J'ai lané SDFix et voilà ce qu'il dit:
[b]SDFix: Version 1.240 /b
Run by christine lagraviere on 17/04/2009 at 16:24
Microsoft Windows XP [version 5.1.2600]
Running From: C:\SDFix
[b]Checking Services /b:
Restoring Default Security Values
Restoring Default Hosts File
Rebooting
[b]Checking Files /b:
No Trojan Files Found
Removing Temp Files
[b]ADS Check /b:
[b]Final Check /b:
catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-04-17 16:35:11
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
disk error: C:\WINDOWS\system32\config\system, 0
scanning hidden registry entries ...
disk error: C:\WINDOWS\system32\config\software, 0
disk error: C:\Documents and Settings\christine lagraviere\ntuser.dat, 0
scanning hidden files ...
disk error: C:\WINDOWS\
please note that you need administrator rights to perform deep scan
[b]Remaining Services /b:
Authorized Application Key Export:
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"C:\\Program Files\\Azureus\\Azureus.exe"="C:\\Program Files\\Azureus\\Azureus.exe:*:Enabled:Azureus"
"C:\\WINDOWS\\system32\\winlogon.exe"="C:\\WINDOWS\\system32\\winlogon.exe:*:Enabled:winlogon"
"C:\\WINDOWS\\system32\\lsass.exe"="C:\\WINDOWS\\system32\\lsass.exe:*:Enabled:lsass"
"C:\\Program Files\\BitDefender\\BitDefender 2008\\bdagent.exe"="C:\\Program Files\\BitDefender\\BitDefender 2008\\bdagent.exe:*:Enabled:bdagent"
"C:\\WINDOWS\\mixer.exe"="C:\\WINDOWS\\mixer.exe:*:Enabled:Mixer"
"C:\\Program Files\\Internet Explorer\\iexplore.exe"="C:\\Program Files\\Internet Explorer\\iexplore.exe:*:Enabled:iexplore"
"C:\\WINDOWS\\system\\kernel32.exe"="C:\\WINDOWS\\system\\kernel32.exe:*:Enabled:rundll32"
"C:\\Documents and Settings\\christine lagraviere\\Local Settings\\Temporary Internet Files\\Content.IE5\\0GX9KFP3\\installer_70000[1].exe"="C:\\Documents and Settings\\christine lagraviere\\Local Settings\\Temporary Internet Files\\Content.IE5\\0GX9KFP3\\installer_70000[1].exe:*:Enabled:installer"
"C:\\WINDOWS\\system\\dop.exe"="C:\\WINDOWS\\system\\dop.exe:*:Enabled:se"
"C:\\WINDOWS\\system\\se.exe"="C:\\WINDOWS\\system\\se.exe:*:Enabled:se"
"C:\\WINDOWS\\explorer.exe"="C:\\WINDOWS\\explorer.exe:*:Enabled:Explorer"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
[b]Remaining Files /b:
[b]Files with Hidden Attributes /b:
Fri 31 Oct 2008 24 ..SH. --- "C:\WINDOWS\SD61602A6.tmp"
Wed 22 Oct 2008 949,072 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\advcheck.dll"
Mon 15 Sep 2008 1,562,960 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SDHelper.dll"
Mon 7 Jul 2008 1,429,840 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SDUpdate.exe"
Mon 7 Jul 2008 4,891,472 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe"
Tue 16 Sep 2008 1,833,296 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe"
Wed 22 Oct 2008 962,896 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\Tools.dll"
Wed 8 Apr 2009 49,152 A.SH. --- "C:\WINDOWS\system32\dojapode.dll"
Mon 13 Apr 2009 87,552 A.SH. --- "C:\WINDOWS\system32\duzemibe.dll"
Sun 5 Apr 2009 912 A.SH. --- "C:\WINDOWS\system32\gerogije.exe"
Thu 16 Apr 2009 87,552 A.SH. --- "C:\WINDOWS\system32\hisigopi.dll"
Sun 4 Jan 2009 0 A.SH. --- "C:\WINDOWS\system32\jeyamiku.dll"
Sun 4 Jan 2009 0 A.SH. --- "C:\WINDOWS\system32\jogigulo.dll"
Mon 13 Apr 2009 51,200 A.SH. --- "C:\WINDOWS\system32\melidawa.exe"
Sun 4 Jan 2009 0 A.SH. --- "C:\WINDOWS\system32\ponurone.dll"
Wed 8 Apr 2009 87,552 A.SH. --- "C:\WINDOWS\system32\ravuhavu.dll"
Tue 7 Apr 2009 912 A.SH. --- "C:\WINDOWS\system32\suhalewo.exe"
Thu 9 Apr 2009 87,552 A.SH. --- "C:\WINDOWS\system32\tehisuvo.dll"
Sun 12 Apr 2009 51,200 A.SH. --- "C:\WINDOWS\system32\wavenimu.exe"
Sun 9 Nov 2008 4,348 A.SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Wed 29 Oct 2008 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"
Sat 4 Apr 2009 36,218,232 A..H. --- "C:\Documents and Settings\nicolas\Local Settings\Temp\BIT1C5.tmp"
Wed 29 Oct 2008 141 A..H. --- "C:\Documents and Settings\julien\Application Data\Microsoft\Internet Explorer\brndlog.bak"
Thu 30 Oct 2008 20,040 A..H. --- "C:\Documents and Settings\julien\Application Data\Microsoft\IdentityCRL\Production\ppcrlconfig.dll"
[b]Finished!/b