cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.0 (12.05.2016)
Operating System: Microsoft Windows XP x86
Ran by RAMSKINDT (Administrator) on 08/01/2017 at 11:05:10,87
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 23

Successfully deleted: C:\Documents and Settings\RAMSKINDT\Application Data\Mozilla\Firefox\Profiles\5imvjbow.default\Invalidprefs.js (File)
Successfully deleted: C:\Documents and Settings\RAMSKINDT\Application Data\Mozilla\Firefox\Profiles\5imvjbow.default\searchplugins\delta.xml (File)
Successfully deleted: C:\Documents and Settings\RAMSKINDT\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_dlnembnfbcpjnepmfjmngjenhhajpdfd_0.localstorage-journal (File)
Successfully deleted: C:\Documents and Settings\RAMSKINDT\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_dlnembnfbcpjnepmfjmngjenhhajpdfd_0.localstorage (File)
Successfully deleted: C:\WINDOWS\wininit.ini (File)
Successfully deleted: C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\35HH3AHP (Temporary Internet Files Folder)
Successfully deleted: C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\A242VWJT (Temporary Internet Files Folder)
Successfully deleted: C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\EZW7QJC7 (Temporary Internet Files Folder)
Successfully deleted: C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\KV8JC7CN (Temporary Internet Files Folder)
Successfully deleted: C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\QRWLULYF (Temporary Internet Files Folder)
Successfully deleted: C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\TJQOKODD (Temporary Internet Files Folder)
Successfully deleted: C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\UJYBAF89 (Temporary Internet Files Folder)
Successfully deleted: C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\UWVA0KDX (Temporary Internet Files Folder)
Successfully deleted: C:\Program Files\GUT2.tmp (File)
Successfully deleted: C:\Program Files\GUTE.tmp (File)
Successfully deleted: C:\WINDOWS\System32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\35HH3AHP (Temporary Internet Files Folder)
Successfully deleted: C:\WINDOWS\System32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\A242VWJT (Temporary Internet Files Folder)
Successfully deleted: C:\WINDOWS\System32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\EZW7QJC7 (Temporary Internet Files Folder)
Successfully deleted: C:\WINDOWS\System32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\KV8JC7CN (Temporary Internet Files Folder)
Successfully deleted: C:\WINDOWS\System32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\QRWLULYF (Temporary Internet Files Folder)
Successfully deleted: C:\WINDOWS\System32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\TJQOKODD (Temporary Internet Files Folder)
Successfully deleted: C:\WINDOWS\System32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\UJYBAF89 (Temporary Internet Files Folder)
Successfully deleted: C:\WINDOWS\System32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\UWVA0KDX (Temporary Internet Files Folder)

Deleted the following from C:\Documents and Settings\RAMSKINDT\Application Data\Mozilla\Firefox\Profiles\5imvjbow.default\prefs.js
user_pref(extensions.delta.admin, false);
user_pref(extensions.delta.aflt, babsst);
user_pref(extensions.delta.appId, {C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3});
user_pref(extensions.delta.autoRvrt, false);
user_pref(extensions.delta.dfltLng, en);
user_pref(extensions.delta.excTlbr, false);
user_pref(extensions.delta.ffxUnstlRst, true);
user_pref(extensions.delta.id, 941e49310000000000000016e355a63b);
user_pref(extensions.delta.instlDay, 15817);
user_pref(extensions.delta.instlRef, sst);
user_pref(extensions.delta.newTab, false);
user_pref(extensions.delta.prdct, delta);
user_pref(extensions.delta.prtnrId, delta);
user_pref(extensions.delta.rvrt, false);
user_pref(extensions.delta.smplGrp, none);
user_pref(extensions.delta.tlbrId, base);
user_pref(extensions.delta.tlbrSrchUrl, );
user_pref(extensions.delta.vrsn, 1.8.16.16);
user_pref(extensions.delta.vrsnTs, 1.8.16.1617:38:07);
user_pref(extensions.delta.vrsni, 1.8.16.16);
user_pref(extensions.incredibar.srchprvdr, );
user_pref(extensions.incredibar_i.aflt, orgnl);
user_pref(extensions.incredibar_i.dfltLng, );
user_pref(extensions.incredibar_i.did, 10665);
user_pref(extensions.incredibar_i.excTlbr, false);
user_pref(extensions.incredibar_i.id, 941e49310000000000000016e355a63b);
user_pref(extensions.incredibar_i.installerproductid, 26);
user_pref(extensions.incredibar_i.instlDay, 15682);
user_pref(extensions.incredibar_i.instlRef, );
user_pref(extensions.incredibar_i.ms_url_id, );
user_pref(extensions.incredibar_i.newTab, false);
user_pref(extensions.incredibar_i.ppd, );
user_pref(extensions.incredibar_i.prdct, incredibar);
user_pref(extensions.incredibar_i.productid, 26);
user_pref(extensions.incredibar_i.prtnrId, Incredibar);
user_pref(extensions.incredibar_i.smplGrp, none);
user_pref(extensions.incredibar_i.tlbrId, base);
user_pref(extensions.incredibar_i.tlbrSrchUrl, hxxp://mystart.Incredibar.com/?a=6R8NE7hfJH&loc=IB_TB&i=26&search=);
user_pref(extensions.incredibar_i.upn2, 6R8NE7hfJH);
user_pref(extensions.incredibar_i.upn2n, 92825537754833781);
user_pref(extensions.incredibar_i.vrsn, 1.5.11.14);
user_pref(extensions.incredibar_i.vrsnTs, 1.5.11.1421:20:40);
user_pref(extensions.incredibar_i.vrsni, 1.5.11.14);
user_pref(extensions.wajam.mappingListJsonString, {\version\:\0.21145\,\update_interval\:59,\base_url\:\hxxp:\\/\\/www.wajam.com\\/\,\supported_sites\:{\google
user_pref(extensions.wajam.supported_sites.bing.wajam_se_js, try {window['APP_LABEL_NAME'] = 'wajam';window['APP_LABEL_NAME_FULL_UC'] = 'WAJAM';window['WAJAM_APP_LABEL_NAME
user_pref(extensions.wajam.supported_sites.google.wajam_google_se_js, try {window['APP_LABEL_NAME'] = 'wajam';window['APP_LABEL_NAME_FULL_UC'] = 'WAJAM';window['WAJAM_APP_L
user_pref({FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}.ScriptData_WSG_blackList, form=CONTLB|babsrc=toolbar|babsrc=tb_ss|invocationType=tb50-ie-aolsoftonic-tbsbox-en-us|invocatio
user_pref({FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}.ScriptData_WSG_referrer, hxxp://www1.delta-search.com/|||8641370977265822);
user_pref({FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}.ScriptData_WSG_temp_referer, hxxp://www1.delta-search.com/?q=keltube&babsrc=HP_ss&s=web&rlz=0&as=0&ac=0/|#|old_value|||8641
user_pref({FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}.ScriptData_WSG_whiteList, {\search.babylon.com\:\q\,\search.imesh.net\:\q\,\www.search-results.com\:\q\,\home.



Registry: 3

Successfully deleted: HKLM\Software\Google\Chrome\Extensions\fgfdfcbeamjnjdejakdidpniblllnbpg (Registry Key)
Successfully deleted: HKLM\Software\Wow6432Node\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd (Registry Key)
Successfully deleted: HKLM\Software\Microsoft\Internet Explorer\Search\\SearchAssistant (Registry Value)




~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 08/01/2017 at 11:08:14,93
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Publicité


Signaler le contenu de ce document

Publicité