Swgic.exe virus?
Lemmy
-
Lyonnais92 Messages postés 25708 Statut Contributeur sécurité -
Lyonnais92 Messages postés 25708 Statut Contributeur sécurité -
Bonsoir, je viens de découvrir un programme dans mon gestionnaire des taches du nom de "swgic.exe" c'est la première fois que je le vois et je n'ai trouvé qu'un seul site me donnant des infos "http://www.prevx.com/filenames/573169032557409348-X1/SWGIC%2EEXE.html" où il est considéré comme un virus. De plus utilise pas mal de mémoire donc j'aimerais connaitre son origine.
Merci d'avance!
Merci d'avance!
A voir également:
- Swgic.exe virus?
- Virus mcafee - Accueil - Piratage
- Virus facebook demande d'amis - Accueil - Facebook
- Undisclosed-recipients virus - Guide
- Panda anti virus gratuit - Télécharger - Antivirus & Antimalwares
- Virus informatique - Guide
6 réponses
Bonjour,
Télécharge OTL de OLDTimer ici :
http://www.geekstogo.com/forum/files/file/398-otl-oldtimers-list-it/
et enregistre le sur ton Bureau.
Double clic sur OTL.exe pour le lancer.
Coche les 2 cases Lop et Purity
Coche la case devant "scan all users"
Clic sur Run Scan.
A la fin du scan, le Bloc-Notes va s'ouvrir avec le rapport (OTL.txt).
Ce fichier est sur ton Bureau (en général C:\Documents and settings\le_nom_de_ta_session\OTL.txt)
Pour me le transmettre clique sur ce lien :
http://www.cijoint.fr/
Clique sur Parcourir et cherche le fichier ci-dessus.
Clique sur Ouvrir.
Clique sur "Cliquez ici pour déposer le fichier".
Un lien de cette forme :
http://www.cijoint.fr/cjlink.php?file=cj200905/cijSKAP5fU.txt
est ajouté dans la page.
Copie ce lien dans ta réponse.
===================
Télécharge OTL de OLDTimer ici :
http://www.geekstogo.com/forum/files/file/398-otl-oldtimers-list-it/
et enregistre le sur ton Bureau.
Double clic sur OTL.exe pour le lancer.
Coche les 2 cases Lop et Purity
Coche la case devant "scan all users"
Clic sur Run Scan.
A la fin du scan, le Bloc-Notes va s'ouvrir avec le rapport (OTL.txt).
Ce fichier est sur ton Bureau (en général C:\Documents and settings\le_nom_de_ta_session\OTL.txt)
Pour me le transmettre clique sur ce lien :
http://www.cijoint.fr/
Clique sur Parcourir et cherche le fichier ci-dessus.
Clique sur Ouvrir.
Clique sur "Cliquez ici pour déposer le fichier".
Un lien de cette forme :
http://www.cijoint.fr/cjlink.php?file=cj200905/cijSKAP5fU.txt
est ajouté dans la page.
Copie ce lien dans ta réponse.
===================
Re,
le lien donné en mp :
http://www.cijoint.fr/cjlink.php?file=cj200905/cijTcjTmSr.txt
=================
Double clic sur OTL.exe pour le lancer.
Copie la liste qui se trouve en gras ci-dessous,
et colle-la dans la zone sous Customs Scans/Fixes
Clique sur RunFix pour lancer la suppression.
Poste le rapport.
le lien donné en mp :
http://www.cijoint.fr/cjlink.php?file=cj200905/cijTcjTmSr.txt
=================
Double clic sur OTL.exe pour le lancer.
Copie la liste qui se trouve en gras ci-dessous,
et colle-la dans la zone sous Customs Scans/Fixes
:OTL
PRC - [2009/05/19 22:01:55 | 00,299,008 | ---- | M] () -- C:\windows\system32\swgic.exe
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - Reg Error: Key error. File not found
O2 - BHO: (no name) - {730FA9CA-5A27-48C5-93EE-33AC0F441A73} - C:\WINDOWS\system32\wfhsemub.dll File not found
O2 - BHO: (no name) - {8BE98CD7-A957-4D86-ACC4-42F2AB8A57CD} - C:\WINDOWS\system32\mllmm.dll File not found
O2 - BHO: (no name) - {E5BE916F-084C-4A15-AF90-509D814A8C3B} - C:\WINDOWS\system32\vtstr.dll File not found
O4 - HKLM..\Run: [I downloaded pirated Software from P2P ] C:\WINDOWS\system32\Command & Conquer 3 Tiberium Wars.exe ()
O4 - HKLM..\Run: [swgic] "c:\windows\system32\swgic.exe" swgic ()
O16 - DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0_09-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0_10-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0_11-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Reg Error: Key error.)
[2009/05/19 22:01:56 | 00,365,508 | ---- | C] () -- C:\WINDOWS\System32\swgic_nav.dat
[2009/05/19 22:01:56 | 00,003,007 | ---- | C] () -- C:\WINDOWS\System32\swgic.dat
[2009/05/19 22:01:56 | 00,002,383 | ---- | C] () -- C:\WINDOWS\System32\swgic_navps.dat
[2009/05/19 22:01:55 | 00,299,008 | ---- | C] () -- C:\WINDOWS\System32\swgic.exe
[2008/04/24 20:55:44 | 01,550,569 | -HS- | C] () -- C:\WINDOWS\System32\buhvdipp.ini
[2008/04/24 01:02:24 | 01,554,289 | -HS- | C] () -- C:\WINDOWS\System32\mqskjwmu.ini
[2008/04/22 22:39:59 | 00,863,995 | -HS- | C] () -- C:\WINDOWS\System32\fcdwbsxj.ini
[2008/04/21 22:45:47 | 00,863,935 | -HS- | C] () -- C:\WINDOWS\System32\skdevasc.ini
[2008/04/21 19:06:45 | 00,863,875 | -HS- | C] () -- C:\WINDOWS\System32\lwdfwjfb.ini
[2008/04/21 19:02:30 | 00,863,755 | -HS- | C] () -- C:\WINDOWS\System32\kakgiuyc.ini
[2008/04/21 15:06:31 | 00,863,635 | -HS- | C] () -- C:\WINDOWS\System32\wnakuwmq.ini
[2008/04/20 15:11:36 | 00,863,403 | -HS- | C] () -- C:\WINDOWS\System32\byigksvt.ini
[2008/04/20 00:04:12 | 00,863,283 | -HS- | C] () -- C:\WINDOWS\System32\hslvmfye.ini
[2008/04/19 00:04:11 | 00,865,559 | -HS- | C] () -- C:\WINDOWS\System32\hfygndfy.ini
[2008/04/18 13:59:06 | 00,802,033 | -HS- | C] () -- C:\WINDOWS\System32\mkpsfnhn.ini
[2008/04/17 13:56:13 | 00,832,624 | -HS- | C] () -- C:\WINDOWS\System32\bhqevehq.ini
[2008/04/16 13:56:07 | 00,780,738 | -HS- | C] () -- C:\WINDOWS\System32\jumauruc.ini
[2008/04/15 23:01:06 | 00,778,562 | -HS- | C] () -- C:\WINDOWS\System32\fjynmveq.ini
[2008/04/14 23:11:15 | 00,708,715 | -HS- | C] () -- C:\WINDOWS\System32\gemyboyf.ini
[2008/04/14 22:52:51 | 00,708,447 | -HS- | C] () -- C:\WINDOWS\System32\jhgsbtoe.ini
[2008/04/14 11:37:57 | 00,709,367 | -HS- | C] () -- C:\WINDOWS\System32\abkrrpyh.ini
[2008/04/13 11:37:53 | 00,709,195 | -HS- | C] () -- C:\WINDOWS\System32\ojxalxuo.ini
[2008/04/13 04:49:46 | 00,709,135 | -HS- | C] () -- C:\WINDOWS\System32\vgrohfbd.ini
[2008/04/12 23:51:12 | 00,709,015 | -HS- | C] () -- C:\WINDOWS\System32\paqnfaqr.ini
[2008/04/12 19:21:42 | 00,708,895 | -HS- | C] () -- C:\WINDOWS\System32\pmxewopc.ini
[2008/04/12 17:20:50 | 00,708,663 | -HS- | C] () -- C:\WINDOWS\System32\ujrghmac.ini
[2008/04/12 01:00:55 | 00,708,496 | -HS- | C] () -- C:\WINDOWS\System32\gojnvjta.ini
[2008/04/06 23:15:00 | 00,751,655 | -HS- | C] () -- C:\WINDOWS\System32\jxibxwoo.ini
[2008/04/06 19:17:48 | 00,183,392 | -HS- | C] () -- C:\WINDOWS\System32\mmllm.ini2
[2008/04/05 23:47:26 | 02,261,911 | -HS- | C] () -- C:\WINDOWS\System32\oparydoo.ini
[2008/04/05 13:35:43 | 02,274,658 | -HS- | C] () -- C:\WINDOWS\System32\bsxahxte.ini
[2008/04/04 19:50:49 | 02,281,047 | -HS- | C] () -- C:\WINDOWS\System32\xpbcfbxa.ini
[2008/04/03 19:47:52 | 02,577,811 | -HS- | C] () -- C:\WINDOWS\System32\uxtnhfmi.ini
[2008/04/02 19:42:09 | 02,208,865 | -HS- | C] () -- C:\WINDOWS\System32\pbhrhlww.ini
[2008/04/02 18:48:02 | 02,257,500 | -HS- | C] () -- C:\WINDOWS\System32\irttqbjb.ini
[2008/04/01 18:56:49 | 01,557,380 | -HS- | C] () -- C:\WINDOWS\System32\aeojhail.ini
[2008/03/31 18:50:50 | 01,597,361 | -HS- | C] () -- C:\WINDOWS\System32\oyntkcoi.ini
[2008/03/30 18:50:49 | 01,583,997 | -HS- | C] () -- C:\WINDOWS\System32\ggxyqxng.ini
[2008/03/30 01:06:11 | 01,583,937 | -HS- | C] () -- C:\WINDOWS\System32\uomxhqcu.ini
[2008/03/29 01:06:05 | 01,583,817 | -HS- | C] () -- C:\WINDOWS\System32\mgdgttjf.ini
[2008/03/28 01:12:02 | 01,583,289 | -HS- | C] () -- C:\WINDOWS\System32\fxjiigff.ini
[2008/03/27 21:32:29 | 01,583,229 | -HS- | C] () -- C:\WINDOWS\System32\gbwqnmvg.ini
[2008/03/26 16:37:59 | 01,578,241 | -HS- | C] () -- C:\WINDOWS\System32\cfbljeso.ini
[2008/03/25 16:37:57 | 01,586,366 | -HS- | C] () -- C:\WINDOWS\System32\fjpswqgg.ini
[2008/03/25 15:18:48 | 01,578,119 | -HS- | C] () -- C:\WINDOWS\System32\umexwiyt.ini
[2008/03/24 15:15:41 | 01,514,388 | -HS- | C] () -- C:\WINDOWS\System32\jmjarjtq.ini
[2008/03/23 15:15:39 | 01,519,183 | -HS- | C] () -- C:\WINDOWS\System32\uqjhbgxo.ini
[2008/03/22 15:17:32 | 01,514,268 | -HS- | C] () -- C:\WINDOWS\System32\lsjykgvq.ini
[2008/03/21 15:14:33 | 01,533,330 | -HS- | C] () -- C:\WINDOWS\System32\xpyxwiyk.ini
[2008/03/20 15:17:31 | 01,539,794 | -HS- | C] () -- C:\WINDOWS\System32\irykscda.ini
[2008/03/19 15:11:45 | 01,539,734 | -HS- | C] () -- C:\WINDOWS\System32\wcefotth.ini
[2008/03/18 00:24:05 | 01,359,007 | -HS- | C] () -- C:\WINDOWS\System32\cixunigm.ini
[2008/03/17 21:12:44 | 01,358,947 | -HS- | C] () -- C:\WINDOWS\System32\ufbdjrbk.ini
[2008/03/16 22:59:57 | 00,183,143 | -HS- | C] () -- C:\WINDOWS\System32\mmllm.ini
[2008/03/16 21:14:39 | 01,295,673 | -HS- | C] () -- C:\WINDOWS\System32\orejmjsx.ini
[2008/03/15 21:15:38 | 01,295,604 | -HS- | C] () -- C:\WINDOWS\System32\mftlnjav.ini
[2008/03/14 21:09:31 | 01,295,544 | -HS- | C] () -- C:\WINDOWS\System32\uevhnkfx.ini
[2008/03/13 21:18:21 | 01,325,382 | -HS- | C] () -- C:\WINDOWS\System32\wyisowed.ini
[2008/03/12 21:15:21 | 01,346,096 | -HS- | C] () -- C:\WINDOWS\System32\trivmvjy.ini
[2008/03/11 21:15:31 | 01,315,119 | -HS- | C] () -- C:\WINDOWS\System32\kvxuemew.ini
[2008/03/10 21:09:23 | 01,307,690 | -HS- | C] () -- C:\WINDOWS\System32\uuvglaci.ini
[2008/03/09 21:09:21 | 01,317,743 | -HS- | C] () -- C:\WINDOWS\System32\kvsisnpk.ini
[2008/03/08 21:06:30 | 01,307,561 | -HS- | C] () -- C:\WINDOWS\System32\xtnnpxlj.ini
[2008/03/08 01:18:28 | 01,029,498 | -HS- | C] () -- C:\WINDOWS\System32\ndevfpcy.ini
[2008/03/07 01:24:10 | 01,028,864 | -HS- | C] () -- C:\WINDOWS\System32\qotiqgrt.ini
[2008/03/07 00:53:39 | 01,050,072 | -HS- | C] () -- C:\WINDOWS\System32\triafphs.ini
[2008/03/06 06:17:39 | 01,094,907 | -HS- | C] () -- C:\WINDOWS\System32\xqhoeqgl.ini
[2008/03/05 06:17:39 | 01,102,912 | -HS- | C] () -- C:\WINDOWS\System32\xjefucqj.ini
[2008/03/04 06:11:41 | 01,332,363 | -HS- | C] () -- C:\WINDOWS\System32\psmmrohb.ini
[2008/03/03 06:14:38 | 01,169,223 | -HS- | C] () -- C:\WINDOWS\System32\nvdgbptf.ini
[2008/03/02 06:08:49 | 01,169,163 | -HS- | C] () -- C:\WINDOWS\System32\jovmmorh.ini
[2008/03/01 06:11:39 | 01,216,367 | -HS- | C] () -- C:\WINDOWS\System32\qhsrlmtm.ini
[2008/02/29 06:14:38 | 01,180,718 | -HS- | C] () -- C:\WINDOWS\System32\gwghclah.ini
[2008/02/29 05:55:07 | 01,180,741 | -HS- | C] () -- C:\WINDOWS\System32\aaxbuwvy.ini
[2008/02/28 22:38:39 | 01,185,531 | -HS- | C] () -- C:\WINDOWS\System32\vonsguws.ini
[2008/02/27 22:38:34 | 01,188,584 | -HS- | C] () -- C:\WINDOWS\System32\bwitexqr.ini
[2008/02/26 22:35:42 | 01,190,105 | -HS- | C] () -- C:\WINDOWS\System32\akradufc.ini
[2008/02/25 22:41:33 | 01,186,906 | -HS- | C] () -- C:\WINDOWS\System32\oluxnuiy.ini
[2008/02/24 22:33:08 | 01,257,323 | -HS- | C] () -- C:\WINDOWS\System32\aagjwwsm.ini
[2008/02/23 22:44:32 | 01,245,195 | -HS- | C] () -- C:\WINDOWS\System32\yooxhhmr.ini
[2008/02/22 22:38:32 | 01,245,135 | -HS- | C] () -- C:\WINDOWS\System32\ohysjtim.ini
[2008/02/21 22:35:21 | 01,245,075 | -HS- | C] () -- C:\WINDOWS\System32\fbetoosu.ini
[2008/02/21 22:09:58 | 01,244,703 | -HS- | C] () -- C:\WINDOWS\System32\uoeeqshj.ini
[2008/02/20 22:09:37 | 01,253,381 | -HS- | C] () -- C:\WINDOWS\System32\qnqgitvt.ini
[2008/02/20 19:57:51 | 01,221,960 | -HS- | C] () -- C:\WINDOWS\System32\kylgepif.ini
[2008/02/20 14:43:03 | 01,215,743 | -HS- | C] () -- C:\WINDOWS\System32\lddfxdkp.ini
[2008/02/18 19:25:20 | 01,239,671 | -HS- | C] () -- C:\WINDOWS\System32\pbcledjh.ini
[2008/02/17 19:16:15 | 01,238,853 | -HS- | C] () -- C:\WINDOWS\System32\ckjdvbhr.ini
[2008/02/16 22:53:26 | 01,248,887 | -HS- | C] () -- C:\WINDOWS\System32\ryvhsofl.ini
[2008/02/15 22:51:22 | 01,248,767 | -HS- | C] () -- C:\WINDOWS\System32\yphngvmb.ini
[2008/02/15 22:34:32 | 01,248,707 | -HS- | C] () -- C:\WINDOWS\System32\xsvuyujf.ini
[2008/02/15 16:51:16 | 01,245,212 | -HS- | C] () -- C:\WINDOWS\System32\paixdfuu.ini
[2008/02/15 10:30:44 | 00,000,354 | -HS- | C] () -- C:\WINDOWS\System32\prrsutck.ini
[2008/02/06 13:34:49 | 00,000,319 | -HS- | C] () -- C:\WINDOWS\System32\rtstv.ini2
[2007/09/11 13:33:40 | 00,000,465 | -HS- | C] () -- C:\WINDOWS\System32\qssvjena.ini
[2007/09/03 02:01:55 | 00,693,664 | -HS- | C] () -- C:\WINDOWS\System32\qssvjena.ini2
[2007/08/29 21:18:37 | 01,225,790 | -HS- | C] () -- C:\WINDOWS\System32\hqjaejiy.ini
[2007/08/27 21:15:54 | 01,225,730 | -HS- | C] () -- C:\WINDOWS\System32\ciptxfpn.ini
[2007/08/27 21:10:03 | 01,255,534 | -HS- | C] () -- C:\WINDOWS\System32\gmpbtmgr.ini
[2007/08/26 21:09:49 | 01,255,473 | -HS- | C] () -- C:\WINDOWS\System32\kyyhlbrs.ini
[2007/08/25 21:09:46 | 01,255,414 | -HS- | C] () -- C:\WINDOWS\System32\xvmojalq.ini
[2007/08/24 21:09:36 | 01,246,469 | -HS- | C] () -- C:\WINDOWS\System32\cbsldbcx.ini
[2007/08/24 20:11:38 | 01,246,409 | -HS- | C] () -- C:\WINDOWS\System32\jdnrtwwi.ini
[2007/08/23 20:11:29 | 01,246,349 | -HS- | C] () -- C:\WINDOWS\System32\dwhbatsb.ini
[2007/08/22 20:11:22 | 01,246,317 | -HS- | C] () -- C:\WINDOWS\System32\nypomuin.ini
[2007/08/21 20:11:07 | 01,229,124 | -HS- | C] () -- C:\WINDOWS\System32\pcvkvfkg.ini
[2007/08/20 22:15:47 | 01,250,312 | -HS- | C] () -- C:\WINDOWS\System32\oloexkvx.ini
[2007/08/20 21:18:38 | 01,228,993 | -HS- | C] () -- C:\WINDOWS\System32\weuvmaef.ini
[2007/08/19 21:18:43 | 01,228,961 | -HS- | C] () -- C:\WINDOWS\System32\mukhegbv.ini
[2007/08/18 21:18:33 | 00,000,345 | -HS- | C] () -- C:\WINDOWS\System32\ydqefctf.ini
[2007/08/17 13:39:58 | 00,000,345 | -HS- | C] () -- C:\WINDOWS\System32\sfgsqeqa.ini
[2007/08/13 23:40:05 | 00,000,525 | -HS- | C] () -- C:\WINDOWS\System32\gdgnllty.ini
[2007/08/12 20:18:24 | 01,214,036 | -HS- | C] () -- C:\WINDOWS\System32\uaflvpai.ini
[2007/08/10 21:01:53 | 01,222,374 | -HS- | C] () -- C:\WINDOWS\System32\nffmvtnm.ini
[2007/08/08 13:15:32 | 00,002,633 | ---- | C] () -- C:\WINDOWS\cookies.ini
[2007/08/08 12:09:04 | 01,191,006 | -HS- | C] () -- C:\WINDOWS\System32\wixwfjwi.ini
[2007/07/26 14:22:08 | 00,199,408 | -HS- | C] () -- C:\WINDOWS\System32\nsmxbdbp.ini
[2007/07/25 14:22:18 | 01,225,447 | -HS- | C] () -- C:\WINDOWS\System32\btonvmpg.ini
[2007/07/24 14:21:48 | 01,225,386 | -HS- | C] () -- C:\WINDOWS\System32\kyodfkes.ini
[2007/07/23 14:22:18 | 00,000,465 | -HS- | C] () -- C:\WINDOWS\System32\nldsqxvd.ini
[2007/07/22 14:21:58 | 00,000,405 | -HS- | C] () -- C:\WINDOWS\System32\vfhbijbd.ini
[2007/07/21 14:21:51 | 00,000,345 | -HS- | C] () -- C:\WINDOWS\System32\dakobxsa.ini
[2007/07/20 14:53:04 | 00,000,295 | -HS- | C] () -- C:\WINDOWS\System32\cerexbch.ini
[2007/07/19 14:31:12 | 01,134,848 | -HS- | C] () -- C:\WINDOWS\System32\yvnebwyn.ini
[2007/07/18 14:31:23 | 01,137,794 | -HS- | C] () -- C:\WINDOWS\System32\tauujmsd.ini
[2007/07/17 14:30:52 | 01,192,949 | -HS- | C] () -- C:\WINDOWS\System32\upitmxns.ini
[2007/07/16 14:23:34 | 01,195,342 | -HS- | C] () -- C:\WINDOWS\System32\tvhmnpnf.ini
[2007/07/15 14:23:44 | 01,192,878 | -HS- | C] () -- C:\WINDOWS\System32\tntnmrpx.ini
[2007/07/14 14:23:35 | 01,192,819 | -HS- | C] () -- C:\WINDOWS\System32\bcfmabap.ini
[2007/07/13 14:23:14 | 01,060,884 | -HS- | C] () -- C:\WINDOWS\System32\pnpgsafn.ini
[2007/07/12 14:22:44 | 01,114,584 | -HS- | C] () -- C:\WINDOWS\System32\sbndyfnd.ini
[2007/07/11 14:22:29 | 01,060,813 | -HS- | C] () -- C:\WINDOWS\System32\tvbochbx.ini
[2007/07/10 14:22:23 | 01,060,764 | -HS- | C] () -- C:\WINDOWS\System32\kaqrsvvg.ini
[2007/07/09 14:22:13 | 01,060,702 | -HS- | C] () -- C:\WINDOWS\System32\yraukrjl.ini
[2007/07/08 14:21:56 | 01,062,630 | -HS- | C] () -- C:\WINDOWS\System32\dmrqwaai.ini
[2007/07/07 14:21:38 | 01,062,683 | -HS- | C] () -- C:\WINDOWS\System32\vnwiyycq.ini
[2007/07/06 14:21:39 | 01,054,089 | -HS- | C] () -- C:\WINDOWS\System32\mftqlrup.ini
[2007/07/04 14:21:01 | 01,054,029 | -HS- | C] () -- C:\WINDOWS\System32\smtucfao.ini
[2007/07/03 14:21:16 | 00,000,345 | -HS- | C] () -- C:\WINDOWS\System32\utncpigx.ini
[2007/07/02 16:02:49 | 00,947,354 | -HS- | C] () -- C:\WINDOWS\System32\fadmkegl.ini
[2007/07/01 16:02:56 | 00,947,303 | -HS- | C] () -- C:\WINDOWS\System32\qaoymllj.ini
[2007/06/30 16:02:38 | 00,947,235 | -HS- | C] () -- C:\WINDOWS\System32\jhmqtokh.ini
[2007/06/29 16:02:30 | 00,986,277 | -HS- | C] () -- C:\WINDOWS\System32\ouhqbxby.ini
[2007/06/28 16:02:00 | 00,915,186 | -HS- | C] () -- C:\WINDOWS\System32\edoceidk.ini
[2007/06/27 16:01:56 | 00,915,137 | -HS- | C] () -- C:\WINDOWS\System32\wnrmgokn.ini
[2007/06/26 16:01:35 | 00,915,075 | -HS- | C] () -- C:\WINDOWS\System32\suneltkp.ini
[2007/06/25 16:01:29 | 00,915,006 | -HS- | C] () -- C:\WINDOWS\System32\hcuqtemo.ini
[2007/06/24 16:01:29 | 00,914,947 | -HS- | C] () -- C:\WINDOWS\System32\bifwleiw.ini
[2007/06/24 12:09:53 | 00,914,887 | -HS- | C] () -- C:\WINDOWS\System32\gycdxbxf.ini
[2007/06/23 12:10:05 | 00,907,250 | -HS- | C] () -- C:\WINDOWS\System32\etekoevi.ini
[2007/06/22 12:09:56 | 00,907,199 | -HS- | C] () -- C:\WINDOWS\System32\hteulqsq.ini
[2007/06/21 23:52:16 | 00,907,139 | -HS- | C] () -- C:\WINDOWS\System32\xxnoimcp.ini
[2007/06/20 23:52:09 | 00,907,029 | -HS- | C] () -- C:\WINDOWS\System32\fbwvjcwp.ini
[2007/06/19 23:51:45 | 01,807,816 | -HS- | C] () -- C:\WINDOWS\System32\ppmnlrlc.ini
[2007/06/19 18:18:36 | 01,739,886 | -HS- | C] () -- C:\WINDOWS\System32\ulluohrc.ini
[2007/06/18 20:29:42 | 01,741,185 | -HS- | C] () -- C:\WINDOWS\System32\fmxmbegv.ini
[2007/06/18 12:52:16 | 01,742,699 | -HS- | C] () -- C:\WINDOWS\System32\briocjkf.ini
[2007/06/17 23:04:19 | 01,743,735 | -HS- | C] () -- C:\WINDOWS\System32\cowqrbdq.ini
[2007/06/17 21:55:16 | 01,747,790 | -HS- | C] () -- C:\WINDOWS\System32\rdvmxdpb.ini
[2007/06/17 15:06:15 | 01,749,766 | -HS- | C] () -- C:\WINDOWS\System32\jjhkhjyy.ini
[2007/06/16 15:06:16 | 01,865,568 | -HS- | C] () -- C:\WINDOWS\System32\ekcwogkb.ini
[2007/06/15 15:06:05 | 01,870,077 | -HS- | C] () -- C:\WINDOWS\System32\exjyaimo.ini
[2007/06/15 01:21:16 | 01,871,549 | -HS- | C] () -- C:\WINDOWS\System32\iikyjdky.ini
[2007/06/14 23:10:57 | 01,807,447 | -HS- | C] () -- C:\WINDOWS\System32\afeehbtk.ini
[2007/06/14 13:20:12 | 01,810,299 | -HS- | C] () -- C:\WINDOWS\System32\fhpnpkrh.ini
[2007/06/13 13:19:38 | 01,812,235 | -HS- | C] () -- C:\WINDOWS\System32\fgdnetkn.ini
[2007/06/04 19:06:23 | 01,921,164 | -HS- | C] () -- C:\WINDOWS\System32\dnyapajn.ini
[2007/06/01 18:06:51 | 01,060,268 | -HS- | C] () -- C:\WINDOWS\System32\bayfpvyw.ini
[2007/05/20 23:17:13 | 02,762,482 | -HS- | C] () -- C:\WINDOWS\System32\fiefslwf.ini2
[2007/05/20 18:43:56 | 00,000,000 | -HS- | C] () -- C:\WINDOWS\System32\yjvccrjl.ini
[2007/05/18 23:16:31 | 02,762,422 | -HS- | C] () -- C:\WINDOWS\System32\fiefslwf.ini
[2007/05/10 21:02:58 | 02,762,411 | -HS- | C] () -- C:\WINDOWS\System32\yubybbod.ini
[2007/05/04 18:58:08 | 01,433,387 | -HS- | C] () -- C:\WINDOWS\System32\ncelcmqi.ini
[2007/04/25 22:28:30 | 00,000,583 | -HS- | C] () -- C:\WINDOWS\System32\ackuimms.ini
[2007/04/11 20:26:46 | 01,530,754 | -HS- | C] () -- C:\WINDOWS\System32\ylasxajs.ini2
[2007/04/05 20:20:53 | 01,629,384 | -HS- | C] () -- C:\WINDOWS\System32\ylasxajs.ini
[2009/05/22 22:52:27 | 00,002,383 | ---- | M] () -- C:\WINDOWS\System32\swgic_navps.dat
[2009/05/22 22:52:09 | 00,003,007 | ---- | M] () -- C:\WINDOWS\System32\swgic.dat
[2009/05/21 22:02:12 | 00,365,508 | ---- | M] () -- C:\WINDOWS\System32\swgic_nav.dat
[2009/05/19 22:01:55 | 00,299,008 | ---- | M] () -- C:\WINDOWS\System32\swgic.exe
[2009/05/05 20:00:00 | 00,000,346 | ---- | M] () -- C:\WINDOWS\tasks\At4.job
[2009/05/05 20:00:00 | 00,000,346 | ---- | M] () -- C:\WINDOWS\tasks\At10.job
[2009/05/05 20:00:00 | 00,000,324 | ---- | M] () -- C:\WINDOWS\tasks\At9.job
[2009/05/05 18:00:00 | 00,000,316 | ---- | M] () -- C:\WINDOWS\tasks\At7.job
[2009/05/05 17:00:00 | 00,000,316 | ---- | M] () -- C:\WINDOWS\tasks\At3.job
[2009/05/05 17:00:00 | 00,000,316 | ---- | M] () -- C:\WINDOWS\tasks\At11.job
[2009/05/05 14:00:00 | 00,000,346 | ---- | M] () -- C:\WINDOWS\tasks\At8.job
[2009/05/05 14:00:00 | 00,000,346 | ---- | M] () -- C:\WINDOWS\tasks\At6.job
[2009/05/05 08:00:00 | 00,000,346 | ---- | M] () -- C:\WINDOWS\tasks\At5.job
[2009/05/05 08:00:00 | 00,000,346 | ---- | M] () -- C:\WINDOWS\tasks\At12.job
@Alternate Data Stream - 99 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:E32966C0
@Alternate Data Stream - 98 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:90D89144
@Alternate Data Stream - 97 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:A56D6987
@Alternate Data Stream - 88 bytes -> C:\WINDOWS\System32\rundll32.exe:SummaryInformation
@Alternate Data Stream - 131 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:DE47A3DA
@Alternate Data Stream - 131 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:CB16385F
@Alternate Data Stream - 130 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:BD9F7E4E
@Alternate Data Stream - 129 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:561B1D2B
@Alternate Data Stream - 128 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:7B52659E
@Alternate Data Stream - 127 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:0A73A758
@Alternate Data Stream - 125 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:07241935
@Alternate Data Stream - 124 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:61F0C8FB
@Alternate Data Stream - 124 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:48FEA089
@Alternate Data Stream - 124 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:3214A283
@Alternate Data Stream - 122 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:861A898F
@Alternate Data Stream - 120 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:FDDD8917
@Alternate Data Stream - 120 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:981349EA
@Alternate Data Stream - 117 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:6C5EC3CD
@Alternate Data Stream - 116 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:8AB6C1D7
@Alternate Data Stream - 115 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:3C5ABDC7
@Alternate Data Stream - 114 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:76BE9842
@Alternate Data Stream - 114 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:55E3C0E0
@Alternate Data Stream - 113 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:08D8BB20
@Alternate Data Stream - 112 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:2ABEB9EB
@Alternate Data Stream - 111 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:D1361E51
@Alternate Data Stream - 111 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:0D31DA45
@Alternate Data Stream - 108 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:74B9EA7F
@Alternate Data Stream - 108 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:5C6EBC69
@Alternate Data Stream - 106 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:A296A63F
@Alternate Data Stream - 106 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:13AA281B
@Alternate Data Stream - 104 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:88698068
@Alternate Data Stream - 104 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:7C412B92
@Alternate Data Stream - 101 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:90B52091
@Alternate Data Stream - 101 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:5D351BC6
@Alternate Data Stream - 101 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:4FE30352
Clique sur RunFix pour lancer la suppression.
Poste le rapport.
Voilà le rapport:
========== OTL ==========
Process swgic.exe killed successfully!
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}\ not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{730FA9CA-5A27-48C5-93EE-33AC0F441A73}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{730FA9CA-5A27-48C5-93EE-33AC0F441A73}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8BE98CD7-A957-4D86-ACC4-42F2AB8A57CD}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8BE98CD7-A957-4D86-ACC4-42F2AB8A57CD}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E5BE916F-084C-4A15-AF90-509D814A8C3B}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E5BE916F-084C-4A15-AF90-509D814A8C3B}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\I downloaded pirated Software from P2P not found.
C:\WINDOWS\system32\command.com moved successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\swgic deleted successfully.
c:\windows\system32\swgic.exe moved successfully.
Starting removal of ActiveX control {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}\ not found.
C:\WINDOWS\System32\swgic_nav.dat moved successfully.
C:\WINDOWS\System32\swgic.dat moved successfully.
C:\WINDOWS\System32\swgic_navps.dat moved successfully.
File C:\WINDOWS\System32\swgic.exe not found.
C:\WINDOWS\System32\buhvdipp.ini moved successfully.
C:\WINDOWS\System32\mqskjwmu.ini moved successfully.
C:\WINDOWS\System32\fcdwbsxj.ini moved successfully.
C:\WINDOWS\System32\skdevasc.ini moved successfully.
C:\WINDOWS\System32\lwdfwjfb.ini moved successfully.
C:\WINDOWS\System32\kakgiuyc.ini moved successfully.
C:\WINDOWS\System32\wnakuwmq.ini moved successfully.
C:\WINDOWS\System32\byigksvt.ini moved successfully.
C:\WINDOWS\System32\hslvmfye.ini moved successfully.
C:\WINDOWS\System32\hfygndfy.ini moved successfully.
C:\WINDOWS\System32\mkpsfnhn.ini moved successfully.
C:\WINDOWS\System32\bhqevehq.ini moved successfully.
C:\WINDOWS\System32\jumauruc.ini moved successfully.
C:\WINDOWS\System32\fjynmveq.ini moved successfully.
C:\WINDOWS\System32\gemyboyf.ini moved successfully.
C:\WINDOWS\System32\jhgsbtoe.ini moved successfully.
C:\WINDOWS\System32\abkrrpyh.ini moved successfully.
C:\WINDOWS\System32\ojxalxuo.ini moved successfully.
C:\WINDOWS\System32\vgrohfbd.ini moved successfully.
C:\WINDOWS\System32\paqnfaqr.ini moved successfully.
C:\WINDOWS\System32\pmxewopc.ini moved successfully.
C:\WINDOWS\System32\ujrghmac.ini moved successfully.
C:\WINDOWS\System32\gojnvjta.ini moved successfully.
C:\WINDOWS\System32\jxibxwoo.ini moved successfully.
C:\WINDOWS\System32\mmllm.ini2 moved successfully.
C:\WINDOWS\System32\oparydoo.ini moved successfully.
C:\WINDOWS\System32\bsxahxte.ini moved successfully.
C:\WINDOWS\System32\xpbcfbxa.ini moved successfully.
C:\WINDOWS\System32\uxtnhfmi.ini moved successfully.
C:\WINDOWS\System32\pbhrhlww.ini moved successfully.
C:\WINDOWS\System32\irttqbjb.ini moved successfully.
C:\WINDOWS\System32\aeojhail.ini moved successfully.
C:\WINDOWS\System32\oyntkcoi.ini moved successfully.
C:\WINDOWS\System32\ggxyqxng.ini moved successfully.
C:\WINDOWS\System32\uomxhqcu.ini moved successfully.
C:\WINDOWS\System32\mgdgttjf.ini moved successfully.
C:\WINDOWS\System32\fxjiigff.ini moved successfully.
C:\WINDOWS\System32\gbwqnmvg.ini moved successfully.
C:\WINDOWS\System32\cfbljeso.ini moved successfully.
C:\WINDOWS\System32\fjpswqgg.ini moved successfully.
C:\WINDOWS\System32\umexwiyt.ini moved successfully.
C:\WINDOWS\System32\jmjarjtq.ini moved successfully.
C:\WINDOWS\System32\uqjhbgxo.ini moved successfully.
C:\WINDOWS\System32\lsjykgvq.ini moved successfully.
C:\WINDOWS\System32\xpyxwiyk.ini moved successfully.
C:\WINDOWS\System32\irykscda.ini moved successfully.
C:\WINDOWS\System32\wcefotth.ini moved successfully.
C:\WINDOWS\System32\cixunigm.ini moved successfully.
C:\WINDOWS\System32\ufbdjrbk.ini moved successfully.
C:\WINDOWS\System32\mmllm.ini moved successfully.
C:\WINDOWS\System32\orejmjsx.ini moved successfully.
C:\WINDOWS\System32\mftlnjav.ini moved successfully.
C:\WINDOWS\System32\uevhnkfx.ini moved successfully.
C:\WINDOWS\System32\wyisowed.ini moved successfully.
C:\WINDOWS\System32\trivmvjy.ini moved successfully.
C:\WINDOWS\System32\kvxuemew.ini moved successfully.
C:\WINDOWS\System32\uuvglaci.ini moved successfully.
C:\WINDOWS\System32\kvsisnpk.ini moved successfully.
C:\WINDOWS\System32\xtnnpxlj.ini moved successfully.
C:\WINDOWS\System32\ndevfpcy.ini moved successfully.
C:\WINDOWS\System32\qotiqgrt.ini moved successfully.
C:\WINDOWS\System32\triafphs.ini moved successfully.
C:\WINDOWS\System32\xqhoeqgl.ini moved successfully.
C:\WINDOWS\System32\xjefucqj.ini moved successfully.
C:\WINDOWS\System32\psmmrohb.ini moved successfully.
C:\WINDOWS\System32\nvdgbptf.ini moved successfully.
C:\WINDOWS\System32\jovmmorh.ini moved successfully.
C:\WINDOWS\System32\qhsrlmtm.ini moved successfully.
C:\WINDOWS\System32\gwghclah.ini moved successfully.
C:\WINDOWS\System32\aaxbuwvy.ini moved successfully.
C:\WINDOWS\System32\vonsguws.ini moved successfully.
C:\WINDOWS\System32\bwitexqr.ini moved successfully.
C:\WINDOWS\System32\akradufc.ini moved successfully.
C:\WINDOWS\System32\oluxnuiy.ini moved successfully.
C:\WINDOWS\System32\aagjwwsm.ini moved successfully.
C:\WINDOWS\System32\yooxhhmr.ini moved successfully.
C:\WINDOWS\System32\ohysjtim.ini moved successfully.
C:\WINDOWS\System32\fbetoosu.ini moved successfully.
C:\WINDOWS\System32\uoeeqshj.ini moved successfully.
C:\WINDOWS\System32\qnqgitvt.ini moved successfully.
C:\WINDOWS\System32\kylgepif.ini moved successfully.
C:\WINDOWS\System32\lddfxdkp.ini moved successfully.
C:\WINDOWS\System32\pbcledjh.ini moved successfully.
C:\WINDOWS\System32\ckjdvbhr.ini moved successfully.
C:\WINDOWS\System32\ryvhsofl.ini moved successfully.
C:\WINDOWS\System32\yphngvmb.ini moved successfully.
C:\WINDOWS\System32\xsvuyujf.ini moved successfully.
C:\WINDOWS\System32\paixdfuu.ini moved successfully.
C:\WINDOWS\System32\prrsutck.ini moved successfully.
C:\WINDOWS\System32\rtstv.ini2 moved successfully.
C:\WINDOWS\System32\qssvjena.ini moved successfully.
C:\WINDOWS\System32\qssvjena.ini2 moved successfully.
C:\WINDOWS\System32\hqjaejiy.ini moved successfully.
C:\WINDOWS\System32\ciptxfpn.ini moved successfully.
C:\WINDOWS\System32\gmpbtmgr.ini moved successfully.
C:\WINDOWS\System32\kyyhlbrs.ini moved successfully.
C:\WINDOWS\System32\xvmojalq.ini moved successfully.
C:\WINDOWS\System32\cbsldbcx.ini moved successfully.
C:\WINDOWS\System32\jdnrtwwi.ini moved successfully.
C:\WINDOWS\System32\dwhbatsb.ini moved successfully.
C:\WINDOWS\System32\nypomuin.ini moved successfully.
C:\WINDOWS\System32\pcvkvfkg.ini moved successfully.
C:\WINDOWS\System32\oloexkvx.ini moved successfully.
C:\WINDOWS\System32\weuvmaef.ini moved successfully.
C:\WINDOWS\System32\mukhegbv.ini moved successfully.
C:\WINDOWS\System32\ydqefctf.ini moved successfully.
C:\WINDOWS\System32\sfgsqeqa.ini moved successfully.
C:\WINDOWS\System32\gdgnllty.ini moved successfully.
C:\WINDOWS\System32\uaflvpai.ini moved successfully.
C:\WINDOWS\System32\nffmvtnm.ini moved successfully.
C:\WINDOWS\cookies.ini moved successfully.
C:\WINDOWS\System32\wixwfjwi.ini moved successfully.
C:\WINDOWS\System32\nsmxbdbp.ini moved successfully.
C:\WINDOWS\System32\btonvmpg.ini moved successfully.
C:\WINDOWS\System32\kyodfkes.ini moved successfully.
C:\WINDOWS\System32\nldsqxvd.ini moved successfully.
C:\WINDOWS\System32\vfhbijbd.ini moved successfully.
C:\WINDOWS\System32\dakobxsa.ini moved successfully.
C:\WINDOWS\System32\cerexbch.ini moved successfully.
C:\WINDOWS\System32\yvnebwyn.ini moved successfully.
C:\WINDOWS\System32\tauujmsd.ini moved successfully.
C:\WINDOWS\System32\upitmxns.ini moved successfully.
C:\WINDOWS\System32\tvhmnpnf.ini moved successfully.
C:\WINDOWS\System32\tntnmrpx.ini moved successfully.
C:\WINDOWS\System32\bcfmabap.ini moved successfully.
C:\WINDOWS\System32\pnpgsafn.ini moved successfully.
C:\WINDOWS\System32\sbndyfnd.ini moved successfully.
C:\WINDOWS\System32\tvbochbx.ini moved successfully.
C:\WINDOWS\System32\kaqrsvvg.ini moved successfully.
C:\WINDOWS\System32\yraukrjl.ini moved successfully.
C:\WINDOWS\System32\dmrqwaai.ini moved successfully.
C:\WINDOWS\System32\vnwiyycq.ini moved successfully.
C:\WINDOWS\System32\mftqlrup.ini moved successfully.
C:\WINDOWS\System32\smtucfao.ini moved successfully.
C:\WINDOWS\System32\utncpigx.ini moved successfully.
C:\WINDOWS\System32\fadmkegl.ini moved successfully.
C:\WINDOWS\System32\qaoymllj.ini moved successfully.
C:\WINDOWS\System32\jhmqtokh.ini moved successfully.
C:\WINDOWS\System32\ouhqbxby.ini moved successfully.
C:\WINDOWS\System32\edoceidk.ini moved successfully.
C:\WINDOWS\System32\wnrmgokn.ini moved successfully.
C:\WINDOWS\System32\suneltkp.ini moved successfully.
C:\WINDOWS\System32\hcuqtemo.ini moved successfully.
C:\WINDOWS\System32\bifwleiw.ini moved successfully.
C:\WINDOWS\System32\gycdxbxf.ini moved successfully.
C:\WINDOWS\System32\etekoevi.ini moved successfully.
C:\WINDOWS\System32\hteulqsq.ini moved successfully.
C:\WINDOWS\System32\xxnoimcp.ini moved successfully.
C:\WINDOWS\System32\fbwvjcwp.ini moved successfully.
C:\WINDOWS\System32\ppmnlrlc.ini moved successfully.
C:\WINDOWS\System32\ulluohrc.ini moved successfully.
C:\WINDOWS\System32\fmxmbegv.ini moved successfully.
C:\WINDOWS\System32\briocjkf.ini moved successfully.
C:\WINDOWS\System32\cowqrbdq.ini moved successfully.
C:\WINDOWS\System32\rdvmxdpb.ini moved successfully.
C:\WINDOWS\System32\jjhkhjyy.ini moved successfully.
C:\WINDOWS\System32\ekcwogkb.ini moved successfully.
C:\WINDOWS\System32\exjyaimo.ini moved successfully.
C:\WINDOWS\System32\iikyjdky.ini moved successfully.
C:\WINDOWS\System32\afeehbtk.ini moved successfully.
C:\WINDOWS\System32\fhpnpkrh.ini moved successfully.
C:\WINDOWS\System32\fgdnetkn.ini moved successfully.
C:\WINDOWS\System32\dnyapajn.ini moved successfully.
C:\WINDOWS\System32\bayfpvyw.ini moved successfully.
C:\WINDOWS\System32\fiefslwf.ini2 moved successfully.
C:\WINDOWS\System32\yjvccrjl.ini moved successfully.
C:\WINDOWS\System32\fiefslwf.ini moved successfully.
C:\WINDOWS\System32\yubybbod.ini moved successfully.
C:\WINDOWS\System32\ncelcmqi.ini moved successfully.
C:\WINDOWS\System32\ackuimms.ini moved successfully.
C:\WINDOWS\System32\ylasxajs.ini2 moved successfully.
C:\WINDOWS\System32\ylasxajs.ini moved successfully.
File C:\WINDOWS\System32\swgic_navps.dat not found.
File C:\WINDOWS\System32\swgic.dat not found.
File C:\WINDOWS\System32\swgic_nav.dat not found.
File C:\WINDOWS\System32\swgic.exe not found.
C:\WINDOWS\tasks\At4.job moved successfully.
C:\WINDOWS\tasks\At10.job moved successfully.
C:\WINDOWS\tasks\At9.job moved successfully.
C:\WINDOWS\tasks\At7.job moved successfully.
C:\WINDOWS\tasks\At3.job moved successfully.
C:\WINDOWS\tasks\At11.job moved successfully.
C:\WINDOWS\tasks\At8.job moved successfully.
C:\WINDOWS\tasks\At6.job moved successfully.
C:\WINDOWS\tasks\At5.job moved successfully.
C:\WINDOWS\tasks\At12.job moved successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:E32966C0 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:90D89144 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:A56D6987 deleted successfully.
ADS C:\WINDOWS\System32\rundll32.exe:SummaryInformation deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:DE47A3DA deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:CB16385F deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:BD9F7E4E deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:561B1D2B deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:7B52659E deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:0A73A758 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:07241935 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:61F0C8FB deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:48FEA089 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:3214A283 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:861A898F deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:FDDD8917 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:981349EA deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:6C5EC3CD deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:8AB6C1D7 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:3C5ABDC7 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:76BE9842 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:55E3C0E0 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:08D8BB20 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:2ABEB9EB deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:D1361E51 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:0D31DA45 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:74B9EA7F deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:5C6EBC69 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:A296A63F deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:13AA281B deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:88698068 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:7C412B92 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:90B52091 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:5D351BC6 deleted successfully.
Unable to delete ADS C:\Documents and Settings\All Users\Application .
OTL by OldTimer - Version 2.1.1.0 log created on 05232009_013955
========== OTL ==========
Process swgic.exe killed successfully!
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}\ not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{730FA9CA-5A27-48C5-93EE-33AC0F441A73}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{730FA9CA-5A27-48C5-93EE-33AC0F441A73}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8BE98CD7-A957-4D86-ACC4-42F2AB8A57CD}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8BE98CD7-A957-4D86-ACC4-42F2AB8A57CD}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E5BE916F-084C-4A15-AF90-509D814A8C3B}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E5BE916F-084C-4A15-AF90-509D814A8C3B}\ deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\I downloaded pirated Software from P2P not found.
C:\WINDOWS\system32\command.com moved successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\swgic deleted successfully.
c:\windows\system32\swgic.exe moved successfully.
Starting removal of ActiveX control {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}\ not found.
C:\WINDOWS\System32\swgic_nav.dat moved successfully.
C:\WINDOWS\System32\swgic.dat moved successfully.
C:\WINDOWS\System32\swgic_navps.dat moved successfully.
File C:\WINDOWS\System32\swgic.exe not found.
C:\WINDOWS\System32\buhvdipp.ini moved successfully.
C:\WINDOWS\System32\mqskjwmu.ini moved successfully.
C:\WINDOWS\System32\fcdwbsxj.ini moved successfully.
C:\WINDOWS\System32\skdevasc.ini moved successfully.
C:\WINDOWS\System32\lwdfwjfb.ini moved successfully.
C:\WINDOWS\System32\kakgiuyc.ini moved successfully.
C:\WINDOWS\System32\wnakuwmq.ini moved successfully.
C:\WINDOWS\System32\byigksvt.ini moved successfully.
C:\WINDOWS\System32\hslvmfye.ini moved successfully.
C:\WINDOWS\System32\hfygndfy.ini moved successfully.
C:\WINDOWS\System32\mkpsfnhn.ini moved successfully.
C:\WINDOWS\System32\bhqevehq.ini moved successfully.
C:\WINDOWS\System32\jumauruc.ini moved successfully.
C:\WINDOWS\System32\fjynmveq.ini moved successfully.
C:\WINDOWS\System32\gemyboyf.ini moved successfully.
C:\WINDOWS\System32\jhgsbtoe.ini moved successfully.
C:\WINDOWS\System32\abkrrpyh.ini moved successfully.
C:\WINDOWS\System32\ojxalxuo.ini moved successfully.
C:\WINDOWS\System32\vgrohfbd.ini moved successfully.
C:\WINDOWS\System32\paqnfaqr.ini moved successfully.
C:\WINDOWS\System32\pmxewopc.ini moved successfully.
C:\WINDOWS\System32\ujrghmac.ini moved successfully.
C:\WINDOWS\System32\gojnvjta.ini moved successfully.
C:\WINDOWS\System32\jxibxwoo.ini moved successfully.
C:\WINDOWS\System32\mmllm.ini2 moved successfully.
C:\WINDOWS\System32\oparydoo.ini moved successfully.
C:\WINDOWS\System32\bsxahxte.ini moved successfully.
C:\WINDOWS\System32\xpbcfbxa.ini moved successfully.
C:\WINDOWS\System32\uxtnhfmi.ini moved successfully.
C:\WINDOWS\System32\pbhrhlww.ini moved successfully.
C:\WINDOWS\System32\irttqbjb.ini moved successfully.
C:\WINDOWS\System32\aeojhail.ini moved successfully.
C:\WINDOWS\System32\oyntkcoi.ini moved successfully.
C:\WINDOWS\System32\ggxyqxng.ini moved successfully.
C:\WINDOWS\System32\uomxhqcu.ini moved successfully.
C:\WINDOWS\System32\mgdgttjf.ini moved successfully.
C:\WINDOWS\System32\fxjiigff.ini moved successfully.
C:\WINDOWS\System32\gbwqnmvg.ini moved successfully.
C:\WINDOWS\System32\cfbljeso.ini moved successfully.
C:\WINDOWS\System32\fjpswqgg.ini moved successfully.
C:\WINDOWS\System32\umexwiyt.ini moved successfully.
C:\WINDOWS\System32\jmjarjtq.ini moved successfully.
C:\WINDOWS\System32\uqjhbgxo.ini moved successfully.
C:\WINDOWS\System32\lsjykgvq.ini moved successfully.
C:\WINDOWS\System32\xpyxwiyk.ini moved successfully.
C:\WINDOWS\System32\irykscda.ini moved successfully.
C:\WINDOWS\System32\wcefotth.ini moved successfully.
C:\WINDOWS\System32\cixunigm.ini moved successfully.
C:\WINDOWS\System32\ufbdjrbk.ini moved successfully.
C:\WINDOWS\System32\mmllm.ini moved successfully.
C:\WINDOWS\System32\orejmjsx.ini moved successfully.
C:\WINDOWS\System32\mftlnjav.ini moved successfully.
C:\WINDOWS\System32\uevhnkfx.ini moved successfully.
C:\WINDOWS\System32\wyisowed.ini moved successfully.
C:\WINDOWS\System32\trivmvjy.ini moved successfully.
C:\WINDOWS\System32\kvxuemew.ini moved successfully.
C:\WINDOWS\System32\uuvglaci.ini moved successfully.
C:\WINDOWS\System32\kvsisnpk.ini moved successfully.
C:\WINDOWS\System32\xtnnpxlj.ini moved successfully.
C:\WINDOWS\System32\ndevfpcy.ini moved successfully.
C:\WINDOWS\System32\qotiqgrt.ini moved successfully.
C:\WINDOWS\System32\triafphs.ini moved successfully.
C:\WINDOWS\System32\xqhoeqgl.ini moved successfully.
C:\WINDOWS\System32\xjefucqj.ini moved successfully.
C:\WINDOWS\System32\psmmrohb.ini moved successfully.
C:\WINDOWS\System32\nvdgbptf.ini moved successfully.
C:\WINDOWS\System32\jovmmorh.ini moved successfully.
C:\WINDOWS\System32\qhsrlmtm.ini moved successfully.
C:\WINDOWS\System32\gwghclah.ini moved successfully.
C:\WINDOWS\System32\aaxbuwvy.ini moved successfully.
C:\WINDOWS\System32\vonsguws.ini moved successfully.
C:\WINDOWS\System32\bwitexqr.ini moved successfully.
C:\WINDOWS\System32\akradufc.ini moved successfully.
C:\WINDOWS\System32\oluxnuiy.ini moved successfully.
C:\WINDOWS\System32\aagjwwsm.ini moved successfully.
C:\WINDOWS\System32\yooxhhmr.ini moved successfully.
C:\WINDOWS\System32\ohysjtim.ini moved successfully.
C:\WINDOWS\System32\fbetoosu.ini moved successfully.
C:\WINDOWS\System32\uoeeqshj.ini moved successfully.
C:\WINDOWS\System32\qnqgitvt.ini moved successfully.
C:\WINDOWS\System32\kylgepif.ini moved successfully.
C:\WINDOWS\System32\lddfxdkp.ini moved successfully.
C:\WINDOWS\System32\pbcledjh.ini moved successfully.
C:\WINDOWS\System32\ckjdvbhr.ini moved successfully.
C:\WINDOWS\System32\ryvhsofl.ini moved successfully.
C:\WINDOWS\System32\yphngvmb.ini moved successfully.
C:\WINDOWS\System32\xsvuyujf.ini moved successfully.
C:\WINDOWS\System32\paixdfuu.ini moved successfully.
C:\WINDOWS\System32\prrsutck.ini moved successfully.
C:\WINDOWS\System32\rtstv.ini2 moved successfully.
C:\WINDOWS\System32\qssvjena.ini moved successfully.
C:\WINDOWS\System32\qssvjena.ini2 moved successfully.
C:\WINDOWS\System32\hqjaejiy.ini moved successfully.
C:\WINDOWS\System32\ciptxfpn.ini moved successfully.
C:\WINDOWS\System32\gmpbtmgr.ini moved successfully.
C:\WINDOWS\System32\kyyhlbrs.ini moved successfully.
C:\WINDOWS\System32\xvmojalq.ini moved successfully.
C:\WINDOWS\System32\cbsldbcx.ini moved successfully.
C:\WINDOWS\System32\jdnrtwwi.ini moved successfully.
C:\WINDOWS\System32\dwhbatsb.ini moved successfully.
C:\WINDOWS\System32\nypomuin.ini moved successfully.
C:\WINDOWS\System32\pcvkvfkg.ini moved successfully.
C:\WINDOWS\System32\oloexkvx.ini moved successfully.
C:\WINDOWS\System32\weuvmaef.ini moved successfully.
C:\WINDOWS\System32\mukhegbv.ini moved successfully.
C:\WINDOWS\System32\ydqefctf.ini moved successfully.
C:\WINDOWS\System32\sfgsqeqa.ini moved successfully.
C:\WINDOWS\System32\gdgnllty.ini moved successfully.
C:\WINDOWS\System32\uaflvpai.ini moved successfully.
C:\WINDOWS\System32\nffmvtnm.ini moved successfully.
C:\WINDOWS\cookies.ini moved successfully.
C:\WINDOWS\System32\wixwfjwi.ini moved successfully.
C:\WINDOWS\System32\nsmxbdbp.ini moved successfully.
C:\WINDOWS\System32\btonvmpg.ini moved successfully.
C:\WINDOWS\System32\kyodfkes.ini moved successfully.
C:\WINDOWS\System32\nldsqxvd.ini moved successfully.
C:\WINDOWS\System32\vfhbijbd.ini moved successfully.
C:\WINDOWS\System32\dakobxsa.ini moved successfully.
C:\WINDOWS\System32\cerexbch.ini moved successfully.
C:\WINDOWS\System32\yvnebwyn.ini moved successfully.
C:\WINDOWS\System32\tauujmsd.ini moved successfully.
C:\WINDOWS\System32\upitmxns.ini moved successfully.
C:\WINDOWS\System32\tvhmnpnf.ini moved successfully.
C:\WINDOWS\System32\tntnmrpx.ini moved successfully.
C:\WINDOWS\System32\bcfmabap.ini moved successfully.
C:\WINDOWS\System32\pnpgsafn.ini moved successfully.
C:\WINDOWS\System32\sbndyfnd.ini moved successfully.
C:\WINDOWS\System32\tvbochbx.ini moved successfully.
C:\WINDOWS\System32\kaqrsvvg.ini moved successfully.
C:\WINDOWS\System32\yraukrjl.ini moved successfully.
C:\WINDOWS\System32\dmrqwaai.ini moved successfully.
C:\WINDOWS\System32\vnwiyycq.ini moved successfully.
C:\WINDOWS\System32\mftqlrup.ini moved successfully.
C:\WINDOWS\System32\smtucfao.ini moved successfully.
C:\WINDOWS\System32\utncpigx.ini moved successfully.
C:\WINDOWS\System32\fadmkegl.ini moved successfully.
C:\WINDOWS\System32\qaoymllj.ini moved successfully.
C:\WINDOWS\System32\jhmqtokh.ini moved successfully.
C:\WINDOWS\System32\ouhqbxby.ini moved successfully.
C:\WINDOWS\System32\edoceidk.ini moved successfully.
C:\WINDOWS\System32\wnrmgokn.ini moved successfully.
C:\WINDOWS\System32\suneltkp.ini moved successfully.
C:\WINDOWS\System32\hcuqtemo.ini moved successfully.
C:\WINDOWS\System32\bifwleiw.ini moved successfully.
C:\WINDOWS\System32\gycdxbxf.ini moved successfully.
C:\WINDOWS\System32\etekoevi.ini moved successfully.
C:\WINDOWS\System32\hteulqsq.ini moved successfully.
C:\WINDOWS\System32\xxnoimcp.ini moved successfully.
C:\WINDOWS\System32\fbwvjcwp.ini moved successfully.
C:\WINDOWS\System32\ppmnlrlc.ini moved successfully.
C:\WINDOWS\System32\ulluohrc.ini moved successfully.
C:\WINDOWS\System32\fmxmbegv.ini moved successfully.
C:\WINDOWS\System32\briocjkf.ini moved successfully.
C:\WINDOWS\System32\cowqrbdq.ini moved successfully.
C:\WINDOWS\System32\rdvmxdpb.ini moved successfully.
C:\WINDOWS\System32\jjhkhjyy.ini moved successfully.
C:\WINDOWS\System32\ekcwogkb.ini moved successfully.
C:\WINDOWS\System32\exjyaimo.ini moved successfully.
C:\WINDOWS\System32\iikyjdky.ini moved successfully.
C:\WINDOWS\System32\afeehbtk.ini moved successfully.
C:\WINDOWS\System32\fhpnpkrh.ini moved successfully.
C:\WINDOWS\System32\fgdnetkn.ini moved successfully.
C:\WINDOWS\System32\dnyapajn.ini moved successfully.
C:\WINDOWS\System32\bayfpvyw.ini moved successfully.
C:\WINDOWS\System32\fiefslwf.ini2 moved successfully.
C:\WINDOWS\System32\yjvccrjl.ini moved successfully.
C:\WINDOWS\System32\fiefslwf.ini moved successfully.
C:\WINDOWS\System32\yubybbod.ini moved successfully.
C:\WINDOWS\System32\ncelcmqi.ini moved successfully.
C:\WINDOWS\System32\ackuimms.ini moved successfully.
C:\WINDOWS\System32\ylasxajs.ini2 moved successfully.
C:\WINDOWS\System32\ylasxajs.ini moved successfully.
File C:\WINDOWS\System32\swgic_navps.dat not found.
File C:\WINDOWS\System32\swgic.dat not found.
File C:\WINDOWS\System32\swgic_nav.dat not found.
File C:\WINDOWS\System32\swgic.exe not found.
C:\WINDOWS\tasks\At4.job moved successfully.
C:\WINDOWS\tasks\At10.job moved successfully.
C:\WINDOWS\tasks\At9.job moved successfully.
C:\WINDOWS\tasks\At7.job moved successfully.
C:\WINDOWS\tasks\At3.job moved successfully.
C:\WINDOWS\tasks\At11.job moved successfully.
C:\WINDOWS\tasks\At8.job moved successfully.
C:\WINDOWS\tasks\At6.job moved successfully.
C:\WINDOWS\tasks\At5.job moved successfully.
C:\WINDOWS\tasks\At12.job moved successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:E32966C0 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:90D89144 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:A56D6987 deleted successfully.
ADS C:\WINDOWS\System32\rundll32.exe:SummaryInformation deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:DE47A3DA deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:CB16385F deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:BD9F7E4E deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:561B1D2B deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:7B52659E deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:0A73A758 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:07241935 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:61F0C8FB deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:48FEA089 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:3214A283 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:861A898F deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:FDDD8917 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:981349EA deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:6C5EC3CD deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:8AB6C1D7 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:3C5ABDC7 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:76BE9842 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:55E3C0E0 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:08D8BB20 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:2ABEB9EB deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:D1361E51 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:0D31DA45 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:74B9EA7F deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:5C6EBC69 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:A296A63F deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:13AA281B deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:88698068 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:7C412B92 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:90B52091 deleted successfully.
ADS C:\Documents and Settings\All Users\Application Data\TEMP:5D351BC6 deleted successfully.
Unable to delete ADS C:\Documents and Settings\All Users\Application .
OTL by OldTimer - Version 2.1.1.0 log created on 05232009_013955
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
tu peux toujours utiliser ce site avant pour vérifier si bel et bien c'est une infection.
https://www.virustotal.com/gui/
tu upload ton fichier et il te donne le résultat de beaucoup antivirus en même temps.
https://www.virustotal.com/gui/
tu upload ton fichier et il te donne le résultat de beaucoup antivirus en même temps.