Aide sur analyse ... qu'est ce qui ne vas pas

Résolu
Bonjour a tous,

je désire avoir un avis sur l'analyse faites sur mon PC Portable .
Mon problême est qu'il ralenti et que la RAM frise les 95% sans lancer d'application au démarrage
J'ai pu noter dans les processus que ROXWatchtray9 en est en parti responsable mais avant toute action de ma part je voulais votre avis.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:24:27, on 13/12/2007
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16575)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Program Files\McAfee\MPS\mpsevh.exe
C:\Windows\Explorer.EXE
C:\Program Files\DellTPad\Apoint.exe
C:\Windows\OEM02Mon.exe
C:\Program Files\Java\jre1.6.0\bin\jusched.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Windows\sttray.exe
C:\Program Files\McAfee\MSK\mskagent.exe
C:\Program Files\Dell\MediaDirect\PCMService.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Windows\System32\rundll32.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\Windows\System32\rundll32.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Mail\WinMail.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Dell Support Center\bin\sprtcmd.exe
C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\DellTPad\ApMsgFwd.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
C:\Program Files\DellTPad\Apntex.exe
C:\Program Files\DellTPad\HidFind.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/webhp?sourceid=navclient&hl=fr&ie=UTF-8&gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.google.fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer fourni par Dell
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\program files\mcafee\virusscan\scriptcl.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe
O4 - HKLM\..\Run: [OEM02Mon.exe] C:\Windows\OEM02Mon.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "c:\Program Files\Java\jre1.6.0\bin\jusched.exe"
O4 - HKLM\..\Run: [SigmatelSysTrayApp] sttray.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\MediaDirect\PCMService.exe"
O4 - HKLM\..\Run: [ECenter] c:\dell\E-Center\EULALauncher.exe
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [dscactivate] C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NVHotkey] rundll32.exe C:\Windows\system32\nvHotkey.dll,Start
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-21-3126691120-3250344708-3069186924-1001\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup (User 'Sandra')
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O4 - Global Startup: QuickSet.lnk = ?
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O8 - Extra context menu item: Envoyer l'&image au périphérique Bluetooth... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O13 - Gopher Prefix:
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://a1540.g.akamai.net/7/1540/52/20070711/qtinstall.info.apple.com/qtactivex/qtplugin.cab
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:\PROGRA~1\COMMON~1\McAfee\EmProxy\emproxy.exe
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exe
O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\common files\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\redirsvc\redirsvc.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Privacy Service (MPS9) - McAfee, Inc. - C:\PROGRA~1\McAfee\MPS\mps.exe
O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe
O23 - Service: SigmaTel Audio Service (STacSV) - SigmaTel, Inc. - C:\Windows\system32\STacSV.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 12017 bytes

En esperant que vous pourrait m'aider,
Merci
Configuration: Windows Vista
Internet Explorer 7.0
2048 de RAM
CG - GF8600 gt

17 réponses

  1. Lol ouai, c'était simplement un rappel vis-à-vis du message <11>

    Après pour le reste je vous laisse faire , libre place à vous ;-)
    0
    1. Salut boule¨¨,

      Merci
      0
  2. Contributeur sécurité
    merci de passer Boule' !
    je donnais un petit rappel pour DIID ! ( java pas à jour, et les coockies non nettoyés ! )
    pour navilog, un petit doute !!
    0
    1. Pour rappel il ets inutile de fixer une O23 avec hijackthis, c'est un service à désactiver :-)
      0
      1. Contributeur sécurité
        re !
        Deuxieme coup d'oeil ! Le 1er rapport D'AVG AS me dit que tu es collectionneur de cookies ( lol )

        --> Il va te falloir apprendre a mieux les gerer :

        Avec I.E outils/options/ onglet confidentialité/avancés/
        *Cocher ignorer gestion automatique des cookies
        *Cocher accepter cookies interne et refuser cookies tierce puis appliquer et ok

        Avec Firefox outils/options/vie privée
        *conserver les cookies --> jusqu a la fermeture de Firefox sur PC Astuces">Firefox
        *dans parametres , cocher cookies
        *puis cocher "toujours effacer mes informations personnelles a la fermeture de Firefox puis valider par ok
        Sinon, pour FF, il y a des extensions pour cela (au moins 4 a C) --> https://www.hugedomains.com/domain_profile.cfm?d=geckozone&e=org#C

        * Passer CCleaner regulierement, fonction nettoyeur

        Rappel :Cookies (biscuit)
        Un cookie est un enregistrement d'informations par le serveur dans un fichier texte situé sur l'ordinateur client.
        Il se compose d'un ensemble de variables que le client et le serveur s'échangent lors de transactions HTTP,ce qui permet d'éviter de se connecter à nouveau sur un forum par exemple,ou d'aller directement sur la page d'un site,etc......
        Sans probleme quand ils sont utilisés par des "entités",ils peuvent se révéler trés dangereux mal employés.
        En effet,ils peuvent stocker une multitudes de renseignements,qui récoltés par un spyware,permet de se connecter au service Web sous le compte de l'utilisateur.
        extrait de https://forum.pcastuces.com/sujet.asp?f=25&s=14911 gigrionne

        AVG ► Aucune action entreprise

        Donc faut le refaire

        · Téléchargement :

        Télécharge la version d'essai d'AVG Anti-Spyware 7.5 depuis
        http://www.grisoft.com/doc/downloads-products/ww/crp/0?prd=triasw
        · Pour Vista
        http://Pour Vistawww.commentcamarche.net/telecharger/telecharger-218-avg-anti-spyware

        Installe la puis...
        *Mise à jour :
        Lancer AVG Anti-Spyware.
        Cliquer sur le menu Mise à jour.
        Dans le paragraphe Mise à jour manuelle, cliquer sur le bouton Commencer la mise à jour.
        Attendre la fin de cette mise à jour
        Ferme AVG Antispyware

        * Reglages :

        Cliquer sur le menu Analyse (de la barre d'outils).
        Cliquer sur l'onglet Paramètres.
        Dans Comment réagir? cliquer sur Actions recommandées et choisir Quarantaine.
        Dans Comment faire l'analyse ? et dans Programmes potentiellement dangereux, vérifier que toutes les cases soient cochées.
        Vérifier que le bouton-radio Générer un rapport après chaque analyse soit aussi coché.

        * Scan et nettoyage :
        (a faire en mode sans echec)
        Dans l'onglet Analyse
        Cliquer sur Analyse complète du système.

        Important : Ne pas ouvrir de fenêtre, ne pas lancer de
        programme pendant l'exécution de AVG Anti-Spyware, car cela pourrait interférer avec le processus de recherche.
        Tres important : A la fin de l'analyse, clique sur " Appliquer toutes les actions"

        Ensuite.

        Cliquer sur "Enregistrer le rapport". Ceci génère un rapport
        en fichier texte qui se trouve dans le dossier Reports du dossier d'AVG Anti-Spyware.
        Puis fermer AVG Anti-Spyware..

        * Remarques :
        Au bout des 30 jours d'essai , AVG Anti-Spyware restera utilisable sans limitation de durée, mais avec deux restrictions:
        *- pas de surveillance en temps réel,
        *- pas de mise à jour automatique en ligne.
        Il restera un bon scan passif avec lequel tu pourras effectuer un ptit"nettoyage", sans oublier de faire une mise à jour manuelle avant d'exécuter le balayage.
        0
        1. Salut Joe,

          Merci pour ton intervention.

          Mais AVG c'est le rapport d'analyse. La suppression à été faite après, non ?
          0
      2. Contributeur sécurité
        SALUT !
        petite intrusion !
        Ta console Java n'est pas à jour:
        Cliques sur ce lien :
        https://www.java.com/fr/download/manual.jsp

        Choisis la première ligne de téléchargement puis installe java.
        En fin d'installation, revient sur la page pour vérifier ton installation.

        une fois la mise a jour effectuée tu va dans ajouts/suppressions de programs et tu supprimes toutes les autres update de java
        il ne doit te rester que celle que tu viens de faire : 1.6.0_03

        pour une derniere vérif'

        Désactive le contrôle des comptes utilisateurs
        (tu le réactiveras après ta désinfection):

        - Va dans démarrer puis panneau de configuration
        - Double Clique sur l'icône "Comptes d'utilisateurs"
        - Clique ensuite sur désactiver et valide.

        Télécharge maintenant Navilog1 depuis-ce lien :

        http://perso.orange.fr/il.mafioso/Navifix/Navilog1.exe

        Enregistrer la cible (du lien) sous... et
        enregistre-le sur ton bureau.
        Ensuite double clique sur navilog1.exe pour lancer l'installation.
        Une fois l'installation terminée,
        Fais un Clic-droit sur le raccourci Navilog1 présent sur ton bureau et choisis
        "Exécuter en tant qu'administrateur".

        Au menu principal, Fais le choix 1
        NE FAIT PAS LE CHOIX 2,3,4 SANS NOTRE ACCORD
        Laisse toi guider et patiente.
        Patiente jusqu'au message :
        *** Analyse Termine le ..... ***
        Appuie sur une touche le blocnote va s'ouvrir.
        Copie-colle l'intégralité du rapport dans une réponse.
        Referme le blocnote
        Le rapport fixnavi.txt est en outre sauvegardé à la racine du disque (fixnavi.txt)

        Bon courage
        @ plus !
        Joe.(;o):
        0
        1. il tourne mieux !!!

          RAM à 40% d'utilisation en moyenne ce qui reste dans les marges pour Vista.
          et 10% pour les 2 cores au repos.

          encore merci pour ton intervention DIID :)
          0
          1. Salut,
            0
        2. RE,

          Et le PC ? Comment qu'il va ?
          --
          0
          1. Samut samgamegie62,

            Le Hijack log, faut le faire en mode normal.
            0
            1. Eh Hop voila !!!

              Logfile of Trend Micro HijackThis v2.0.2
              Scan saved at 11:17:23, on 16/12/2007
              Platform: Windows Vista (WinNT 6.00.1904)
              MSIE: Internet Explorer v7.00 (7.00.6000.16575)
              Boot mode: Normal

              Running processes:
              C:\Windows\system32\Dwm.exe
              C:\Program Files\McAfee\MPS\mpsevh.exe
              C:\Windows\Explorer.EXE
              C:\Program Files\DellTPad\Apoint.exe
              C:\Windows\OEM02Mon.exe
              C:\Program Files\Java\jre1.6.0\bin\jusched.exe
              C:\Windows\sttray.exe
              C:\Program Files\McAfee\MSK\mskagent.exe
              C:\Program Files\Dell\MediaDirect\PCMService.exe
              C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
              c:\PROGRA~1\mcafee.com\agent\mcagent.exe
              C:\Windows\System32\rundll32.exe
              C:\Windows\System32\rundll32.exe
              C:\Program Files\DellSupport\DSAgnt.exe
              C:\Windows\system32\taskeng.exe
              C:\Windows\ehome\ehtray.exe
              C:\Program Files\Windows Sidebar\sidebar.exe
              C:\Program Files\Dell Support Center\bin\sprtcmd.exe
              C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe
              C:\Program Files\DAEMON Tools\daemon.exe
              C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
              C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
              C:\Program Files\Digital Line Detect\DLG.exe
              C:\Program Files\Dell\QuickSet\quickset.exe
              C:\Windows\System32\rundll32.exe
              C:\Program Files\Windows Mail\WinMail.exe
              C:\Windows\ehome\ehmsas.exe
              C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
              C:\Program Files\DellTPad\ApMsgFwd.exe
              C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
              C:\Program Files\Windows Sidebar\sidebar.exe
              C:\Program Files\DellTPad\HidFind.exe
              C:\Program Files\DellTPad\Apntex.exe
              C:\Windows\system32\wbem\unsecapp.exe
              C:\Windows\system32\SearchFilterHost.exe
              C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

              R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
              R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/webhp?sourceid=navclient&hl=fr&ie=UTF-8&gws_rd=ssl
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.google.fr
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
              R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
              R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
              R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
              R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer fourni par Dell
              R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
              O1 - Hosts: ::1 localhost
              O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
              O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
              O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
              O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\program files\mcafee\virusscan\scriptcl.dll
              O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
              O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll
              O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
              O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
              O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
              O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe
              O4 - HKLM\..\Run: [OEM02Mon.exe] C:\Windows\OEM02Mon.exe
              O4 - HKLM\..\Run: [SunJavaUpdateSched] "c:\Program Files\Java\jre1.6.0\bin\jusched.exe"
              O4 - HKLM\..\Run: [SigmatelSysTrayApp] sttray.exe
              O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
              O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
              O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\MediaDirect\PCMService.exe"
              O4 - HKLM\..\Run: [ECenter] c:\dell\E-Center\EULALauncher.exe
              O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
              O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
              O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
              O4 - HKLM\..\Run: [dscactivate] C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe
              O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
              O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
              O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
              O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
              O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
              O4 - HKLM\..\Run: [NVHotkey] rundll32.exe C:\Windows\system32\nvHotkey.dll,Start
              O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
              O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
              O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
              O4 - HKCU\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
              O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe"
              O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
              O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
              O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
              O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
              O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
              O4 - HKUS\S-1-5-21-3126691120-3250344708-3069186924-1001\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup (User 'Sandra')
              O4 - Global Startup: BTTray.lnk = ?
              O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
              O4 - Global Startup: QuickSet.lnk = ?
              O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
              O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
              O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
              O8 - Extra context menu item: Envoyer l'&image au périphérique Bluetooth... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
              O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
              O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
              O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
              O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
              O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
              O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
              O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
              O13 - Gopher Prefix:
              O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://a1540.g.akamai.net/7/1540/52/20070711/qtinstall.info.apple.com/qtactivex/qtplugin.cab
              O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
              O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
              O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:\PROGRA~1\COMMON~1\McAfee\EmProxy\emproxy.exe
              O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
              O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
              O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
              O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exe
              O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe
              O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
              O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\common files\mcafee\mna\mcnasvc.exe
              O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
              O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
              O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
              O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\redirsvc\redirsvc.exe
              O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
              O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
              O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
              O23 - Service: McAfee Privacy Service (MPS9) - McAfee, Inc. - C:\PROGRA~1\McAfee\MPS\mps.exe
              O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
              O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
              O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
              O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
              O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
              O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe
              O23 - Service: SigmaTel Audio Service (STacSV) - SigmaTel, Inc. - C:\Windows\system32\STacSV.exe
              O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
              0
          2. bonjour a tous voilà le résultat,

            J'ai désintallé Roxio qui n'est plus utile ayant maintenant Nero 8 et qui contenai selon les info le fichier roxwatchtray9.

            ---------------------------------------------------------
            AVG Anti-Spyware - Rapport d'analyse
            ---------------------------------------------------------

            + Créé à: 20:43:16 15/12/2007

            + Résultat de l'analyse:

            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@247realmedia[2].txt -> TrackingCookie.247realmedia : Aucune action entreprise.
            C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Cookies\Low\sandra@247realmedia[2].txt -> TrackingCookie.247realmedia : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@electronicarts.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@himedia.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@paypal.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@thumbplay.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\samuel@divx.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@2.adbrite[1].txt -> TrackingCookie.Adbrite : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@3.adbrite[1].txt -> TrackingCookie.Adbrite : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@adbrite[1].txt -> TrackingCookie.Adbrite : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@ads.adbrite[1].txt -> TrackingCookie.Adbrite : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@ads.addynamix[2].txt -> TrackingCookie.Addynamix : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@adrevolver[1].txt -> TrackingCookie.Adrevolver : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@media.adrevolver[2].txt -> TrackingCookie.Adrevolver : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@adtech[1].txt -> TrackingCookie.Adtech : Aucune action entreprise.
            C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Cookies\Low\sandra@adtech[1].txt -> TrackingCookie.Adtech : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@advertising[2].txt -> TrackingCookie.Advertising : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\samuel@advertising[2].txt -> TrackingCookie.Advertising : Aucune action entreprise.
            C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Cookies\Low\sandra@advertising[1].txt -> TrackingCookie.Advertising : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@adviva[2].txt -> TrackingCookie.Adviva : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@atdmt[2].txt -> TrackingCookie.Atdmt : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\samuel@atdmt[2].txt -> TrackingCookie.Atdmt : Aucune action entreprise.
            C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Cookies\Low\sandra@atdmt[2].txt -> TrackingCookie.Atdmt : Aucune action entreprise.
            C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Cookies\sandra@atdmt[2].txt -> TrackingCookie.Atdmt : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@ad1.clickhype[1].txt -> TrackingCookie.Clickhype : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@fl01.ct2.comclick[2].txt -> TrackingCookie.Comclick : Aucune action entreprise.
            C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Cookies\Low\sandra@fl01.ct2.comclick[2].txt -> TrackingCookie.Comclick : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@doubleclick[1].txt -> TrackingCookie.Doubleclick : Aucune action entreprise.
            C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Cookies\Low\sandra@doubleclick[1].txt -> TrackingCookie.Doubleclick : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@estat[1].txt -> TrackingCookie.Estat : Aucune action entreprise.
            C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Cookies\Low\sandra@estat[1].txt -> TrackingCookie.Estat : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@adopt.euroclick[1].txt -> TrackingCookie.Euroclick : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@fastclick[1].txt -> TrackingCookie.Fastclick : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@counter.hitslink[2].txt -> TrackingCookie.Hitslink : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@mediaplex[1].txt -> TrackingCookie.Mediaplex : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\samuel@ssl-hints.netflame[1].txt -> TrackingCookie.Netflame : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@overture[1].txt -> TrackingCookie.Overture : Aucune action entreprise.
            C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Cookies\Low\sandra@overture[2].txt -> TrackingCookie.Overture : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@ads.planetactive[1].txt -> TrackingCookie.Planetactive : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\samuel@ads.pointroll[1].txt -> TrackingCookie.Pointroll : Aucune action entreprise.
            C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Cookies\sandra@ads.pointroll[1].txt -> TrackingCookie.Pointroll : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@revsci[1].txt -> TrackingCookie.Revsci : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@www.safer-networking[1].txt -> TrackingCookie.Safer-networking : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@bs.serving-sys[2].txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@serving-sys[2].txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\samuel@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\samuel@serving-sys[2].txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
            C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Cookies\Low\sandra@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
            C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Cookies\Low\sandra@serving-sys[2].txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
            C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Cookies\sandra@bs.serving-sys[2].txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
            C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Cookies\sandra@serving-sys[1].txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@smartadserver[1].txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\samuel@smartadserver[1].txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
            C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Cookies\Low\sandra@smartadserver[2].txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
            C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Cookies\sandra@smartadserver[1].txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@statcounter[1].txt -> TrackingCookie.Statcounter : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@tacoda[2].txt -> TrackingCookie.Tacoda : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\samuel@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@weborama[2].txt -> TrackingCookie.Weborama : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\samuel@weborama[1].txt -> TrackingCookie.Weborama : Aucune action entreprise.
            C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Cookies\Low\sandra@weborama[1].txt -> TrackingCookie.Weborama : Aucune action entreprise.
            C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Cookies\sandra@weborama[1].txt -> TrackingCookie.Weborama : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@m.webtrends[2].txt -> TrackingCookie.Webtrends : Aucune action entreprise.
            C:\Users\Sandra\AppData\Roaming\Microsoft\Windows\Cookies\Low\sandra@m.webtrends[2].txt -> TrackingCookie.Webtrends : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@yadro[1].txt -> TrackingCookie.Yadro : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
            C:\Users\Samuel\AppData\Roaming\Microsoft\Windows\Cookies\Low\samuel@zedo[2].txt -> TrackingCookie.Zedo : Aucune action entreprise.

            Fin du rapport

            et maintenant Hijack This :

            Logfile of Trend Micro HijackThis v2.0.2
            Scan saved at 21:02:08, on 15/12/2007
            Platform: Windows Vista (WinNT 6.00.1904)
            MSIE: Internet Explorer v7.00 (7.00.6000.16575)
            Boot mode: Safe mode

            Running processes:
            C:\Windows\Explorer.EXE
            C:\Windows\system32\wbem\unsecapp.exe
            C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

            R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
            R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/webhp?sourceid=navclient&hl=fr&ie=UTF-8&gws_rd=ssl
            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.google.fr
            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
            R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
            R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
            R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
            R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer fourni par Dell
            R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
            O1 - Hosts: ::1 localhost
            O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
            O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
            O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
            O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\program files\mcafee\virusscan\scriptcl.dll
            O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
            O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
            O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll
            O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
            O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
            O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
            O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe
            O4 - HKLM\..\Run: [OEM02Mon.exe] C:\Windows\OEM02Mon.exe
            O4 - HKLM\..\Run: [SunJavaUpdateSched] "c:\Program Files\Java\jre1.6.0\bin\jusched.exe"
            O4 - HKLM\..\Run: [SigmatelSysTrayApp] sttray.exe
            O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
            O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
            O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\MediaDirect\PCMService.exe"
            O4 - HKLM\..\Run: [ECenter] c:\dell\E-Center\EULALauncher.exe
            O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
            O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
            O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
            O4 - HKLM\..\Run: [dscactivate] C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe
            O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
            O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
            O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
            O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
            O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
            O4 - HKLM\..\Run: [NVHotkey] rundll32.exe C:\Windows\system32\nvHotkey.dll,Start
            O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
            O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
            O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
            O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
            O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
            O4 - HKCU\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
            O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe"
            O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
            O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
            O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
            O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
            O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
            O4 - Global Startup: BTTray.lnk = ?
            O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
            O4 - Global Startup: QuickSet.lnk = ?
            O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
            O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
            O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
            O8 - Extra context menu item: Envoyer l'&image au périphérique Bluetooth... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
            O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
            O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
            O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
            O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
            O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
            O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
            O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
            O13 - Gopher Prefix:
            O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://a1540.g.akamai.net/7/1540/52/20070711/qtinstall.info.apple.com/qtactivex/qtplugin.cab
            O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
            O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
            O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
            O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:\PROGRA~1\COMMON~1\McAfee\EmProxy\emproxy.exe
            O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
            O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
            O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
            O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exe
            O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe
            O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
            O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\common files\mcafee\mna\mcnasvc.exe
            O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
            O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
            O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
            O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\redirsvc\redirsvc.exe
            O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
            O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
            O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
            O23 - Service: McAfee Privacy Service (MPS9) - McAfee, Inc. - C:\PROGRA~1\McAfee\MPS\mps.exe
            O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
            O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
            O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
            O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
            O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
            O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe
            O23 - Service: SigmaTel Audio Service (STacSV) - SigmaTel, Inc. - C:\Windows\system32\STacSV.exe
            O23 - Service: stllssvr - Unknown owner - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe (file missing)
            O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
            0
            1. OK merci,

              samgamegie62, on va faire un nettoyage de base :

              > Essaye de désinstaller RoxWatchTray s'il existe.

              > Télécharge Ccleaner, et AVG anti-spyware.
              Installe les deux programmes, fais les mises à jour puis ferme les programmes.
              0
              1. A mon avis tu devrais pas te prendre la tête pour cela puisque le problème ne se présente que lorsque Hijackthis est utilisé donc .. de plus tu as demandé à ce que la personne remette le hosts à "zéro" donc ne pas te prendre la tête sur ça (^_^) par contre réappliquer la protection hosts que propose Spybot ne serait pas un mal.

                Par contre pour en revenir à son problème, tu peux faire enlever des programmes du démarrage, arrêter quelques services, passer un aure anti-spywares du type AVG, avec quoi les fichiers temporaires sont nettoyés (?), , Windows est-il à jour (?), défragmenter le PC etc.. t'as le choix ;-)
                0
                1. merci pour votre aide .... voici le nouveau log. rien de neuf et toujours cet alert host file avec hijack this !

                  Logfile of Trend Micro HijackThis v2.0.2
                  Scan saved at 17:24:27, on 13/12/2007
                  Platform: Windows Vista (WinNT 6.00.1904)
                  MSIE: Internet Explorer v7.00 (7.00.6000.16575)
                  Boot mode: Normal

                  Running processes:
                  C:\Windows\system32\Dwm.exe
                  C:\Program Files\McAfee\MPS\mpsevh.exe
                  C:\Windows\Explorer.EXE
                  C:\Program Files\DellTPad\Apoint.exe
                  C:\Windows\OEM02Mon.exe
                  C:\Program Files\Java\jre1.6.0\bin\jusched.exe
                  c:\PROGRA~1\mcafee.com\agent\mcagent.exe
                  C:\Windows\sttray.exe
                  C:\Program Files\McAfee\MSK\mskagent.exe
                  C:\Program Files\Dell\MediaDirect\PCMService.exe
                  C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
                  C:\Windows\System32\rundll32.exe
                  C:\Windows\System32\rundll32.exe
                  C:\Program Files\DellSupport\DSAgnt.exe
                  C:\Windows\System32\rundll32.exe
                  C:\Windows\ehome\ehtray.exe
                  C:\Program Files\Windows Mail\WinMail.exe
                  C:\Program Files\MSN Messenger\msnmsgr.exe
                  C:\Windows\System32\mobsync.exe
                  C:\Program Files\Windows Sidebar\sidebar.exe
                  C:\Program Files\Dell Support Center\bin\sprtcmd.exe
                  C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe
                  C:\Program Files\DAEMON Tools\daemon.exe
                  C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
                  C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
                  C:\Program Files\Digital Line Detect\DLG.exe
                  C:\Windows\ehome\ehmsas.exe
                  C:\Program Files\Dell\QuickSet\quickset.exe
                  C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
                  C:\Windows\system32\taskeng.exe
                  C:\Program Files\DellTPad\ApMsgFwd.exe
                  C:\Program Files\Windows Sidebar\sidebar.exe
                  C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
                  C:\Program Files\DellTPad\Apntex.exe
                  C:\Program Files\DellTPad\HidFind.exe
                  C:\Windows\system32\wbem\unsecapp.exe
                  C:\Program Files\Internet Explorer\ieuser.exe
                  C:\Windows\system32\SearchFilterHost.exe
                  C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

                  R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                  R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/webhp?sourceid=navclient&hl=fr&ie=UTF-8&gws_rd=ssl
                  R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.google.fr
                  R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                  R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
                  R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
                  R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
                  R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
                  R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer fourni par Dell
                  R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
                  O1 - Hosts: ::1 localhost
                  O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
                  O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
                  O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
                  O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\program files\mcafee\virusscan\scriptcl.dll
                  O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
                  O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
                  O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll
                  O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
                  O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
                  O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
                  O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe
                  O4 - HKLM\..\Run: [OEM02Mon.exe] C:\Windows\OEM02Mon.exe
                  O4 - HKLM\..\Run: [SunJavaUpdateSched] "c:\Program Files\Java\jre1.6.0\bin\jusched.exe"
                  O4 - HKLM\..\Run: [SigmatelSysTrayApp] sttray.exe
                  O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
                  O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
                  O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
                  O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\MediaDirect\PCMService.exe"
                  O4 - HKLM\..\Run: [ECenter] c:\dell\E-Center\EULALauncher.exe
                  O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
                  O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
                  O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
                  O4 - HKLM\..\Run: [dscactivate] C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe
                  O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
                  O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
                  O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
                  O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
                  O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
                  O4 - HKLM\..\Run: [NVHotkey] rundll32.exe C:\Windows\system32\nvHotkey.dll,Start
                  O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
                  O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
                  O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
                  O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
                  O4 - HKCU\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
                  O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe"
                  O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
                  O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
                  O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
                  O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
                  O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
                  O4 - HKUS\S-1-5-21-3126691120-3250344708-3069186924-1001\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup (User 'Sandra')
                  O4 - Global Startup: BTTray.lnk = ?
                  O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
                  O4 - Global Startup: QuickSet.lnk = ?
                  O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
                  O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
                  O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
                  O8 - Extra context menu item: Envoyer l'&image au périphérique Bluetooth... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
                  O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
                  O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
                  O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
                  O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
                  O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
                  O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
                  O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
                  O13 - Gopher Prefix:
                  O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://a1540.g.akamai.net/7/1540/52/20070711/qtinstall.info.apple.com/qtactivex/qtplugin.cab
                  O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
                  O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
                  O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:\PROGRA~1\COMMON~1\McAfee\EmProxy\emproxy.exe
                  O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
                  O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
                  O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
                  O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exe
                  O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe
                  O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
                  O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\common files\mcafee\mna\mcnasvc.exe
                  O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
                  O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
                  O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
                  O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\redirsvc\redirsvc.exe
                  O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
                  O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
                  O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
                  O23 - Service: McAfee Privacy Service (MPS9) - McAfee, Inc. - C:\PROGRA~1\McAfee\MPS\mps.exe
                  O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
                  O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
                  O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
                  O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
                  O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
                  O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
                  O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
                  O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe
                  O23 - Service: SigmaTel Audio Service (STacSV) - SigmaTel, Inc. - C:\Windows\system32\STacSV.exe
                  O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
                  O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
                  0
                  1. Re,

                    Fais la minip. en mode administrateur

                    > Télécharge Runscanner (clique sur start download, attends quelques secondes puis enrigiste le fichier).
                    0
                    1. merci pour votre aide sauf que au moment de la manip j'ai un message alert qui me signal en breve que :
                      mon systeme refuse d'ecrire to the HOSTs FILEs ....... c/windows/system32/drivers/etc/hosts ............................mais que sur vista un simple clic droit puis ouvrir en tant qu'administrateur permet de resoudre le probleme mais en vain.

                      Pour le log rien de nouveau les 2 selections sont toujours present.
                      0
                      1. Ne touche pas à ça, pas utile d'y toucher

                        O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
                        O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉ
                        1
                        1. Salut,
                          Merci, j'allais rectifier,
                          J'ai cru à XP
                          --
                          0