Code:
Alles auswählen Aufklappen ATTFilter
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 18-11-2013
Ran by Miriam at 2013-11-19 21:26:25 Run:1
Running from C:\Users\Miriam\Desktop
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
start
Task: {0BE78847-CD05-4050-AD34-FEFCCB9D8FC7} - \Plus-HD-2.6-firefoxinstaller No Task File
Task: {463D0060-2184-4BA8-9541-78482580BBBD} - \Plus-HD-2.6-enabler No Task File
Task: {988B0A96-71D3-41D7-B802-E12CD8FBA848} - \Plus-HD-2.6-updater No Task File
Task: {AD7EB1DE-828C-4ED7-95BA-D7CC288E4D26} - \Plus-HD-2.6-codedownloader No Task File
Task: {ADD9FFAF-275E-4A67-B784-5AA75CA83C32} - \Software Updater Ui No Task File
Task: {F0A15924-E05D-4C17-8ED1-B4E979E6128F} - \Software Updater No Task File
end
*****************
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0BE78847-CD05-4050-AD34-FEFCCB9D8FC7} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0BE78847-CD05-4050-AD34-FEFCCB9D8FC7} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Plus-HD-2.6-firefoxinstaller => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{463D0060-2184-4BA8-9541-78482580BBBD} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{463D0060-2184-4BA8-9541-78482580BBBD} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Plus-HD-2.6-enabler => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{988B0A96-71D3-41D7-B802-E12CD8FBA848} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{988B0A96-71D3-41D7-B802-E12CD8FBA848} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Plus-HD-2.6-updater => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{AD7EB1DE-828C-4ED7-95BA-D7CC288E4D26} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AD7EB1DE-828C-4ED7-95BA-D7CC288E4D26} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Plus-HD-2.6-codedownloader => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{ADD9FFAF-275E-4A67-B784-5AA75CA83C32} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{ADD9FFAF-275E-4A67-B784-5AA75CA83C32} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Software Updater Ui => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F0A15924-E05D-4C17-8ED1-B4E979E6128F} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F0A15924-E05D-4C17-8ED1-B4E979E6128F} => Key deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Software Updater => Key deleted successfully.
==== End of Fixlog ====
Code:
Alles auswählen Aufklappen ATTFilter
Code:
Alles auswählen Aufklappen ATTFilter
HitmanPro 3.7.8.208
www.hitmanpro.com
Computer name . . . . : MIRIAM-PC
Windows . . . . . . . : 6.2.0.9200.X64/8
User name . . . . . . : Miriam-PC\Miriam
UAC . . . . . . . . . : Enabled
License . . . . . . . : Trial (30 days left)
Scan date . . . . . . : 2013-11-19 21:28:46
Scan mode . . . . . . : Normal
Scan duration . . . . : 3m 44s
Disk access mode . . : Direct disk access (SRB)
Cloud . . . . . . . . : Internet
Reboot . . . . . . . : No
Threats . . . . . . . : 0
Traces . . . . . . . : 6
Objects scanned . . . : 1.953.352
Files scanned . . . . : 32.782
Remnants scanned . . : 633.258 files / 1.287.312 keys
Potential Unwanted Programs _________________________________________________
HKU\S-1-5-21-734915465-461864420-888540340-1001\Software\Microsoft\Internet Explorer\Approved Extensions\{4D2D3B0F-69BE-477A-90F5-FDDB05357975} (Claro) -> Deleted
Cookies _____________________________________________________________________
C:\Users\Miriam\AppData\Roaming\Microsoft\Windows\Cookies\TQ4PVZ9B.txt
C:\Users\Miriam\AppData\Roaming\Mozilla\Firefox\Profiles\gb0hxko8.default\cookies.sqlite:apmebf.com
C:\Users\Miriam\AppData\Roaming\Mozilla\Firefox\Profiles\gb0hxko8.default\cookies.sqlite:atdmt.com
C:\Users\Miriam\AppData\Roaming\Mozilla\Firefox\Profiles\gb0hxko8.default\cookies.sqlite:doubleclick.net
C:\Users\Miriam\AppData\Roaming\Mozilla\Firefox\Profiles\gb0hxko8.default\cookies.sqlite:eas.apm.emediate.eu
Zum nächsten Schritt habe ich noch eine (vielleicht blöde) Frage. Aber ich stell sie trotzdem lieber... Ich habe nur den Windows Defender auf dem PC. Wenn ich ihn deaktiviere und die Firewall auch - soll ich dann die Internetverbindung unterbrechen oder trotzdem mit dem Internet verbunden bleiben?
Nicht, dass sich dann wieder was neues auf meinen PC einhackt oder was auch immer anstellt.