Problème de RAM
robinb31
Messages postés
336
Statut
Membre
-
robinb31 Messages postés 336 Statut Membre -
robinb31 Messages postés 336 Statut Membre -
Bonjour,
J'ai un problème avec mon PC (Acer 8943G; Core i5; 4Go de RAM; ATI Radeon HD 5850; Windows 7 64bits), en effet, quand je télécharge avec megamanager ma mémoire vive grimpe progressivement jusqu'à atteindre les 99% et me mettre un écran bleu.
De plus une fois le programme fermé (même dans les processus) le pourcentage de la mémoire vive utilisé continu de grimper.
J'ai essayé de re-installer le programme mais toujours pareil.
Je ne sais plus quoi faire.
Merci de votre aide :)
J'ai un problème avec mon PC (Acer 8943G; Core i5; 4Go de RAM; ATI Radeon HD 5850; Windows 7 64bits), en effet, quand je télécharge avec megamanager ma mémoire vive grimpe progressivement jusqu'à atteindre les 99% et me mettre un écran bleu.
De plus une fois le programme fermé (même dans les processus) le pourcentage de la mémoire vive utilisé continu de grimper.
J'ai essayé de re-installer le programme mais toujours pareil.
Je ne sais plus quoi faire.
Merci de votre aide :)
A voir également:
- Problème de RAM
- Mon pc ram - Guide
- Memoire ram - Guide
- Telecharger de la ram - Forum Carte-mère/mémoire
- Comment savoir combien de ram a mon pc - Guide
- Antimalware service executable ram - Forum Antivirus
14 réponses
Bsr c'est chelou.
REgardez les processus lancer, executez votre prugramme et quand vous l'arrêtez, rejetez un coup encore sur les processus pour voir le soft responsable.
Ceci dis perso je pense à un vers (une infection) qui fait tournez vos RAM.
Faite un bon coup avec vote antivirus et tenez nous au courant.
REgardez les processus lancer, executez votre prugramme et quand vous l'arrêtez, rejetez un coup encore sur les processus pour voir le soft responsable.
Ceci dis perso je pense à un vers (une infection) qui fait tournez vos RAM.
Faite un bon coup avec vote antivirus et tenez nous au courant.
Je vais essayer, la j'essaye de supprimer l'indexation des fichiers.
Et le scan je l'avais déjà fait avec mon Anti-virus (bitdefender total sécurity 2011).
Cependant je vais en re-lancer un pour être sur :)
Et le scan je l'avais déjà fait avec mon Anti-virus (bitdefender total sécurity 2011).
Cependant je vais en re-lancer un pour être sur :)
si l'antivirus n'a rien trouvé le relancer donnera le m^me resultat par contre vous pouvez essayer MalwareByte. Regardez ici
Un coup de MalwareByte Tuto et Téléchargement :
https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Vous pouvez l'urilisez tranquillement, ce n'est pas un antivirus, mais disons un nettoyeur et est non résident. Donc aucun risque de conflit avec votre Antivirus.
Un coup de MalwareByte Tuto et Téléchargement :
https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Vous pouvez l'urilisez tranquillement, ce n'est pas un antivirus, mais disons un nettoyeur et est non résident. Donc aucun risque de conflit avec votre Antivirus.
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Voici mes processus lancé quand megamanager est ouvert :
Nom de l'image PID Nom de la sessio Num'ro de s Utilisation
========================= ======== ================ =========== ============
System Idle Process 0 Services 0 24 Ko
System 4 Services 0 5ÿ084 Ko
smss.exe 400 Services 0 1ÿ232 Ko
csrss.exe 576 Services 0 5ÿ856 Ko
wininit.exe 680 Services 0 4ÿ612 Ko
csrss.exe 704 Console 1 17ÿ396 Ko
services.exe 744 Services 0 11ÿ652 Ko
lsass.exe 768 Services 0 13ÿ508 Ko
lsm.exe 776 Services 0 4ÿ544 Ko
winlogon.exe 852 Console 1 7ÿ616 Ko
svchost.exe 932 Services 0 10ÿ172 Ko
svchost.exe 1008 Services 0 9ÿ712 Ko
vsserv.exe 452 Services 0 33ÿ668 Ko
atiesrxx.exe 456 Services 0 4ÿ472 Ko
svchost.exe 476 Services 0 23ÿ140 Ko
svchost.exe 1048 Services 0 170ÿ500 Ko
svchost.exe 1108 Services 0 49ÿ404 Ko
svchost.exe 1240 Services 0 19ÿ204 Ko
atieclxx.exe 1288 Console 1 6ÿ776 Ko
svchost.exe 1352 Services 0 17ÿ136 Ko
CompPtcVUI.exe 1456 Console 1 10ÿ652 Ko
spoolsv.exe 1624 Services 0 13ÿ964 Ko
svchost.exe 1652 Services 0 13ÿ192 Ko
AppleMobileDeviceService. 1740 Services 0 7ÿ636 Ko
AdminService.exe 1768 Services 0 4ÿ972 Ko
mDNSResponder.exe 1796 Services 0 5ÿ780 Ko
dsiwmis.exe 1832 Services 0 6ÿ096 Ko
svchost.exe 1856 Services 0 8ÿ220 Ko
BASVC.exe 1888 Services 0 8ÿ700 Ko
LMIGuardianSvc.exe 1980 Services 0 7ÿ384 Ko
ramaint.exe 2012 Services 0 5ÿ748 Ko
taskhost.exe 1528 Console 1 9ÿ276 Ko
bdagent.exe 1764 Console 1 1ÿ952 Ko
dwm.exe 1712 Console 1 7ÿ180 Ko
explorer.exe 2144 Console 1 93ÿ772 Ko
pchooklaunch64.exe 2408 Console 1 3ÿ804 Ko
pchooklaunch32.exe 2424 Console 1 4ÿ624 Ko
LMS.exe 2464 Services 0 4ÿ896 Ko
LogMeIn.exe 2488 Services 0 24ÿ208 Ko
svchost.exe 2588 Services 0 3ÿ856 Ko
IScheduleSvc.exe 2612 Services 0 10ÿ464 Ko
o2flash.exe 2644 Services 0 3ÿ560 Ko
svchost.exe 2692 Services 0 3ÿ788 Ko
RichVideo.exe 2712 Services 0 4ÿ408 Ko
svchost.exe 2744 Services 0 6ÿ440 Ko
TomTomHOMEService.exe 2772 Services 0 3ÿ080 Ko
twonkymediaserverwatchdog 2828 Services 0 5ÿ668 Ko
UpdaterService.exe 2868 Services 0 3ÿ868 Ko
updatesrv.exe 2900 Services 0 11ÿ436 Ko
WLIDSVC.EXE 2928 Services 0 15ÿ524 Ko
twonkymediaserver.exe 3068 Services 0 12ÿ496 Ko
conhost.exe 2136 Services 0 3ÿ180 Ko
LogMeInSystray.exe 3008 Console 1 15ÿ364 Ko
igfxpers.exe 2264 Console 1 7ÿ096 Ko
SetPoint.exe 3104 Console 1 17ÿ688 Ko
RAVCpl64.exe 3124 Console 1 11ÿ560 Ko
MegaManager.exe 3316 Console 1 62ÿ160 Ko
twonkymediaserverconfig.e 3356 Console 1 8ÿ608 Ko
WLIDSVCM.EXE 3688 Services 0 3ÿ540 Ko
LManager.exe 3192 Console 1 15ÿ428 Ko
MMDx64Fx.exe 3740 Console 1 5ÿ212 Ko
IAStorIcon.exe 3828 Console 1 22ÿ316 Ko
MOM.exe 560 Console 1 6ÿ444 Ko
LMworker.exe 3388 Console 1 4ÿ324 Ko
KHALMNPR.exe 1168 Console 1 12ÿ860 Ko
unsecapp.exe 4584 Console 1 5ÿ960 Ko
WmiPrvSE.exe 4644 Services 0 7ÿ088 Ko
svchost.exe 4892 Services 0 7ÿ944 Ko
svchost.exe 4968 Services 0 6ÿ064 Ko
WUDFHost.exe 5096 Services 0 6ÿ376 Ko
svchost.exe 4228 Services 0 25ÿ220 Ko
wmpnetwk.exe 5132 Services 0 11ÿ316 Ko
CCC.exe 5856 Console 1 6ÿ360 Ko
svchost.exe 1784 Services 0 14ÿ256 Ko
firefox.exe 3628 Console 1 292ÿ412 Ko
dllhost.exe 1412 Services 0 7ÿ860 Ko
PresentationFontCache.exe 4624 Services 0 20ÿ748 Ko
IAStorDataMgrSvc.exe 5412 Services 0 19ÿ948 Ko
UNS.exe 5732 Services 0 9ÿ212 Ko
dllhost.exe 3824 Console 1 6ÿ576 Ko
downloader.exe 2208 Services 0 11ÿ268 Ko
conhost.exe 5200 Services 0 3ÿ296 Ko
taskmgr.exe 5892 Console 1 13ÿ048 Ko
plugin-container.exe 4732 Console 1 14ÿ216 Ko
WmiPrvSE.exe 2444 Services 0 7ÿ596 Ko
audiodg.exe 3120 Services 0 17ÿ584 Ko
cmd.exe 5532 Console 1 3ÿ368 Ko
conhost.exe 5384 Console 1 7ÿ508 Ko
tasklist.exe 5644 Console 1 6ÿ260 Ko
Nom de l'image PID Nom de la sessio Num'ro de s Utilisation
========================= ======== ================ =========== ============
System Idle Process 0 Services 0 24 Ko
System 4 Services 0 5ÿ084 Ko
smss.exe 400 Services 0 1ÿ232 Ko
csrss.exe 576 Services 0 5ÿ856 Ko
wininit.exe 680 Services 0 4ÿ612 Ko
csrss.exe 704 Console 1 17ÿ396 Ko
services.exe 744 Services 0 11ÿ652 Ko
lsass.exe 768 Services 0 13ÿ508 Ko
lsm.exe 776 Services 0 4ÿ544 Ko
winlogon.exe 852 Console 1 7ÿ616 Ko
svchost.exe 932 Services 0 10ÿ172 Ko
svchost.exe 1008 Services 0 9ÿ712 Ko
vsserv.exe 452 Services 0 33ÿ668 Ko
atiesrxx.exe 456 Services 0 4ÿ472 Ko
svchost.exe 476 Services 0 23ÿ140 Ko
svchost.exe 1048 Services 0 170ÿ500 Ko
svchost.exe 1108 Services 0 49ÿ404 Ko
svchost.exe 1240 Services 0 19ÿ204 Ko
atieclxx.exe 1288 Console 1 6ÿ776 Ko
svchost.exe 1352 Services 0 17ÿ136 Ko
CompPtcVUI.exe 1456 Console 1 10ÿ652 Ko
spoolsv.exe 1624 Services 0 13ÿ964 Ko
svchost.exe 1652 Services 0 13ÿ192 Ko
AppleMobileDeviceService. 1740 Services 0 7ÿ636 Ko
AdminService.exe 1768 Services 0 4ÿ972 Ko
mDNSResponder.exe 1796 Services 0 5ÿ780 Ko
dsiwmis.exe 1832 Services 0 6ÿ096 Ko
svchost.exe 1856 Services 0 8ÿ220 Ko
BASVC.exe 1888 Services 0 8ÿ700 Ko
LMIGuardianSvc.exe 1980 Services 0 7ÿ384 Ko
ramaint.exe 2012 Services 0 5ÿ748 Ko
taskhost.exe 1528 Console 1 9ÿ276 Ko
bdagent.exe 1764 Console 1 1ÿ952 Ko
dwm.exe 1712 Console 1 7ÿ180 Ko
explorer.exe 2144 Console 1 93ÿ772 Ko
pchooklaunch64.exe 2408 Console 1 3ÿ804 Ko
pchooklaunch32.exe 2424 Console 1 4ÿ624 Ko
LMS.exe 2464 Services 0 4ÿ896 Ko
LogMeIn.exe 2488 Services 0 24ÿ208 Ko
svchost.exe 2588 Services 0 3ÿ856 Ko
IScheduleSvc.exe 2612 Services 0 10ÿ464 Ko
o2flash.exe 2644 Services 0 3ÿ560 Ko
svchost.exe 2692 Services 0 3ÿ788 Ko
RichVideo.exe 2712 Services 0 4ÿ408 Ko
svchost.exe 2744 Services 0 6ÿ440 Ko
TomTomHOMEService.exe 2772 Services 0 3ÿ080 Ko
twonkymediaserverwatchdog 2828 Services 0 5ÿ668 Ko
UpdaterService.exe 2868 Services 0 3ÿ868 Ko
updatesrv.exe 2900 Services 0 11ÿ436 Ko
WLIDSVC.EXE 2928 Services 0 15ÿ524 Ko
twonkymediaserver.exe 3068 Services 0 12ÿ496 Ko
conhost.exe 2136 Services 0 3ÿ180 Ko
LogMeInSystray.exe 3008 Console 1 15ÿ364 Ko
igfxpers.exe 2264 Console 1 7ÿ096 Ko
SetPoint.exe 3104 Console 1 17ÿ688 Ko
RAVCpl64.exe 3124 Console 1 11ÿ560 Ko
MegaManager.exe 3316 Console 1 62ÿ160 Ko
twonkymediaserverconfig.e 3356 Console 1 8ÿ608 Ko
WLIDSVCM.EXE 3688 Services 0 3ÿ540 Ko
LManager.exe 3192 Console 1 15ÿ428 Ko
MMDx64Fx.exe 3740 Console 1 5ÿ212 Ko
IAStorIcon.exe 3828 Console 1 22ÿ316 Ko
MOM.exe 560 Console 1 6ÿ444 Ko
LMworker.exe 3388 Console 1 4ÿ324 Ko
KHALMNPR.exe 1168 Console 1 12ÿ860 Ko
unsecapp.exe 4584 Console 1 5ÿ960 Ko
WmiPrvSE.exe 4644 Services 0 7ÿ088 Ko
svchost.exe 4892 Services 0 7ÿ944 Ko
svchost.exe 4968 Services 0 6ÿ064 Ko
WUDFHost.exe 5096 Services 0 6ÿ376 Ko
svchost.exe 4228 Services 0 25ÿ220 Ko
wmpnetwk.exe 5132 Services 0 11ÿ316 Ko
CCC.exe 5856 Console 1 6ÿ360 Ko
svchost.exe 1784 Services 0 14ÿ256 Ko
firefox.exe 3628 Console 1 292ÿ412 Ko
dllhost.exe 1412 Services 0 7ÿ860 Ko
PresentationFontCache.exe 4624 Services 0 20ÿ748 Ko
IAStorDataMgrSvc.exe 5412 Services 0 19ÿ948 Ko
UNS.exe 5732 Services 0 9ÿ212 Ko
dllhost.exe 3824 Console 1 6ÿ576 Ko
downloader.exe 2208 Services 0 11ÿ268 Ko
conhost.exe 5200 Services 0 3ÿ296 Ko
taskmgr.exe 5892 Console 1 13ÿ048 Ko
plugin-container.exe 4732 Console 1 14ÿ216 Ko
WmiPrvSE.exe 2444 Services 0 7ÿ596 Ko
audiodg.exe 3120 Services 0 17ÿ584 Ko
cmd.exe 5532 Console 1 3ÿ368 Ko
conhost.exe 5384 Console 1 7ÿ508 Ko
tasklist.exe 5644 Console 1 6ÿ260 Ko
J'ai également fait un scan avec spybot, es qu'il n'a pas le même effet que malwarebytes ?
Le scan de malwarebytes est en cours ...
Le scan de malwarebytes est en cours ...
Dans mon premier poste j'ai commit une erreur j'ai dis : "De plus une fois le programme fermé (même dans les processus) le pourcentage de la mémoire vive utilisé continu de grimper."
C'est pas tout a fait ca : Une fois le programme fermé l'utlisation de la mémoire reste inchangé, or celle ci devrait baisser normalement...
De ce faite si l"utilisation mémoire à atteint les 80% et que finalement je ferme le programme alors, cette valeur restera inchangé (à +/- 3%).
Malwarebytes à terminé le scan voici le détaille :
Malwarebytes' Anti-Malware 1.51.1.1800
www.malwarebytes.org
Version de la base de données: 7164
Windows 6.1.7600
Internet Explorer 8.0.7600.16385
16/07/2011 23:46:11
mbam-log-2011-07-16 (23-46-11).txt
Type d'examen: Examen complet (C:\|)
Elément(s) analysé(s): 304042
Temps écoulé: 29 minute(s), 32 seconde(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 31
Valeur(s) du Registre infectée(s): 4
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 12
Fichier(s) infecté(s): 26
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\AppID\{8258B35C-05B8-4c0e-9525-9BCCC70F8F2D} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{CC7BD6F1-565C-47ce-A5BB-9C935E77B59D} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{02AED140-2B62-4B49-8B3B-179020CC39B9} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{17BF1E05-C0E8-413C-BD1F-A481EEA3B8E9} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.CntntDic.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.CntntDic (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{CFC16189-8A92-4a29-A940-60248385F426} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.CntntDisp.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.CntntDisp (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{DEE758B4-C3FB-4a5b-9939-848B9C77A2FB} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.Stock.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.Stock (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{B58926D6-CFB0-45D2-9C28-4B5A0F0368AE} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{B58926D6-CFB0-45D2-9C28-4B5A0F0368AE} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B58926D6-CFB0-45D2-9C28-4B5A0F0368AE} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1602F07D-8BF3-4c08-BDD6-DDDB1C48AEDC} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{89F88394-3828-4d03-A0CF-8203604C3DA6} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AC6D819E-AA8F-4418-A3BB-D165C1B18BB5} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D4233F04-1789-483c-A137-731E8F113DD5} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ClickPotatoLiteAX.info (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ClickPotatoLiteAX.info.1 (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ClickPotatoLiteAX.UserProfiles (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ClickPotatoLiteAX.UserProfiles.1 (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\MenuButtonIE.ButtonIE (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\MenuButtonIE.ButtonIE.1 (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\BRNstIE.DLL (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\MenuButtonIE.DLL (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\ShopperReports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Software\clickpotatolitesa (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\ClickPotatoLite (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\ShopperReports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\ShopperReports 3.0.517.0 (Adware.HotBar) -> Value: ShopperReports 3.0.517.0 -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\SRS_IT_E8790776B176595033A894 (Malware.Trace) -> Value: SRS_IT_E8790776B176595033A894 -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\extensions\ShopperReports@ShopperReports.com (ShopperReports) -> Value: ShopperReports@ShopperReports.com -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\extensions\ClickPotatoLite@ClickPotatoLite.com (Adware.ClickPotato) -> Value: ClickPotatoLite@ClickPotatoLite.com -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
c:\programdata\clickpotatolitesa (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\Users\Marc\AppData\Roaming\shopperreports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0 (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\firefox (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions\chrome (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions\components (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\clickpotato (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\shopperreports (Adware.ShopperReports) -> Quarantined and deleted successfully.
Fichier(s) infecté(s):
c:\program files (x86)\shopperreports3\bin\3.0.517.0\cntntcntr.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\BRNstIE.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\mozillaps.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions\components\BRNstFF.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\Users\Marc\Desktop\sauvegarde robin\mes programmes\Adobe\macromedia dreamweaver v8.02 fr\Keygen\keygen.exe (Riskware.Tool.CK) -> Quarantined and deleted successfully.
c:\Users\Marc\Desktop\sauvegarde robin\mes programmes\logiciel portable\photoshop.cs3.portable\CSDATA\1000000600002i\svchost.exe (Rootkit.Dropper) -> Quarantined and deleted successfully.
c:\Users\Marc\Desktop\sauvegarde robin\mes programmes\logiciel portable\photoshop.cs3.portable\CSDATA\1000000b00002i\rundll32.exe (Rootkit.Dropper) -> Quarantined and deleted successfully.
c:\Users\Marc\Desktop\sauvegarde robin\mes programmes\logiciel portable\photoshop.cs3.portable\CSDATA\400000a500003i\fnplicensingservice.exe (Rootkit.Dropper) -> Quarantined and deleted successfully.
c:\Users\Marc\Desktop\sauvegarde robin\mes programmes\o&odefrag\o&odefrag\keygen.exe (Backdoor.RBot) -> Quarantined and deleted successfully.
c:\Users\Marc\documents\my downloads\O10\mini-kms_activator_v1.052\mini-kms_activator_v1.052.exe (Riskware.Keygen) -> Quarantined and deleted successfully.
c:\programdata\clickpotatolitesa\clickpotatolitesa.dat (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\programdata\clickpotatolitesa\clickpotatolitesaabout.mht (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\programdata\clickpotatolitesa\clickpotatolitesaau.dat (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\programdata\clickpotatolitesa\clickpotatolitesaeula.mht (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\programdata\clickpotatolitesa\clickpotatolitesa_kyf.dat (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\link.ico (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions\chrome.manifest (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions\install.rdf (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions\chrome\firefoxtoolbar.jar (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions\components\BRNstFF.xpt (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\clickpotato\About Us.lnk (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\clickpotato\clickpotato customer support.lnk (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\clickpotato\clickpotato uninstall instructions.lnk (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\shopperreports\About Us.lnk (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\shopperreports\customer support.lnk (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\shopperreports\shopperreports uninstall instructions.lnk (Adware.ShopperReports) -> Quarantined and deleted successfully.
C'est pas tout a fait ca : Une fois le programme fermé l'utlisation de la mémoire reste inchangé, or celle ci devrait baisser normalement...
De ce faite si l"utilisation mémoire à atteint les 80% et que finalement je ferme le programme alors, cette valeur restera inchangé (à +/- 3%).
Malwarebytes à terminé le scan voici le détaille :
Malwarebytes' Anti-Malware 1.51.1.1800
www.malwarebytes.org
Version de la base de données: 7164
Windows 6.1.7600
Internet Explorer 8.0.7600.16385
16/07/2011 23:46:11
mbam-log-2011-07-16 (23-46-11).txt
Type d'examen: Examen complet (C:\|)
Elément(s) analysé(s): 304042
Temps écoulé: 29 minute(s), 32 seconde(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 31
Valeur(s) du Registre infectée(s): 4
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 12
Fichier(s) infecté(s): 26
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
HKEY_CLASSES_ROOT\AppID\{8258B35C-05B8-4c0e-9525-9BCCC70F8F2D} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{CC7BD6F1-565C-47ce-A5BB-9C935E77B59D} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{02AED140-2B62-4B49-8B3B-179020CC39B9} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{17BF1E05-C0E8-413C-BD1F-A481EEA3B8E9} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.CntntDic.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.CntntDic (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{CFC16189-8A92-4a29-A940-60248385F426} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.CntntDisp.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.CntntDisp (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{DEE758B4-C3FB-4a5b-9939-848B9C77A2FB} (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.Stock.1 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ShopperReports.Stock (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{B58926D6-CFB0-45D2-9C28-4B5A0F0368AE} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{B58926D6-CFB0-45D2-9C28-4B5A0F0368AE} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B58926D6-CFB0-45D2-9C28-4B5A0F0368AE} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1602F07D-8BF3-4c08-BDD6-DDDB1C48AEDC} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{89F88394-3828-4d03-A0CF-8203604C3DA6} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{AC6D819E-AA8F-4418-A3BB-D165C1B18BB5} (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D4233F04-1789-483c-A137-731E8F113DD5} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ClickPotatoLiteAX.info (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ClickPotatoLiteAX.info.1 (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ClickPotatoLiteAX.UserProfiles (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ClickPotatoLiteAX.UserProfiles.1 (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\MenuButtonIE.ButtonIE (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\MenuButtonIE.ButtonIE.1 (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\BRNstIE.DLL (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AppID\MenuButtonIE.DLL (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\ShopperReports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Software\clickpotatolitesa (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\ClickPotatoLite (Adware.ClickPotato) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\ShopperReports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
Valeur(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\ShopperReports 3.0.517.0 (Adware.HotBar) -> Value: ShopperReports 3.0.517.0 -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\5.0\User Agent\Post Platform\SRS_IT_E8790776B176595033A894 (Malware.Trace) -> Value: SRS_IT_E8790776B176595033A894 -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\extensions\ShopperReports@ShopperReports.com (ShopperReports) -> Value: ShopperReports@ShopperReports.com -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\extensions\ClickPotatoLite@ClickPotatoLite.com (Adware.ClickPotato) -> Value: ClickPotatoLite@ClickPotatoLite.com -> Quarantined and deleted successfully.
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
c:\programdata\clickpotatolitesa (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\Users\Marc\AppData\Roaming\shopperreports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3 (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0 (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\firefox (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions\chrome (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions\components (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\clickpotato (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\shopperreports (Adware.ShopperReports) -> Quarantined and deleted successfully.
Fichier(s) infecté(s):
c:\program files (x86)\shopperreports3\bin\3.0.517.0\cntntcntr.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\BRNstIE.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\mozillaps.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions\components\BRNstFF.dll (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\Users\Marc\Desktop\sauvegarde robin\mes programmes\Adobe\macromedia dreamweaver v8.02 fr\Keygen\keygen.exe (Riskware.Tool.CK) -> Quarantined and deleted successfully.
c:\Users\Marc\Desktop\sauvegarde robin\mes programmes\logiciel portable\photoshop.cs3.portable\CSDATA\1000000600002i\svchost.exe (Rootkit.Dropper) -> Quarantined and deleted successfully.
c:\Users\Marc\Desktop\sauvegarde robin\mes programmes\logiciel portable\photoshop.cs3.portable\CSDATA\1000000b00002i\rundll32.exe (Rootkit.Dropper) -> Quarantined and deleted successfully.
c:\Users\Marc\Desktop\sauvegarde robin\mes programmes\logiciel portable\photoshop.cs3.portable\CSDATA\400000a500003i\fnplicensingservice.exe (Rootkit.Dropper) -> Quarantined and deleted successfully.
c:\Users\Marc\Desktop\sauvegarde robin\mes programmes\o&odefrag\o&odefrag\keygen.exe (Backdoor.RBot) -> Quarantined and deleted successfully.
c:\Users\Marc\documents\my downloads\O10\mini-kms_activator_v1.052\mini-kms_activator_v1.052.exe (Riskware.Keygen) -> Quarantined and deleted successfully.
c:\programdata\clickpotatolitesa\clickpotatolitesa.dat (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\programdata\clickpotatolitesa\clickpotatolitesaabout.mht (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\programdata\clickpotatolitesa\clickpotatolitesaau.dat (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\programdata\clickpotatolitesa\clickpotatolitesaeula.mht (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\programdata\clickpotatolitesa\clickpotatolitesa_kyf.dat (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\link.ico (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions\chrome.manifest (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions\install.rdf (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions\chrome\firefoxtoolbar.jar (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\program files (x86)\shopperreports3\bin\3.0.517.0\firefox\firefoxtoolbar\extensions\components\BRNstFF.xpt (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\clickpotato\About Us.lnk (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\clickpotato\clickpotato customer support.lnk (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\clickpotato\clickpotato uninstall instructions.lnk (Adware.ClickPotato) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\shopperreports\About Us.lnk (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\shopperreports\customer support.lnk (Adware.ShopperReports) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\shopperreports\shopperreports uninstall instructions.lnk (Adware.ShopperReports) -> Quarantined and deleted successfully.
Bon
Comme quoi un antivirus seul reserve des surprise.
Perso je vous conseil de faire un ZHPDIAG c'est un outil de diagnostique
http://www.premiumorange.com/zeb-help-process/zhpdiag.html
Il va generer un log copier le coller le dans ce site : https://www.cjoint.com/
Il va vous générer une adresse copier là et coller là sur votre prochaine réponse pour finir le nettoyage.
Il faut allez plus loin dans le nettoyage, si je peu vous aidez, si c'est dure on verra avec des helper.
A+
Comme quoi un antivirus seul reserve des surprise.
Perso je vous conseil de faire un ZHPDIAG c'est un outil de diagnostique
http://www.premiumorange.com/zeb-help-process/zhpdiag.html
Il va generer un log copier le coller le dans ce site : https://www.cjoint.com/
Il va vous générer une adresse copier là et coller là sur votre prochaine réponse pour finir le nettoyage.
Il faut allez plus loin dans le nettoyage, si je peu vous aidez, si c'est dure on verra avec des helper.
A+
D'accord j'ai relancé un scan antivirus et il ma détecté d'autre chose seulement le scan est encore en cour je collerai le rapport quand il aura terminé.
Pour ce qui est de l'autre scan il est également en cour.
Pour ce qui est de l'autre scan il est également en cour.
Voici les élément supprimé par l'antivirus :
[-]Problèmes résolusChemin d'accès à l'objet Nom de la menace État final
C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Cookies\marc@adtech[1].txt Cookie.Adtech Supprimé
C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Cookies\marc@clubmed.solution.weborama[2].txt Cookie.Weborama Supprimé
C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Cookies\marc@doubleclick[1].txt Cookie.DoubleClick Supprimé
C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Cookies\marc@weborama[1].txt Cookie.Weborama Supprimé
C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Cookies\marc@barrirepoker.solution.weborama[2].txt Cookie.Weborama Supprimé
C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Cookies\marc@statcounter[1].txt Cookie.Statcounter Supprimé
C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Cookies\marc@tradedoubler[1].txt Cookie.TradeDoubler Supprimé
C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Cookies\marc@bouyguestelecom.solution.weborama[2].txt Cookie.Weborama Supprimé
C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Cookies\marc@xiti[1].txt Cookie.Xiti Supprimé
[-]Problèmes résolusChemin d'accès à l'objet Nom de la menace État final
C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Cookies\marc@adtech[1].txt Cookie.Adtech Supprimé
C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Cookies\marc@clubmed.solution.weborama[2].txt Cookie.Weborama Supprimé
C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Cookies\marc@doubleclick[1].txt Cookie.DoubleClick Supprimé
C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Cookies\marc@weborama[1].txt Cookie.Weborama Supprimé
C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Cookies\marc@barrirepoker.solution.weborama[2].txt Cookie.Weborama Supprimé
C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Cookies\marc@statcounter[1].txt Cookie.Statcounter Supprimé
C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Cookies\marc@tradedoubler[1].txt Cookie.TradeDoubler Supprimé
C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Cookies\marc@bouyguestelecom.solution.weborama[2].txt Cookie.Weborama Supprimé
C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Cookies\marc@xiti[1].txt Cookie.Xiti Supprimé
Voici le lien du scan de ZHPDIAG : https://www.cjoint.com/?AGrbqY3w8EO
C'est peut etre anodin mais à chaque fois que j'éteint mon PC windows me met qu'il dois forcer le redémarrage car Task host windows ne s'est pas fermé correctement.
Comme sur cette image mais en français :p : https://www.cjoint.com/?AGrlKPGFlvj
C'est peut etre anodin mais à chaque fois que j'éteint mon PC windows me met qu'il dois forcer le redémarrage car Task host windows ne s'est pas fermé correctement.
Comme sur cette image mais en français :p : https://www.cjoint.com/?AGrlKPGFlvj
Il y a des infections notement un Rookit.
Alors telecharger ce soft et lancer le diagnostique :
https://www.commentcamarche.net/telecharger/securite/19573-rootkit-buster/
PAr contre si vous avez un Win 7 64Bit ne faite rien.
Alors telecharger ce soft et lancer le diagnostique :
https://www.commentcamarche.net/telecharger/securite/19573-rootkit-buster/
PAr contre si vous avez un Win 7 64Bit ne faite rien.
Si vous avez un win 64 Bit essayer celui là
http://www.commentcamarche.net/download/telecharger-34080423-gmer
le tuto est ici https://www.malekal.com/tutorial-gmer/
http://www.commentcamarche.net/download/telecharger-34080423-gmer
le tuto est ici https://www.malekal.com/tutorial-gmer/
Voici le rapport :
GMER 1.0.15.15530 - http://www.gmer.net
Rootkit scan 2011-07-18 20:36:21
Windows 6.1.7600
Running: GMER1.0.15.15507.exe
---- Registry - GMER 1.0.15 ----
Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\4c0f6e3e216b
Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\4c0f6e3e216b (not active ControlSet)
---- EOF - GMER 1.0.15 ----
GMER 1.0.15.15530 - http://www.gmer.net
Rootkit scan 2011-07-18 20:36:21
Windows 6.1.7600
Running: GMER1.0.15.15507.exe
---- Registry - GMER 1.0.15 ----
Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\4c0f6e3e216b
Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\4c0f6e3e216b (not active ControlSet)
---- EOF - GMER 1.0.15 ----