sélectionnes et copies les lignes ci dessous Script ZHPFix O4 - GS\SendTo [cora]: AnySend.lnk . (...) -- C:\Program Files (x86)\AnySend\AnySendUI.exe (.not file.) =>PUP.ASPackage O4 - HKLM\..\Wow6432Node\Run: [fst_fr_77] Clé orpheline =>Adware.FreeSoftToday [MD5.00000000000000000000000000000000] [APT] [{880C5CDB-0B28-4513-AA28-736F3A6166C2}] (...) -- C:\Users\cora\AppData\Roaming\oursurfing\UninstallManager.exe (.not file.) [0] =>Hijacker.OurSurfing O43 - CFD: 17/05/2015 - 00:22:27 - [0] ----D C:\Program Files (x86)\mbot_fr_624 =>PUP.CrossRider O45 - LFCP:[MD5.AFC3DF06C980E65C7010774F0098FBC3] - 29/04/2015 - 12:24:54 ---A- - C:\Windows\Prefetch\CACAOWEB.EXE-52D9655D.pf =>PUP.CacaoWeb O53 - SMSR:HKLM\...\startupreg\Boxore Client [Key] . (...) -- C:\Program Files (x86)\Boxore\Boxore Client\boxore.exe (.not file.) =>Adware.Boxore O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (...) -- C:\Users\cora\AppData\Local\Google\Chrome\Application\chrome.exe" http://www.oursurfing.com =>Hijacker.OurSurfing [MD5.854A87AFC88107DD499487FD6291611F] [WIS][07/07/2014] (.The Software Group - Software Update Helper.) -- C:\Windows\Installer\340533.msi [45056] =>Adware.Boxore [MD5.8EEC8601345B12AE764787C3C0824EF6] [WIS][07/07/2014] (.Linkury Inc. - Yahoo Community Smartbar (by Linkury).) -- C:\Windows\Installer\36d9b0.msi [10207232] =>Hijacker.SmartBar [MD5.E32A1A1B9CC600CF062E0E429925841A] [WIS][16/08/2013] (.Boxore OU - Boxore Client Installer.) -- C:\Windows\Installer\fac82.msi [1974272] =>Adware.Boxore [HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\Boxore Client] =>Adware.Boxore^ [HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{11111111-1111-1111-1111-110411381182}] =>PUP.CrossRider [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:fst_fr_77 =>Adware.FreeSoftToday^ C:\Program Files (x86)\mbot_fr_624 =>PUP.CrossRider^ C:\Program Files (x86)\Software =>Adware.Boxore C:\Users\cora\AppData\Local\Software =>Adware.Boxore C:\Windows\Installer\340533.msi =>Adware.Boxore^ C:\Windows\Installer\36d9b0.msi =>Hijacker.SmartBar^ C:\Windows\Installer\fac82.msi =>Adware.Boxore^ C:\Users\cora\Downloads\cacaoweb.exe =>PUP.CacaoWeb [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified C:\Users\cora\AppData\Roaming\Mozilla\Firefox\Profiles\pmFYo0GH.default\prefs.js (.not file.) O4 - HKLM\..\Wow6432Node\Run: [iTunesHelper] . (.Apple Inc. - iTunesHelper.) -- C:\Program Files (x86)\iTunes\iTunesHelper.exe [HKLM\Software\Wow6432Node\SuperClick_1.10.0.16] O43 - CFD: 17/05/2015 - 00:28:43 - [] ----D C:\Users\cora\AppData\Roaming\2F3C056B-1431815279-E011-8242-B870F4ACA121 O43 - CFD: 17/05/2015 - 00:29:51 - [] ----D C:\Users\cora\AppData\Roaming\ilujixck O61 - LFC: 16/05/2015 - 01:08:52 ---A- . (...) -- C:\Users\cora\AppData\Roaming\2F3C056B-1431815279-E011-8242-B870F4ACA121\Uninstall.exe [78377] O61 - LFC: 16/05/2015 - 01:08:52 ---A- . (...) -- C:\Users\cora\AppData\Roaming\2F3C056B-1431815279-E011-8242-B870F4ACA121\rnsg7A51.exe [55296] O61 - LFC: 16/05/2015 - 01:09:03 ---A- . (...) -- C:\Users\cora\AppData\Roaming\ilujixck\encecal.dll [0] O61 - LFC: 16/05/2015 - 01:09:03 ---A- . (...) -- C:\Users\cora\AppData\Roaming\ilujixck\ticyver.dll [168960] [MD5.692FA89A444912D77F376A30F49C6469] [SPRF][30/06/2014] (...) -- C:\Users\cora\AppData\Roaming\DOK52P4Q3J.dat [36] SR - | Auto 16/05/2015 396288 | (lurelide) . (...) - C:\Users\cora\AppData\Roaming\2F3C056B-1431815279-E011-8242-B870F4ACA121\hnsvAFB8.tmp SR - | Auto 16/05/2015 488960 | (lyfibovo) . (...) - C:\Users\cora\AppData\Roaming\2F3C056B-1431815279-E011-8242-B870F4ACA121\nsf2C9C.tmpfs SR - | Auto 16/05/2015 235520 | (sudogiqi) . (...) - C:\Users\cora\AppData\Roaming\2F3C056B-1431815279-E011-8242-B870F4ACA121\jnsa852D.tmp SysRestore FirewallRaz EmptyFlash EmptyPrefetch EmptyCLSID Emptytemp ShortcutFix Lance ZHPFIX Cliques sur importer colles les lignes dans le cadre blanc tu supprimes avec le bouton GO copies colles le contenu du fichier zhpfixreport qui est sur ton bureau ou C:\Users\....\AppData\Roaming\ZHP\ZHPFix[R1].txt @++