Alors voilà j'ai effectué tout ce qu'on m'a, je post le rapport :
[b]SDFix: Version 1.240 /b
Run by makake on 10/11/2009 at 09:03
Microsoft Windows XP [version 5.1.2600]
Running From: C:\SDFix
[b]Checking Services /b:
[b]Name /b:
c5v99uka5ix7f8x
[b]Path /b:
C:\WINDOWS\system32\touzootoo.exe
c5v99uka5ix7f8x - Deleted
Restoring Default Security Values
Restoring Default Hosts File
Rebooting
[b]Checking Files /b:
Trojan Files Found:
C:\WINDOWS\system32\touzootoo.exe - Deleted
Removing Temp Files
[b]ADS Check /b:
[b]Final Check /b:
catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-11-10 09:05:41
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
scanning hidden registry entries ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0
[b]Remaining Services /b:
Authorized Application Key Export:
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\ma-config.com\\maconfservice.exe"="C:\\Program Files\\ma-config.com\\maconfservice.exe:LocalSubNet:Enabled:maconfservice"
"C:\\Documents and Settings\\makake\\Bureau\\Metin2_France\\metin2.bin"="C:\\Documents and Settings\\makake\\Bureau\\Metin2_France\\metin2.bin:*:Enabled:metin2"
"C:\\WINDOWS\\System32\\18.scr"="C:\\WINDOWS\\System32\\18.scr:*:C:\\WINDOWS\\mslsrv32.exe"
"C:\\WINDOWS\\System32\\76.scr"="C:\\WINDOWS\\System32\\76.scr:*:C:\\WINDOWS\\mslsrv32.exe"
"C:\\WINDOWS\\System32\\80.scr"="C:\\WINDOWS\\System32\\80.scr:*:C:\\WINDOWS\\mslsrv32.exe"
"C:\\WINDOWS\\System32\\86.scr"="C:\\WINDOWS\\System32\\86.scr:*:C:\\WINDOWS\\mslsrv32.exe"
"C:\\WINDOWS\\System32\\52.scr"="C:\\WINDOWS\\System32\\52.scr:*:C:\\WINDOWS\\mslsrv32.exe"
"C:\\WINDOWS\\System32\\85.scr"="C:\\WINDOWS\\System32\\85.scr:*:C:\\WINDOWS\\mslsrv32.exe"
"C:\\WINDOWS\\System32\\61.scr"="C:\\WINDOWS\\System32\\61.scr:*:C:\\WINDOWS\\mslsrv32.exe"
"C:\\WINDOWS\\System32\\54.scr"="C:\\WINDOWS\\System32\\54.scr:*:C:\\WINDOWS\\mslsrv32.exe"
"C:\\WINDOWS\\System32\\05.scr"="C:\\WINDOWS\\System32\\05.scr:*:C:\\WINDOWS\\mslsrv32.exe"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:MSN Messenger 7.5"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:MSN Messenger 7.5"
[b]Remaining Files /b:
File Backups: - C:\SDFix\backups\backups.zip
[b]Files with Hidden Attributes /b:
Sat 7 Nov 2009 61,952 ..SHR --- "C:\WINDOWS\mslsrv32.exe"
[b]Finished!/b
Je n'ai pas eu le message qui est réapparue pour l'instant, en revanche mon anti virus avast détecte toujours : C:\WINDOWS\mslsrv32.exe, C:\WINDOWS\system32\drivers/drivers.php3 driver]agp440.dll
merci