~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 8.0.3 (02.09.2016) Operating System: Windows 7 Ultimate x64 Ran by mohammed (Administrator) on 12/03/2016 at 20:18:04,27 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ File System: 85 Successfully deleted: C:\ProgramData\camycilop (Folder) Successfully deleted: C:\ProgramData\camycilops (Folder) Successfully deleted: C:\ProgramData\drivergenius (Folder) Successfully deleted: C:\ProgramData\iobit\driver booster (Folder) Successfully deleted: C:\ProgramData\productdata (Folder) Successfully deleted: C:\ProgramData\saophase (Folder) Successfully deleted: C:\ProgramData\saophases (Folder) Successfully deleted: C:\ProgramData\thunder network (Folder) Successfully deleted: C:\ProgramData\zonelams (Folder) Successfully deleted: C:\Users\mohammed\AppData\Local\drivertoolkit (Folder) Successfully deleted: C:\Users\mohammed\AppData\Roaming\iobit\driver booster (Folder) Successfully deleted: C:\Users\mohammed\AppData\Roaming\Mozilla\Firefox\Profiles\1yy15wqf.default\user.js (File) Successfully deleted: C:\Users\mohammed\AppData\Roaming\Mozilla\Firefox\Profiles\66e8w00t.default\user.js (File) Successfully deleted: C:\Users\mohammed\AppData\Roaming\Mozilla\Firefox\Profiles\8h54gx7o.default\searchplugins\bingp.xml (File) Successfully deleted: C:\Users\mohammed\AppData\Roaming\Mozilla\Firefox\Profiles\8h54gx7o.default\user.js (File) Successfully deleted: C:\Users\mohammed\AppData\Roaming\Mozilla\Firefox\Profiles\pc5iuacq.default\user.js (File) Successfully deleted: C:\Users\mohammed\AppData\Roaming\productdata (Folder) Successfully deleted: C:\Users\Public\thunder network (Folder) Successfully deleted: C:\Windows\system32\Tasks\Driver Booster SkipUAC (mohammed) (Task) Successfully deleted: C:\Windows\system32\Tasks\DriverToolkit Autorun (Task) Successfully deleted: C:\Windows\SysWOW64\findit.xml (File) Successfully deleted: C:\Windows\Tasks\DriverToolkit Autorun.job (Task) Successfully deleted: C:\awh147C.tmp (File) Successfully deleted: C:\awh1C84.tmp (File) Successfully deleted: C:\awh1CB3.tmp (File) Successfully deleted: C:\awh21B2.tmp (File) Successfully deleted: C:\awh227D.tmp (File) Successfully deleted: C:\awh2386.tmp (File) Successfully deleted: C:\awh253B.tmp (File) Successfully deleted: C:\awh25C8.tmp (File) Successfully deleted: C:\awh2692.tmp (File) Successfully deleted: C:\awh26D1.tmp (File) Successfully deleted: C:\awh26E0.tmp (File) Successfully deleted: C:\awh270F.tmp (File) Successfully deleted: C:\awh28E3.tmp (File) Successfully deleted: C:\awh297F.tmp (File) Successfully deleted: C:\awh29CD.tmp (File) Successfully deleted: C:\awh29DD.tmp (File) Successfully deleted: C:\awh2A5A.tmp (File) Successfully deleted: C:\awh2AC7.tmp (File) Successfully deleted: C:\awh2AE6.tmp (File) Successfully deleted: C:\awh2CE9.tmp (File) Successfully deleted: C:\awh2CEA.tmp (File) Successfully deleted: C:\awh2FD6.tmp (File) Successfully deleted: C:\awh2FE5.tmp (File) Successfully deleted: C:\awh2FF5.tmp (File) Successfully deleted: C:\awh3004.tmp (File) Successfully deleted: C:\awh3024.tmp (File) Successfully deleted: C:\awh319A.tmp (File) Successfully deleted: C:\awh31C9.tmp (File) Successfully deleted: C:\awh32A3.tmp (File) Successfully deleted: C:\awh3458.tmp (File) Successfully deleted: C:\awh3571.tmp (File) Successfully deleted: C:\awh3580.tmp (File) Successfully deleted: C:\awh35BF.tmp (File) Successfully deleted: C:\awh3726.tmp (File) Successfully deleted: C:\awh3727.tmp (File) Successfully deleted: C:\awh3774.tmp (File) Successfully deleted: C:\awh37F0.tmp (File) Successfully deleted: C:\awh39F3.tmp (File) Successfully deleted: C:\awh3ADD.tmp (File) Successfully deleted: C:\awh41A1.tmp (File) Successfully deleted: C:\awh4401.tmp (File) Successfully deleted: C:\awh49BC.tmp (File) Successfully deleted: C:\awh4AC5.tmp (File) Successfully deleted: C:\awh4EF9.tmp (File) Successfully deleted: C:\awhC42A.tmp (File) Successfully deleted: C:\awhD799.tmp (File) Successfully deleted: C:\Program Files (x86)\drivertoolkit (Folder) Successfully deleted: C:\Users\mohammed\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) Successfully deleted: C:\Users\mohammed\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4LH33TS2 (Temporary Internet Files Folder) Successfully deleted: C:\Users\mohammed\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) Successfully deleted: C:\Users\mohammed\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62HZRY57 (Temporary Internet Files Folder) Successfully deleted: C:\Users\mohammed\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FUKMTPTA (Temporary Internet Files Folder) Successfully deleted: C:\Users\mohammed\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) Successfully deleted: C:\Users\mohammed\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) Successfully deleted: C:\Users\mohammed\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PM3FQFB3 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4LH33TS2 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62HZRY57 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FUKMTPTA (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PM3FQFB3 (Temporary Internet Files Folder) Registry: 14 Successfully deleted: HKLM\SYSTEM\CurrentControlSet\services\caMyciloP (Registry Key) Successfully deleted: HKLM\SYSTEM\CurrentControlSet\services\Saophase (Registry Key) Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Main\\Search Bar (Registry Value) Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Main\\Search Page (Registry Value) Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Main\\SearchAssistant (Registry Value) Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Main\\Start Page (Registry Value) Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Search\\Default_Search_URL (Registry Value) Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchUrl\\Default (Registry Value) Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{C0C3A6C6-03BC-4195-8FCB-AEA091301353} (Registry Key) Successfully deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} (Registry Key) Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} (Registry Key) Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page (Registry Value) Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page (Registry Value) Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl\\Default (Registry Value) ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 12/03/2016 at 20:20:49,99 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~