Voila le rapport sd fix
ça semble rentre dans l'ordre y compris mes soucis d'active X sur internet explorer
le seul probleme persistant est que je ne peux plus ouvrir mes mail sur ma boite msn
merci de ton aide
[b]SDFix: Version 1.211 /b
Run by Olivier on 02/08/2008 at 00:42
Microsoft Windows XP [version 5.1.2600]
Running From: C:\SDFix
[b]Checking Services /b:
Restoring Default Security Values
Restoring Default Hosts File
Rebooting
[b]Checking Files /b:
Trojan Files Found:
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt11.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt14.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt16.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt18.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt182.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt1A.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt1C.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt1E.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt1ED.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt1F.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt1F8.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt1FB.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt1FE.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt20.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt22.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt25.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt27.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt28.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt29.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt2B.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt2C.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt2D.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt2F.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt30.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt31.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt33.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt34.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt35.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt37.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt38.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt39.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt3B.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.ttC6.tmp - Deleted
C:\DOCUME~1\Olivier\LOCALS~1\Temp\.tt182.tmp.vbs - Deleted
C:\WINDOWS\system32\nvrsul32.dll - Deleted
Removing Temp Files
[b]ADS Check /b:
[b]Final Check /b:
catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-08-02 00:52:50
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
scanning hidden registry entries ...
scanning hidden files ...
C:\WINDOWS\SoftwareDistribution\DataStore\Logs\tmp.edb 65536 bytes
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 1
[b]Remaining Services /b:
Authorized Application Key Export:
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\eMule\\emule.exe"="C:\\Program Files\\eMule\\emule.exe:*:Enabled:eMule"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\\Program Files\\iTunes\\iTunes.exe"="C:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"C:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\SAGENT4.EXE"="C:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\SAGENT4.EXE:*:Enabled:SAgent4"
"C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
"C:\\Documents and Settings\\Olivier\\Local Settings\\Temp\\ImInstaller\\incredimail_installer.exe"="C:\\Documents and Settings\\Olivier\\Local Settings\\Temp\\ImInstaller\\incredimail_installer.exe:*:Enabled:IncrediMail Installer"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
[b]Remaining Files /b:
File Backups: - C:\SDFix\backups\backups.zip
[b]Files with Hidden Attributes /b:
Mon 28 Jan 2008 1,404,240 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SDUpdate.exe"
Mon 28 Jan 2008 5,146,448 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe"
Mon 28 Jan 2008 2,097,488 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe"
Thu 10 Mar 2005 4,348 ..SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Fri 13 Jul 2007 50,974 ...H. --- "C:\Documents and Settings\Olivier\Mes documents\eFax Messenger 4.2\J2GPlus.exe-BarState"
Thu 17 Jul 2008 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\24af2a69c06a4de03e35dc89d706475f\BIT2A2.tmp"
Wed 12 Dec 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\4633c51c90c17af214c8eeab40b9fcf4\BIT167.tmp"
Thu 27 Sep 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\778fd2fc3fe6b905e366b5ddbba384c8\BIT1.tmp"
Thu 10 Mar 2005 4,348 ...H. --- "C:\Documents and Settings\Olivier\Mes documents\Ma musique\Sauvegarde de la licence\drmv1key.bak"
Fri 27 Apr 2007 20 A..H. --- "C:\Documents and Settings\Olivier\Mes documents\Ma musique\Sauvegarde de la licence\drmv1lic.bak"
Thu 10 Mar 2005 400 A.SH. --- "C:\Documents and Settings\Olivier\Mes documents\Ma musique\Sauvegarde de la licence\drmv2key.bak"
[b]Finished!/b