cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 7.5.7 (08.18.2015:1)
OS: Windows 8.1 x64
Ran by RayanB on 22/08/2015 at 13:31:39,92
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services

Successfully deleted: [Service] 580a4029 [Reboot required]
Successfully deleted: [Service] innfd_1_10_0_14 [Reboot required]
Successfully deleted: [Service] qrnfd_1_10_0_9 [Reboot required]
Successfully deleted: [Service] scfd_1_10_0_16 [Reboot required]
Successfully deleted: [Service] wehulosu [Reboot required]
Successfully deleted: [Service] wsafd_1_10_0_19 [Reboot required]



~~~ Tasks

Successfully deleted: [Task] C:\WINDOWS\Tasks\APSnotifierPP1.job
Successfully deleted: [Task] C:\WINDOWS\Tasks\APSnotifierPP2.job
Successfully deleted: [Task] C:\WINDOWS\Tasks\APSnotifierPP3.job



~~~ Registry Values

Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\apphide
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\fst_fr_77
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010001
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010003
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010006
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010007
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010009
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010011
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010015
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010016
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010025
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010028
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010032
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010035
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010038
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010039
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010040
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010041
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010043
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010044
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010046
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010047
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010048
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010049
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010050
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010054
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010055
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010057
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010058
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010064
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_005010066
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_272
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_300
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_509
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_575
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_618
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_629
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_640
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\gmsd_fr_652



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\APN PIP
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AskPartnerNetwork
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\AskPartnerNetwork
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Eventlog\Application\Update Edu App
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Eventlog\Application\Util Edu App
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Eventlog\Application\wbsvc
Successfully repaired: [Registry Key] HKEY_LOCAL_MACHINE\Software\Clients\StartMenuInternet\Google Chrome\shell\open\command
Successfully repaired: [Registry Key] HKEY_LOCAL_MACHINE\Software\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command



~~~ Files

Failed to delete: [File] C:\WINDOWS\system32\drivers\bsdriver.sys
Failed to delete: [File] C:\WINDOWS\SysWOW64\number of results
Successfully deleted: [File] C:\Users\RayanB\Appdata\LocalLow\microsoft\silverlight\outofbrowser\index\portal.qtrax.com
Successfully deleted: [File] C:\Users\RayanB\Appdata\Local\nsa6FCD.tmp
Successfully deleted: [File] C:\Users\RayanB\AppData\Roaming\appdataFr25.bin
Successfully deleted: [File] C:\Users\RayanB\Appdata\Local\google\chrome\user data\default\local storage\chrome-extension_ehhlaekjfiiojlddgndcnefflngfmhen_0.localstorage
Successfully deleted: [File] C:\Users\RayanB\Appdata\Local\google\chrome\user data\default\local storage\chrome-extension_igdhbblpcellaljokkpfhcjlagemhgjl_0.localstorage



~~~ Folders

Successfully deleted: [Folder] C:\Program Files (x86)\predm
Successfully deleted: [Folder] C:\Users\RayanB\Appdata\Local\cre
Successfully deleted: [Folder] C:\Users\RayanB\Appdata\Local\smartweb
Successfully deleted: [Folder] C:\Users\RayanB\Appdata\LocalLow\company
Successfully deleted: [Folder] C:\Users\RayanB\AppData\Roaming\cpuminer
Successfully deleted: [Folder] C:\ProgramData\{ea119d12-f3a8-13c7-ea11-19d12f3a744b}
Successfully deleted: [Folder] C:\Users\RayanB\Appdata\Local\32444335-1424774412-3642-5335-28924A3BCF9A
Successfully deleted: [Folder] C:\Users\RayanB\Appdata\Local\32444335-1425384274-3642-5335-28924A3BCF9A
Successfully deleted: [Folder] C:\Users\RayanB\Appdata\Local\32444335-1426006244-3642-5335-28924A3BCF9A
Successfully deleted: [Folder] C:\Users\RayanB\AppData\Roaming\32444335-1424774348-3642-5335-28924A3BCF9A
Successfully deleted: [Folder] C:\Users\RayanB\AppData\Roaming\32444335-1424778617-3642-5335-28924A3BCF9A
Successfully deleted: [Folder] C:\Users\RayanB\AppData\Roaming\32444335-1424783423-3642-5335-28924A3BCF9A
Successfully deleted: [Folder] C:\Users\RayanB\AppData\Roaming\32444335-1425305339-3642-5335-28924A3BCF9A
Successfully deleted: [Folder] C:\Users\RayanB\AppData\Roaming\32444335-1425383889-3642-5335-28924A3BCF9A
Successfully deleted: [Folder] C:\Users\RayanB\AppData\Roaming\32444335-1425389699-3642-5335-28924A3BCF9A
Successfully deleted: [Folder] C:\Users\RayanB\AppData\Roaming\32444335-1425416112-3642-5335-28924A3BCF9A
Successfully deleted: [Folder] C:\Users\RayanB\AppData\Roaming\32444335-1425471445-3642-5335-28924A3BCF9A
Successfully deleted: [Folder] C:\Users\RayanB\AppData\Roaming\32444335-1425514213-3642-5335-28924A3BCF9A
Successfully deleted: [Folder] C:\Users\RayanB\AppData\Roaming\32444335-1425563633-3642-5335-28924A3BCF9A
Successfully deleted: [Folder] C:\Users\RayanB\AppData\Roaming\32444335-1425921565-3642-5335-28924A3BCF9A
Successfully deleted: [Folder] C:\Users\RayanB\AppData\Roaming\32444335-1426002430-3642-5335-28924A3BCF9A
Successfully deleted: [Folder] C:\Users\RayanB\AppData\Roaming\32444335-1426079564-3642-5335-28924A3BCF9A
Successfully deleted: [Folder] C:\Users\RayanB\AppData\Roaming\32444335-1433606691-3642-5335-28924A3BCF9A



~~~ Chrome


[C:\Users\RayanB\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - default search provider reset

[C:\Users\RayanB\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted:

[C:\Users\RayanB\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset

[C:\Users\RayanB\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted:





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 22/08/2015 at 13:34:10,65
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Publicité


Signaler le contenu de ce document

Publicité