Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Windows 8 & Windows 7 Laptop beide stark Adware verseucht

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML

Antwort
Alt 08.07.2015, 18:33   #1
kuhlambo12
 
Windows 8 & Windows 7 Laptop beide stark Adware verseucht - Standard

Windows 8 & Windows 7 Laptop beide stark Adware verseucht



Moin,

ich hab mal wieder 2 Laptops aus der Bekanntschaft bekommen.

Beide sind extremst zugemüllt mit Adware, die ich soweit es ging mit Malwarebytes, Adwcleaner und JRT bearbeitet habe. Dennoch ist der Windows 7 Laptop super langsam obwohl der noch kein Jahr alt ist.

Und der Windows 8 Laptop hat das Problem, dass sich das Sicherheitscenter nicht aktivieren lässt, da angeblich der Dienst nicht installiert ist.

Ich würde wohl mit dem Windows 8 Laptop anfangen:

Malwarebytes:

Code:
ATTFilter
 Malwarebytes Anti-Malware 
www.malwarebytes.org

Suchlaufdatum: 08.07.2015
Suchlaufzeit: 00:57
Protokolldatei: mbam1.txt
Administrator: Ja

Version: 2.1.8.1057
Malware-Datenbank: v2015.07.07.06
Rootkit-Datenbank: v2015.07.07.01
Lizenz: Kostenlose Version
Malware-Schutz: Deaktiviert
Schutz vor bösartigen Websites: Deaktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 8.1
CPU: x64
Dateisystem: NTFS
Benutzer: Felix

Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 395499
Abgelaufene Zeit: 47 Min., 0 Sek.

Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Aktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert

Prozesse: 12
PUP.Optional.HQCinemax.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\e7bf910f-7d10-4f0e-826c-f806185bc954-6.exe, 3800, Löschen bei Neustart, [648e4698cbbf45f1685c8c0445c1738d]
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\gmsd_de_283\upgmsd_de_283.exe, 4980, Löschen bei Neustart, [767c13cbfe8cf046530c256f6f97f907]
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe, 5464, Löschen bei Neustart, [50a28856a1e957df690c642fe81e05fb]
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe, 3500, Löschen bei Neustart, [50a28856a1e957df690c642fe81e05fb]
PUP.Optional.Tuto4PC.A, C:\Program Files (x86)\gmsd_de_283\gmsd_de_283.exe, 5616, Löschen bei Neustart, [48aabe207713d561c59ac7cdb4520bf5]
PUP.Optional.OptimizerPro, C:\ProgramData\{29efd0f5-4e5f-1d8b-29ef-fd0f54e543d5}\hqghumeaylnlf.exe, 5756, Löschen bei Neustart, [8d6534aabdcd92a4c261a5a31de5a15f]
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptProReminder.exe, 4752, Löschen bei Neustart, [36bc6975e1a98aac87b76afca65c3ac6]
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\ProtectService.exe, 12084, Löschen bei Neustart, [df13607e0585b185cca6a37761a1bb45]
PUP.Optional.MaintainerSvc.A, C:\ProgramData\06154ba7-7ceb-4959-a6bd-bf38bdec8cc6\maintainer.exe, 1828, Löschen bei Neustart, [d51d1ac46129bf773459609e847dc739]
PUP.Optional.3DBubbleSound.A, C:\Program Files\BubbleSound\3D BubbleSound.exe, 5236, Löschen bei Neustart, [8969af2fd3b7d85ea81e9d63689ca65a]
PUP.Optional.WindowsMangerProtect.A, C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe, 6352, Löschen bei Neustart, [8b677965f3972610beb95cb9b64e718f]
PUP.Optional.Picexa.A, C:\Program Files (x86)\Picexa\picexasvc.exe, 5860, Löschen bei Neustart, [5a984e9090faf64035692971887d7c84]

Module: 10
PUP.Optional.MultiPlug.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptProMon.dll, Löschen bei Neustart, [6092fde109811f17903ffd5d50b29070], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\chrome_elf.dll, Löschen bei Neustart, [f002c7171377d6603441395a07ff36ca], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\chrome_elf.dll, Löschen bei Neustart, [f002c7171377d6603441395a07ff36ca], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcp110.dll, Löschen bei Neustart, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcr110.dll, Löschen bei Neustart, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\chrome.dll, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\chrome_child.dll, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\d3dcompiler_46.dll, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\libegl.dll, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\libglesv2.dll, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], 

Registrierungsschlüssel: 411
PUP.Optional.XTab.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\IHProtect Service, In Quarantäne, [df13607e0585b185cca6a37761a1bb45], 
PUP.Optional.MaintainerSvc.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\MaintainerSvc3.22.1827446, In Quarantäne, [d51d1ac46129bf773459609e847dc739], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{776E9568-E541-4488-8316-1917BC65830C}, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{776E9568-E541-4488-8316-1917BC65830C}, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{776E9568-E541-4488-8316-1917BC65830C}, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\P776E9568_E541_4488_8316_1917BC65830C_.P776E9568_E541_4488_8316_1917BC65830C_, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\P776E9568_E541_4488_8316_1917BC65830C_.P776E9568_E541_4488_8316_1917BC65830C_.9, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\P776E9568_E541_4488_8316_1917BC65830C_.P776E9568_E541_4488_8316_1917BC65830C_, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\P776E9568_E541_4488_8316_1917BC65830C_.P776E9568_E541_4488_8316_1917BC65830C_.9, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\P776E9568_E541_4488_8316_1917BC65830C_.P776E9568_E541_4488_8316_1917BC65830C_, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\P776E9568_E541_4488_8316_1917BC65830C_.P776E9568_E541_4488_8316_1917BC65830C_.9, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{776E9568-E541-4488-8316-1917BC65830C}, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{776E9568-E541-4488-8316-1917BC65830C}, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], 
PUP.Optional.MultiPlug.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{776E9568-E541-4488-8316-1917BC65830C}, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], 
PUP.Optional.MultiPlug.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{776E9568-E541-4488-8316-1917BC65830C}, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{776E9568-E541-4488-8316-1917BC65830C}, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{776E9568-E541-4488-8316-1917BC65830C}, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{776E9568-E541-4488-8316-1917BC65830C}\INPROCSERVER32, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{751FD1B9-9FF6-414A-9ED1-44BC2571886A}, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{751FD1B9-9FF6-414A-9ED1-44BC2571886A}, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{751FD1B9-9FF6-414A-9ED1-44BC2571886A}, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\P751FD1B9_9FF6_414A_9ED1_44BC2571886A_.P751FD1B9_9FF6_414A_9ED1_44BC2571886A_, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\P751FD1B9_9FF6_414A_9ED1_44BC2571886A_.P751FD1B9_9FF6_414A_9ED1_44BC2571886A_.9, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\P751FD1B9_9FF6_414A_9ED1_44BC2571886A_.P751FD1B9_9FF6_414A_9ED1_44BC2571886A_, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\P751FD1B9_9FF6_414A_9ED1_44BC2571886A_.P751FD1B9_9FF6_414A_9ED1_44BC2571886A_.9, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\P751FD1B9_9FF6_414A_9ED1_44BC2571886A_.P751FD1B9_9FF6_414A_9ED1_44BC2571886A_, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\P751FD1B9_9FF6_414A_9ED1_44BC2571886A_.P751FD1B9_9FF6_414A_9ED1_44BC2571886A_.9, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{751FD1B9-9FF6-414A-9ED1-44BC2571886A}, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{751FD1B9-9FF6-414A-9ED1-44BC2571886A}, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], 
PUP.Optional.MultiPlug.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{751FD1B9-9FF6-414A-9ED1-44BC2571886A}, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], 
PUP.Optional.MultiPlug.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{751FD1B9-9FF6-414A-9ED1-44BC2571886A}, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{751FD1B9-9FF6-414A-9ED1-44BC2571886A}, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{751FD1B9-9FF6-414A-9ED1-44BC2571886A}, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{751FD1B9-9FF6-414A-9ED1-44BC2571886A}\INPROCSERVER32, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{DD7916DA-F237-46B3-9496-BF772CA330DC}, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{DD7916DA-F237-46B3-9496-BF772CA330DC}, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{DD7916DA-F237-46B3-9496-BF772CA330DC}, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\PDD7916DA_F237_46B3_9496_BF772CA330DC_.PDD7916DA_F237_46B3_9496_BF772CA330DC_, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\PDD7916DA_F237_46B3_9496_BF772CA330DC_.PDD7916DA_F237_46B3_9496_BF772CA330DC_.9, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PDD7916DA_F237_46B3_9496_BF772CA330DC_.PDD7916DA_F237_46B3_9496_BF772CA330DC_, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PDD7916DA_F237_46B3_9496_BF772CA330DC_.PDD7916DA_F237_46B3_9496_BF772CA330DC_.9, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\PDD7916DA_F237_46B3_9496_BF772CA330DC_.PDD7916DA_F237_46B3_9496_BF772CA330DC_, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\PDD7916DA_F237_46B3_9496_BF772CA330DC_.PDD7916DA_F237_46B3_9496_BF772CA330DC_.9, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{DD7916DA-F237-46B3-9496-BF772CA330DC}, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{DD7916DA-F237-46B3-9496-BF772CA330DC}, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], 
PUP.Optional.MultiPlug.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{DD7916DA-F237-46B3-9496-BF772CA330DC}, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], 
PUP.Optional.MultiPlug.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{DD7916DA-F237-46B3-9496-BF772CA330DC}, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{DD7916DA-F237-46B3-9496-BF772CA330DC}, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{DD7916DA-F237-46B3-9496-BF772CA330DC}, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{DD7916DA-F237-46B3-9496-BF772CA330DC}\INPROCSERVER32, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{ADEB3D1D-442D-4488-80DA-8C288D2B9C98}, In Quarantäne, [8072a43a65250e2886c4493369999769], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{ADEB3D1D-442D-4488-80DA-8C288D2B9C98}, In Quarantäne, [8072a43a65250e2886c4493369999769], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{ADEB3D1D-442D-4488-80DA-8C288D2B9C98}, In Quarantäne, [8072a43a65250e2886c4493369999769], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\PADEB3D1D_442D_4488_80DA_8C288D2B9C98_.PADEB3D1D_442D_4488_80DA_8C288D2B9C98_, In Quarantäne, [8072a43a65250e2886c4493369999769], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\PADEB3D1D_442D_4488_80DA_8C288D2B9C98_.PADEB3D1D_442D_4488_80DA_8C288D2B9C98_.9, In Quarantäne, [8072a43a65250e2886c4493369999769], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PADEB3D1D_442D_4488_80DA_8C288D2B9C98_.PADEB3D1D_442D_4488_80DA_8C288D2B9C98_, In Quarantäne, [8072a43a65250e2886c4493369999769], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PADEB3D1D_442D_4488_80DA_8C288D2B9C98_.PADEB3D1D_442D_4488_80DA_8C288D2B9C98_.9, In Quarantäne, [8072a43a65250e2886c4493369999769], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\PADEB3D1D_442D_4488_80DA_8C288D2B9C98_.PADEB3D1D_442D_4488_80DA_8C288D2B9C98_, In Quarantäne, [8072a43a65250e2886c4493369999769], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\PADEB3D1D_442D_4488_80DA_8C288D2B9C98_.PADEB3D1D_442D_4488_80DA_8C288D2B9C98_.9, In Quarantäne, [8072a43a65250e2886c4493369999769], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{ADEB3D1D-442D-4488-80DA-8C288D2B9C98}, In Quarantäne, [8072a43a65250e2886c4493369999769], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{ADEB3D1D-442D-4488-80DA-8C288D2B9C98}, In Quarantäne, [8072a43a65250e2886c4493369999769], 
PUP.Optional.MultiPlug.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{ADEB3D1D-442D-4488-80DA-8C288D2B9C98}, In Quarantäne, [8072a43a65250e2886c4493369999769], 
PUP.Optional.MultiPlug.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{ADEB3D1D-442D-4488-80DA-8C288D2B9C98}, In Quarantäne, [8072a43a65250e2886c4493369999769], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{ADEB3D1D-442D-4488-80DA-8C288D2B9C98}, In Quarantäne, [8072a43a65250e2886c4493369999769], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{ADEB3D1D-442D-4488-80DA-8C288D2B9C98}, In Quarantäne, [8072a43a65250e2886c4493369999769], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\CLASSES\CLSID\{ADEB3D1D-442D-4488-80DA-8C288D2B9C98}\INPROCSERVER32, In Quarantäne, [8072a43a65250e2886c4493369999769], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\APPID\{01994268-3C10-4044-A1EA-7A9C1B739A11}, In Quarantäne, [36bc528cd1b99c9a747e7645808340c0], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{01994268-3C10-4044-A1EA-7A9C1B739A11}, In Quarantäne, [36bc528cd1b99c9a747e7645808340c0], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\{01994268-3C10-4044-A1EA-7A9C1B739A11}, In Quarantäne, [36bc528cd1b99c9a747e7645808340c0], 
PUP.Optional.WebSteroids.A, HKLM\SOFTWARE\CLASSES\CLSID\{051E9166-B275-4683-907B-372FAE22BC7C}, In Quarantäne, [a74bd509ee9ca591cd622161c93a31cf], 
PUP.Optional.WebSteroids.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{051E9166-B275-4683-907B-372FAE22BC7C}, In Quarantäne, [a74bd509ee9ca591cd622161c93a31cf], 
PUP.Optional.WebSteroids.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{051E9166-B275-4683-907B-372FAE22BC7C}, In Quarantäne, [a74bd509ee9ca591cd622161c93a31cf], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\CLSID\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\IminentWebBooster.BrowserHelperObject.1, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\IminentWebBooster.BrowserHelperObject, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\IminentWebBooster.BrowserHelperObject, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\IminentWebBooster.BrowserHelperObject, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\IminentWebBooster.BrowserHelperObject.1, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\IminentWebBooster.BrowserHelperObject.1, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], 
PUP.Optional.Iminent.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], 
PUP.Optional.Iminent.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}, In Quarantäne, [8c6633ab6f1b73c3cdf0892c3ec560a0], 
PUP.Optional.DynConIE.A, HKLM\SOFTWARE\CLASSES\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}, In Quarantäne, [14de12cc96f4d95d5ea0ef9224df4eb2], 
PUP.Optional.DynConIE.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}, In Quarantäne, [14de12cc96f4d95d5ea0ef9224df4eb2], 
PUP.Optional.DynConIE.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}, In Quarantäne, [14de12cc96f4d95d5ea0ef9224df4eb2], 
PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], 
PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], 
PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88}, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], 
PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], 
PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], 
PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], 
PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88}, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], 
PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{7D3C47ED-E0BE-4940-9DDA-A7A097AEBD88}, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], 
PUP.Optional.LuckyTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], 
PUP.Optional.LuckyTab.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], 
PUP.Optional.LuckyTab.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{51D26BB4-4D2C-4AE4-9873-5FF41B6DED1F}, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], 
PUP.Optional.DefaultSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}, In Quarantäne, [9161fbe349410f27eab994e948bbb54b], 
PUP.Optional.DefaultSearch.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}, In Quarantäne, [9161fbe349410f27eab994e948bbb54b], 
PUP.Optional.DefaultSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}, In Quarantäne, [9161fbe349410f27eab994e948bbb54b], 
PUP.Optional.Multiplug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{FE139F4C-CE5B-121A-8A2D-191FA2226094}, In Quarantäne, [d61c31ad286259dd3659cb6ec24007f9], 
PUP.Optional.Multiplug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{0D566ABB-889B-AF39-7B6A-23D4C5D54542}, In Quarantäne, [b73bbb23d1b95cda711e3603b949738d], 
PUP.Optionlal.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\HQ Cinemax 1.9cV07.03, In Quarantäne, [3cb6cd1141499f97022a5816b94a9d63], 
PUP.Optional.Multiplug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{70BD2558-27DA-8B02-02D0-D8704ECD2EDF}, In Quarantäne, [7d754c922a6032048a05c871cb3712ee], 
PUP.Optionlal.CrossRider, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\System NotifierV07.03, In Quarantäne, [9f538658345648ee1517630b2ed58f71], 
PUP.Optional.Multiplug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{E370F69F-ED3F-925F-31FC-14D1329A713B}, In Quarantäne, [9959528cf694e84eaee13bfe976b5ea2], 
PUP.Optional.Multiplug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{23B82977-C816-92D2-66E7-BE67DD1E7786}, In Quarantäne, [fbf737a77f0b7eb899f64feaf21020e0], 
PUP.Optional.ModGoog, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, In Quarantäne, [cb276b73c8c272c4e371024ce71b1ce4], 
PUP.Optional.ModGoog, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, In Quarantäne, [cb276b73c8c272c4e371024ce71b1ce4], 
PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{96BB8E60-6EF9-47E0-9ED8-4AD477ECF427}, In Quarantäne, [b240cc123357f5411603672d1aebed13], 
PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{05273886-A138-4AAA-A965-9B728D8A2B32}, In Quarantäne, [b240cc123357f5411603672d1aebed13], 
PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{0C10CCDE-D834-4C2F-9700-86A1C54BCCBA}, In Quarantäne, [b240cc123357f5411603672d1aebed13], 
PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{11B41CF7-E9F6-4B87-85B1-287D261D30D9}, In Quarantäne, [b240cc123357f5411603672d1aebed13], 
PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{B32D668A-8CCE-43FD-BA94-9EDD5096587D}, In Quarantäne, [b240cc123357f5411603672d1aebed13], 
PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{05273886-A138-4AAA-A965-9B728D8A2B32}, In Quarantäne, [b240cc123357f5411603672d1aebed13], 
PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{0C10CCDE-D834-4C2F-9700-86A1C54BCCBA}, In Quarantäne, [b240cc123357f5411603672d1aebed13], 
PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{11B41CF7-E9F6-4B87-85B1-287D261D30D9}, In Quarantäne, [b240cc123357f5411603672d1aebed13], 
PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{B32D668A-8CCE-43FD-BA94-9EDD5096587D}, In Quarantäne, [b240cc123357f5411603672d1aebed13], 
PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{05273886-A138-4AAA-A965-9B728D8A2B32}, In Quarantäne, [b240cc123357f5411603672d1aebed13], 
PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{0C10CCDE-D834-4C2F-9700-86A1C54BCCBA}, In Quarantäne, [b240cc123357f5411603672d1aebed13], 
PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{11B41CF7-E9F6-4B87-85B1-287D261D30D9}, In Quarantäne, [b240cc123357f5411603672d1aebed13], 
PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{B32D668A-8CCE-43FD-BA94-9EDD5096587D}, In Quarantäne, [b240cc123357f5411603672d1aebed13], 
PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{96BB8E60-6EF9-47E0-9ED8-4AD477ECF427}, In Quarantäne, [b240cc123357f5411603672d1aebed13], 
PUP.Optional.PerfectCoupon.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{96BB8E60-6EF9-47E0-9ED8-4AD477ECF427}, In Quarantäne, [b240cc123357f5411603672d1aebed13], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\Iminent, In Quarantäne, [9260cf0f464454e21076aba59c687789], 
PUP.Optional.LolliScan.A, HKLM\SOFTWARE\LolliScan, In Quarantäne, [8270b529c7c3e4528992a86518ecec14], 
PUP.Optional.Crossbrowse.C, HKLM\SOFTWARE\CLASSES\CRSBRWSHTML, In Quarantäne, [30c225b99cee21150c6c02029272d52b], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdate.OneClickCtrl.10, In Quarantäne, [d31fb12d5f2b0c2a66a2b3e1897c5da3], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdate.OneClickProcessLauncherMachine, In Quarantäne, [f002fbe38dfd03331eeab0e4cb3a6997], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdate.OneClickProcessLauncherMachine.1.0, In Quarantäne, [fff31cc2f694191d3ecac0d433d2ea16], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.CoCreateAsync, In Quarantäne, [35bd6f6fb7d32115e623e8ac996ca45c], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.CoCreateAsync.1.0, In Quarantäne, [688a8658fe8ccf67db2e3c583bca5da3], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.CoreClass, In Quarantäne, [e40ed7071a70a98df8117321877ec43c], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.CoreClass.1, In Quarantäne, [b53da13d7d0d8aacd039fb99828354ac], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.CoreMachineClass, In Quarantäne, [4fa310ceef9b37ffc643336164a112ee], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.CoreMachineClass.1, In Quarantäne, [7181607e5238b08626e3ace81ee78a76], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.CredentialDialogMachine, In Quarantäne, [3db5e5f9cac09c9aa0699cf8b84d966a], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.CredentialDialogMachine.1.0, In Quarantäne, [9b5756889eec50e64dbc524226df837d], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.OnDemandCOMClassMachine, In Quarantäne, [faf8f2ecddad96a040c9a2f2ee17847c], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.OnDemandCOMClassMachine.1.0, In Quarantäne, [e012cd115b2fa1954dbcb3e17392da26], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.OnDemandCOMClassMachineFallback, In Quarantäne, [2ac836a8becc76c012f7464ea56032ce], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0, In Quarantäne, [2fc3b22ca5e5072f57b26b2985808d73], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.OnDemandCOMClassSvc, In Quarantäne, [f200fde10f7b73c32adfd4c035d007f9], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.OnDemandCOMClassSvc.1.0, In Quarantäne, [06ec815d7e0cd4620aff256fb0552cd4], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.ProcessLauncher, In Quarantäne, [52a01bc358329a9caa5f5d3765a0916f], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.ProcessLauncher.1.0, In Quarantäne, [4da536a8d2b8171f7e8bd0c4f213d927], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.Update3COMClassService, In Quarantäne, [43aff3eb7e0c85b1bf4a8e0661a49868], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.Update3COMClassService.1.0, In Quarantäne, [be3469755b2f5fd763a63064dd281ee2], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.Update3WebMachine, In Quarantäne, [975befeff991de580efbd0c47d88748c], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.Update3WebMachine.1.0, In Quarantäne, [a84a5e80f59575c1ae5b7321c83d6c94], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.Update3WebMachineFallback, In Quarantäne, [ec06bb23d8b291a5fd0cd7bd40c5936d], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.Update3WebMachineFallback.1.0, In Quarantäne, [6191eef02b5ff34389804f4556af4bb5], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.Update3WebSvc, In Quarantäne, [f7fb607eaedc46f0b0594d47e12411ef], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\CLASSES\globalUpdateUpdate.Update3WebSvc.1.0, In Quarantäne, [7d75f7e7a5e5171fbf4a42527b8add23], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\IminentWebBooster.ScriptExtender, In Quarantäne, [89694d91d8b26dc976b1f472d530d729], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\IminentWebBooster.ScriptExtender.1, In Quarantäne, [d22000dea9e1e65063c4db8b34d17987], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\APPID\Iminent.WebBooster.InternetExplorer.DLL, In Quarantäne, [4fa3ab33c4c6ab8b7b74204d45c0718f], 
PUP.Optional.MixVideoPlayer.A, HKLM\SOFTWARE\CLASSES\APPLICATIONS\MixVideoPlayer.exe, In Quarantäne, [4ba7f1ed28628da9b077bbdc21e4a15f], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\Iminent.WebBooster.InternetExplorer.DLL, In Quarantäne, [46ac5f7f9af066d0bb34f6778a7bde22], 
PUP.Optional.MixVideoPlayer.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPLICATIONS\MixVideoPlayer.exe, In Quarantäne, [9161f5e9246693a3c760e2b5a362cf31], 
PUP.Optional.Crossbrowse.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\Crossbrowse, In Quarantäne, [ed05bc22f5954ee8a7fb6c981fe503fd], 
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\27058, In Quarantäne, [29c94698b6d472c47091162e3aca17e9], 
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\30935, In Quarantäne, [4ba7ce10b4d6de58fb062f1505ffbd43], 
PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\LAYERS\VC32LDR  , In Quarantäne, [708214ca711968ce2d205e3e9f66fd03], 
PUP.Optional.SearchProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\INSTALLEDSDB\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}, In Quarantäne, [3eb46d71addd13232c676c1b14f17f81], 
PUP.Optional.SearchProtect, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\INSTALLEDSDB\{cf2797aa-b7ec-e311-8ed9-005056c00008}, In Quarantäne, [a9498f4f038747ef6f23aaddee17e21e], 
PUP.Optional.Crossbrowse.C, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\crossbrowse.exe, In Quarantäne, [f002fae489011f177405f212bb490bf5], 
PUM.Security.Hijack.DisableChromeUpdates, HKLM\SOFTWARE\POLICIES\GOOGLE\UPDATE, In Quarantäne, [fff3e1fda0eaee486290b8e360a57a86], 
PUP.Optional.Crossbrowse.A, HKLM\SOFTWARE\WOW6432NODE\Crossbrowse, In Quarantäne, [04ee607ed4b6e3539b03f014bf457789], 
PUP.Optional.Delta.A, HKLM\SOFTWARE\WOW6432NODE\delta-homesSoftware, In Quarantäne, [06ec3aa47a102313b9e6f03ac3416e92], 
PUP.Optional.GamesDesktop.A, HKLM\SOFTWARE\WOW6432NODE\GAMESDESKTOP, In Quarantäne, [6f83409e8cfecf676f8ea07555af7888], 
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\HQ Cinemax 1.9cV07.03, In Quarantäne, [c32f5688305afa3cefcccc40ca3a38c8], 
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\HQ Cinemax 1.9cV07.03-nv, In Quarantäne, [678bad31f694290d1ba00efe758f659b], 
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\HQ Cinemax 1.9cV07.03-nv-ie, In Quarantäne, [b63caf2f424820163a81d636c341bd43], 
PUP.Optional.IHProtect.A, HKLM\SOFTWARE\WOW6432NODE\IHProtect, In Quarantäne, [b63c7d6145451c1afb3b29e92bd9629e], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\Iminent, In Quarantäne, [876b6e700d7d4de9b3d3e16f7c883ac6], 
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\istartsurfSoftware, In Quarantäne, [8e649648127801356b1bb0773ec6758b], 
PUP.Optional.LolliScan.A, HKLM\SOFTWARE\WOW6432NODE\LolliScan, In Quarantäne, [2cc6a638345696a04bd0f41934d0867a], 
PUP.Optional.Picexa.A, HKLM\SOFTWARE\WOW6432NODE\Picexa, In Quarantäne, [3fb3a737266449edc0dccad0b451c53b], 
PUP.Optional.Picexa.A, HKLM\SOFTWARE\WOW6432NODE\PicexaSvc, In Quarantäne, [d91903dbb5d58caaf2abc4d600058c74], 
PUP.Optional.SettingsManager.A, HKLM\SOFTWARE\WOW6432NODE\SmdmF, In Quarantäne, [5e94bc22d5b548eeb7cd58cf9f656c94], 
PUP.Optional.WPM.A, HKLM\SOFTWARE\WOW6432NODE\supWindowsMangerProtect, In Quarantäne, [39b9746a701a2a0ca157295aaa5b7a86], 
PUP.Optional.SystemNotifier.A, HKLM\SOFTWARE\WOW6432NODE\System NotifierV07.03, In Quarantäne, [ad455787593150e62103818944c023dd], 
PUP.Optional.SuperOptimizer.C, HKLM\SOFTWARE\WOW6432NODE\{1146AC44-2F03-4431-B4FD-889BC837521F}, In Quarantäne, [6b87637bd4b6c571ba3066370ff6c23e], 
PUP.Optional.SuperOptimizer.C, HKLM\SOFTWARE\WOW6432NODE\{6791A2F3-FC80-475C-A002-C014AF797E9C}, In Quarantäne, [955dd10d7e0c310507e4aeeff31236ca], 
PUP.Optional.CrossRider.C, HKLM\SOFTWARE\WOW6432NODE\APPDATALOW\SOFTWARE\Crossrider, In Quarantäne, [8270e0fed4b6ff370d3b46bcda2a23dd], 
PUP.Optional.Crossbrowse.C, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CRSBRWSHTML, In Quarantäne, [d81afde1701afe38ccac4fb52ed654ac], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdate.OneClickCtrl.10, In Quarantäne, [7280d30b7c0ec0766f99098b3acba15f], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdate.OneClickProcessLauncherMachine, In Quarantäne, [f6fc518d24663cfaae5a058f50b5d52b], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdate.OneClickProcessLauncherMachine.1.0, In Quarantäne, [5c969b431a701620b256454f81843ec2], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.CoCreateAsync, In Quarantäne, [61914f8ff1998fa71fea385c11f458a8], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.CoCreateAsync.1.0, In Quarantäne, [ca284698aae088ae2edbf4a00cf9a55b], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.CoreClass, In Quarantäne, [6f8316c883072313dd2c0d87679e48b8], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.CoreClass.1, In Quarantäne, [5a98ce10662442f4e52434608283b24e], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.CoreMachineClass, In Quarantäne, [82703ba3c3c7999d9b6ef3a19075af51], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.CoreMachineClass.1, In Quarantäne, [e9096777ef9baa8c1aefcfc58e771ae6], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.CredentialDialogMachine, In Quarantäne, [e80abe200b7f61d5a069068e74911fe1], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.CredentialDialogMachine.1.0, In Quarantäne, [a34f0ad45e2c54e20801643016ef36ca], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.OnDemandCOMClassMachine, In Quarantäne, [688a5e80147671c5d831d0c4a95cc13f], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.OnDemandCOMClassMachine.1.0, In Quarantäne, [80720fcf93f7f93db059a0f4ee1716ea], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.OnDemandCOMClassMachineFallback, In Quarantäne, [e50d3aa473172610ec1d74201de80bf5], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0, In Quarantäne, [df137767c7c3ba7cd534d8bc48bd33cd], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.OnDemandCOMClassSvc, In Quarantäne, [4ea406d85e2ca88ea16899fbd72ea759], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.OnDemandCOMClassSvc.1.0, In Quarantäne, [26ccf1ed06842f07d2374f456d98619f], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.ProcessLauncher, In Quarantäne, [0ee4d20cdeacb482b851167eee17b14f], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.ProcessLauncher.1.0, In Quarantäne, [d81a726c6129a591dd2c8c08e52024dc], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.Update3COMClassService, In Quarantäne, [df13f7e7068460d648c11e7692732cd4], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.Update3COMClassService.1.0, In Quarantäne, [e70bd5090288e84e6a9fff9514f1af51], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.Update3WebMachine, In Quarantäne, [06ec5d814248cf679e6b1282cd3822de], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.Update3WebMachine.1.0, In Quarantäne, [31c1fee035554aec9b6ea0f4d1340ff1], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.Update3WebMachineFallback, In Quarantäne, [00f2d608dfab16200900cec6d82d2bd5], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.Update3WebMachineFallback.1.0, In Quarantäne, [e30f4599a6e48aacae5b4c48b05506fa], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.Update3WebSvc, In Quarantäne, [a949f8e64545ff37db2ef89c9570c838], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdateUpdate.Update3WebSvc.1.0, In Quarantäne, [a34f05d969212412e425f89c25e05ca4], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\IminentWebBooster.ScriptExtender, In Quarantäne, [7d75f3ebc4c6dd59b37483e3c93c58a8], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\IminentWebBooster.ScriptExtender.1, In Quarantäne, [ec06d608e7a35dd9ed3a5610e124a858], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\Iminent.WebBooster.InternetExplorer.DLL, In Quarantäne, [638feaf4fa9044f25e9194d944c1d32d], 
PUP.Optional.MixVideoPlayer.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPLICATIONS\MixVideoPlayer.exe, In Quarantäne, [27cb845a92f87eb876b190077d88f907], 
PUP.Optional.Crossbrowse.A, HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\Crossbrowse, In Quarantäne, [5c96a13d0b7f6ec8ecb664a01de754ac], 
PUP.Optional.GlobalUpdate.C, HKLM\SOFTWARE\WOW6432NODE\GLOBALUPDATE\UPDATE\Clients, In Quarantäne, [4fa3e2fc44469b9beb289cfe7f86de22], 
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\GLOBALUPDATE\UPDATE, In Quarantäne, [30c27c627911181ee7412a03986c52ae], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\adpeheiliennogfclcgmchdfdmafjegc, In Quarantäne, [f7fb20be0d7d5cda67779ff6c540867a], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\ehhlaekjfiiojlddgndcnefflngfmhen, In Quarantäne, [61916876177389addb33c75b50b4768a], 
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\INSTALLEDBROWSEREXTENSIONS\27058, In Quarantäne, [f3ff38a6a5e584b2a160d470d0345aa6], 
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\INSTALLEDBROWSEREXTENSIONS\30935, In Quarantäne, [a44e03dbaae0c175b74a390bb25248b8], 
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarantäne, [7c76dfff2763e5518775197813f2c739], 
PUP.Optional.Crossbrowse.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\MEDIAPLAYER\SHIMINCLUSIONLIST\crossbrowse.exe, In Quarantäne, [c1314d917614be78742c29db20e4857b], 
PUP.Optional.Crossbrowse.C, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\crossbrowse.exe, In Quarantäne, [12e0439b99f1fd395c1dcd37db2926da], 
PUP.Optional.Crossbrowse.C, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Crossbrowse, In Quarantäne, [36bc10cee6a42d09bac412f23fc556aa], 
PUP.Optional.GamesDesktop.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\gmsd_de_283_is1, In Quarantäne, [35bd6c72c5c5ee489dcdaa6c857f33cd], 
PUP.Optional.MultiPlug.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{1146AC44-2F03-4431-B4FD-889BC837521F}{a4b494b4}, In Quarantäne, [2ac8fbe3395183b31532dfbb3ec7718f], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLAPLUGINS\@staging.google.com/globalUpdate Update;version=10, In Quarantäne, [15dd706ebad0f6409ce66125d3328c74], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLAPLUGINS\@staging.google.com/globalUpdate Update;version=4, In Quarantäne, [a2506e705f2bbc7a60231a6c37ce1ce4], 
PUM.Security.Hijack.DisableChromeUpdates, HKLM\SOFTWARE\WOW6432NODE\POLICIES\GOOGLE\UPDATE, In Quarantäne, [b53d7c62f793fa3cea08f2a98b7a8d73], 
PUP.Optional.SearchProtect.A, HKLM\SOFTWARE\WOW6432NODE\SEARCHPROTECT, In Quarantäne, [ab4712cc8ffba98dd020df51ae564ab6], 
PUP.Optional.SearchProtect.A, HKLM\SOFTWARE\WOW6432NODE\SPPDCOM, In Quarantäne, [4ba78a54c5c563d3aa1befb013f2c937], 
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB, In Quarantäne, [48aa706e8307be78708cf0351be925db], 
PUP.Optional.Tuto4Pc.A, HKLM\SOFTWARE\WOW6432NODE\TUTORIALS, In Quarantäne, [ca28627c7f0b64d2a8008c0325e06c94], 
PUP.Optional.WindowsMangerProtect.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\WindowsMangerProtect, In Quarantäne, [8b677965f3972610beb95cb9b64e718f], 
PUP.Optional.MixVideoPlayer.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\MixVideoPlayerUpdaterService, In Quarantäne, [ac469f3f97f346f02207118122e32bd5], 
PUP.Optional.WindowsMangerProtect.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\WindowsMangerProtect, In Quarantäne, [cc2606d86a20b58133e4eb318a7a3dc3], 
PUP.Optional.Picexa.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\PICEXASERVICE, In Quarantäne, [5a984e9090faf64035692971887d7c84], 
PUP.Optional.CrossRider.A, HKU\S-1-5-18\SOFTWARE\HQ Cinemax 1.9cV07.03-nv, In Quarantäne, [bc3606d833573ef8f3c940cca2623dc3], 
PUP.Optional.CrossRider.A, HKU\S-1-5-18\SOFTWARE\HQ Cinemax 1.9cV07.03-nv-ie, In Quarantäne, [16dc508ebecc9e9816a67993ae564fb1], 
PUP.Optional.SuperOptimizer.C, HKU\S-1-5-18\SOFTWARE\APPDATALOW\{1146AC44-2F03-4431-B4FD-889BC837521F}, In Quarantäne, [f101f4eaef9b4bebd7127f1e5ca948b8], 
PUP.Optional.PlusHD.A, HKU\S-1-5-18\SOFTWARE\APPDATALOW\SOFTWARE\Plus-HD-1.2, In Quarantäne, [5b976b738802c373b1056dd6a75dae52], 
PUP.Optional.Crossrider.C, HKU\S-1-5-18\SOFTWARE\APPDATALOW\SOFTWARE\_CrossriderRegNamePlaceHolder_, In Quarantäne, [eb07aa3458326fc75a52375f95707e82], 
PUP.Optional.Crossbrowse.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\Crossbrowse, In Quarantäne, [b43effdf731766d0fca19a6acc383cc4], 
PUP.Optional.Crossbrowse.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\CrossBrowser, In Quarantäne, [d220409ecebc92a434698d777193b34d], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\HQ Cinemax 1.9cV07.03, In Quarantäne, [da18dfff840696a08339c04c996bee12], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\HQ Cinemax 1.9cV07.03-nv, In Quarantäne, [23cf00dea3e7da5c3f7d21ebb64e0ef2], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\HQ Cinemax 1.9cV07.03-nv-ie, In Quarantäne, [22d0b32b6d1d83b3318bcc40798b5ca4], 
PUP.Optional.Iminent.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\Iminent, In Quarantäne, [d71befef2b5fbe781572cc84f70dca36], 
PUP.Optional.SystemNotifier.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\System NotifierV07.03, In Quarantäne, [20d269757c0e67cf1a0bc545a262e61a], 
PUP.Optional.Tuto4PC.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\TutoTag, In Quarantäne, [4ba7a13dbcce1224c6e297ef83826997], 
PUP.Optional.SuperOptimizer.C, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\APPDATALOW\{1146AC44-2F03-4431-B4FD-889BC837521F}, In Quarantäne, [9e54ab33bfcb102613d60b92fa0b9868], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, In Quarantäne, [20d2f9e58a0063d3aa7eed8ce71e06fa], 
PUP.Optional.MultiIE.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\APPDATALOW\SOFTWARE\DynConIE, In Quarantäne, [47aba6385a30ae88f3e5f1905fa6cb35], 
PUP.Optional.GamesDesktop.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\GAMESDESKTOP, In Quarantäne, [728021bdfa90979ffb959203fe073ac6], 
PUP.Optional.GlobalUpdate.C, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\GLOBALUPDATE\UPDATE\PROXY, In Quarantäne, [886a419d583216202744a75d0afa5da3], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\27058, In Quarantäne, [549e6b7334564ee8018bc75b64a02bd5], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\30935, In Quarantäne, [0ce6f9e55b2fe551315b5ec408fcbb45], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\HQ CinemaV07.03, In Quarantäne, [b63c736badddf73f31bf11066b99a957], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\System NotifierV07.03, In Quarantäne, [9959914dfc8ef343db151205758f40c0], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{120C7706-8D24-419F-8428-8E80B5AF8F1C}, In Quarantäne, [b14107d70387c96d88866d2cdb2a867a], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{151D5D08-EC99-4679-8C4B-C25BFF8ACE5F}, In Quarantäne, [a44e9f3f305a44f254bae0b9cd3834cc], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{15AFB26A-A278-4843-952E-B3B3751A3F5A}, In Quarantäne, [c72be9f50981b0869e701e7b25e040c0], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{17D0C98F-2F84-4C21-9DB7-9B27D6CF8AE9}, In Quarantäne, [db17b32b5c2e330336d88118c144728e], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1951AF66-27B6-45B8-897B-CD50C02586CE}, In Quarantäne, [47ab12cc2c5e53e3739bdabfb05510f0], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1988E4BB-FBF2-44AE-8CC8-EB943C661524}, In Quarantäne, [638f855949414fe7c8474554b84d7a86], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{19D05CF7-EB54-4B8C-9197-FEABF9905ED4}, In Quarantäne, [db178f4ff397b48278969cfd22e35fa1], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1AD5BAA1-F97C-46BD-A654-4A98DF6B1C3A}, In Quarantäne, [cc26edf19ded62d4c44a4d4c41c412ee], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1C0295F4-38D8-4811-8460-519EE57C7357}, In Quarantäne, [fbf71cc2f2986ccaf31c33666d98a35d], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1F0ACFF4-7F57-4B33-AC9E-B0E3F1DF1939}, In Quarantäne, [8171e3fb6228201629e50a8fb154f808], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1FB127CA-F6DF-49D0-9556-6458315256FC}, In Quarantäne, [e909b22c99f1350132dc7d1cca3b946c], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{232D318C-B4D7-4ACA-97AC-81F85CD02978}, In Quarantäne, [fff37c62c3c790a6f51a17828481e11f], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{26395586-468E-4FB8-A637-9E51A525C7DD}, In Quarantäne, [0de59c422367989e3fcf24750cf9d62a], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{27DD1430-5392-4C32-BF45-23C1D317D495}, In Quarantäne, [a74b38a64e3c3105c24dbddc1fe651af], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{29898DF6-F79C-441C-BBA8-358B60AD19EB}, In Quarantäne, [6b875a84ef9b53e37f8fb2e726dfa759], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{2B7BA3EE-E891-4451-89BE-876F45251D22}, In Quarantäne, [965c2eb027631e1867a739600ef725db], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{2D7AB619-5D1C-4B0A-AF19-332783387696}, In Quarantäne, [ca28419de7a3a195bd529bfe07fe28d8], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{302A03DC-76E3-4997-8766-AA1DBC831E75}, In Quarantäne, [2bc79c42a7e3e45228e6cbceb94c01ff], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{33AE80DD-AD21-4F7F-AC92-846BF8991275}, In Quarantäne, [b939a33bc8c2b680010d02979c6946ba], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{34B9C3F7-F50B-4618-B5EB-9444F0BC23FB}, In Quarantäne, [5e9410cec9c1c47255b9cdccf510639d], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{35725910-75C6-4F72-B055-30237C1FA659}, In Quarantäne, [fbf7be2079118da952bd6a2fe81d7090], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{35AC4F1F-CF03-49B9-B4DE-4AE4A7DDF012}, In Quarantäne, [60921ac41278280ed03fa4f5d82d58a8], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{3714B802-BDB6-4782-92E0-D759773667C6}, In Quarantäne, [39b93ca2c8c2d85e8986fc9dfc097f81], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{385A3F69-4D5A-4F60-A7BA-F5B431F2DC71}, In Quarantäne, [d81a538b8a0093a30e01eaafd1347f81], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{3AC63EE5-304B-4500-9727-35924F7388CE}, In Quarantäne, [c23086582169b5816ca2603963a257a9], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{3B7E2BC3-D9AC-412F-94A9-DED7AEB4C9C4}, In Quarantäne, [975b10ce29613ff78d81e4b529dc966a], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{40B18416-86BD-4E23-8FF9-E725FB427345}, In Quarantäne, [e70b805ee6a4dc5a42cdcacf49bc37c9], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{40F8F7C4-5D9B-4DB9-ACF5-349F6DDA6B53}, In Quarantäne, [718109d58ffbfe3826e955440afb26da], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{46262A2B-24C0-4943-8DBE-CD9B1C3EBCC0}, In Quarantäne, [34bec51917731125000f524747be60a0], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{47D3C884-25EE-4481-9ACD-AC589CBA9494}, In Quarantäne, [05edf0eea0eab2840806c0d9be47fb05], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4B29E5E2-7647-41D6-B7C1-9685F3D2F524}, In Quarantäne, [ee04409e7812e6506da158417b8a936d], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4BC66859-5175-4813-9ABF-6CA6AD1E76FC}, In Quarantäne, [6a88e2fc038730069877d3c61aebb44c], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4C6CEE95-D2C2-49C6-AEE3-82C1E25B311F}, In Quarantäne, [856d38a67b0fea4c40ce7920f3120af6], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4FA4E792-5A05-4224-8F73-E8821D592338}, In Quarantäne, [13df6b736c1e75c10f00217816efa25e], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{51A2B661-7C71-44B0-947D-97756699A7D4}, In Quarantäne, [886ace1059317bbb1df166330afb7789], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{53685588-549E-482C-B0C4-AF913844F440}, In Quarantäne, [e80ad608365481b5f41babee24e1c43c], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{544EAC0B-4B3E-476C-BDA9-D9A532128CBD}, In Quarantäne, [6e844599f496072f050aafea3fc641bf], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{562405BF-7339-4EE7-AC36-FF75121BBF3B}, In Quarantäne, [965cd30b2f5bf244d23c9108ce3718e8], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{575104CE-636F-4A9C-BC9A-EF8F8E20C53E}, In Quarantäne, [a05266782367b77fe7285049cd386f91], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5B79C716-DA8F-465B-9C57-3C2910869038}, In Quarantäne, [28cacc1299f1be787f909108a75e6898], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5F612E2C-F5C4-45C4-92EF-D27CC21A28EF}, In Quarantäne, [d41e538bdeac94a2ad621683d1340ef2], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5FAAC928-B680-41A9-8A97-91E2B1F6DACE}, In Quarantäne, [2ec42ab421691026000e06931ee7a25e], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{627CC21D-115A-45F6-8CFE-56E4B33E7C65}, In Quarantäne, [737f1ec0187212243ed1d8c13bca2ad6], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{635AC835-E290-4FD7-9927-D3D12AB38CB3}, In Quarantäne, [9b5710ce3c4e42f46ba38e0b2fd63cc4], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{64A3F462-8B7D-4688-A473-885B7E2FC030}, In Quarantäne, [4fa3548ac8c273c3937bb6e32cd9dc24], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{664CFECB-417F-4CA0-90BF-E64358BD57D3}, In Quarantäne, [7979aa3472188caa927ddcbd8c79e61a], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{66D0193D-2516-4F4A-8EAA-B284A453224A}, In Quarantäne, [42b0c41a4149dc5ab05ed3c67d88d927], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{670A5F62-BC38-408B-B299-EC5C8551FA66}, In Quarantäne, [b63c65793a50cd69cd42b9e0be4746ba], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{67448F74-E369-430A-9DA7-3C4680554231}, In Quarantäne, [01f1439b5238241224eaecadbc492bd5], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6A46EA12-408D-4E3B-8357-26DB12D53A6F}, In Quarantäne, [d121f8e6c8c29b9bec238118cc3912ee], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6EF78F1A-1F5B-47C5-8CAA-1D92A7B3642B}, In Quarantäne, [4da5ad317812e5515cb3ddbc36cf6c94], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{71822294-E5E7-4940-8919-9E28CFF2FF24}, In Quarantäne, [ae448d51a4e664d2858a23762cd9f50b], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{735F6382-72A0-4534-8FA9-B59E608D2B51}, In Quarantäne, [11e14d9154368caa4dc2485120e5d12f], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{76C73A33-32B4-4F7F-8BAC-79EB2DBFCA32}, In Quarantäne, [9062fce2abdf94a222ec37624db8e917], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{78413689-64BC-4A54-B794-1D182AD5BA8F}, In Quarantäne, [559d20be89011422ac6356430ef72bd5], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{78665A63-8261-4FF9-A6EA-E0CB874B7179}, In Quarantäne, [90624d914248c175ef1fbfda80851ee2], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7923E6B8-BF32-4F33-91B1-99A370FF7AA1}, In Quarantäne, [23cfc7170882a78f62ad2a6ff11439c7], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7A98306D-53F1-468A-A69F-20C3B6BD71D7}, In Quarantäne, [1ed4b22c0f7b12249e7024756a9b6f91], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7AFAA990-ECCA-4EC9-8D5C-94F091E3B1E5}, In Quarantäne, [7c76fae47b0fa29466a8079241c4ba46], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7B813A0B-61F8-4D6B-8483-2D1CFEDDB094}, In Quarantäne, [f2005688cac0a98d848bdcbd27ded030], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7EBFB42C-8663-4280-B41C-403823C6A166}, In Quarantäne, [a84a24ba5f2b2e080e017d1ce421e020], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7FD83AB9-1126-4593-A18D-8E77D8A9CA14}, In Quarantäne, [44ae6b73cdbd54e2e42a8e0b669ff808], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{80A1E1EE-AC21-4B68-85E4-FA91E1256BDB}, In Quarantäne, [2fc37a644e3cc571fa158217ee176898], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{818CB061-ED89-4335-B483-5822379134EB}, In Quarantäne, [91613ca23d4de650759a81182adbea16], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8218ECBB-F519-41DD-95B0-C57F92F01790}, In Quarantäne, [71812bb3eaa0f046838c9504f70eed13], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{82851397-B08A-4169-BCDE-8F3551926716}, In Quarantäne, [3bb748964a406ccaeb2337625aab8a76], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{83C89F8F-98AD-4D7F-A3B4-8789A5FAB7E9}, In Quarantäne, [7181eaf4aae0a1955cb24a4feb1a936d], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8A4C91CD-C4E9-46B7-842F-8D7E9DDDAABD}, In Quarantäne, [3fb36b736a209c9a9876c5d442c37987], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8AD3CDE9-E98E-4B1B-A5A3-8F6AD0F8C47F}, In Quarantäne, [d81ac01eadddcd69b15d0198aa5b04fc], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8BD2E825-F6BD-460D-BC17-79DEDDE08FC9}, In Quarantäne, [e50d6a7495f5b97d0a0521788e77ed13], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8D4F7106-3004-4100-8DF3-FE21FBB2BF65}, In Quarantäne, [7c762eb04347dc5aef1fd8c1957048b8], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8D71F622-1419-46F6-8F48-37D788CEE6F8}, In Quarantäne, [d220c41a45452e08010e1089c540b64a], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8DBA8FEB-33D8-4209-8E88-2C806D51B882}, In Quarantäne, [6f83518db7d3a59161ad396027de9070], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8E4CB96C-F2AD-4399-B9FD-F1329665DEBA}, In Quarantäne, [bd355a845c2ede582ee0aeeb6f966898], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{94F86B77-952D-424C-BE6B-2622CB755425}, In Quarantäne, [12e08e50c0ca50e63fcf8415d62f926e], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9649F8DF-3BE7-440C-B5B0-C34CB0164727}, In Quarantäne, [e70b508eaae06acc4cc37623798c23dd], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9854AF5B-9B46-4018-AE2D-57DFA2B04079}, In Quarantäne, [b2408658c7c32412719ec5d4000508f8], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{98E20150-9C05-4C83-AAC4-6C66B0E740C6}, In Quarantäne, [8e64f3eb206a58dea966bbde74917987], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9B72A995-9224-4346-95AC-BD58A6818222}, In Quarantäne, [eb071ac492f82a0ce629c6d3ee17b050], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9DE1FBB8-7A27-42EC-9290-A9DB16C83D1E}, In Quarantäne, [9b57508e1c6ea492a06f9108d1344bb5], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9ED51A79-C024-4888-8F1D-46C14CADCACB}, In Quarantäne, [82700bd33456d66023ec6930d62f3ac6], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9FB89456-7837-4146-95C8-48BA14317E36}, In Quarantäne, [a54dd509dcaeb97def1f8d0cfb0ade22], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9FC7111A-41EE-4640-90FB-7DDFEC2CCB3E}, In Quarantäne, [12e0e3fbe0aa82b456b9a5f4798ccc34], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A4FC69E8-AA6C-4C18-A26D-B65BAAED6D35}, In Quarantäne, [c82a20bee6a464d22de2f2a7867f7e82], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A8673E4C-5D14-424C-BA8B-A8FC23DFDB7F}, In Quarantäne, [4ba707d7e0aa1026c54a9bfe5ea72dd3], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A967BF94-3C75-4437-A6EC-90C4D775CBC8}, In Quarantäne, [4ca64896e9a12b0bd43b2079897c51af], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B33A40FF-6988-47E8-A918-8A5886B4FC93}, In Quarantäne, [a151ebf3305afd39ea24a6f313f22ed2], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B41C15BA-B621-48E3-8A1B-82D52F1AAB9B}, In Quarantäne, [b33f09d5583259dd60af1c7d8b7a857b], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B44413C5-F186-4FC3-9E8A-F6D0F39C39D1}, In Quarantäne, [9a58e8f65a30191db15ea3f68d787a86], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B5670B1F-88E4-4AA8-90F9-8E5D645BCC17}, In Quarantäne, [47ab11cd127863d3ac63dabfeb1a2ed2], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B5B78573-701D-4187-A068-2792DD5E206D}, In Quarantäne, [d9195c82f59573c332dc7d1c17ee619f], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B71F987F-93E4-49C6-8F88-A42F68CD4F8A}, In Quarantäne, [c1318d51325862d42ae59405ca3beb15], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BB30B4FE-7B17-4C13-AC6E-4621AD21E6F3}, In Quarantäne, [8d6503db197165d1ac6203960ff6af51], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BBEBF451-9241-4F7F-8117-1B305111D4A7}, In Quarantäne, [04ee32ac21693bfbea24f8a17b8aba46], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C31DF421-6420-4B46-BEA9-AABBD2356988}, In Quarantäne, [45ad697539511125e82678215baa0df3], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C3CD43E7-FEFF-4B1B-B43F-277855FB3E22}, In Quarantäne, [638fab335b2fdd59020d8d0c21e426da], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C9667147-E299-4214-9D69-B728391058A1}, In Quarantäne, [0ae89c42a3e7191deb2347527e87a55b], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C9EB8F97-51D0-4704-9CA5-E6941E3AB9C8}, In Quarantäne, [48aa06d8e4a69f971cf2cecb63a2e61a], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{CB4E1110-51E2-4A10-9A49-FDDF2C8B66CF}, In Quarantäne, [dc16d806abdf5ed8ec23fc9d65a0a25e], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{CE42B815-A80A-4FCB-B2B2-8D3185344554}, In Quarantäne, [ac46c816c4c6ef4723ec2574f411758b], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D07489AC-5671-4123-A8B9-6186A1DBE039}, In Quarantäne, [8b67d60871197db97698435633d221df], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D8C6CE81-F564-4E8F-A849-E4D2BB3C8660}, In Quarantäne, [d022fae482087abc848b5643867f4cb4], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D8DBBEDF-2B96-47AF-8ABA-69DA2CD984BC}, In Quarantäne, [9e545a844842c274d33c6930ab5a7d83], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DB51D425-3360-4852-A4B7-2855228F32A4}, In Quarantäne, [28cafde13c4efb3b47c87425e520659b], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DB58F4BE-926C-4962-AB66-85673686F457}, In Quarantäne, [b43e2eb052388ea87a94dfbaff0615eb], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DC20B4D2-DBC3-448C-82EA-BE945AD94C42}, In Quarantäne, [797959854b3f8aac9d720693709531cf], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DCB2CAD8-E282-4EF4-9E74-C18AE5C1D04F}, In Quarantäne, [9f53805e6228e65017f853464abbca36], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DEA03147-B5B9-478D-B3A7-C7B281674021}, In Quarantäne, [955dd00e8dfd280e69a5cdcc08fdcd33], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DF595393-A625-4B52-8E92-5E9BD422F7E4}, In Quarantäne, [07eb934b96f439fd2ce37e1bb74ed22e], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DF6D3D6D-8746-4840-823F-C52B5E5E743E}, In Quarantäne, [db170ad47a103ef82ce284159d68a55b], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E02919C4-D133-4654-A076-1110D4F4FB91}, In Quarantäne, [f4fe4a943b4f80b61ef18118d82d7d83], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E052C91B-E55D-4D89-A87D-96F479731F29}, In Quarantäne, [33bf7e60d4b6350164aa5b3e5aabc739], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E094E5AF-E477-4180-A9AF-5490874EE583}, In Quarantäne, [6b87b32bd2b8c670c24cc6d3020344bc], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E0968AB0-23EE-4A99-A03A-E86D3D5A49FA}, In Quarantäne, [05eda43a4c3e58de4fc0f9a0f70e9868], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E0A33F9E-519F-4728-8C9B-A41CC6CE7978}, In Quarantäne, [ce24eef0bbcfa39329e5d3c659acda26], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E1033F2A-451D-4D71-815E-24DE2CC6955A}, In Quarantäne, [14de8955c0ca68cefe11debbd0358f71], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E23066B6-5E7F-4A63-B8A8-6E3FF16DDE10}, In Quarantäne, [2dc556882862f442fd12a6f331d46a96], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E438E0A9-D7F2-4114-B199-AA176A766141}, In Quarantäne, [856d19c55f2b082eeb23fa9f20e5a55b], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E5A2100E-9AF2-4A4E-89ED-9F49D1E573A7}, In Quarantäne, [bc362cb2652516207b93debbce37768a], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E8C5B6C8-FE74-4534-91EA-5374FD88596F}, In Quarantäne, [658dab330486d561010da8f159acd030], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{EEC8261E-8002-4C43-AF47-B544D13DFF27}, In Quarantäne, [ef03edf1a5e55ed8ac62c8d1e322cc34], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{EEF322DA-939E-4DAE-99A5-D9F2D948B21B}, In Quarantäne, [856d38a6d7b3ab8b808ec1d8e3222cd4], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F6CBF277-231D-456E-8735-A05D10F2B9AF}, In Quarantäne, [19d9edf1b0da3402b25cb8e164a125db], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F719304A-C3BC-4B64-8918-8F39BF40A05A}, In Quarantäne, [de14c618deac3df9df306e2b788d0bf5], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F81508F1-26BC-4296-8E4E-5EC736A75190}, In Quarantäne, [1fd35886d9b178be808ebedb08fdfa06], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F98658B4-446B-450F-97E2-87F8655EADB3}, In Quarantäne, [fdf5d6085c2e1125de308712897c57a9], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{FB6003A4-F373-42B8-9178-E7718CC1C5EF}, In Quarantäne, [e60cebf32b5fe94deb243b5e4db87d83], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{FC79CDA8-D221-4D42-8E22-E4EB38DC79BA}, In Quarantäne, [82701bc32763f343ae6180194abb9a66], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{FD462B51-8E9D-419C-BFEE-BA5FE0A63498}, In Quarantäne, [24ce8f4f7e0c53e3f21dbfdade273ac6], 
PUP.Optional.Trovi.C, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9}, In Quarantäne, [549e0bd35f2b41f525115345fe07b34d], 
PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472F-A0FF-E1416B8B2E3A}, In Quarantäne, [1ad8cd11c5c51c1ad84c1aea8f75cf31], 
PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}, In Quarantäne, [e0124b937416ba7c9292e51fe32132ce], 
PUP.Optional.IStartSurf.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarantäne, [7c7628b6008a49ed9665f29f7e87cb35], 
PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{A2538774-7694-405F-8617-40F6CF9BD6C0}, In Quarantäne, [e50d3da1692185b1b470b54f8f759070], 
PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{E733165D-CBCF-4FDA-883E-ADEF965B476C}, In Quarantäne, [569c7b632862ae88e4405ba9c044738d], 
PUP.Optional.QuickSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MOZILLA\EXTENDS, In Quarantäne, [737f0ed0abdf6ccae5d844bebb496799], 
PUP.Optional.OptimizerPro.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\OPTIMIZER PRO, In Quarantäne, [26cc8955cac08bab1f779ffc18edf20e], 
PUP.Optional.Tuto4PC.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\TUTORIALS\updatetutorialeshp, In Quarantäne, [747e825c4a409e982134010c0cf8817f], 
PUP.Optional.Tuto4PC.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\TUTORIALS\updatetutorialshp, In Quarantäne, [886a3ea013774ee88cca39d4bb497e82], 
PUP.Optional.Tuto4PC.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\TUTORIALS\updv, In Quarantäne, [668cd806a7e3f145c493d83547bdca36], 
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\istartsurf uninstall, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.BubbleSound.A, HKLM\SOFTWARE\CLASSES\CLSID\{1386F2A3-FEB9-4C55-AD9A-B798EE57299B}, In Quarantäne, [856dad313d4d3bfb1e6da35a847f6c94], 
PUP.Optional.BubbleSound.A, HKLM\SOFTWARE\CLASSES\CLSID\{7FDF7A92-F901-4F93-9769-A8AC41C8E563}, In Quarantäne, [856dad313d4d3bfb1e6da35a847f6c94], 
PUP.Optional.BubbleSound.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\BubbleSound, In Quarantäne, [856dad313d4d3bfb1e6da35a847f6c94], 
PUP.Optional.OptimizerPro.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Optimizer Pro_is1, In Quarantäne, [a949b826c2c82c0a7d149865b053758b],
         
__________________
Beste Grüße,

Kuhlambo12

Alt 08.07.2015, 18:36   #2
kuhlambo12
 
Windows 8 & Windows 7 Laptop beide stark Adware verseucht - Standard

Windows 8 & Windows 7 Laptop beide stark Adware verseucht



Code:
ATTFilter
Registrierungswerte: 192
PUP.Optional.Tuto4PC.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE|upgmsd_de_283.exe, C:\Users\Felix\AppData\Local\gmsd_de_283\upgmsd_de_283.exe -runonce, In Quarantäne, [767c13cbfe8cf046530c256f6f97f907]
PUP.Optional.Crossbrowse.C, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|GoogleChromeAutoLaunch_C788171D294CB79FE0085AC50E127065, "C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe" --no-startup-window, In Quarantäne, [50a28856a1e957df690c642fe81e05fb]
PUP.Optional.Tuto4PC.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|gmsd_de_283, "C:\Program Files (x86)\gmsd_de_283\gmsd_de_283.exe", In Quarantäne, [48aabe207713d561c59ac7cdb4520bf5]
PUP.Optional.OptimizerPro.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|Optimizer Pro, C:\Program Files (x86)\Optimizer Pro 3.84\OptProLauncher.exe, In Quarantäne, [8e648c52e0aaab8b96a86ef860a2c040]
PUP.Optional.CrossBrowse.C, HKLM\SOFTWARE\CLASSES\.HTML\OPENWITHPROGIDS|CRSBRWSHTML, In Quarantäne, [6b8725b9c1c980b68ec675235da847b9], 
PUP.Optional.CrossBrowse.C, HKLM\SOFTWARE\CLASSES\.HTM\OPENWITHPROGIDS|CRSBRWSHTML, In Quarantäne, [b240548a107a8caa83d0a0f823e2c13f], 
PUP.Optional.CrossBrowse.C, HKLM\SOFTWARE\CLASSES\WOW6432NODE\.HTML\OPENWITHPROGIDS|CRSBRWSHTML, In Quarantäne, [13dfecf2e3a79a9cf65ec6d21ce9bd43], 
PUP.Optional.CrossBrowse.C, HKLM\SOFTWARE\CLASSES\WOW6432NODE\.HTM\OPENWITHPROGIDS|CRSBRWSHTML, In Quarantäne, [1cd6bc22f199ed49afa427714cb97a86], 
PUP.Optional.DefaultSearch.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|DisplayName, default-search.net, In Quarantäne, [2ec45c82c0caf64054116f23b253b34d]
PUP.Optional.DefaultSearch.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|URL, http://www.default-search.net/search?sid=498&aid=161&itype=n&ver=16064&tm=-15857&src=ds&p={searchTerms}, In Quarantäne, [22d03da17614ba7c81e4aee414f1e020]
PUP.Optional.DefaultSearch.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|SuggestionsURL_JSON, http://www.default-search.net?sid=498&aid=161&itype=n&ver=16064&tm=-15857&src=ds&p={searchTerms}&ft=json, In Quarantäne, [a84a904e4d3db97de481e7abcb3ae020]
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|FaviconPath, C:\Program Files (x86)\Assets Manager\smdmf\favicon.ico, In Quarantäne, [02f09b434b3f7bbb0c43267346bf4eb2]
PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\chrome.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130766070527929005, In Quarantäne, [668c8955becccd69a2aa1e7ee61f0df3]
PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\explorer.xxx|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130766070527929005, In Quarantäne, [df13c41a39513cfa4a02138949bc837d]
PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\firefox.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130766070527929005, In Quarantäne, [8a688d519eecf640df6d7c20bb4aa45c]
PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\iexplore.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130766070527929005, In Quarantäne, [658d904e0d7d1323b49897057392e21e]
PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\software_removal_tool.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130766070527929005, In Quarantäne, [8f63409e0981a78f83c94359ae57e51b]
PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\software_reporter_tool.exe|{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130766070527929005, In Quarantäne, [1dd5ecf2236796a059f3405cbf4651af]
PUP.Optional.Trovi.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\APPCOMPATFLAGS\CUSTOM\LAYERS\VC32Ldr  |{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb, 130766070527929005, In Quarantäne, [708214ca711968ce2d205e3e9f66fd03]
PUP.Optional.3DBubbleSound.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|3D BubbleSound, "C:\Program Files\BubbleSound\3D BubbleSound.exe", In Quarantäne, [8969af2fd3b7d85ea81e9d63689ca65a]
PUM.Security.Hijack.DisableChromeUpdates, HKLM\SOFTWARE\POLICIES\GOOGLE\UPDATE|DisableAutoUpdateChecksCheckboxValue, 1, In Quarantäne, [fff3e1fda0eaee486290b8e360a57a86]
PUP.Optional.CrossBrowse.C, HKLM\SOFTWARE\REGISTEREDAPPLICATIONS|Crossbrowse, Software\Clients\StartMenuInternet\Crossbrowse\Capabilities, In Quarantäne, [3cb68a548307db5b69421e78f90c6c94]
PUP.Optional.CrossBrowse.C, HKLM\SOFTWARE\WOW6432NODE\CLASSES\.HTML\OPENWITHPROGIDS|CRSBRWSHTML, In Quarantäne, [30c2ba24157587afaca8197fdf263ec2], 
PUP.Optional.CrossBrowse.C, HKLM\SOFTWARE\WOW6432NODE\CLASSES\.HTM\OPENWITHPROGIDS|CRSBRWSHTML, In Quarantäne, [3bb7d707305a41f51f34a1f71bea37c9], 
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\GLOBALUPDATE\UPDATE|path, C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe, In Quarantäne, [30c27c627911181ee7412a03986c52ae]
PUP.Optional.GlobalUpdate.C, HKLM\SOFTWARE\WOW6432NODE\GLOBALUPDATE\UPDATEDEV|AuCheckPeriodMs, 21600000, In Quarantäne, [f9f9786681098fa7ecec0ff48f7523dd]
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|DisplayName, istartsurf, In Quarantäne, [7c76dfff2763e5518775197813f2c739]
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|URL, http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}, In Quarantäne, [896923bb107ab0866597c5ccc44154ac]
PUP.Optional.DefaultSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|DisplayName, default-search.net, In Quarantäne, [e1117b630e7c67cf194c731f71947c84]
PUP.Optional.DefaultSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|URL, http://www.default-search.net/search?sid=498&aid=161&itype=n&ver=16064&tm=-15857&src=ds&p={searchTerms}, In Quarantäne, [32c0c5198604f2441c4992004db80ff1]
PUP.Optional.DefaultSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|SuggestionsURL_JSON, http://www.default-search.net?sid=498&aid=161&itype=n&ver=16064&tm=-15857&src=ds&p={searchTerms}&ft=json, In Quarantäne, [3eb4bc22b5d5102673f2870b6d98c43c]
PUP.Optional.Bandoo.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|FaviconPath, C:\Program Files (x86)\Assets Manager\smdmf\favicon.ico, In Quarantäne, [5e94d20ccac0a69061ee257446bfb64a]
PUP.Optional.MixVideoPlayer.A, HKLM\SOFTWARE\WOW6432NODE\MIXVIDEOPLAYER\MIXVIDEOPLAYER|InstallDir, C:\Program Files (x86)\MixVideoPlayer, In Quarantäne, [846e8658d6b47abcb6e0e22109fb06fa]
PUP.Optional.IStart.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|istart_ffnt@gmail.com, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com, In Quarantäne, [d61c528c810914229e093bcdd1334cb4]
PUP.Optional.QuickSearch.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|quick_searchff@gmail.com, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\quick_searchff@gmail.com, In Quarantäne, [28caf4eaf496dc5ab0e554aeda2a04fc]
PUM.Security.Hijack.DisableChromeUpdates, HKLM\SOFTWARE\WOW6432NODE\POLICIES\GOOGLE\UPDATE|DisableAutoUpdateChecksCheckboxValue, 1, In Quarantäne, [b53d7c62f793fa3cea08f2a98b7a8d73]
PUP.Optional.CrossBrowse.C, HKLM\SOFTWARE\WOW6432NODE\REGISTEREDAPPLICATIONS|Crossbrowse, Software\Clients\StartMenuInternet\Crossbrowse\Capabilities, In Quarantäne, [b43e28b6ccbe4de94e5dc5d1db2a36ca]
PUP.Optional.SearchProtect.A, HKLM\SOFTWARE\WOW6432NODE\SEARCHPROTECT|InstallDir, C:\PROGRA~2\SearchProtect, In Quarantäne, [ab4712cc8ffba98dd020df51ae564ab6]
PUP.Optional.SearchProtect.A, HKLM\SOFTWARE\WOW6432NODE\SPPDCOM|TS, 2, In Quarantäne, [4ba78a54c5c563d3aa1befb013f2c937]
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB|ptid, wpm05203, In Quarantäne, [48aa706e8307be78708cf0351be925db]
PUP.Optional.Tuto4Pc.A, HKLM\SOFTWARE\WOW6432NODE\TUTORIALS|HostGUID, 97C3F633-8236-42B4-A376-623FDFCFBFBE, In Quarantäne, [ca28627c7f0b64d2a8008c0325e06c94]
PUP.Optional.Picexa.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\PICEXASERVICE|ImagePath, C:\Program Files (x86)\Picexa\PicexaSvc.exe, In Quarantäne, [5a984e9090faf64035692971887d7c84]
PUP.Optional.GamesDesktop.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\GAMESDESKTOP|mj, 15.05.22.0, In Quarantäne, [728021bdfa90979ffb959203fe073ac6]
PUP.Optional.GlobalUpdate.C, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\GLOBALUPDATE\UPDATE\PROXY|source, Firefox, In Quarantäne, [886a419d583216202744a75d0afa5da3]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{120C7706-8D24-419F-8428-8E80B5AF8F1C}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [b14107d70387c96d88866d2cdb2a867a]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{151D5D08-EC99-4679-8C4B-C25BFF8ACE5F}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [a44e9f3f305a44f254bae0b9cd3834cc]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{15AFB26A-A278-4843-952E-B3B3751A3F5A}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [c72be9f50981b0869e701e7b25e040c0]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{17D0C98F-2F84-4C21-9DB7-9B27D6CF8AE9}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [db17b32b5c2e330336d88118c144728e]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1951AF66-27B6-45B8-897B-CD50C02586CE}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [47ab12cc2c5e53e3739bdabfb05510f0]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1988E4BB-FBF2-44AE-8CC8-EB943C661524}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [638f855949414fe7c8474554b84d7a86]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{19D05CF7-EB54-4B8C-9197-FEABF9905ED4}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [db178f4ff397b48278969cfd22e35fa1]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1AD5BAA1-F97C-46BD-A654-4A98DF6B1C3A}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [cc26edf19ded62d4c44a4d4c41c412ee]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1C0295F4-38D8-4811-8460-519EE57C7357}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [fbf71cc2f2986ccaf31c33666d98a35d]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1F0ACFF4-7F57-4B33-AC9E-B0E3F1DF1939}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [8171e3fb6228201629e50a8fb154f808]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{1FB127CA-F6DF-49D0-9556-6458315256FC}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [e909b22c99f1350132dc7d1cca3b946c]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{232D318C-B4D7-4ACA-97AC-81F85CD02978}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [fff37c62c3c790a6f51a17828481e11f]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{26395586-468E-4FB8-A637-9E51A525C7DD}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [0de59c422367989e3fcf24750cf9d62a]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{27DD1430-5392-4C32-BF45-23C1D317D495}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [a74b38a64e3c3105c24dbddc1fe651af]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{29898DF6-F79C-441C-BBA8-358B60AD19EB}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [6b875a84ef9b53e37f8fb2e726dfa759]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{2B7BA3EE-E891-4451-89BE-876F45251D22}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [965c2eb027631e1867a739600ef725db]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{2D7AB619-5D1C-4B0A-AF19-332783387696}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [ca28419de7a3a195bd529bfe07fe28d8]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{302A03DC-76E3-4997-8766-AA1DBC831E75}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [2bc79c42a7e3e45228e6cbceb94c01ff]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{33AE80DD-AD21-4F7F-AC92-846BF8991275}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [b939a33bc8c2b680010d02979c6946ba]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{34B9C3F7-F50B-4618-B5EB-9444F0BC23FB}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [5e9410cec9c1c47255b9cdccf510639d]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{35725910-75C6-4F72-B055-30237C1FA659}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [fbf7be2079118da952bd6a2fe81d7090]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{35AC4F1F-CF03-49B9-B4DE-4AE4A7DDF012}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [60921ac41278280ed03fa4f5d82d58a8]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{3714B802-BDB6-4782-92E0-D759773667C6}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [39b93ca2c8c2d85e8986fc9dfc097f81]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{385A3F69-4D5A-4F60-A7BA-F5B431F2DC71}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [d81a538b8a0093a30e01eaafd1347f81]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{3AC63EE5-304B-4500-9727-35924F7388CE}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [c23086582169b5816ca2603963a257a9]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{3B7E2BC3-D9AC-412F-94A9-DED7AEB4C9C4}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [975b10ce29613ff78d81e4b529dc966a]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{40B18416-86BD-4E23-8FF9-E725FB427345}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [e70b805ee6a4dc5a42cdcacf49bc37c9]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{40F8F7C4-5D9B-4DB9-ACF5-349F6DDA6B53}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [718109d58ffbfe3826e955440afb26da]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{46262A2B-24C0-4943-8DBE-CD9B1C3EBCC0}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [34bec51917731125000f524747be60a0]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{47D3C884-25EE-4481-9ACD-AC589CBA9494}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [05edf0eea0eab2840806c0d9be47fb05]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4B29E5E2-7647-41D6-B7C1-9685F3D2F524}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [ee04409e7812e6506da158417b8a936d]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4BC66859-5175-4813-9ABF-6CA6AD1E76FC}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [6a88e2fc038730069877d3c61aebb44c]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4C6CEE95-D2C2-49C6-AEE3-82C1E25B311F}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [856d38a67b0fea4c40ce7920f3120af6]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{4FA4E792-5A05-4224-8F73-E8821D592338}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [13df6b736c1e75c10f00217816efa25e]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{51A2B661-7C71-44B0-947D-97756699A7D4}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [886ace1059317bbb1df166330afb7789]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{53685588-549E-482C-B0C4-AF913844F440}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [e80ad608365481b5f41babee24e1c43c]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{544EAC0B-4B3E-476C-BDA9-D9A532128CBD}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [6e844599f496072f050aafea3fc641bf]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{562405BF-7339-4EE7-AC36-FF75121BBF3B}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [965cd30b2f5bf244d23c9108ce3718e8]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{575104CE-636F-4A9C-BC9A-EF8F8E20C53E}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [a05266782367b77fe7285049cd386f91]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5B79C716-DA8F-465B-9C57-3C2910869038}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [28cacc1299f1be787f909108a75e6898]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5F612E2C-F5C4-45C4-92EF-D27CC21A28EF}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [d41e538bdeac94a2ad621683d1340ef2]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5FAAC928-B680-41A9-8A97-91E2B1F6DACE}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [2ec42ab421691026000e06931ee7a25e]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{627CC21D-115A-45F6-8CFE-56E4B33E7C65}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [737f1ec0187212243ed1d8c13bca2ad6]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{635AC835-E290-4FD7-9927-D3D12AB38CB3}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [9b5710ce3c4e42f46ba38e0b2fd63cc4]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{64A3F462-8B7D-4688-A473-885B7E2FC030}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [4fa3548ac8c273c3937bb6e32cd9dc24]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{664CFECB-417F-4CA0-90BF-E64358BD57D3}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [7979aa3472188caa927ddcbd8c79e61a]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{66D0193D-2516-4F4A-8EAA-B284A453224A}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [42b0c41a4149dc5ab05ed3c67d88d927]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{670A5F62-BC38-408B-B299-EC5C8551FA66}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [b63c65793a50cd69cd42b9e0be4746ba]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{67448F74-E369-430A-9DA7-3C4680554231}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [01f1439b5238241224eaecadbc492bd5]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6A46EA12-408D-4E3B-8357-26DB12D53A6F}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [d121f8e6c8c29b9bec238118cc3912ee]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{6EF78F1A-1F5B-47C5-8CAA-1D92A7B3642B}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [4da5ad317812e5515cb3ddbc36cf6c94]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{71822294-E5E7-4940-8919-9E28CFF2FF24}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [ae448d51a4e664d2858a23762cd9f50b]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{735F6382-72A0-4534-8FA9-B59E608D2B51}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [11e14d9154368caa4dc2485120e5d12f]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{76C73A33-32B4-4F7F-8BAC-79EB2DBFCA32}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [9062fce2abdf94a222ec37624db8e917]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{78413689-64BC-4A54-B794-1D182AD5BA8F}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [559d20be89011422ac6356430ef72bd5]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{78665A63-8261-4FF9-A6EA-E0CB874B7179}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [90624d914248c175ef1fbfda80851ee2]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7923E6B8-BF32-4F33-91B1-99A370FF7AA1}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [23cfc7170882a78f62ad2a6ff11439c7]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7A98306D-53F1-468A-A69F-20C3B6BD71D7}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [1ed4b22c0f7b12249e7024756a9b6f91]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7AFAA990-ECCA-4EC9-8D5C-94F091E3B1E5}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [7c76fae47b0fa29466a8079241c4ba46]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7B813A0B-61F8-4D6B-8483-2D1CFEDDB094}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [f2005688cac0a98d848bdcbd27ded030]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7EBFB42C-8663-4280-B41C-403823C6A166}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [a84a24ba5f2b2e080e017d1ce421e020]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{7FD83AB9-1126-4593-A18D-8E77D8A9CA14}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [44ae6b73cdbd54e2e42a8e0b669ff808]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{80A1E1EE-AC21-4B68-85E4-FA91E1256BDB}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [2fc37a644e3cc571fa158217ee176898]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{818CB061-ED89-4335-B483-5822379134EB}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [91613ca23d4de650759a81182adbea16]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8218ECBB-F519-41DD-95B0-C57F92F01790}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [71812bb3eaa0f046838c9504f70eed13]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{82851397-B08A-4169-BCDE-8F3551926716}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [3bb748964a406ccaeb2337625aab8a76]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{83C89F8F-98AD-4D7F-A3B4-8789A5FAB7E9}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [7181eaf4aae0a1955cb24a4feb1a936d]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8A4C91CD-C4E9-46B7-842F-8D7E9DDDAABD}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [3fb36b736a209c9a9876c5d442c37987]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8AD3CDE9-E98E-4B1B-A5A3-8F6AD0F8C47F}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [d81ac01eadddcd69b15d0198aa5b04fc]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8BD2E825-F6BD-460D-BC17-79DEDDE08FC9}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [e50d6a7495f5b97d0a0521788e77ed13]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8D4F7106-3004-4100-8DF3-FE21FBB2BF65}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [7c762eb04347dc5aef1fd8c1957048b8]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8D71F622-1419-46F6-8F48-37D788CEE6F8}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [d220c41a45452e08010e1089c540b64a]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8DBA8FEB-33D8-4209-8E88-2C806D51B882}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [6f83518db7d3a59161ad396027de9070]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{8E4CB96C-F2AD-4399-B9FD-F1329665DEBA}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [bd355a845c2ede582ee0aeeb6f966898]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{94F86B77-952D-424C-BE6B-2622CB755425}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [12e08e50c0ca50e63fcf8415d62f926e]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9649F8DF-3BE7-440C-B5B0-C34CB0164727}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [e70b508eaae06acc4cc37623798c23dd]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9854AF5B-9B46-4018-AE2D-57DFA2B04079}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [b2408658c7c32412719ec5d4000508f8]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{98E20150-9C05-4C83-AAC4-6C66B0E740C6}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [8e64f3eb206a58dea966bbde74917987]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9B72A995-9224-4346-95AC-BD58A6818222}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [eb071ac492f82a0ce629c6d3ee17b050]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9DE1FBB8-7A27-42EC-9290-A9DB16C83D1E}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [9b57508e1c6ea492a06f9108d1344bb5]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9ED51A79-C024-4888-8F1D-46C14CADCACB}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [82700bd33456d66023ec6930d62f3ac6]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9FB89456-7837-4146-95C8-48BA14317E36}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [a54dd509dcaeb97def1f8d0cfb0ade22]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{9FC7111A-41EE-4640-90FB-7DDFEC2CCB3E}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [12e0e3fbe0aa82b456b9a5f4798ccc34]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A4FC69E8-AA6C-4C18-A26D-B65BAAED6D35}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [c82a20bee6a464d22de2f2a7867f7e82]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A8673E4C-5D14-424C-BA8B-A8FC23DFDB7F}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [4ba707d7e0aa1026c54a9bfe5ea72dd3]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{A967BF94-3C75-4437-A6EC-90C4D775CBC8}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [4ca64896e9a12b0bd43b2079897c51af]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B33A40FF-6988-47E8-A918-8A5886B4FC93}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [a151ebf3305afd39ea24a6f313f22ed2]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B41C15BA-B621-48E3-8A1B-82D52F1AAB9B}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [b33f09d5583259dd60af1c7d8b7a857b]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B44413C5-F186-4FC3-9E8A-F6D0F39C39D1}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [9a58e8f65a30191db15ea3f68d787a86]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B5670B1F-88E4-4AA8-90F9-8E5D645BCC17}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [47ab11cd127863d3ac63dabfeb1a2ed2]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B5B78573-701D-4187-A068-2792DD5E206D}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [d9195c82f59573c332dc7d1c17ee619f]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{B71F987F-93E4-49C6-8F88-A42F68CD4F8A}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [c1318d51325862d42ae59405ca3beb15]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BB30B4FE-7B17-4C13-AC6E-4621AD21E6F3}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [8d6503db197165d1ac6203960ff6af51]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{BBEBF451-9241-4F7F-8117-1B305111D4A7}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [04ee32ac21693bfbea24f8a17b8aba46]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C31DF421-6420-4B46-BEA9-AABBD2356988}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [45ad697539511125e82678215baa0df3]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C3CD43E7-FEFF-4B1B-B43F-277855FB3E22}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [638fab335b2fdd59020d8d0c21e426da]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C9667147-E299-4214-9D69-B728391058A1}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [0ae89c42a3e7191deb2347527e87a55b]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C9EB8F97-51D0-4704-9CA5-E6941E3AB9C8}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [48aa06d8e4a69f971cf2cecb63a2e61a]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{CB4E1110-51E2-4A10-9A49-FDDF2C8B66CF}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [dc16d806abdf5ed8ec23fc9d65a0a25e]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{CE42B815-A80A-4FCB-B2B2-8D3185344554}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [ac46c816c4c6ef4723ec2574f411758b]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D07489AC-5671-4123-A8B9-6186A1DBE039}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [8b67d60871197db97698435633d221df]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D8C6CE81-F564-4E8F-A849-E4D2BB3C8660}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [d022fae482087abc848b5643867f4cb4]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{D8DBBEDF-2B96-47AF-8ABA-69DA2CD984BC}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [9e545a844842c274d33c6930ab5a7d83]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DB51D425-3360-4852-A4B7-2855228F32A4}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [28cafde13c4efb3b47c87425e520659b]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DB58F4BE-926C-4962-AB66-85673686F457}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [b43e2eb052388ea87a94dfbaff0615eb]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DC20B4D2-DBC3-448C-82EA-BE945AD94C42}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [797959854b3f8aac9d720693709531cf]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DCB2CAD8-E282-4EF4-9E74-C18AE5C1D04F}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [9f53805e6228e65017f853464abbca36]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DEA03147-B5B9-478D-B3A7-C7B281674021}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [955dd00e8dfd280e69a5cdcc08fdcd33]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DF595393-A625-4B52-8E92-5E9BD422F7E4}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [07eb934b96f439fd2ce37e1bb74ed22e]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{DF6D3D6D-8746-4840-823F-C52B5E5E743E}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [db170ad47a103ef82ce284159d68a55b]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E02919C4-D133-4654-A076-1110D4F4FB91}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [f4fe4a943b4f80b61ef18118d82d7d83]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E052C91B-E55D-4D89-A87D-96F479731F29}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [33bf7e60d4b6350164aa5b3e5aabc739]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E094E5AF-E477-4180-A9AF-5490874EE583}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [6b87b32bd2b8c670c24cc6d3020344bc]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E0968AB0-23EE-4A99-A03A-E86D3D5A49FA}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [05eda43a4c3e58de4fc0f9a0f70e9868]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E0A33F9E-519F-4728-8C9B-A41CC6CE7978}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [ce24eef0bbcfa39329e5d3c659acda26]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E1033F2A-451D-4D71-815E-24DE2CC6955A}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [14de8955c0ca68cefe11debbd0358f71]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E23066B6-5E7F-4A63-B8A8-6E3FF16DDE10}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [2dc556882862f442fd12a6f331d46a96]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E438E0A9-D7F2-4114-B199-AA176A766141}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [856d19c55f2b082eeb23fa9f20e5a55b]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E5A2100E-9AF2-4A4E-89ED-9F49D1E573A7}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [bc362cb2652516207b93debbce37768a]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E8C5B6C8-FE74-4534-91EA-5374FD88596F}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [658dab330486d561010da8f159acd030]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{EEC8261E-8002-4C43-AF47-B544D13DFF27}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [ef03edf1a5e55ed8ac62c8d1e322cc34]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{EEF322DA-939E-4DAE-99A5-D9F2D948B21B}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [856d38a6d7b3ab8b808ec1d8e3222cd4]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F6CBF277-231D-456E-8735-A05D10F2B9AF}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [19d9edf1b0da3402b25cb8e164a125db]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F719304A-C3BC-4B64-8918-8F39BF40A05A}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [de14c618deac3df9df306e2b788d0bf5]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F81508F1-26BC-4296-8E4E-5EC736A75190}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [1fd35886d9b178be808ebedb08fdfa06]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F98658B4-446B-450F-97E2-87F8655EADB3}|AppName, Plus-HD-1.2-enabler.exe-buttonutil.exe, In Quarantäne, [fdf5d6085c2e1125de308712897c57a9]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{FB6003A4-F373-42B8-9178-E7718CC1C5EF}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [e60cebf32b5fe94deb243b5e4db87d83]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{FC79CDA8-D221-4D42-8E22-E4EB38DC79BA}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [82701bc32763f343ae6180194abb9a66]
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{FD462B51-8E9D-419C-BFEE-BA5FE0A63498}|AppName, Plus-HD-1.2-enabler.exe-codedownloader.exe, In Quarantäne, [24ce8f4f7e0c53e3f21dbfdade273ac6]
PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9}|URL, http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}, In Quarantäne, [ad45538b4b3f87afc064887c020244bc]
PUP.Optional.Conduit.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9}|SuggestionsURL_JSON, http://suggest.seccint.com/CSuggestJson.ashx?prefix={searchTerms}, In Quarantäne, [4fa3bc22a4e60d29c2337e850bf9d12f]
PUP.Optional.Trovi.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9}|DisplayName, Trovi, In Quarantäne, [a84a27b722686dc9002f375b3acbd828]
PUP.Optional.Trovi.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{015DB5FA-EAFB-4592-A95B-F44D3EE87FA9}|TopResultURL, http://www.trovi.com/Results.aspx?gd=&ctid=CT3330130&octid=EB_ORIGINAL_CTID&ISID=M72406C1C-94FC-4B75-BFD1-DCF538369C96&SearchSource=58&CUI=&UM=8&UP=SP23D2B5C9-FC57-4337-B50B-5A179B68F721&q={searchTerms}&D=042315&SSPV=SP22230TA_sp_ie, In Quarantäne, [ef0333ab07832f07f639dfb30203f907]
PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL, http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}, In Quarantäne, [1ad8cd11c5c51c1ad84c1aea8f75cf31]
PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}|URL, http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}, In Quarantäne, [e0124b937416ba7c9292e51fe32132ce]
PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}|FaviconURL, http://do-search.com//favicon.ico, In Quarantäne, [d0221ac40387a19540e4ba4a9f65966a]
PUP.Optional.IStartSurf.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|DisplayName, istartsurf, In Quarantäne, [7c7628b6008a49ed9665f29f7e87cb35]
PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|URL, http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}, In Quarantäne, [03efb826f2982f07bb6911f3d331ca36]
PUP.Optional.IStartSurf.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|TopResultURL, http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}, In Quarantäne, [c82a944af79345f18675a2ef28dd9b65]
PUP.Optional.DefaultSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|DisplayName, default-search.net, In Quarantäne, [7d7556884c3ea5912e36425006ff6b95]
PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|URL, http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}, In Quarantäne, [91614698f892b87ee341699bf90b827e]
PUP.Optional.DefaultSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|SuggestionsURL_JSON, http://www.default-search.net?sid=498&aid=161&itype=n&ver=16064&tm=-15857&src=ds&p={searchTerms}&ft=json, In Quarantäne, [fdf5c21cc7c3d5616103702251b4ba46]
PUP.Optional.Bandoo.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|FaviconPath, C:\Program Files (x86)\Assets Manager\smdmf\favicon.ico, In Quarantäne, [b63ce7f76b1fdf5725293e5bf41139c7]
PUP.Optional.DefaultSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2498}|TopResultURL, http://www.default-search.net/search?sid=498&aid=161&itype=n&ver=16064&tm=-15857&src=ds&p={searchTerms}, In Quarantäne, [40b24995c3c73bfbadb70f834cb9a65a]
PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{A2538774-7694-405F-8617-40F6CF9BD6C0}|URL, http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}, In Quarantäne, [e50d3da1692185b1b470b54f8f759070]
PUP.Optional.DoSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{E733165D-CBCF-4FDA-883E-ADEF965B476C}|URL, http://do-search.com/web/?utm_source=b&utm_medium=&utm_campaign=install_ie&utm_content=ds&from=&uid=ST500DM002-1BC142_W2A27G6AXXXXW2A27G6A&ts=1420373293&type=default&q={searchTerms}, In Quarantäne, [569c7b632862ae88e4405ba9c044738d]
PUP.Optional.QuickSearch.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MOZILLA\EXTENDS|appid, quick_searchff@gmail.com, In Quarantäne, [737f0ed0abdf6ccae5d844bebb496799]
PUP.Optional.OptimizerPro.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\OPTIMIZER PRO|AdsBuyNowURL, http://www.safeshopgate.com/r?s=121001939&g=3C2BA14E-CFE5-49E5-B9AC-9C6DAEAF509F, In Quarantäne, [26cc8955cac08bab1f779ffc18edf20e]

Registrierungsdaten: 15
PUP.Optional.Delta.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\FIREFOX.EXE\SHELL\OPEN\COMMAND, "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.delta-homes.com/?type=sc&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH, Gut: (firefox.exe), Schlecht: ("C:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.delta-homes.com/?type=sc&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH),Ersetzt,[46ac0ad47a10ec4a946e86d33acc3ac6]
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND, C:\Program Files\Internet Explorer\iexplore.exe http://www.istartsurf.com/?type=sc&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH, Gut: (iexplore.exe), Schlecht: (C:\Program Files\Internet Explorer\iexplore.exe http://www.istartsurf.com/?type=sc&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH),Ersetzt,[935ffce2f69479bd2c870d40df27f30d]
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}, Gut: (www.google.com), Schlecht: (http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}),Ersetzt,[27cb47975d2d4ee848f7a0acb650c33d]
PUP.Optional.Delta.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, http://www.delta-homes.com/?type=hp&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH, Gut: (www.google.com), Schlecht: (http://www.delta-homes.com/?type=hp&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH),Ersetzt,[0ce6f1ed5238ec4ad22cd1877a8c7987]
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}, Gut: (www.google.com), Schlecht: (http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}),Ersetzt,[9c56d707b5d5a39349f6420adc2a25db]
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[6a883ca26624cc6a72b0a0b8877f19e7]
PUP.Optional.Delta.A, HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\FIREFOX.EXE\SHELL\OPEN\COMMAND, "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.delta-homes.com/?type=sc&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH, Gut: (firefox.exe), Schlecht: ("C:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://www.delta-homes.com/?type=sc&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH),Ersetzt,[31c1b32b4842d75f3ec479e046c0c937]
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\IEXPLORE.EXE\SHELL\OPEN\COMMAND, C:\Program Files\Internet Explorer\iexplore.exe http://www.istartsurf.com/?type=sc&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH, Gut: (iexplore.exe), Schlecht: (C:\Program Files\Internet Explorer\iexplore.exe http://www.istartsurf.com/?type=sc&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH),Ersetzt,[c42e39a52466c373e8cbd27beb1bc23e]
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}, Gut: (www.google.com), Schlecht: (http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}),Ersetzt,[ea08a539f397112546f9ae9e25e1f907]
PUP.Optional.Delta.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, http://www.delta-homes.com/?type=hp&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH, Gut: (www.google.com), Schlecht: (http://www.delta-homes.com/?type=hp&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH),Ersetzt,[539fde00a3e7f83ebf3fbb9d6b9b1de3]
PUP.Optional.IStartSurf.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}, Gut: (www.google.com), Schlecht: (http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}),Ersetzt,[cb2737a73d4d2511cc7379d3ac5a07f9]
PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[f101627c6822979f54cef7617c8a55ab]
PUP.Optional.IStartSurf.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}, Gut: (www.google.com), Schlecht: (http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}),Ersetzt,[589ac01eacdebb7b310c0d3f010539c7]
PUP.Optional.Delta.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, http://www.delta-homes.com/?type=hp&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH, Gut: (www.google.com), Schlecht: (http://www.delta-homes.com/?type=hp&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH),Ersetzt,[955d5b8385055dd9fa0585d37e880000]
PUP.Optional.IStartSurf.A, HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}, Gut: (www.google.com), Schlecht: (http://www.istartsurf.com/web/?type=ds&ts=1425741068&from=tugs&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH&q={searchTerms}),Ersetzt,[47ab7d61dab041f5ac91d9730ef8837d]

Ordner: 258
PUP.Optional.CrossRider.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03, Löschen bei Neustart, [aa48845a38522b0b173205fc36ce7090], 
PUP.Optional.MixVideoPlayer.A, C:\Users\Felix\AppData\Local\mixvideoplayer, In Quarantäne, [da18a43aa7e37fb7fadca86090746997], 
PUP.Optional.MixVideoPlayer.A, C:\Users\Felix\AppData\Local\mixvideoplayer\config, In Quarantäne, [da18a43aa7e37fb7fadca86090746997], 
PUP.Optional.MixVideoPlayer.A, C:\Users\Felix\AppData\Local\mixvideoplayer\MixVideoPlayer.exe_Url_0uxwaewrhelcgghll0o5cintgfcbqdxr, In Quarantäne, [da18a43aa7e37fb7fadca86090746997], 
PUP.Optional.MixVideoPlayer.A, C:\Users\Felix\AppData\Local\mixvideoplayer\MixVideoPlayer.exe_Url_0uxwaewrhelcgghll0o5cintgfcbqdxr\1.0.0.4, In Quarantäne, [da18a43aa7e37fb7fadca86090746997], 
PUP.Optional.MixVideoPlayer.A, C:\Users\Felix\AppData\Local\mixvideoplayer\Playlists, In Quarantäne, [da18a43aa7e37fb7fadca86090746997], 
PUP.Optional.MixVideoPlayer.A, C:\Users\Felix\AppData\Local\mixvideoplayer\Snap, In Quarantäne, [da18a43aa7e37fb7fadca86090746997], 
PUP.Optional.MixVideoPlayer.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MixVideoPlayer, In Quarantäne, [8171b826a6e4ce68ddfa5dab927223dd], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\image, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\en-US, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-419, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-ES, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-BE, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CA, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CH, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-FR, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-LU, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-CH, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-IT, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pl, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt-BR, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru-MO, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\tr-TR, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\vi-VI, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-CN, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-TW, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\5es@IGB5CG.net\content, In Quarantäne, [737f8c528406c472a3d94a490203fe02], 
PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\5es@IGB5CG.net, In Quarantäne, [737f8c528406c472a3d94a490203fe02], 
PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\z@AvXLzV.org\content, In Quarantäne, [11e1a836bbcf3600ed8f910210f55ca4], 
PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\z@AvXLzV.org, In Quarantäne, [11e1a836bbcf3600ed8f910210f55ca4], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\defaults, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\defaults\preferences, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\userCode, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\locale, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\locale\en-US, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\defaults, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\defaults\preferences, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\userCode, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\locale, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\locale\en-US, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.PerfectCoupon.A, C:\Program Files (x86)\tpeRfecttcooUpon, In Quarantäne, [b240cc123357f5411603672d1aebed13], 
PUP.Optional.SuperOptimizer.A, C:\ProgramData\{29efd0f5-4e5f-1d8b-29ef-fd0f54e543d5}, Löschen bei Neustart, [817104dab6d46ccaf62912877f866997], 
PUP.Optional.Picexa.A, C:\Users\Felix\AppData\Roaming\Picexa Viewer\log, In Quarantäne, [8e6404da95f5c76fafe90d8da0656e92], 
PUP.Optional.Picexa.A, C:\Users\Felix\AppData\Roaming\Picexa Viewer, In Quarantäne, [8e6404da95f5c76fafe90d8da0656e92], 
PUP.Optional.Picexa.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picexa, In Quarantäne, [39b99846eaa03afc98034e4c4cb9ad53], 
PUP.Optional.SaveInShop.A, C:\Program Files (x86)\Savinshhopp, In Quarantäne, [0ce6b22c1377cb6bbb79acf0ec19827e], 
PUP.Optional.BubbleSound.A, C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BubbleSound 1.0, In Quarantäne, [ca28c8168bff1d1911c9c5d7da2bc23e], 
PUP.Optional.Iminent.A, C:\Users\Felix\AppData\Local\Temp\Iminent, In Quarantäne, [a9491cc21b6fd264d2e2a72490735ba5], 
PUP.Optional.PlusHD.A, C:\Program Files (x86)\Plus-HD-1.2, In Quarantäne, [a949bc2219711a1c75035d745fa4da26], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\rep, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\STG, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\UI, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\UI\rep, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], 
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect, Löschen bei Neustart, [62903ba33d4d51e5f3ca9648e122cf31], 
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update, In Quarantäne, [62903ba33d4d51e5f3ca9648e122cf31], 
PUP.Optional.GlobalUpdate.A, C:\Users\Felix\AppData\Local\Temp\comh.189875, In Quarantäne, [2ec4aa34f298171ff4062bb4976c06fa], 
PUP.Optional.GlobalUpdate.A, C:\Users\Felix\AppData\Local\Temp\comh.481717, In Quarantäne, [6b87e7f783071a1c36c4e4fbcc3758a8], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\code, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], 
PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\idpcbdkoekecjkbjeccbapdkpcmoiloa, In Quarantäne, [ad4511cd850548eef09a55967d8651af], 
PUP.Optional.TicTaCoupon.A, C:\Program Files (x86)\TiCTaCoupon, In Quarantäne, [16dc5c827f0b26105ccb23ca976cec14], 
PUP.Optional.GamesDesktop.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GAMESDESKTOP, In Quarantäne, [f7fb09d5cbbfaa8c2d94ec03e71c1fe1], 
PUP.Optional.GamesDesktop.A, C:\Users\Felix\AppData\Local\gmsd_de_283, Löschen bei Neustart, [5a98b727484246f02d9533bcf50e5ca4], 
PUP.Optional.GamesDesktop.A, C:\Users\Felix\AppData\Local\gmsd_de_283\Download, In Quarantäne, [5a98b727484246f02d9533bcf50e5ca4], 
PUP.Optional.GamesDesktop.A, C:\Users\Felix\AppData\Local\gmsd_de_283\gmsd_de_283, Löschen bei Neustart, [5a98b727484246f02d9533bcf50e5ca4], 
PUP.Optional.GamesDesktop.A, C:\Users\Felix\AppData\Local\gmsd_de_283\gmsd_de_283\1.20, Löschen bei Neustart, [5a98b727484246f02d9533bcf50e5ca4], 
PUP.Optional.GamesDesktop.A, C:\Program Files (x86)\gmsd_de_283, Löschen bei Neustart, [1bd7a23cabdf96a04c77e906d03346ba], 
PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate, In Quarantäne, [e909d806f39774c215fbde160ff4d52b], 
PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate\update, In Quarantäne, [e909d806f39774c215fbde160ff4d52b], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\avabvbxvh, In Quarantäne, [b042508e3b4fe94d6662629505fe0ff1], 
PUP.Optional.SystemNotifier.A, C:\Program Files (x86)\System NotifierV07.03, In Quarantäne, [0ce6ba2487034de93f0c27d139ca7c84], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\include, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\include\tools, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\lib, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\module, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\pack, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\en, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\en-US, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\es, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\es-419, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\fr, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\fr-BE, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\fr-CA, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\fr-CH, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\fr-LU, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\it, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\it-CH, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\pl, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\pt-BR, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\ru, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\ru-MO, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\tr, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\vi, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\zh-CN, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\zh-TW, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\skin, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\defaults, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\defaults\preferences, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\modules, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\Locales, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension Rules, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension State, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\css, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\html, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\bg, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ca, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\cs, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\da, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\de, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\el, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\en, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\en_GB, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\es, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\es_419, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\et, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fi, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fil, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fr, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hi, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hr, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hu, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\id, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\it, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ja, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ko, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\lt, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\lv, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\nb, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\nl, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pl, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pt_BR, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pt_PT, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ro, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ru, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sk, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sl, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sr, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sv, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\th, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\tr, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\uk, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\vi, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\zh_CN, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\zh_TW, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_metadata, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\css, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\html, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\bg, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ca, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\cs, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\da, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\de, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\el, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\en, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\en_GB, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\es, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\es_419, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\et, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\fi, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\fil, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\fr, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\hi, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\hr, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\hu, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\id, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\it, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ja, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ko, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\lt, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\lv, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\nb, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\nl, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\pl, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\pt_BR, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\pt_PT, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ro, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ru, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\sk, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\sl, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\sr, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\sv, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\th, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\tr, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\uk, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\vi, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\zh_CN, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\zh_TW, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_metadata, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\Temp, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\GPUCache, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\JumpListIcons, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\JumpListIconsOld, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Extension Settings, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Storage, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Session Storage, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossbrowse, In Quarantäne, [20d2c7174b3f082ef048a8520ff40ff1], 
PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], 
PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], 
PUP.Optional.BubbleSound.A, C:\Program Files\BubbleSound, Löschen bei Neustart, [856dad313d4d3bfb1e6da35a847f6c94], 
PUP.Optional.BubbleSound.A, C:\Program Files\BubbleSound\config, In Quarantäne, [856dad313d4d3bfb1e6da35a847f6c94], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84, Löschen bei Neustart, [a949b826c2c82c0a7d149865b053758b], 
PUP.Optional.OptimizerPro.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2, In Quarantäne, [9b57de00d7b33402c6ccb94448bb7789], 
PUP.Optional.OptimizerPro.A, C:\Users\Felix\AppData\Roaming\Optimizer Pro, In Quarantäne, [4da52faf2961ae889b0941bc669d43bd], 
PUP.Optional.OptimizerPro.A, C:\Users\Felix\AppData\Roaming\Optimizer Pro\Backup, In Quarantäne, [4da52faf2961ae889b0941bc669d43bd], 
PUP.Optional.OptimizerPro.A, C:\Users\Felix\AppData\Roaming\Optimizer Pro\Log, In Quarantäne, [4da52faf2961ae889b0941bc669d43bd], 
PUP.Optional.OptimizerPro.A, C:\Users\Felix\AppData\Roaming\Optimizer Pro\Undo, In Quarantäne, [4da52faf2961ae889b0941bc669d43bd],
         
__________________

__________________

Alt 08.07.2015, 18:42   #3
kuhlambo12
 
Windows 8 & Windows 7 Laptop beide stark Adware verseucht - Standard

Windows 8 & Windows 7 Laptop beide stark Adware verseucht



Code:
ATTFilter
Dateien: 936
PUP.Optional.MultiPlug.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptProMon.dll, Löschen bei Neustart, [6092fde109811f17903ffd5d50b29070], 
PUP.Optional.HQCinemax.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\e7bf910f-7d10-4f0e-826c-f806185bc954-6.exe, Löschen bei Neustart, [648e4698cbbf45f1685c8c0445c1738d], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\gmsd_de_283\upgmsd_de_283.exe, Löschen bei Neustart, [767c13cbfe8cf046530c256f6f97f907], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe, Löschen bei Neustart, [50a28856a1e957df690c642fe81e05fb], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\chrome_elf.dll, Löschen bei Neustart, [f002c7171377d6603441395a07ff36ca], 
PUP.Optional.Tuto4PC.A, C:\Program Files (x86)\gmsd_de_283\gmsd_de_283.exe, Löschen bei Neustart, [48aabe207713d561c59ac7cdb4520bf5], 
PUP.Optional.OptimizerPro, C:\ProgramData\{29efd0f5-4e5f-1d8b-29ef-fd0f54e543d5}\hqghumeaylnlf.exe, Löschen bei Neustart, [8d6534aabdcd92a4c261a5a31de5a15f], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptProReminder.exe, Löschen bei Neustart, [36bc6975e1a98aac87b76afca65c3ac6], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\ProtectService.exe, In Quarantäne, [df13607e0585b185cca6a37761a1bb45], 
PUP.Optional.MaintainerSvc.A, C:\ProgramData\06154ba7-7ceb-4959-a6bd-bf38bdec8cc6\maintainer.exe, Löschen bei Neustart, [d51d1ac46129bf773459609e847dc739], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptProLauncher.exe, In Quarantäne, [8e648c52e0aaab8b96a86ef860a2c040], 
PUP.Optional.MultiPlug.A, C:\Program Files (x86)\TicTaCoupone\IRoTD46NKB8E42.x64.dll, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], 
PUP.Optional.MultiPlug.A, C:\Program Files (x86)\TicTaCoupone\IRoTD46NKB8E42.dll, In Quarantäne, [b73b6579d0ba51e5e7637efe59a9718f], 
PUP.Optional.MultiPlug.A, C:\Program Files (x86)\tpeRfecttcooUpon\4CR0qHPpAi6VbU.x64.dll, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], 
PUP.Optional.MultiPlug.A, C:\Program Files (x86)\tpeRfecttcooUpon\4CR0qHPpAi6VbU.dll, In Quarantäne, [21d10ad4167468ce73d71864ac56f50b], 
PUP.Optional.MultiPlug.A, C:\Program Files (x86)\Savinshhopp\pRsTug3lO92q5x.x64.dll, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], 
PUP.Optional.MultiPlug.A, C:\Program Files (x86)\Savinshhopp\pRsTug3lO92q5x.dll, In Quarantäne, [d71bd30b0f7b65d1f05a48349f6349b7], 
PUP.Optional.MultiPlug.A, C:\Program Files (x86)\TiCTaCoupon\nQuLHdvmUIMBjs.x64.dll, In Quarantäne, [8072a43a65250e2886c4493369999769], 
PUP.Optional.MultiPlug.A, C:\Program Files (x86)\TiCTaCoupon\nQuLHdvmUIMBjs.dll, In Quarantäne, [8072a43a65250e2886c4493369999769], 
PUP.Optional.LuckyTab.A, C:\Program Files (x86)\XTab\SupTab.dll, In Quarantäne, [6c86b12d513996a085338aec1be8f30d], 
Trojan.Ransom.ED, c:\programdata\7ea11e435.cpp, In Quarantäne, [faf83ba390fad363681e49dcec16e51b], 
PUP.Optional.BrowseFox, C:\ProgramData\06154ba7-7ceb-4959-a6bd-bf38bdec8cc6\maintainer.bak, In Quarantäne, [12e0e8f61b6fbe78e868272c46bce11f], 
PUP.Optional.Nova.A, C:\Program Files (x86)\a2920a80-9642-4724-9332-9526a24ee1d9\c9101767-4755-4718-9726-c8f1026beb0f.dll, In Quarantäne, [da1813cba1e9a78f5de404134bb7dc24], 
PUP.Optional.Nova.A, C:\Program Files (x86)\Cisco\b8138832-8596-407b-bc09-7ab8062f3e66.dll, In Quarantäne, [9d55cc120684f343ba870017a45e5ca4], 
PUP.Optional.Multiplug.A, C:\Program Files (x86)\Extreme User Agent Switcher\Extreme User Agent Switcher.exe, In Quarantäne, [d61c31ad286259dd3659cb6ec24007f9], 
PUP.Optional.Multiplug.A, C:\Program Files (x86)\FineDiealSoFt\FineDiealSoFt.exe, In Quarantäne, [b73bbb23d1b95cda711e3603b949738d], 
PUP.Optional.EORezo, C:\Program Files (x86)\gmsd_de_283\gamesdesktop_widget.exe, In Quarantäne, [5f9375692268d561c3ac088c887e48b8], 
PUP.Optional.EORezo, C:\Program Files (x86)\gmsd_de_283\predm.exe, In Quarantäne, [ce24edf13e4c8fa7046b930166a0a15f], 
PUP.Optional.Nova.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\761c5e96-144a-4f1e-95a7-50f69bddb27a.dll, In Quarantäne, [61915f7f7119fc3ae859d7402dd5c040], 
PUP.Optional.HQCinemax.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\e7bf910f-7d10-4f0e-826c-f806185bc954-1-7.exe, In Quarantäne, [ea08d806a4e68caa07bdd1bf32d4a957], 
PUP.Optional.HQCinemax.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\e7bf910f-7d10-4f0e-826c-f806185bc954-3.exe, In Quarantäne, [42b089557416aa8cad17fc9424e2639d], 
PUP.Optional.HQCinemax.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\e7bf910f-7d10-4f0e-826c-f806185bc954-4.exe, In Quarantäne, [5a98cf0fb2d8ed493b898a064eb8a957], 
PUP.Optional.HQCinemax.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\e7bf910f-7d10-4f0e-826c-f806185bc954-64.exe, In Quarantäne, [35bd33abd0baa492dbe9721e62a42ad6], 
PUP.Optional.HQCinemax.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\e7bf910f-7d10-4f0e-826c-f806185bc954-7.exe, In Quarantäne, [bd35d40aeaa071c56d57cbc518eee11f], 
PUP.Optionlal.CrossRider, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\Uninstall.exe, In Quarantäne, [3cb6cd1141499f97022a5816b94a9d63], 
PUP.Optional.HQCinemax.A, c:\program files (x86)\hq cinemax 1.9cv07.03\uninstallbrw.exe, In Quarantäne, [0ee4b42ad0bafb3b3193a4ecc0466e92], 
PUP.Optional.CrossRider.A, c:\program files (x86)\hq cinemax 1.9cv07.03\utils.exe, In Quarantäne, [81717f5ffd8daf874c56502a9b675fa1], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptimizerPro.exe, In Quarantäne, [7979b8261b6fd561e6586501d230ba46], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptProGuard.exe, In Quarantäne, [fff3746a7218f73fa29ce77f867c7c84], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptProSchedule.exe, In Quarantäne, [d121c9159ceefa3cce70f96daa58a65a], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptProSmartScan.exe, In Quarantäne, [31c1b727d9b1f343ee505f07956de11f], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptProStart.exe, In Quarantäne, [1dd5eaf46426072fde606ef8cf337f81], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptProUninstaller.exe, In Quarantäne, [d31f9945bcce75c17cc2bcaacf3320e0], 
PUP.Optional.Multiplug.A, C:\Program Files (x86)\Savinshhopp\pRsTug3lO92q5x.exe, In Quarantäne, [7d754c922a6032048a05c871cb3712ee], 
PUP.Optional.Multiplug.A, C:\Program Files (x86)\Session Manager\Session Manager.exe, In Quarantäne, [b2409e40503a51e58e0191a8ca38d22e], 
PUP.Optionlal.CrossRider, C:\Program Files (x86)\System NotifierV07.03\Uninstall.exe, In Quarantäne, [9f538658345648ee1517630b2ed58f71], 
PUP.Optional.SystemNotifier.A, c:\program files (x86)\system notifierv07.03\uninstallbrw.exe, In Quarantäne, [4aa84f8f1377c175240c6a281fe728d8], 
PUP.Optional.Multiplug.A, C:\Program Files (x86)\TicTaCooUpon\TicTaCooUpon.exe, In Quarantäne, [42b003db2664c472a4eb0d2ca55d7789], 
PUP.Optional.Multiplug.A, C:\Program Files (x86)\TiCTaCoupon\nQuLHdvmUIMBjs.exe, In Quarantäne, [45ad3ea06a20ae885a350f2ad32f17e9], 
PUP.Optional.Multiplug.A, C:\Program Files (x86)\TicTaCoupone\IRoTD46NKB8E42.exe, In Quarantäne, [9959528cf694e84eaee13bfe976b5ea2], 
PUP.Optional.Multiplug.A, C:\Program Files (x86)\tpeRfecttcooUpon\4CR0qHPpAi6VbU.exe, In Quarantäne, [fbf737a77f0b7eb899f64feaf21020e0], 
PUP.Optional.CrossBrowse, C:\Users\Felix\AppData\Local\Temp\3763.exe, In Quarantäne, [747ee1fd5d2db28435b471e903ffd52b], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\Temp\Setup.exe, In Quarantäne, [935f16c8dcae62d4244b7d485ca54db3], 
PUP.optional.OptimizerPro.A, C:\Users\Felix\AppData\Local\Temp\optprosetup.exe, In Quarantäne, [737fa6387218cd6926694c30877bf60a], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-1CGSC.tmp\gentlemjmp_ieu.exe, In Quarantäne, [5c96e1fd8505f442520dfb99848243bd], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_secureprotect_installer_multilang.exe, In Quarantäne, [52a022bca6e48da9d3fe28df966c0ff1], 
PUP.Optional.Conduit.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\ism.exe, In Quarantäne, [a54d706e1773e84ed817e25a18ea3ec2], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_speeditup_installer_multilang.exe, In Quarantäne, [3bb702dc652577bf04cd66a114eee11f], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_superpc_installer_multilang.exe, In Quarantäne, [af43e3fbdeac2016ebe637d038cae719], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_taplika_installer_multilang.exe, In Quarantäne, [0ee4b42a94f66acc2ca5da2dec16ca36], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_wajam_installer_multilang.exe, In Quarantäne, [49a9cd117f0bba7c30a161a6639fe41c], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_zombie_installer_multilang.exe, In Quarantäne, [8e6412cc226857df3998838420e227d9], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_browsergood_installer_multilang.exe, In Quarantäne, [6d857d613c4e6dc9f9d8e6213cc6926e], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_BubbleSound_installer_multilang.exe, In Quarantäne, [26cc904e2367bd799b361aed7290e41c], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_CubepileShopperz_installer_multilang.exe, In Quarantäne, [6092f9e5741668ce379af017cf33748c], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_istartsurfp_installer_multilang.exe, In Quarantäne, [b93907d7bad068ce04cd47c07b879a66], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_mountainbike_installer_multilang.exe, In Quarantäne, [4ea40bd3335766d018b929decd35eb15], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_MyStartSearch_installer_multilang.exe, In Quarantäne, [e40ebd216129e452eee3b552f40e3ac6], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_optimizerpro_installer_multilang.exe, In Quarantäne, [b1412ab4375388aeca07818624de738d], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_pariente_secureprotect_bing_installer_multilang.exe, In Quarantäne, [dc16ab337713ab8bc9080700d42e0ff1], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_pariente_secureprotect_yahoo_installer_multilang.exe, In Quarantäne, [60920cd24446da5ce7eae32407fb23dd], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_plushd_installer_multilang.exe, In Quarantäne, [f1019c420f7bc6707d544abdc73b56aa], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_pzombie_installer_multilang.exe, In Quarantäne, [26cccf0fc2c857dfa9280afd8c767987], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_quickref_p_installer_multilang.exe, In Quarantäne, [cd25805ea6e401357d54f017768cb947], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_SByoutube_installer_multilang.exe, In Quarantäne, [af43da0464265fd77c5549be72908d73], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-58EC5.tmp\package_secprotwhite_installer_multilang.exe, In Quarantäne, [ac4637a7820863d3fad77f8853af28d8], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-5RV9F.tmp\gentlemjmp_ieu.exe, In Quarantäne, [27cb8d514743db5b4619850f20e602fe], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-6B800.tmp\gentlemjmp_ieu.exe, In Quarantäne, [da18e2fc692140f60c53abe9cb3b9b65], 
PUP.Optional.Infonaut.A, C:\Users\Felix\AppData\Local\Temp\is-7BT45.tmp\infonaut.exe, In Quarantäne, [2bc7a03eb2d860d6a495751f699da65a], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-7S0M4.tmp\gentlemjmp_ieu.exe, In Quarantäne, [2ac8637b0c7ec5714a158c08b0562cd4], 
PUP.Optional.Infonaut.A, C:\Users\Felix\AppData\Local\Temp\is-82N0O.tmp\infonaut.exe, In Quarantäne, [6d85419d8802be782118e3b116f0e11f], 
PUP.Optional.SpeedItUp.A, C:\Users\Felix\AppData\Local\Temp\is-BQC10.tmp\package_speeditup_installer_multilang.exe, In Quarantäne, [8e6435a94545df574848246fad592fd1], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\3e07d81a-918d-4f2d-89df-687bbe1ee1bb\games desktop.exe, In Quarantäne, [08eaab335c2efa3cc54bad7631d1c53b], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CI0L1.tmp\gentlemjmp_ieu.exe, In Quarantäne, [8a68a7373e4c9d99322d464e828452ae], 
PUP.Optional.SystemNotifier.A, C:\Users\Felix\AppData\Local\Temp\e145a5ab-1e7e-40e0-95bc-0e62072da68f\mini_installer.exe, In Quarantäne, [ac46419dbbcf2115f739ddb549bdfd03], 
PUP.Optional.VeriBrowse.A, C:\Users\Felix\AppData\Local\Temp\2c08fc3e-4a26-428e-aacf-43c02ec41aee\3333-2081_speedcheck.exe, In Quarantäne, [8e647569761448ee5e406bd339c955ab], 
PUP.Optional.MixVideoPlayer.A, C:\Users\Felix\AppData\Local\Temp\b0b712e2-6ca1-4f09-b70e-eac64d0fc604\mixvideoplayersetup.exe, In Quarantäne, [945efae45d2de74f85b5214eb44c2dd3], 
PUP.Optional.ModGoog, C:\Users\Felix\AppData\Local\Temp\comh.189875\GoogleCrashHandler.exe, In Quarantäne, [89693f9f5b2f73c3a5af7bd3ca38c33d], 
PUP.Optional.ModGoog, C:\Users\Felix\AppData\Local\Temp\comh.189875\GoogleUpdate.exe, In Quarantäne, [cb276b73c8c272c4e371024ce71b1ce4], 
PUP.Optional.ModGoog, C:\Users\Felix\AppData\Local\Temp\comh.189875\GoogleUpdateBroker.exe, In Quarantäne, [4ea4429c781251e5015395b97b87ce32], 
PUP.Optional.ModGoog, C:\Users\Felix\AppData\Local\Temp\comh.189875\GoogleUpdateOnDemand.exe, In Quarantäne, [07eb716deb9f0630391b50fe4db5bf41], 
PUP.Optional.ModGoog, C:\Users\Felix\AppData\Local\Temp\comh.189875\goopdate.dll, In Quarantäne, [5d95cf0f37530d293f15d27cb64c7c84], 
PUP.Optional.ModGoog, C:\Users\Felix\AppData\Local\Temp\comh.189875\goopdateres_en.dll, In Quarantäne, [678be1fd5337280e90c4480606fcc040], 
PUP.Optional.ModGoog, C:\Users\Felix\AppData\Local\Temp\comh.189875\npGoogleUpdate4.dll, In Quarantäne, [935ff5e9fe8c56e03420fb5332d07f81], 
PUP.Optional.ModGoog, C:\Users\Felix\AppData\Local\Temp\comh.189875\psmachine.dll, In Quarantäne, [a949e7f7c7c36accbe96fa540df550b0], 
PUP.Optional.ModGoog, C:\Users\Felix\AppData\Local\Temp\comh.189875\psuser.dll, In Quarantäne, [fff3e1fd642645f1b2a21935768ccd33], 
PUP.Optional.ModGoog, C:\Users\Felix\AppData\Local\Temp\comh.481717\GoogleCrashHandler.exe, In Quarantäne, [d022f6e8fc8ec96d95bf1c32e12135cb], 
PUP.Optional.ModGoog, C:\Users\Felix\AppData\Local\Temp\comh.481717\GoogleUpdate.exe, In Quarantäne, [ae44b32b5b2fee4889cb8ac4e31f29d7], 
PUP.Optional.Conduit.A, C:\Users\Felix\AppData\Local\Temp\ct3334334\ism.exe, In Quarantäne, [72801fbf3c4e37ff00efd9635ba7ae52], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_secureprotect_installer_multilang.exe, In Quarantäne, [e111fde1f991c0766f626f98966c946c], 
PUP.Optional.Conduit.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\ism.exe, In Quarantäne, [c0320ed0315981b5608f5ce0a55d8977], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_speeditup_installer_multilang.exe, In Quarantäne, [d2209d411773a294a928b84f71919e62], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_superpc_installer_multilang.exe, In Quarantäne, [d220429c107a23134c859770f210fc04], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_taplika_installer_multilang.exe, In Quarantäne, [965c2eb027638da9745dc542837fa35d], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_wajam_installer_multilang.exe, In Quarantäne, [549e528c2e5cdd59527fff08cb37c937], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_zombie_installer_multilang.exe, In Quarantäne, [985ab22c553595a11cb54cbb936f9e62], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_browsergood_installer_multilang.exe, In Quarantäne, [45ad657983079e984c85a66122e0c53b], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_BubbleSound_installer_multilang.exe, In Quarantäne, [4ba7d20c6129a096e0f19572c93903fd], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_CubepileShopperz_installer_multilang.exe, In Quarantäne, [5d95f6e81278cc6ae9e8f116f70b659b], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_istartsurfp_installer_multilang.exe, In Quarantäne, [a44eb92591f9310504cd55b2a062926e], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_mountainbike_installer_multilang.exe, In Quarantäne, [39b9c6187911eb4b30a19374fb07f30d], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_MyStartSearch_installer_multilang.exe, In Quarantäne, [8c660ed0642689adc9084eb935cdff01], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_optimizerpro_installer_multilang.exe, In Quarantäne, [4ca66d71e9a1a591458cfc0be81ae21e], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_pariente_secureprotect_bing_installer_multilang.exe, In Quarantäne, [23cff7e76a20d462e0f1bc4bbc46b24e], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_pariente_secureprotect_yahoo_installer_multilang.exe, In Quarantäne, [539fbe20226888ae438eae594ab8f30d], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_plushd_installer_multilang.exe, In Quarantäne, [cc26a13da2e833036f62729539c9aa56], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_pzombie_installer_multilang.exe, In Quarantäne, [fff3e4facebc1620ab267b8cb34f7a86], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_quickref_p_installer_multilang.exe, In Quarantäne, [dd159c425634b2847e53c245738fcb35], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_SByoutube_installer_multilang.exe, In Quarantäne, [07eba7378307b185943dd82fab57b14f], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-CUKS6.tmp\package_secprotwhite_installer_multilang.exe, In Quarantäne, [5d95a638a5e5181e518046c1669cce32], 
PUP.Optional.Infonaut.A, C:\Users\Felix\AppData\Local\Temp\is-DHUCM.tmp\infonaut.exe, In Quarantäne, [00f22db1c0cad066ea4ff3a1ef17d22e], 
Adware.EoRezo, C:\Users\Felix\AppData\Local\Temp\is-E9V06.tmp\package_SByoutube_installer_multilang.exe, In Quarantäne, [599934aa058568ce9aa9343e8979f30d], 
Adware.EoRezo, C:\Users\Felix\AppData\Local\Temp\is-E9V06.tmp\package_wajam_installer_multilang.exe, In Quarantäne, [3fb34e904a405cda0a399ad80200ba46], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-GEPJ1.tmp\gentlemjmp_ieu.exe, In Quarantäne, [975b449a5b2f9c9ac9961480ef1737c9], 
PUP.Optional.Taplika, C:\Users\Felix\AppData\Local\Temp\is-IRKR2.tmp\150.exe, In Quarantäne, [b042b6285c2e56e0563e7ff7c43ca55b], 
PUP.Optional.SpeedItUp.A, C:\Users\Felix\AppData\Local\Temp\is-IRKR2.tmp\package_speeditup_installer_multilang.exe, In Quarantäne, [ce2428b6e3a72610b4dc385b8d79bf41], 
PUP.Optional.ChartChoosing.A, C:\Users\Felix\AppData\Local\Temp\is-IRKR2.tmp\package_chartchoosing_installer_multilang.exe, In Quarantäne, [b33f736b2d5d88ae4d3b672c5caa10f0], 
PUP.Optional.CubepileShopperz.A, C:\Users\Felix\AppData\Local\Temp\is-IRKR2.tmp\package_CubepileShopperz_installer_multilang.exe, In Quarantäne, [ab473da14d3d2e0858312370f610b050], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-ITAPD.tmp\gentlemjmp_ieu.exe, In Quarantäne, [6d85da04b4d6330369f6c8ccb94d837d], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_secureprotect_installer_multilang.exe, In Quarantäne, [678b35a9bbcf23138c45f90e7a887987], 
PUP.Optional.Conduit.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\ism.exe, In Quarantäne, [757deaf4315977bf32bda39952b0e41c], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_speeditup_installer_multilang.exe, In Quarantäne, [9161726c177357df953cdf28ff0302fe], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_superpc_installer_multilang.exe, In Quarantäne, [e60c647a4c3ede5801d09572f50dd22e], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_taplika_installer_multilang.exe, In Quarantäne, [40b2409ef89243f30dc4a067e31f22de], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_wajam_installer_multilang.exe, In Quarantäne, [38bae2fc2b5ff2448849a7602ad8cf31], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_zombie_installer_multilang.exe, In Quarantäne, [df13627c8cfecf67735e0502e22047b9], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_browsergood_installer_multilang.exe, In Quarantäne, [af43a43a5238a78f2aa7ed1a5ca6817f], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_BubbleSound_installer_multilang.exe, In Quarantäne, [d81a37a7c2c8db5b29a87295df2341bf], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_CubepileShopperz_installer_multilang.exe, In Quarantäne, [38bac8166d1dcd699d346b9ce91947b9], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_cubepile_speedcheck_installer_multilang.exe, In Quarantäne, [3bb75a8457333105b918c740f90949b7], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_istartsurfp_installer_multilang.exe, In Quarantäne, [19d9dd01addd1d19b31e0bfce0227b85], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_mountainbike_installer_multilang.exe, In Quarantäne, [6c8602dc0f7b171f478acf3872906a96], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_MyStartSearch_installer_multilang.exe, In Quarantäne, [a84ad20c0e7c7fb7ffd26e99867c3bc5], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_navright_imali_installer_multilang.exe, In Quarantäne, [0ee4706e0981ca6cc110ee19887a6997], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_optimizerpro_installer_multilang.exe, In Quarantäne, [9b57924cf7932a0c488955b2a95939c7], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_pariente_secureprotect_bing_installer_multilang.exe, In Quarantäne, [b33f7b637a1052e4f1e00ff8d72bd42c], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_pariente_secureprotect_yahoo_installer_multilang.exe, In Quarantäne, [df137e60ef9b16207f524cbb669c847c], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_plushd_installer_multilang.exe, In Quarantäne, [50a2f9e5bad03cfad6fb4dbab54d5ea2], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_pzombie_installer_multilang.exe, In Quarantäne, [15dd716dc3c7ac8a17baba4d9a68ff01], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_quickref_p_installer_multilang.exe, In Quarantäne, [11e19b43563458de4e83c93eb9496d93], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_SByoutube_installer_multilang.exe, In Quarantäne, [6a880dd1d4b61521e2ef5ea910f2f30d], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-KPMD2.tmp\package_secprotwhite_installer_multilang.exe, In Quarantäne, [24cea7370a80c86e458cd433c0421de3], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-L2HK5.tmp\gentlemjmp_ieu.exe, In Quarantäne, [35bdcf0f6921ad8929368a0a49bdb24e], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\Temp\is-LR6JO.tmp\gentlemjmp_ieu.exe, In Quarantäne, [0ae8d806731792a4203f54405da9d42c], 
PUP.Optional.Iminent.A, C:\Users\Felix\AppData\Local\Temp\is-PDR18.tmp\Iminent.exe, In Quarantäne, [4da5d40a0b7fb4822ecb177d32d40ef2], 
Trojan.Ransom.ED, C:\Users\Felix\AppData\Local\Temp\Low\lKUv.dll, In Quarantäne, [9c566d713852f5411a6cf332af538080], 
PUP.Optional.IStartsurf.A, C:\Users\Felix\AppData\Local\Temp\426fd0fc-b6b0-454d-a8e1-9b835748ff30\lly_istartsurf.exe, In Quarantäne, [ac46d707a2e852e4dcfdb0e1dc2af40c], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Temp\74fdec08-954d-419e-840d-65c4fc0b02c8\setup.exe, In Quarantäne, [e909ecf2e8a21422db87f9ff34cd9769], 
PUP.Optional.TVWizard.A, C:\Users\Felix\AppData\Local\Temp\f7c95d60-85a1-46e2-95a4-229a713d4816\setup.exe, In Quarantäne, [787a17c7800ac274eadd6fed867a1ae6], 
PUP.Optional.MixVideoPlayer.A, C:\Windows\Temp\MixVideoPlayerSetup.exe, In Quarantäne, [935ff5e9890182b4261483eccc34936d], 
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsx7C2F.tmp\SPtool.dll, In Quarantäne, [48aac41a27639d99165911b4a35e22de], 
PUP.Optional.Installcore, C:\Users\Felix\Downloads\lg-smart-share.exe, In Quarantäne, [15dd6975ff8b2f074b0a3eba669f38c8], 
PUP.Optional.SearchProtect, C:\Users\Felix\AppData\Local\avabvbxvh\avabvbxvh.exe, In Quarantäne, [589a736b0189d36360db5ac9b151cb35], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\avabvbxvh\pbqrmvbub, In Quarantäne, [09e9a23ca3e7a492f47bba0b04fdca36], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\gmsd_de_283\Download\majmp_gentleeu.exe, In Quarantäne, [f00285596426e254c59a71235caa728e], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\gmsd_de_283\Download\setup_recover_rec_de_25.exe, In Quarantäne, [dd1518c6840649ed58071480c5416d93], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\gmsd_de_283\Download\setup_recover_rec_de_27.exe, In Quarantäne, [20d219c57f0b8ea8025d098bab5bf010], 
PUP.Optional.Tuto4PC.A, C:\Users\Felix\AppData\Local\gmsd_de_283\Download\setup_recover_rec_de_32.exe, In Quarantäne, [668c607e0d7d6ec85708e7adcf37916f], 
PUP.Optional.SearchProtect.A, C:\Windows\apppatch\apppatch64\VCLdr64.dll, In Quarantäne, [2fc39747ed9dc96d56191da850b18779], 
PUP.Optional.SearchProtect.A, C:\Windows\apppatch\apppatch64\VCLdr64.dll_1430753434995, In Quarantäne, [836f37a72169c076f778facb0df4dd23], 
PUP.Optional.SearchProtect.A, C:\Windows\apppatch\apppatch64\VCLdr64.dll_1432133447556, In Quarantäne, [5999e9f5c2c877bf9bd4aa1b857c7888], 
PUP.Optional.SearchProtect.A, C:\Windows\apppatch\nbin\VC32Loader.dll, In Quarantäne, [e0122db132583600a8c7d2f326db4cb4], 
PUP.Optional.AppDataFR.A, C:\Users\Felix\AppData\Roaming\appdataFr25.bin, In Quarantäne, [728028b6315970c6fcada956699a30d0], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\bgNova.html, In Quarantäne, [aa48845a38522b0b173205fc36ce7090], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\07835b83-9beb-46c5-820b-3b773124de84.dll, In Quarantäne, [aa48845a38522b0b173205fc36ce7090], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\761c5e96-144a-4f1e-95a7-50f69bddb27a.crx, In Quarantäne, [aa48845a38522b0b173205fc36ce7090], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\HQ Cinemax 1.9cV07.03\e7bf910f-7d10-4f0e-826c-f806185bc954.xpi, In Quarantäne, [aa48845a38522b0b173205fc36ce7090], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\crossbrowse.lnk, In Quarantäne, [51a1c915602af046561ec53ff410f10f], 
PUP.Optional.Crossbrowse.C, C:\Windows\System32\Tasks\Crossbrowse, In Quarantäne, [2cc647974644eb4b14614cb8709453ad], 
PUP.Optional.Crossbrowse.C, C:\Windows\Tasks\Crossbrowse.job, In Quarantäne, [f1017965f694b68085f1a85c37cdb848], 
PUP.Optional.Crossbrowse.A, C:\Users\Felix\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Crossbrowse.lnk, In Quarantäne, [b43e2faf98f249edbaea25df798b867a], 
PUP.Optional.Trovi.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\searchplugins\trovi.xml, In Quarantäne, [0be766784644e6502177f01712f29967], 
PUP.Optional.MixVideoPlayer.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp\WebBrowserMixVideoPlayer.lnk, In Quarantäne, [8171fce2a3e760d6dbf8f414ed173dc3], 
PUP.Optional.MixVideoPlayer.A, C:\Users\Felix\AppData\Local\mixvideoplayer\log.txt, In Quarantäne, [da18a43aa7e37fb7fadca86090746997], 
PUP.Optional.MixVideoPlayer.A, C:\Users\Felix\AppData\Local\mixvideoplayer\config\config.ini, In Quarantäne, [da18a43aa7e37fb7fadca86090746997], 
PUP.Optional.MixVideoPlayer.A, C:\Users\Felix\AppData\Local\mixvideoplayer\MixVideoPlayer.exe_Url_0uxwaewrhelcgghll0o5cintgfcbqdxr\1.0.0.4\user.config, In Quarantäne, [da18a43aa7e37fb7fadca86090746997], 
PUP.Optional.MixVideoPlayer.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MixVideoPlayer\Uninstall MixVideoPlayer.lnk, In Quarantäne, [8171b826a6e4ce68ddfa5dab927223dd], 
PUP.Optional.MixVideoPlayer.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MixVideoPlayer\MixVideoPlayer.lnk, In Quarantäne, [8171b826a6e4ce68ddfa5dab927223dd], 
PUP.Optional.SearchProtect.A, C:\Windows\System32\Tasks\avabvbxvh, In Quarantäne, [1dd5ca141377b086007c0704f60e31cf], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\uninstall.exe, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\ffsearch_toolbar!1.0.0.1031.xpi, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\install.data, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcp110.dll, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcr110.dll, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\searchProvider.xml, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\about.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\about_bk.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\btn.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\btn_apply.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\close.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\conf.xml, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\conf_back.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\input_bk.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\logo.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\main.xml, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\radio_1.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\radio_2.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\rigth_arrow.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\settings.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\data.html, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\indexIE.html, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\indexIE8.html, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\main.css, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\google_trends.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon128.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon16.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon48.png, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\loading.gif, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\logo32.ico, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\common.js, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\ga.js, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\jquery-1.11.0.min.js, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\jquery.autocomplete.js, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\jquery.xdomainrequest.min.js, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\js.js, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\library.js, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\xagainit-ie8.js, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\xagainit2.0.js, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\xdomain.min.js, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\en-US\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-419\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-ES\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-BE\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CA\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CH\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-FR\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-LU\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-CH\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-IT\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pl\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt-BR\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru-MO\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\tr-TR\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\vi-VI\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-CN\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-TW\messages.json, In Quarantäne, [6e844d9103872e08d6619280ae5659a7], 
PUP.Optional.Iminent.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ehhlaekjfiiojlddgndcnefflngfmhen_0.localstorage, In Quarantäne, [8072b529afdb70c6517050d551b33dc3], 
PUP.Optional.IStartSurf.A, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\istartsurf.xml, In Quarantäne, [f6fc7767c2c8f54102993debb054aa56], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\e7bf910f-7d10-4f0e-826c-f806185bc954-1-7, In Quarantäne, [9f53f6e8d6b4d36337ec1b12d72d3cc4], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\e7bf910f-7d10-4f0e-826c-f806185bc954-3, In Quarantäne, [658d6b738208b086081b3eef877d5ca4], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\e7bf910f-7d10-4f0e-826c-f806185bc954-4, In Quarantäne, [9062c618e4a6c96d9f84a885f311d32d], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\e7bf910f-7d10-4f0e-826c-f806185bc954-6, In Quarantäne, [a949de008802e45246ddba73030129d7], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\e7bf910f-7d10-4f0e-826c-f806185bc954-7, In Quarantäne, [a151e9f5d9b181b565be2ffed82cd927], 
PUP.Optional.Delta.A, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\delta-homes.xml, In Quarantäne, [5a988d514941a78f1b1175be7391bf41], 
PUP.Optional.SelectNGo.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.select-n-go00.select-n-go.com_0.localstorage, In Quarantäne, [975b23bb008a64d216c83ef935cf08f8], 
PUP.Optional.SelectNGo.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.select-n-go00.select-n-go.com_0.localstorage-journal, In Quarantäne, [6092697595f5ad897c6204337b892bd5], 
PUP.Optional.V9.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.v9.com_0.localstorage, In Quarantäne, [7f7332acc3c7d561027a9e9d5ea638c8], 
PUP.Optional.V9.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.v9.com_0.localstorage-journal, In Quarantäne, [668cf1edb4d63402473598a3aa5a7789], 
PUP.Optional.Websteroids.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_d.websteroidsapp.com_0.localstorage, In Quarantäne, [6a8898468802a0960fe8ac962bd9e41c], 
PUP.Optional.Websteroids.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_d.websteroidsapp.com_0.localstorage-journal, In Quarantäne, [02f017c7b9d1e84e966195ad32d2758b], 
PUP.Optional.ReMarkIt.A, C:\Windows\Tasks\Re-markit Update.job, In Quarantäne, [935ff7e797f341f5972b6cd824e0ca36], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\e7bf910f-7d10-4f0e-826c-f806185bc954-1-7.job, In Quarantäne, [fcf629b5c6c488ae38480e76a56037c9], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\e7bf910f-7d10-4f0e-826c-f806185bc954-3.job, In Quarantäne, [d31f7e60a5e5d660126e087cae570bf5], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\e7bf910f-7d10-4f0e-826c-f806185bc954-4.job, In Quarantäne, [678bbd21aae07fb7a1dfb8cce71ea858], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\e7bf910f-7d10-4f0e-826c-f806185bc954-6.job, In Quarantäne, [ae447e60a6e450e68cf4582cc2438a76], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\e7bf910f-7d10-4f0e-826c-f806185bc954-7.job, In Quarantäne, [dd15ecf2abdf9c9a562ac5bfd0359868], 
PUP.Optional.GlobalUpdate.A, C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job, In Quarantäne, [6c86e4faf298d660c7c89fe539cca25e], 
PUP.Optional.GlobalUpdate.A, C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore, In Quarantäne, [d31fde003951f640e0b02262c63f669a], 
PUP.Optional.GlobalUpdate.A, C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job, In Quarantäne, [31c1825c96f473c3cac753317392b34d], 
PUP.Optional.GlobalUpdate.A, C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA, In Quarantäne, [b53df1eda5e5b87edbb78400a85d9e62], 
PUP.Optional.SearchProtect, C:\Windows\apppatch\Custom\Custom64\{cf2797aa-b7ec-e311-8ed9-005056c00008}.sdb, In Quarantäne, [29c9c21c91f922148c0af59240c57e82], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_idpcbdkoekecjkbjeccbapdkpcmoiloa_0.localstorage, In Quarantäne, [1ed4cb13d7b31620e91e3555dc29f709], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_idpcbdkoekecjkbjeccbapdkpcmoiloa_0.localstorage-journal, In Quarantäne, [6e844f8f7a1074c27a8d8a00877e60a0], 
PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\5es@IGB5CG.net\content\bg.js, In Quarantäne, [737f8c528406c472a3d94a490203fe02], 
PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\5es@IGB5CG.net\bootstrap.js, In Quarantäne, [737f8c528406c472a3d94a490203fe02], 
PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\5es@IGB5CG.net\chrome.manifest, In Quarantäne, [737f8c528406c472a3d94a490203fe02], 
PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\5es@IGB5CG.net\install.rdf, In Quarantäne, [737f8c528406c472a3d94a490203fe02], 
PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\z@AvXLzV.org\content\bg.js, In Quarantäne, [11e1a836bbcf3600ed8f910210f55ca4], 
PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\z@AvXLzV.org\bootstrap.js, In Quarantäne, [11e1a836bbcf3600ed8f910210f55ca4], 
PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\z@AvXLzV.org\chrome.manifest, In Quarantäne, [11e1a836bbcf3600ed8f910210f55ca4], 
PUP.Optional.MultiPlug.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\z@AvXLzV.org\install.rdf, In Quarantäne, [11e1a836bbcf3600ed8f910210f55ca4], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\crossrider_statusbar.png, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\button1.png, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\button2.png, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\button3.png, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\button4.png, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\button5.png, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\icon128.png, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\icon16.png, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\icon24.png, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\icon48.png, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\panelarrow-up.png, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\popup.html, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\skin.css, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\skin\update.css, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome.manifest, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\install.rdf, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\2bfc61f66c21edc470f851f6877f7f4e.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\46769f088d8a5ca7d957f552bd7889ee.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\5345938d3f93ed57760f7ce85a709ff9.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\556b719984267776036f6aab2789273a.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\6b1f9fa3e593288cc575ced37adc66e9.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\a75df55f2eb2353a1f56f9031d91b63b.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\background.html, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\browser.xul, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\dialog.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\ffCoreFilesIndex.txt, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\options.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\options.xul, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\search_dialog.xul, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\8b8a15340106dbc4bf3e3f90d8c4ed91.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\04b52e49aba927abd6e84c13c7ec770d.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\07405a1cc2e8770b12e37cdfc04109f1.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\0ab339d54d43d16057414b7f2c235ffa.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\0f3ce61cd4fca8b07ee551a4df03afc7.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\2f8c482e297b4f921dee8a1d3453e884.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\595451a4009781649a8b6e389d51ceba.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\72962227cf70d95b507b78a156b12343.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\73912c1be394e1bcfe970a5ee0af7926.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\95db074f992289ade5468bf48ad490bb.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\a644849e50faff333fd1ce007699a7b9.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\e02f19efe53a27f2e539f234b4426d61.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\e18fb975a70cd38945fba550b42ee120.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\e5ba0369f95a1fb6fbfe373138b91558.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\e812087c22fd55c9b9587b8ceb55a6ba.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\api\fb4b47f5a96fdd5753555f33359603de.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\cb373a03382b78709efc2e49bb4b0495.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\114457d4f8e3998aa94dc495c8765cf6.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\2d04d45a70842d3a9d3c3bd20a20abad.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\4c5c61479540f1a2ee6df67a00d33339.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\4cc270623f90e14e068b36a62af8e5c4.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\6c1ed0c79825df083afd20a7c4f95c04.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\6dccd3a95c208d0a099eca8129138b96.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\71130efab9aa3fc43f72f48136e18180.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\99d27a74c833b723cd6fafed83fc39e7.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\c17ea5ed6f24245deba1ab43a2fba28d.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\c7a68542fbf413b043ea44c6342ad5b0.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\d087ab224d7a2fabf3ff83033515450b.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\d0cc4309b2fde82409d041e93e64d4cb.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\daf0efc2350ca080928f96835d19acdf.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\ddb60cafee09985c6cd302fe8c2bdee9.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\e10adc8da867436aa2d962338dbc43e3.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\eb8643bd76715392be6df38c6a129f6b.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\f1214a116e094f4852f0904348046984.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\f301d3f7d9c0f26ad545883eec96ecf6.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\f565dc4d472d454899576fe7b8fb580d.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\chrome\content\core\installer.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\defaults\preferences\prefs.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\manifest.xml, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins.json, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\262.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\102.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\104.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\119.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\123.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\13.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\14.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\16.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\17.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\178.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\179.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\180.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\184.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\195.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\200.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\220.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\221.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\223.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\231.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\232.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\234.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\242.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\246.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\252.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\253.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\260.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\263.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\264.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\273.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\281.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\286.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\288.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\289.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\300.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\315.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\334.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\335.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\339.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\345.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\354.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\356.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\375.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\376.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\379.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\380.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\385.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\388.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\389.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\390.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\391.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\393.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\397.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\4.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\47.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\64.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\7.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\78.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\9.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\91.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\plugins\93.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\userCode\background.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\extensionData\userCode\extension.js, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\9852e04d-7923-4f02-84e5-c1a1b9fe8c30@gmail.com\locale\en-US\translations.dtd, In Quarantäne, [ec060bd34a40b87e44393b582adba060], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\crossrider_statusbar.png, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\button1.png, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\button2.png, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\button3.png, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\button4.png, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\button5.png, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\icon128.png, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\icon16.png, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\icon24.png, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\icon48.png, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\panelarrow-up.png, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\popup.html, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\skin.css, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\skin\update.css, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome.manifest, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\install.rdf, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\0ea43de4d6b3549c15f949060d2b2e61.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\261f6138d64b6c630071146cfdeb035f.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\489826da8b0971ad9ff38580c6f0c2a4.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\5c2ef77bfb9fe225933efbf80a3fb0fd.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\82a37b2f10cf4f9099dfaff88c72571f.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\background.html, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\browser.xul, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\d1f2b163538b1486ce98cb7f29593d00.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\dialog.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\ffCoreFilesIndex.txt, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\options.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\options.xul, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\search_dialog.xul, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\95f5e21a39242e6fc3e412e65b5aa306.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\21f5a12c00cd3b763d82871db00b08cc.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\46266e9dfe6291ad9097e9eb98726d76.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\5f279e214606bc563f1eb3324ac4cd5b.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\66edc42f4f43f7fbe5a84d3810f5f589.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\6ea5a8219db79fc60df01cdb6626d520.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\76c468f415d458b3199049c739ac572d.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\7a47a676caeb26dbe76a7a27da8f8e77.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\8089f1e3fec4ba0b2e639e141b5488f9.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\9711e2bf1ef4a0491d8f4c1272c48d46.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\9998b215863dbb922f3228443e7a7637.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\aa38941cf00fc5e8ec319ac768234210.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\ca749f9e381de2d605338ba17efec556.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\d104c42ad9ccf8fa515f5b13ecf84654.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\e5bd519b5abb64ec0025c51621829a3b.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\api\f1bcedb8cea54d0e34f3aae270a17a46.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\b1584b0c93b71b476926bd8bef4c0a3d.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\0dc59c68bc796eb80fe6f4c201ccda5e.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\314cf3e75d5aeb68a18ef4dbffcb0717.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\31b2cc6c452274067e0bf4258b2d6970.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\351d57de6ad71794c043d08a11a00685.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\3b6460f409ad02fcf9f16daab40ce621.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\546b2ead3000047687fc7af9bde25d25.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\56a6c9f262584e815ae0ad47811c50f4.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\6e790db65c04d806d713965f673071b9.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\7b9ad834a6ae608dc5e14dfc46adf0b1.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\837cb60acf519b04a67416a528c057f7.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\856e9518f733eb3a5adde00953202728.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\8bce38e4a3b83633462206a951c85a00.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\9bfe863e6a8bbd1aed473b9ce7a95603.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\c761f84828902c3731ca58f64b577c29.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\ccad490f1a032f8aec64041868b333ab.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\e105a4dd340257526f5ec0c95b35f959.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\e34079fd900a151c38932b3ccf1531c3.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\eaac1a7f1a7a3a2cf4bca1c9f0fc03d9.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\eb467271bbea24ba2fc6ded8831a9a13.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\chrome\content\core\installer.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\defaults\preferences\prefs.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\manifest.xml, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins.json, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\102.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\104.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\119.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\123.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\13.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\14.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\16.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\17.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\178.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\179.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\180.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\184.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\195.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\220.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\221.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\223.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\231.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\232.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\242.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\246.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\260.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\262.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\263.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\268.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\273.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\275.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\286.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\289.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\291.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\299.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\300.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\302.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\4.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\47.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\64.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\7.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\78.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\9.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\91.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\plugins\93.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\userCode\background.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\extensionData\userCode\extension.js, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\dad2ada441be422fac3577@d1e84d4570e6419885b2032.com\locale\en-US\translations.dtd, In Quarantäne, [04eed20c02886ec828551182a065d12f], 
PUP.Optional.PerfectCoupon.A, C:\Program Files (x86)\tpeRfecttcooUpon\4CR0qHPpAi6VbU.tlb, In Quarantäne, [b240cc123357f5411603672d1aebed13], 
PUP.Optional.PerfectCoupon.A, C:\Program Files (x86)\tpeRfecttcooUpon\4CR0qHPpAi6VbU.dat, In Quarantäne, [b240cc123357f5411603672d1aebed13], 
PUP.Optional.Iminent.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\minibar@go.im.xpi, In Quarantäne, [4ea4c618f3979b9bac304c49cf36e719], 
PUP.Optional.SuperOptimizer.A, C:\ProgramData\{29efd0f5-4e5f-1d8b-29ef-fd0f54e543d5}\hqghumeaylnlf.dat, In Quarantäne, [817104dab6d46ccaf62912877f866997], 
PUP.Optional.SuperOptimizer.A, C:\ProgramData\{29efd0f5-4e5f-1d8b-29ef-fd0f54e543d5}\3f0720df6839b764, Löschen bei Neustart, [817104dab6d46ccaf62912877f866997], 
PUP.Optional.SuperOptimizer.A, C:\ProgramData\{29efd0f5-4e5f-1d8b-29ef-fd0f54e543d5}\f2fa868a4fed50b0, In Quarantäne, [817104dab6d46ccaf62912877f866997], 
PUP.Optional.SuperOptimizer.A, C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\hqghumeaylnlf.lnk, In Quarantäne, [935fd70798f276c022ff9cfd4bba0af6], 
PUP.Optional.Picexa.A, C:\Users\Felix\AppData\Roaming\Picexa Viewer\log\install.log, In Quarantäne, [8e6404da95f5c76fafe90d8da0656e92], 
PUP.Optional.Picexa.A, C:\Users\Public\Desktop\Picexa.lnk, In Quarantäne, [9d552bb36b1f5bdb0b8e0892a3621ce4], 
PUP.Optional.Picexa.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picexa\Picexa.lnk, In Quarantäne, [39b99846eaa03afc98034e4c4cb9ad53], 
PUP.Optional.Picexa.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picexa\uninstall.lnk, In Quarantäne, [39b99846eaa03afc98034e4c4cb9ad53], 
PUP.Optional.SaveInShop.A, C:\Program Files (x86)\Savinshhopp\pRsTug3lO92q5x.tlb, In Quarantäne, [0ce6b22c1377cb6bbb79acf0ec19827e], 
PUP.Optional.SaveInShop.A, C:\Program Files (x86)\Savinshhopp\pRsTug3lO92q5x.dat, In Quarantäne, [0ce6b22c1377cb6bbb79acf0ec19827e], 
PUP.Optional.BubbleSound.A, C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BubbleSound 1.0\Uninstall.lnk, In Quarantäne, [ca28c8168bff1d1911c9c5d7da2bc23e], 
PUP.Optional.3DBubbleSound.A, C:\Program Files\BubbleSound\3D BubbleSound.exe, Löschen bei Neustart, [8969af2fd3b7d85ea81e9d63689ca65a], 
PUP.Optional.WindowsMangerProtect.A, C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe, Löschen bei Neustart, [8b677965f3972610beb95cb9b64e718f], 
PUP.Optional.Picexa.A, C:\Program Files (x86)\Picexa\picexasvc.exe, Löschen bei Neustart, [5a984e9090faf64035692971887d7c84], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_DUMP_P11020_T3576_D2015_05_23_T20_55_45.dmp, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_DUMP_P12592_T5648_D2015_05_24_T12_26_55.dmp, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_DUMP_P3596_T12100_D2015_05_24_T04_48_55.dmp, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_DUMP_P5344_T13260_D2015_05_24_T20_04_54.dmp, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_DUMP_P8172_T6264_D2015_05_23_T21_10_54.dmp, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_DUMP_P8584_T1088_D2015_05_22_T19_43_55.dmp, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_REPORT_P11020_T3576_D2015_05_23_T20_55_45.txt, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_REPORT_P12592_T5648_D2015_05_24_T12_26_55.txt, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_REPORT_P3596_T12100_D2015_05_24_T04_48_55.txt, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_REPORT_P5344_T13260_D2015_05_24_T20_04_54.txt, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_REPORT_P8172_T6264_D2015_05_23_T21_10_54.txt, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\CRASH_REPORT_P8584_T1088_D2015_05_22_T19_43_55.txt, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\rep\UserRepository.dat, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\SearchProtect\rep\UserSettings.dat, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], 
PUP.Optional.SearchProtect.A, C:\Users\Felix\AppData\Local\SearchProtect\UI\rep\UIRepository.dat, In Quarantäne, [668c439bdeacbb7bd0243ca019ea22de], 
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update\conf, In Quarantäne, [62903ba33d4d51e5f3ca9648e122cf31], 
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update\update.exe, In Quarantäne, [62903ba33d4d51e5f3ca9648e122cf31], 
PUP.Optional.GlobalUpdate.A, C:\Users\Felix\AppData\Local\Temp\comh.189875\GoogleUpdateHelper.msi, In Quarantäne, [2ec4aa34f298171ff4062bb4976c06fa], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\473.json, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\MessageBox.xml, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\un.ini, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\uninstallDlg2.xml, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\UninstallManager.exe, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\bg.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\bg1.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\bk_shadow.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\button.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\button1.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\checkbox.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\checkbox_select.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\checked.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\close.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\loading_bg.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\loading_light.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\min.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb],
         
__________________
__________________

Alt 08.07.2015, 18:51   #4
kuhlambo12
 
Windows 8 & Windows 7 Laptop beide stark Adware verseucht - Standard

Windows 8 & Windows 7 Laptop beide stark Adware verseucht



Code:
ATTFilter
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\scrollbar.bmp, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\Thumbs.db, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\unchecked.png, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\code\code1.jpg, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\code\code2.jpg, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\code\code3.jpg, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\code\code4.jpg, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\code\code5.jpg, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\code\code6.jpg, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.IStartSurf.A, C:\Users\Felix\AppData\Roaming\istartsurf\images\code\Thumbs.db, In Quarantäne, [0ee4f0ee6129b48290aeb132c24145bb], 
PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\a.db, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], 
PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\b.db, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], 
PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\b.res, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], 
PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\c1.res, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], 
PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\c1_64.res, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], 
PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\c2.arc, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], 
PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\c3.res, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], 
PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\c4.arc, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], 
PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\i.arc, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], 
PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\Sqlite3.dll, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], 
PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\tb32.arc, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], 
PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\tb64.arc, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], 
PUP.Optional.SpeedCheck.A, C:\Program Files (x86)\ver3SpeedCheck\temp\u.arc, In Quarantäne, [ee046975c5c5a5910c028365bc47d927], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\idpcbdkoekecjkbjeccbapdkpcmoiloa\000271.ldb, In Quarantäne, [ad4511cd850548eef09a55967d8651af], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\idpcbdkoekecjkbjeccbapdkpcmoiloa\000273.ldb, In Quarantäne, [ad4511cd850548eef09a55967d8651af], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\idpcbdkoekecjkbjeccbapdkpcmoiloa\000280.ldb, In Quarantäne, [ad4511cd850548eef09a55967d8651af], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\idpcbdkoekecjkbjeccbapdkpcmoiloa\000281.log, In Quarantäne, [ad4511cd850548eef09a55967d8651af], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\idpcbdkoekecjkbjeccbapdkpcmoiloa\CURRENT, In Quarantäne, [ad4511cd850548eef09a55967d8651af], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\idpcbdkoekecjkbjeccbapdkpcmoiloa\LOCK, In Quarantäne, [ad4511cd850548eef09a55967d8651af], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\idpcbdkoekecjkbjeccbapdkpcmoiloa\LOG, In Quarantäne, [ad4511cd850548eef09a55967d8651af], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\idpcbdkoekecjkbjeccbapdkpcmoiloa\LOG.old, In Quarantäne, [ad4511cd850548eef09a55967d8651af], 
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\idpcbdkoekecjkbjeccbapdkpcmoiloa\MANIFEST-000279, In Quarantäne, [ad4511cd850548eef09a55967d8651af], 
PUP.Optional.TicTaCoupon.A, C:\Program Files (x86)\TiCTaCoupon\nQuLHdvmUIMBjs.dat, In Quarantäne, [16dc5c827f0b26105ccb23ca976cec14], 
PUP.Optional.TicTaCoupon.A, C:\Program Files (x86)\TiCTaCoupon\nQuLHdvmUIMBjs.tlb, In Quarantäne, [16dc5c827f0b26105ccb23ca976cec14], 
PUP.Optional.GamesDesktop.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GAMESDESKTOP\GamesDesktop.lnk, In Quarantäne, [f7fb09d5cbbfaa8c2d94ec03e71c1fe1], 
PUP.Optional.GamesDesktop.A, C:\Users\Felix\AppData\Local\gmsd_de_283\upgmsd_de_283.cyl, In Quarantäne, [5a98b727484246f02d9533bcf50e5ca4], 
PUP.Optional.GamesDesktop.A, C:\Users\Felix\AppData\Local\gmsd_de_283\user_profil.cyp, In Quarantäne, [5a98b727484246f02d9533bcf50e5ca4], 
PUP.Optional.GamesDesktop.A, C:\Users\Felix\AppData\Local\gmsd_de_283\Download\setup_recover_rec_de_17.exe, In Quarantäne, [5a98b727484246f02d9533bcf50e5ca4], 
PUP.Optional.GamesDesktop.A, C:\Users\Felix\AppData\Local\gmsd_de_283\gmsd_de_283\1.20\cnf.cyl, Löschen bei Neustart, [5a98b727484246f02d9533bcf50e5ca4], 
PUP.Optional.GamesDesktop.A, C:\Users\Felix\AppData\Local\gmsd_de_283\gmsd_de_283\1.20\eorezo.cyl, Löschen bei Neustart, [5a98b727484246f02d9533bcf50e5ca4], 
PUP.Optional.GamesDesktop.A, C:\Program Files (x86)\gmsd_de_283\unins000.dat, In Quarantäne, [1bd7a23cabdf96a04c77e906d03346ba], 
PUP.Optional.GamesDesktop.A, C:\Program Files (x86)\gmsd_de_283\unins000.exe, In Quarantäne, [1bd7a23cabdf96a04c77e906d03346ba], 
PUP.Optional.GamesDesktop.A, C:\Program Files (x86)\gmsd_de_283\unins000.msg, In Quarantäne, [1bd7a23cabdf96a04c77e906d03346ba], 
PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate\update\conf, In Quarantäne, [e909d806f39774c215fbde160ff4d52b], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome.manifest, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\install.rdf, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\index.html, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\quick_start.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\quick_start.xul, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\include\speed_dial.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\include\tools\about_blank_hook.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\include\tools\misc.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\include\tools\popup_image_helper.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\include\tools\urlrequestor.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\js.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\lib\doT.min.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\lib\jquery-2.1.0.min.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\lib\jquery.autocomplete.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\module\hotSearch.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\module\mostgrid.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\module\search.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\module\stat.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\pack\common.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\pack\ga.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\content\js\pack\xagainit.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\en\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\en-US\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\es\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\es-419\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\fr\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\fr-BE\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\fr-CA\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\fr-CH\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\fr-LU\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\it\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\it-CH\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\pl\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\pt-BR\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\ru\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\ru-MO\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\tr\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\vi\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\zh-CN\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\locale\zh-TW\locale.properties, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\skin\default_logo.png, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\skin\googlelogo.png, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\skin\google_trends.png, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\skin\icon.png, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\skin\loading.gif, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\skin\logo.png, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\skin\newtab.ico, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\skin\simple.css, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\chrome\skin\style.css, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\defaults\preferences\fvd.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\defaults\preferences\preferences.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\modules\addonmanager.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\modules\aes.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\modules\config.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\modules\dialogs.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\modules\last_tab.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\modules\misc.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\modules\properties.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\modules\remoterequest.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\modules\restoreprefs.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.IStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\extensions\istart_ffnt@gmail.com\modules\settings.js, In Quarantäne, [b33fbf1fcfbbc076533ca3552cd7fa06], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\icudtl.dat, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\chrome.dll, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\chrome_100_percent.pak, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\chrome_child.dll, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\d3dcompiler_46.dll, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\ffmpegsumo.dll, In Quarantäne, [fcf65985d0bab18568cd48b28182f709], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\libegl.dll, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\libglesv2.dll, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\pdf.dll, In Quarantäne, [fcf65985d0bab18568cd48b28182f709], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\resources.pak, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], 
PUP.Optional.Crossbrowse.C, C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\39.5.2171.95\Locales\de.pak, Löschen bei Neustart, [fcf65985d0bab18568cd48b28182f709], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\chrome.dat, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\First Run, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Local State, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\lockfile, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Bookmarks, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Bookmarks.bak, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cookies, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cookies-journal, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Current Session, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Current Tabs, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Favicons, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Favicons-journal, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Google Profile.ico, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\History, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\History-journal, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Last Session, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Last Tabs, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Login Data, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Login Data-journal, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Network Action Predictor, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Network Action Predictor-journal, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Origin Bound Certs, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Origin Bound Certs-journal, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Preferences, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\README, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Secure Preferences, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Shortcuts, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Shortcuts-journal, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Top Sites, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Top Sites-journal, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\TransportSecurity, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Visited Links, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Web Data, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Web Data-journal, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\data_0, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\data_1, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\data_2, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\data_3, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\f_000001, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\f_000002, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\f_000003, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\f_000004, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Cache\index, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension Rules\000009.log, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension Rules\CURRENT, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension Rules\LOCK, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension Rules\LOG, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension Rules\LOG.old, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension Rules\MANIFEST-000008, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension State\000005.ldb, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension State\000008.ldb, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension State\000011.ldb, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension State\000012.log, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension State\CURRENT, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension State\LOCK, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension State\LOG, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension State\LOG.old, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extension State\MANIFEST-000010, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\craw_background.js, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\craw_window.js, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\manifest.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\css\craw_window.css, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\html\craw_window.html, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\flapper.gif, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\icon_128.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\icon_16.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\topbar_floating_button.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\topbar_floating_button_close.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\topbar_floating_button_hover.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\topbar_floating_button_maximize.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\images\topbar_floating_button_pressed.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\bg\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ca\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\cs\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\da\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\de\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\el\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\en\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\en_GB\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\es\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\es_419\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\et\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fi\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fil\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\fr\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hi\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hr\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\hu\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\id\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\it\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ja\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ko\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\lt\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\lv\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\nb\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\nl\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pl\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pt_BR\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\pt_PT\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ro\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\ru\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sk\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sl\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sr\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\sv\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\th\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\tr\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\uk\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\vi\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\zh_CN\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_locales\zh_TW\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.0.0_0\_metadata\verified_contents.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\craw_background.js, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\craw_window.js, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\manifest.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\css\craw_window.css, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\html\craw_window.html, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\flapper.gif, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\icon_128.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\icon_16.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\topbar_floating_button.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\topbar_floating_button_close.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\topbar_floating_button_hover.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\topbar_floating_button_maximize.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\topbar_floating_button_pressed.png, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\bg\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ca\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\cs\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\da\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\de\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\el\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\en\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\en_GB\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\es\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\es_419\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\et\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\fi\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\fil\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\fr\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\hi\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\hr\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\hu\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\id\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\it\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ja\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ko\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\lt\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\lv\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\nb\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\nl\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\pl\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\pt_BR\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\pt_PT\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ro\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ru\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\sk\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\sl\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\sr\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\sv\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\th\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\tr\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\uk\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\vi\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\zh_CN\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\zh_TW\messages.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_metadata\verified_contents.json, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\GPUCache\data_0, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\GPUCache\data_1, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\GPUCache\data_2, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\GPUCache\data_3, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\GPUCache\index, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\JumpListIcons\2BDC.tmp, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\JumpListIcons\2BED.tmp, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\JumpListIconsOld\B6AA.tmp, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\JumpListIconsOld\B6BB.tmp, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\000005.ldb, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\000008.ldb, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\000011.ldb, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\000012.log, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\CURRENT, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\LOCK, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\LOG, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\LOG.old, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\MANIFEST-000010, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Storage\chrome-extension_pafkbggdmjlpgkdkcbjmhmfcdpncadgh_0.localstorage, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Local Storage\chrome-extension_pafkbggdmjlpgkdkcbjmhmfcdpncadgh_0.localstorage-journal, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Session Storage\000005.ldb, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Session Storage\000008.ldb, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Session Storage\000011.ldb, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Session Storage\000012.log, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Session Storage\CURRENT, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Session Storage\LOCK, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Session Storage\LOG, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Session Storage\LOG.old, In Quarantäne, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\Users\Felix\AppData\Local\Crossbrowse\Crossbrowse\User Data\Default\Session Storage\MANIFEST-000010, Löschen bei Neustart, [32c010ce8901e4523502629813f004fc], 
PUP.Optional.Crossbrowse.C, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossbrowse\Crossbrowse.lnk, In Quarantäne, [20d2c7174b3f082ef048a8520ff40ff1], 
PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\a.db, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], 
PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\b.db, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], 
PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\b.res, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], 
PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\c1.res, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], 
PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\c1_64.res, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], 
PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\c3.res, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], 
PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\c4.arc, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], 
PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\i.arc, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], 
PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\Sqlite3.dll, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], 
PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\tb32.arc, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], 
PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\tb64.arc, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], 
PUP.Optional.Speedit.A, C:\Program Files (x86)\version92SpeeditUp\temp\u.arc, In Quarantäne, [3eb4a539acde15214d107a800cf738c8], 
PUP.Optional.BubbleSound.A, C:\Program Files\BubbleSound\backup_Realtek High Definition Audio_Lautsprecher.reg, In Quarantäne, [856dad313d4d3bfb1e6da35a847f6c94], 
PUP.Optional.BubbleSound.A, C:\Program Files\BubbleSound\BubbleSound.dll, Löschen bei Neustart, [856dad313d4d3bfb1e6da35a847f6c94], 
PUP.Optional.BubbleSound.A, C:\Program Files\BubbleSound\silentinstaller.exe, In Quarantäne, [856dad313d4d3bfb1e6da35a847f6c94], 
PUP.Optional.BubbleSound.A, C:\Program Files\BubbleSound\silentuninstaller.exe, In Quarantäne, [856dad313d4d3bfb1e6da35a847f6c94], 
PUP.Optional.BubbleSound.A, C:\Program Files\BubbleSound\Uninstall.exe, In Quarantäne, [856dad313d4d3bfb1e6da35a847f6c94], 
PUP.Optional.BubbleSound.A, C:\Program Files\BubbleSound\config\3DBubbleSound.conf, In Quarantäne, [856dad313d4d3bfb1e6da35a847f6c94], 
PUP.Optional.BubbleSound.A, C:\Program Files\BubbleSound\config\3DBubbleSound.err, In Quarantäne, [856dad313d4d3bfb1e6da35a847f6c94], 
PUP.Optional.BubbleSound.A, C:\Program Files\BubbleSound\config\3DBubbleUser.conf, In Quarantäne, [856dad313d4d3bfb1e6da35a847f6c94], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptProHelper.dll, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\bg_new3.bmp, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\bg_new4.bmp, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\cancel.bmp, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\CookiesException.txt, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\file_id.diz, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\German.ini, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\HomePage.url, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\itdownload.dll, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\OptimizerPro.chm, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\scan.gif, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\sqlite3.dll, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\StartupList.txt, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\unins000.dat, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\unins000.exe, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], 
PUP.Optional.OptimizerPro.A, C:\Program Files (x86)\Optimizer Pro 3.84\unins000.msg, In Quarantäne, [a949b826c2c82c0a7d149865b053758b], 
PUP.Optional.OptimizerPro.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2\Hilfe.lnk, In Quarantäne, [9b57de00d7b33402c6ccb94448bb7789], 
PUP.Optional.OptimizerPro.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2\Nach Updates suchen.lnk, In Quarantäne, [9b57de00d7b33402c6ccb94448bb7789], 
PUP.Optional.OptimizerPro.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2\Optimizer Pro entfernen.lnk, In Quarantäne, [9b57de00d7b33402c6ccb94448bb7789], 
PUP.Optional.OptimizerPro.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2\Optimizer Pro im Internet.lnk, In Quarantäne, [9b57de00d7b33402c6ccb94448bb7789], 
PUP.Optional.OptimizerPro.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2\Optimizer Pro.lnk, In Quarantäne, [9b57de00d7b33402c6ccb94448bb7789], 
PUP.Optional.Trovi, C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences, Gut: ("session":{"restore_on_startup":4,"startup_urls":["https://www.malwarebytes.org/restorebrowser/"]}}), Schlecht: ("session":{"restore_on_startup":4,"startup_urls":["http://www.trovi.com/?gd=&ctid=CT3330130&octid=EB_ORIGINAL_CTID&ISID=M72406C1C-94FC-4B75-BFD1-DCF538369C96&SearchSource=55&CUI=&UM=8&UP=SP23D2B5C9-FC57-4337-B50B-5A179B68F721&D=042315&SSPV=SP22230TA_sp_ch"]}}), Ersetzt,[1ed42cb2ec9edc5a2b9f3369b0569868]
PUP.Optional.QuickStart.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\prefs.js, Gut: (), Schlecht: (user_pref("browser.newtab.url", "chrome://quick_start/content/index.html");), Ersetzt,[81717d614d3d64d207ee88117b8b0ff1]
PUP.Optional.Delta.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\prefs.js, Gut: (), Schlecht: (user_pref("browser.startup.homepage", "http://www.delta-homes.com/?type=hp&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH");), Ersetzt,[678bb32b4941c5716ede15857195a55b]
PUP.Optional.CrossRider.A, C:\Users\Felix\AppData\Roaming\Mozilla\Firefox\Profiles\k9omtvtx.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.crossrider.bic", "14c38f6106d4e963a25527fbfddf5dbf");), Ersetzt,[3fb3746a4644cd69505c9307ae58a65a]

Physische Sektoren: 0
(keine bösartigen Elemente erkannt)


(end)
         
ADWCleaner:

Code:
ATTFilter
# AdwCleaner v4.207 - Bericht erstellt 08/07/2015 um 01:59:56
# Aktualisiert 21/06/2015 von Xplode
# Datenbank : 2015-07-05.2 [Server]
# Betriebssystem : Windows 8.1  (x64)
# Benutzername : Felix - FELIX
# Gestarted von : C:\Users\Felix\Desktop\AdwCleaner_4.207.exe
# Option : Löschen

***** [ Dienste ] *****

[#] Dienst Gelöscht : a4b494b4

***** [ Dateien / Ordner ] *****

Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PepperZip
Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue
Ordner Gelöscht : C:\Program Files (x86)\Picexa
Ordner Gelöscht : C:\Program Files (x86)\FineDiealSoFt
Ordner Gelöscht : C:\Program Files (x86)\TicTaCooUpon
Ordner Gelöscht : C:\Program Files (x86)\TicTaCoupone
Ordner Gelöscht : C:\Program Files (x86)\MixVideoPlayer
Ordner Gelöscht : C:\WINDOWS\SysWOW64\config\systemprofile\AppData\Local\SearchProtect
Ordner Gelöscht : C:\WINDOWS\SysWOW64\config\systemprofile\AppData\Local\BrowserWeb
Ordner Gelöscht : C:\Users\Felix\AppData\Local\globalUpdate
Ordner Gelöscht : C:\Users\Felix\AppData\Roaming\Uniblue
Ordner Gelöscht : C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PepperZip
Datei Gelöscht : C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ifohbjbgfchkkfhphahclmkpgejiplfo_0.localstorage-journal
Datei Gelöscht : C:\END
Datei Gelöscht : C:\WINDOWS\AppPatch\Custom\{8a4d5a43-c64a-45ab-bdf4-804fe18ceafd}.sdb
Datei Gelöscht : C:\Users\Felix\AppData\Roaming\AMIILI
Datei Gelöscht : C:\Users\Felix\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\PC-Mechanic.lnk
Datei Gelöscht : C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.nationzoom.com_0.localstorage
Datei Gelöscht : C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.nationzoom.com_0.localstorage-journal

***** [ Geplante Tasks ] *****

Task Gelöscht : Optimizer Pro Schedule
Task Gelöscht : PC-Mechanic Maintenance
Task Gelöscht : PC-Mechanic Startup
Task Gelöscht : PC-Mechanic Subscription

***** [ Verknüpfungen ] *****

Verknüpfung Desinfiziert : C:\Users\Public\Desktop\Mozilla Firefox.lnk
Verknüpfung Desinfiziert : C:\Users\Felix\Desktop\iexplore.lnk
Verknüpfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
Verknüpfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk
Verknüpfung Desinfiziert : C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Verknüpfung Desinfiziert : C:\Users\Felix\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
Verknüpfung Desinfiziert : C:\Users\Felix\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Verknüpfung Desinfiziert : C:\Users\Felix\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk
Verknüpfung Desinfiziert : C:\Users\Felix\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk

***** [ Registrierungsdatenbank ] *****

Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4
Schlüssel Gelöscht : HKCU\Software\Classes\PepperZip
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\PicexaViewer.bmp
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\PicexaViewer.gif
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\PicexaViewer.jpeg
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\PicexaViewer.jpg
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\PicexaViewer.png
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\PicexaViewer.tif
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\pc-mechanic
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\PepperZip.exe
Wert Gelöscht : HKLM\SOFTWARE\Classes\.xht\OpenWithProgIDs [CRSBRWSHTML]
Wert Gelöscht : HKLM\SOFTWARE\Classes\.webp\OpenWithProgIDs [CRSBRWSHTML]
Wert Gelöscht : HKLM\SOFTWARE\Classes\.shtml\OpenWithProgIDs [CRSBRWSHTML]
Schlüssel Gelöscht : HKLM\SOFTWARE\761c5e96-144a-4f1e-95a7-50f69bddb27a
Schlüssel Gelöscht : HKLM\SOFTWARE\9c0ea3f1-d566-a363-936b-0ecb9f66d95e
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{5C176BA0-6FC0-4EBD-8ACF-24AC592506B6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{9C4EFBD5-1ADF-41E6-BE26-AF44326E30E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{A07E5BFF-B16C-4ABA-A30F-514213A945E6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{A9CAF365-EA35-45DA-BD8B-2EFA09D374AC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{03D19D4E-AADD-472C-93CF-63602AE5DC2E}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{5C176BA0-6FC0-4EBD-8ACF-24AC592506B6}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{9C4EFBD5-1ADF-41E6-BE26-AF44326E30E4}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{A07E5BFF-B16C-4ABA-A30F-514213A945E6}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{00000000-BA82-4612-BE43-95B8B482C269}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C58D664A-3DBC-4925-AE74-0382007DF113}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}
Schlüssel Gelöscht : HKCU\Software\GlobalUpdate
Schlüssel Gelöscht : HKCU\Software\InstalledBrowserExtensions
Schlüssel Gelöscht : HKCU\Software\PepperZip
Schlüssel Gelöscht : HKCU\Software\Tutorials
Schlüssel Gelöscht : HKCU\Software\Wnkey
Schlüssel Gelöscht : HKCU\Software\ClientConnect
Schlüssel Gelöscht : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Schlüssel Gelöscht : HKLM\SOFTWARE\GlobalUpdate
Schlüssel Gelöscht : HKLM\SOFTWARE\hdcode
Schlüssel Gelöscht : HKLM\SOFTWARE\InstalledBrowserExtensions
Schlüssel Gelöscht : HKLM\SOFTWARE\SupDp
Schlüssel Gelöscht : HKLM\SOFTWARE\Uniblue
Schlüssel Gelöscht : HKLM\SOFTWARE\MixVideoPlayer
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PepperZip
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\TVWizard
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1F88FC5D-4D46-448A-AF59-7061FFC6ABBF}_is1
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Assets Manager
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MixVideoPlayer
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\LolliScan
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Picexa
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\BubbleSound
Daten Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SearchProtect\SearchProtect\bin\VC32Loader.dll
Daten Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SearchProtect\SearchProtect\bin\VC64Loader.dll
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Installer\Features\93BAD29AC2E44034A96BCB446EB8552E
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Installer\Products\93BAD29AC2E44034A96BCB446EB8552E
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\93BAD29AC2E44034A96BCB446EB8552E
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\delta-homes.com
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\istartsurf.com
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\v9.com
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.delta-homes.com
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.istartsurf.com
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.v9.com

***** [ Internetbrowser ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Mozilla Firefox v27.0.1 (de)

[k9omtvtx.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.5WG8cDbX0ynuoutI.scode", "(function(){try{if(window.location.href.indexOf(\"rHYEqjrErjnFqjrGqTa9rTg5rE\")>-1){return;}}catch(e){}try{var d=[[\"www.ewoss.com\",\"livewebcams.xyz\"[...]
[k9omtvtx.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.JeywMvGpWdNS99qI.scode", "(function(){try{if(window.location.href.indexOf(\"rHYEqjrErjnFqjrGqTa9rTg5rE\")>-1){return;}}catch(e){}try{var d=[[\"www.ewoss.com\",\"livewebcams.xyz\"[...]
[k9omtvtx.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.a9852e04d79234f0284e5c1a1b9fe8c30gmailcom71381.71381.cookie.previous_page.value", "%22hxxp%3A//www.delta-homes.com/%3Ftype%3Dsc%26ts%3D1432145680%26z%3Dd9753fd62bae21669a640dcg6z[...]
[k9omtvtx.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.a9852e04d79234f0284e5c1a1b9fe8c30gmailcom71381.71381.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2C%22deal[...]
[k9omtvtx.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.adad2ada441be422fac3577d1e84d4570e6419885b2032com61994.61994.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%2[...]
[k9omtvtx.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.enabledAddons", "istart_ffnt%40gmail.com:5.3.4,fireml%40sirma.bg:1008.21.586,minibar%40go.im:9.11.1.2,quick_searchff%40gmail.com:5.4.13,9852e04d-7923-4f02-84e5-c1a1b9fe8c30%40gma[...]
[k9omtvtx.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.quick_start.enable_search1", false);
[k9omtvtx.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false);
[k9omtvtx.default\prefs.js] - Zeile Gelöscht : user_pref("iminent.cifs", "1");
[k9omtvtx.default\prefs.js] - Zeile Gelöscht : user_pref("iminent.version", "9.11.1.2");
[k9omtvtx.default\prefs.js] - Zeile Gelöscht : user_pref("iminent.versioning", "{\"CurrentVersion\":\"9.11.1.2\",\"InstallEventCTime\":1436309353939}");

-\\ Google Chrome v43.0.2357.132

[C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3330130&octid=EB_ORIGINAL_CTID&ISID=M72406C1C-94FC-4B75-BFD1-DCF538369C96&SearchSource=58&CUI=&UM=8&UP=SP23D2B5C9-FC57-4337-B50B-5A179B68F721&q={searchTerms}&D=042315&SSPV=SP22230TA_sp_ch
[C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Gelöscht [Homepage] : hxxp://www.delta-homes.com/?type=hp&ts=1432145680&z=d9753fd62bae21669a640dcg6zfc8oegez6wdq3b6g&from=wpm05203&uid=ST500LT012-1DG142_S3P10EBHXXXXS3P10EBH

*************************

AdwCleaner[R0].txt - [28653 Bytes] - [05/12/2014 13:55:55]
AdwCleaner[R1].txt - [14199 Bytes] - [08/07/2015 01:58:23]
AdwCleaner[S0].txt - [27409 Bytes] - [05/12/2014 14:00:47]
AdwCleaner[S1].txt - [13876 Bytes] - [08/07/2015 01:59:56]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [13936  Bytes] ##########
         
__________________
Beste Grüße,

Kuhlambo12

Alt 08.07.2015, 19:01   #5
kuhlambo12
 
Windows 8 & Windows 7 Laptop beide stark Adware verseucht - Standard

Windows 8 & Windows 7 Laptop beide stark Adware verseucht



JRT:
Code:
ATTFilter
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 7.3.5 (07.07.2015:2)
OS: Windows 8.1 x64
Ran by Felix on 08.07.2015 at  2:05:06,86
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Tasks

Successfully deleted: [Task] C:\WINDOWS\system32\tasks\PCDEventLauncherTask
Successfully deleted: [Task] C:\WINDOWS\system32\tasks\PCDoctorBackgroundMonitorTask



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Eventlog\Application\Update Mega Browse



~~~ Files

Successfully deleted: [File] C:\Users\Felix\appdata\local\google\chrome\user data\default\local storage\chrome-extension_ogminpmldncgcmokldnmmapddoccmhfl_0.localstorage
Successfully deleted: [File] C:\Users\Felix\appdata\local\google\chrome\user data\default\local storage\chrome-extension_ogminpmldncgcmokldnmmapddoccmhfl_0.localstorage-journal
Successfully deleted: [File] C:\Users\Felix\appdata\local\google\chrome\user data\default\local storage\hxxps_www.superfish.com_0.localstorage
Successfully deleted: [File] C:\Users\Felix\appdata\local\google\chrome\user data\default\local storage\hxxps_www.superfish.com_0.localstorage-journal



~~~ Folders

Successfully deleted: [Folder] C:\ProgramData\16031212816591746667
Successfully deleted: [Folder] C:\ProgramData\88e93e1b614f44179b9b054e7f8932e6



~~~ FireFox

Successfully deleted the following from C:\Users\Felix\AppData\Roaming\mozilla\firefox\profiles\k9omtvtx.default\prefs.js

user_pref(browser.search.defaultenginename, delta-homes);
user_pref(browser.search.selectedEngine, delta-homes);
Emptied folder: C:\Users\Felix\AppData\Roaming\mozilla\firefox\profiles\k9omtvtx.default\minidumps [6 files]



~~~ Chrome


[C:\Users\Felix\appdata\local\Google\Chrome\User Data\Default\Preferences] - default search provider reset

[C:\Users\Felix\appdata\local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted:

[C:\Users\Felix\appdata\local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset

[C:\Users\Felix\appdata\local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted:
[
  ogminpmldncgcmokldnmmapddoccmhfl
]





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 08.07.2015 at  2:08:40,64
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
         
FRST:


FRST Logfile:

FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:05-07-2015
Ran by Felix (administrator) on FELIX on 08-07-2015 19:57:47
Running from C:\Users\Felix\Desktop
Loaded Profiles: Felix (Available Profiles: Felix)
Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel) C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(SoftThinks SAS) C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Spotify Ltd) C:\Users\Felix\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\csisyncclient.exe
(PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssist\uaclauncher.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9654.17044_x64__8wekyb3d8bbwe\glcnd.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7192792 2013-07-06] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-07-05] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_PushButton] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-07-05] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-30] (Intel Corporation)
HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [457616 2014-10-03] ()
HKLM\...\Run: [HotKeysCmds] => "C:\Windows\system32\hkcmd.exe"
HKLM\...\Run: [Persistence] => "C:\Windows\system32\igfxpers.exe"
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
HKLM\...\Run: [QuickSet] => c:\Program Files\Dell\QuickSet\QuickSet.exe [3760456 2013-04-23] (Dell Inc.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2780400 2013-09-06] (Synaptics Incorporated)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-04-07] (Apple Inc.)
HKLM-x32\...\Run: [MetroTileShortcut] => "C:\Program Files\McAfeeAntiTheft\2.1.170.2\McATUIHost.exe" /IMAT_SHORTCUTS
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2015-03-20] (Apple Inc.)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKLM\...\Policies\Explorer: [TaskbarNoNotification] 0
HKLM\...\Policies\Explorer: [HideSCAHealth] 0
HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Run: [Spotify Web Helper] => C:\Users\Felix\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2023480 2015-07-08] (Spotify Ltd)
HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Run: [OneDrive] => C:\Users\Felix\AppData\Local\Microsoft\OneDrive\OneDrive.exe [382664 2015-05-22] (Microsoft Corporation)
HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Policies\Explorer: [TaskbarNoNotification] 0
HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Policies\Explorer: [HideSCAHealth] 0
HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Policies\Explorer: [NoFolderOptions] 0
HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Policies\Explorer: [NoControlPanel] 0
AppInit_DLLs-x32: C:\WINDOWS\SysWOW64\nvinit.dll => C:\WINDOWS\SysWOW64\nvinit.dll [141336 2013-12-18] (NVIDIA Corporation)
Startup: C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2013-12-24]
ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
ShellIconOverlayIdentifiers: [DBARFileBackuped] -> {831cebdd-6baf-4432-be76-9e0989c14aef} => C:\WINDOWS\system32\mscoree.dll [2013-08-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [DBARFileNotBackuped] -> {275e4fd7-21ef-45cf-a836-832e5d2cc1b3} => C:\WINDOWS\system32\mscoree.dll [2013-08-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-05-19] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-05-28] (Microsoft Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-03-17] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{5D15FC0D-6CAB-4030-91AE-005F1D6C46C7}: [DhcpNameServer] 172.4.1.171
Tcpip\..\Interfaces\{9F1B649E-8A56-4D77-BC37-3CF394F922D5}: [DhcpNameServer] 192.168.178.1
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_70.dll [2014-03-03] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll [2014-03-03] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.29 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-06-01] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-06-01] (Intel Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2013-12-25] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2013-10-23] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2013-10-23] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-07-08] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-07-08] (Google Inc.)
FF HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff
FF Extension: Download videos and MP3s from YouTube - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff [2014-04-04]
StartMenuInternet: FIREFOX.EXE - firefox.exe

Chrome: 
=======
CHR Profile: C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-07-08]
CHR Extension: (Google Docs) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-07-08]
CHR Extension: (Google Drive) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-07-08]
CHR Extension: (YouTube) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-07-08]
CHR Extension: (Adblock Plus) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-07-08]
CHR Extension: (Google Search) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-07-08]
CHR Extension: (Google Sheets) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-07-08]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-07-08]
CHR Extension: (Ghostery) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2015-07-08]
CHR Extension: (Google Wallet) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-08]
CHR Extension: (Gmail) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-07-08]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-19] (Apple Inc.)
R2 BrcmSetSecurity; C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe [101536 2013-04-16] (Intel)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2739888 2015-05-19] (Microsoft Corporation)
S2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-30] (Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [329104 2014-10-03] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; c:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-06-01] (Intel Corporation)
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [156616 2013-06-26] (Intel Corporation)
S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [174368 2014-02-28] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-06-01] (Intel Corporation)
S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273136 2013-08-28] ()
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [246488 2013-06-19] (Realtek Semiconductor)
R2 SftService; C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe [1911312 2013-08-30] (SoftThinks SAS)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-12-12] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-12-12] (Microsoft Corporation)
S2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3378416 2013-08-28] (Intel® Corporation)
S4 McMPFSvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-09-24] (Microsoft Corporation)
R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1385272 2013-04-23] (Motorola Solutions, Inc.)
R3 DellRbtn; C:\Windows\System32\drivers\DellRbtn.sys [10752 2013-01-25] (OSR Open Systems Resources, Inc.)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [115656 2013-06-03] (Intel Corporation)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99800 2013-06-01] (Intel Corporation)
R3 NETwNb64; C:\Windows\system32\DRIVERS\NETwbw02.sys [3589600 2013-09-25] (Intel Corporation)
S3 NETwNe64; C:\Windows\system32\DRIVERS\Netwew02.sys [3648480 2013-10-08] (Intel Corporation)
R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [444632 2013-09-28] (Realsil Semiconductor Corporation)
S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [30448 2013-09-06] (Synaptics Incorporated)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-09-06] (Synaptics Incorporated)
R3 ST_Accel; C:\Windows\system32\DRIVERS\ST_Accel.sys [91360 2013-04-11] (STMicroelectronics)
R3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [207768 2013-04-16] (Windows (R) Win 7 DDK provider)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-12-12] (Microsoft Corporation)
S3 PCDSRVC{3B54B31B-D06B6431-06020200}_0; \??\c:\program files\dell\supportassist\pcdsrvc_x64.pkms [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-07-08 19:23 - 2015-07-08 19:23 - 00368972 _____ C:\Users\Felix\Desktop\mbam1.txt
2015-07-08 18:31 - 2015-07-08 18:32 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\Felix\Desktop\tdsskiller.exe
2015-07-08 05:18 - 2015-07-08 05:18 - 00048348 _____ C:\Users\Felix\Desktop\Addition.txt
2015-07-08 05:17 - 2015-07-08 19:57 - 00019278 _____ C:\Users\Felix\Desktop\FRST.txt
2015-07-08 05:17 - 2015-07-08 19:57 - 00000000 ____D C:\FRST
2015-07-08 05:16 - 2015-07-08 05:17 - 02112512 _____ (Farbar) C:\Users\Felix\Desktop\FRST64.exe
2015-07-08 04:55 - 2015-07-08 04:55 - 00002273 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-07-08 04:55 - 2015-07-08 04:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-07-08 04:39 - 2015-07-08 19:44 - 00001120 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-07-08 04:39 - 2015-07-08 17:14 - 00001116 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-07-08 04:39 - 2015-07-08 04:39 - 00004092 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2015-07-08 04:39 - 2015-07-08 04:39 - 00003856 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2015-07-08 04:36 - 2015-07-08 04:36 - 00001286 _____ C:\Users\Felix\Desktop\Revo Uninstaller.lnk
2015-07-08 04:36 - 2015-07-08 04:36 - 00000000 ____D C:\Program Files (x86)\VS Revo Group
2015-07-08 04:34 - 2015-07-08 04:35 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Felix\Downloads\revosetup95.exe
2015-07-08 04:32 - 2015-07-08 04:32 - 00931408 _____ (Google Inc.) C:\Users\Felix\Downloads\ChromeSetup.exe
2015-07-08 04:19 - 2015-07-08 04:21 - 00000024 _____ C:\Users\Felix\AppData\Roaming\appdataFr25.bin
2015-07-08 02:08 - 2015-07-08 02:08 - 00002555 _____ C:\Users\Felix\Desktop\JRT.txt
2015-07-08 02:05 - 2015-07-08 02:05 - 00000207 _____ C:\WINDOWS\tweaking.com-regbackup-FELIX-Windows-8.1-(64-bit).dat
2015-07-08 02:05 - 2015-07-08 02:05 - 00000000 ____D C:\RegBackup
2015-07-08 02:03 - 2015-07-08 02:04 - 02953676 _____ (Malwarebytes Corporation) C:\Users\Felix\Desktop\JRT.exe
2015-07-08 02:01 - 2015-07-08 02:01 - 00000020 ___SH C:\Users\Felix\ntuser.ini
2015-07-08 01:58 - 2015-07-08 01:58 - 02244096 _____ C:\Users\Felix\Desktop\AdwCleaner_4.207.exe
2015-07-08 01:53 - 2015-07-08 17:35 - 00005122 _____ C:\WINDOWS\System32\Tasks\Microsoft Office 15 Sync Maintenance for FELIX-Felix Felix
2015-07-08 00:54 - 2015-07-08 19:21 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-07-08 00:54 - 2015-07-08 00:54 - 00001120 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2015-07-08 00:54 - 2015-07-08 00:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2015-07-08 00:53 - 2015-07-08 00:53 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-07-08 00:53 - 2015-07-08 00:53 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2015-07-08 00:53 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-07-08 00:53 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-07-08 00:53 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2015-06-20 16:37 - 2015-07-08 01:48 - 00000000 ____D C:\Program Files (x86)\Session Manager

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-07-08 19:00 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru
2015-07-08 18:29 - 2014-12-12 19:49 - 00833086 _____ C:\WINDOWS\WindowsUpdate.log
2015-07-08 17:18 - 2013-12-24 19:29 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3467804002-3895737877-2157059006-1001
2015-07-08 17:14 - 2014-05-11 21:46 - 00000000 ____D C:\Users\Felix\OneDrive
2015-07-08 04:55 - 2013-12-24 22:06 - 00000000 ____D C:\Users\Felix\AppData\Local\Google
2015-07-08 04:55 - 2013-12-24 22:06 - 00000000 ____D C:\Program Files (x86)\Google
2015-07-08 04:37 - 2013-12-25 12:27 - 00000000 ____D C:\Users\Felix\AppData\Roaming\Mozilla
2015-07-08 04:21 - 2013-12-04 00:25 - 00000000 ____D C:\Program Files (x86)\Dell Backup and Recovery
2015-07-08 04:13 - 2014-12-13 19:15 - 00000306 __RSH C:\ProgramData\ntuser.pol
2015-07-08 04:13 - 2014-12-12 19:51 - 00000000 ____D C:\ProgramData\NVIDIA
2015-07-08 04:13 - 2014-09-23 23:06 - 00435260 _____ C:\WINDOWS\PFRO.log
2015-07-08 04:13 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-07-08 04:13 - 2013-08-22 15:25 - 00786432 ___SH C:\WINDOWS\system32\config\BBI
2015-07-08 04:12 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Globalization
2015-07-08 02:33 - 2014-12-05 13:55 - 00000000 ____D C:\AdwCleaner
2015-07-08 02:20 - 2013-12-04 00:22 - 00000000 ____D C:\ProgramData\McAfee
2015-07-08 02:17 - 2013-12-25 14:42 - 00000000 ____D C:\Users\Felix\AppData\Roaming\Spotify
2015-07-08 02:16 - 2013-12-25 14:43 - 00000000 ____D C:\Users\Felix\AppData\Local\Spotify
2015-07-08 02:13 - 2012-07-26 10:12 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2015-07-08 02:11 - 2012-07-26 07:37 - 00000000 ____D C:\Users\Default.migrated
2015-07-08 02:01 - 2014-12-12 20:01 - 00000000 ____D C:\Users\Felix
2015-07-08 02:00 - 2013-12-24 21:30 - 00000901 _____ C:\Users\Felix\Desktop\iexplore.lnk
2015-07-08 02:00 - 2013-12-24 19:21 - 00001009 _____ C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-07-08 01:52 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\ELAM
2015-07-08 01:51 - 2014-10-03 21:55 - 00000000 ____D C:\ProgramData\06154ba7-7ceb-4959-a6bd-bf38bdec8cc6
2015-07-08 01:51 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Cursors
2015-07-08 01:48 - 2015-05-23 21:33 - 00000000 ____D C:\Program Files (x86)\Extreme User Agent Switcher
2015-07-08 01:20 - 2013-08-22 16:46 - 00307414 _____ C:\WINDOWS\setupact.log
2015-07-08 01:18 - 2013-12-24 20:51 - 00000000 ____D C:\Program Files\Microsoft Office 15
2015-06-20 15:56 - 2014-12-12 20:07 - 00000000 ____D C:\Users\Default\AppData\Roaming\IMAT
2015-06-20 15:56 - 2014-12-12 20:07 - 00000000 ____D C:\Users\Default User\AppData\Roaming\IMAT

==================== Files in the root of some directories =======

2015-07-08 04:19 - 2015-07-08 04:21 - 0000024 _____ () C:\Users\Felix\AppData\Roaming\appdataFr25.bin

Some files in TEMP:
====================
C:\Users\Felix\AppData\Local\Temp\173AE4A8-C26A-17B4-28CD-6FC766540816.dll
C:\Users\Felix\AppData\Local\Temp\173AE4A8-C26A-17B4-28CD-6FC766540816.exe
C:\Users\Felix\AppData\Local\Temp\B63AC1CC-E011-E524-BC1E-56FB4CE49953.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-07-08 05:27

==================== End of log ============================
         
--- --- ---

--- --- ---


Addition:

[CODE]
Additional
FRST Logfile:
Code:
ATTFilter
scan result of Farbar Recovery Scan Tool (x64) Version:05-07-2015
Ran by Felix at 2015-07-08 19:58:14
Running from C:\Users\Felix\Desktop
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3467804002-3895737877-2157059006-500 - Administrator - Disabled)
Felix (S-1-5-21-3467804002-3895737877-2157059006-1001 - Administrator - Enabled) => C:\Users\Felix
Gast (S-1-5-21-3467804002-3895737877-2157059006-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3467804002-3895737877-2157059006-1006 - Limited - Enabled)
UpdatusUser (S-1-5-21-3467804002-3895737877-2157059006-1004 - Limited - Enabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)


==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Flash Player 12 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 12.0.0.70 - Adobe Systems Incorporated)
Apple Application Support (32-Bit) (HKLM-x32\...\{AFA1153A-F547-409B-B837-3A0D6C5A3FEC}) (Version: 3.1.3 - Apple Inc.)
Apple Application Support (64-Bit) (HKLM\...\{D7B824DE-DA32-4772-9E5E-39C5158136A7}) (Version: 3.1.3 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{C4123106-B685-48E6-B9BD-E4F911841EB4}) (Version: 8.1.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Dell Backup and Recovery - Support Software (HKLM-x32\...\{A9668246-FB70-4103-A1E3-66C9BC2EFB49}) (Version: 1.6.0.3 - Dell Inc.)
Dell Backup and Recovery (HKLM-x32\...\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}) (Version: 1.6.0.3 - Dell Inc.)
Dell SupportAssist (HKLM\...\PC-Doctor for Windows) (Version: 1.0.6584.81 - Dell)
Dell Touchpad (HKLM\...\SynTPDeinstKey) (Version: 17.0.13.0 - Synaptics Incorporated)
Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Free YouTube to MP3 Converter version 3.12.32.327 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.32.327 - DVDVideoSoft Ltd.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.132 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.3.1520 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3960 - Intel Corporation)
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\...\{302600C1-6BDF-4FD1-1306-148929CC1385}) (Version: 3.1.1306.0354 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.2.1000 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.66956 - Intel Corporation)
Intel(R) Update Manager (HKLM-x32\...\{12914061-EB9B-4AE7-AC7E-0B8A607C7DF4}) (Version: 2.3.1338 - Intel Corporation)
Intel(R) WiDi (HKLM\...\{C605440F-2748-435F-9F29-EB1C8134856F}) (Version: 4.1.17.0 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{c9967fbd-e3c3-4ed0-992a-5b33260f2944}) (Version: 16.1.5 - Intel Corporation)
iTunes (HKLM\...\{93F2A022-6C37-48B8-B241-FFABD9F60C30}) (Version: 12.1.2.27 - Apple Inc.)
Little Fighter 2 version 2.0a (HKLM-x32\...\Little Fighter 2) (Version: version 2.0a - )
Malwarebytes Anti-Malware Version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
Microsoft Office Home and Student 2013 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 15.0.4727.1003 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\OneDriveSetup.exe) (Version: 17.3.5860.0512 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
NVIDIA 3D Vision Treiber 331.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 331.65 - NVIDIA Corporation)
NVIDIA Grafiktreiber 331.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 331.65 - NVIDIA Corporation)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4727.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4727.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4727.1003 - Microsoft Corporation) Hidden
Pflanzen gegen Zombies   (HKLM-x32\...\Pflanzen gegen Zombies) (Version:  - )
Quickset64 (HKLM\...\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 11.1.12 - Dell Inc.)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9600.21242 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6971 - Realtek Semiconductor Corp.)
Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Spotify (HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Spotify) (Version: 1.0.7.157.g2a6526f9 - Spotify AB)
ST Microelectronics 3 Axis Digital Accelerometer Solution (HKLM-x32\...\{9C24F411-9CA7-4A8A-91F3-F08A4A38EB31}) (Version: 4.11.0040 - ST Microelectronics)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3467804002-3895737877-2157059006-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)
CustomCLSID: HKU\S-1-5-21-3467804002-3895737877-2157059006-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Felix\AppData\Local\Microsoft\OneDrive\17.3.5860.0512\amd64\FileSyncApi64.dll (Microsoft Corporation)

==================== Restore Points =========================

Could not list restore points
Check "winmgmt" service or repair WMI.


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {4521731A-A841-4C4B-A807-5E73BE7500D1} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-05-19] (Microsoft Corporation)
Task: {4EF9C9A8-402C-465A-B710-F20848B49C42} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-08] (Google Inc.)
Task: {5BDE7815-F9E3-46D0-BF80-99622F015126} - System32\Tasks\EPXLYFXW => C:\ProgramData\e822a2fe7db443439f03b26cb6d6cd7d\e822a2fe7db443439f03b26cb6d6cd7d.exe <==== ATTENTION
Task: {65619EF3-177D-4758-A747-C3251E6EB807} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-08] (Google Inc.)
Task: {84603743-7D05-4FD5-AF70-349E83882C80} - System32\Tasks\SystemToolsDailyTest => uaclauncher.exe
Task: {84D0073B-845F-4B2E-A6BB-EF4725FE2993} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-02-28] ()
Task: {93CBD974-BC87-45EB-B565-19DFCF10DA8C} - \avabvbxvh No Task File <==== ATTENTION
Task: {96B43A9B-C622-4BAD-B227-DD9D458E2BE1} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {9848B2C6-CC90-40CF-B44D-8214DE6592AF} - System32\Tasks\Microsoft Office 15 Sync Maintenance for FELIX-Felix Felix => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2015-05-28] (Microsoft Corporation)
Task: {9F4EF12E-5F60-49E4-9107-45AECD7B85F9} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-02-28] ()
Task: {AD99B69F-9972-4C45-AB7B-D6E4830C6BC4} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-3467804002-3895737877-2157059006-1001 => %localappdata%\Microsoft\OneDrive\OneDrive.exe
Task: {C884F498-D39A-45AA-A7F1-FEE5B4A81B6C} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-05-19] (Microsoft Corporation)
Task: {F962640D-9321-462A-897A-F3659B792494} - System32\Tasks\{495DBA67-C3C8-4BD9-BFB1-83EFB9B894EC} => pcalua.exe -a "C:\Users\Felix\Downloads\lf2_v20a_Setup (1).exe" -d C:\Users\Felix\Downloads
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

==================== Loaded Modules (Whitelisted) ==============

2015-03-20 18:12 - 2015-03-20 18:12 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-03-20 18:12 - 2015-03-20 18:12 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2015-03-25 13:14 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2013-12-18 15:42 - 2013-12-18 15:42 - 00013088 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll
2014-12-12 19:50 - 2013-10-23 10:20 - 00102176 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2013-12-04 00:26 - 2013-08-19 11:21 - 00020256 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBROverlayIcon.dll
2013-12-04 00:26 - 2013-08-19 11:21 - 00019232 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBROverlayNotBackuped.dll
2013-12-04 00:26 - 2013-08-19 11:21 - 00035104 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBRShellExtension.dll
2014-10-03 18:36 - 2014-10-03 18:36 - 00457616 _____ () C:\WINDOWS\system32\igfxTray.exe
2013-12-03 23:59 - 2013-06-01 14:31 - 01199576 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2014-04-16 13:47 - 2015-03-17 11:16 - 00316576 _____ () C:\Program Files\Microsoft Office 15\root\office15\AppVIsvStream32.dll
2014-04-16 14:08 - 2015-03-17 11:20 - 00316576 _____ () C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\AppVIsvStream32.dll
2015-07-08 04:55 - 2015-07-07 05:49 - 01281864 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.132\libglesv2.dll
2015-07-08 04:55 - 2015-07-07 05:49 - 00080712 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.132\libegl.dll
2013-12-18 15:42 - 2013-12-18 15:42 - 00013088 _____ () C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Felix\OneDrive:ms-properties

==================== Safe Mode (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""

==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\t-online.de -> hxxps://www.t-online.de


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Felix\Pictures\Unbenannt.png
DNS Servers: 192.168.178.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{A1E5B7E9-8606-49AD-B34F-975F0DDA9AB8}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{13EA75D8-568C-4815-8EEE-EF6A70D897EE}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{948B6C26-A043-4560-BB80-8003083A1EDD}] => (Allow) C:\Program Files (x86)\Mega Browse\bin\MegaBrowse.BRT.Helper.exe
FirewallRules: [{17623C81-C18D-41C6-AB3D-8F15AB30CBBB}] => (Allow) C:\Program Files (x86)\Mega Browse\bin\MegaBrowse.BRT.Helper.exe
FirewallRules: [{81EE94CF-8448-42D3-A594-71612FB5A571}] => (Allow) C:\Program Files (x86)\Mega Browse\bin\MegaBrowse.BRT.Helper.exe
FirewallRules: [{4B905F77-B1DF-4407-BC62-562DDCE44CFE}] => (Allow) C:\Program Files (x86)\Mega Browse\bin\MegaBrowse.BRT.Helper.exe
FirewallRules: [{5A9C5AEA-D8AE-4C35-AA19-3E29BD4A51F9}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe
FirewallRules: [{F9B7ABDA-DF1B-4134-9CF0-7F3131F19067}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{7780DD21-3381-4E07-A12B-CA31728E143A}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{6955B087-15F4-402B-B4A1-99CB1ADA41A4}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{C8455B14-666E-4603-967A-73803C85A797}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{1A5A96AB-696B-4C71-A409-5C040701EAB6}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
FirewallRules: [{354E4F01-C0E0-45B0-8C06-81D2EAEDA1B2}] => (Block) C:\users\felix\appdata\roaming\spotify\spotify.exe
FirewallRules: [{E32B4203-6DF8-42EC-B36D-AADDBF198900}] => (Block) C:\users\felix\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{DB321018-25A4-4074-92E4-589DB826C996}C:\users\felix\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\felix\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{54A12C4D-FAC9-4772-917B-D93A4550A855}C:\users\felix\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\felix\appdata\roaming\spotify\spotify.exe
FirewallRules: [{9D0DC19B-BFF1-441E-A336-2F849FF1AEA2}] => (Allow) C:\Users\Felix\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
FirewallRules: [{FE27F6D6-5515-4B20-9DD9-C962F9A632B3}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{115D8B90-5C27-41D1-876A-610AFD83EE9F}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{9F66F785-2CD5-4EDA-9CAE-3EBC8160B674}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{77166172-63A0-4DF9-BB74-56C60AEBD876}] => (Allow) LPort=1900
FirewallRules: [{06513B53-10AB-47C9-A254-F3D1BA3A8987}] => (Allow) LPort=2869
FirewallRules: [{E7DF0381-7592-44EE-90FE-1164B4F0E8DB}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{19609355-2855-492A-9156-7F4B1F67086C}] => (Allow) C:\Program Files\Intel Corporation\Intel WiDi\WiDiApp.exe

==================== Faulty Device Manager Devices =============

Could not list Devices. Check "winmgmt" service or repair WMI.


==================== Event log errors: =========================

Application errors:
==================
Error: (07/08/2015 04:21:28 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: TOASTER.EXE, Version: 1.0.1.160, Zeitstempel: 0x520b3256
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.3.9600.17055, Zeitstempel: 0x532943a3
Ausnahmecode: 0xe0434352
Fehleroffset: 0x00011d4d
ID des fehlerhaften Prozesses: 0x310
Startzeit der fehlerhaften Anwendung: 0xTOASTER.EXE0
Pfad der fehlerhaften Anwendung: TOASTER.EXE1
Pfad des fehlerhaften Moduls: TOASTER.EXE2
Berichtskennung: TOASTER.EXE3
Vollständiger Name des fehlerhaften Pakets: TOASTER.EXE4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: TOASTER.EXE5

Error: (07/08/2015 04:21:27 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: TOASTER.EXE
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: System.Runtime.InteropServices.COMException
Stapel:
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
   bei System.Windows.Threading.DispatcherOperation.InvokeImpl()
   bei System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object)
   bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
   bei System.Windows.Threading.DispatcherOperation.Invoke()
   bei System.Windows.Threading.Dispatcher.ProcessQueue()
   bei System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
   bei MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
   bei MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object)
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
   bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
   bei MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)
   bei MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef)
   bei System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
   bei System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame)
   bei System.Windows.Threading.Dispatcher.Run()
   bei System.Windows.Application.RunDispatcher(System.Object)
   bei System.Windows.Application.RunInternal(System.Windows.Window)
   bei System.Windows.Application.Run(System.Windows.Window)
   bei Toaster.App.Main()

Error: (07/08/2015 04:21:27 AM) (Source: TOASTER.EXE) (EventID: 0) (User: )
Description: An Unhandled Exception occured.
Der angegebene Dienst ist kein installierter Dienst. (Ausnahme von HRESULT: 0x80070424)
   bei System.Management.ThreadDispatch.Start()
   bei System.Management.ManagementScope.Initialize()
   bei System.Management.ManagementEventWatcher.Initialize()
   bei System.Management.ManagementEventWatcher.Start()
   bei Toaster.Services.PowerManagementService.Start()
   bei Toaster.MainWindowViewModel..ctor()
   bei Toaster.App.OnStartup(StartupEventArgs e)
   bei System.Windows.Application.<.ctor>b__1(Object unused)
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs)
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(Object source, Delegate method, Object args, Int32 numArgs, Delegate catchHandler)

Error: (07/08/2015 02:42:44 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: DmiInfo.exe, Version: 1.0.0.0, Zeitstempel: 0x5273bfb9
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.3.9600.17055, Zeitstempel: 0x532943a3
Ausnahmecode: 0xe0434352
Fehleroffset: 0x00011d4d
ID des fehlerhaften Prozesses: 0xd00
Startzeit der fehlerhaften Anwendung: 0xDmiInfo.exe0
Pfad der fehlerhaften Anwendung: DmiInfo.exe1
Pfad des fehlerhaften Moduls: DmiInfo.exe2
Berichtskennung: DmiInfo.exe3
Vollständiger Name des fehlerhaften Pakets: DmiInfo.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: DmiInfo.exe5

Error: (07/08/2015 02:42:44 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: DmiInfo.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: System.Runtime.InteropServices.COMException
Stapel:
   bei System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32, IntPtr)
   bei System.Runtime.InteropServices.Marshal.ThrowExceptionForHR(Int32)
   bei System.Management.ManagementScope.InitializeGuts(System.Object)
   bei System.Management.ManagementScope.Initialize()
   bei System.Management.ManagementObject.Initialize(Boolean)
   bei System.Management.ManagementClass.GetInstances(System.Management.EnumerationOptions)
   bei System.Management.ManagementClass.GetInstances()
   bei DmiInfo.Program.GetSystemModel()
   bei DmiInfo.Program.Main(System.String[])

Error: (07/08/2015 02:28:08 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: TOASTER.EXE, Version: 1.0.1.160, Zeitstempel: 0x520b3256
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.3.9600.17055, Zeitstempel: 0x532943a3
Ausnahmecode: 0xe0434352
Fehleroffset: 0x00011d4d
ID des fehlerhaften Prozesses: 0x1370
Startzeit der fehlerhaften Anwendung: 0xTOASTER.EXE0
Pfad der fehlerhaften Anwendung: TOASTER.EXE1
Pfad des fehlerhaften Moduls: TOASTER.EXE2
Berichtskennung: TOASTER.EXE3
Vollständiger Name des fehlerhaften Pakets: TOASTER.EXE4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: TOASTER.EXE5

Error: (07/08/2015 02:28:08 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: TOASTER.EXE
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: System.Runtime.InteropServices.COMException
Stapel:
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
   bei System.Windows.Threading.DispatcherOperation.InvokeImpl()
   bei System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object)
   bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
   bei System.Windows.Threading.DispatcherOperation.Invoke()
   bei System.Windows.Threading.Dispatcher.ProcessQueue()
   bei System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
   bei MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
   bei MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object)
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
   bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
   bei MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)
   bei MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef)
   bei System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
   bei System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame)
   bei System.Windows.Threading.Dispatcher.Run()
   bei System.Windows.Application.RunDispatcher(System.Object)
   bei System.Windows.Application.RunInternal(System.Windows.Window)
   bei System.Windows.Application.Run(System.Windows.Window)
   bei Toaster.App.Main()

Error: (07/08/2015 02:28:08 AM) (Source: TOASTER.EXE) (EventID: 0) (User: )
Description: An Unhandled Exception occured.
Der angegebene Dienst ist kein installierter Dienst. (Ausnahme von HRESULT: 0x80070424)
   bei System.Management.ThreadDispatch.Start()
   bei System.Management.ManagementScope.Initialize()
   bei System.Management.ManagementEventWatcher.Initialize()
   bei System.Management.ManagementEventWatcher.Start()
   bei Toaster.Services.PowerManagementService.Start()
   bei Toaster.MainWindowViewModel..ctor()
   bei Toaster.App.OnStartup(StartupEventArgs e)
   bei System.Windows.Application.<.ctor>b__1(Object unused)
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs)
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(Object source, Delegate method, Object args, Int32 numArgs, Delegate catchHandler)

Error: (07/08/2015 02:09:42 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: TOASTER.EXE, Version: 1.0.1.160, Zeitstempel: 0x520b3256
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.3.9600.17055, Zeitstempel: 0x532943a3
Ausnahmecode: 0xe0434352
Fehleroffset: 0x00011d4d
ID des fehlerhaften Prozesses: 0x16d8
Startzeit der fehlerhaften Anwendung: 0xTOASTER.EXE0
Pfad der fehlerhaften Anwendung: TOASTER.EXE1
Pfad des fehlerhaften Moduls: TOASTER.EXE2
Berichtskennung: TOASTER.EXE3
Vollständiger Name des fehlerhaften Pakets: TOASTER.EXE4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: TOASTER.EXE5

Error: (07/08/2015 02:09:42 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: TOASTER.EXE
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: System.Runtime.InteropServices.COMException
Stapel:
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
   bei System.Windows.Threading.DispatcherOperation.InvokeImpl()
   bei System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object)
   bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
   bei System.Windows.Threading.DispatcherOperation.Invoke()
   bei System.Windows.Threading.Dispatcher.ProcessQueue()
   bei System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
   bei MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
   bei MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object)
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
   bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
   bei MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)
   bei MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef)
   bei System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
   bei System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame)
   bei System.Windows.Threading.Dispatcher.Run()
   bei System.Windows.Application.RunDispatcher(System.Object)
   bei System.Windows.Application.RunInternal(System.Windows.Window)
   bei System.Windows.Application.Run(System.Windows.Window)
   bei Toaster.App.Main()


System errors:
=============
Error: (07/08/2015 06:11:10 PM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Der Dienst "Sicherheitscenter" ist von folgendem Dienst abhängig: winmgmt. Dieser Dienst ist möglicherweise nicht installiert.

Error: (07/08/2015 05:26:48 AM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Der Dienst "Sicherheitscenter" ist von folgendem Dienst abhängig: winmgmt. Dieser Dienst ist möglicherweise nicht installiert.

Error: (07/08/2015 05:26:15 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Windows Defender-Dienst" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%577

Error: (07/08/2015 05:24:45 AM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Der Dienst "Sicherheitscenter" ist von folgendem Dienst abhängig: winmgmt. Dieser Dienst ist möglicherweise nicht installiert.

Error: (07/08/2015 05:22:44 AM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Der Dienst "Sicherheitscenter" ist von folgendem Dienst abhängig: winmgmt. Dieser Dienst ist möglicherweise nicht installiert.

Error: (07/08/2015 04:22:21 AM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Der Dienst "Sicherheitscenter" ist von folgendem Dienst abhängig: winmgmt. Dieser Dienst ist möglicherweise nicht installiert.

Error: (07/08/2015 04:15:35 AM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Der Dienst "Sicherheitscenter" ist von folgendem Dienst abhängig: winmgmt. Dieser Dienst ist möglicherweise nicht installiert.

Error: (07/08/2015 04:14:46 AM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Der Dienst "Sicherheitscenter" ist von folgendem Dienst abhängig: winmgmt. Dieser Dienst ist möglicherweise nicht installiert.

Error: (07/08/2015 04:14:34 AM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Der Dienst "Sicherheitscenter" ist von folgendem Dienst abhängig: winmgmt. Dieser Dienst ist möglicherweise nicht installiert.

Error: (07/08/2015 04:13:48 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "Intel(R) PROSet/Wireless Zero Configuration Service" wurde mit folgendem Fehler beendet: 
%%2147770990


Microsoft Office:
=========================
Error: (07/08/2015 04:21:28 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: TOASTER.EXE1.0.1.160520b3256KERNELBASE.dll6.3.9600.17055532943a3e043435200011d4d31001d0b924b52b14a2C:\Program Files (x86)\Dell Backup and Recovery\TOASTER.EXEC:\WINDOWS\SYSTEM32\KERNELBASE.dll09642117-2518-11e5-be9a-fcf8ae205b83

Error: (07/08/2015 04:21:27 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: TOASTER.EXE
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: System.Runtime.InteropServices.COMException
Stapel:
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
   bei System.Windows.Threading.DispatcherOperation.InvokeImpl()
   bei System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object)
   bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
   bei System.Windows.Threading.DispatcherOperation.Invoke()
   bei System.Windows.Threading.Dispatcher.ProcessQueue()
   bei System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
   bei MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
   bei MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object)
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
   bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
   bei MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)
   bei MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef)
   bei System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
   bei System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame)
   bei System.Windows.Threading.Dispatcher.Run()
   bei System.Windows.Application.RunDispatcher(System.Object)
   bei System.Windows.Application.RunInternal(System.Windows.Window)
   bei System.Windows.Application.Run(System.Windows.Window)
   bei Toaster.App.Main()

Error: (07/08/2015 04:21:27 AM) (Source: TOASTER.EXE) (EventID: 0) (User: )
Description: An Unhandled Exception occured.
Der angegebene Dienst ist kein installierter Dienst. (Ausnahme von HRESULT: 0x80070424)
   bei System.Management.ThreadDispatch.Start()
   bei System.Management.ManagementScope.Initialize()
   bei System.Management.ManagementEventWatcher.Initialize()
   bei System.Management.ManagementEventWatcher.Start()
   bei Toaster.Services.PowerManagementService.Start()
   bei Toaster.MainWindowViewModel..ctor()
   bei Toaster.App.OnStartup(StartupEventArgs e)
   bei System.Windows.Application.<.ctor>b__1(Object unused)
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs)
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(Object source, Delegate method, Object args, Int32 numArgs, Delegate catchHandler)

Error: (07/08/2015 02:42:44 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: DmiInfo.exe1.0.0.05273bfb9KERNELBASE.dll6.3.9600.17055532943a3e043435200011d4dd0001d0b91700c5d325C:\Program Files (x86)\Dell Backup and Recovery\Components\DBRUpdate\DmiInfo.exeC:\WINDOWS\SYSTEM32\KERNELBASE.dll3ec11196-250a-11e5-be99-fcf8ae205b83

Error: (07/08/2015 02:42:44 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: DmiInfo.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: System.Runtime.InteropServices.COMException
Stapel:
   bei System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32, IntPtr)
   bei System.Runtime.InteropServices.Marshal.ThrowExceptionForHR(Int32)
   bei System.Management.ManagementScope.InitializeGuts(System.Object)
   bei System.Management.ManagementScope.Initialize()
   bei System.Management.ManagementObject.Initialize(Boolean)
   bei System.Management.ManagementClass.GetInstances(System.Management.EnumerationOptions)
   bei System.Management.ManagementClass.GetInstances()
   bei DmiInfo.Program.GetSystemModel()
   bei DmiInfo.Program.Main(System.String[])

Error: (07/08/2015 02:28:08 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: TOASTER.EXE1.0.1.160520b3256KERNELBASE.dll6.3.9600.17055532943a3e043435200011d4d137001d0b914e53b82beC:\Program Files (x86)\Dell Backup and Recovery\TOASTER.EXEC:\WINDOWS\SYSTEM32\KERNELBASE.dll34924dcd-2508-11e5-be99-fcf8ae205b83

Error: (07/08/2015 02:28:08 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: TOASTER.EXE
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: System.Runtime.InteropServices.COMException
Stapel:
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
   bei System.Windows.Threading.DispatcherOperation.InvokeImpl()
   bei System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object)
   bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
   bei System.Windows.Threading.DispatcherOperation.Invoke()
   bei System.Windows.Threading.Dispatcher.ProcessQueue()
   bei System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
   bei MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
   bei MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object)
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
   bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
   bei MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)
   bei MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef)
   bei System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
   bei System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame)
   bei System.Windows.Threading.Dispatcher.Run()
   bei System.Windows.Application.RunDispatcher(System.Object)
   bei System.Windows.Application.RunInternal(System.Windows.Window)
   bei System.Windows.Application.Run(System.Windows.Window)
   bei Toaster.App.Main()

Error: (07/08/2015 02:28:08 AM) (Source: TOASTER.EXE) (EventID: 0) (User: )
Description: An Unhandled Exception occured.
Der angegebene Dienst ist kein installierter Dienst. (Ausnahme von HRESULT: 0x80070424)
   bei System.Management.ThreadDispatch.Start()
   bei System.Management.ManagementScope.Initialize()
   bei System.Management.ManagementEventWatcher.Initialize()
   bei System.Management.ManagementEventWatcher.Start()
   bei Toaster.Services.PowerManagementService.Start()
   bei Toaster.MainWindowViewModel..ctor()
   bei Toaster.App.OnStartup(StartupEventArgs e)
   bei System.Windows.Application.<.ctor>b__1(Object unused)
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs)
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(Object source, Delegate method, Object args, Int32 numArgs, Delegate catchHandler)

Error: (07/08/2015 02:09:42 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: TOASTER.EXE1.0.1.160520b3256KERNELBASE.dll6.3.9600.17055532943a3e043435200011d4d16d801d0b91251415747C:\Program Files (x86)\Dell Backup and Recovery\TOASTER.EXEC:\WINDOWS\SYSTEM32\KERNELBASE.dlla13aa489-2505-11e5-be97-fcf8ae205b83

Error: (07/08/2015 02:09:42 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: TOASTER.EXE
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: System.Runtime.InteropServices.COMException
Stapel:
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
   bei System.Windows.Threading.DispatcherOperation.InvokeImpl()
   bei System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object)
   bei System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   bei System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
   bei System.Windows.Threading.DispatcherOperation.Invoke()
   bei System.Windows.Threading.Dispatcher.ProcessQueue()
   bei System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
   bei MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
   bei MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object)
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
   bei System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
   bei MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)
   bei MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef)
   bei System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
   bei System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame)
   bei System.Windows.Threading.Dispatcher.Run()
   bei System.Windows.Application.RunDispatcher(System.Object)
   bei System.Windows.Application.RunInternal(System.Windows.Window)
   bei System.Windows.Application.Run(System.Windows.Window)
   bei Toaster.App.Main()


CodeIntegrity Errors:
===================================
  Date: 2015-07-08 05:26:15.720
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-04-29 21:25:22.506
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\BubbleSound\BubbleSound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2015-04-29 21:25:22.475
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\BubbleSound\BubbleSound.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-4200U CPU @ 1.60GHz
Percentage of memory in use: 30%
Total physical RAM: 6042.57 MB
Available physical RAM: 4203.57 MB
Total Virtual: 9114.57 MB
Available Virtual: 7045 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:452.09 GB) (Free:397.36 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 6777703A)

Partition: GPT Partition Type.

==================== End of log ============================
         
--- --- ---

--- --- ---

__________________
Beste Grüße,

Kuhlambo12

Geändert von kuhlambo12 (08.07.2015 um 19:14 Uhr)

Alt 09.07.2015, 19:23   #6
schrauber
/// the machine
/// TB-Ausbilder
 

Windows 8 & Windows 7 Laptop beide stark Adware verseucht - Standard

Windows 8 & Windows 7 Laptop beide stark Adware verseucht



hi,

Lade Dir bitte von hier Emsisoft Emergency Kit Download Emsisoft Emergency Kit herunter.
  • Bitte installiere das Programm in den vorgegebenen Pfad.
  • Starte das Programm durch Doppelklick der Desktopverknüpfung.
  • Das EEK ist nach dem Laden der Malwaresignaturen für den Scan bereit.
  • Folge nun bitte der bebilderten Bildanleitung zu Emergency Kit, entferne alle Funde und poste am Ende des Scans bzw. der Bereinigung das Log.

__________________
--> Windows 8 & Windows 7 Laptop beide stark Adware verseucht

Alt 10.07.2015, 02:32   #7
kuhlambo12
 
Windows 8 & Windows 7 Laptop beide stark Adware verseucht - Standard

Windows 8 & Windows 7 Laptop beide stark Adware verseucht



Nachdem sich bei dem Win8 Laptop Updates installiert haben und der Rechner sich neustartet will um den Vorgang abzuschließen hängt das Ding in einer Dauerschleife:" Die Einrichtung der updates konnte nicht abgeschlossen werden. Änderungen werden rückgängig gemacht. Schalten sie den Computer n"

Das macht der nun schon seit einer sehr langen Zeit, startet sich zwischendurch immermal wieder neu aber kommt nicht vorran.

Wenn ich den Rechner dann am Schalter kalt ausschalte, fängt er beim nächsten Hochfahren wieder da an wo er heruntergefahren wurde, ohne mir jegliche Option zugeben im Safemode oder sonst wie zu starten.

Update: Jetzt habe ich es geschafft, soweit in die Optionen vorzudringen, dass ich einen Safeboot, eine Wiederherstellung, etc. auswählen könnte. Aber nun pöbelt Win8.1 rum, dass das Passwort falsch sei, was es unter Garantie nicht ist. Ohne das Passwort kann ich leider keine der Reperaturoptionen o.Ä. auswählen.

Update2: Ich weiß nicht was passiert ist, aber nach ca. 5 Stunden und mehreren Neustarts ist alles wieder auf dem alten Stand was die Updates angeht. Ich kann wieder auf den Desktop zugreifen. Allerdings sind die Updates alle wieder weg.

Nachdem ich das EEK hab laufen lassen, ist die Meldung, dass das Sicherheitscenter deaktiviert ist zwar verschwunden, der Dienst ist aber weder aktiv noch lässt er sich aktivieren. Gleiches Problem mit dem Defender und alle anderen Komponenten die zum Sicherheitscenter gehören.

Hier das Logfile vom EEK:

Code:
ATTFilter
Emsisoft Emergency Kit - Version 10.0
Letztes Update: 10.07.2015 02:55:32
Benutzerkonto: FELIX\Felix

Scan-Einstellungen:

Scan-Methode: Malware-Scan
Objekte: Rootkits, Speicher, Traces, Dateien

PUPs-Erkennung: An
Archiv-Scan: Aus
ADS Scan: An
Dateitypen-Filter: Aus
Erweitertes Caching: An
Direkter Festplattenzugriff: Aus

Scan-Beginn:	10.07.2015 02:56:19
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLETASKMGR 	Gefunden: Setting.DisableTaskMgr (A)
Value: HKEY_USERS\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLETASKMGR 	Gefunden: Setting.DisableTaskMgr (A)
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLEREGISTRYTOOLS 	Gefunden: Setting.DisableRegistryTools (A)
Value: HKEY_USERS\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLEREGISTRYTOOLS 	Gefunden: Setting.DisableRegistryTools (A)
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER -> NORUN 	Gefunden: Setting.NoRun (A)
Value: HKEY_USERS\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER -> NORUN 	Gefunden: Setting.NoRun (A)
Value: HKEY_USERS\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER -> NOFOLDEROPTIONS 	Gefunden: Setting.NoFolderOptions (A)
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER -> NOFOLDEROPTIONS 	Gefunden: Setting.NoFolderOptions (A)
C:\Users\Felix\AppData\Local\Microsoft\Windows\INetCache\IE\5V1CY27T\1037[1].js 	Gefunden: Adware.JS.Agent.AI (B)
C:\Users\Felix\AppData\Local\Temp\nsi8672.tmp\g.dll 	Gefunden: Gen:Variant.Adware.Mikey.11553 (B)

Gescannt:	83480
Gefunden	10

Scan-Ende:	10.07.2015 03:00:36
Scan-Zeit:	0:04:17

C:\Users\Felix\AppData\Local\Temp\nsi8672.tmp\g.dll	Quarantäne Gen:Variant.Adware.Mikey.11553 (B)
C:\Users\Felix\AppData\Local\Microsoft\Windows\INetCache\IE\5V1CY27T\1037[1].js	Quarantäne Adware.JS.Agent.AI (B)
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER -> NOFOLDEROPTIONS	Quarantäne Setting.NoFolderOptions (A)
Value: HKEY_USERS\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER -> NOFOLDEROPTIONS	Quarantäne Setting.NoFolderOptions (A)
Value: HKEY_USERS\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER -> NORUN	Quarantäne Setting.NoRun (A)
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\EXPLORER -> NORUN	Quarantäne Setting.NoRun (A)
Value: HKEY_USERS\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLEREGISTRYTOOLS	Quarantäne Setting.DisableRegistryTools (A)
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLEREGISTRYTOOLS	Quarantäne Setting.DisableRegistryTools (A)
Value: HKEY_USERS\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLETASKMGR	Quarantäne Setting.DisableTaskMgr (A)
Value: HKEY_LOCAL_MACHINE\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\POLICIES\SYSTEM -> DISABLETASKMGR	Quarantäne Setting.DisableTaskMgr (A)

Quarantäne	10
         
__________________
Beste Grüße,

Kuhlambo12

Alt 10.07.2015, 14:54   #8
schrauber
/// the machine
/// TB-Ausbilder
 

Windows 8 & Windows 7 Laptop beide stark Adware verseucht - Standard

Windows 8 & Windows 7 Laptop beide stark Adware verseucht



Bitte Windows Repair laufen lassen:
Windows reparieren - so geht's - Anleitungen
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 11.07.2015, 02:32   #9
kuhlambo12
 
Windows 8 & Windows 7 Laptop beide stark Adware verseucht - Standard

Windows 8 & Windows 7 Laptop beide stark Adware verseucht



So, das Tool ist durchgelaufen.

Updates lassen sich alle problemlos installieren.

Das Sicherheitscenter funktioniert wieder, allerdings wird mir die Meldung angezeigt, dass der Windows Defender nicht aktiviert ist. Sobald ich den aber aktivieren möchte, öffnet sich nur der System32-Ordner und es passiert nichts Weiteres.

Außerdem ist mir aufgefallen, dass das Internet auf diesem Rechner super langsam ist, andere PC's die in diesem Netzwerk sind haben keinerlei Einschränkungen diesbezüglich.

Nochmal ein frisches FRST:

Ich hab die One Month created Files mal weggelassen, weil die ja größtenteils eh nur von dem Repairkit stammen und ich sonst den Post splitten müsste.

FRST:


FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:09-07-2015
Ran by Felix (administrator) on FELIX on 11-07-2015 03:02:50
Running from C:\Users\Felix\Desktop
Loaded Profiles: Felix (Available Profiles: Felix)
Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel) C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
() C:\Windows\System32\igfxTray.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\livecomm.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Spotify Ltd) C:\Users\Felix\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\csisyncclient.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(SoftThinks SAS) C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe
(SoftThinks - Dell) C:\Program Files (x86)\Dell Backup and Recovery\Components\DBRUpdate\DBRUpd.exe
(SoftThinks - Dell) C:\Program Files (x86)\Dell Backup and Recovery\Toaster.exe
() C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBRCrawler.exe
(Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Corporation) C:\Windows\System32\CredentialUIBroker.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\TiWorker.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7192792 2013-07-06] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-07-05] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_PushButton] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-07-05] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-30] (Intel Corporation)
HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [393480 2015-03-19] ()
HKLM\...\Run: [HotKeysCmds] => "C:\Windows\system32\hkcmd.exe"
HKLM\...\Run: [Persistence] => "C:\Windows\system32\igfxpers.exe"
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
HKLM\...\Run: [QuickSet] => c:\Program Files\Dell\QuickSet\QuickSet.exe [3760456 2013-04-23] (Dell Inc.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2780400 2013-09-06] (Synaptics Incorporated)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-04-07] (Apple Inc.)
HKLM-x32\...\Run: [MetroTileShortcut] => "C:\Program Files\McAfeeAntiTheft\2.1.170.2\McATUIHost.exe" /IMAT_SHORTCUTS
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2015-03-20] (Apple Inc.)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKLM\...\Policies\Explorer: [TaskbarNoNotification] 0
HKLM\...\Policies\Explorer: [HideSCAHealth] 0
HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Run: [Spotify Web Helper] => C:\Users\Felix\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2023480 2015-07-08] (Spotify Ltd)
HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Run: [OneDrive] => C:\Users\Felix\AppData\Local\Microsoft\OneDrive\OneDrive.exe [382664 2015-05-22] (Microsoft Corporation)
HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Policies\Explorer: [TaskbarNoNotification] 0
HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Policies\Explorer: [HideSCAHealth] 0
HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Policies\Explorer: [NoControlPanel] 0
AppInit_DLLs-x32: C:\WINDOWS\SysWOW64\nvinit.dll => C:\WINDOWS\SysWOW64\nvinit.dll [141336 2013-12-18] (NVIDIA Corporation)
Startup: C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2013-12-24]
ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
ShellIconOverlayIdentifiers: [DBARFileBackuped] -> {831cebdd-6baf-4432-be76-9e0989c14aef} => C:\WINDOWS\system32\mscoree.dll [2013-08-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [DBARFileNotBackuped] -> {275e4fd7-21ef-45cf-a836-832e5d2cc1b3} => C:\WINDOWS\system32\mscoree.dll [2013-08-22] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-3467804002-3895737877-2157059006-1001 -> {A2538774-7694-405F-8617-40F6CF9BD6C0} URL = 
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-05-19] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-05-28] (Microsoft Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-03-17] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{5D15FC0D-6CAB-4030-91AE-005F1D6C46C7}: [DhcpNameServer] 172.4.1.171
Tcpip\..\Interfaces\{9F1B649E-8A56-4D77-BC37-3CF394F922D5}: [DhcpNameServer] 192.168.178.1
StartMenuInternet: IEXPLORE.EXE - iexplore.exe

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_70.dll [2014-03-03] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll [2014-03-03] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.29 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-06-01] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-06-01] (Intel Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2013-12-25] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2013-10-23] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2013-10-23] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-07-08] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-07-08] (Google Inc.)
FF HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff
FF Extension: Download videos and MP3s from YouTube - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff [2014-04-04]
StartMenuInternet: FIREFOX.EXE - firefox.exe

Chrome: 
=======
CHR Profile: C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-07-08]
CHR Extension: (Google Docs) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-07-08]
CHR Extension: (Google Drive) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-07-08]
CHR Extension: (YouTube) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-07-08]
CHR Extension: (Adblock Plus) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-07-08]
CHR Extension: (Google Search) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-07-08]
CHR Extension: (Google Sheets) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-07-08]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-07-08]
CHR Extension: (Ghostery) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2015-07-08]
CHR Extension: (Google Wallet) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-08]
CHR Extension: (Gmail) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-07-08]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-19] (Apple Inc.)
R2 BrcmSetSecurity; C:\Program Files\Intel Corporation\Intel WiDi\BrcmSetSecurity.exe [101536 2013-04-16] (Intel)
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2739888 2015-05-19] (Microsoft Corporation)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-30] (Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [345864 2015-03-19] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; c:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-06-01] (Intel Corporation)
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [156616 2013-06-26] (Intel Corporation)
S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [174368 2014-02-28] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-06-01] (Intel Corporation)
S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2014-11-19] ()
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [246488 2013-06-19] (Realtek Semiconductor)
R2 SftService; C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe [1911312 2013-08-30] (SoftThinks SAS)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3820960 2014-11-19] (Intel® Corporation)
S4 McMPFSvc; "C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe" /McCoreSvc [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-09-24] (Microsoft Corporation)
R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1385272 2013-04-23] (Motorola Solutions, Inc.)
R3 DellRbtn; C:\Windows\System32\drivers\DellRbtn.sys [10752 2013-01-25] (OSR Open Systems Resources, Inc.)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [115656 2013-06-03] (Intel Corporation)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99800 2013-06-01] (Intel Corporation)
R3 NETwNb64; C:\Windows\system32\DRIVERS\NETwbw02.sys [3494680 2015-03-09] (Intel Corporation)
S3 NETwNe64; C:\Windows\system32\DRIVERS\Netwew02.sys [3648480 2013-10-08] (Intel Corporation)
R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [444632 2013-09-28] (Realsil Semiconductor Corporation)
S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [30448 2013-09-06] (Synaptics Incorporated)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-09-06] (Synaptics Incorporated)
R3 ST_Accel; C:\Windows\system32\DRIVERS\ST_Accel.sys [91360 2013-04-11] (STMicroelectronics)
R3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [207768 2013-04-16] (Windows (R) Win 7 DDK provider)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
S3 PCDSRVC{3B54B31B-D06B6431-06020200}_0; \??\c:\program files\dell\supportassist\pcdsrvc_x64.pkms [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)


==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-07-11 03:00 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru
2015-07-11 02:54 - 2014-12-12 19:49 - 01134970 _____ C:\WINDOWS\WindowsUpdate.log
2015-07-11 02:02 - 2015-03-07 17:10 - 00003554 _____ C:\WINDOWS\System32\Tasks\EPXLYFXW
2015-07-11 02:00 - 2014-12-13 00:40 - 00018432 ___SH C:\Users\Felix\Downloads\Thumbs.db
2015-07-11 02:00 - 2014-01-20 18:19 - 00062464 ___SH C:\Users\Felix\Documents\Thumbs.db
2015-07-11 01:59 - 2013-12-24 19:29 - 00003600 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3467804002-3895737877-2157059006-1001
2015-07-11 01:56 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-07-11 01:52 - 2015-05-13 21:42 - 00000000 __SHD C:\Users\Felix\AppData\Local\EmieUserList
2015-07-11 01:52 - 2015-05-13 21:42 - 00000000 __SHD C:\Users\Felix\AppData\Local\EmieSiteList
2015-07-11 01:52 - 2015-05-13 21:42 - 00000000 __SHD C:\Users\Felix\AppData\Local\EmieBrowserModeList
2015-07-11 01:51 - 2013-12-24 19:19 - 00000000 ____D C:\Users\Felix\AppData\Local\Packages
2015-07-11 01:17 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache
2015-07-11 00:48 - 2013-12-04 00:25 - 00000000 ____D C:\Program Files (x86)\Dell Backup and Recovery
2015-07-11 00:45 - 2014-09-24 08:17 - 01697546 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-07-11 00:45 - 2014-09-24 07:43 - 00720776 _____ C:\WINDOWS\system32\perfh007.dat
2015-07-11 00:45 - 2014-09-24 07:43 - 00143882 _____ C:\WINDOWS\system32\perfc007.dat
2015-07-11 00:41 - 2014-12-12 23:45 - 00000401 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2015-07-11 00:41 - 2014-05-11 21:46 - 00000000 ____D C:\Users\Felix\OneDrive
2015-07-11 00:39 - 2014-12-12 20:10 - 00000000 ____D C:\WINDOWS\SysWOW64\NV
2015-07-11 00:39 - 2014-12-12 20:10 - 00000000 ____D C:\WINDOWS\system32\NV
2015-07-11 00:39 - 2014-12-12 19:51 - 00000000 ____D C:\ProgramData\NVIDIA
2015-07-11 00:39 - 2014-09-23 23:06 - 00448926 _____ C:\WINDOWS\PFRO.log
2015-07-11 00:39 - 2013-08-22 16:46 - 00308905 _____ C:\WINDOWS\setupact.log
2015-07-11 00:39 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-07-11 00:38 - 2013-08-22 15:25 - 00786432 ___SH C:\WINDOWS\system32\config\BBI
2015-07-11 00:37 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ToastData
2015-07-11 00:37 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2015-07-11 00:37 - 2013-08-22 17:36 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-07-11 00:37 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\WinStore
2015-07-11 00:37 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2015-07-11 00:03 - 2012-07-26 09:59 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-07-11 00:00 - 2014-12-12 19:48 - 00000000 ____D C:\Program Files (x86)\Intel
2015-07-11 00:00 - 2013-12-24 19:28 - 00000000 ____D C:\Program Files (x86)\Cisco
2015-07-11 00:00 - 2013-12-04 00:05 - 00000000 ____D C:\ProgramData\Package Cache
2015-07-11 00:00 - 2013-12-04 00:01 - 00000000 ____D C:\ProgramData\Intel
2015-07-11 00:00 - 2013-12-03 23:59 - 00000000 ____D C:\Intel
2015-07-11 00:00 - 2012-07-26 07:37 - 00000000 ____D C:\Users\Default.migrated
2015-07-10 23:59 - 2014-12-12 19:47 - 00000000 ____D C:\Program Files\Intel
2015-07-10 23:56 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-07-10 23:07 - 2013-08-22 17:37 - 00009915 _____ C:\WINDOWS\DtcInstall.log
2015-07-10 23:05 - 2013-08-22 16:44 - 00371968 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-07-10 23:02 - 2014-09-24 09:43 - 00000000 ___SD C:\WINDOWS\system32\CompatTel
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ___SD C:\WINDOWS\system32\dsc
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\sppui
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\setup
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\Com
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sr-Latn-RS
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sr-Latn-CS
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sppui
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\setup
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\migwiz
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\Com
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\MediaViewer
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\IME
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\FileManager
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Camera
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\WindowsPowerShell
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Portable Devices
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Defender
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Common Files\System
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2015-07-10 23:02 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2015-07-10 23:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe
2015-07-10 23:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2015-07-10 23:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2015-07-10 23:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\oobe
2015-07-10 23:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\system32\Dism
2015-07-10 23:02 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\servicing
2015-07-10 22:41 - 2013-08-22 17:36 - 00215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2015-07-10 22:41 - 2013-08-22 17:36 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2015-07-10 22:18 - 2014-09-24 08:00 - 00000000 ____D C:\Program Files\Windows Journal
2015-07-10 21:41 - 2014-12-13 19:15 - 00000306 __RSH C:\ProgramData\ntuser.pol
2015-07-10 21:14 - 2012-07-26 07:26 - 00000262 _____ C:\WINDOWS\win.ini
2015-07-10 20:11 - 2013-12-30 13:02 - 00000000 ____D C:\Users\Felix\AppData\Roaming\PCDr
2015-07-09 14:51 - 2013-12-04 00:17 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2015-07-09 14:49 - 2013-12-04 00:17 - 00000000 ____D C:\ProgramData\PCDr
2015-07-09 14:30 - 2013-12-28 15:27 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-07-08 20:36 - 2013-12-25 14:43 - 00000000 ____D C:\Users\Felix\AppData\Local\Spotify
2015-07-08 20:36 - 2013-12-25 14:42 - 00000000 ____D C:\Users\Felix\AppData\Roaming\Spotify
2015-07-08 04:55 - 2013-12-24 22:06 - 00000000 ____D C:\Users\Felix\AppData\Local\Google
2015-07-08 04:55 - 2013-12-24 22:06 - 00000000 ____D C:\Program Files (x86)\Google
2015-07-08 04:37 - 2013-12-25 12:27 - 00000000 ____D C:\Users\Felix\AppData\Roaming\Mozilla
2015-07-08 04:12 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Globalization
2015-07-08 02:33 - 2014-12-05 13:55 - 00000000 ____D C:\AdwCleaner
2015-07-08 02:20 - 2013-12-04 00:22 - 00000000 ____D C:\ProgramData\McAfee
2015-07-08 02:13 - 2012-07-26 10:12 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2015-07-08 02:01 - 2014-12-12 20:01 - 00000000 ____D C:\Users\Felix
2015-07-08 02:00 - 2013-12-24 21:30 - 00000901 _____ C:\Users\Felix\Desktop\iexplore.lnk
2015-07-08 02:00 - 2013-12-24 19:21 - 00001009 _____ C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-07-08 01:52 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\ELAM
2015-07-08 01:51 - 2014-10-03 21:55 - 00000000 ____D C:\ProgramData\06154ba7-7ceb-4959-a6bd-bf38bdec8cc6
2015-07-08 01:51 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Cursors
2015-07-08 01:48 - 2015-05-23 21:33 - 00000000 ____D C:\Program Files (x86)\Extreme User Agent Switcher
2015-07-08 01:18 - 2013-12-24 20:51 - 00000000 ____D C:\Program Files\Microsoft Office 15
2015-06-20 15:56 - 2014-12-12 20:07 - 00000000 ____D C:\Users\Default\AppData\Roaming\IMAT
2015-06-20 15:56 - 2014-12-12 20:07 - 00000000 ____D C:\Users\Default User\AppData\Roaming\IMAT

==================== Files in the root of some directories =======

2015-07-08 04:19 - 2015-07-08 04:21 - 0000024 _____ () C:\Users\Felix\AppData\Roaming\appdataFr25.bin

Some files in TEMP:
====================
C:\Users\Felix\AppData\Local\Temp\173AE4A8-C26A-17B4-28CD-6FC766540816.dll
C:\Users\Felix\AppData\Local\Temp\173AE4A8-C26A-17B4-28CD-6FC766540816.exe
C:\Users\Felix\AppData\Local\Temp\B63AC1CC-E011-E524-BC1E-56FB4CE49953.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-07-11 01:07

==================== End of log ============================
         
--- --- ---



Addition:

[CODE]Additional
FRST Logfile:
Code:
ATTFilter
scan result of Farbar Recovery Scan Tool (x64) Version:09-07-2015
Ran by Felix at 2015-07-11 03:04:37
Running from C:\Users\Felix\Desktop
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3467804002-3895737877-2157059006-500 - Administrator - Disabled)
Felix (S-1-5-21-3467804002-3895737877-2157059006-1001 - Administrator - Enabled) => C:\Users\Felix
Gast (S-1-5-21-3467804002-3895737877-2157059006-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3467804002-3895737877-2157059006-1006 - Limited - Enabled)
UpdatusUser (S-1-5-21-3467804002-3895737877-2157059006-1004 - Limited - Enabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)


==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Flash Player 12 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 12.0.0.70 - Adobe Systems Incorporated)
Apple Application Support (32-Bit) (HKLM-x32\...\{AFA1153A-F547-409B-B837-3A0D6C5A3FEC}) (Version: 3.1.3 - Apple Inc.)
Apple Application Support (64-Bit) (HKLM\...\{D7B824DE-DA32-4772-9E5E-39C5158136A7}) (Version: 3.1.3 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{C4123106-B685-48E6-B9BD-E4F911841EB4}) (Version: 8.1.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Dell Backup and Recovery - Support Software (HKLM-x32\...\{A9668246-FB70-4103-A1E3-66C9BC2EFB49}) (Version: 1.6.0.3 - Dell Inc.)
Dell Backup and Recovery (HKLM-x32\...\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}) (Version: 1.6.0.3 - Dell Inc.)
Dell SupportAssist (HKLM\...\PC-Doctor for Windows) (Version: 1.1.6664.10 - Dell)
Dell Touchpad (HKLM\...\SynTPDeinstKey) (Version: 17.0.13.0 - Synaptics Incorporated)
Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Free YouTube to MP3 Converter version 3.12.32.327 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.32.327 - DVDVideoSoft Ltd.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.132 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.3.1520 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4170 - Intel Corporation)
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\...\{302600C1-6BDF-4FD1-1306-148929CC1385}) (Version: 3.1.1306.0354 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.2.1000 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.66956 - Intel Corporation)
Intel(R) Update Manager (HKLM-x32\...\{12914061-EB9B-4AE7-AC7E-0B8A607C7DF4}) (Version: 2.3.1338 - Intel Corporation)
Intel(R) WiDi (HKLM\...\{C605440F-2748-435F-9F29-EB1C8134856F}) (Version: 4.1.17.0 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{313c06de-4aa7-4a1f-930a-f10f80380426}) (Version: 17.14.0 - Intel Corporation)
iTunes (HKLM\...\{93F2A022-6C37-48B8-B241-FFABD9F60C30}) (Version: 12.1.2.27 - Apple Inc.)
Little Fighter 2 version 2.0a (HKLM-x32\...\Little Fighter 2) (Version: version 2.0a - )
Malwarebytes Anti-Malware Version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
Microsoft Office Home and Student 2013 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 15.0.4727.1003 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\OneDriveSetup.exe) (Version: 17.3.5860.0512 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
NVIDIA 3D Vision Treiber 331.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 331.65 - NVIDIA Corporation)
NVIDIA Grafiktreiber 331.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 331.65 - NVIDIA Corporation)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4727.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4727.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4727.1003 - Microsoft Corporation) Hidden
Pflanzen gegen Zombies   (HKLM-x32\...\Pflanzen gegen Zombies) (Version:  - )
Quickset64 (HKLM\...\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 11.1.12 - Dell Inc.)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9600.21242 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6971 - Realtek Semiconductor Corp.)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Spotify (HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\Spotify) (Version: 1.0.7.157.g2a6526f9 - Spotify AB)
ST Microelectronics 3 Axis Digital Accelerometer Solution (HKLM-x32\...\{9C24F411-9CA7-4A8A-91F3-F08A4A38EB31}) (Version: 4.11.0040 - ST Microelectronics)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3467804002-3895737877-2157059006-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)
CustomCLSID: HKU\S-1-5-21-3467804002-3895737877-2157059006-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Felix\AppData\Local\Microsoft\OneDrive\17.3.5860.0512\amd64\FileSyncApi64.dll (Microsoft Corporation)

==================== Restore Points =========================

08-07-2015 04:36:46 Revo Uninstaller's restore point - Mozilla Firefox 27.0.1 (x86 de)

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 15:25 - 2015-07-10 21:15 - 00000855 ____A C:\WINDOWS\system32\Drivers\etc\hosts
127.0.0.1       localhost

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {071F266F-51D9-4267-8546-E96D4B7BB295} - System32\Tasks\PCDEventLauncherTask => C:\Program Files\Dell\SupportAssist\sessionchecker.exe [2015-05-25] (PC-Doctor, Inc.)
Task: {30D2CA03-44ED-47C9-813F-08DF2CAA2E9B} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-05-27] (Microsoft Corporation)
Task: {4521731A-A841-4C4B-A807-5E73BE7500D1} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-05-19] (Microsoft Corporation)
Task: {4EF9C9A8-402C-465A-B710-F20848B49C42} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-08] (Google Inc.)
Task: {5BDE7815-F9E3-46D0-BF80-99622F015126} - System32\Tasks\EPXLYFXW => C:\ProgramData\e822a2fe7db443439f03b26cb6d6cd7d\e822a2fe7db443439f03b26cb6d6cd7d.exe <==== ATTENTION
Task: {65619EF3-177D-4758-A747-C3251E6EB807} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-08] (Google Inc.)
Task: {84D0073B-845F-4B2E-A6BB-EF4725FE2993} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-02-28] ()
Task: {93CBD974-BC87-45EB-B565-19DFCF10DA8C} - \avabvbxvh No Task File <==== ATTENTION
Task: {96B43A9B-C622-4BAD-B227-DD9D458E2BE1} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {9848B2C6-CC90-40CF-B44D-8214DE6592AF} - System32\Tasks\Microsoft Office 15 Sync Maintenance for FELIX-Felix Felix => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2015-05-28] (Microsoft Corporation)
Task: {9F4EF12E-5F60-49E4-9107-45AECD7B85F9} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2014-02-28] ()
Task: {AD99B69F-9972-4C45-AB7B-D6E4830C6BC4} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-3467804002-3895737877-2157059006-1001 => %localappdata%\Microsoft\OneDrive\OneDrive.exe
Task: {C884F498-D39A-45AA-A7F1-FEE5B4A81B6C} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-05-19] (Microsoft Corporation)
Task: {F962640D-9321-462A-897A-F3659B792494} - System32\Tasks\{495DBA67-C3C8-4BD9-BFB1-83EFB9B894EC} => pcalua.exe -a "C:\Users\Felix\Downloads\lf2_v20a_Setup (1).exe" -d C:\Users\Felix\Downloads
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

==================== Loaded Modules (Whitelisted) ==============

2013-12-18 15:42 - 2013-12-18 15:42 - 00013088 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll
2014-12-12 19:50 - 2013-10-23 10:20 - 00102176 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-03-20 18:12 - 2015-03-20 18:12 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-03-20 18:12 - 2015-03-20 18:12 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2015-03-25 13:14 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2014-10-03 18:36 - 2015-03-19 21:02 - 00393480 _____ () C:\WINDOWS\system32\igfxTray.exe
2013-12-04 00:26 - 2013-08-19 11:21 - 00020256 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBROverlayIcon.dll
2013-12-04 00:26 - 2013-08-19 11:21 - 00019232 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBROverlayNotBackuped.dll
2013-12-04 00:26 - 2013-08-19 11:21 - 00484640 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBRCrawler.exe
2014-04-16 14:08 - 2015-03-17 11:20 - 00316576 _____ () C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\AppVIsvStream32.dll
2013-12-03 23:59 - 2013-06-01 14:31 - 01199576 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2013-12-04 00:26 - 2013-08-22 16:26 - 01904928 _____ () C:\Program Files (x86)\Dell Backup and Recovery\Components\Restore\STRestoreAPI.dll
2013-12-04 00:26 - 2012-11-26 00:20 - 01153384 ____N () C:\Program Files (x86)\Dell Backup and Recovery\Components\Restore\libxml2.dll
2013-12-04 00:26 - 2012-11-26 00:20 - 00117608 ____N () C:\Program Files (x86)\Dell Backup and Recovery\Components\Restore\zlib1.dll
2013-12-18 15:42 - 2013-12-18 15:42 - 00013088 _____ () C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Felix\OneDrive:ms-properties

==================== Safe Mode (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""

==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\t-online.de -> hxxps://www.t-online.de


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Felix\Pictures\Unbenannt.png
DNS Servers: 192.168.178.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\...\StartupApproved\StartupFolder: => "An OneNote senden.lnk"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{A1E5B7E9-8606-49AD-B34F-975F0DDA9AB8}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{13EA75D8-568C-4815-8EEE-EF6A70D897EE}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{948B6C26-A043-4560-BB80-8003083A1EDD}] => (Allow) C:\Program Files (x86)\Mega Browse\bin\MegaBrowse.BRT.Helper.exe
FirewallRules: [{17623C81-C18D-41C6-AB3D-8F15AB30CBBB}] => (Allow) C:\Program Files (x86)\Mega Browse\bin\MegaBrowse.BRT.Helper.exe
FirewallRules: [{81EE94CF-8448-42D3-A594-71612FB5A571}] => (Allow) C:\Program Files (x86)\Mega Browse\bin\MegaBrowse.BRT.Helper.exe
FirewallRules: [{4B905F77-B1DF-4407-BC62-562DDCE44CFE}] => (Allow) C:\Program Files (x86)\Mega Browse\bin\MegaBrowse.BRT.Helper.exe
FirewallRules: [{5A9C5AEA-D8AE-4C35-AA19-3E29BD4A51F9}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe
FirewallRules: [{F9B7ABDA-DF1B-4134-9CF0-7F3131F19067}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{7780DD21-3381-4E07-A12B-CA31728E143A}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{6955B087-15F4-402B-B4A1-99CB1ADA41A4}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{C8455B14-666E-4603-967A-73803C85A797}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{1A5A96AB-696B-4C71-A409-5C040701EAB6}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
FirewallRules: [{354E4F01-C0E0-45B0-8C06-81D2EAEDA1B2}] => (Block) C:\users\felix\appdata\roaming\spotify\spotify.exe
FirewallRules: [{E32B4203-6DF8-42EC-B36D-AADDBF198900}] => (Block) C:\users\felix\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{DB321018-25A4-4074-92E4-589DB826C996}C:\users\felix\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\felix\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{54A12C4D-FAC9-4772-917B-D93A4550A855}C:\users\felix\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\felix\appdata\roaming\spotify\spotify.exe
FirewallRules: [{9D0DC19B-BFF1-441E-A336-2F849FF1AEA2}] => (Allow) C:\Users\Felix\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
FirewallRules: [{115D8B90-5C27-41D1-876A-610AFD83EE9F}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{9F66F785-2CD5-4EDA-9CAE-3EBC8160B674}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{77166172-63A0-4DF9-BB74-56C60AEBD876}] => (Allow) LPort=1900
FirewallRules: [{06513B53-10AB-47C9-A254-F3D1BA3A8987}] => (Allow) LPort=2869
FirewallRules: [{E7DF0381-7592-44EE-90FE-1164B4F0E8DB}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{19609355-2855-492A-9156-7F4B1F67086C}] => (Allow) C:\Program Files\Intel Corporation\Intel WiDi\WiDiApp.exe
FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppextcomobj.exe
FirewallRules: [{181F9743-F4C0-4390-9851-B55885633008}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (07/11/2015 01:37:16 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Die abhängige Assemblierung "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (07/11/2015 01:37:12 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"1".
Die abhängige Assemblierung "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (07/11/2015 01:27:24 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Die abhängige Assemblierung "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (07/11/2015 01:27:19 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"1".
Die abhängige Assemblierung "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (07/11/2015 01:15:39 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"1".
Die abhängige Assemblierung "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (07/11/2015 00:40:33 AM) (Source: Windows Search Service) (EventID: 10021) (User: )
Description: Die Registrierungsinformationen der Leistungsindikatoren für WSearchIdxPi für die Instanz   konnten wegen des folgenden Fehlers nicht abgerufen werden: Der Vorgang wurde erfolgreich beendet.   0x0.

Error: (07/11/2015 00:40:32 AM) (Source: Windows Search Service) (EventID: 3007) (User: )
Description: Die Leistungsüberwachung für den Gatherer-Dienst kann nicht initialisiert werden, da die Datenquellen nicht geladen sind oder das freigegebene Speicherobjekt nicht geöffnet werden konnte. Dies beeinträchtigt lediglich die Verfügbarkeit der Leistungsindikatoren. Starten Sie den Computer erneut.

Kontext:  Anwendung, SystemIndex Katalog

Error: (07/11/2015 00:40:30 AM) (Source: Windows Search Service) (EventID: 3006) (User: )
Description: Die Leistungsüberwachung kann für den Gatherer-Dienst nicht initialisiert werden, da die Datenquellen nicht geladen sind oder das freigegebene Speicherobjekt nicht geöffnet werden konnte. Dies beeinträchtigt lediglich die Verfügbarkeit der Leistungsindikatoren. Starten Sie den Computer erneut.

Error: (07/10/2015 11:59:39 PM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: NT-AUTORITÄT)
Description: Der Ereignisfilter mit der Abfrage "select * from CIntelWLANEvent" konnte im Namespace "//./ROOT/default" aufgrund des Fehlers "0x80041010" nicht reaktiviert werden. Solange dieses Problem besteht, können mit diesem Filter keine Ereignisse übermittelt werden.

Error: (07/10/2015 11:48:17 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Die abhängige Assemblierung "Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".


System errors:
=============
Error: (07/11/2015 00:40:29 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Windows Defender-Dienst" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%577

Error: (07/11/2015 00:39:50 AM) (Source: NETLOGON) (EventID: 3095) (User: )
Description: Dieser Computer ist als Mitglied einer Arbeitsgruppe konfiguriert, nicht als
Mitglied einer Domäne. Der Anmeldedienst braucht bei dieser
Konfiguration nicht gestartet zu sein.

Error: (07/11/2015 00:36:56 AM) (Source: DCOM) (EventID: 10010) (User: FELIX)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}

Error: (07/11/2015 00:36:56 AM) (Source: DCOM) (EventID: 10010) (User: FELIX)
Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9}

Error: (07/10/2015 11:07:38 PM) (Source: WMPNetworkSvc) (EventID: 14349) (User: )
Description: Ein neuer Medienserver konnte nicht initialisiert werden, da im Windows Media-Lieferungsmodul ein Fehler "0x80070005" aufgetreten ist. Starten Sie den Computer und den "WMPNetworkSvc"-Dienst neu. Wenn das Problem weiterhin besteht, installieren Sie Windows Media Player möglichst erneut.

Error: (07/10/2015 11:07:38 PM) (Source: WMPNetworkSvc) (EventID: 14353) (User: )
Description: Ein Medienlieferungsmodul mit der ID "0" konnte wegen Fehler "0x80070005" beim Hinzufügen der URL "http://+:10243/WMPNSSv4/3257691937/!S!" nicht initialisiert werden. Starten Sie den Computer und den WMPNetworkSvc-Dienst erneut. Wenn das Problem weiterhin besteht, installieren Sie nach Möglichkeit Windows Media Player erneut.

Error: (07/10/2015 11:07:38 PM) (Source: WMPNetworkSvc) (EventID: 14346) (User: )
Description: Ein neuer Medienserver konnte nicht initialisiert werden, da ein Fehler "0x80070005" in "RegisterRunningDevice()" aufgetreten ist. Starten Sie den Computer und den "WMPNetworkSvc"-Dienst neu.

Error: (07/10/2015 11:07:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Windows Defender-Dienst" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%577

Error: (07/10/2015 11:05:59 PM) (Source: NETLOGON) (EventID: 3095) (User: )
Description: Dieser Computer ist als Mitglied einer Arbeitsgruppe konfiguriert, nicht als
Mitglied einer Domäne. Der Anmeldedienst braucht bei dieser
Konfiguration nicht gestartet zu sein.

Error: (07/10/2015 10:23:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Windows Defender-Dienst" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%577


Microsoft Office:
=========================
Error: (07/11/2015 01:37:16 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"c:\program files (x86)\littlefighter2\LF2_v2.0a\recording\lfr_summary_generator.exe

Error: (07/11/2015 01:37:12 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"C:\Program Files (x86)\LittleFighter2\LF2_v2.0a\lf2.exe

Error: (07/11/2015 01:27:24 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"c:\program files (x86)\littlefighter2\LF2_v2.0a\recording\lfr_summary_generator.exe

Error: (07/11/2015 01:27:19 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"C:\Program Files (x86)\LittleFighter2\LF2_v2.0a\lf2.exe

Error: (07/11/2015 01:15:39 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.762"C:\Program Files (x86)\LittleFighter2\LF2_v2.0a\lf2.exe

Error: (07/11/2015 00:40:33 AM) (Source: Windows Search Service) (EventID: 10021) (User: )
Description: WSearchIdxPiDer Vorgang wurde erfolgreich beendet.   0x0

Error: (07/11/2015 00:40:32 AM) (Source: Windows Search Service) (EventID: 3007) (User: )
Description: Kontext:  Anwendung, SystemIndex Katalog

Error: (07/11/2015 00:40:30 AM) (Source: Windows Search Service) (EventID: 3006) (User: )
Description: 

Error: (07/10/2015 11:59:39 PM) (Source: Microsoft-Windows-WMI) (EventID: 10) (User: NT-AUTORITÄT)
Description: //./ROOT/defaultselect * from CIntelWLANEvent0x80041010

Error: (07/10/2015 11:48:17 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC80.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"c:\program files (x86)\littlefighter2\LF2_v2.0a\recording\lfr_summary_generator.exe


CodeIntegrity Errors:
===================================
  Date: 2015-07-11 00:40:29.635
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-07-10 23:07:13.431
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-07-10 22:23:38.932
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-07-10 22:21:15.866
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-07-10 21:46:55.026
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-07-10 21:41:00.317
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-07-10 03:12:30.434
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-07-08 05:26:15.720
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2015-04-29 21:25:22.506
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\BubbleSound\BubbleSound.dll because the set of per-page image hashes could not be found on the system.

  Date: 2015-04-29 21:25:22.475
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\BubbleSound\BubbleSound.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5-4200U CPU @ 1.60GHz
Percentage of memory in use: 30%
Total physical RAM: 6042.57 MB
Available physical RAM: 4220.5 MB
Total Virtual: 9114.57 MB
Available Virtual: 6831.64 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:452.09 GB) (Free:389.52 GB) NTFS
Drive d: (ESP) (Fixed) (Total:0.48 GB) (Free:0.44 GB) FAT32
Drive x: (WINRETOOLS) (Fixed) (Total:0.48 GB) (Free:0.21 GB) NTFS
Drive y: (PBR Image) (Fixed) (Total:12.1 GB) (Free:0.71 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 6777703A)

Partition: GPT Partition Type.

==================== End of log ============================
         
--- --- ---
__________________
Beste Grüße,

Kuhlambo12

Alt 11.07.2015, 15:02   #10
schrauber
/// the machine
/// TB-Ausbilder
 

Windows 8 & Windows 7 Laptop beide stark Adware verseucht - Standard

Windows 8 & Windows 7 Laptop beide stark Adware verseucht



Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:
ATTFilter
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
Task: {5BDE7815-F9E3-46D0-BF80-99622F015126} - System32\Tasks\EPXLYFXW => C:\ProgramData\e822a2fe7db443439f03b26cb6d6cd7d\e822a2fe7db443439f03b26cb6d6cd7d.exe <==== ATTENTION

Task: {93CBD974-BC87-45EB-B565-19DFCF10DA8C} - \avabvbxvh No Task File <==== ATTENTION
Emptytemp:
         

Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.





Downloade dir bitte Farbar Service Scanner Farbar Service Scanner
  • Starte das Tool mit Doppelklick auf die FSS.exe
  • Gehe sicher, dass folgende Optionen angehakt sind.
    • Internet Services
    • Windows Firewall
    • System Restore
    • Security Center/Action Center
    • Windows Update
    • Windows Defender
    • Other Services
  • Klicke auf Scan.
  • Wenn das Tool fertig ist, wird es eine FSS.txt in dem Verzeichnis erstellen, wo das Tool gelaufen ist.

Poste bitte den Inhalt hier.


__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 11.07.2015, 15:53   #11
kuhlambo12
 
Windows 8 & Windows 7 Laptop beide stark Adware verseucht - Standard

Windows 8 & Windows 7 Laptop beide stark Adware verseucht



So,

einmal das Fixlog:

Code:
ATTFilter
Fix result of Farbar Recovery Scan Tool (x64) Version:11-07-2015
Ran by Felix at 2015-07-11 16:43:25 Run:1
Running from C:\Users\Felix\Desktop
Loaded Profiles: Felix (Available Profiles: Felix)
Boot Mode: Normal
==============================================

fixlist content:
*****************
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
Task: {5BDE7815-F9E3-46D0-BF80-99622F015126} - System32\Tasks\EPXLYFXW => C:\ProgramData\e822a2fe7db443439f03b26cb6d6cd7d\e822a2fe7db443439f03b26cb6d6cd7d.exe <==== ATTENTION

Task: {93CBD974-BC87-45EB-B565-19DFCF10DA8C} - \avabvbxvh No Task File <==== ATTENTION
Emptytemp:
*****************

C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully.
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully.
"HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully
"HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully
"HKU\S-1-5-21-3467804002-3895737877-2157059006-1001\SOFTWARE\Policies\Microsoft\Internet Explorer" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5BDE7815-F9E3-46D0-BF80-99622F015126}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5BDE7815-F9E3-46D0-BF80-99622F015126}" => key removed successfully
C:\Windows\System32\Tasks\EPXLYFXW => moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EPXLYFXW" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{93CBD974-BC87-45EB-B565-19DFCF10DA8C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{93CBD974-BC87-45EB-B565-19DFCF10DA8C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\avabvbxvh" => key removed successfully
EmptyTemp: => 1.3 GB temporary data Removed.


The system needed a reboot.. 

==== End of Fixlog 16:43:59 ====
         
und das FSSlog:

Code:
ATTFilter
Farbar Service Scanner Version: 17-01-2015
Ran by Felix (administrator) on 11-07-2015 at 16:49:39
Running from "C:\Users\Felix\Desktop"
Microsoft Windows 8.1  (X64)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo.com is accessible.


Windows Firewall:
=============

Firewall Disabled Policy: 
==================


System Restore:
============

System Restore Policy: 
========================


Action Center:
============


Windows Update:
============
wuauserv Service is not running. Checking service configuration:
The start type of wuauserv service is set to Demand. The default start type is Auto.
The ImagePath of wuauserv service is OK.
The ServiceDll of wuauserv service is OK.


Windows Autoupdate Disabled Policy: 
============================


Windows Defender:
==============
WinDefend Service is not running. Checking service configuration:
The start type of WinDefend service is OK.
The ImagePath of WinDefend: ""%ProgramFiles%\Windows Defender\MsMpEng.exe"".


Windows Defender Disabled Policy: 
==========================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender]
"DisableAntiSpyware"=DWORD:1


Other Services:
==============


File Check:
========
C:\Windows\System32\nsisvc.dll => File is digitally signed
C:\Windows\System32\drivers\nsiproxy.sys => File is digitally signed
C:\Windows\System32\dhcpcore.dll => File is digitally signed
C:\Windows\System32\drivers\afd.sys => File is digitally signed
C:\Windows\System32\drivers\tdx.sys => File is digitally signed
C:\Windows\System32\Drivers\tcpip.sys => File is digitally signed
C:\Windows\System32\dnsrslvr.dll => File is digitally signed
C:\Windows\System32\mpssvc.dll => File is digitally signed
C:\Windows\System32\bfe.dll => File is digitally signed
C:\Windows\System32\drivers\mpsdrv.sys => File is digitally signed
C:\Windows\System32\wscsvc.dll => File is digitally signed
C:\Windows\System32\wbem\WMIsvc.dll => File is digitally signed
C:\Windows\System32\wuaueng.dll => File is digitally signed
C:\Windows\System32\qmgr.dll => File is digitally signed
C:\Windows\System32\es.dll => File is digitally signed
C:\Windows\System32\cryptsvc.dll => File is digitally signed
C:\Program Files\Windows Defender\MpSvc.dll => File is digitally signed
C:\Program Files\Windows Defender\MsMpEng.exe => File is digitally signed
C:\Windows\System32\ipnathlp.dll => File is digitally signed
C:\Windows\System32\iphlpsvc.dll => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed


**** End of log ****
         
__________________
Beste Grüße,

Kuhlambo12

Alt 12.07.2015, 11:21   #12
schrauber
/// the machine
/// TB-Ausbilder
 

Windows 8 & Windows 7 Laptop beide stark Adware verseucht - Standard

Windows 8 & Windows 7 Laptop beide stark Adware verseucht



http://download.bleepingcomputer.com.../WinDefend.reg
http://download.bleepingcomputer.com...8/wuauserv.reg

Beide Files auf dem Desktop speichern und ausführen, erlauben. Rebooten, dann bitte nochmal ein frisches FSS Logfile.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 12.07.2015, 13:43   #13
kuhlambo12
 
Windows 8 & Windows 7 Laptop beide stark Adware verseucht - Standard

Windows 8 & Windows 7 Laptop beide stark Adware verseucht



So,

Code:
ATTFilter
Farbar Service Scanner Version: 17-01-2015
Ran by Felix (administrator) on 12-07-2015 at 14:38:40
Running from "C:\Users\Felix\Desktop"
Microsoft Windows 8.1  (X64)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo.com is accessible.


Windows Firewall:
=============

Firewall Disabled Policy: 
==================


System Restore:
============

System Restore Policy: 
========================


Action Center:
============


Windows Update:
============
wuauserv Service is not running. Checking service configuration:
The start type of wuauserv service is set to Demand. The default start type is Auto.
The ImagePath of wuauserv service is OK.
The ServiceDll of wuauserv service is OK.


Windows Autoupdate Disabled Policy: 
============================


Windows Defender:
==============
WinDefend Service is not running. Checking service configuration:
The start type of WinDefend service is OK.
The ImagePath of WinDefend service is OK.


Windows Defender Disabled Policy: 
==========================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Defender]
"DisableAntiSpyware"=DWORD:1


Other Services:
==============


File Check:
========
C:\Windows\System32\nsisvc.dll => File is digitally signed
C:\Windows\System32\drivers\nsiproxy.sys => File is digitally signed
C:\Windows\System32\dhcpcore.dll => File is digitally signed
C:\Windows\System32\drivers\afd.sys => File is digitally signed
C:\Windows\System32\drivers\tdx.sys => File is digitally signed
C:\Windows\System32\Drivers\tcpip.sys => File is digitally signed
C:\Windows\System32\dnsrslvr.dll => File is digitally signed
C:\Windows\System32\mpssvc.dll => File is digitally signed
C:\Windows\System32\bfe.dll => File is digitally signed
C:\Windows\System32\drivers\mpsdrv.sys => File is digitally signed
C:\Windows\System32\wscsvc.dll => File is digitally signed
C:\Windows\System32\wbem\WMIsvc.dll => File is digitally signed
C:\Windows\System32\wuaueng.dll => File is digitally signed
C:\Windows\System32\qmgr.dll => File is digitally signed
C:\Windows\System32\es.dll => File is digitally signed
C:\Windows\System32\cryptsvc.dll => File is digitally signed
C:\Program Files\Windows Defender\MpSvc.dll => File is digitally signed
C:\Program Files\Windows Defender\MsMpEng.exe => File is digitally signed
C:\Windows\System32\ipnathlp.dll => File is digitally signed
C:\Windows\System32\iphlpsvc.dll => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed


**** End of log ****
         
Nachdem reboot werde ich weiterhin in den System32-Ordner geleitet sobald ich den Defender aktivieren will.
__________________
Beste Grüße,

Kuhlambo12

Alt 13.07.2015, 07:00   #14
schrauber
/// the machine
/// TB-Ausbilder
 

Windows 8 & Windows 7 Laptop beide stark Adware verseucht - Standard

Windows 8 & Windows 7 Laptop beide stark Adware verseucht



Repair hilft nicht, Regfiles auch nicht, bleibt nur noch ein Refresh von Win8.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 13.07.2015, 08:22   #15
kuhlambo12
 
Windows 8 & Windows 7 Laptop beide stark Adware verseucht - Standard

Windows 8 & Windows 7 Laptop beide stark Adware verseucht



Alles klar,

soll ich dann ein Inplace-Upgrade machen oder einfach die paar Tage bis zum Win10-Release mit einer anderen Securitylösung überbrücken. Soweit ich weiß will der Kollege Win10 sobald es zur Verfügung steht sich auf den Rechner ziehen.

Soll ich sonst noch was durchlaufen lassen? (Eset, Securitycheck, o.Ä.) Oder soll ich gleich mit dem 2ten Win7 Laptop weiter machen?

Vielen Dank bis hier hin schonmal!
__________________
Beste Grüße,

Kuhlambo12

Antwort

Themen zu Windows 8 & Windows 7 Laptop beide stark Adware verseucht
crossbrowser, pup.optional.3dbubblesound.a, pup.optional.crossbrowse.a, pup.optional.crossbrowse.c, pup.optional.crossrider.a, pup.optional.defaultsearch.a, pup.optional.dynconie.a, pup.optional.globalupdate.a, pup.optional.hqcinemax.a, pup.optional.iminent.a, pup.optional.lolliscan.a, pup.optional.luckytab.a, pup.optional.maintainersvc.a, pup.optional.mixvideoplayer.a, pup.optional.modgoog, pup.optional.multiplug.a, pup.optional.optimizerpro, pup.optional.optimizerpro.a, pup.optional.perfectcoupon.a, pup.optional.picexa.a, pup.optional.trovi.a, pup.optional.tuto4pc.a, pup.optional.websteroids.a, pup.optional.windowsmangerprotect.a, pup.optional.xtab.a, pup.optionlal.crossrider, super




Ähnliche Themen: Windows 8 & Windows 7 Laptop beide stark Adware verseucht


  1. Windows 8/10: Hartnäckige russische Adware, die auch trotz Neuinstallation von Windows nicht verschwindet
    Log-Analyse und Auswertung - 27.10.2015 (6)
  2. Windows 7 64bit stark ausgebremst, Programmabstürze
    Plagegeister aller Art und deren Bekämpfung - 13.10.2015 (21)
  3. Windows 8.1 - Browser immer langsamer - Disconnects und stark schwankende Internetgeschwindigkeit
    Log-Analyse und Auswertung - 05.08.2015 (6)
  4. Leistung vom Laptop stark vermindert
    Plagegeister aller Art und deren Bekämpfung - 12.04.2015 (23)
  5. Windows 8.1 - Computer stark verlangsamt - Verdacht auf Virus
    Plagegeister aller Art und deren Bekämpfung - 03.04.2015 (19)
  6. Windows 8.1: nach Update Adware/PUA Fund und Windows.old nicht gefunden
    Log-Analyse und Auswertung - 22.02.2015 (3)
  7. Windows 8.1:Variant.Adware.Graftor.159320+Adware.Generic.1133960-Virenbefall?
    Log-Analyse und Auswertung - 13.01.2015 (32)
  8. Windows 7: Rechner laggt sehr stark
    Log-Analyse und Auswertung - 05.12.2014 (15)
  9. Windows 7: ADWARE/CrossRider.Gen4, ADWARE/EoRezo.Gen4 und ADWARE/MPlug 6.14 durch AntiVir gefunden
    Log-Analyse und Auswertung - 22.10.2014 (4)
  10. eBay-Fake eMail mit ZIP Anhang gespeichert, Windows 7- Avira: Enthält Erkennungsmuster der Adware ADWARE/Adware.Gen
    Log-Analyse und Auswertung - 29.08.2014 (17)
  11. Laptop - Spy-Adware - Toolbars verseucht
    Plagegeister aller Art und deren Bekämpfung - 16.08.2014 (3)
  12. Windows XP: PC reagiert stark verzögert und ist extremst langsam
    Log-Analyse und Auswertung - 10.08.2014 (22)
  13. Wie stark infiziert ist der Laptop?
    Log-Analyse und Auswertung - 25.04.2014 (9)
  14. Windows 7: Windows-Sicherheitscenter und Windows Defender funktionieren nicht mehr, Services.exe verseucht?
    Log-Analyse und Auswertung - 07.01.2014 (8)
  15. Virusverdacht, will den Laptop platt machenVista>Windows 7) aber weiß nicht ob die ext. Festplatte verseucht ist
    Plagegeister aller Art und deren Bekämpfung - 07.09.2013 (31)
  16. Laptop mit Windows 7 von B1.org-Adware säubern
    Log-Analyse und Auswertung - 20.05.2013 (7)
  17. Windows und Programme stark zeitverzögert
    Log-Analyse und Auswertung - 22.04.2013 (35)

Zum Thema Windows 8 & Windows 7 Laptop beide stark Adware verseucht - Moin, ich hab mal wieder 2 Laptops aus der Bekanntschaft bekommen. Beide sind extremst zugemüllt mit Adware, die ich soweit es ging mit Malwarebytes, Adwcleaner und JRT bearbeitet habe. Dennoch - Windows 8 & Windows 7 Laptop beide stark Adware verseucht...
Archiv
Du betrachtest: Windows 8 & Windows 7 Laptop beide stark Adware verseucht auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.