Controle Activex

Bonjour a tous, kkun pourrait m aider a resoudre un pti probleme?
Lorsque je visite des pages internet j ai sans cesse un fenetre qui s ouvre et qui me dit que "les parametres de securité actuels ne vous permette pas d executer les controles activex de cette page...".Comment regler ces parametres SVP?? d avance merci...

68 réponses

Résumé de la discussion

Le problème central est qu'une fenêtre s'ouvre lors de la navigation indiquant que les paramètres de sécurité actuels empêchent l'exécution des contrôles ActiveX sur certaines pages. Plusieurs propositions portent sur la modification des paramètres de sécurité d'Internet Explorer et du niveau des zones, mais l'option peut être grisée, ce qui conduit à des ajustements via la base de registre. Parmi les pistes, des clés de registre comme HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Internet Explorer\Control et HomePage Type sont évoquées, ainsi que des éléments malveillants comme gfjh.exe et des entrées AutoRestartShell dans WinLogon. En cas de version XP et de politiques actives, certaines clés peuvent être absentes ou protégées, ce qui rend les corrections dépendantes du contexte système et peut nécessiter des privilèges administrateur.

Bobot (l’IA à votre service)
  1. Bernie61,dans "proprietés de internet" et sous l'onglet securité, j ai 4 icones (internet, intranet local, sites de confiance, sites sensibles) j imagine que c est celui d internet qu il faut parametrer comme tu m a dit, seuleument je ne peux pas selectionner "personnaliser le niveaux" ...sais tu pourquoi???
    1. kan j'éssayé dalé sur habbo hotel

      je me connecte ma page perso marché mé kan je veux alé ur la chat sa me fé "Cliquez pour excutez un controle Active X sur cette site web"

      je clik sur ok é la page rest noir kesk jdoi fèr ??
      1. Comment je doit faire pour avoir activex?
        Parce que je fait les truk pour télécharger mais sa marche pas
        =[
        Aidez moi s'il vous plaît, xD
        1. re salut
          ce serait à nouveau ce pbm là, à checker ta config:

          ACTIVE_X et SCRIPT
          Tu fais Démarrer/PanneauConfiguration/optionInternet/Sécurité et là avec icône Internet « Personnaliser le niveau », tu a des lignes « Contrôle ActiveX et Plugin »à cocher AUTORISER

          a+
          1. salut, mais justement je sai pas si tu te souvien mais la touche "personnaliser le niveau" est grisée, donc je suis forcé de mettre le "niveau par defaut" mais a chaque fois il se deselectionne tout seul lorsque je suis sur le net...je pense que c est dû au fichier gfjh.exe...c est tu a quoi il corespond?
          2. salut
            pas encore effacé celui-là, pourtant je t'avais signalé qu'il n'était pas dans 1er log de HijackThis donc forcément Très suspect, tu comprimes ce fichier et efface le .exe
            zou
            a+
        2. merci pour les liens...je vien de faire un scan sur le second lien que tu ma filer et ca me met le message suivant:

          Why these checks did not complete for you:
          ActiveX support may be disabled in your browser settings or you chose not to download the ActiveX control

          Que faut t il que je fasse ?
          merci
            1. les problemes reviennent...voici a nouvo un log, ya til quelque chose qui ne vas pas ???

              Logfile of HijackThis v1.98.2
              Scan saved at 21:10:10, on 13/12/2004
              Platform: Windows XP SP1 (WinNT 5.01.2600)
              MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

              Running processes:
              C:\WINDOWS\System32\smss.exe
              C:\WINDOWS\system32\csrss.exe
              C:\WINDOWS\system32\winlogon.exe
              C:\WINDOWS\system32\services.exe
              C:\WINDOWS\system32\lsass.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\System32\svchost.exe
              C:\WINDOWS\System32\svchost.exe
              C:\WINDOWS\System32\svchost.exe
              C:\WINDOWS\system32\spoolsv.exe
              C:\WINDOWS\system32\pctspk.exe
              C:\WINDOWS\System32\svchost.exe
              C:\WINDOWS\System32\MsPMSPSv.exe
              C:\WINDOWS\Explorer.EXE
              C:\Program Files\Alcatel\SpeedTouch USB\Dragdiag.exe
              C:\PROGRA~1\MESSAG~1\StartMessager.exe
              C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
              C:\Program Files\QuickTime\qttask.exe
              C:\WINDOWS\System32\explorer.exe
              C:\WINDOWS\System32\ctfmon.exe
              C:\Program Files\ATI Multimedia\main\launchpd.exe
              C:\Program Files\Messenger\msmsgs.exe
              C:\Program Files\Internet Explorer\iexplore.exe
              C:\Program Files\a2\a2guard.exe
              C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
              C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
              C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
              C:\WINDOWS\System32\alg.exe
              C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
              C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
              C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe
              C:\Program Files\Internet Explorer\iexplore.exe
              C:\Program Files\Internet Explorer\iexplore.exe
              c:\progra~1\intern~1\iexplore.exe
              c:\windows\gfjh.exe
              C:\Program Files\Internet Explorer\iexplore.exe
              C:\PROGRA~1\WinZip\winzip32.exe
              C:\DOCUME~1\ABDEL\LOCALS~1\Temp\HijackThis.exe

              R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://www.google.fr/keyword/%s
              R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/ie
              R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr
              R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
              R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.fr/ie_rsearch.html
              R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Exploreurrrr
              O2 - BHO: (no name) - {A88EB1E0-3B94-5579-B3A3-77339DC21609} - C:\WINDOWS\system32\config\SYSTEM~1\APPLIC~1\OPTION~1\exitbird.exe
              O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\WINDOWS\Downloaded Program Files\googlenav.dll
              O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\NeroCheck.exe
              O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Alcatel\SpeedTouch USB\Dragdiag.exe" /icon
              O4 - HKLM\..\Run: [MessagerStarter Messager] C:\PROGRA~1\MESSAG~1\StartMessager.exe Messager Wanadoo
              O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
              O4 - HKLM\..\Run: [Launcher] "C:\Program Files\MLH\launcher.exe" /P
              O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
              O4 - HKLM\..\Run: [settings cast second ref] C:\Documents and Settings\All Users\Application Data\Default stop settings cast\Bind Trans.exe
              O4 - HKLM\..\Run: [OfficeGuard RegChecker] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\ogrc.exe"
              O4 - HKLM\..\Run: [AVPCC] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /wait
              O4 - HKLM\..\Run: [Microsoft Update Machine] explorer.exe
              O4 - HKLM\..\RunServices: [Microsoft Update Machine] explorer.exe
              O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
              O4 - HKCU\..\Run: [ATI Launchpad] "C:\Program Files\ATI Multimedia\main\launchpd.exe"
              O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
              O4 - HKCU\..\Run: [Shimone] C:\DOCUME~1\ABDEL\APPLIC~1\UPAXIS~1\pure regs dash.exe
              O4 - HKCU\..\Run: [a-squared] "C:\Program Files\a2\a2guard.exe"
              O4 - HKCU\..\Run: [Microsoft Update Machine] explorer.exe
              O4 - Startup: Corel Print House Registration.lnk = C:\Fichiers programme\Corel\Print House 2000\Register\Remind32.exe
              O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
              O4 - Global Startup: hp psc 1000 series.lnk = ?
              O4 - Global Startup: hpoddt01.exe.lnk = ?
              O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
              O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
              O8 - Extra context menu item: &Google Search - res://C:\WINDOWS\Downloaded Program Files\googlenav.dll/cmsearch.html
              O8 - Extra context menu item: Backward &Links - res://C:\WINDOWS\Downloaded Program Files\googlenav.dll/cmbacklinks.html
              O8 - Extra context menu item: Cac&hed Snapshot of Page - res://C:\WINDOWS\Downloaded Program Files\googlenav.dll/cmcache.html
              O8 - Extra context menu item: Si&milar Pages - res://C:\WINDOWS\Downloaded Program Files\googlenav.dll/cmsimilar.html
              O16 - DPF: {4C82BFF1-4904-4DD9-9DD3-992D13442376} (FontInstaller Class) - http://www.qurancomplex.com/Downloads/fonts.cab
              O16 - DPF: {6CB5E471-C305-11D3-99A8-000086395495} (Google Activate) - http://toolbar.google.com/data/fr/big/1.1.62-big/GoogleNav.cab
              O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://fdl.msn.com/public/chat/msnchat45.cab
              O17 - HKLM\System\CCS\Services\Tcpip\..\{0EC7C15B-3AAE-4043-B4C7-EBFA14960CDA}: NameServer = 212.151.136.254 130.244.127.169
              O17 - HKLM\System\CS1\Services\Tcpip\..\{0EC7C15B-3AAE-4043-B4C7-EBFA14960CDA}: NameServer = 212.151.136.254 130.244.127.169
              1. impossible de telecharger antivir...kel est le site pour telecharger AVG stp ?
                1. kkun pourrai m indiquer un lien ou je pourrai telecharger un bonne antivirus gratuit <svp ?
                  1. c est bon g supprimé ce fichier suspect, fait un scan et a priori je ne suis plus harcelé par ces fenetre de controle activex.
                    ceci dit a chaque fois que j ouvre une fenetre IE il ya une barre bleu "search" qui se fou en bas...comment l eradiquer please
                    1. salut
                      c:\windows\gfjh.exe tu dois pouvoir l'effacer en mode sans échec
                      et refais le scan antivirus aussi mode sans échec

                      a+
                      1. Ouai bonne nuit, tu ma bien assister bernie thanks...

                        c:\windows\gfjh.exe..... imposssible de supprimer acces refusé

                        et g l impression que cette ligne: O4 - HKLM\..\RunServices: [Microsoft Update Machine] explorer.exe revient meme apres un fix

                        mais bon on verra ca demain si tu peu car moi aussi je suisKO
                        1. re salut et puis je vais dormir là

                          Tu as un virus qui doit encore trainer ?? tu as bien fais le scan Sysclean (poste35) ??
                          Vérifie ces pgm :
                          c:\windows\gfjh.exe >>bizar, check il était pas là au 1er Hijack à zipper et effacer

                          Si pas sûr tu zip le fichier et efface le .EXE

                          Relances HijackThis et cocher toutes ces lignes, puis FIX :
                          R1 - HKLM\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http ://search.search-exe.com/nph-search.cgi?tcode=exesrch&fw=
                          O4 - HKLM\..\Run: [Microsoft Update Machine] explorer.exe
                          O4 - HKLM\..\RunServices: [Microsoft Update Machine] explorer.exe
                          O4 - HKCU\..\Run: [Microsoft Update Machine] explorer.exe
                          O21 - SSODL: Web Event Logger - {79FEACFF-FFCE-815E-A900-316290B5B738} - C:\WINDOWS\System32\Dkkina32.dll
                          O8 - Extra context menu item: Voir les cookies - C:\WINDOWS\web\cookies.html
                          O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
                          O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm

                          à demain
                          a+
                          1. re re rapport:

                            Logfile of HijackThis v1.98.2
                            Scan saved at 23:40:20, on 12/12/2004
                            Platform: Windows XP SP1 (WinNT 5.01.2600)
                            MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

                            Running processes:
                            C:\WINDOWS\System32\smss.exe
                            C:\WINDOWS\system32\csrss.exe
                            C:\WINDOWS\system32\winlogon.exe
                            C:\WINDOWS\system32\services.exe
                            C:\WINDOWS\system32\lsass.exe
                            C:\WINDOWS\system32\svchost.exe
                            C:\WINDOWS\System32\svchost.exe
                            C:\WINDOWS\System32\svchost.exe
                            C:\WINDOWS\System32\svchost.exe
                            C:\WINDOWS\system32\spoolsv.exe
                            C:\WINDOWS\System32\alg.exe
                            C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
                            C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe
                            C:\WINDOWS\system32\pctspk.exe
                            C:\WINDOWS\System32\svchost.exe
                            C:\WINDOWS\System32\MsPMSPSv.exe
                            C:\WINDOWS\Explorer.EXE
                            C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
                            C:\Program Files\Alcatel\SpeedTouch USB\Dragdiag.exe
                            C:\PROGRA~1\MESSAG~1\StartMessager.exe
                            C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
                            C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
                            C:\Program Files\QuickTime\qttask.exe
                            C:\WINDOWS\System32\P2P Networking\P2P Networking.exe
                            C:\WINDOWS\System32\explorer.exe
                            C:\WINDOWS\System32\ctfmon.exe
                            C:\Program Files\Internet Explorer\iexplore.exe
                            C:\Program Files\ATI Multimedia\main\launchpd.exe
                            C:\Program Files\Messenger\msmsgs.exe
                            C:\Program Files\a2\a2guard.exe
                            C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
                            C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
                            C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
                            C:\Program Files\Internet Explorer\iexplore.exe
                            C:\Program Files\Internet Explorer\iexplore.exe
                            C:\Program Files\Internet Explorer\iexplore.exe
                            c:\windows\gfjh.exe
                            C:\Program Files\Internet Explorer\iexplore.exe
                            C:\Program Files\Internet Explorer\iexplore.exe
                            C:\Documents and Settings\ABDEL\Bureau\HijackThis.exe
                            C:\PROGRA~1\WinZip\winzip32.exe
                            C:\DOCUME~1\ABDEL\LOCALS~1\Temp\HijackThis.exe

                            R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://www.google.fr/keyword/%s
                            R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/ie
                            R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr
                            R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
                            R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.fr/ie_rsearch.html
                            R1 - HKLM\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://search.search-exe.com/nph-search.cgi?tcode=exesrch&fw=
                            R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Exploreurrrr
                            O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
                            O2 - BHO: (no name) - {A88EB1E0-3B94-5579-B3A3-77339DC21609} - C:\WINDOWS\system32\config\SYSTEM~1\APPLIC~1\OPTION~1\exitbird.exe
                            O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\WINDOWS\Downloaded Program Files\googlenav.dll
                            O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\MSDXM.OCX
                            O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
                            O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\NeroCheck.exe
                            O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Alcatel\SpeedTouch USB\Dragdiag.exe" /icon
                            O4 - HKLM\..\Run: [MessagerStarter Messager] C:\PROGRA~1\MESSAG~1\StartMessager.exe Messager Wanadoo
                            O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
                            O4 - HKLM\..\Run: [Launcher] "C:\Program Files\MLH\launcher.exe" /P
                            O4 - HKLM\..\Run: [MessengerPlus2] "C:\Program Files\Messenger Plus! 2\MsgPlus.exe"
                            O4 - HKLM\..\Run: [OfficeGuard RegChecker] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\ogrc.exe"
                            O4 - HKLM\..\Run: [AVPCC] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /wait
                            O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
                            O4 - HKLM\..\Run: [P2P Networking] C:\WINDOWS\System32\P2P Networking\P2P Networking.exe /AUTOSTART
                            O4 - HKLM\..\Run: [settings cast second ref] C:\Documents and Settings\All Users\Application Data\Default stop settings cast\Bind Trans.exe
                            O4 - HKLM\..\Run: [Microsoft Update Machine] explorer.exe
                            O4 - HKLM\..\RunServices: [Microsoft Update Machine] explorer.exe
                            O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
                            O4 - HKCU\..\Run: [ATI Launchpad] "C:\Program Files\ATI Multimedia\main\launchpd.exe"
                            O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
                            O4 - HKCU\..\Run: [Shimone] C:\DOCUME~1\ABDEL\APPLIC~1\UPAXIS~1\pure regs dash.exe
                            O4 - HKCU\..\Run: [a-squared] "C:\Program Files\a2\a2guard.exe"
                            O4 - HKCU\..\Run: [Microsoft Update Machine] explorer.exe
                            O4 - Startup: Corel Print House Registration.lnk = C:\Fichiers programme\Corel\Print House 2000\Register\Remind32.exe
                            O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
                            O4 - Global Startup: hp psc 1000 series.lnk = ?
                            O4 - Global Startup: hpoddt01.exe.lnk = ?
                            O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
                            O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
                            O8 - Extra context menu item: &Google Search - res://C:\WINDOWS\Downloaded Program Files\googlenav.dll/cmsearch.html
                            O8 - Extra context menu item: Backward &Links - res://C:\WINDOWS\Downloaded Program Files\googlenav.dll/cmbacklinks.html
                            O8 - Extra context menu item: Cac&hed Snapshot of Page - res://C:\WINDOWS\Downloaded Program Files\googlenav.dll/cmcache.html
                            O8 - Extra context menu item: Si&milar Pages - res://C:\WINDOWS\Downloaded Program Files\googlenav.dll/cmsimilar.html
                            O8 - Extra context menu item: Voir les cookies - C:\WINDOWS\web\cookies.html
                            O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
                            O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
                            O16 - DPF: {4C82BFF1-4904-4DD9-9DD3-992D13442376} (FontInstaller Class) - http://www.qurancomplex.com/Downloads/fonts.cab
                            O16 - DPF: {6CB5E471-C305-11D3-99A8-000086395495} (Google Activate) - http://toolbar.google.com/data/fr/big/1.1.62-big/GoogleNav.cab
                            O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://fdl.msn.com/public/chat/msnchat45.cab
                            O17 - HKLM\System\CCS\Services\Tcpip\..\{0EC7C15B-3AAE-4043-B4C7-EBFA14960CDA}: NameServer = 212.151.136.254 130.244.127.169
                            O17 - HKLM\System\CS1\Services\Tcpip\..\{0EC7C15B-3AAE-4043-B4C7-EBFA14960CDA}: NameServer = 212.151.136.254 130.244.127.169
                            O21 - SSODL: Web Event Logger - {79FEACFF-FFCE-815E-A900-316290B5B738} - C:\WINDOWS\System32\Dkkina32.dll
                            1. re
                              tu n'aa pas lu ce qu'on te met en -46-47-48 va chercher version à jour de HijackThis et relance
                              a+
                              1. re nouvo rapport:

                                Logfile of HijackThis v1.97.7
                                Scan saved at 23:33:32, on 12/12/2004
                                Platform: Windows XP SP1 (WinNT 5.01.2600)
                                MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

                                Running processes:
                                C:\WINDOWS\System32\smss.exe
                                C:\WINDOWS\system32\csrss.exe
                                C:\WINDOWS\system32\winlogon.exe
                                C:\WINDOWS\system32\services.exe
                                C:\WINDOWS\system32\lsass.exe
                                C:\WINDOWS\system32\svchost.exe
                                C:\WINDOWS\System32\svchost.exe
                                C:\WINDOWS\System32\svchost.exe
                                C:\WINDOWS\System32\svchost.exe
                                C:\WINDOWS\system32\spoolsv.exe
                                C:\WINDOWS\System32\alg.exe
                                C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
                                C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe
                                C:\WINDOWS\system32\pctspk.exe
                                C:\WINDOWS\System32\svchost.exe
                                C:\WINDOWS\System32\MsPMSPSv.exe
                                C:\WINDOWS\Explorer.EXE
                                C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
                                C:\Program Files\Alcatel\SpeedTouch USB\Dragdiag.exe
                                C:\PROGRA~1\MESSAG~1\StartMessager.exe
                                C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
                                C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
                                C:\Program Files\QuickTime\qttask.exe
                                C:\WINDOWS\System32\P2P Networking\P2P Networking.exe
                                C:\WINDOWS\System32\explorer.exe
                                C:\WINDOWS\System32\ctfmon.exe
                                C:\Program Files\Internet Explorer\iexplore.exe
                                C:\Program Files\ATI Multimedia\main\launchpd.exe
                                C:\Program Files\Messenger\msmsgs.exe
                                C:\Program Files\a2\a2guard.exe
                                C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
                                C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
                                C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
                                C:\Program Files\Internet Explorer\iexplore.exe
                                c:\windows\gfjh.exe
                                C:\Program Files\Internet Explorer\iexplore.exe
                                C:\Program Files\Internet Explorer\iexplore.exe
                                c:\windows\gfjh.exe
                                C:\Program Files\Internet Explorer\iexplore.exe
                                C:\Program Files\Internet Explorer\iexplore.exe
                                C:\Documents and Settings\ABDEL\Bureau\HijackThis.exe

                                R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://www.google.fr/keyword/%s
                                R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/ie
                                R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr
                                R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
                                R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.fr/ie_rsearch.html
                                R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Exploreurrrr
                                O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
                                O2 - BHO: (no name) - {A88EB1E0-3B94-5579-B3A3-77339DC21609} - C:\WINDOWS\system32\config\SYSTEM~1\APPLIC~1\OPTION~1\exitbird.exe
                                O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\WINDOWS\Downloaded Program Files\googlenav.dll
                                O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\MSDXM.OCX
                                O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
                                O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\NeroCheck.exe
                                O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Alcatel\SpeedTouch USB\Dragdiag.exe" /icon
                                O4 - HKLM\..\Run: [MessagerStarter Messager] C:\PROGRA~1\MESSAG~1\StartMessager.exe Messager Wanadoo
                                O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
                                O4 - HKLM\..\Run: [Launcher] "C:\Program Files\MLH\launcher.exe" /P
                                O4 - HKLM\..\Run: [MessengerPlus2] "C:\Program Files\Messenger Plus! 2\MsgPlus.exe"
                                O4 - HKLM\..\Run: [OfficeGuard RegChecker] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\ogrc.exe"
                                O4 - HKLM\..\Run: [AVPCC] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /wait
                                O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
                                O4 - HKLM\..\Run: [P2P Networking] C:\WINDOWS\System32\P2P Networking\P2P Networking.exe /AUTOSTART
                                O4 - HKLM\..\Run: [settings cast second ref] C:\Documents and Settings\All Users\Application Data\Default stop settings cast\Bind Trans.exe
                                O4 - HKLM\..\Run: [Microsoft Update Machine] explorer.exe
                                O4 - HKLM\..\RunServices: [Microsoft Update Machine] explorer.exe
                                O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
                                O4 - HKCU\..\Run: [ATI Launchpad] "C:\Program Files\ATI Multimedia\main\launchpd.exe"
                                O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
                                O4 - HKCU\..\Run: [Shimone] C:\DOCUME~1\ABDEL\APPLIC~1\UPAXIS~1\pure regs dash.exe
                                O4 - HKCU\..\Run: [a-squared] "C:\Program Files\a2\a2guard.exe"
                                O4 - HKCU\..\Run: [Microsoft Update Machine] explorer.exe
                                O4 - Startup: Corel Print House Registration.lnk = C:\Fichiers programme\Corel\Print House 2000\Register\Remind32.exe
                                O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
                                O4 - Global Startup: hp psc 1000 series.lnk = ?
                                O4 - Global Startup: hpoddt01.exe.lnk = ?
                                O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
                                O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
                                O8 - Extra context menu item: &Google Search - res://C:\WINDOWS\Downloaded Program Files\googlenav.dll/cmsearch.html
                                O8 - Extra context menu item: Backward &Links - res://C:\WINDOWS\Downloaded Program Files\googlenav.dll/cmbacklinks.html
                                O8 - Extra context menu item: Cac&hed Snapshot of Page - res://C:\WINDOWS\Downloaded Program Files\googlenav.dll/cmcache.html
                                O8 - Extra context menu item: Si&milar Pages - res://C:\WINDOWS\Downloaded Program Files\googlenav.dll/cmsimilar.html
                                O8 - Extra context menu item: Voir les cookies - C:\WINDOWS\web\cookies.html
                                O9 - Extra button: Related (HKLM)
                                O9 - Extra 'Tools' menuitem: Show &Related Links (HKLM)
                                O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://www.apple.com/qtactivex/qtplugin.cab
                                O16 - DPF: {4C82BFF1-4904-4DD9-9DD3-992D13442376} (FontInstaller Class) - http://www.qurancomplex.com/Downloads/fonts.cab
                                O16 - DPF: {6CB5E471-C305-11D3-99A8-000086395495} (Google Activate) - http://toolbar.google.com/data/fr/big/1.1.62-big/GoogleNav.cab
                                O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
                                O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://fdl.msn.com/public/chat/msnchat45.cab
                                O17 - HKLM\System\CCS\Services\Tcpip\..\{0EC7C15B-3AAE-4043-B4C7-EBFA14960CDA}: NameServer = 212.151.136.254 130.244.127.169
                                O17 - HKLM\System\CS1\Services\Tcpip\..\{0EC7C15B-3AAE-4043-B4C7-EBFA14960CDA}: NameServer = 212.151.136.254 130.244.127.169
                                1. re
                                  ce n'est que des raccourci des backup de HijackThis... tu effaces ces raccourcis

                                  ah là là on avait dis enregistrer dans un répertoire spécifique HijackThis (par ex ProgramFiles), est-ce le cas?

                                  a+
                                  • 1
                                  • 2
                                  • 3
                                  • 4