Pour commencer, merci beaucoup pour la vitesse de la réponse !
et voici le rapport SDFix :
[b]SDFix: Version 1.240 /b
Run by PkD on 09/11/2008 at 15:34
Microsoft Windows XP [version 5.1.2600]
Running From: C:\SDFix
[b]Checking Services /b:
Restoring Default Security Values
Restoring Default Hosts File
Rebooting
[b]Checking Files /b:
Trojan Files Found:
C:\autorun.inf - Deleted
Removing Temp Files
[b]ADS Check /b:
[b]Final Check /b:
catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-11-09 15:37:34
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\ESENT]
"EventMessageFile"=str(2):"c:\windows\system32\ESENT.dll"
"CategoryMessageFile"=str(2):"c:\windows\system32\ESENT.dll"
scanning hidden registry entries ...
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\{70930697-80F6-1CA5-C1F7-2D2D30DF6421}]
"halboohbmdgdkelc"=hex:63,62,6f,63,62,68,6d,61,6b,6c,61,61,61,6f,69,6d,6c,6a,6d,68,62,..
"iafciiflblncoohefn"=hex:63,62,6f,63,62,68,6d,61,6b,6c,61,61,61,6f,69,6d,6c,6a,6d,68,62,..
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0
[b]Remaining Services /b:
Authorized Application Key Export:
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"D:\\Program Files\\UnrealTournament\\System\\UnrealTournament.exe"="D:\\Program Files\\UnrealTournament\\System\\UnrealTournament.exe:*:Enabled:UnrealTournament"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"D:\\Jeux\\Copie de Unreal Tournament\\System\\UnrealTournament.exe"="D:\\Jeux\\Copie de Unreal Tournament\\System\\UnrealTournament.exe:*:Enabled:UnrealTournament"
"D:\\Jeux\\Unreal Tournament\\System\\UnrealTournament.exe"="D:\\Jeux\\Unreal Tournament\\System\\UnrealTournament.exe:*:Enabled:UnrealTournament"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
[b]Remaining Files /b:
File Backups: - C:\SDFix\backups\backups.zip
[b]Files with Hidden Attributes /b:
Sun 9 Nov 2008 110,013 ..SHR --- "C:\sq.com"
Sun 9 Nov 2008 110,013 ..SHR --- "C:\WINDOWS\system32\ckvo.exe"
Sun 9 Nov 2008 85,504 ..SHR --- "C:\WINDOWS\system32\ckvo0.dll"
Sat 18 Oct 2008 0 A..H. --- "C:\Documents and Settings\PkD\Mes documents\Cours\Reseaux\~WRL0001.tmp"
[b]Finished!/b