bonjour a tous
suite à ton rapport "papycool67"
* Copie le tout le texte présent dans l'encadré ci-dessous (tu le sélectionnes avec ta souris / Clique droit dessus et choisis "copier" ou fait Ctrl+C)
P2 - FPN: [HKLM] [@microsoft.com/VirtualEarth3D,version=4.0] - (...) -- (.not file.)
R3 - URLSearchHook: (no name) [64Bits] - {b80f591e-fe9a-46cf-a13e-180377240586} . (...) (No version) -- (.not file.)
R3 - URLSearchHook: (no name) [64Bits] - {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} . (...) (No version) -- (.not file.)
O2 - BHO: (no name) [64Bits] - {b80f591e-fe9a-46cf-a13e-180377240586} Clé orpheline
O4 - HKCU\..\Run: [KiesTrayAgent] Clé orpheline
[MD5.00000000000000000000000000000000] [APT] [{0AAED856-AD7D-4B00-98B0-0967EC94B186}] (...) -- C:\Program Files (x86)\FILEminimizer Pictures\FILEminimizer.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{23103478-9C36-49C1-A4A8-BC6B710E37C3}] (...) -- C:\Program Files (x86)\AllMedia Grabber\AllGrab.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{2CB58649-440F-4FD3-A60D-BDB4C60E279F}] (...) -- C:\Program Files (x86)\FILEminimizer Pictures\FILEminimizer.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{2D43C2E8-94D6-41A9-BE8A-707CC84214E5}] (...) -- D:\photo.exe (.not file
[MD5.00000000000000000000000000000000] [APT] [{2E9ADA81-9773-4B1E-878E-40DE3D680412}] (...) -- C:\Users\Jean-Paul\AppData\Local\Temp\Temp1_moviexone.zip\moviexone.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{355C1BE2-D0A9-4EBF-9D7D-26F664C76ACD}] (...) -- C:\Users\Jean-Paul\AppData\Local\Google\Chrome\Application\chrome.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{37F77EC1-8A06-4F48-B5C2-3996DEB1AF6A}] (...) -- C:\Program Files (x86)\FILEminimizer Pictures\FILEminimizer.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{38EDD8D5-F659-401E-8DDA-4E2D5D6BCC24}] (...) -- C:\Program Files (x86)\FILEminimizer Pictures\FILEminimizer.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{4707A46D-7129-4AD8-9BFD-FD2A891743DA}] (...) -- D:\photo.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{79CC4056-3700-4414-A10F-9DDC64081DE5}] (...) -- D:\photo.exe (.not file.)
[MD5.00000000000000000000000000000000] [APT] [{985D7692-ECB2-466C-A9F8-B587430C0F7B}] (...) -- C:\Program Files (x86)\FILEminimizer Pictures\FILEminimizer.exe (.not file.)
[HKCU\Software\AppDataLow\Software\Elf_1.13]
[HKCU\Software\AppDataLow\Software\PriceGong]
[HKCU\Software\FissaSearch]
[HKCU\Software\OfferBox]
[HKCU\Software\Spointer]
[HKCU\Software\WideStream]
[HKLM\Software\Conduit]
[HKLM\Software\Elf_1.13]
[HKLM\Software\OfferBox]
O43 - CFD: 30/01/2011 - 18:08:18 - [604] ----D- C:\Users\Jean-Paul\AppData\Roaming\widestream
O43 - CFD: 20/07/2011 - 23:48:20 - [0] ----D- C:\Users\Jean-Paul\AppData\Local\Conduit
O43 - CFD: 30/01/2011 - 18:32:06 - [173481] ----D- C:\Users\Jean-Paul\AppData\Local\widestream6 Air
O53 - SMSR:HKLM\...\startupreg\CherryKeyMan [Key] . (...) -- C:\Program Files (x86)\Cherry\KeyMan\KeyMan.exe (.not file.)
[HKLM\Software\Classes\Conduit.Engine]
[HKLM\Software\Wow6432Node\Classes\Conduit.Engine]
[HKLM\Software\Classes\pdfforge.DllInfo]
[HKLM\Software\Wow6432Node\Classes\pdfforge.DllInfo]
[HKLM\Software\Classes\pdfforge.PDF.PDF]
[HKLM\Software\Wow6432Node\Classes\pdfforge.PDF.PDF]
[HKLM\Software\Classes\pdfforge.PDF.PDFEncryptor]
[HKLM\Software\Wow6432Node\Classes\pdfforge.PDF.PDFEncryptor]
[HKLM\Software\Classes\pdfforge.PDF.PDFLine]
[HKLM\Software\Wow6432Node\Classes\pdfforge.PDF.PDFLine]
[HKLM\Software\Classes\pdfforge.PDF.PDFText]
[HKLM\Software\Wow6432Node\Classes\pdfforge.PDF.PDFText]
[HKLM\Software\Classes\pdfforge.Tools]
[HKLM\Software\Wow6432Node\Classes\pdfforge.Tools]
[HKLM\Software\Classes\Toolbar.CT2851639]
[HKLM\Software\Wow6432Node\Classes\Toolbar.CT2851639]
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{201f27d4-3704-41d6-89c1-aa35e39143ed}]
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{201f27d4-3704-41d6-89c1-aa35e39143ed}]
[HKLM\Software\Classes\Wow6432Node\TypeLib\{2D5E2D34-BED5-4B9F-9793-A31E26E6806E}]
[HKLM\Software\Classes\TypeLib\{2D5E2D34-BED5-4B9F-9793-A31E26E6806E}]
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3041d03e-fd4b-44e0-b742-2d9b88305f98}]
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3041d03e-fd4b-44e0-b742-2d9b88305f98}]
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4daac69c-cba7-45e2-9bc8-1044483d3352}]
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{723328FF-22D0-497f-9EB5-1AC919582DE1}]
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{b0de3308-5d5a-470d-81b9-634fc078393b}]
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{b0de3308-5d5a-470d-81b9-634fc078393b}]
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}]
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}]
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{eee6c35b-6118-11dc-9c72-001320c79847}]
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{eee6c35b-6118-11dc-9c72-001320c79847}]
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FC0D62C2-9640-4AEB-A5D5-CF25DF11FA8C}]
[HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{FC0D62C2-9640-4AEB-A5D5-CF25DF11FA8C}]
[HKLM\Software\Wow6432Node\Conduit]
[HKCU\Software\FissaSearch]
[HKCU\Software\OfferBox]
[HKLM\Software\Wow6432Node\OfferBox]
[HKCU\Software\AppDataLow\Software\PriceGong]
[HKCU\Software\Spointer]
[HKCU\Software\WideStream]
[HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]:{D4027C7F-154A-4066-A1AD-4243D8127440}
C:\Users\Jean-Paul\AppData\Roaming\Widestream
C:\Users\Jean-Paul\AppData\Local\Conduit
C:\Users\Jean-Paul\AppData\Local\widestream6 Air
C:\Users\Jean-Paul\AppData\LocalLow\Conduit
C:\Users\Jean-Paul\AppData\LocalLow\PriceGong
FirewallRaz
EmptyFlash
Emptytemp
Puis Lance ZHPFix depuis le raccourci du bureau.
Clique sur l'icone représentant la lettre H (« coller les lignes Helper »)
- Les lignes se collent automatiquement dans ZHPFix, sinon colle les lignes
- Clique sur le bouton
« GO » pour lancer le nettoyage,
- Copie/colle la totalité du rapport dans ta prochaine réponse
-> laisse travailler l'outil et ne touche à rien ...
Une fois terminée, un nouveau rapport s'affiche : copie/colle le contenu de ce dernier dans ta prochaine réponse ...
(ce rapport est en outre sauvegardé dans ce dossier > C:\Program files\ZHPDiag\ZHPFixReport.txt)
Important : s'il t'est demandé de redémarrer le PC pour finir le nettoyage, fais le de suite !