Salut
J'ai un problème, depuis cet après-midi, mon PC Freeze au démarrage avec svchost.exe qui utilise 99% de la RAM
J'ai fait une analyse avec Malwarebytes :
Version de la base de données: v2013.09.28.06
Windows 7 Service Pack 1 x64 NTFS (Mode sans échec/Réseau)
Internet Explorer 10.0.9200.16686
Frederic :: FREDERICPC [administrateur]
Protection: Désactivé
28/09/2013 16:30:05
MBAM-log-2013-09-28 (16-47-12).txt
Type d'examen: Examen rapide
Options d'examen activées: Mémoire | Démarrage | Registre | Système de fichiers | Heuristique/Extra | Heuristique/Shuriken | PUP | PUM
Options d'examen désactivées: P2P
Elément(s) analysé(s): 290380
Temps écoulé: 13 minute(s), 50 seconde(s)
Processus mémoire détecté(s): 0
(Aucun élément nuisible détecté)
Module(s) mémoire détecté(s): 0
(Aucun élément nuisible détecté)
Clé(s) du Registre détectée(s): 14
HKCR\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9} (PUP.Software.Updater) -> Aucune action effectuée.
HKCR\TypeLib\{A0EE0278-2986-4E5A-884E-A3BF0357E476
}
(PUP.Software.Updater) -> Aucune action effectuée.
HKCR\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C
67}
(PUP.Software.Updater) -> Aucune action effectuée.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uni
nstall\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}
(PUP.Software.Updater) -> Aucune action effectuée.
HKCR\Updater.AmiUpd.1 (PUP.Software.Updater) -> Aucune action effectuée.
HKCR\Updater.AmiUpd (PUP.Software.Updater) -> Aucune action effectuée.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{11111111-1111-1111-1111-11
0111991162}
(PUP.Optional.Crossrider) -> Aucune action effectuée.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext
\PreApproved\{11111111-1111-1111-1111-110111991162
}
(PUP.Optional.Crossrider) -> Aucune action effectuée.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RIAICCAPE.EXE (Trojan.Agent) -> Aucune action effectuée.
HKLM\SOFTWARE\Boxore (Adware.Boxore) -> Aucune action effectuée.
HKLM\SOFTWARE\EoRezo (Rogue.Eorezo) -> Aucune action effectuée.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rstrui.exe (Security.Hijack) -> Aucune action effectuée.
HKLM\SOFTWARE\SWEETIM (PUP.Optional.SweetIM.A) -> Aucune action effectuée.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\XSLJQLOHP.EXE (Trojan.Agent.Gen) -> Aucune action effectuée.
Valeur(s) du Registre détectée(s): 3
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
Once|svchost
(Trojan.Agent) -> Données: "C:\ProgramData\svchost0\riaiccape.exe" -> Aucune action effectuée.
HKLM\Software\SweetIM|simapp_id (PUP.Optional.SweetIM.A) -> Données: {CC3DD273-239C-11E2-B4A7-FA42099FFACF} -> Aucune action effectuée.
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVer
sion\RunOnce|svchost
(Trojan.Agent.Gen) -> Données: "C:\windows\system32\config\systemprofile\AppData\
Roaming\svchost0\xsljqlohp.exe"
-> Aucune action effectuée.
Elément(s) de données du Registre détecté(s): 0
(Aucun élément nuisible détecté)
Dossier(s) détecté(s): 6
C:\ProgramData\svchost0 (Trojan.Agent.Gen) -> Aucune action effectuée.
C:\Windows\System32\config\systemprofile\AppData\R
oaming\svchost0
(Trojan.Agent.Gen) -> Aucune action effectuée.
C:\Windows\System32\config\systemprofile\AppData\R
oaming\DealPly
(PUP.Optional.DealPly.A) -> Aucune action effectuée.
C:\Windows\System32\config\systemprofile\AppData\R
oaming\DealPly\UpdateProc
(PUP.Optional.DealPly.A) -> Aucune action effectuée.
C:\Windows\System32\config\systemprofile\AppData\R
oaming\Iminent\Mediator
(PUP.Optional.Iminent.A) -> Aucune action effectuée.
C:\Windows\System32\config\systemprofile\AppData\R
oaming\Iminent\Mediator\Datas
(PUP.Optional.Iminent.A) -> Aucune action effectuée.
Fichier(s) détecté(s): 27
C:\Users\Frederic\AppData\Local\SwvUpdater\Updater
.exe
(PUP.Software.Updater) -> Aucune action effectuée.
C:\Users\Frederic\AppData\Roaming\uTorrent\ism.exe
(PUP.Optional.Conduit.A) -> Aucune action effectuée.
C:\Users\Administrateur\AppData\Local\Temp\svchost
.exe
(PUP.BitCoinMiner) -> Aucune action effectuée.
C:\Users\JEUX\AppData\Local\Temp\svchost.exe (PUP.BitCoinMiner) -> Aucune action effectuée.
C:\Users\Frederic\Downloads\FlashPlayer_V.63296020
c.exe
(Adware.DomaIQ) -> Aucune action effectuée.
C:\Users\Frederic\Downloads\Pazera_Free_MP4_to_AVI
_Converter.exe
(PUP.Optional.InstallCore) -> Aucune action effectuée.
C:\Users\Frederic\Downloads\Setup.exe (PUP.Optional.Solimba.mr) -> Aucune action effectuée.
C:\Users\Frederic\Downloads\SportHunterTVApp_setup
(18_1)_4.exe
(PUP.BundleInstaller.DW) -> Aucune action effectuée.
C:\Windows\Installer\1ffcba7.msi (PUP.Optional.Iminent) -> Aucune action effectuée.
C:\Windows\Installer\224a6eb.msi (Adware.Boxore) -> Aucune action effectuée.
C:\Windows\Installer\2ecd4ce.msi (PUP.Optional.SweetIM) -> Aucune action effectuée.
C:\Windows\Installer\2ecd4d3.msi (PUP.Optional.SweetIM) -> Aucune action effectuée.
C:\Windows\Installer\2ecd4d8.msi (PUP.Optional.SweetIM) -> Aucune action effectuée.
C:\Windows\Installer\2ecd4dd.msi (PUP.Optional.SweetIM) -> Aucune action effectuée.
C:\Windows\Tasks\AmiUpdXp.job (PUP.Software.Updater) -> Aucune action effectuée.
C:\Users\Administrateur\AppData\Local\Temp\svchost
.exe
(Trojan.Agent.Gen) -> Aucune action effectuée.
C:\Users\Frédéric\AppData\Local\Temp\svchost.exe (Trojan.Agent.Gen) -> Aucune action effectuée.
C:\Users\JEUX\AppData\Local\Temp\svchost.exe (Trojan.Agent.Gen) -> Aucune action effectuée.
C:\Users\Administrateur\AppData\Local\Temp\phatk12
0724.cl
(Trojan.BitcoinMiner) -> Aucune action effectuée.
C:\Users\Frédéric\AppData\Local\Temp\phatk120724.c
l
(Trojan.BitcoinMiner) -> Aucune action effectuée.
C:\Users\JEUX\AppData\Local\Temp\phatk120724.cl (Trojan.BitcoinMiner) -> Aucune action effectuée.
C:\ProgramData\svchost0\riaiccape.exe (Trojan.Agent) -> Aucune action effectuée.
C:\Windows\System32\config\systemprofile\AppData\R
oaming\svchost0\xsljqlohp.exe
(Trojan.Agent.Gen) -> Aucune action effectuée.
C:\Windows\System32\config\systemprofile\AppData\R
oaming\DealPly\UpdateProc\config.dat
(PUP.Optional.DealPly.A) -> Aucune action effectuée.
C:\Windows\System32\config\systemprofile\AppData\R
oaming\DealPly\UpdateProc\UpdateTask.exe
(PUP.Optional.DealPly.A) -> Aucune action effectuée.
C:\Windows\System32\config\systemprofile\AppData\R
oaming\Iminent\Mediator\Datas\globalcache.dat
(PUP.Optional.Iminent.A) -> Aucune action effectuée.
C:\Windows\System32\config\systemprofile\AppData\R
oaming\Iminent\Mediator\Datas\user.dat
(PUP.Optional.Iminent.A) -> Aucune action effectuée.
(fin)
Et Avast me détecte 3 svchost.exe aussi
Que faire ?
Voilà
beaucoup 