Salut,
Copie toutes les lignes qui sont dans ce lien (Ctrl + A puis Ctrl + C) :
https://dl.dropboxusercontent.com/u/328 ... 20yapo.txt
Soit toutes ces lignes :
Script ZHPFix
OPT:O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe
G2 - GCE: Preference [User Data\Default] [inpkhndmpfcfocbhhoblalnjigklieah] Fortunitas v.1.0.0 (Désactivé) =PUP.Fortunitas
G2 - GCE: Preference [User Data\Default] [pkndmigholgfjlniaohblojbhgjbkakn] Lightning speedDial v.1.1.7, (Désactivé) = PUP.Elex
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.awesomehp.com
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page =
http://www.awesomehp.com
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.awesomehp.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.awesomehp.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.awesomehp.com
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://www.awesomehp.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
http://www.awesomehp.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.awesomehp.com
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://www.awesomehp.com
OPT:O4 - GS\QuickLaunch [Valentin]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files (x86)\Internet Explorer\iexplore.exe
http://www.awesomehp.com
OPT:O4 - GS\TaskBar [Valentin]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) -- C:\Users\Valentin\AppData\Local\Google\Chrome\Application\chrome.exe
http://www.awesomehp.com
OPT:O4 - GS\TaskBar [Valentin]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
http://www.awesomehp.com
OPT:O4 - GS\Program [Valentin]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
http://www.awesomehp.com
OPT:O4 - GS\SystemTools [Valentin]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe
http://www.awesomehp.com
O4 - HKCU\..\Run: [updat] . (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe = Infection Bot (Malware.Bot)
O4 - HKLM\..\Wow6432Node\Run: [fst_fr_50] Clé orpheline =PUA.FSTfr9
O4 - HKUS\S-1-5-21-1584828234-636392525-3382038168-1000\..\Run: [updat] . (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe = Infection Bot (Malware.Bot)
O42 - Logiciel: Google Update Helper - (.DealPly Technologies Ltd.) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =PUP.DealPly
[HKLM\Software\Wow6432Node\awesomehpSoftware]
O43 - CFD: 05/01/2014 - 15:24:22 - [0,110] ----D C:\ProgramData\Websteroids =PUP.TubeDimmer
O43 - CFD: 07/01/2014 - 19:10:10 - [1,224] ----D C:\Users\Valentin\AppData\Local\genienext = PUP.NextLive
O43 - CFD: 04/09/2013 - 19:34:18 - [0] ----D C:\Users\Valentin\AppData\Local\Software = Infection PUP (Adware.Boxore)
OPT:O68 - StartMenuInternet: Google Chrome Google Chrome[HKLM\..\Shell\open\Command] (...) -- c:\users\valentin\appdata\local\google\chrome\application\chrome.exe
http://www.awesomehp.com
OPT:O68 - StartMenuInternet: IEXPLORE.EXE Internet Explorer[HKLM\..\Shell\open\Command] (...) -- c:\program files\internet explorer\iexplore.exe"
http://www.awesomehp.com
[MD5.32DCED18FFFEA0035E4FA975CA0AE8BE] [SPRF][22/04/2013] (.The Software Group - Software Update Setup.) -- C:\Users\Valentin\AppData\Local\Temp\BoxoreInstaller.exe [620656] =Adware.Boxore
[MD5.AF033652AF97490078101D73C9E63736] [SPRF][13/12/2013] (.Skytech Co., Ltd. - Skytech.) -- C:\Users\Valentin\AppData\Local\Temp\epom3_nationzoom_20131128171919.exe [564888] =Hijacker.NationZoom
[MD5.64AA04695E70BA743150B36C98C61181] [SPRF][31/12/2012] (...) -- C:\Users\Valentin\AppData\Local\Temp\MyClaroTB.exe [887960] = PUP.ClaroSearch*
[MD5.3C74C26999F2060BC6302448F173A342] [SPRF][28/08/2013] (.Babylon Ltd. - Uninstaller Application.) -- C:\Users\Valentin\AppData\Local\Temp\uninst1.exe [340464] =PUP.Babylon
O87 - FAEL: "{1287BEED-81BE-42AA-9D20-90538778FC59}" |In - Public - P6 - TRUE | .(...) -- C:\ProgramData\eSafe\eGdpSvc.exe (.not file.) =PUP.eSafeSecurity
[HKLM\Software\Google\Chrome\Extensions\inpkhndmpfcfocbhhoblalnjigklieah] =PUP.Fortunitas^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}] =PUP.DealPly^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375] =PUP.Tarma
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5] =PUP.Tarma
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\464AA55239C100F32AF2D438EDDC0F47] =Adware.IMBooster
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5652BA3D5FB98AE31B337BF0AF939856] =Adware.IMBooster
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EB95E1AFCBABE3DB9ECCC669B99494] =Adware.IMBooster
[HKLM\Software\Microsoft\Tracing\updateBrowseFox_RASAPI32] =Adware.BrowseFox
[HKLM\Software\Microsoft\Tracing\updateBrowseFox_RASMANCS] =Adware.BrowseFox
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA0054A5AB3EFFE4CB5660E44A1E7DCC] =Adware.Boxore^
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]:fst_fr_50 =PUA.FSTfr9^
C:\Users\Valentin\AppData\Local\Google\Chrome\User Data\Default\Extensions\inpkhndmpfcfocbhhoblalnjigklieah =PUP.Fortunitas^
C:\ProgramData\Websteroids =PUP.TubeDimmer^
C:\Users\Valentin\AppData\Local\Software =Adware.Boxore
[HKLM\Software\Wow6432Node\awesomehpSoftware]
C:\Users\Valentin\AppData\Local\Temp\BoxoreInstaller.exe =Adware.Boxore^
C:\Users\Valentin\AppData\Local\Temp\epom3_nationzoom_20131128171919.exe =Hijacker.NationZoom^
C:\Users\Valentin\AppData\Local\Temp\uninst1.exe =PUP.Babylon^
C:\Users\Valentin\AppData\Local\Temp\MyClaroTB.exe =PUP.ClaroSearch
O43 - CFD: 04/09/2013 - 19:58:41 - [0,132] ----D C:\Users\Valentin\AppData\Local\avgchrome
O2 - BHO: Bing Bar Helper [64Bits] - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} . (...) -- "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (.not file.) =Toolbar.Bing
O2 - BHO: (no name) [64Bits] - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} Clé orpheline = Toolbar.Avast
O42 - Logiciel: Bing Bar - (.Microsoft Corporation.) [HKLM][64Bits] -- {B4089055-D468-45A4-A6BA-5A138DD715FC} =Toolbar.Bing
[HKLM\Software\Wow6432Node\ValueApps] =Toolbar.Conduit
O43 - CFD: 22/05/2013 - 09:30:05 - [23,535] -SH-D C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} = Toolbar.TuneUp
O69 - SBI: SearchScopes [HKCU] {0BD78B53-7CB4-48F6-AE48-7676CC7E63FC} - (Ask Search) -
http://websearch.ask.com =Toolbar.Ask
O69 - SBI: SearchScopes [HKCU] {A096FD9F-0225-48B5-9317-C8481EA553F1} - (eBay) -
http://rover.ebay.com =Toolbar.eBay
[MD5.CE755676AE6D27A1EFEEFB0F3C70A929] [SPRF][04/04/2013] (.Ask.com - AskStub Application.) -- C:\Users\Valentin\AppData\Local\Temp\APNStub.exe [358600]
[MD5.B28C334C03CEE7C5E829C43AE75DAE5A] [SPRF][28/01/2013] (.Ask.com - AskIC Dynamic Link Library.) -- C:\Users\Valentin\AppData\Local\Temp\AskSLib.dll [248008]
O90 - PUC: "5509804B864D4A546AABA531D87D51CF" . (.Bing Bar.) -- C:\Windows\Installer\{B4089055-D468-45A4-A6BA-5A138DD715FC}\icon_installer_ico =Toolbar.Bing
SS - | Auto 21/10/2011 196176 | (BBSvc) . (.Microsoft Corporation..) - C:\Program Files (x86)\Microsoft\BingBar\BBSvc.exe
SR - | Auto 13/10/2011 249648 | (BBUpdate) . (.Microsoft Corporation.) - C:\Program Files (x86)\Microsoft\BingBar\SeaPort.exe
[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D2CE3E00-F94A-4740-988E-03DC2F38C34F}] =Toolbar.Bing^
[HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{B4089055-D468-45A4-A6BA-5A138DD715FC}] =Toolbar.Bing^
[HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{B4089055-D468-45A4-A6BA-5A138DD715FC}] =Toolbar.Agent
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C9A6357B-25CC-4BCF-96C1-78736985D412}] =Toolbar.Orange
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E] =Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6] =Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852] =Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0] =Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA] =Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96] =Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59] =Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC] =Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA] =Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E] =Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF] =Toolbar.Ask
[HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E] =Toolbar.Ask
[HKLM\Software\Wow6432Node\Microsoft\Tracing\BingBar_RASAPI32] =Toolbar.Bing
[HKLM\Software\Wow6432Node\ValueApps] =Toolbar.Conduit^
O4 - GS\Accessories [Valentin]: Run.lnk - Clé orpheline = Orphean Key not necessary
O61 - LFC: 28/01/2014 - 21:02:40 ---A- . (...) -- C:\Users\Valentin\AppData\Local\Temp\Microsoft .NET Framework 4.5.1 Setup_20140128_191702978-MSI_netfx_Full_GDR_x64.msi.txt [7768348] = Temporary file not necessary
O61 - LFC: 28/01/2014 - 21:02:40 ---A- . (...) -- C:\Users\Valentin\AppData\Local\Temp\Microsoft .NET Framework 4.5.1 Setup_20140128_191702978-{4B5F58F7-C7D1-3CE3-9B37-B657F0852643}-UninstallProduct.txt [1524620] = Temporary file not necessary
O61 - LFC: 28/01/2014 - 21:02:41 ---A- . (...) -- C:\Users\Valentin\AppData\Local\Temp\Microsoft .NET Framework 4.5.1 Setup_20140128_191702978.html [1046378] = Temporary file not necessary
O61 - LFC: 28/01/2014 - 21:02:43 ---A- . (.Sony Mobile Communications.) -- C:\Users\Valentin\AppData\Local\Temp\Sony\Sony PC Companion\AutoUpdate\Sony PC Companion_2.10.188_NetStorage.exe [20236976] = Temporary file not necessary
[MD5.9F81FEA4D9046DBC6566CF9233388EE6] [SPRF][07/01/2014] (.Setup © - Setup.) -- C:\Users\Valentin\AppData\Local\Temp\56415uninstall.exe [306688] = Temporary file not necessary
[MD5.858D895AD40DE9779E78C39A116F9553] [SPRF][15/12/2013] (...) -- C:\Users\Valentin\AppData\Local\Temp\BackupSetup.exe [10355400] = Temporary file not necessary
[MD5.C13E3F6FF940141F86EE4C47CB9C4A16] [SPRF][20/12/2012] (.Pas de propriétaire - MachineIdCreator Application.) -- C:\Users\Valentin\AppData\Local\Temp\MachineIdCreator.exe [163936] = Temporary file not necessary
[MD5.E7EA77F76D8D443E4CEAD2E46A77B06B] [SPRF][20/12/2012] (.Pas de propriétaire - AVG Installer.) -- C:\Users\Valentin\AppData\Local\Temp\oi_{23A5A4AE-157E-4710-A3C0-268A9BF51E18}.exe [2985568] = Temporary file not necessary
[MD5.47025DD5CBA8B43E9D26C960FF5B32A7] [SPRF][23/10/2013] (...) -- C:\Users\Valentin\AppData\Local\Temp\Quarantine.exe [344355] = Temporary file not necessary
[MD5.A082E5473B2A9A4D846ED7DDF637AC76] [SPRF][26/12/2013] (.Microsoft Corporation - WinSock2 reorder service providers.) -- C:\Users\Valentin\AppData\Local\Temp\SpOrder.dll [8704] = Temporary file not necessary
[MD5.5405413FFF79B8D9C747AA900F60F082] [SPRF][07/01/2014] (...) -- C:\Users\Valentin\AppData\Local\Temp\Sqlite3.dll [599419] = Temporary file not necessary
[MD5.17474B8044FEC8257531E97954516911] [SPRF][01/08/2011] (.Pas de propriétaire - WinPcap 4.1.2 installer.) -- C:\Users\Valentin\AppData\Local\Temp\winpcap-nmap-4.12.exe [428664] = Temporary file not necessary
O87 - FAEL: "{6D66CDD2-8391-4BA2-B0A9-A4B879EC98C4}" |In - Public - P6 - TRUE | .(...) -- D:\fscommand\CKSocketServer.exe (.not file.) = Fichier absent
O87 - FAEL: "{2C6A1711-8B77-4F10-88D9-D4B8A0EF6DBD}" |In - Public - P17 - TRUE | .(...) -- D:\fscommand\CKSocketServer.exe (.not file.) = Fichier absent
EmptyPrefetch
EmptyTemp
EmptyFlash
EmptyCLSID
SysRestore
Gabriel.