~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 8.0.3 (02.09.2016) Operating System: Windows 7 Ultimate x86 Ran by benaouda cheikh (Administrator) on 15/03/2016 at 12:41:50,88 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ File System: 42 Failed to delete: C:\Users\benaouda cheikh\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam (Folder) Failed to delete: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I4W1BPQG (Temporary Internet Files Folder) Successfully deleted: C:\ProgramData\apn (Folder) Successfully deleted: C:\ProgramData\iobit\driver booster (Folder) Successfully deleted: C:\ProgramData\productdata (Folder) Successfully deleted: C:\ProgramData\Start Menu\Programs\tweakbit (Folder) Successfully deleted: C:\ProgramData\tweakbit (Folder) Successfully deleted: C:\Users\benaouda cheikh\AppData\Local\drivertoolkit (Folder) Successfully deleted: C:\Users\benaouda cheikh\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pbjikboenpfhbbejgkoklgkhjpfogcam_0.localstorage (File) Successfully deleted: C:\Users\benaouda cheikh\AppData\Local\mobogenie (Folder) Successfully deleted: C:\Users\benaouda cheikh\AppData\Roaming\iobit\driver booster (Folder) Successfully deleted: C:\Users\benaouda cheikh\AppData\Roaming\Mozilla\Firefox\Profiles\d5ujhutm.default\user.js (File) Successfully deleted: C:\Users\benaouda cheikh\AppData\Roaming\pc app store (Folder) Successfully deleted: C:\Users\benaouda cheikh\AppData\Roaming\productdata (Folder) Successfully deleted: C:\users\Public\Documents\pc faster (Folder) Successfully deleted: C:\Windows\System32\Tasks\LaunchSignup (Task) Successfully deleted: C:\Windows\System32\Tasks\SparkUpdater (Task) Successfully deleted: C:\Windows\Tasks\DriverToolkit Autorun.job (Task) Successfully deleted: C:\Program Files\drivertoolkit (Folder) Successfully deleted: C:\Program Files\myfree codec (Folder) Successfully deleted: C:\Program Files\settings manager (Folder) Successfully deleted: C:\Users\benaouda cheikh\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\00J1A7ML (Temporary Internet Files Folder) Successfully deleted: C:\Users\benaouda cheikh\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1G24PXXG (Temporary Internet Files Folder) Successfully deleted: C:\Users\benaouda cheikh\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4H1SGA7G (Temporary Internet Files Folder) Successfully deleted: C:\Users\benaouda cheikh\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4ZIF6K81 (Temporary Internet Files Folder) Successfully deleted: C:\Users\benaouda cheikh\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5FPEIXJR (Temporary Internet Files Folder) Successfully deleted: C:\Users\benaouda cheikh\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\C3NWSL0E (Temporary Internet Files Folder) Successfully deleted: C:\Users\benaouda cheikh\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I4W1BPQG (Temporary Internet Files Folder) Successfully deleted: C:\Users\benaouda cheikh\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JC2WQWKE (Temporary Internet Files Folder) Successfully deleted: C:\Users\benaouda cheikh\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K96B7QZ5 (Temporary Internet Files Folder) Successfully deleted: C:\Users\benaouda cheikh\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LAP5RD1T (Temporary Internet Files Folder) Successfully deleted: C:\Users\benaouda cheikh\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Y64MIXIP (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\00J1A7ML (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\1G24PXXG (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4H1SGA7G (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4ZIF6K81 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5FPEIXJR (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\C3NWSL0E (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JC2WQWKE (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K96B7QZ5 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LAP5RD1T (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Y64MIXIP (Temporary Internet Files Folder) Deleted the following from C:\Users\benaouda cheikh\AppData\Roaming\Mozilla\Firefox\Profiles\d5ujhutm.default\prefs.js user_pref(avira.safe_search.search_was_active, false); user_pref(extensions.LVD-SAE.newTabSearchURL, \hxxp://dts.search.ask.com/sr?gct=hp&o=APN10644A&sysid=533&qrsc=2871&l=dis&sver=3&t_type=0&dateOfInstall=2015-08-25&d=&v=&apn user_pref(extensions.LVD-SAE.searchURL, \hxxp://dts.search.ask.com/sr?gct=ds&o=APN10644&sysid=533&qrsc=2871&l=dis&sver=3&t_type=0&dateOfInstall=2015-08-25&d=&v=&apn_ptnrs= user_pref(extensions.safesearch.MP_DISTINCT_ID, \148e0b4e53ca-07ffccf3c49fa28-7f6c1535-0-148e0b4e53d14e\); user_pref(extensions.safesearch.SAUTH_expires_at, 1413127641); user_pref(extensions.safesearch.SAUTH_rndsnr, \0219fd3a46c1563ce9b483faa3519b105a6b834e\); user_pref(extensions.safesearch.SAUTH_userid, 4414137891); user_pref(extensions.safesearch.SAUTH_utoken, \27c5e921b3e35491a32711214cc35ecdf34691ac\); user_pref(extensions.safesearch.install, 1412519224653); Registry: 7 Successfully deleted: HKCU\Software\Google\Chrome\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam (Registry Key) Successfully deleted: HKLM\SYSTEM\CurrentControlSet\services\BprotectEx (Registry Key) Successfully deleted: HKLM\SYSTEM\CurrentControlSet\services\PCFApiUtil (Registry Key) Successfully deleted: HKLM\SYSTEM\CurrentControlSet\services\SparkSvc (Registry Key) Successfully deleted: HKLM\SYSTEM\CurrentControlSet\services\SparkUpdater (Registry Key) Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B3B3A6AC-74EC-BD56-BCDB-EFA4799FB9DF} (Registry Key) Successfully deleted: HKLM\Software\Microsoft\Internet Explorer\Search\\SearchAssistant (Registry Value) ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 15/03/2016 at 12:48:45,06 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~