~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 8.0.7 (07.03.2016) Operating System: Windows 7 Ultimate x64 Ran by Krimou (Administrator) on 05/09/2016 at 22:27:47,27 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ File System: 44 Successfully deleted: C:\Users\Krimou\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio (Folder) Successfully deleted: C:\Users\Krimou\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gkojfkhlekighikafcpjkiklfbnlmeio_0.localstorage-journal (File) Successfully deleted: C:\Users\Krimou\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_gkojfkhlekighikafcpjkiklfbnlmeio_0.localstorage (File) Successfully deleted: C:\Users\Krimou\AppData\Roaming\getrighttogo (Folder) Successfully deleted: C:\Users\Krimou\AppData\Roaming\Mozilla\Firefox\Profiles\0f0t4pw1.default\Invalidprefs.js (File) Successfully deleted: C:\Users\Public\Desktop\hotspot shield.lnk (Shortcut) Successfully deleted: C:\Program Files (x86)\conduit (Folder) Successfully deleted: C:\Users\Krimou\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) Successfully deleted: C:\Users\Krimou\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\33NV4DVJ (Temporary Internet Files Folder) Successfully deleted: C:\Users\Krimou\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4DSD5LKV (Temporary Internet Files Folder) Successfully deleted: C:\Users\Krimou\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Krimou\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DUUWLMN7 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Krimou\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E1K13KRF (Temporary Internet Files Folder) Successfully deleted: C:\Users\Krimou\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EPYVBLD3 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Krimou\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Krimou\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J7UY0D6K (Temporary Internet Files Folder) Successfully deleted: C:\Users\Krimou\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K2CKIC30 (Temporary Internet Files Folder) Successfully deleted: C:\Users\Krimou\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LAT2Z20G (Temporary Internet Files Folder) Successfully deleted: C:\Users\Krimou\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) Successfully deleted: C:\Users\Krimou\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PGCPH3II (Temporary Internet Files Folder) Successfully deleted: C:\Users\Krimou\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PORF30UJ (Temporary Internet Files Folder) Successfully deleted: C:\Users\Krimou\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R4ENRXIQ (Temporary Internet Files Folder) Successfully deleted: C:\Users\Krimou\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S854GQWR (Temporary Internet Files Folder) Successfully deleted: C:\Users\Krimou\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\V0PV2HS2 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\prefetch\MY-SEARCHTOOLBARHELPER.EXE-690A5D15.pf (File) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\33NV4DVJ (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4DSD5LKV (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DUUWLMN7 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E1K13KRF (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EPYVBLD3 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\J7UY0D6K (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K2CKIC30 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LAT2Z20G (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PGCPH3II (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PORF30UJ (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\R4ENRXIQ (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S854GQWR (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\V0PV2HS2 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\SysWOW64\REN98E4.tmp (File) Successfully deleted: C:\Windows\SysWOW64\RENEB77.tmp (File) Registry: 11 Successfully deleted: HKLM\Software\Google\Chrome\Extensions\lkemddiljapcmhicklfpcbpfffahfbja (Registry Key) Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D366E137-6C51-46B1-A99A-7B679F8009C2} (Registry Value) Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} (Registry Key) Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} (Registry Key) Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{E733165D-CBCF-4FDA-883E-ADEF965B476C} (Registry Key) Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{ED771E9A-5915-45EF-995C-AA8792DFBC9F} (Registry Key) Successfully deleted: HKLM\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} (Registry Key) Successfully deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d366e137-6c51-46b1-a99a-7b679f8009c2} (Registry Key) Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} (Registry Key) Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d366e137-6c51-46b1-a99a-7b679f8009c2} (Registry Key) Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{D366E137-6C51-46B1-A99A-7B679F8009C2} (Registry Value) ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 05/09/2016 at 22:31:20,92 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~