Advertisement
Guest User

JRT

a guest
Nov 15th, 2015
233
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 4.42 KB | None | 0 0
  1. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
  2. Junkware Removal Tool (JRT) by Malwarebytes
  3. Version: 7.6.4 (09.28.2015:1)
  4. OS: Windows 10 Pro x64
  5. Ran by Nike on Mon 11/16/2015 at 0:16:40.90
  6. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
  7.  
  8.  
  9.  
  10.  
  11. ~~~ Services
  12.  
  13.  
  14.  
  15. ~~~ Tasks
  16.  
  17. Successfully deleted: [Task] C:\WINDOWS\system32\tasks\update-S-1-5-21-3492584764-1330717596-4027634359-1000
  18. Successfully deleted: [Task] C:\WINDOWS\system32\tasks\update-sys
  19. Successfully deleted: [Task] C:\WINDOWS\Tasks\update-S-1-5-21-3492584764-1330717596-4027634359-1000.job
  20. Successfully deleted: [Task] C:\WINDOWS\Tasks\update-sys.job
  21.  
  22.  
  23.  
  24. ~~~ Registry Values
  25.  
  26.  
  27.  
  28. ~~~ Registry Keys
  29.  
  30. Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\APN PIP
  31. Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\AskPartnerNetwork
  32. Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
  33. Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
  34. Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}
  35. Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Eventlog\Application\windowsmangerprotect
  36.  
  37.  
  38.  
  39. ~~~ Files
  40.  
  41.  
  42.  
  43. ~~~ Folders
  44.  
  45. Successfully deleted: [Folder] C:\ProgramData\ihprotectupdate
  46. Successfully deleted: [Folder] C:\ProgramData\mailupdate
  47. Successfully deleted: [Folder] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ytd video downloader
  48. Successfully deleted: [Folder] C:\ProgramData\windowsmangerprotect
  49. Successfully deleted: [Folder] C:\Users\Nike\AppData\Roaming\mailupdate
  50.  
  51.  
  52.  
  53. ~~~ FireFox
  54.  
  55. Successfully deleted: [File] C:\Users\Nike\AppData\Roaming\mozilla\firefox\profiles\sqjy0vui.default\invalidprefs.js
  56. Successfully deleted: [File] C:\Users\Nike\AppData\Roaming\mozilla\firefox\profiles\sqjy0vui.default\searchplugins\delta-homes.xml
  57. Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions\\faststartff@gmail.com
  58. Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions\\quick_searchff@gmail.com
  59. Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions\\searchengine@gmail.com
  60. Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions\\sweetsearch@gmail.com
  61. Successfully deleted the following from C:\Users\Nike\AppData\Roaming\mozilla\firefox\profiles\sqjy0vui.default\prefs.js
  62.  
  63. user_pref(browser.newtab.url, chrome://quick_start/content/index.html);
  64. user_pref(browser.search.defaultenginename, delta-homes);
  65. user_pref(browser.search.hiddenOneOffs, Yahoo,Bing,Amazon.com,eBay,Twitter,delta-homes);
  66. user_pref(browser.search.searchengine.alias, delta-homes);
  67. user_pref(browser.search.searchengine.desc, this is my first firefox searchEngine);
  68. user_pref(browser.search.searchengine.iconURL, hxxp://search.delta-homes.com/favicon.ico);
  69. user_pref(browser.search.searchengine.name, delta-homes);
  70. user_pref(browser.search.searchengine.ptid, wpm07163);
  71. user_pref(browser.search.searchengine.uid, SamsungXSSDX840XPROXSeries_S1ATNSAF924447B);
  72. user_pref(browser.search.searchengine.url, hxxp://search.delta-homes.com/web/?type=ds&ts=1437041000&z=21e223b3f0c97db3c281da1g7zccaefozzjcktmlma&from=wpm07163&uid=SamsungXS
  73. user_pref(browser.search.selectedEngine, delta-homes);
  74. user_pref(extensions.quick_start.enable_search1, false);
  75. user_pref(extensions.quick_start.sd.closeWindowWithLastTab_prev_state, false);
  76. Emptied folder: C:\Users\Nike\AppData\Roaming\mozilla\firefox\profiles\sqjy0vui.default\minidumps [18 files]
  77.  
  78.  
  79.  
  80. ~~~ Chrome
  81.  
  82.  
  83. [C:\Users\Nike\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - default search provider reset
  84.  
  85. [C:\Users\Nike\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted:
  86.  
  87. [C:\Users\Nike\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset
  88.  
  89. [C:\Users\Nike\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted:
  90. []
  91.  
  92.  
  93.  
  94.  
  95.  
  96. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
  97. Scan was completed on Mon 11/16/2015 at 0:18:12.68
  98. End of JRT log
  99. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement