Вы находитесь на странице: 1из 2

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Junkware Removal Tool (JRT) by Malwarebytes


Version: 7.6.4 (09.28.2015:1)
OS: Windows 7 Starter x86
Ran by Mariela on 11/11/2015 at 23:28:20.10
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

~~~ Services
Successfully
Successfully
Successfully
Successfully
Successfully
Successfully

deleted:
deleted:
deleted:
deleted:
deleted:
deleted:

[Service]
[Service]
[Service]
[Service]
[Service]
[Service]

gilefywi [Reboot required]


globalupdate [Reboot required]
globalupdatem [Reboot required]
ihpmserver [Reboot required]
kiqidetu [Reboot required]
piqexugy [Reboot required]

~~~ Tasks
Successfully
hineCore
Successfully
hineUA
Successfully
Successfully
job
Successfully
b

deleted: [Task] C:\Windows\System32\tasks\globalUpdateUpdateTaskMac


deleted: [Task] C:\Windows\System32\tasks\globalUpdateUpdateTaskMac
deleted: [Task] C:\Windows\System32\tasks\Run_Bobby_Browser
deleted: [Task] C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.
deleted: [Task] C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.jo

~~~ Registry Values


Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Win
dows\CurrentVersion\Run\\gmsd_mx_005010142
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Win
dows\CurrentVersion\Run\\ospd_us_013010142
Successfully deleted: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Win
dows\CurrentVersion\Run\\rec_en_77
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Int
ernet Explorer\Main\\Default_Page_URL
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Int
ernet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\In
ternet Explorer\Main\\Default_Page_URL
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\In
ternet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\I
nternet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\I
nternet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\I
nternet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\I
nternet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-3477517388-199455321

9-656525297-1001\Software\Microsoft\Internet Explorer\Main\\Start Page

~~~ Registry Keys


Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Intern
et Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Inter
net Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windo
ws NT\CurrentVersion\Image File Execution Options\globalupdate.exe
Successfully repaired: [Registry Key] HKEY_LOCAL_MACHINE\Software\Clients\StartM
enuInternet\IEXPLORE.EXE\shell\open\command

~~~ Files
Successfully deleted: [File] C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F
5}.dat
Successfully disinfected: [Shortcut] C:\ProgramData\Microsoft\windows\Start Menu
\Programs\Opera.lnk
Successfully disinfected: [Shortcut] C:\Users\Mariela\AppData\Roaming\Microsoft\
Internet Explorer\Quick Launch\User Pinned\TaskBar\Opera.lnk
Successfully disinfected: [Shortcut] C:\Users\Public\Desktop\Opera.lnk

~~~ Folders
Successfully deleted: [Folder]
Successfully deleted: [Folder]
Successfully deleted: [Folder]
Successfully deleted: [Folder]
Successfully deleted: [Folder]
Successfully deleted: [Folder]
Successfully deleted: [Folder]
Successfully deleted: [Folder]
4-11E0-ADA9-AF96C7D8A651

C:\Program Files\globalupdate
C:\Program Files\raydld
C:\Program Files\rcp
C:\Users\Mariela\Appdata\Local\globalupdate
C:\Users\Mariela\Appdata\Local\systweak
C:\Users\Mariela\AppData\Roaming\mystartsearch
C:\Users\Mariela\AppData\Roaming\systweak
C:\Users\Mariela\Appdata\Local\273E8B61-144727969

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 11/11/2015 at 23:32:24.94
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Вам также может понравиться