Sélectionnes et copies les lignes suivantes: O3 - Toolbar\WebBrowser: (no name) [64Bits] - [HKCU]{1392B8D2-5C05-419F-A8F6-B9F15A596612} Clé orpheline => Conduit Freecorder Toolbar O43 - CFD: 06/10/2012 - 20:36:51 - [0,337] ----D C:\Program Files (x86)\Freecorder Toolbar => Toolbar.Conduit O43 - CFD: 22/09/2012 - 18:09:37 - [0] -SH-D C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} => Toolbar.TuneUp O69 - SBI: prefs.js [Francis - f1k4y5uk.default] user_pref("weboftrust.search.ask.display", "Ask.com Web Search"); => Toolbar.Ask O69 - SBI: prefs.js [Francis - tn5szwwe.Utilisateur par défaut] user_pref("weboftrust.search.ask.display", "Ask.com Web Search"); => Toolbar.Ask O69 - SBI: SearchScopes [HKCU] {4D23B9DA-7A36-4A74-B2B5-414162A2301A} - (Ask Search) - http://websearch.ask.com O69 - SBI: SearchScopes [HKCU] {F0080C0C-56D3-4B99-ACA8-65347EAE88AE} - (Freecorder Customized Web Search) - http://search.conduit.com [HKLM\Software\Microsoft\Internet Explorer\extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}] => Toolbar.Skype [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}] => Toolbar.TuneUp C:\Program Files (x86)\Freecorder Toolbar => Toolbar.Conduit O17 - HKLM\System\CCS\Services\Tcpip\..\{2283B766-EA05-4E0F-884E-275F690207EB}: NameServer = 178.33.41.181,88.191.223.122 => Infection PUP (PUP.Penwes) O17 - HKLM\System\CS1\Services\Tcpip\..\{2283B766-EA05-4E0F-884E-275F690207EB}: NameServer = 178.33.41.181,88.191.223.122 => Infection PUP (PUP.Penwes) O17 - HKLM\System\CS2\Services\Tcpip\..\{2283B766-EA05-4E0F-884E-275F690207EB}: NameServer = 178.33.41.181,88.191.223.122 => Infection PUP (PUP.Penwes) [MD5.00000000000000000000000000000000] [APT] [PenWes] (...) -- C:\Program Files (x86)\PenWes\penwes.exe (.not file.) [0] => Infection PUP (PUP.Penwes) O42 - Logiciel: PenWes - (...) [HKLM][64Bits] -- Penwes => Infection PUP (PUP.Penwes) M0 - MFSP: prefs.js [Francis - f1k4y5uk.default] http://mysearch.avg.com M0 - MFSP: prefs.js [Francis - f1k4y5uk.default] http://securedsearch2.lavasoft.com M0 - MFSP: prefs.js [Francis - tn5szwwe.Utilisateur par défaut] http://securedsearch2.lavasoft.com M2 - MFEP: prefs.js [Francis - tn5szwwe.Utilisateur par défaut\{132E58DE-22BF-44CA-A061-7FCE1E8BA1EC}] [] Freecorder 6 v2.1.9 (..) R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=localhost:44413 O4 - GS\Desktop [Public]: Anti-Hacks.lnk . (...) -- C:\Program Files (x86)\Anti-Hacks\AntiHacks.exe O4 - GS\QuickLaunch [Francis]: Anti-Hacks.lnk . (...) -- C:\Program Files (x86)\Anti-Hacks\AntiHacks.exe [MD5.00000000000000000000000000000000] [APT] [PenWes] (...) -- C:\Program Files (x86)\PenWes\penwes.exe (.not file.) [0] => Infection PUP (PUP.Penwes) [MD5.5A8270C8188A43C08EE422F8CC577A9E] [APT] [{C3BF1DC6-A17E-48E8-86E1-65B3F27EDFD1}] (.YouSendIt.) -- C:\Users\Francis\AppData\Roaming\YouSendIt\Downloads\YouSendIt_Express.exe [5201240] [HKLM\SYSTEM\CurrentControlSet\Services\vToolbarUpdater15.2.0] [HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\Penwes] [HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\Search Protection] [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Penwes] [HKCU\Software\AVG SafeGuard toolbar] [HKLM\Software\Wow6432Node\AVG SafeGuard toolbar] [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6B34ACCF-1B63-4E1A-8633-461917C75544}] [HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{6B34ACCF-1B63-4E1A-8633-461917C75544}] [HKLM\Software\Wow6432Node\Google\Chrome\Extensions\oejkcgajlodefenbbjdnaiahmbnnoole] C:\Users\Francis\AppData\Roaming\Mozilla\Firefox\Profiles\tn5szwwe.Utilisateur par défaut\{132E58DE-22BF-44CA-A061-7FCE1E8BA1EC} C:\Program Files (x86)\Freecorder 6 lance [color=#996633]zhpfix[/color] tu colles les lignes avec ce bouton [img]http://img15.hostingpics.net/pics/487000Capturezphrouge.png[/img] tu supprimes avec le bouton GO héberge le rapport sur www.cjoint.com [g] c:\zhp\zhpfix[r1].txt[/g] @++