoft\Windows Photo Gallery\Papier peint de la Galerie de photos Windows.jpg
    O32 - HKLM CDRom: AutoRun - 1
    O32 - AutoRun File - [2006/09/19 01:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
    O34 - HKLM BootExecute: (autocheck autochk *)
    O35 - HKLM\..comfile [open] -- "%1" %*
    O35 - HKLM\..exefile [open] -- "%1" %*
    O37 - HKLM\...com [@ = comfile] -- "%1" %*
    O37 - HKLM\...exe [@ = exefile] -- "%1" %*

    NetSvcs: FastUserSwitchingCompatibility - File not found
    NetSvcs: Ias - C:\Windows\System32\ias.dll (Microsoft Corporation)
    NetSvcs: Nla - File not found
    NetSvcs: Ntmssvc - File not found
    NetSvcs: NWCWorkstation - File not found
    NetSvcs: Nwsapagent - File not found
    NetSvcs: SRService - File not found
    NetSvcs: WmdmPmSp - File not found
    NetSvcs: LogonHours - File not found
    NetSvcs: PCAudit - File not found
    NetSvcs: helpsvc - File not found
    NetSvcs: uploadmgr - File not found

    CREATERESTOREPOINT
    Restore point Set: OTL Restore Point
    PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

    ========== Files/Folders - Created Within 30 Days ==========

    [2012/03/05 23:37:51 | 000,584,704 | ---- | C] (OldTimer Tools) -- C:\Users\Didier\Desktop\OTL.exe
    [2012/03/05 19:26:19 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{41DA0491-0C28-403F-87F9-E6A84EE6FFB1}
    [2012/03/05 19:25:47 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{431C7943-1C32-4647-9319-3F62BC676960}
    [2012/03/03 09:35:32 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{C5CDB5BC-8B19-49C9-A27D-C7DDBA312D72}
    [2012/03/03 09:35:02 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{92160EF2-33FD-477B-84FC-8C3AF7E15D2B}
    [2012/03/02 19:04:42 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{E9C87AF1-01FB-4838-959A-36E247B6AD53}
    [2012/03/02 19:04:24 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{51030AA2-D25A-4287-8E95-09FC1BDDF1BE}
    [2012/03/01 20:29:30 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Roaming\PCTuto
    [2012/03/01 20:29:30 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\PCTuto
    [2012/03/01 20:29:30 | 000,000,000 | ---D | C] -- C:\Program Files\PCTuto
    [2012/03/01 20:28:46 | 001,894,048 | ---- | C] (PCTuto ) -- C:\Users\Didier\Desktop\pctuto_1011.exe
    [2012/03/01 20:13:23 | 000,000,000 | ---D | C] -- C:\Program Files\Selteco
    [2012/03/01 12:04:59 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{CBF2894F-6CD7-4FAD-A96D-4B974A3B00D3}
    [2012/03/01 12:04:36 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{5CDC47BF-6F5C-46DE-BB84-7908B4F1D2B6}
    [2012/02/29 11:50:49 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{5726AE6E-C40D-4003-976F-B04AC4FBE141}
    [2012/02/29 11:49:54 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{9F0B0A18-C0DE-4182-8DDA-2ED28D575D28}
    [2012/02/26 11:32:08 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{7C90BD23-94AE-48C5-BF90-FB4429692015}
    [2012/02/26 11:31:45 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{E2E73C22-7E0D-4635-831F-9D7F9DE3BF2E}
    [2012/02/25 20:34:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
    [2012/02/25 20:00:32 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
    [2012/02/25 20:00:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HijackThis
    [2012/02/25 19:43:08 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\widestream6 Air
    [2012/02/25 19:37:22 | 000,000,000 | ---D | C] -- C:\ToolBar SD
    [2012/02/25 19:28:30 | 000,000,000 | ---D | C] -- C:\Windows\System32\Grand Theft Auto IV Screenshot dir
    [2012/02/25 19:27:08 | 000,520,192 | ---- | C] (ScreenTime Media) -- C:\Windows\System32\Grand Theft Auto IV Screenshot.scr
    [2012/02/25 19:26:39 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\Babylon
    [2012/02/25 19:26:38 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Roaming\Babylon
    [2012/02/25 19:26:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Babylon
    [2012/02/25 19:16:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Tarma Installer
    [2012/02/25 19:07:07 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{58D9A0EA-F067-48B1-AE3F-F50B3C614DA0}
    [2012/02/25 19:06:55 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{DD1CFB07-4E5C-4482-AB75-C62A27762623}
    [2012/02/25 10:27:54 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{50F1C159-DB53-41CA-9083-E75A315BC827}
    [2012/02/24 12:10:32 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{A66471F8-61E9-4969-9F5E-1512BA8433B7}
    [2012/02/24 12:09:46 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{5BCD40B6-9C96-4EF8-9E31-AF14ACD12CB3}
    [2012/02/23 12:01:02 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{BC5D6F1C-FD3B-449E-9FC5-BF6EFA832FE6}
    [2012/02/23 12:00:43 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{DD71D60C-DB8F-48EA-9588-E03E3C82AFCE}
    [2012/02/22 12:22:54 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{356CAE1E-67E8-4056-ADE3-D4958C4E3F1A}
    [2012/02/22 12:22:34 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{8F7A44D4-6ADD-4ECA-83FF-F03320796E59}
    [2012/02/21 19:39:43 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{DFB89325-6DF3-4AC0-B83F-35D8E92BAD62}
    [2012/02/20 18:34:26 | 000,000,000 | ---D | C] -- C:\Users\Didier\Desktop\fdffff
    [2012/02/20 12:00:43 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{5CACF2E5-A78F-4EFB-92DF-27588E374A13}
    [2012/02/20 12:00:22 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{2F886F2E-EB3F-4437-9ECF-C0BE8DA87740}
    [2012/02/19 06:33:38 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{79540C6E-CAEF-45FC-98B5-09FC57E499EE}
    [2012/02/18 23:01:32 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{8D34D36E-CCFB-4FF5-BA26-A8FEC693D971}
    [2012/02/18 23:01:14 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{AEB2874B-1E0B-4DB5-8741-11883B5E29AC}
    [2012/02/17 12:11:00 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{1D4FE35C-4902-4923-930D-EC0808355C8D}
    [2012/02/17 12:10:48 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{A0D435E5-EAAF-47CC-8B96-DD369821198C}
    [2012/02/16 22:03:56 | 002,382,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
    [2012/02/16 22:03:54 | 001,798,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll
    [2012/02/16 22:03:53 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\url.dll
    [2012/02/16 22:03:53 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
    [2012/02/16 22:03:53 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
    [2012/02/16 22:03:49 | 001,427,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
    [2012/02/16 11:47:22 | 002,044,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
    [2012/02/16 11:43:26 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{F5E7C95C-B258-4DC9-AC2A-538C2830F4DD}
    [2012/02/16 11:42:53 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{4AD43762-5588-4F98-BDFF-AA4265AE7023}
    [2012/02/15 23:01:45 | 000,000,000 | ---D | C] -- C:\Users\Didier\Desktop\Pictures
    [2012/02/15 22:58:55 | 000,000,000 | ---D | C] -- C:\Users\Didier\Desktop\mes tof 974
    [2012/02/15 16:54:45 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{5ECC2F04-5311-4BF9-A01C-03B6960C4691}
    [2012/02/15 16:54:11 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{6AF9E6B0-0A38-4CA8-B345-0AD7F0639E09}
    [2012/02/14 06:47:30 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{0A34B48C-9D36-4AA5-B081-3025C3FCC94A}
    [2012/02/14 06:47:07 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{1F3BCFBC-B75C-43A1-AF33-044DC130545F}
    [2012/02/13 16:31:10 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{CC01F6A5-C0C6-4DFF-8BD3-A959084C94BE}
    [2012/02/13 16:30:36 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{D9CCB71F-1584-48E3-A27A-E8DD9E4EC857}
    [2012/02/12 11:20:46 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{79D5952E-E872-4AF4-A604-397377521D0E}
    [2012/02/12 11:20:19 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{4D0F7B07-778B-489D-B0B1-AEB57193BDE1}
    [2012/02/11 11:36:01 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{DA8E5AB2-4652-4FAF-BF1F-2EC1FA1E2C84}
    [2012/02/11 11:35:23 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{13AF7A34-1B0A-4151-B430-5F904A17EC3A}
    [2012/02/10 12:08:45 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{F6911AED-5984-4962-900D-C99CD9B175FE}
    [2012/02/10 12:08:02 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{0C340E45-3317-4FF7-8D0A-57713655A530}
    [2012/02/09 19:05:32 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{DF25FE86-CB7A-4E63-A813-800B05C35C32}
    [2012/02/09 19:04:57 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{0697D1C6-7226-451E-9316-DC006F3B422B}
    [2012/02/08 17:50:25 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{4A1C6493-6F77-4EF1-84C7-AF145F8EA1DE}
    [2012/02/08 17:49:41 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{60295C39-78B8-4743-BF97-0BCB68BFAC8C}
    [2012/02/07 19:31:11 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{2C7E3BDD-43C5-407D-A187-1FB5293309A1}
    [2012/02/07 19:30:30 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{398C469C-4774-47BD-95F1-B2AD76AC277B}
    [2012/02/06 20:00:34 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{B56BED96-829A-448C-9A0F-2B7D636A76E0}
    [2012/02/06 20:00:13 | 000,000,000 | ---D | C] -- C:\Users\Didier\AppData\Local\{F84D6555-02EE-4220-8D6E-1FA9A1A6D270}
    [2011/08/13 11:52:52 | 000,075,456 | ---- | C] (MyWebSearch.com) -- C:\Users\Didier\AppData\Local\mwsauto.exe

    ========== Files - Modified Within 30 Days ==========

    [2012/03/05 23:45:09 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
    [2012/03/05 23:43:00 | 000,001,056 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
    [2012/03/05 23:37:59 | 000,584,704 | ---- | M] (OldTimer Tools) -- C:\Users\Didier\Desktop\OTL.exe
    [2012/03/05 23:25:03 | 000,000,932 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1357999196-2640852219-2256871205-1000UA.job
    [2012/03/05 23:23:18 | 000,004,112 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
    [2012/03/05 23:23:18 | 000,004,112 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
    [2012/03/05 21:59:41 | 000,062,043 | ---- | M] () -- C:\Users\Didier\Desktop\2012-03-03 19.36.17-1.jpg
    [2012/03/05 20:43:00 | 000,001,052 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
    [2012/03/05 19:29:14 | 000,678,804 | ---- | M] () -- C:\Windows\System32\perfh00C.dat
    [2012/03/05 19:29:14 | 000,595,798 | ---- | M] () -- C:\Windows\System32\perfh009.dat
    [2012/03/05 19:29:14 | 000,126,420 | ---- | M] () -- C:\Windows\System32\perfc00C.dat
    [2012/03/05 19:29:14 | 000,103,872 | ---- | M] () -- C:\Windows\System32\perfc009.dat
    [2012/03/05 19:23:20 | 000,254,040 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
    [2012/03/05 19:23:14 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
    [2012/03/05 19:23:03 | 3488,059,392 | -HS- | M] () -- C:\hiberfil.sys
    [2012/03/05 19:22:06 | 000,005,332 | ---- | M] () -- C:\Windows\bthservsdp.dat
    [2012/03/05 18:49:59 | 000,001,840 | ---- | M] () -- C:\Users\Didier\Documents\cc_20120305_184955.reg
    [2012/03/05 17:25:00 | 000,000,910 | ---- | M] () -- C:\Windows\tasks\FacebookUpdateTaskUserS-1-5-21-1357999196-2640852219-2256871205-1000Core.job
    [2012/03/05 12:44:21 | 000,001,971 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
    [2012/03/04 18:59:22 | 000,000,438 | -H-- | M] () -- C:\Windows\tasks\Norton Security Scan for Didier.job
    [2012/03/04 10:21:24 | 001,174,306 | ---- | M] () -- C:\Users\Didier\Desktop\2012-03-03 19.37.08.jpg
    [2012/03/04 10:21:18 | 000,768,549 | ---- | M] () -- C:\Users\Didier\Desktop\2012-03-03 17.59.41.jpg
    [2012/03/04 10:21:13 | 002,704,963 | ---- | M] () -- C:\Users\Didier\Desktop\2012-03-03 16.47.43.jpg
    [2012/03/03 19:46:08 | 001,652,306 | ---- | M] () -- C:\Users\Didier\Desktop\2012-03-03 16.47.02.jpg
    [2012/03/03 19:44:47 | 000,876,541 | ---- | M] () -- C:\Users\Didier\Desktop\2012-03-03 16.47.57.jpg
    [2012/03/03 19:43:40 | 001,050,865 | ---- | M] () -- C:\Users\Didier\Desktop\2012-03-03 18.00.42.jpg
    [2012/03/03 19:42:44 | 001,035,156 | ---- | M] () -- C:\Users\Didier\Desktop\2012-03-03 18.02.10.jpg
    [2012/03/03 10:48:15 | 000,067,072 | ---- | M] () -- C:\Users\Didier\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    [2012/03/03 10:32:44 | 734,509,056 | ---- | M] () -- C:\Users\Didier\Desktop\Titanic.2.FRENCH.DVDRiP.XViD._1divx.com_.avi
    [2012/03/01 22:37:38 | 000,074,417 | ---- | M] () -- C:\Users\Didier\Desktop\DSC00011.JPG
    [2012/03/01 20:28:57 | 001,894,048 | ---- | M] (PCTuto ) -- C:\Users\Didier\Desktop\pctuto_1011.exe
    [2012/03/01 17:44:57 | 001,921,616 | ---- | M] () -- C:\Users\Didier\Desktop\2012-03-01 16.22.48.jpg
    [2012/03/01 17:35:24 | 001,960,593 | ---- | M] () -- C:\Users\Didier\Desktop\2012-03-01 16.22.24.jpg
    [2012/03/01 17:35:13 | 001,878,869 | ---- | M] () -- C:\Users\Didier\Desktop\2012-03-01 16.22.13.jpg
    [2012/03/01 17:27:40 | 000,060,169 | ---- | M] () -- C:\Users\Didier\Desktop\417044_170172119766082_100003198853737_248750_116090442_n.jpg
    [2012/02/29 21:36:42 | 004,376,065 | ---- | M] () -- C:\Users\Didier\Desktop\booba comme une etoile.mp3
    [2012/02/29 12:27:40 | 003,072,867 | ---- | M] () -- C:\Users\Didier\Desktop\AVSEQ11.MP3
    [2012/02/29 12:27:16 | 003,765,008 | ---- | M] () -- C:\Users\Didier\Desktop\AVSEQ09_New1.mp3
    [2012/02/29 12:26:42 | 004,011,186 | ---- | M] () -- C:\Users\Didier\Desktop\AVSEQ08(2).MP3
    [2012/02/29 12:25:30 | 005,708,518 | ---- | M] () -- C:\Users\Didier\Desktop\AVSEQ01_New1.mp3
    [2012/02/29 12:24:10 | 005,392,826 | ---- | M] () -- C:\Users\Didier\Desktop\03-Petit Frère.mp3
    [2012/02/29 12:23:10 | 004,304,822 | ---- | M] () -- C:\Users\Didier\Desktop\_No One Like You.mp3
    [2012/02/29 12:21:44 | 000,001,597 | ---- | M] () -- C:\Users\Didier\Desktop\Bluetooth File Transfer Wizard.lnk
    [2012/02/28 21:30:20 | 000,095,252 | ---- | M] () -- C:\Users\Didier\Desktop\Sow.jpg
    [2012/02/26 20:02:05 | 000,034,110 | ---- | M] () -- C:\Users\Didier\Desktop\Fortunna.jpg
    [2012/02/25 23:08:58 | 000,000,870 | ---- | M] () -- C:\Users\Didier\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
    [2012/02/25 23:08:58 | 000,000,846 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
    [2012/02/25 21:02:59 | 000,262,728 | ---- | M] () -- C:\Users\Didier\Documents\cc_20120225_210247.reg
    [2012/02/25 20:34:23 | 000,000,804 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
    [2012/02/25 20:34:13 | 000,001,955 | ---- | M] () -- C:\Users\Didier\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
    [2012/02/25 19:34:32 | 000,319,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\DIFxAPI.dll
    [2012/02/25 19:28:31 | 000,520,192 | ---- | M] (ScreenTime Media) -- C:\Windows\System32\Grand Theft Auto IV Screenshot.scr
    [2012/02/25 19:27:58 | 000,000,638 | ---- | M] () -- C:\user.js
    [2012/02/24 13:22:00 | 000,001,356 | ---- | M] () -- C:\Users\Didier\AppData\Local\d3d9caps.dat
    [2012/02/23 21:22:32 | 004,910,343 | ---- | M] () -- C:\Users\Didier\Desktop\Marvin tu me manqueras toujours.mp3
    [2012/02/18 23:44:45 | 004,553,405 | ---- | M] () -- C:\Users\Didier\Desktop\Ne m'en veux pas _ Lynnsha.mp3
    [2012/02/16 11:46:45 | 004,917,508 | ---- | M] () -- C:\Users\Didier\Desktop\Youssoupha feat. Corneille - Histoires Vraies.mp3
    [2012/02/10 22:10:15 | 000,324,318 | ---- | M] () -- C:\Users\Didier\P300112_0804.jpg

    ========== Files Created - No Company Name ==========

    [2012/03/05 23:45:09 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
    [2012/03/05 21:59:41 | 000,062,043 | ---- | C] () -- C:\Users\Didier\Desktop\2012-03-03 19.36.17-1.jpg
    [2012/03/05 19:23:04 | 000,254,040 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
    [2012/03/05 18:49:56 | 000,001,840 | ---- | C] () -- C:\Users\Didier\Documents\cc_20120305_184955.reg
    [2012/03/03 19:46:08 | 001,652,306 | ---- | C] () -- C:\Users\Didier\Desktop\2012-03-03 16.47.02.jpg
    [2012/03/03 19:45:50 | 002,704,963 | ---- | C] () -- C:\Users\Didier\Desktop\2012-03-03 16.47.43.jpg
    [2012/03/03 19:44:47 | 000,876,541 | ---- | C] () -- C:\Users\Didier\Desktop\2012-03-03 16.47.57.jpg
    [2012/03/03 19:43:46 | 000,768,549 | ---- | C] () -- C:\Users\Didier\Desktop\2012-03-03 17.59.41.jpg
    [2012/03/03 19:43:40 | 001,050,865 | ---- | C] () -- C:\Users\Didier\Desktop\2012-03-03 18.00.42.jpg
    [2012/03/03 19:42:44 | 001,035,156 | ---- | C] () -- C:\Users\Didier\Desktop\2012-03-03 18.02.10.jpg
    [2012/03/03 19:42:36 | 001,174,306 | ---- | C] () -- C:\Users\Didier\Desktop\2012-03-03 19.37.08.jpg
    [2012/03/03 09:51:56 | 734,509,056 | ---- | C] () -- C:\Users\Didier\Desktop\Titanic.2.FRENCH.DVDRiP.XViD._1divx.com_.avi
    [2012/03/01 22:37:29 | 000,074,417 | ---- | C] () -- C:\Users\Didier\Desktop\DSC00011.JPG
    [2012/03/01 17:36:08 | 001,921,616 | ---- | C] () -- C:\Users\Didier\Desktop\2012-03-01 16.22.48.jpg
    [2012/03/01 17:35:24 | 001,960,593 | ---- | C] () -- C:\Users\Didier\Desktop\2012-03-01 16.22.24.jpg
    [2012/03/01 17:35:13 | 001,878,869 | ---- | C] () -- C:\Users\Didier\Desktop\2012-03-01 16.22.13.jpg
    [2012/03/01 17:27:38 | 000,060,169 | ---- | C] () -- C:\Users\Didier\Desktop\417044_170172119766082_100003198853737_248750_116090442_n.jpg
    [2012/02/29 21:36:32 | 004,376,065 | ---- | C] () -- C:\Users\Didier\Desktop\booba comme une etoile.mp3
    [2012/02/29 12:27:40 | 003,072,867 | ---- | C] () -- C:\Users\Didier\Desktop\AVSEQ11.MP3
    [2012/02/29 12:27:16 | 003,765,008 | ---- | C] () -- C:\Users\Didier\Desktop\AVSEQ09_New1.mp3
    [2012/02/29 12:25:30 | 005,708,518 | ---- | C] () -- C:\Users\Didier\Desktop\AVSEQ01_New1.mp3
    [2012/02/29 12:24:10 | 005,392,826 | ---- | C] () -- C:\Users\Didier\Desktop\03-Petit Frère.mp3
    [2012/02/29 12:23:09 | 004,304,822 | ---- | C] () -- C:\Users\Didier\Desktop\_No One Like You.mp3
    [2012/02/29 12:21:44 | 000,001,597 | ---- | C] () -- C:\Users\Didier\Desktop\Bluetooth File Transfer Wizard.lnk
    [2012/02/28 21:30:19 | 000,095,252 | ---- | C] () -- C:\Users\Didier\Desktop\Sow.jpg
    [2012/02/26 20:02:03 | 000,034,110 | ---- | C] () -- C:\Users\Didier\Desktop\Fortunna.jpg
    [2012/02/25 23:08:58 | 000,000,870 | ---- | C] () -- C:\Users\Didier\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
    [2012/02/25 23:08:58 | 000,000,858 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
    [2012/02/25 23:08:58 | 000,000,846 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
    [2012/02/25 21:02:49 | 000,262,728 | ---- | C] () -- C:\Users\Didier\Documents\cc_20120225_210247.reg
    [2012/02/25 20:34:23 | 000,000,804 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
    [2012/02/25 20:34:13 | 000,001,971 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk
    [2012/02/25 20:34:13 | 000,001,955 | ---- | C] () -- C:\Users\Didier\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
    [2012/02/25 20:32:37 | 000,001,056 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
    [2012/02/25 20:32:36 | 000,001,052 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
    [2012/02/25 19:14:17 | 000,000,638 | ---- | C] () -- C:\user.js
    [2012/02/24 22:18:09 | 004,011,186 | ---- | C] () -- C:\Users\Didier\Desktop\AVSEQ08(2).MP3
    [2012/02/23 21:22:12 | 004,910,343 | ---- | C] () -- C:\Users\Didier\Desktop\Marvin tu me manqueras toujours.mp3
    [2012/02/18 23:44:35 | 004,553,405 | ---- | C] () -- C:\Users\Didier\Desktop\Ne m'en veux pas _ Lynnsha.mp3
    [2012/02/16 11:46:22 | 004,917,508 | ---- | C] () -- C:\Users\Didier\Desktop\Youssoupha feat. Corneille - Histoires Vraies.mp3
    [2012/02/10 22:09:22 | 000,324,318 | ---- | C] () -- C:\Users\Didier\P300112_0804.jpg
    [2011/11/03 20:42:36 | 000,177,982 | ---- | C] () -- C:\Windows\hphins33.dat
    [2011/11/03 20:42:36 | 000,000,512 | ---- | C] () -- C:\Windows\hphmdl33.dat
    [2011/10/28 21:03:36 | 000,005,488 | RH-- | C] () -- C:\Program Files\rbjcl.vbs
    [2011/03/04 22:53:04 | 000,067,072 | ---- | C] () -- C:\Users\Didier\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
    [2011/02/04 07:55:47 | 000,005,332 | ---- | C] () -- C:\Windows\bthservsdp.dat
    [2011/02/02 13:23:29 | 000,049,152 | ---- | C] () -- C:\Windows\Domino.exe
    [2011/01/29 16:05:34 | 000,010,084 | R--- | C] () -- C:\Windows\System32\drivers\nvphy.bin
    [2011/01/29 16:04:07 | 000,000,010 | ---- | C] () -- C:\Windows\GSetup.ini
    [2011/01/29 15:37:10 | 000,001,356 | ---- | C] () -- C:\Users\Didier\AppData\Local\d3d9caps.dat
    [2011/01/29 13:52:42 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
    [2011/01/29 13:52:20 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
    [2011/01/29 13:52:20 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
    [2011/01/29 12:24:44 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
    [2011/01/05 06:17:40 | 000,023,040 | ---- | C] () -- C:\Windows\System32\atitmpxx.dll
    [2010/12/15 23:33:32 | 000,002,975 | ---- | C] () -- C:\Windows\System32\atipblag.dat
    [2010/10/28 02:13:58 | 000,226,857 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat

    ========== LOP Check ==========

    [2011/11/07 20:48:34 | 000,000,000 | ---D | M] -- C:\Users\Didier\AppData\Roaming\Apowersoft
    [2012/02/25 19:26:38 | 000,000,000 | ---D | M] -- C:\Users\Didier\AppData\Roaming\Babylon
    [2011/11/19 21:02:49 | 000,000,000 | ---D | M] -- C:\Users\Didier\AppData\Roaming\GetRightToGo
    [2011/10/12 15:52:14 | 000,000,000 | ---D | M] -- C:\Users\Didier\AppData\Roaming\OpenOffice.org
    [2012/03/01 20:29:30 | 000,000,000 | ---D | M] -- C:\Users\Didier\AppData\Roaming\PCTuto
    [2011/12/13 19:22:36 | 000,000,000 | ---D | M] -- C:\Users\Didier\AppData\Roaming\Sammsoft
    [2011/12/28 23:53:53 | 000,000,000 | ---D | M] -- C:\Users\Didier\AppData\Roaming\smc
    [2011/02/07 17:03:11 | 000,000,000 | ---D | M] -- C:\Users\Didier\AppData\Roaming\UseNeXT
    [2012/03/05 17:25:00 | 000,000,910 | ---- | M] () -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1357999196-2640852219-2256871205-1000Core.job
    [2012/03/05 23:25:03 | 000,000,932 | ---- | M] () -- C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1357999196-2640852219-2256871205-1000UA.job
    [2012/03/05 19:22:07 | 000,032,562 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

    ========== Purity Check ==========



    ========== Custom Scans ==========


    < %SYSTEMDRIVE%\*.* >
    [2012/03/05 23:45:09 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
    [2011/10/03 10:56:27 | 000,005,909 | ---- | M] () -- C:\Ad-Report-CLEAN[1].txt
    [2011/10/03 11:01:09 | 000,003,070 | ---- | M] () -- C:\Ad-Report-CLEAN[2].txt
    [2012/02/25 19:46:52 | 000,008,125 | ---- | M] () -- C:\Ad-Report-CLEAN[3].txt
    [2012/02/25 19:53:18 | 000,005,393 | ---- | M] () -- C:\Ad-Report-CLEAN[4].txt
    [2011/10/03 10:48:22 | 000,006,839 | ---- | M] () -- C:\Ad-Report-SCAN[1].txt
    [2011/09/25 11:39:13 | 000,004,116 | ---- | M] () -- C:\AdwCleaner[S1].txt
    [2011/11/19 21:41:06 | 000,007,060 | ---- | M] () -- C:\AdwCleaner[S2].txt
    [2011/11/19 21:42:51 | 000,001,301 | ---- | M] () -- C:\AdwCleaner[S3].txt
    [2011/12/13 19:07:36 | 000,009,384 | ---- | M] () -- C:\AdwCleaner[S4].txt
    [2006/09/19 01:43:36 | 000,000,024 | ---- | M] () -- C:\autoexec.bat
    [2009/04/10 23:36:38 | 000,333,257 | RHS- | M] () -- C:\bootmgr
    [2011/01/29 17:39:16 | 000,008,192 | R-S- | M] () -- C:\BOOTSECT.BAK
    [2006/09/19 01:43:37 | 000,000,010 | ---- | M] () -- C:\config.sys
    [2012/03/05 19:23:03 | 3488,059,392 | -HS- | M] () -- C:\hiberfil.sys
    [2011/11/20 22:35:22 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
    [2011/11/20 22:35:22 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
    [2012/03/05 19:23:02 | 3801,694,208 | -HS- | M] () -- C:\pagefile.sys
    [2012/02/25 19:38:23 | 000,001,900 | ---- | M] () -- C:\TB.txt
    [2012/02/25 19:27:58 | 000,000,638 | ---- | M] () -- C:\user.js

    < %systemroot%\*. /mp /s >

    < %systemroot%\System32\config\*.sav >
    [2008/01/21 07:14:18 | 016,846,848 | ---- | M] () -- C:\Windows\System32\config\COMPONENTS.SAV
    [2008/01/21 07:14:08 | 000,106,496 | ---- | M] () -- C:\Windows\System32\config\DEFAULT.SAV
    [2008/01/21 07:14:18 | 000,020,480 | ---- | M] () -- C:\Windows\System32\config\SECURITY.SAV
    [2006/11/02 14:34:08 | 010,133,504 | ---- | M] () -- C:\Windows\System32\config\SOFTWARE.SAV
    [2006/11/02 14:34:08 | 001,826,816 | ---- | M] () -- C:\Windows\System32\config\SYSTEM.SAV

    < %systemroot%\Tasks\*.job /lockedfiles >

    < %systemroot%\system32\drivers\*.sys /lockedfiles >

    < %systemroot%\system32\*.dll /lockedfiles >

    < HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\AU >

    < HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs >
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install\\LastSuccessTime: 2012-03-05 15:22:06


    < MD5 for: EXPLORER.EXE >
    [2009/04/10 23:27:38 | 002,926,592 | ---- | M] (Microsoft Corporation) MD5=D07D4C3038F3578FFCE1C0237F2A1253 -- C:\Windows\explorer.exe
    [2009/04/10 23:27:38 | 002,926,592 | ---- | M] (Microsoft Corporation) MD5=D07D4C3038F3578FFCE1C0237F2A1253 -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6002.18005_none_53a0201e76de3a0b\explorer.exe
    [2008/01/21 06:24:24 | 002,927,104 | ---- | M] (Microsoft Corporation) MD5=FFA764631CB70A30065C12EF8E174F9F -- C:\Windows\winsxs\x86_microsoft-windows-explorer_31bf3856ad364e35_6.0.6001.18000_none_51b4a71279bc6ebf\explorer.exe

    < MD5 for: IEXPLORE.EXE >
    [2009/04/10 23:27:46 | 000,636,080 | ---- | M] (Microsoft Corporation) MD5=2C5168C856455CC43C4B4E1CC1920001 -- C:\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6002.18005_none_314d791517204c15\iexplore.exe
    [2010/11/02 10:03:13 | 000,638,232 | ---- | M] (Microsoft Corporation) MD5=5AB037B17F8A87D052F5A88E0D29A3C8 -- C:\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_8.0.6001.18999_none_11f2d8e9300c984e\iexplore.exe
    [2008/01/21 06:23:50 | 000,625,664 | ---- | M] (Microsoft Corporation) MD5=5B92133D3E7FB2644677686305E29E81 -- C:\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6001.18000_none_2f62000919fe80c9\iexplore.exe
    [2010/10/20 21:48:33 | 000,634,648 | ---- | M] (Microsoft Corporation) MD5=63E2F08404C9824C6CE6EE4A308B4083 -- C:\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6001.18542_none_2f38ca6b1a1d14fe\iexplore.exe
    [2010/12/18 11:19:44 | 000,638,232 | ---- | M] (Microsoft Corporation) MD5=7852371DA9EFBC17B645558E23780EAC -- C:\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_8.0.6001.23111_none_12cacae648f0c11a\iexplore.exe
    [2011/05/05 16:23:47 | 000,748,336 | ---- | M] (Microsoft Corporation) MD5=904E13BA41AF2E353A32CF351CA53639 -- C:\Program Files\Internet Explorer\iexplore.exe
    [2011/05/05 16:23:47 | 000,748,336 | ---- | M] (Microsoft Corporation) MD5=904E13BA41AF2E353A32CF351CA53639 -- C:\Windows\winsxs\x86_microsoft-windows-i..etexplorer-optional_31bf3856ad364e35_9.1.8112.16421_none_58a99749ebaa0de6\iexplore.exe
    [2010/11/02 11:13:47 | 000,638,232 | ---- | M] (Microsoft Corporation) MD5=92A17B0A89D14815AACC62CD190B6CE3 -- C:\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_8.0.6001.23091_none_127449a04931a37b\iexplore.exe
    [2011/02/22 11:18:28 | 000,638,232 | ---- | M] (Microsoft Corporation) MD5=9CE5543464432CA73134F170FA2BF823 -- C:\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_8.0.6001.23143_none_12ac5bb64907479b\iexplore.exe
    [2009/03/09 01:09:24 | 000,638,816 | ---- | M] (Microsoft Corporation) MD5=B60DDDD2D63CE41CB8C487FCFBB6419E -- C:\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_8.0.6001.18702_none_124d22632fc9f126\iexplore.exe
    [2010/12/18 10:28:35 | 000,638,232 | ---- | M] (Microsoft Corporation) MD5=B988D7F127B94BD5BF8356FE81B985C4 -- C:\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_8.0.6001.19019_none_1249306b2fcbec08\iexplore.exe
    [2011/02/22 10:21:12 | 000,638,232 | ---- | M] (Microsoft Corporation) MD5=C1D36A2CBE0CEC4DF593DB1288CF586E -- C:\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_8.0.6001.19048_none_1227c05d2fe52684\iexplore.exe
    [2010/10/21 22:50:10 | 000,634,648 | ---- | M] (Microsoft Corporation) MD5=ED748658B126A4617A4BA4A8F4F10DBE -- C:\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364e35_6.0.6001.22784_none_2f992a0033595461\iexplore.exe

    < MD5 for: SVCHOST.EXE >
    [2008/01/21 06:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=3794B461C45882E06856F282EEF025AF -- C:\Windows\system32\svchost.exe
    [2008/01/21 06:23:43 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=3794B461C45882E06856F282EEF025AF -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.0.6001.18000_none_b5bb59a1054dbde5\svchost.exe

    < MD5 for: USERINIT.EXE >
    [2008/01/21 06:24:49 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E135526E9785D085BCD9AEDE6FBCBF9 -- C:\Windows\system32\userinit.exe
    [2008/01/21 06:24:49 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=0E135526E9785D085BCD9AEDE6FBCBF9 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.0.6001.18000_none_dc28ba15d1aff80b\userinit.exe

    < MD5 for: WINLOGON.EXE >
    [2009/04/10 23:28:14 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\Windows\system32\winlogon.exe
    [2009/04/10 23:28:14 | 000,314,368 | ---- | M] (Microsoft Corporation) MD5=898E7C06A350D4A1A64A9EA264D55452 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6002.18005_none_71ae7a22d2134741\winlogon.exe
    [2008/01/21 06:24:49 | 000,314,880 | ---- | M] (Microsoft Corporation) MD5=C2610B6BDBEFC053BBDAB4F1B965CB24 -- C:\Windows\winsxs\x86_microsoft-windows-winlogon_31bf3856ad364e35_6.0.6001.18000_none_6fc30116d4f17bf5\winlogon.exe

    < End of report >
    5 Mars 2012 21:09:07

    OTL Extras logfile created on: 05/03/2012 23:40:51 - Run 1
    OTL by OldTimer - Version 3.2.35.1 Folder = C:\Users\Didier\Desktop
    Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
    Internet Explorer (Version = 9.0.8112.16421)
    Locale: 0000040c | Country: France | Language: FRA | Date Format: dd/MM/yyyy

    3,25 Gb Total Physical Memory | 1,92 Gb Available Physical Memory | 59,08% Memory free
    6,70 Gb Paging File | 5,13 Gb Available in Paging File | 76,66% Paging File free
    Paging file location(s): ?:\pagefile.sys [binary data]

    %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
    Drive C: | 244,14 Gb Total Space | 130,02 Gb Free Space | 53,26% Space Free | Partition Type: NTFS

    Computer Name: PC-DE-DIDIER | User Name: Didier | Logged in as Administrator.
    Boot Mode: Normal | Scan Mode: All users
    Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

    ========== Extra Registry (SafeList) ==========


    ========== File Associations ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
    .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
    .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
    .html [@ = ChromeHTML] -- C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)

    [HKEY_USERS\S-1-5-21-1357999196-2640852219-2256871205-1000\SOFTWARE\Classes\<extension>]
    .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

    ========== Shell Spawning ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
    batfile [open] -- "%1" %*
    cmdfile [open] -- "%1" %*
    comfile [open] -- "%1" %*
    cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
    exefile [open] -- "%1" %*
    helpfile [open] -- Reg Error: Key error.
    hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
    htmlfile [edit] -- Reg Error: Key error.
    htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
    http [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
    https [open] -- "C:\Program Files\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
    inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
    piffile [open] -- "%1" %*
    regfile [merge] -- Reg Error: Key error.
    scrfile [config] -- "%1"
    scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
    scrfile [open] -- "%1" /S
    txtfile [edit] -- Reg Error: Key error.
    Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
    Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
    Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
    Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
    Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
    Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation)
    Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation)
    Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

    ========== Security Center Settings ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
    "cval" = 1

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
    "AntiVirusOverride" = 0
    "AntiSpywareOverride" = 0
    "FirewallOverride" = 0
    "VistaSp1" = Reg Error: Unknown registry data type -- File not found
    "VistaSp2" = Reg Error: Unknown registry data type -- File not found

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

    ========== Firewall Settings ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
    "EnableFirewall" = 1
    "DisableNotifications" = 0

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
    "EnableFirewall" = 1
    "DisableNotifications" = 0

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
    "EnableFirewall" = 1
    "DisableNotifications" = 0

    ========== Authorized Applications List ==========


    ========== Vista Active Open Ports Exception List ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
    "{07EA0B44-7309-4DB6-987A-2EE0D45138F3}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
    "{08C97801-6538-4E69-8D53-7CC09F1C3B79}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
    "{0C46ACF3-5058-4109-BD71-AC9E5F699782}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
    "{192D8CD3-1BDD-4B28-AE85-B35E2220DB96}" = lport=137 | protocol=17 | dir=in | app=system |
    "{229066F0-BA49-49C2-BC41-C0FBDFBFAE93}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
    "{23E50BBB-1A3F-401D-AB33-FA8F9EA8265F}" = rport=139 | protocol=6 | dir=out | app=system |
    "{2AFFA054-514D-45B7-AEB8-CD48B24E503B}" = lport=445 | protocol=6 | dir=in | app=system |
    "{37DD9FBB-20A0-4EA3-B71A-BD91B00E7FC5}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
    "{4A0768AA-033E-4D2F-9601-C419BC88198A}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
    "{4DF0903B-D5DC-4E40-AD47-12F8C99C201B}" = lport=138 | protocol=17 | dir=in | app=system |
    "{677C63B2-5872-47B5-BE75-4AFBA96AD6A5}" = lport=139 | protocol=6 | dir=in | app=system |
    "{69B33A73-39C0-47A6-8158-340EE52C886C}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe |
    "{A2A5DBBA-DA35-462B-B26A-751D1A495AEE}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
    "{A35EFA43-C4C6-4950-8942-33D7A2D18BDE}" = rport=445 | protocol=6 | dir=out | app=system |
    "{B497100D-23C1-4CA6-A3C0-70692BAC0618}" = rport=138 | protocol=17 | dir=out | app=system |
    "{B823133A-241E-47C0-9F8E-E0A818D2E673}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
    "{C71CD128-EF63-4698-B214-39688F53BC4F}" = lport=2869 | protocol=6 | dir=in | app=system |
    "{C7C5BE48-811A-4030-B365-99A467E6665B}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe |
    "{D32FE66B-D7CC-4B04-A3AF-DAFC920D9B51}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe |
    "{D754E339-0FFD-4E0E-9A96-E767D90A0BFD}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe |
    "{D819858E-4925-48C6-83F0-34D3DA8570C0}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
    "{DDF3110F-2EFD-4850-BFB2-D0A33DD6082F}" = rport=137 | protocol=17 | dir=out | app=system |

    ========== Vista Active Application Exception List ==========

    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
    "{3C300DAA-144F-42D5-B4A3-21F1720287CC}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
    "{3CF123D7-483F-4F45-8E35-84DF93261C0A}" = dir=in | app=c:\program files\hp\digital imaging\smart web printing\smartwebprintexe.exe |
    "{3FD5CBD7-0738-4C0F-A857-EFC3333E35EF}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqgplgtupl.exe |
    "{4389FE11-CC90-46B4-A1C2-BBE180030644}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqtra08.exe |
    "{5035C122-7F6E-46F3-919B-C1D3ED5E0B8A}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
    "{69B74E65-9305-44EE-8F39-5A59FCA8928D}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqste08.exe |
    "{7725E80E-97A0-4F86-9A0A-5174DCE0C4F4}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
    "{82348CC6-43F9-442C-A71D-B24E55ACA359}" = dir=in | app=c:\program files\hp\hp software update\hpwucli.exe |
    "{9C8DB974-9A68-48A8-89B6-BC5B531BF74A}" = dir=in | app=c:\program files\windows live\contacts\wlcomm.exe |
    "{9FF4385A-3B5D-48D8-914D-217855111AC6}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
    "{AEB89061-C352-4FE1-B27F-874EC5C6C671}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpoews01.exe |
    "{B260C16E-6F93-4A32-A8E9-4BEFFCC820A6}" = dir=in | app=c:\program files\windows live\messenger\msnmsgr.exe |
    "{D41D1BFB-3BC9-4DDF-8DB3-A9DBEE396C4F}" = dir=in | app=c:\program files\hp\digital imaging\bin\hpqgpc01.exe |
    "{F4BDAA8A-E9F9-413E-BDEB-73DD2E8FC4CC}" = dir=in | app=c:\program files\hp\digital imaging\bin\hposid01.exe |
    "{F6798DB4-B652-4A4F-B90C-E3C731585733}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
    "{FBF36BA6-A85E-4FA7-8391-A69F604C8539}" = dir=in | app=c:\users\didier\appdata\local\facebook\video\skype\facebookvideocalling.exe |

    ========== HKEY_LOCAL_MACHINE Uninstall List ==========

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "{05E379CC-F626-4E7D-8354-463865B303BF}" = Windows Live UX Platform Language Pack
    "{0AAFCFAF-5544-EEAF-189B-C85B138112D1}" = ATI Catalyst Install Manager
    "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
    "{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}" = DeviceDiscovery
    "{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}" = HPProductAssistant
    "{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
    "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
    "{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 29
    "{292F0F52-B62D-4E71-921B-89A682402201}" = Toolbox
    "{2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}" = HP Update
    "{2FB9EA69-51D4-4913-9AD5-762C034DE811}" = Status
    "{32BC62C5-32B9-F838-ADD4-CFEF544C6888}" = ccc-core-static
    "{34319F1F-7CF2-4CC9-B357-1AE7D2FF3AC5}" = Windows Live
    "{343A1706-26A4-45EA-88CF-37CA172B0F27}" = D1600
    "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
    "{3CB1AEE0-0B27-F3C8-0582-67976480E480}" = AMD Fuel
    "{3E31821C-7917-367E-938E-E65FC413EA31}" = Microsoft .NET Framework 3.5 Language Pack SP1 - fra
    "{44D02D8B-FFB3-4245-8D26-68D10B4C4023}" = ZSMC USB PC Camera (ZS0211)
    "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
    "{5DCF0E4B-F8EA-4229-A0BD-5CA6D4AFB749}" = SolutionCenter
    "{5DD4FCBD-A3C1-4155-9E17-4161C70AAABA}" = Segoe UI
    "{5FD89EA1-99C2-40EE-BBF5-20F8991ED756}" = Catalyst Control Center - Branding
    "{624E54D0-E4F4-434F-9EF6-D4D066EE4348}" = Facebook Video Calling 1.1.1.1
    "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
    "{771ABEA0-23AF-8F8E-63FE-168779F294B6}" = CCC Help English
    "{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
    "{846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE}" = HPDiagnosticAlert
    "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
    "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
    "{8EE94FD8-5F52-4463-A340-185D16328158}" = WebReg
    "{8FF6F5CA-4E30-4E3B-B951-204CAAA2716A}" = SmartWebPrinting
    "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
    "{96178C0A-BAF9-4E49-A2A5-CDE76722105B}" = HP Deskjet D1600 Printer Driver Software 14.0 Rel. 6
    "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
    "{A80FA752-C491-4ED9-ABF0-4278563160B2}" = 32 Bit HP CIO Components Installer
    "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
    "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
    "{AB61A2E9-37D3-485D-9085-19FBDF8CEF4A}" = Windows Live Messenger
    "{AC76BA86-7AD7-1036-7B44-AA1000000001}" = Adobe Reader X (10.1.2) - Français
    "{BB3447F6-9553-4AA9-960E-0DB5310C5779}" = GPBaseService2
    "{C6150D8A-86ED-41D3-87BB-F3BB51B0B77F}" = Windows Live ID Sign-in Assistant
    "{C893D8C0-1BA0-4517-B11C-E89B65E72F70}" = Windows Live Photo Common
    "{C92C89BB-1D11-C8D5-1584-D5259818479A}" = ccc-utility
    "{C9B2F671-870B-43A0-8B9D-7DB30CEBD87E}" = DJ_SF_06_D1600_SW_Min
    "{CAE4213F-F797-439D-BD9E-79B71D115BE3}" = HPPhotoGadget
    "{CD31E63D-47FD-491C-8117-CF201D0AFAB5}" = TrayApp
    "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
    "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
    "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
    "{DB837331-6864-4B66-7248-4CB823DB4222}" = Catalyst Control Center InstallProxy
    "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
    "{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger
    "{F47C09DB-746B-2ABA-819B-8FC759034E74}" = Catalyst Control Center Graphics Previews Common
    "{FA0FF682-CC70-4C57-93CD-E276F3E7537E}" = BufferChm
    "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
    "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
    "Adobe Shockwave Player" = Adobe Shockwave Player 11.5
    "Ad-Remover" = Ad-Remover par C_XX
    "ARO 2011_is1" = ARO 2011
    "Audacity_is1" = Audacity 1.2.6
    "avast" = avast! Free Antivirus
    "CCleaner" = CCleaner
    "Defraggler" = Defraggler
    "Google Chrome" = Google Chrome
    "HijackThis" = HijackThis 2.0.2
    "HP Imaging Device Functions" = HP Imaging Device Functions 14.0
    "HP Smart Web Printing" = HP Smart Web Printing 4.60
    "HP Solution Center & Imaging Support Tools" = HP Solution Center 14.0
    "Microsoft .NET Framework 3.5 Language Pack SP1 - fra" = Module linguistique Microsoft .NET Framework 3.5 SP1- fra
    "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
    "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
    "Mozilla Firefox 10.0.2 (x86 fr)" = Mozilla Firefox 10.0.2 (x86 fr)
    "NSS" = Norton Security Scan
    "NVIDIA Drivers" = NVIDIA Drivers
    "Picasa 3" = Picasa 3
    "UseNeXT_is1" = UseNeXT
    "VLC media player" = VLC media player 1.1.5
    "WinGimp-2.0_is1" = GIMP 2.6.11
    "WinLiveSuite" = Windows Live
    "WinRAR archiver" = Logiciel d'archivage WinRAR

    ========== HKEY_USERS Uninstall List ==========

    [HKEY_USERS\S-1-5-21-1357999196-2640852219-2256871205-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
    "Ad-Remover" = Ad-Remover
    "Wizard101(FR)_is1" = Wizard101(FR)

    ========== Last 10 Event Log Errors ==========

    [ Application Events ]
    Error - 29/02/2012 03:49:25 | Computer Name = PC-de-Didier | Source = WinMgmt | ID = 10
    Description =

    Error - 29/02/2012 11:21:15 | Computer Name = PC-de-Didier | Source = WinMgmt | ID = 10
    Description =

    Error - 01/03/2012 04:04:58 | Computer Name = PC-de-Didier | Source = WinMgmt | ID = 10
    Description =

    Error - 02/03/2012 11:03:54 | Computer Name = PC-de-Didier | Source = WinMgmt | ID = 10
    Description =

    Error - 03/03/2012 01:34:05 | Computer Name = PC-de-Didier | Source = WinMgmt | ID = 10
    Description =

    Error - 03/03/2012 11:28:57 | Computer Name = PC-de-Didier | Source = WinMgmt | ID = 10
    Description =

    Error - 04/03/2012 02:21:19 | Computer Name = PC-de-Didier | Source = WinMgmt | ID = 10
    Description =

    Error - 05/03/2012 04:29:08 | Computer Name = PC-de-Didier | Source = WinMgmt | ID = 10
    Description =

    Error - 05/03/2012 09:37:47 | Computer Name = PC-de-Didier | Source = WinMgmt | ID = 10
    Description =

    Error - 05/03/2012 11:24:42 | Computer Name = PC-de-Didier | Source = WinMgmt | ID = 10
    Description =

    [ System Events ]
    Error - 05/03/2012 09:37:16 | Computer Name = PC-de-Didier | Source = netbt | ID = 4321
    Description = Le nom "PC-DE-DIDIER :0" n'a pas pu être enregistré sur l'interface
    avec l'adresse IP 192.168.1.60. L'ordinateur avec l'adresse IP 192.168.1.59 n'a
    pas permis que le nom soit réclamé par cet ordinateur.

    Error - 05/03/2012 09:37:16 | Computer Name = PC-de-Didier | Source = netbt | ID = 4321
    Description = Le nom "PC-DE-DIDIER :0" n'a pas pu être enregistré sur l'interface
    avec l'adresse IP 192.168.1.60. L'ordinateur avec l'adresse IP 192.168.1.59 n'a
    pas permis que le nom soit réclamé par cet ordinateur.

    Error - 05/03/2012 09:37:19 | Computer Name = PC-de-Didier | Source = Server | ID = 2505
    Description = Le serveur n'a pas pu se lier au transport \Device\NetBT_Tcpip_{14CFD418-D66A-4F67-9532-905DFD339851}
    car un autre ordinateur du réseau porte le même nom. Le serveur n'a pas pu démarrer.

    Error - 05/03/2012 09:37:19 | Computer Name = PC-de-Didier | Source = netbt | ID = 4321
    Description = Le nom "PC-DE-DIDIER :20" n'a pas pu être enregistré sur l'interface
    avec l'adresse IP 192.168.1.60. L'ordinateur avec l'adresse IP 192.168.1.59 n'a
    pas permis que le nom soit réclamé par cet ordinateur.

    Error - 05/03/2012 09:37:47 | Computer Name = PC-de-Didier | Source = Service Control Manager | ID = 7026
    Description =

    Error - 05/03/2012 11:23:33 | Computer Name = PC-de-Didier | Source = netbt | ID = 4321
    Description = Le nom "PC-DE-DIDIER :0" n'a pas pu être enregistré sur l'interface
    avec l'adresse IP 192.168.1.60. L'ordinateur avec l'adresse IP 192.168.1.59 n'a
    pas permis que le nom soit réclamé par cet ordinateur.

    Error - 05/03/2012 11:23:33 | Computer Name = PC-de-Didier | Source = netbt | ID = 4321
    Description = Le nom "PC-DE-DIDIER :0" n'a pas pu être enregistré sur l'interface
    avec l'adresse IP 192.168.1.60. L'ordinateur avec l'adresse IP 192.168.1.59 n'a
    pas permis que le nom soit réclamé par cet ordinateur.

    Error - 05/03/2012 11:23:36 | Computer Name = PC-de-Didier | Source = Server | ID = 2505
    Description = Le serveur n'a pas pu se lier au transport \Device\NetBT_Tcpip_{14CFD418-D66A-4F67-9532-905DFD339851}
    car un autre ordinateur du réseau porte le même nom. Le serveur n'a pas pu démarrer.

    Error - 05/03/2012 11:23:36 | Computer Name = PC-de-Didier | Source = netbt | ID = 4321
    Description = Le nom "PC-DE-DIDIER :20" n'a pas pu être enregistré sur l'interface
    avec l'adresse IP 192.168.1.60. L'ordinateur avec l'adresse IP 192.168.1.59 n'a
    pas permis que le nom soit réclamé par cet ordinateur.

    Error - 05/03/2012 11:24:43 | Computer Name = PC-de-Didier | Source = Service Control Manager | ID = 7026
    Description =


    < End of report >
    5 Mars 2012 21:10:29




    Vous avez besoin d'aide?

    Créez vos sujets, on ne répondra pas sur celui-ci.
    C'est très simple, il suffit de cliquer sur ce bouton:
    Une équipe de Helpers bénévoles vous prendra en charge rapidement.
    http://www.infos-du-net.com/forum/id-2108643/creer-nouv...


    <@_@>**<@_@>**<@_@>**<@_@>**<@_@>**@_@>**<@_@><@_@>**<@_@>**<@_@>**<@_@>**
    Tom's guide dans le monde
    • Allemagne
    • Italie
    • Irlande
    • Royaume Uni
    • Etats Unis
    Suivre Tom's Guide
    Inscrivez-vous à la Newsletter
    • ajouter à twitter
    • ajouter à facebook
    • ajouter un flux RSS