cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.7 (07.03.2016)
Operating System: Windows 10 Home Single Language x64
Ran by pompido (Administrator) on 12/07/2016 at 0:19:03,17
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 13

Successfully deleted: C:\ProgramData\1457826894.bdinstall.bin (File)
Successfully deleted: C:\ProgramData\Start Menu\Programs\ytd video downloader (Folder)
Successfully deleted: C:\ProgramData\ytd video downloader (Folder)
Successfully deleted: C:\Users\ayoub\AppData\Local\crashrpt (Folder)
Successfully deleted: C:\Users\ayoub\AppData\Local\Google\Chrome\User Data\Default\Extensions\fpmeembnagmagppkgghhfjfdfajdfcah (Folder)
Successfully deleted: C:\Users\ayoub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\hotspot shield.lnk (Shortcut)
Successfully deleted: C:\Users\ayoub\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\ytd video downloader.lnk (Shortcut)
Successfully deleted: C:\Users\ayoub\AppData\Roaming\Mozilla\Firefox\Profiles\e3v3i08p.default\searchplugins\avg-secure-search.xml (File)
Successfully deleted: C:\Users\ayoub\AppData\Roaming\Mozilla\Firefox\Profiles\e3v3i08p.default\user.js (File)
Successfully deleted: C:\Users\ayoub\AppData\Roaming\opencandy (Folder)
Successfully deleted: C:\WINDOWS\wininit.ini (File)
Successfully deleted: C:\WINDOWS\prefetch\FREEMAKEERRORREPORTER.EXE-79CEDCA7.pf (File)
Successfully deleted: C:\WINDOWS\prefetch\FREEMAKEVD.EXE-00BCEFA7.pf (File)

Deleted the following from C:\Users\ayoub\AppData\Roaming\Mozilla\Firefox\Profiles\e3v3i08p.default\prefs.js
user_pref(browser.search.hiddenOneOffs, AVG Secure Search);
user_pref(browser.search.order.1, default-search.net);
user_pref(browser.search.selectedEngine, AVG Secure Search);
user_pref(browser.uiCustomization.state, {\placements\:{\PanelUI-contents\:[\edit-controls\,\zoom-controls\,\new-window-button\,\privatebrowsing-button\,\save-
user_pref(keyword.URL, hxxp://search.findwide.com/serp?guid={CE7689DC-3748-4C30-8E76-6FFD6EB1B93A}&action=default_search&k=);
user_pref(plugin.state.npconduitfirefoxplugin, 0);



Registry: 9

Successfully deleted: HKLM\Software\Google\Chrome\Extensions\fpmeembnagmagppkgghhfjfdfajdfcah (Registry Key)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1C1B306E-DC47-4991-8F42-CA83A2D1D37B} (Registry Key)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2f23ab71-4ac6-41f2-a955-ea576e553146} (Registry Key)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{4FDA6184-47AC-48EC-AD79-1C5C71B7AEBD} (Registry Key)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{8CDE19E6-71C2-4B46-89B7-35F6A18C571A} (Registry Key)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} (Registry Key)
Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2514} (Registry Key)
Successfully deleted: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{4FDA6184-47AC-48EC-AD79-1C5C71B7AEBD} (Registry Key)
Successfully deleted: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2514} (Registry Key)




~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 12/07/2016 at 0:22:46,64
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Publicité


Signaler le contenu de ce document

Publicité