C'est bon, j'ai trouvé.. Voici le rapport de SDFix :
[b]SDFix: Version 1.240 /b
Run by No‚mie on 10/12/2008 at 21:36
Microsoft Windows XP [version 5.1.2600]
Running From: C:\SDFix
[b]Checking Services /b:
Restoring Default Security Values
Restoring Default Hosts File
Rebooting
[b]Checking Files /b:
No Trojan Files Found
Removing Temp Files
[b]ADS Check /b:
[b]Final Check /b:
catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-12-10 21:46:24
Windows 5.1.2600 Service Pack 3 FAT NTAPI
scanning hidden processes ...
scanning hidden services ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0
[b]Remaining Services /b:
Authorized Application Key Export:
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.0"
"C:\\Program Files\\MSN Messenger\\msncall.exe"="C:\\Program Files\\MSN Messenger\\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone)"
"C:\\Program Files\\eMule\\emule.exe"="C:\\Program Files\\eMule\\emule.exe:*:Enabled:eMule"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE"="C:\\Program Files\\Internet Explorer\\IEXPLORE.EXE:*:Enabled:Internet Explorer"
"C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
"C:\\Program Files\\iTunes\\iTunes.exe"="C:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.0"
"C:\\Program Files\\MSN Messenger\\msncall.exe"="C:\\Program Files\\MSN Messenger\\msncall.exe:*:Enabled:Windows Live Messenger 8.0 (Phone)"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[b]Remaining Files /b:
[b]Files with Hidden Attributes /b:
Wed 5 May 1999 3,758 ...H. --- "C:\ARDRIVE.SYS"
Mon 1 Sep 2003 1,024 ...HR --- "C:\WINDOWS\system32\NTICDMK32.dll"
Sun 27 Jun 2004 401 ..SH. --- "C:\Documents and Settings\All Users\DRM\DRMv12.bak"
Sun 27 Jun 2004 4,348 ..SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Thu 13 Jan 2005 247 A..H. --- "C:\Program Files\InterActual\InterActual Player\iti4.tmp"
Mon 28 May 2007 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv02.tmp"
Sun 1 May 2005 192,000 ...H. --- "C:\Documents and Settings\No‚mie\Mes documents\DOC BTS Noemie\MEMOIRE\~WRL0908.tmp"
Tue 26 Apr 2005 90,112 ...H. --- "C:\Documents and Settings\No‚mie\Mes documents\DOC BTS Noemie\MEMOIRE\~WRL3796.tmp"
Mon 2 May 2005 78,848 ...H. --- "C:\Documents and Settings\No‚mie\Mes documents\DOC BTS Noemie\MEMOIRE\~WRL3035.tmp"
Tue 3 May 2005 79,360 ...H. --- "C:\Documents and Settings\No‚mie\Mes documents\DOC BTS Noemie\MEMOIRE\~WRL1002.tmp"
Tue 3 May 2005 89,600 ...H. --- "C:\Documents and Settings\No‚mie\Mes documents\DOC BTS Noemie\MEMOIRE\~WRL2216.tmp"
Thu 24 Feb 2005 61,952 ...H. --- "C:\Documents and Settings\No‚mie\Mes documents\DOC BTS Noemie\MEMOIRE\~WRL1694.tmp"
Fri 25 Feb 2005 63,488 ...H. --- "C:\Documents and Settings\No‚mie\Mes documents\DOC BTS Noemie\MEMOIRE\~WRL0004.tmp"
Sat 26 Feb 2005 24,576 ...H. --- "C:\Documents and Settings\No‚mie\Mes documents\DOC BTS Noemie\MEMOIRE\~WRL0003.tmp"
Sat 26 Feb 2005 64,000 ...H. --- "C:\Documents and Settings\No‚mie\Mes documents\DOC BTS Noemie\MEMOIRE\~WRL2224.tmp"
Fri 25 Feb 2005 64,512 ...H. --- "C:\Documents and Settings\No‚mie\Application Data\Microsoft\Word\~WRL2427.tmp"
Fri 25 Feb 2005 66,048 ...H. --- "C:\Documents and Settings\No‚mie\Application Data\Microsoft\Word\~WRL0397.tmp"
Fri 25 Feb 2005 68,096 ...H. --- "C:\Documents and Settings\No‚mie\Application Data\Microsoft\Word\~WRL2177.tmp"
Fri 25 Feb 2005 64,000 ...H. --- "C:\Documents and Settings\No‚mie\Application Data\Microsoft\Word\~WRL3062.tmp"
Sat 26 Feb 2005 65,536 ...H. --- "C:\Documents and Settings\No‚mie\Application Data\Microsoft\Word\~WRL3935.tmp"
Tue 22 Mar 2005 33,792 ...H. --- "C:\Documents and Settings\No‚mie\Application Data\Microsoft\Word\~WRL0568.tmp"
Sun 1 May 2005 92,672 ...H. --- "C:\Documents and Settings\No‚mie\Application Data\Microsoft\Word\~WRL2547.tmp"
Sun 1 May 2005 91,136 ...H. --- "C:\Documents and Settings\No‚mie\Application Data\Microsoft\Word\~WRL1809.tmp"
Tue 3 May 2005 93,696 ...H. --- "C:\Documents and Settings\No‚mie\Application Data\Microsoft\Word\~WRL0737.tmp"
Tue 3 May 2005 95,744 ...H. --- "C:\Documents and Settings\No‚mie\Application Data\Microsoft\Word\~WRL2480.tmp"
Tue 3 May 2005 101,376 ...H. --- "C:\Documents and Settings\No‚mie\Application Data\Microsoft\Word\~WRL0352.tmp"
Tue 3 May 2005 102,912 ...H. --- "C:\Documents and Settings\No‚mie\Application Data\Microsoft\Word\~WRL3245.tmp"
Tue 3 May 2005 103,936 ...H. --- "C:\Documents and Settings\No‚mie\Application Data\Microsoft\Word\~WRL3546.tmp"
Tue 3 May 2005 104,448 ...H. --- "C:\Documents and Settings\No‚mie\Application Data\Microsoft\Word\~WRL3253.tmp"
Sun 3 Dec 2006 19,456 ...H. --- "C:\Documents and Settings\No‚mie\Application Data\Microsoft\Word\~WRL2307.tmp"
Sun 3 Dec 2006 19,456 ...H. --- "C:\Documents and Settings\No‚mie\Application Data\Microsoft\Word\~WRL1176.tmp"
Wed 8 Sep 2004 50,688 ...H. --- "C:\Documents and Settings\No‚mie\Application Data\Microsoft\Word\~WRL1259.tmp"
[b]Finished!/b