Sélectionnes et copies les lignes suivantes Script ZHPFix HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\GoogleToolbarManager_C8CBFED7F00D3A8C_RASAPI32 =>Toolbar.Google HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\GoogleToolbarManager_C8CBFED7F00D3A8C_RASMANCS =>Toolbar.Google HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\GoogleToolbarNotifier_RASAPI32 =>Toolbar.Google [HKLM\Software\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}] =>Toolbar.Ask [MD5.99589CCC5DEA9137ECAB2CE04E6A9555] - (...) -- C:\Users\Scotty\AppData\Roaming\cacaoweb\cacaoweb.exe [497664] [PID.6920] =>PUP.CacaoWeb M3 - MFPP: Plugins - [Scotty] -- C:\Users\Scotty\AppData\Roaming\Mozilla\Firefox\Profiles\leq1qhpb.default\searchplugins\iminent.xml =>Adware.IMBooster M2 - MFEP: prefs.js [Scotty - leq1qhpb.default\cacaoweb@cacaoweb.org] [] cacaoweb v1.0.34 (..) =>PUP.CacaoWeb O4 - HKCU\..\Run: [cacaoweb] . (...) -- C:\Users\Scotty\AppData\Roaming\cacaoweb\cacaoweb.exe =>PUP.CacaoWeb O4 - HKUS\S-1-5-21-4203748099-4097082243-3925798564-1001\..\Run: [cacaoweb] . (...) -- C:\Users\Scotty\AppData\Roaming\cacaoweb\cacaoweb.exe =>PUP.CacaoWeb [MD5.00000000000000000000000000000000] [APT] [AutoKMS] (...) -- C:\windows\AutoKMS\AutoKMS.exe (.not file.) [0] =>Trojan.Keygen O39 - APT: AutoKMS - (...) -- C:\Windows\Tasks\AutoKMS.job [268] =>Trojan.Keygen O39 - APT: AutoKMS - (...) -- C:\Windows\System32\Tasks\AutoKMS [268] =>Trojan.Keygen [HKCU\Software\cacaoweb] =>PUP.CacaoWeb O43 - CFD: 03/02/2014 - 13:04:34 - [0] ----D C:\Program Files (x86)\Common Files\Umbrella O43 - CFD: 23/05/2014 - 20:53:04 - [] ----D C:\Users\Scotty\AppData\Roaming\cacaoweb =>PUP.CacaoWeb O45 - LFCP:[MD5.E7BC54FFDA87A35257403D7DBF32E6D2] - 19/05/2014 - 13:46:08 ---A- - C:\Windows\Prefetch\CACAOWEB.EXE-44B1244D.pf =>PUP.CacaoWeb O61 - LFC: 19/05/2014 - 22:09:15 ---A- . (...) -- C:\Users\Scotty\AppData\Roaming\cacaoweb\cacaoweb.exe [497664] =>PUP.CacaoWeb [MD5.DAAB7C794B821EC67E44E3652EB2E904] [SPRF][02/03/2014] (...) -- C:\Users\Scotty\Desktop\keygen.exe [74240] HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32 =>PUP.AdvancedSystemProtector HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS =>PUP.AdvancedSystemProtector HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\bi_client_RASAPI32 =>Adware.MegaSearch HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\bi_client_RASMANCS =>Adware.MegaSearch HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\smt_ar_dosearches_RASAPI32 =>PUP.DoSearches HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\smt_ar_dosearches_RASMANCS =>PUP.DoSearches HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateBizzybolt_RASAPI32 =>PUP.Bizzybolt HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\updateBizzybolt_RASMANCS =>PUP.Bizzybolt [HKCU\Software\cacaoweb] =>PUP.CacaoWeb [HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}] =>PUP.OptimizerPro [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:cacaoweb =>PUP.CacaoWeb^ C:\Users\Scotty\AppData\Roaming\Mozilla\Firefox\Profiles\leq1qhpb.default\extensions\cacaoweb@cacaoweb.org =>PUP.CacaoWeb^ C:\Users\Scotty\AppData\Roaming\cacaoweb =>PUP.CacaoWeb^ C:\Program Files (x86)\Optimizer Pro =>PUP.OptimizerPro C:\Program Files (x86)\Common Files\Umbrella =>Adware.IMBooster C:\Users\Scotty\AppData\Roaming\cacaoweb\cacaoweb.exe =>PUP.CacaoWeb^ C:\Windows\Tasks\AutoKMS.job =>Trojan.Keygen^ C:\Windows\System32\Tasks\AutoKMS =>Trojan.Keygen^ [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified FirewallRaz EmptyFlash EmptyTemp ShortcutFix Lance ZHPFIX Cliques sur configurer puis sur le bouton rouge en bas a gauche personnalisation ferme le cadre qui apparait avec ok puis tu colles les lignes dans le cadre blanc tu supprimes avec le bouton GO copies colles[g] c:\zhp\zhpfix[r1].txt[/g] ou C:\Program files\ZHPDiag\ZHPFixReport.txt @++