~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 8.1.4 (07.09.2017) Operating System: Windows 7 Home Premium x64 Ran by nathalie (Administrator) on 12/08/2017 at 15:05:19,10 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ File System: 33 Successfully deleted: C:\Program Files (x86)\Mozilla Firefox\searchplugins\search_results.xml (File) Successfully deleted: C:\ProgramData\mntemp (File) Successfully deleted: C:\Users\nathalie\AppData\Roaming\Mozilla\Firefox\Profiles\y0lamiht.default\user.js (File) Successfully deleted: C:\Users\nathalie\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) Successfully deleted: C:\Users\nathalie\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2BKZZUD2 (Temporary Internet Files Folder) Successfully deleted: C:\Users\nathalie\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\45F8OCTY (Temporary Internet Files Folder) Successfully deleted: C:\Users\nathalie\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) Successfully deleted: C:\Users\nathalie\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6XKU7B7H (Temporary Internet Files Folder) Successfully deleted: C:\Users\nathalie\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7VF0HSG1 (Temporary Internet Files Folder) Successfully deleted: C:\Users\nathalie\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9PM5GOPJ (Temporary Internet Files Folder) Successfully deleted: C:\Users\nathalie\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) Successfully deleted: C:\Users\nathalie\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L0WAIG9J (Temporary Internet Files Folder) Successfully deleted: C:\Users\nathalie\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LBL0MIZG (Temporary Internet Files Folder) Successfully deleted: C:\Users\nathalie\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) Successfully deleted: C:\Users\nathalie\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PFEMI2T4 (Temporary Internet Files Folder) Successfully deleted: C:\Users\nathalie\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PTL4T50Z (Temporary Internet Files Folder) Successfully deleted: C:\Users\nathalie\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QTCUI4S9 (Temporary Internet Files Folder) Successfully deleted: C:\Users\nathalie\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SDY9QA6T (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2BKZZUD2 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\45F8OCTY (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6XKU7B7H (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7VF0HSG1 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\9PM5GOPJ (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\L0WAIG9J (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LBL0MIZG (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PFEMI2T4 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\PTL4T50Z (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QTCUI4S9 (Temporary Internet Files Folder) Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SDY9QA6T (Temporary Internet Files Folder) Deleted the following from C:\Users\nathalie\AppData\Roaming\Mozilla\Firefox\Profiles\y0lamiht.default\prefs.js user_pref(keyword.URL, hxxp://dts.search-results.com/sr?src=ffb&gct=ds&appid=0&systemid=405&apn_dtid=BND405&apn_ptnrs=AG8&apn_uid=0319670302264688&o=APN10647&q=); Registry: 4 Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} (Registry Key) Successfully deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{082AE893-DCF4-4dcf-9A01-5EA5D680B832} (Registry Key) Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{082AE893-DCF4-4dcf-9A01-5EA5D680B832} (Registry Key) Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\SearchUrl\\Default (Registry Value) ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 12/08/2017 at 15:10:04,38 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~