HELP processus prend 90% proc pc qui rame

Au secours -  
 Au secours -
Bonjour,

Depuis quelques temps, j'ai un processus nommé "bkttlh.exe" qui se lance au bout d'un moment sur mon pc, et qui est responsable je pense du ralentissement de mon ordinateur. Il prend parfois 90% des ressources processeur dans le gestionnaire de tâches/processus de windows, et 150mo de mémoire vive (alors que j'en ai que 500mo, c'est un vieux pc qui tourne sur windows 2000). Et quand je reboot, ou bien au bout de pas mal de temps, il se remet à des valeurs genre 5 ou 10% du proc.

J'ai écrit le nom de ce processus sur google mais je tombe sur des sites chinois, etc, que je ne comprends pas.

Helpppp, svp, aidez moi à virer ce truc, et à faire en sorte que mon pc ne rame plus. J'ai l'impression que depuis que j'ai ce fichier, ma connection wifi déconne aussi, elle fonctionne par intermitence, je dois refresh 10 fois l'url d'une page pour que finalement elle se charge. J'en peux plus. J'ai fait je ne sais combien de scans avec ccleaner, avg anti-spyware, malware-bytes anti-malware, et des antivirus online genre trend micro scan et secuser, mais rien n'y fait, mon pc est super lent, j'ai toujours ce processus, et mon wifi déconne.

Voilà un rapport hijackthis:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:51:42, on 10/05/2009
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Boot mode: Normal

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\system32\spoolsv.exe
C:\WINNT\System32\svchost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINNT\system32\nvsvc32.exe
C:\WINNT\system32\regsvc.exe
c:\winnt\system32\bkttlh.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\Explorer.EXE
C:\WINNT\system32\stisvc.exe
C:\WINNT\System32\WBEM\WinMgmt.exe
C:\WINNT\system32\svchost.exe
C:\Program Files\Wireless-G Portable USB Adapter Wireless Network Monitor\WLService.exe
C:\WINNT\system32\svchost.exe
C:\Program Files\Wireless-G Portable USB Adapter Wireless Network Monitor\WUSB54GPv4.exe
C:\Program Files\Wireless-G Portable USB Adapter Wireless Network Monitor\InfoMyCa.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\uTorrent\utorrent.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINNT\system32\taskmgr.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\system32\msdxm.ocx
O4 - HKLM\..\Run: [Synchronization Manager] mobsync.exe /logon
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINNT\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINNT\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [WUSB54GPv4] C:\Program Files\Wireless-G Portable USB Adapter Wireless Network Monitor\InvokeSvc3.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKUS\.DEFAULT\..\Run: [internat.exe] internat.exe (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [^SetupICWDesktop] C:\Program Files\Internet Explorer\Connection Wizard\icwconn1.exe /desktop (User 'Default user')
O4 - Global Startup: Microsoft Office.MSNFix
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINNT\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINNT\bdoscandel.exe
O16 - DPF: {03F998B2-0E00-11D3-A498-00104B6EB52E} - http://components.viewpoint.com/...
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {215B8138-A3CF-44C5-803F-8226143CFC0A} (Trend Micro ActiveX Scan Agent 6.6) - http://housecall65.trendmicro.com/housecall/applet/html/native/x86/win32/activex/hcImpl.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - https://www.trendmicro.com/en_us/forHome/products/housecall.html
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: CFAF7AB2 - Unknown owner - C:\WINNT\system32\B64BC661.EXE (file missing)
O23 - Service: Logical Disk Manager Administrative Service (dmadmin) - VERITAS Software Corp. - C:\WINNT\System32\dmadmin.exe
O23 - Service: EvenSystem - Unknown owner - c:\Recycler\svchost.exe (file missing)
O23 - Service: dsaffdsa (ffsdaf) - Unknown owner - C:\WINNT\system32\aa.exe (file missing)
O23 - Service: HgzVipDingZhi_Bester - Unknown owner - C:\WINNT\DzServer.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Microsoft Exchange Routing Eng - Unknown owner - C:\WINNT\System32\interinfo.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINNT\system32\nvsvc32.exe
O23 - Service: snake_service_description (snake_service_svcname) - Unknown owner - C:\WINNT\system32\26243_res.tmp.exe (file missing)
O23 - Service: System Restore Service (srservice) - Unknown owner - c:\winnt\system32\bkttlh.exe
O23 - Service: windowsafe - Unknown owner - c:\dos\svchost.exe (file missing)
O23 - Service: Network Provisioning Services (Windowsclients) - Unknown owner - C:\WINDOWS\system32\config\SVCHOST.EXE (file missing)
O23 - Service: WUSB54GPv4SVC - GEMTEKS - C:\Program Files\Wireless-G Portable USB Adapter Wireless Network Monitor\WLService.exe
A voir également:

4 réponses

Au secours
 
Ah quand je suis allé sur avg antispyware, sur la fenêtre analyse puis connexions, je vois que ce bkttlh.exe a ouvert des dizaines voir des centaines de connexions en protocole tcp, ça doit vraiment venir de là donc le ralentissement général de mon pc et ma connexion internet qui déconne, enfin je pense, please help.
0
Au secours
 
Rapport bitdefender online, purée j'avais mass fichiers infectés, mais certains, dont le plus important bkttlh.exe, n'ont pas été supprimés =(

BitDefender Online Scanner

Scan report generated at: Sun, May 10, 2009 - 19:06:06

Scanned File
 Status
C:\Documents and Settings\YoniD\~gcvqo.tmp
Infected with: Trojan.Generic.1324244
C:\Documents and Settings\YoniD\~gcvqo.tmp
Deleted
C:\Documents and Settings\YoniD\~hfllp.tmp
Infected with: Trojan.Generic.1324244
C:\Documents and Settings\YoniD\~hfllp.tmp
Deleted
C:\Documents and Settings\YoniD\~hpkbo.tmp
Infected with: Trojan.Generic.1324244
C:\Documents and Settings\YoniD\~hpkbo.tmp
Deleted
C:\Documents and Settings\YoniD\~hqdrr.tmp
Infected with: Trojan.Generic.1324244
C:\Documents and Settings\YoniD\~hqdrr.tmp
Deleted
C:\Documents and Settings\YoniD\~lgddu.tmp
Infected with: Trojan.Generic.1324244
C:\Documents and Settings\YoniD\~lgddu.tmp
Deleted
C:\Documents and Settings\YoniD\~pdqhg.tmp
Infected with: Trojan.Generic.1324244
C:\Documents and Settings\YoniD\~pdqhg.tmp
Deleted
C:\Documents and Settings\YoniD\~qioqd.tmp
Infected with: Trojan.Generic.1324244
C:\Documents and Settings\YoniD\~qioqd.tmp
Deleted
C:\Documents and Settings\YoniD\~qvchu.tmp
Infected with: Trojan.Generic.1324244
C:\Documents and Settings\YoniD\~qvchu.tmp
Deleted
C:\Documents and Settings\YoniD\~togkc.tmp
Infected with: Trojan.Generic.1324244
C:\Documents and Settings\YoniD\~togkc.tmp
Deleted
C:\Documents and Settings\YoniD\~ufrsb.tmp
Infected with: Trojan.Generic.1324244
C:\Documents and Settings\YoniD\~ufrsb.tmp
Deleted
C:\Documents and Settings\YoniD\~vlsas.tmp
Infected with: Trojan.Generic.1324244
C:\Documents and Settings\YoniD\~vlsas.tmp
Deleted
C:\Documents and Settings\YoniD\~vusfg.tmp
Infected with: Trojan.Generic.1324244
C:\Documents and Settings\YoniD\~vusfg.tmp
Deleted
C:\Documents and Settings\YoniD\~xfwbh.tmp
Infected with: Trojan.Generic.1324244
C:\Documents and Settings\YoniD\~xfwbh.tmp
Deleted
C:\Documents and Settings\YoniD\~xjxfo.tmp
Infected with: Trojan.Generic.1324244
C:\Documents and Settings\YoniD\~xjxfo.tmp
Deleted
C:\Documents and Settings\YoniD\~xrjbm.tmp
Infected with: Trojan.Generic.1324244
C:\Documents and Settings\YoniD\~xrjbm.tmp
Deleted
C:\Documents and Settings\YoniD\~xwsxl.tmp
Infected with: Trojan.Generic.1324244
C:\Documents and Settings\YoniD\~xwsxl.tmp
Deleted
C:\Program Files\Internet Explorer\Down(0).bat
Infected with: Trojan.Agent.AFGM
C:\Program Files\Internet Explorer\Down(0).bat
Deleted
C:\WINNT\DzServer.exe
Infected with: Backdoor.Hupigon.152025
C:\WINNT\DzServer.exe
Deleted
C:\WINNT\system32\bkttlh.exe
Infected with: Gen:Trojan.Heur.1021405757
C:\WINNT\system32\bkttlh.exe
Disinfection failed
C:\WINNT\system32\bkttlh.exe
Delete failed

C:\WINNT\system32\drivers\ApiHooks.sys
Infected with: Rootkit.14860
C:\WINNT\system32\drivers\ApiHooks.sys
Deleted
C:\WINNT\system32\interinfo.exe
Infected with: Packer.PEArmor.A
C:\WINNT\system32\interinfo.exe
Disinfection failed
C:\WINNT\system32\interinfo.exe
Delete failed
C:\WINNT\system32\jtxqmp.exe
Infected with: Gen:Trojan.Heur.1021405757
C:\WINNT\system32\jtxqmp.exe
Disinfection failed

C:\WINNT\system32\jtxqmp.exe
Deleted
C:\WINNT\system32\KiudsdD.dll
Infected with: Rootkit.13729
C:\WINNT\system32\KiudsdD.dll
Deleted
C:\WINNT\system32\pcik.exe
Infected with: Trojan.Generic.1335597
C:\WINNT\system32\pcik.exe
Delete failed
C:\WINNT\system32\secmgnt.dll
Infected with: Trojan.Atter.A
C:\WINNT\system32\secmgnt.dll
Delete failed
C:\WINNT\system32\SERVICES.EXE
Suspected of: Win32.Starter.A
C:\WINNT\system32\SERVICES.EXE
Disinfection failed
C:\WINNT\system32\SERVICES.EXE
Delete failed
C:\WINNT\system32\StormServer.dll
Infected with: Trojan.Generic.1445831
C:\WINNT\system32\StormServer.dll
Deleted
C:\WINNT\system32\vvvz.dll
Infected with: Trojan.Generic.1445831
C:\WINNT\system32\vvvz.dll
Deleted
0
Au secours
 
allo ya quelqu'un ? =(
0
Au secours
 
Help
0