J'ai suivi à la lettre ta procédure, tout c'est très bien passé. Mise en place de Defogger, puis lancement de Combofix.
Voici le rapport obtenu :
ComboFix 11-12-29.04 - Benoist 29/12/2011 17:58:39.1.1 - x86
Microsoft® Windows Vista(TM) Édition Familiale Basique 6.0.6001.1.1252.33.1036.18.2038.1174 [GMT 1:00]
Lancé depuis: c:\users\Benoist\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\SGPSA
c:\program files\SGPSA\BHO.dll
c:\program files\SGPSA\ie3sh.exe
c:\program files\SGPSA\SearchAssistant.dll
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\NkvMon.exe.lnk
c:\programdata\Solt Lake Software
c:\programdata\Solt Lake Software\Pro Antispyware 2009\20081209211332309.log
c:\programdata\Solt Lake Software\Pro Antispyware 2009\LOG\20081208113307332.log
c:\programdata\Solt Lake Software\Pro Antispyware 2009\LOG\20081208113405107.log
c:\programdata\Solt Lake Software\Pro Antispyware 2009\LOG\20081208191241898.log
c:\programdata\Solt Lake Software\Pro Antispyware 2009\LOG\20081209193606038.log
c:\users\Benoist\AppData\Local\assembly\tmp
.
.
((((((((((((((((((((((((((((( Fichiers créés du 2011-11-28 au 2011-12-29 ))))))))))))))))))))))))))))))))))))
.
.
2011-12-29 17:05 . 2011-12-29 17:05 -------- d-----w- c:\users\Benoist\AppData\Local\temp
2011-12-29 17:05 . 2011-12-29 17:05 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-12-29 08:58 . 2011-12-29 08:58 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-12-29 08:58 . 2011-08-31 16:00 22216 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-12-05 19:48 . 2011-12-05 19:48 -------- d-----w- c:\program files\searchweb
2011-12-05 19:48 . 2011-12-05 19:48 1492 ----a-w- C:\user.js
2011-12-05 19:48 . 2011-12-05 19:48 -------- d-----w- c:\users\Benoist\AppData\Local\Babylon
2011-12-05 19:48 . 2011-12-05 19:48 -------- d-----w- c:\programdata\Babylon
.
.
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-11-28 18:01 . 2010-12-27 10:47 41184 ----a-w- c:\windows\avastSS.scr
2011-11-28 18:01 . 2010-03-01 22:27 199816 ----a-w- c:\windows\system32\aswBoot.exe
2011-11-28 17:53 . 2011-03-02 13:53 435032 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2011-11-28 17:53 . 2010-03-01 22:28 314456 ----a-w- c:\windows\system32\drivers\aswSP.sys
2011-11-28 17:52 . 2010-03-01 22:28 34392 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2011-11-28 17:52 . 2010-03-01 22:28 52952 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2011-11-28 17:52 . 2010-03-01 22:28 55128 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2011-11-28 17:51 . 2010-03-01 22:28 20568 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
.
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-11-28 18:01 122512 ----a-w- c:\program files\Alwil Software\Avast5\ashShell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2008-01-21 1233920]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2008-01-21 202240]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2007-06-06 142104]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2007-06-06 154392]
"Persistence"="c:\windows\system32\igfxpers.exe" [2007-06-06 138008]
"RtHDVCpl"="RtHDVCpl.exe" [2007-07-06 4669440]
"HotkeyApp"="c:\program files\Launch Manager\HotkeyApp.exe" [2007-07-26 192512]
"SynTPStart"="c:\program files\Synaptics\SynTP\SynTPStart.exe" [2007-08-17 102400]
"NeroFilterCheck"="c:\program files\Common Files\Nero\Lib\NeroCheck.exe" [2007-03-01 153136]
"FSCRecovery"="c:\program files\Fujitsu Siemens Computers\Fujitsu Siemens Computers Recovery\FSCRecoveryReminder.exe" [2008-05-08 268096]
"Google EULA Launcher"="c:\program files\Google\Google EULA\GoogleEULALauncher.exe" [2008-05-28 20480]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-10-15 39792]
"VX1000"="c:\windows\vVX1000.exe" [2009-06-26 757248]
"ArcSoft Connection Service"="c:\program files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe" [2010-10-27 207424]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2007-12-11 286720]
"Nikon Transfer Monitor"="c:\program files\Common Files\Nikon\Monitor\NkMonitor.exe" [2009-09-15 479232]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]
"autoupdater"="c:\users\Benoist\AppData\Roaming\PCtuto\UpdatePCTuto\autoupdater.exe" [2010-08-17 659456]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"fsc-reg"="c:\programdata\fsc-reg\fscreg.exe" [2007-11-08 533264]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux7"=wdmaud.drv
.
R3 VMUVC;Vimicro Camera Service VMUVC;c:\windows\system32\Drivers\VMUVC.sys [x]
R3 vvftUVC;Vimicro Camera Filter Service VMUVC;c:\windows\system32\drivers\vvftUVC.sys [x]
R4 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-01-25 691696]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2011-11-28 55128]
S3 WisLMSvc;WisLMSvc;c:\program files\Launch Manager\WisLMSvc.exe [2006-11-17 118784]
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc
.
Contenu du dossier 'Tâches planifiées'
.
2011-12-20 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-168262567-1507477406-2085659486-1000Core.job
- c:\users\Benoist\AppData\Local\Google\Update\GoogleUpdate.exe [2011-07-25 16:33]
.
2011-12-29 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-168262567-1507477406-2085659486-1000UA.job
- c:\users\Benoist\AppData\Local\Google\Update\GoogleUpdate.exe [2011-07-25 16:33]
.
2011-12-29 c:\windows\Tasks\User_Feed_Synchronization-{B5B78F84-6525-4ACB-9C2B-17EC4B878AA8}.job
- c:\windows\system32\msfeedssync.exe [2008-01-21 02:34]
.
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.google.fr/
mStart Page = hxxp://www.google.com/ig/redirectdomain?brand=FUJD&bmod=FUJD
uInternet Settings,ProxyOverride = <local>
IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.1.1 192.168.1.1
DPF: {1ABA5FAC-1417-422B-BA82-45C35E2C908B} - hxxp://kitchenplanner.ikea.com/fr/Core/Player/2020PlayerAX_IKEA_Win32.cab
DPF: {FAB2BB9D-91E9-457E-9D42-75A7FCCBBC00} - hxxp://batignolles.nexity-logement.com/online/plugin/DFusionHomeWebPlugIn.InstallerFull.exe
.
- - - - ORPHELINS SUPPRIMES - - - -
.
HKLM-Run-FBSSA - c:\program files\SGPSA\ie3sh.exe
HKLM-Run-Tuto4pc - (no file)
HKLM-Run-PCTuto - (no file)
HKU-Default-Run-Picasa Media Detector - c:\program files\Picasa2\PicasaMediaDetector.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2011-12-29 18:05
Windows 6.0.6001 Service Pack 1 NTFS
.
Recherche de processus cachés ...
.
Recherche d'éléments en démarrage automatique cachés ...
.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
FBSSA = c:\program files\SGPSA\ie3sh.exe?9-C31C643DBDE9}????????????ercher (Navigateur de Recherche Rapide)
.
Recherche de fichiers cachés ...
.
Scan terminé avec succès
Fichiers cachés: 0
.
**************************************************************************
.
Heure de fin: 2011-12-29 18:08:48
ComboFix-quarantined-files.txt 2011-12-29 17:08
.
Avant-CF: 3 843 407 872 octets libres
Après-CF: 3 662 446 592 octets libres
.
- - End Of File - - C302FF06EEFAB0A959406D7A21376959
Merci beaucoup pour ton aide, pour le moment je n'ai plus de fenêtre DOS qui s'ouvre et me lance internet explorer. ça a l'air d'être bon :)