Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML

Antwort
Alt 07.05.2015, 21:14   #1
Patroklos91
 
Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet - Standard

Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet



Am vergangenen Abend habe ich eine vermeintliche Mail vom Absender DHL sowie deren Anhang geöffnet. Ich habe seitdem keine Einschränkungen am PC festgestellt, bin aufgrund der Nachrichtenlage zu diesen Mails aber beunruhigt.
Für eure Hilfe möchte ich euch daher bereits Vorraus einen großen Dank aussprechen!
Ach ja: Von diesem Freitag-Mittag bis kommenden Montag-Abend werde ich leider nicht antworten oder reagieren können.

Zwei Fragen noch meinerseits:
1. Mein PC bezieht Internet über W-Lan und es befinden sich noch drei weitere Rechner in der Wohnung. Inwiefern sind diese Computer über Netzwerkkommunikation ebenfalls bedroht bzw. bereits infiziert?

2. Die "Anweisung zum Re-enable" bekomme ich von euch, richtig?

Hier folgen nun die Logs - neben den in der Anleitung vorgegeben habe ich unten die Logs von Malware und Avira, mit denen ich heute Suchdurchläufe gemacht habe, angefügt.
Nochmal vielen Dank!




FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 06-05-2015 01
Ran by Jonas ***** (administrator) on ZUKUNFT on 07-05-2015 21:02:07
Running from C:\ProgrammeJonas
Loaded Profiles: Jonas ***** (Available profiles: Jonas *****)
Platform: Microsoft Windows 7 Home Premium  Service Pack 1 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Protexis Inc.) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
(Microsoft Corporation) C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Avira Operations GmbH & Co. KG) C:\ProgramData\Avira\Antivirus\TEMP\SELFUPDATE\update.exe
(Avira Operations GmbH & Co. KG) C:\ProgramData\Avira\Antivirus\TEMP\SELFUPDATE\updrgui.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(Renesas Electronics Corporation) C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(CyberLink) C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Hewlett-Packard) C:\Program Files\HP\Digital Imaging\bin\HpqSRmon.exe
(Hewlett-Packard) C:\Program Files\HP\HP Software Update\hpwuschd2.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
() C:\Program Files\ownCloud\owncloud.exe
(Geek Software GmbH) C:\ProgrammeJonas\PDF24\pdf24.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(6 Wunderkinder GmbH) C:\Program Files\Wunderlist2\Wunderlist.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.bin
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_17_0_0_169.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_17_0_0_169.exe
() C:\ProgrammeJonas\Defogger.exe
(Malwarebytes Corporation) C:\Program Files\ Malwarebytes Anti-Malware \mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files\ Malwarebytes Anti-Malware \mbam.exe
(Malwarebytes Corporation) C:\Program Files\ Malwarebytes Anti-Malware \mbamservice.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2010-03-04] (Intel Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [9288296 2010-06-14] (Realtek Semiconductor)
HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-05-27] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [NUSB3MON] => C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-04-27] (Renesas Electronics Corporation)
HKLM\...\Run: [CLMLServer] => C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe [103720 2009-11-02] (CyberLink)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [41056 2013-05-08] (Adobe Systems Incorporated)
HKLM\...\Run: [hpqSRMon] => C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe [150016 2008-08-20] (Hewlett-Packard)
HKLM\...\Run: [HP Software Update] => C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [49208 2011-05-10] (Hewlett-Packard)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59240 2011-11-02] (Apple Inc.)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [421736 2012-01-16] (Apple Inc.)
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [726320 2015-04-01] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [ownCloud] => C:\Program Files\ownCloud\owncloud.exe [1253540 2013-04-22] ()
HKLM\...\Run: [PDFPrint] => C:\ProgrammeJonas\PDF24\pdf24.exe [193568 2014-11-28] (Geek Software GmbH)
HKLM\...\Run: [Avira Systray] => C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [129272 2015-03-16] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-21-1471510115-2474919708-3564051268-1001\...\Run: [msnmsgr] => "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
HKU\S-1-5-21-1471510115-2474919708-3564051268-1001\...\Run: [Wunderlist] => C:\Program Files\Wunderlist2\Wunderlist.exe [13021792 2013-12-02] (6 Wunderkinder GmbH)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk [2011-03-25]
ShortcutTarget: Microsoft Office.lnk -> C:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WISO Mein Steuer-Sparbuch heute.lnk [2014-10-01]
ShortcutTarget: WISO Mein Steuer-Sparbuch heute.lnk -> C:\Program Files\WISO\Steuersoftware 2014\mshaktuell.exe ()
Startup: C:\Users\Jonas *****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk [2010-11-28]
ShortcutTarget: OpenOffice.org 3.2.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKLM -> DefaultScope value is missing.
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2013-05-08] (Adobe Systems Incorporated)
BHO: Search Helper -> {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} -> C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-05-14] (Microsoft Corporation)
Toolbar: HKLM - TerraTec Home Cinema - {AD6E6555-FB2C-47D4-8339-3E2965509877} - C:\Program Files\TerraTec\TerraTec Home Cinema\ThcDeskBand.dll [2011-06-24] (TerraTec Electronic GmbH)
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-0018-0000-0031-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll [2000-11-06] (Microsoft Corporation)
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-31] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\Jonas *****\AppData\Roaming\Mozilla\Firefox\Profiles\d240w4qq.default-1389057727826
FF NewTab:  www.google.de
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_169.dll [2015-04-15] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw.dll [2010-08-18] (Adobe Systems, Inc.)
FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll [2011-11-14] ()
FF Plugin: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-02-04] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-02-04] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/WLPG,version=14.0.8117.0416 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2010-04-17] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-06] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-06] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll [2013-05-08] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1471510115-2474919708-3564051268-1001: @lightspark.github.com/Lightspark;version=1 -> C:\Program Files\Lightspark 0.5.3-git\nplightsparkplugin.dll No File
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2013-05-08] (Adobe Systems Inc.)
FF Extension: 20-20 3D Viewer - IKEA - C:\Users\Jonas *****\AppData\Roaming\Mozilla\Firefox\Profiles\d240w4qq.default-1389057727826\Extensions\2020Player_IKEA@2020Technologies.com [2014-03-21]
FF Extension: Adblock Plus - C:\Users\Jonas *****\AppData\Roaming\Mozilla\Firefox\Profiles\d240w4qq.default-1389057727826\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-01-08]
FF HKLM\...\Firefox\Extensions: [ext@flash-Enhancer.com] - C:\Program Files\AmiExt\flashEnhancer\ff
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\itms.js [2015-04-11]

Chrome: 
=======
CHR StartupUrls: Default -> "hxxp://www.google.com"
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\21.0.1180.89\PepperFlash\pepflashplayer.dll No File
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\42.0.2311.90\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32_11_4_402_265.dll No File
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\42.0.2311.90\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\42.0.2311.90\pdf.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Java Deployment Toolkit 6.0.300.12) - C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll No File
CHR Plugin: (Java(TM) Platform SE 6 U30) - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll No File
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll No File
CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
CHR Plugin: (Windows Live® Photo Gallery) - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (iTunes Application Detector) - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (Shockwave for Director) - C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll No File
CHR Profile: C:\Users\Jonas *****\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Avanquest App'-Anwendungsleiste) - C:\Users\Jonas *****\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg [2012-08-27]
CHR Extension: (Google Wallet) - C:\Users\Jonas *****\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-10-26]
CHR HKLM\...\Chrome\Extension: [ckjhoplcbnkhgnnahfbcdmganjhpcceg] - C:\Users\JONASR~1\AppData\Local\Temp\ckjhoplcbnkhgnnahfbcdmganjhpcceg.crx [2012-03-03]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S2 AntiVirMailService; C:\Program Files\Avira\AntiVir Desktop\avmailc7.exe [815920 2015-04-01] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [434424 2015-04-01] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [434424 2015-04-01] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\avwebg7.exe [1004280 2015-04-01] (Avira Operations GmbH & Co. KG)
R2 Avira.OE.ServiceHost; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [201008 2015-03-16] (Avira Operations GmbH & Co. KG)
S3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [248832 2009-05-21] (Hewlett-Packard Co.) [File not signed]
R2 MBAMScheduler; C:\Program Files\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2015-04-14] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files\ Malwarebytes Anti-Malware \mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 AF15BDA; C:\Windows\System32\DRIVERS\AF15BDA.sys [489408 2009-11-05] (ITETech                  )
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105864 2015-03-12] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136216 2015-03-12] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-11-29] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [37896 2015-03-12] (Avira Operations GmbH & Co. KG)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2015-04-14] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [119512 2015-05-07] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2015-04-14] (Malwarebytes Corporation)
R3 nusb3hub; C:\Windows\System32\DRIVERS\nusb3hub.sys [64904 2010-04-27] (Renesas Electronics Corporation)
R3 nusb3xhc; C:\Windows\System32\DRIVERS\nusb3xhc.sys [146568 2010-04-27] (Renesas Electronics Corporation)
S3 RTL2832UBDA; C:\Windows\System32\drivers\RTL2832UBDA.sys [189184 2012-01-09] (REALTEK SEMICONDUCTOR Corp.)
S3 RTL2832UUSB; C:\Windows\System32\Drivers\RTL2832UUSB.sys [33536 2012-01-09] (REALTEK SEMICONDUCTOR Corp.)
S3 RTL2832U_IRHID; C:\Windows\System32\DRIVERS\RTL2832U_IRHID.sys [43392 2012-01-09] (Realtek)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2013-04-07] (Avira GmbH)
S3 Profos; \??\C:\Program Files\BullGuard Ltd\BullGuard\antirootkit\profos.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-05-07 21:01 - 2015-05-07 21:02 - 00000000 ____D () C:\FRST
2015-05-07 20:58 - 2015-05-07 20:58 - 00000000 _____ () C:\Users\Jonas *****\defogger_reenable
2015-05-07 18:56 - 2015-05-07 20:37 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-05-07 18:55 - 2015-05-07 20:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2015-05-07 18:55 - 2015-05-07 20:34 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 
2015-05-07 18:55 - 2015-04-14 09:37 - 00092888 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-05-07 18:55 - 2015-04-14 09:37 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-04-28 16:10 - 2015-04-28 16:10 - 00008862 _____ () C:\Users\Jonas *****\.recently-used.xbel
2015-04-16 03:44 - 2015-04-16 03:44 - 00000000 __SHD () C:\found.000
2015-04-15 10:38 - 2015-03-23 05:06 - 00860160 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-04-15 10:38 - 2015-03-23 05:06 - 00630784 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-04-15 10:38 - 2015-03-23 05:06 - 00576000 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-04-15 10:38 - 2015-03-23 05:06 - 00331264 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-04-15 10:38 - 2015-03-23 05:06 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-04-15 10:38 - 2015-03-23 05:06 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-04-15 10:38 - 2015-03-23 05:06 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-04-15 10:38 - 2015-03-23 04:59 - 00896000 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-04-15 10:37 - 2015-04-02 01:49 - 00342704 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-04-15 10:37 - 2015-03-17 07:01 - 03976632 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-04-15 10:37 - 2015-03-17 07:01 - 03920824 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-04-15 10:37 - 2015-03-17 07:01 - 00137656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-04-15 10:37 - 2015-03-17 07:01 - 00067512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-04-15 10:37 - 2015-03-17 06:59 - 01306112 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-04-15 10:37 - 2015-03-17 06:56 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-04-15 10:37 - 2015-03-17 06:56 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-04-15 10:37 - 2015-03-17 06:56 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-04-15 10:37 - 2015-03-17 06:56 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-04-15 10:37 - 2015-03-17 06:56 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-04-15 10:37 - 2015-03-17 06:56 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-04-15 10:37 - 2015-03-17 06:53 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-04-15 10:37 - 2015-03-17 06:53 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-04-15 10:37 - 2015-03-17 06:50 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-04-15 10:37 - 2015-03-17 06:50 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-04-15 10:37 - 2015-03-13 05:42 - 19695616 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-04-15 10:37 - 2015-03-13 05:42 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-04-15 10:37 - 2015-03-13 05:42 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-04-15 10:37 - 2015-03-13 05:28 - 00503296 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-04-15 10:37 - 2015-03-13 05:28 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-04-15 10:37 - 2015-03-13 05:27 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-04-15 10:37 - 2015-03-13 05:27 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-04-15 10:37 - 2015-03-13 05:26 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-04-15 10:37 - 2015-03-13 05:22 - 02278400 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-04-15 10:37 - 2015-03-13 05:20 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-04-15 10:37 - 2015-03-13 05:20 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-04-15 10:37 - 2015-03-13 05:17 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-04-15 10:37 - 2015-03-13 05:16 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-04-15 10:37 - 2015-03-13 05:16 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-04-15 10:37 - 2015-03-13 05:15 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-04-15 10:37 - 2015-03-13 05:09 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-04-15 10:37 - 2015-03-13 05:06 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-04-15 10:37 - 2015-03-13 05:01 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-04-15 10:37 - 2015-03-13 04:57 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-04-15 10:37 - 2015-03-13 04:56 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-04-15 10:37 - 2015-03-13 04:54 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-04-15 10:37 - 2015-03-13 04:49 - 04305408 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-04-15 10:37 - 2015-03-13 04:44 - 00689152 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-04-15 10:37 - 2015-03-13 04:43 - 02052608 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-04-15 10:37 - 2015-03-13 04:43 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-04-15 10:37 - 2015-03-13 04:42 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-04-15 10:37 - 2015-03-13 04:34 - 12825600 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-04-15 10:37 - 2015-03-13 04:20 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-04-15 10:37 - 2015-03-13 04:16 - 01311232 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-04-15 10:37 - 2015-03-13 04:14 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-04-15 10:37 - 2015-03-05 06:06 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-04-15 10:37 - 2015-03-04 06:16 - 00249784 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2015-04-15 10:37 - 2015-03-04 06:10 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2015-04-15 10:36 - 2015-03-25 05:00 - 03088384 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-04-15 10:36 - 2015-03-25 05:00 - 02020864 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-04-15 10:36 - 2015-03-25 05:00 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-04-15 10:36 - 2015-03-25 05:00 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-04-15 10:36 - 2015-03-25 05:00 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-04-15 10:36 - 2015-03-25 05:00 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-04-15 10:36 - 2015-03-25 05:00 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-04-15 10:36 - 2015-03-25 05:00 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-04-15 10:36 - 2015-03-25 05:00 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-04-15 10:36 - 2015-03-25 05:00 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-04-15 10:36 - 2015-03-25 05:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-04-15 10:35 - 2015-03-10 05:08 - 01237504 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-04-15 10:35 - 2015-03-10 05:05 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-04-15 10:35 - 2015-02-25 05:03 - 00514560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2015-04-11 21:32 - 2015-04-28 16:07 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2015-04-07 09:38 - 2015-04-07 09:38 - 00001106 _____ () C:\Users\Jonas *****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wunderlist.lnk
2015-04-07 09:38 - 2015-04-07 09:38 - 00001098 _____ () C:\Users\Jonas *****\Desktop\Wunderlist.lnk
2015-04-07 09:38 - 2015-04-07 09:38 - 00000000 ____D () C:\Users\Jonas *****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wunderlist
2015-04-07 09:37 - 2015-04-07 09:37 - 40494256 _____ () C:\Users\Jonas *****\Downloads\Wunderlist-Setup.exe
2015-04-07 03:01 - 2015-04-07 03:02 - 00000000 ___SD () C:\Windows\system32\GWX

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-05-07 21:02 - 2013-05-08 14:16 - 00687104 ____H () C:\Users\Jonas *****\Documents\.csync_journal.db.ctmp
2015-05-07 21:02 - 2013-05-08 14:16 - 00687104 ____H () C:\Users\Jonas *****\Documents\.csync_journal.db
2015-05-07 21:02 - 2010-11-28 15:15 - 00000000 ____D () C:\ProgrammeJonas
2015-05-07 20:58 - 2010-11-25 22:19 - 00000000 ____D () C:\Users\Jonas *****
2015-05-07 20:56 - 2012-08-06 19:08 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-05-07 20:37 - 2009-07-14 06:34 - 00018512 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-05-07 20:37 - 2009-07-14 06:34 - 00018512 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-05-07 20:34 - 2014-01-06 12:33 - 00001068 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2015-05-07 20:18 - 2010-11-25 22:14 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-05-07 19:48 - 2010-11-25 22:14 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-05-07 19:42 - 2010-11-26 05:51 - 01429624 _____ () C:\Windows\WindowsUpdate.log
2015-05-07 19:36 - 2010-08-30 11:48 - 00318964 _____ () C:\Windows\PFRO.log
2015-05-07 19:36 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-07 19:36 - 2009-07-14 06:39 - 00129875 _____ () C:\Windows\setupact.log
2015-05-07 18:57 - 2015-01-15 23:11 - 00000000 ____D () C:\Users\Jonas *****\AppData\Local\Wunderlist
2015-05-07 18:55 - 2014-01-06 12:33 - 00000000 ____D () C:\Users\Jonas *****\AppData\Roaming\Malwarebytes
2015-05-07 18:55 - 2014-01-06 12:33 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-05-07 18:55 - 2014-01-06 12:33 - 00000000 ____D () C:\Program Files\Malwarebytes' Anti-Malware
2015-05-07 18:52 - 2014-01-05 14:22 - 00000000 ____D () C:\ProgramData\Updater
2015-05-04 20:46 - 2014-04-03 10:19 - 00000000 ____D () C:\Users\Jonas *****\Desktop\Christina
2015-05-01 09:40 - 2010-11-25 22:14 - 00002125 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-04-29 10:41 - 2010-08-28 02:49 - 01620684 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-28 16:11 - 2011-12-14 11:53 - 00000000 ____D () C:\Users\Jonas *****\.gimp-2.6
2015-04-28 16:10 - 2010-12-07 22:31 - 00000000 ____D () C:\Users\Jonas *****\AppData\Roaming\gtk-2.0
2015-04-28 16:07 - 2012-07-07 01:19 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2015-04-28 16:07 - 2009-07-14 06:53 - 00032640 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-04-22 13:47 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\AppCompat
2015-04-20 15:22 - 2011-01-10 00:59 - 00000000 ____D () C:\Users\Jonas *****\Documents\Studium
2015-04-20 11:32 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2015-04-20 10:39 - 2014-06-25 01:22 - 00000000 ____D () C:\Users\Jonas *****\Documents\Bilder
2015-04-16 03:54 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2015-04-16 03:35 - 2014-12-11 04:30 - 00000000 ____D () C:\Windows\system32\appraiser
2015-04-16 03:35 - 2014-05-07 03:02 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-04-16 03:35 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\de-DE
2015-04-16 03:19 - 2013-07-21 03:01 - 00000000 ____D () C:\Windows\system32\MRT
2015-04-16 03:06 - 2010-08-30 18:47 - 125832184 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-04-15 11:57 - 2012-05-03 17:23 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-04-15 11:57 - 2011-05-15 22:19 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-04-14 09:37 - 2014-01-06 12:33 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-04-10 10:16 - 2013-11-16 20:44 - 00000000 ____D () C:\ProgramData\Package Cache
2015-04-10 10:16 - 2013-04-07 11:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-04-10 10:16 - 2013-04-07 11:24 - 00000000 ____D () C:\Program Files\Avira

==================== Files in the root of some directories =======

2012-02-13 17:10 - 2012-02-13 17:10 - 0000085 ___SH () C:\ProgramData\.zreglib
2014-05-29 00:36 - 2014-09-18 01:22 - 0002097 _____ () C:\ProgramData\flcd_proxy.log
2011-12-13 14:19 - 2011-12-13 14:25 - 0000355 _____ () C:\ProgramData\hpzinstall.log

Some content of TEMP:
====================
C:\Users\Jonas *****\AppData\Local\Temp\AutoRun.exe
C:\Users\Jonas *****\AppData\Local\Temp\AutoRunGUI.dll
C:\Users\Jonas *****\AppData\Local\Temp\avgnt.exe
C:\Users\Jonas *****\AppData\Local\Temp\conduitcbi.exe
C:\Users\Jonas *****\AppData\Local\Temp\dInstall.exe
C:\Users\Jonas *****\AppData\Local\Temp\htmllite.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna1073641812190778766.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna1185527157742964876.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna1276106599147048213.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna1893174376098530207.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna2020353360928496932.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna2025237670452794424.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna2046720042216359828.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna2172709133664520690.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna2512698828130703502.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna2792498471994590643.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna2834361094025418355.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna2949567750573929976.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna3002922126623524111.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna3040308465313835017.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna3412468569707160191.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna3643392798884008587.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna38318708594354581.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna3881206486951935315.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna4012055542383306725.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna4366729164591216225.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna4525886986067790480.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna500308783186734465.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna5084496301472374557.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna5216179386882267933.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna5279464177802058598.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna5426906761126012010.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna5656096163683743591.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna5798048651696063470.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna6002804168364047915.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna6218573632163746381.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna6323957631504888686.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna6344572161285112669.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna634875124451846475.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna6713533327705549808.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna6817909701625994584.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna7182303321022941133.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna785400149776830332.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna7906596334756237456.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna7942269207787477200.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna8135096155061655243.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna8162413641251088470.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna8291277447303430361.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna8409213596804889146.dll
C:\Users\Jonas *****\AppData\Local\Temp\jna8952341875103493298.dll
C:\Users\Jonas *****\AppData\Local\Temp\jre-6u26-windows-i586-iftw-rv.exe
C:\Users\Jonas *****\AppData\Local\Temp\jre-6u30-windows-i586-iftw-rv.exe
C:\Users\Jonas *****\AppData\Local\Temp\jre-6u39-windows-i586-iftw.exe
C:\Users\Jonas *****\AppData\Local\Temp\jre-7u21-windows-i586-iftw.exe
C:\Users\Jonas *****\AppData\Local\Temp\jre-7u45-windows-i586-iftw.exe
C:\Users\Jonas *****\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe
C:\Users\Jonas *****\AppData\Local\Temp\jre-7u67-windows-i586-iftw.exe
C:\Users\Jonas *****\AppData\Local\Temp\jre-8u31-windows-au.exe
C:\Users\Jonas *****\AppData\Local\Temp\msvcp70.dll
C:\Users\Jonas *****\AppData\Local\Temp\msvcr70.dll
C:\Users\Jonas *****\AppData\Local\Temp\pdf24-creator-update.exe
C:\Users\Jonas *****\AppData\Local\Temp\Quarantine.exe
C:\Users\Jonas *****\AppData\Local\Temp\setup.exe
C:\Users\Jonas *****\AppData\Local\Temp\StellarPhoenixWindowsDataRecovery-Home_PPCS.exe
C:\Users\Jonas *****\AppData\Local\Temp\Wunderlist-Bridge.exe
C:\Users\Jonas *****\AppData\Local\Temp\Wunderlist-Setup2.3.0.31.exe
C:\Users\Jonas *****\AppData\Local\Temp\{688EC707-C557-4B0F-B8F6-098FB2230D34}-31.0.1650.57_30.0.1599.101_chrome_updater.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-05-04 15:52

==================== End Of Log ============================
         
--- --- ---




FRST Additions Logfile:
Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 06-05-2015 01
Ran by Jonas ***** at 2015-05-07 21:03:09
Running from C:\ProgrammeJonas
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1471510115-2474919708-3564051268-500 - Administrator - Disabled)
Gast (S-1-5-21-1471510115-2474919708-3564051268-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1471510115-2474919708-3564051268-1002 - Limited - Enabled)
Jonas ***** (S-1-5-21-1471510115-2474919708-3564051268-1001 - Administrator - Enabled) => C:\Users\Jonas *****

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Acrobat.com (HKLM\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated)
Adobe AIR (HKLM\...\Adobe AIR) (Version: 15.0.0.249 - Adobe Systems Incorporated)
Adobe Flash Player 17 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 17.0.0.169 - Adobe Systems Incorporated)
Adobe Flash Player 17 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated)
Adobe Reader 9.5.5 MUI (HKLM\...\{AC76BA86-7AD7-FFFF-7B44-A91000000001}) (Version: 9.5.5 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.5 (HKLM\...\Adobe Shockwave Player) (Version: 11.5.8.612 - Adobe Systems, Inc.)
Anki (HKLM\...\Anki) (Version:  - )
Apple Application Support (HKLM\...\{343666E2-A059-48AC-AD67-230BF74E2DB2}) (Version: 2.1.6 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{8153ED9A-C94A-426E-9880-5E6775C08B62}) (Version: 4.0.0.97 - Apple Inc.)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
ATI Catalyst Install Manager (HKLM\...\{BE4AE3A7-190D-BCB8-A953-A708C9E8E8AA}) (Version: 3.0.778.0 - ATI Technologies, Inc.)
Avira (HKLM\...\{b5675cc4-ab8b-4945-8c1d-4c5479556d6a}) (Version: 1.1.34.19732 - Avira Operations GmbH & Co. KG)
Avira (Version: 1.1.34.19732 - Avira Operations GmbH & Co. KG) Hidden
Avira Antivirus (HKLM\...\Avira Antivirus) (Version: 15.0.9.504 - Avira Operations GmbH & Co. KG)
BlueJ 3.0.4 (HKLM\...\BlueJ_is1) (Version:  - La Trobe University)
Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.)
BufferChm (Version: 130.0.331.000 - Hewlett-Packard) Hidden
ccc-core-static (Version: 2010.0527.1242.20909 - ATI) Hidden
CdCreate AM Testversion (HKLM\...\{98667FC9-D57F-11DD-B64E-93631AE7A456}) (Version: 2.80.0000 - Galerie Fuchstal)
Cinergy T Stick RC V86.001.1129.2011 (HKLM\...\Cinergy T Stick RC) (Version: 86.001.1129.2011 - )
Cinergy T USB XXS V2.03.03.29 (HKLM\...\Cinergy T USB XXS) (Version: 2.03.03.29 - )
Cinergy T-Stick MKII V9.06.3.01 (HKLM\...\Cinergy T-Stick MKII) (Version: 9.06.3.01 - )
CorelDRAW Essentials 4 - Content (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Draw (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Filters (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - ICA (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - IPM - No VBA (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang BR (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang DE (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang EN (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang ES (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang FR (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang IT (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang NL (Version: 4.0 - Uw bedrijfsnaam) Hidden
CorelDRAW Essentials 4 - PHOTO-PAINT (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Windows Shell Extension (HKLM\...\_{CF0ADC18-6D8F-4353-8EAA-DF45456B7853}) (Version:  - Corel Corporation)
CorelDRAW Essentials 4 - Windows Shell Extension (Version: 1.1 - Corel Corporation) Hidden
CorelDRAW Essentials 4 (HKLM\...\_{C0237AA4-1BFB-46EA-860D-7B0EB365CA13}) (Version:  - Corel Corporation)
CorelDRAW Essentials 4 (Version: 4.0 - Corel Corporation) Hidden
CyberLink LabelPrint (HKLM\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.2515 - CyberLink Corp.)
CyberLink Power2Go (HKLM\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.3602c - CyberLink Corp.)
CyberLink PowerDVD Copy (HKLM\...\InstallShield_{E3D04529-6EDB-11D8-A372-0050BAE317E1}) (Version: 1.5.1306 - CyberLink Corp.)
Destinations (Version: 130.0.0.0 - Hewlett-Packard) Hidden
DocProc (Version: 13.0.0.0 - Hewlett-Packard) Hidden
ElsterFormular (HKLM\...\ElsterFormular) (Version: 15.3.14949 - Landesfinanzdirektion Thüringen)
FIFA 2003 (HKLM\...\{6A1DC8D4-9FA4-43C3-00B3-5993B4BBE7D4}) (Version:  - )
Funkyplot 1.1.0-pre1 (HKLM\...\Funkyplot_is1) (Version:  - LOGICIEL)
gedit 2.28.3 (HKLM\...\gedit_is1) (Version: 2.28.3 - GNOME)
GIMP 2.6.11 (HKLM\...\WinGimp-2.0_is1) (Version: 2.6.11 - The GIMP Team)
Google Chrome (HKLM\...\Google Chrome) (Version: 42.0.2311.135 - Google Inc.)
Google Update Helper (Version: 1.3.26.9 - Google Inc.) Hidden
GPBaseService2 (Version: 130.0.371.000 - Hewlett-Packard) Hidden
GPL Ghostscript (HKLM\...\GPL Ghostscript 9.05) (Version: 9.05 - Artifex Software Inc.)
GSview 5.0 (HKLM\...\GSview 5.0) (Version: 5.0 - Ghostgum Software Pty Ltd)
HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP)
HP Photosmart Essential 3.5 (HKLM\...\HP Photosmart Essential) (Version: 3.5 - HP)
HP Scanjet G4000 Series (HKLM\...\{10297E58-2DFE-478B-9A1D-4B14E4E79CDF}) (Version: 13.0 - HP)
HP Solution Center 13.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 13.0 - HP)
HP Update (HKLM\...\{2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}) (Version: 5.003.001.001 - Hewlett-Packard)
hpg4000 (Version: 13.0.0.0 - Ihr Firmenname) Hidden
HPPhotosmartEssential (Version: 2.04.0000 - Hewlett-Packard) Hidden
HPProductAssistant (Version: 130.0.371.000 - Hewlett-Packard) Hidden
Intel(R) Rapid Storage Technology (HKLM\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.6.0.1014 - Intel Corporation)
iTunes (HKLM\...\{F6D6B258-E3CA-4AAC-965A-68D3E3140A8C}) (Version: 10.5.3.3 - Apple Inc.)
Java 8 Update 31 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Java DB 10.5.3.0 (HKLM\...\{00BA866C-F2A2-4BB9-A308-3DFA695B6F7C}) (Version: 10.5.3.0 - Sun Microsystems, Inc)
Java(TM) SE Development Kit 6 Update 23 (HKLM\...\{32A3A4F4-B792-11D6-A78A-00B0D0160230}) (Version: 1.6.0.230 - Oracle)
Junk Mail filter update (Version: 14.0.8117.416 - Microsoft Corporation) Hidden
Kalenderchen 6 (HKU\S-1-5-21-1471510115-2474919708-3564051268-1001\...\Kalenderchen 6) (Version:  - )
Malwarebytes Anti-Malware Version 2.1.6.1022 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
MATLAB R2009b (HKLM\...\MatlabR2009b) (Version: 7.9 - The MathWorks, Inc.)
Media Markt Fotoservice 4.4 (HKLM\...\Media Markt Fotoservice_is1) (Version:  - )
Medion Home Cinema (HKLM\...\InstallShield_{AB770FDE-8087-4C98-9A85-BD64262C104C}) (Version: 6.0.0000 - CyberLink Corp.)
Medion Home Cinema (Version: 6.0.0000 - CyberLink Corp.) Hidden
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office 2010 (HKLM\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office XP Developer - German (HKLM\...\Microsoft Office XP Developer - German) (Version:  - )
Microsoft Office XP Professional mit FrontPage (HKLM\...\{90280407-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [DEU] (HKLM\...\{BAC80EF3-E106-4AEA-8C57-F217F9BC7358}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
MiKTeX 2.9 (HKU\S-1-5-21-1471510115-2474919708-3564051268-1001\...\MiKTeX 2.9) (Version: 2.9 - MiKTeX.org)
MOD 10.0 Baseline (English-x86-CD) (Version: 7.00.9177 - Microsoft) Hidden
Mozilla Firefox 37.0.2 (x86 de) (HKLM\...\Mozilla Firefox 37.0.2 (x86 de)) (Version: 37.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 35.0.1 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
OCR Software by I.R.I.S. 13.0 (HKLM\...\HPOCR) (Version: 13.0 - HP)
OpenOffice.org 3.2 (HKLM\...\{DFFC0648-BC4B-47D1-93D2-6CA6B9457641}) (Version: 3.2.9502 - OpenOffice.org)
ownCloud (HKLM\...\ownCloud) (Version: 1.2.5 - ownCloud, Inc)
PDF24 Creator 6.9.2 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version:  - PDF24.org)
PlayReady PC Runtime x86 (HKLM\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation)
Project64 1.6 (HKLM\...\{9559F7CA-5E34-4237-A2D9-D856464AD727}) (Version: 1.6 - Project64)
R for Windows 3.1.1 (HKLM\...\R for Windows 3.1.1_is1) (Version: 3.1.1 - R Core Team)
Realtek Ethernet Controller Driver For Windows 7 (HKLM\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.21.531.2010 - Realtek)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6136 - Realtek Semiconductor Corp.)
Renesas Electronics USB 3.0 Host Controller Driver (HKLM\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.4.0 - Renesas Electronics Corporation)
Renesas Electronics USB 3.0 Host Controller Driver (Version: 2.0.4.0 - Renesas Electronics Corporation) Hidden
RStudio (HKLM\...\RStudio) (Version: 0.98.983 - RStudio)
Scan (Version: 13.0.0.0 - Hewlett-Packard) Hidden
SolutionCenter (Version: 130.0.373.000 - Hewlett-Packard) Hidden
Spelling Dictionaries Support For Adobe Reader 9 (HKLM\...\{AC76BA86-7AD7-5464-3428-900000000004}) (Version: 9.0.0 - Adobe Systems Incorporated)
Stellar Phoenix Windows Data Recovery-Home (HKLM\...\Stellar Phoenix Windows Data Recovery-Home_is1) (Version: 4.2.0.0 - Stellar Information Systems Ltd)
TerraTec Home Cinema (HKLM\...\{63B9BAB5-F36A-4A3B-9E5C-68A7F212BFB9}) (Version: 6.25.6 - )
Texmaker (HKLM\...\Texmaker) (Version:  - )
TIPP10 Version 2.1.0 (HKLM\...\TIPP10_is1) (Version:  - (c) 2006-2011, Tom Thielicke IT Solutions)
TmNationsForever (HKLM\...\TmNationsForever_is1) (Version:  - Nadeo)
Updater (HKLM\...\{D54E3D9F-FEB8-4D2D-A138-B69A5C80080B}) (Version: 2.6.53 - Creative Island Media, LLC) <==== ATTENTION
WebReg (Version: 130.0.132.017 - Hewlett-Packard) Hidden
Windows Live Essentials (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8117.0416 - Microsoft Corporation)
WinRAR 4.00 (32-Bit) (HKLM\...\WinRAR archiver) (Version: 4.00.0 - win.rar GmbH)
WISO Mein Geld 2011 Professional (HKLM\...\WISO Mein Geld 2011 Professional) (Version:  - Buhl Data Service GmbH)
WISO Mein Geld 2011 Professional (Version: 12.00.02.0024 - Buhl Data Service GmbH) Hidden
WISO Steuer-Sparbuch 2014 (HKLM\...\{F03AAE28-2598-4490-AB26-2B35A0E58828}) (Version: 21.08.8679 - Buhl Data Service GmbH)
Wunderlist (HKLM\...\{1ca68332-4ba1-4943-9010-eaa1aa45b492}) (Version: 2.3.0.31 - 6 Wunderkinder GmbH)
Wunderlist (Version: 2.3.0.31 - 6 Wunderkinder GmbH) Hidden

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

21-04-2015 09:45:33 Windows Update
24-04-2015 10:03:27 Windows Update
28-04-2015 09:21:01 Windows Update
01-05-2015 09:48:43 Windows Update
06-05-2015 01:37:00 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:04 - 2009-06-10 23:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {25841487-1C33-40BF-8120-5494E99B5656} - System32\Tasks\Microsoft\Windows\Setup\gwx\runappraiser => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation)
Task: {3212333B-1F16-4C10-98F4-7C75FAA9E40A} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-03-25] (Microsoft Corporation)
Task: {4FB622F1-A454-4F6B-BEB4-F71C1A08B1D9} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation)
Task: {51216052-0F20-4386-B40C-C710038DBAD8} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxcontent => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation)
Task: {59D093B0-92DA-42A3-A9BF-2B349A2CB79F} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-15] (Adobe Systems Incorporated)
Task: {61F13637-483C-42D4-927C-F8099A17FB78} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {6F151318-12A0-4D00-8F09-2EC27733568C} - System32\Tasks\{422FC7C0-2347-4491-A45A-99E34858989B} => pcalua.exe -a C:\Windows\LargoWinchInst\SetupUbi.exe -c -uninstall Largo
Task: {8A6329B5-0F52-4A46-8FEF-B34930A60984} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {D0B8CBAD-B240-4E45-A1BD-7AFF085A8504} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {D67732B8-E5A2-4676-A3D6-7F013BF6DAFC} - System32\Tasks\{B86A33F0-D926-4927-A51E-BF2C8D32A885} => pcalua.exe -a C:\WINDOWS\ISUN0407.EXE -c -f"c:\program files\Uninst.isu" -c"c:\program files\Uninst.dll"

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) ==============

2008-09-08 11:19 - 2008-09-08 11:19 - 00022723 _____ () C:\Windows\System32\cl31cl3.dll
2011-11-02 00:26 - 2011-11-02 00:26 - 00087912 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2011-11-02 00:26 - 2011-11-02 00:26 - 01242472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2014-10-16 03:50 - 2014-10-16 03:50 - 00170496 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\3d576cbc4ffc5ad06fd61510c5d8f326\IsdiInterop.ni.dll
2010-08-30 20:04 - 2010-03-04 05:08 - 00058880 _____ () C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll
2009-11-02 23:20 - 2009-11-02 23:20 - 00619816 ____N () C:\Program Files\CyberLink\Power2Go\CLMediaLibrary.dll
2009-11-02 23:23 - 2009-11-02 23:23 - 00013096 ____N () C:\Program Files\CyberLink\Power2Go\CLMLSvcPS.dll
2013-04-22 17:00 - 2013-04-22 17:00 - 01253540 _____ () C:\Program Files\ownCloud\owncloud.exe
2012-12-21 15:27 - 2012-12-21 15:27 - 00106700 _____ () C:\Program Files\ownCloud\zlib1.dll
2012-12-22 03:16 - 2012-12-22 03:16 - 00120916 _____ () C:\Program Files\ownCloud\libgcc_s_sjlj-1.dll
2012-12-22 03:16 - 2012-12-22 03:16 - 00864381 _____ () C:\Program Files\ownCloud\libstdc++-6.dll
2012-12-21 15:32 - 2012-12-21 15:32 - 00176680 _____ () C:\Program Files\ownCloud\libpng15-15.dll
2013-04-22 16:58 - 2013-04-22 16:58 - 00816147 _____ () C:\Program Files\ownCloud\libowncloudsync.dll
2013-02-21 16:59 - 2013-02-21 16:59 - 00074118 _____ () C:\Program Files\ownCloud\libqtkeychain.dll
2013-04-22 16:56 - 2013-04-22 16:56 - 00834505 _____ () C:\Program Files\ownCloud\libocsync.dll
2012-12-21 22:13 - 2012-12-21 22:13 - 00038291 _____ () C:\Program Files\ownCloud\libdl.dll
2013-02-04 23:07 - 2013-02-04 23:07 - 00044685 _____ () C:\Program Files\ownCloud\libiniparser.dll
2012-12-21 20:02 - 2012-12-21 20:02 - 00567611 _____ () C:\Program Files\ownCloud\libsqlite3-0.dll
2015-01-09 12:24 - 2015-01-09 12:24 - 01166336 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\ReactiveUI\1a96a8c1c19e0195d67a9950d1f4d527\ReactiveUI.ni.dll
2015-01-09 12:24 - 2015-01-09 12:24 - 00027136 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Wunderkinde6f42a4a9#\bcb87239e984b283cc128a55e9bc3aaf\Wunderkinder.Wunderlist.Data.Realtime.ni.dll
2015-01-09 12:24 - 2015-01-09 12:24 - 00376320 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Akavache.Portable\47d6f1dd3d6ffb3bc16647055208cdfb\Akavache.Portable.ni.dll
2015-01-09 12:24 - 2015-01-09 12:24 - 00039424 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Wunderkinded9c6edae#\af819191c1a5d188230c5ce0bfb68220\Wunderkinder.Wunderlist.Presentation.ni.dll
2010-05-04 16:36 - 2010-05-04 16:36 - 00970752 _____ () C:\Program Files\OpenOffice.org 3\program\libxml2.dll
2010-05-27 21:40 - 2010-05-27 21:40 - 00270336 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2015-04-15 11:57 - 2015-04-15 11:57 - 16863920 _____ () C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_169.dll
2015-05-07 20:27 - 2015-05-07 20:27 - 00050477 _____ () C:\ProgrammeJonas\Defogger.exe

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BsScanner => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BsScanner => ""="Service"

==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, the associated entry will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1471510115-2474919708-3564051268-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Jonas *****\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.2.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== FirewallRules (whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

FirewallRules: [TCP Query User{DC794C29-32CC-4974-9400-D80C6A3F4F00}C:\programmejonas\taxi raser\taxi raser.exe] => (Block) C:\programmejonas\taxi raser\taxi raser.exe
FirewallRules: [UDP Query User{1A82D905-EDDA-463E-89AB-1F7EB5A51EEA}C:\programmejonas\taxi raser\taxi raser.exe] => (Block) C:\programmejonas\taxi raser\taxi raser.exe
FirewallRules: [TCP Query User{ED38330D-DEB7-453D-91AA-4ADF5A6425CD}C:\programmejonas\eclipse-sdk-3.6.2-win32\eclipse\eclipse.exe] => (Block) C:\programmejonas\eclipse-sdk-3.6.2-win32\eclipse\eclipse.exe
FirewallRules: [UDP Query User{84894ECA-9CB8-4F76-8845-B3B5AF85FC23}C:\programmejonas\eclipse-sdk-3.6.2-win32\eclipse\eclipse.exe] => (Block) C:\programmejonas\eclipse-sdk-3.6.2-win32\eclipse\eclipse.exe
FirewallRules: [{FF002A04-FA73-4000-A11C-3BEE45B6CE28}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe
FirewallRules: [{5231EEC6-9410-4F31-9391-6AF6F00D3A25}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe
FirewallRules: [{C2518630-9012-4A03-8418-6D8580618524}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe
FirewallRules: [{55FBD93D-AB58-449B-B772-578D8BC5EBCB}] => (Allow) C:\Program Files\common files\hp\digital imaging\bin\hpqphotocrm.exe
FirewallRules: [{3FDB65D5-AD0B-4628-9FDC-5CD0E939A126}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe
FirewallRules: [{ED88D7B2-7241-4E41-8DED-87E6BF922CE4}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe
FirewallRules: [{E9AEA340-D6A4-4EEB-838E-C3D45E8ACEF9}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe
FirewallRules: [{17F8A429-7A05-4077-A934-3D180CA8968C}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe
FirewallRules: [{30FF85D6-7CE6-4ED9-8099-FC43AE8A56F6}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
FirewallRules: [{83DEC76E-9F83-4302-AEE7-96E03014CFE7}] => (Allow) C:\Program Files\HP\hp software update\hpwucli.exe
FirewallRules: [{5AEA1869-BACB-4F1F-815D-4C453A802D9E}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\CinergyDvr.exe
FirewallRules: [{B963AE06-7617-43F6-AAA9-9D6E092FDF78}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\CinergyDvr.exe
FirewallRules: [{F1D9C10F-7210-40A8-B8D5-AE7D4FA53A4C}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\tvtvSetup\tvtv_Wizard.exe
FirewallRules: [{826F9D84-EE9C-49CC-BF6D-5467E0572A2E}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\tvtvSetup\tvtv_Wizard.exe
FirewallRules: [{DC5B8CE3-C71D-491B-9C1B-BAAD08A5FBF8}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\InstTool.exe
FirewallRules: [{227EE136-2668-475D-AAFA-0E0C18E3A910}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\InstTool.exe
FirewallRules: [{5ADE8544-17EB-4B32-B973-F37F7FB9292F}] => (Allow) C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
FirewallRules: [{B928DD33-32A6-4558-9B6C-1E6C138C5798}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{8822F8D9-2068-4F15-B96B-27337BB85C81}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{CB9381BD-BA39-4C0D-9201-806A3BD36C15}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{45F8B089-9F2A-4C01-8EAE-4346F8C007DA}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\InstTool.exe
FirewallRules: [{AAEE0B9D-1D90-4D0F-A441-2A5050AF960D}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\InstTool.exe
FirewallRules: [{4EB951AF-E1B3-4857-A07E-EA1B78E57990}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\CinergyDvr.exe
FirewallRules: [{6C1E7793-6B0E-4208-9D2B-BBAFC15BA223}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\CinergyDvr.exe
FirewallRules: [{A9F559C6-EA9A-4A99-9BBD-4FBCBC447E5B}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\tvtvSetup\tvtv_Wizard.exe
FirewallRules: [{2CABA8DC-F77E-4B3A-91C4-E4C3D671D6D4}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\tvtvSetup\tvtv_Wizard.exe
FirewallRules: [TCP Query User{E1F4401C-95BD-402C-9DB4-9F80F23C836A}C:\program files\terratec\terratec home cinema\versioncheck\versioncheck.exe] => (Allow) C:\program files\terratec\terratec home cinema\versioncheck\versioncheck.exe
FirewallRules: [UDP Query User{A919A04F-22E9-4F1C-B419-581BF64F03CA}C:\program files\terratec\terratec home cinema\versioncheck\versioncheck.exe] => (Allow) C:\program files\terratec\terratec home cinema\versioncheck\versioncheck.exe
FirewallRules: [TCP Query User{B018C01A-B6F6-45E0-A11C-3B0811DA2F0C}C:\programmejonas\eclipse-sdk-3.6.2-win32\eclipse\eclipse.exe] => (Block) C:\programmejonas\eclipse-sdk-3.6.2-win32\eclipse\eclipse.exe
FirewallRules: [UDP Query User{7A80BBCD-6AE9-4145-80D3-60AF268FC900}C:\programmejonas\eclipse-sdk-3.6.2-win32\eclipse\eclipse.exe] => (Block) C:\programmejonas\eclipse-sdk-3.6.2-win32\eclipse\eclipse.exe
FirewallRules: [TCP Query User{BE522805-BD65-4391-A54F-89CA1E987E64}C:\program files\terratec\terratec home cinema\versioncheck\versioncheck.exe] => (Allow) C:\program files\terratec\terratec home cinema\versioncheck\versioncheck.exe
FirewallRules: [UDP Query User{16FD6222-9F6C-43C5-907F-58406A0F91CE}C:\program files\terratec\terratec home cinema\versioncheck\versioncheck.exe] => (Allow) C:\program files\terratec\terratec home cinema\versioncheck\versioncheck.exe
FirewallRules: [{E2A31A10-9C22-4670-8319-E3C537BD8719}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [TCP Query User{C8B0BC7D-986C-40EF-8960-5DEAE2708BD1}C:\program files\tmnationsforever\tmforever.exe] => (Block) C:\program files\tmnationsforever\tmforever.exe
FirewallRules: [UDP Query User{D840C2DE-7340-4F8B-ADED-9D4E8A1AB6F2}C:\program files\tmnationsforever\tmforever.exe] => (Block) C:\program files\tmnationsforever\tmforever.exe
FirewallRules: [{4A03E388-E847-4603-85B5-7A21F6E5B28C}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{955432A8-C4B0-44C3-A0B0-2230049D6B4C}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{1F81D1E8-5D16-4DD7-8E17-410EB255B372}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{EFDBDE91-E0F8-470B-AA2F-750FACF6BFFC}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [{63714984-330D-47F1-B9C1-E747482F129A}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (05/07/2015 06:30:12 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC90.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"1".
Die abhängige Assemblierung "Microsoft.VC90.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (05/07/2015 06:29:33 PM) (Source: SideBySide) (EventID: 59) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "1". Fehler in Manifest- oder Richtliniendatei "2" in Zeile 3.
Ungültige XML-Syntax.

Error: (05/07/2015 03:04:56 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm WINWORD.EXE, Version 10.0.6866.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: 45c

Startzeit: 01d088c62fad3a6f

Endzeit: 12

Anwendungspfad: C:\PROGRA~1\MICROS~3\Office10\WINWORD.EXE

Berichts-ID: 9797493f-f4b9-11e4-9162-6c626d8fb072

Error: (05/07/2015 01:29:48 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 345231

Error: (05/07/2015 01:29:48 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 345231

Error: (05/07/2015 01:29:48 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (05/07/2015 01:24:18 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15210

Error: (05/07/2015 01:24:18 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 15210

Error: (05/07/2015 01:24:18 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (05/07/2015 01:24:17 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 14196


System errors:
=============
Error: (04/28/2015 09:45:29 AM) (Source: Server) (EventID: 2505) (User: )
Description: Aufgrund eines doppelten Netzwerknamens konnte zu der Transportschicht \Device\NetBT_Tcpip_{9A295CD5-A244-421C-A8EF-9E3A343737CB} vom Serverdienst nicht gebunden werden. Der Serverdienst konnte nicht gestartet werden.

Error: (04/15/2015 08:57:38 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows-Fehlerberichterstattungsdienst erreicht.

Error: (04/14/2015 11:23:53 PM) (Source: Ntfs) (EventID: 55) (User: )
Description: Die Dateisystemstruktur auf dem Datenträger ist beschädigt und unbrauchbar.
Führen Sie auf dem Volume "Boot" den Befehl "chkdsk" aus.

Error: (04/14/2015 06:57:48 PM) (Source: Schannel) (EventID: 4119) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung empfangen: 40.

Error: (04/14/2015 06:57:45 PM) (Source: Schannel) (EventID: 4119) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung empfangen: 40.

Error: (04/12/2015 07:19:23 PM) (Source: Server) (EventID: 2505) (User: )
Description: Aufgrund eines doppelten Netzwerknamens konnte zu der Transportschicht \Device\NetBT_Tcpip_{9A295CD5-A244-421C-A8EF-9E3A343737CB} vom Serverdienst nicht gebunden werden. Der Serverdienst konnte nicht gestartet werden.

Error: (04/08/2015 11:01:30 AM) (Source: Server) (EventID: 2505) (User: )
Description: Aufgrund eines doppelten Netzwerknamens konnte zu der Transportschicht \Device\NetBT_Tcpip_{9A295CD5-A244-421C-A8EF-9E3A343737CB} vom Serverdienst nicht gebunden werden. Der Serverdienst konnte nicht gestartet werden.

Error: (04/07/2015 00:52:01 PM) (Source: Server) (EventID: 2505) (User: )
Description: Aufgrund eines doppelten Netzwerknamens konnte zu der Transportschicht \Device\NetBT_Tcpip_{9A295CD5-A244-421C-A8EF-9E3A343737CB} vom Serverdienst nicht gebunden werden. Der Serverdienst konnte nicht gestartet werden.

Error: (04/07/2015 09:17:17 AM) (Source: Server) (EventID: 2505) (User: )
Description: Aufgrund eines doppelten Netzwerknamens konnte zu der Transportschicht \Device\NetBT_Tcpip_{9A295CD5-A244-421C-A8EF-9E3A343737CB} vom Serverdienst nicht gebunden werden. Der Serverdienst konnte nicht gestartet werden.

Error: (04/01/2015 09:45:45 AM) (Source: Schannel) (EventID: 4119) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung empfangen: 40.


Microsoft Office Sessions:
=========================
Error: (05/07/2015 06:30:12 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.VC90.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"C:\Program Files\OpenOffice.org 3\Basis\program\python-core-2.6.1\lib\distutils\command\wininst-9.0-amd64.exe

Error: (05/07/2015 06:29:33 PM) (Source: SideBySide) (EventID: 59) (User: )
Description: C:\Program Files\Microsoft\Search Enhancement Pack\Search Box Extension\SrchBxEx.dllC:\Program Files\Microsoft\Search Enhancement Pack\Search Box Extension\SrchBxEx.dll2

Error: (05/07/2015 03:04:56 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: WINWORD.EXE10.0.6866.045c01d088c62fad3a6f12C:\PROGRA~1\MICROS~3\Office10\WINWORD.EXE9797493f-f4b9-11e4-9162-6c626d8fb072

Error: (05/07/2015 01:29:48 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 345231

Error: (05/07/2015 01:29:48 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 345231

Error: (05/07/2015 01:29:48 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (05/07/2015 01:24:18 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15210

Error: (05/07/2015 01:24:18 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 15210

Error: (05/07/2015 01:24:18 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (05/07/2015 01:24:17 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 14196


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i3 CPU 550 @ 3.20GHz
Percentage of memory in use: 53%
Total physical RAM: 3063.11 MB
Available physical RAM: 1414.05 MB
Total Pagefile: 6124.52 MB
Available Pagefile: 3883.68 MB
Total Virtual: 2047.88 MB
Available Virtual: 1895.2 MB

==================== Drives ================================

Drive c: (Boot) (Fixed) (Total:1356.17 GB) (Free:1077.39 GB) NTFS
Drive d: (Recover) (Fixed) (Total:40 GB) (Free:20.99 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 1397.3 GB) (Disk ID: 2BD2C32A)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=1356.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=40 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=1 GB) - (Type=12)

==================== End Of Log ============================
         
--- --- ---



Code:
ATTFilter
GMER Logfile:
Code:
ATTFilter
GMER 2.1.19357 - hxxp://www.gmer.net
Rootkit scan 2015-05-07 21:29:55
Windows 6.1.7601 Service Pack 1 \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 WDC_WD15 rev.51.0 1397,27GB
Running: Gmer-19357.exe; Driver: C:\Users\JONASR~1\AppData\Local\Temp\pwldypog.sys


---- System - GMER 2.1 ----

SSDT   8FC53AEE                                                                                     ZwCreateSection
SSDT   8FC53AC6                                                                                     ZwCreateSymbolicLinkObject
SSDT   8FC53ACB                                                                                     ZwLoadDriver
SSDT   8FC53AC1                                                                                     ZwOpenSection
SSDT   8FC53AF8                                                                                     ZwRequestWaitReplyPort
SSDT   8FC53AF3                                                                                     ZwSetContextThread
SSDT   8FC53AFD                                                                                     ZwSetSecurityObject
SSDT   8FC53AD0                                                                                     ZwSetSystemInformation
SSDT   8FC53B02                                                                                     ZwSystemDebugControl
SSDT   8FC53A8F                                                                                     ZwTerminateProcess
SSDT   8FC53A8A                                                                                     ZwWriteVirtualMemory

---- Kernel code sections - GMER 2.1 ----

.text  ntkrnlpa.exe!ZwRequestWaitReplyPort + 1499                                                   82E5B9F5 1 Byte  [06]
.text  ntkrnlpa.exe!KiDispatchInterrupt + 5A2                                                       82E95992 19 Bytes  [E0, 0F, BA, F0, 07, 73, 09, ...] {LOOPNZ 0x11; MOV EDX, 0x97307f0; MOV CR4, EAX; OR AL, 0x80; MOV CR4, EAX; RET ; MOV ECX, CR3}
.text  ntkrnlpa.exe!KeRemoveQueueEx + 11F7                                                          82E9CCDC 4 Bytes  [EE, 3A, C5, 8F]
.text  ntkrnlpa.exe!KeRemoveQueueEx + 11FF                                                          82E9CCE4 4 Bytes  [C6, 3A, C5, 8F]
.text  ntkrnlpa.exe!KeRemoveQueueEx + 1313                                                          82E9CDF8 4 Bytes  [CB, 3A, C5, 8F]
.text  ntkrnlpa.exe!KeRemoveQueueEx + 13AF                                                          82E9CE94 4 Bytes  [C1, 3A, C5, 8F]
.text  ntkrnlpa.exe!KeRemoveQueueEx + 1553                                                          82E9D038 4 Bytes  [F8, 3A, C5, 8F]
.text  ...                                                                                          
?      System32\drivers\etdiut.sys                                                                  Das System kann den angegebenen Pfad nicht finden. !
.text  C:\Windows\system32\DRIVERS\atikmdag.sys                                                     section is writeable [0x91A0F000, 0x2FBAB4, 0xE8000020]

---- Registry - GMER 2.1 ----

Reg    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\System\Active           
Reg    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\System\Active@46C54BC5  804

---- Disk sectors - GMER 2.1 ----

Disk   \Device\Harddisk0\DR0                                                                        unknown MBR code

---- EOF - GMER 2.1 ----
         
--- --- ---

Code:
ATTFilter
 Malwarebytes Anti-Malware 
www.malwarebytes.org

Suchlauf Datum: 07.05.2015
Suchlauf-Zeit: 18:56:48
Logdatei: Malwarebytes Anti-Malware Logdatei.txt
Administrator: Ja

Version: 2.00.4.1028
Malware Datenbank: v2015.05.07.03
Rootkit Datenbank: v2015.04.21.01
Lizenz: Testversion
Malware Schutz: Aktiviert
Bösartiger Webseiten Schutz: Aktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 7 Service Pack 1
CPU: x86
Dateisystem: NTFS
Benutzer: Jonas Röhm

Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 339184
Verstrichene Zeit: 24 Min, 58 Sek

Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Warnen
PUM: Aktiviert

Prozesse: 0
(Keine schädliche Elemente gefunden)

Module: 0
(Keine schädliche Elemente gefunden)

Registrierungsschlüssel: 1
PUP.Optional.ReMarkit.A, HKU\S-1-5-21-1471510115-2474919708-3564051268-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Re_markit, Löschen bei Neustart, [2aa50e820882b3836eb841ac2ad9e020], 

Registrierungswerte: 0
(Keine schädliche Elemente gefunden)

Registrierungsdaten: 0
(Keine schädliche Elemente gefunden)

Ordner: 6
PUP.Optional.Searchagent, C:\ProgramData\RHelpers, In Quarantäne, [e6e9ddb309810f27e3434f4ebf44a25e], 
PUP.Optional.FlashEnhancer.A, C:\Users\Jonas Röhm\AppData\Local\Temp\flashEnhancer1, In Quarantäne, [aa25256b2c5eae88d88af2adb2511ce4], 
PUP.Optional.FlashEnhancer.A, C:\Users\Jonas Röhm\AppData\Local\Temp\flashEnhancer1\Install, In Quarantäne, [aa25256b2c5eae88d88af2adb2511ce4], 
PUP.Optional.Softonic.A, C:\Users\Jonas Röhm\AppData\Local\Temp\mt_ffx\Softonic, In Quarantäne, [c30ce3ad2f5b70c60881287afe058977], 
PUP.Optional.Softonic.A, C:\Users\Jonas Röhm\AppData\Local\Temp\mt_ffx\Softonic\softonic, In Quarantäne, [c30ce3ad2f5b70c60881287afe058977], 
PUP.Optional.Softonic.A, C:\Users\Jonas Röhm\AppData\Local\Temp\mt_ffx\Softonic\softonic\1.5.11.5, In Quarantäne, [c30ce3ad2f5b70c60881287afe058977], 

Dateien: 3
PUP.Optional.Softonic.A, C:\$RECYCLE.BIN\S-1-5-21-1471510115-2474919708-3564051268-1001\$RJ4HWJ0.exe, In Quarantäne, [5c734e42810967cf300a39c4e1201ee2], 
PUP.Optional.SkyTech.A, C:\Users\Jonas Röhm\AppData\Local\Temp\fullpackage_temp1388924412\QQBrowserFrame.dll, In Quarantäne, [b619f7990e7c2412217fae587092bc44], 
PUP.Optional.FlashEnhancer.A, C:\Users\Jonas Röhm\AppData\Local\Temp\flashEnhancer1\Install\Lightspark-0.5.3-win32.exe, In Quarantäne, [aa25256b2c5eae88d88af2adb2511ce4], 

Physische Sektoren: 0
(Keine schädliche Elemente gefunden)


(end)
         



Code:
ATTFilter
Exportierte Ereignisse:

07.05.2015 18:52 [System-Scanner] Malware gefunden
      Die Datei 'C:\ProgramData\Updater\Uninstall.exe'
      enthielt einen Virus oder unerwünschtes Programm 'ADWARE/Adware.Gen' [adware].
      Durchgeführte Aktion(en):
      Die Datei wurde ins Quarantäneverzeichnis unter dem Namen '48141930.qua' 
      verschoben!

07.05.2015 18:52 [System-Scanner] Malware gefunden
      Die Datei 'C:\Users\Jonas 
      *****\AppData\Local\Temp\fullpackage_temp1388924412\tmp\desk365.exe'
      enthielt einen Virus oder unerwünschtes Programm 'ADWARE/Adware.Gen' [adware].
      Durchgeführte Aktion(en):
      Die Datei wurde ins Quarantäneverzeichnis unter dem Namen '50893686.qua' 
      verschoben!
         

Geändert von Patroklos91 (07.05.2015 um 21:29 Uhr)

Alt 07.05.2015, 21:48   #2
deeprybka
/// TB-Ausbilder
/// Anleitungs-Guru
 
Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet - Standard

Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet





Mein Name ist Jürgen und ich werde Dir bei Deinem Problem behilflich sein. Zusammen schaffen wir das...
  • Bitte arbeite alle Schritte der Reihe nach ab.
  • Lese die Anleitungen sorgfältig durch bevor Du beginnst. Wenn es Probleme gibt oder Du etwas nicht verstehst, dann stoppe mit Deiner Ausführung und beschreibe mir das Problem.
  • Führe bitte nur Scans durch, zu denen Du von mir aufgefordert wurdest.
  • Bitte kein Crossposting (posten in mehreren Foren).
  • Installiere oder deinstalliere während der Bereinigung keine Software, außer Du wurdest dazu aufgefordert.
  • Speichere alle unsere Tools auf dem Desktop ab. Link: So ladet Ihr unsere Tools richtig
  • Poste die Logfiles direkt in Deinen Thread in Code-Tags.
  • Bedenke, dass wir hier alle während unserer Freizeit tätig sind, wenn du innerhalb von 24 Stunden nichts von mir liest, dann schreibe mir bitte eine PM.

Hinweis:
Ich kann Dir niemals eine Garantie geben, dass wir alle schädlichen Dateien finden werden.
Eine Formatierung ist meist der schnellere und immer der sicherste Weg, aber auch nur bei wirklicher Malware empfehlenswert.
Adware & Co. können wir sehr gut entfernen.
Solltest Du Dich für eine Bereinigung entscheiden, arbeite solange mit, bis Du mein clean bekommst.


Los geht's:

Hast Du den Email-Anhang noch?

Schritt 1
Downloade dir bitte TDSSKiller TDSSKiller.exe und speichere diese Datei auf dem Desktop
  • Starte die TDSSKiller.exe - Einstellen wie in der Anleitung zu TDSSKiller beschrieben.
  • Drücke Start Scan
  • Sollten infizierte Objekte gefunden werden, wähle keinesfalls Cure. Wähle Skip und klicke auf Continue.
    TDSSKiller wird eine Logfile auf deinem Systemlaufwerk speichern (Meistens C:\)
    Als Beispiel: C:\TDSSKiller.<Version_Datum_Uhrzeit>log.txt
Poste den Inhalt bitte in jedem Fall hier in deinen Thread.
__________________

__________________

Alt 07.05.2015, 22:38   #3
Patroklos91
 
Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet - Standard

TDSS Killer ausgeführt



Hi Jürgen,

vielen Dank für deine Hilfe!
Den PDF-Anhang habe ich einmal geöffnet und dann im Unverstand auf den darin enthaltenen Web-Link geklickt. Es hat sich daraufhin aber keine Website aufgebaut und ich habe den Anhang daraufhin wieder geschlossen. Die Mail samt Anhang ist nun im Papierkorb meines Mailpostfachs.

Hier der Inhalt des Log-Files:

Code:
ATTFilter
23:26:44.0250 0x17c0  TDSS rootkit removing tool 3.0.0.44 Jan 22 2015 08:27:04
23:28:31.0518 0x17c0  ============================================================
23:28:31.0518 0x17c0  Current date / time: 2015/05/07 23:28:31.0518
23:28:31.0518 0x17c0  SystemInfo:
23:28:31.0518 0x17c0  
23:28:31.0518 0x17c0  OS Version: 6.1.7601 ServicePack: 1.0
23:28:31.0518 0x17c0  Product type: Workstation
23:28:31.0518 0x17c0  ComputerName: ZUKUNFT
23:28:31.0518 0x17c0  UserName: Jonas Röhm
23:28:31.0518 0x17c0  Windows directory: C:\Windows
23:28:31.0518 0x17c0  System windows directory: C:\Windows
23:28:31.0518 0x17c0  Processor architecture: Intel x86
23:28:31.0518 0x17c0  Number of processors: 4
23:28:31.0518 0x17c0  Page size: 0x1000
23:28:31.0518 0x17c0  Boot type: Normal boot
23:28:31.0518 0x17c0  ============================================================
23:28:32.0891 0x17c0  KLMD registered as C:\Windows\system32\drivers\76162457.sys
23:28:33.0500 0x17c0  System UUID: {C6A945E6-73D5-0FCB-3362-83AD22DEE480}
23:28:34.0888 0x17c0  Drive \Device\Harddisk0\DR0 - Size: 0x15D50F66000 ( 1397.27 Gb ), SectorSize: 0x200, Cylinders: 0x2C881, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
23:28:34.0935 0x17c0  ============================================================
23:28:34.0935 0x17c0  \Device\Harddisk0\DR0:
23:28:34.0935 0x17c0  MBR partitions:
23:28:34.0935 0x17c0  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
23:28:34.0935 0x17c0  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0xA9854800
23:28:34.0935 0x17c0  \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0xA9887000, BlocksNum 0x5000000
23:28:34.0935 0x17c0  ============================================================
23:28:34.0966 0x17c0  C: <-> \Device\Harddisk0\DR0\Partition2
23:28:35.0013 0x17c0  D: <-> \Device\Harddisk0\DR0\Partition3
23:28:35.0028 0x17c0  ============================================================
23:28:35.0028 0x17c0  Initialize success
23:28:35.0028 0x17c0  ============================================================
23:29:31.0893 0x0ef4  ============================================================
23:29:31.0893 0x0ef4  Scan started
23:29:31.0893 0x0ef4  Mode: Manual; SigCheck; TDLFS; 
23:29:31.0893 0x0ef4  ============================================================
23:29:31.0893 0x0ef4  KSN ping started
23:29:34.0638 0x0ef4  KSN ping finished: true
23:29:36.0885 0x0ef4  ================ Scan system memory ========================
23:29:36.0885 0x0ef4  System memory - ok
23:29:36.0885 0x0ef4  ================ Scan services =============================
23:29:37.0025 0x0ef4  [ 1B133875B8AA8AC48969BD3458AFE9F5, 01753BDD47F3F9BC0E0D23A069B9C56D4AE6A6B6295BC19B95AE245D25B12744 ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
23:29:37.0306 0x0ef4  1394ohci - ok
23:29:37.0353 0x0ef4  [ CEA80C80BED809AA0DA6FEBC04733349, AE69C142DC2210A4AE657C23CEA4A6E7CB32C4F4EBA039414123CAC52157509B ] ACPI            C:\Windows\system32\drivers\ACPI.sys
23:29:37.0399 0x0ef4  ACPI - ok
23:29:37.0431 0x0ef4  [ 1EFBC664ABFF416D1D07DB115DCB264F, BF94D069D692140B792DBF4FD3CB0127D27C26CC5BFB6B0C28A8B6346767EE58 ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
23:29:37.0524 0x0ef4  AcpiPmi - ok
23:29:37.0618 0x0ef4  [ B04A4810C6CC205F9DC72DC22E4AB236, 547321F5C28C80D4818372D65E2A33D4BAC593015DD6613B24586FE4B4A95D5D ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
23:29:37.0633 0x0ef4  AdobeFlashPlayerUpdateSvc - ok
23:29:37.0711 0x0ef4  [ 21E785EBD7DC90A06391141AAC7892FB, A2D3D764C5E6DC0AD5AAF48485FFB8B121D2A40DC08ECF2D2CB92278A1002B25 ] adp94xx         C:\Windows\system32\DRIVERS\adp94xx.sys
23:29:37.0789 0x0ef4  adp94xx - ok
23:29:37.0867 0x0ef4  [ 0C676BC278D5B59FF5ABD57BBE9123F2, 339E8A433D186BAAB6FCB44C82CC9FB6FCD63C87981449494CBEB2072CB6B7BB ] adpahci         C:\Windows\system32\DRIVERS\adpahci.sys
23:29:37.0961 0x0ef4  adpahci - ok
23:29:38.0008 0x0ef4  [ 7C7B5EE4B7B822EC85321FE23A27DB33, A934AFB71D439555E6376DA9B34F82E8D39A300A4547BE9AC9311F6A3C36270C ] adpu320         C:\Windows\system32\DRIVERS\adpu320.sys
23:29:38.0055 0x0ef4  adpu320 - ok
23:29:38.0101 0x0ef4  [ 8B5EEFEEC1E6D1A72A06C526628AD161, 026CDF4C96F4D493E7BABF79A14C4B0B5ADCCEF0B081FFFA2E3B243B2414167F ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
23:29:38.0179 0x0ef4  AeLookupSvc - ok
23:29:38.0242 0x0ef4  [ 4706A9CAEEAF149AD2857D0A0B57F177, EF3D209D38F5D000E89C2C7DBDD65D55E337789A141CDC81F9361B83E8F5234D ] AF15BDA         C:\Windows\system32\DRIVERS\AF15BDA.sys
23:29:38.0413 0x0ef4  AF15BDA - ok
23:29:38.0491 0x0ef4  [ D0B388DA1D111A34366E04EB4A5DD156, 60D226F027F4025CC032CAFF73A80FAFB5FA75445654FDCF80CA8C0419C6E938 ] AFD             C:\Windows\system32\drivers\afd.sys
23:29:38.0710 0x0ef4  AFD - ok
23:29:38.0741 0x0ef4  [ 507812C3054C21CEF746B6EE3D04DD6E, D7E59350AC338AD229E3D10C76E32AE16D120311B263714A9CD94AB538633B0E ] agp440          C:\Windows\system32\drivers\agp440.sys
23:29:38.0803 0x0ef4  agp440 - ok
23:29:38.0835 0x0ef4  [ 8B30250D573A8F6B4BD23195160D8707, 64EC289AFCD63D84EAFD9D81C50D0A77BCC79A1EFF32C50B2776BB0C0151757D ] aic78xx         C:\Windows\system32\DRIVERS\djsvs.sys
23:29:38.0881 0x0ef4  aic78xx - ok
23:29:38.0944 0x0ef4  [ 18A54E132947CD98FEA9ACCC57F98F13, 9D39AF972785E49F0DD12C4BAEF39A79CD69F098886BF152AF1B7CCE2E902115 ] ALG             C:\Windows\System32\alg.exe
23:29:39.0023 0x0ef4  ALG - ok
23:29:39.0038 0x0ef4  [ 0D40BCF52EA90FC7DF2AEAB6503DEA44, 1D1AA8F50935D976C29DE7A84708CADBBBDD936F0DD2C059E820F0D21367B3B6 ] aliide          C:\Windows\system32\drivers\aliide.sys
23:29:39.0085 0x0ef4  aliide - ok
23:29:39.0132 0x0ef4  [ 60201AD353105D8C6796C1B69E6C49F0, 604D6D6C2CCED6461DEFDCD030B153F643F242EC7FF958333D3747E01E9364FA ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
23:29:39.0210 0x0ef4  AMD External Events Utility - ok
23:29:39.0226 0x0ef4  [ 3C6600A0696E90A463771C7422E23AB5, 370B33DC1C25B981628A318BAE434A78A5F0A0DA93C2896DC7A3D7B87AE1A5E7 ] amdagp          C:\Windows\system32\drivers\amdagp.sys
23:29:39.0272 0x0ef4  amdagp - ok
23:29:39.0335 0x0ef4  [ CD5914170297126B6266860198D1D4F0, 2239FCBD1A7EC27CE4F10DA36AE6BD6CCB87E5128C82CA71B84BFE5AF5602A60 ] amdide          C:\Windows\system32\drivers\amdide.sys
23:29:39.0382 0x0ef4  amdide - ok
23:29:39.0413 0x0ef4  [ 00DDA200D71BAC534BF56A9DB5DFD666, CA316B1FFD85BA1CF8664B3229DA1F238A5341E016059F7ED89702324CFD124B ] AmdK8           C:\Windows\system32\DRIVERS\amdk8.sys
23:29:39.0506 0x0ef4  AmdK8 - ok
23:29:39.0834 0x0ef4  [ 51610B74A9A1D84DC86FCE1019BEAFF4, F5DBB2FA37830931AE2C66A8E2FB6BE3E94EED1978C626A78FECFA158C78B0EB ] amdkmdag        C:\Windows\system32\DRIVERS\atikmdag.sys
23:29:40.0520 0x0ef4  amdkmdag - ok
23:29:40.0567 0x0ef4  [ CD1D86AB81EECE67D7BD6F7EF9786CCC, D48DADCDBFF5A7628A26F35B2CB2AA65FFFFE1AE95A4E274B4E312472650FA7C ] amdkmdap        C:\Windows\system32\DRIVERS\atikmpag.sys
23:29:40.0598 0x0ef4  amdkmdap - ok
23:29:40.0598 0x0ef4  [ 3CBF30F5370FDA40DD3E87DF38EA53B6, 7EACF1743367BE805357B6FD10F8F99E9B1C301FE3782D77719347B13DFA65EC ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
23:29:40.0676 0x0ef4  AmdPPM - ok
23:29:40.0708 0x0ef4  [ D320BF87125326F996D4904FE24300FC, F767D8C5C58D57202905D829F7AE1B1FF33937F407FDCE4C90E32A6638F27416 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
23:29:40.0754 0x0ef4  amdsata - ok
23:29:40.0786 0x0ef4  [ EA43AF0C423FF267355F74E7A53BDABA, 3F1335909AB0281A2FBDD7AD90E18309E091656CD32B48894B992789D8C61DB4 ] amdsbs          C:\Windows\system32\DRIVERS\amdsbs.sys
23:29:40.0832 0x0ef4  amdsbs - ok
23:29:40.0864 0x0ef4  [ 46387FB17B086D16DEA267D5BE23A2F2, 8B8AC61B91F154B4EB5CC6DECB5FCCEBA8B42EFE94859947136AD06681EA8ED0 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
23:29:40.0910 0x0ef4  amdxata - ok
23:29:41.0035 0x0ef4  [ 62A6B0A393591878A1E00224EA698AD7, 691B6E248D0682477543455B67E85C768A4A53A92139E153320ED4E4CED1E010 ] AntiVirMailService C:\Program Files\Avira\AntiVir Desktop\avmailc7.exe
23:29:41.0160 0x0ef4  AntiVirMailService - ok
23:29:41.0238 0x0ef4  [ F36D18EF1E66F92094AD89D17BEF007C, A5C793B340311CB7A301B77316E1976E3CD7CA9470CE5F1062CB003BCD4C155C ] AntiVirSchedulerService C:\Program Files\Avira\AntiVir Desktop\sched.exe
23:29:41.0269 0x0ef4  AntiVirSchedulerService - ok
23:29:41.0363 0x0ef4  [ F36D18EF1E66F92094AD89D17BEF007C, A5C793B340311CB7A301B77316E1976E3CD7CA9470CE5F1062CB003BCD4C155C ] AntiVirService  C:\Program Files\Avira\AntiVir Desktop\avguard.exe
23:29:41.0394 0x0ef4  AntiVirService - ok
23:29:41.0488 0x0ef4  [ 5B7924A162A604B43FFBEE9384ABE77B, 1A1A836C145BAD330EDC778D4FD18CE737EB10E4B22AE8A39CDDBAAC36B0FF11 ] AntiVirWebService C:\Program Files\Avira\AntiVir Desktop\avwebg7.exe
23:29:41.0534 0x0ef4  AntiVirWebService - ok
23:29:41.0597 0x0ef4  [ 81F97D8F8B3FB94A451CC6F7CF8B2965, 8DEBA4E47E1016D69740C0BB7CDD23852D86E0D42C1C1EA5A847ECB115C38CB1 ] AppID           C:\Windows\system32\drivers\appid.sys
23:29:41.0690 0x0ef4  AppID - ok
23:29:41.0706 0x0ef4  [ F5090F8FA6757C58E17BAEAA86093636, 5E14CF3032DF5801240F45C59AA93962EA41AA5648A0C6458D16D9B9D95A131F ] AppIDSvc        C:\Windows\System32\appidsvc.dll
23:29:41.0768 0x0ef4  AppIDSvc - ok
23:29:41.0784 0x0ef4  [ EACFDF31921F51C097629F1F3C9129B4, 24138755D823E69760579ECBD672421192457CDC9941B2BC499C2D34D83E86C3 ] Appinfo         C:\Windows\System32\appinfo.dll
23:29:41.0878 0x0ef4  Appinfo - ok
23:29:41.0956 0x0ef4  [ 3DEBBECF665DCDDE3A95D9B902010817, F56F4A7A36FAF5FC2306E108A24E75E13EE1F2D1002D9CB71E3327A55F8694CE ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
23:29:42.0002 0x0ef4  Apple Mobile Device - ok
23:29:42.0018 0x0ef4  [ 2932004F49677BD84DBC72EDB754FFB3, 73F84582244AC53994A2F4499A119B4A84A6BF7FD3046C29A8080C763DE540B8 ] arc             C:\Windows\system32\DRIVERS\arc.sys
23:29:42.0065 0x0ef4  arc - ok
23:29:42.0080 0x0ef4  [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7, F7C9C3B4F2C816F57A43B2921672858C291054220BADE291044343778216F6BA ] arcsas          C:\Windows\system32\DRIVERS\arcsas.sys
23:29:42.0127 0x0ef4  arcsas - ok
23:29:42.0236 0x0ef4  [ 9D768C43FEF254DD50B1DBF8AD5C4C0B, A50854EA5C08605133B8BB4DFDC6090357C5665314AA72E0BFA1E07D4E451F09 ] aspnet_state    C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
23:29:42.0330 0x0ef4  aspnet_state - ok
23:29:42.0361 0x0ef4  [ ADD2ADE1C2B285AB8378D2DAAF991481, 7965A705F37924C0EC7A934E64E89C5DF4069816E2EEA3509E0AC90F78910519 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
23:29:42.0502 0x0ef4  AsyncMac - ok
23:29:42.0533 0x0ef4  [ 338C86357871C167A96AB976519BF59E, F28CC534523D1701B0552F5D7E18E88369C4218BDB1F69110C3E31D395884AD6 ] atapi           C:\Windows\system32\drivers\atapi.sys
23:29:42.0564 0x0ef4  atapi - ok
23:29:42.0611 0x0ef4  [ 8DF873D0587596C1D35A9CECECC61DA1, 41974FCA452CE48C5A6040BF99D1AC9A1C13FF38DF341443CCE2D2ABBC4C9453 ] AtiHdmiService  C:\Windows\system32\drivers\AtiHdmi.sys
23:29:42.0658 0x0ef4  AtiHdmiService - ok
23:29:42.0720 0x0ef4  [ C1619A13B10CAC5038BF7129F57D8DE3, 9F71EA6C844650658938E68CCC1383F92D37C68E46E08461A8351491185BA791 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
23:29:42.0782 0x0ef4  AudioEndpointBuilder - ok
23:29:42.0829 0x0ef4  [ C1619A13B10CAC5038BF7129F57D8DE3, 9F71EA6C844650658938E68CCC1383F92D37C68E46E08461A8351491185BA791 ] Audiosrv        C:\Windows\System32\Audiosrv.dll
23:29:42.0876 0x0ef4  Audiosrv - ok
23:29:42.0907 0x0ef4  [ AF5DA81B19AFA730F1E5246AD81D140A, 532951071F56896A3B5D47874C14D996C8620EA02F87D4BA21B083EC804FB166 ] avgntflt        C:\Windows\system32\DRIVERS\avgntflt.sys
23:29:42.0954 0x0ef4  avgntflt - ok
23:29:43.0048 0x0ef4  [ A5674637BCA212D9FE136ADFA04C9857, 95F3632EBB041C539816D285EBE1F379D46A4187379C69D4683D9F4DECBDB80C ] avipbb          C:\Windows\system32\DRIVERS\avipbb.sys
23:29:43.0079 0x0ef4  avipbb - ok
23:29:43.0141 0x0ef4  [ 0D32033DCB359FD98B4C3513EF849FE6, 5870D67526BC29D888DAF8DBAB04B1E97ED5C7C51484ED400A5E65D0EB61576A ] Avira.OE.ServiceHost C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe
23:29:43.0172 0x0ef4  Avira.OE.ServiceHost - ok
23:29:43.0188 0x0ef4  [ D8C712305F73CD34D1B344810E522728, 49A474FF6CA44E8427D7A8290B47395125B0148AF384CF2B3B1FA495A4718CBA ] avkmgr          C:\Windows\system32\DRIVERS\avkmgr.sys
23:29:43.0219 0x0ef4  avkmgr - ok
23:29:43.0266 0x0ef4  [ 3303FB85532093FC6723632B5947E8C4, F8301069A8EAD7303CAE5B7CAE3F119747E7B7B4402178018EB5254087238A42 ] avnetflt        C:\Windows\system32\DRIVERS\avnetflt.sys
23:29:43.0297 0x0ef4  avnetflt - ok
23:29:43.0328 0x0ef4  [ 6E30D02AAC9CAC84F421622E3A2F6178, 229DC527C1D6C778BCA2C855A2A6F6D2C4B0F4F6DE56C886B3AAD26E3347952C ] AxInstSV        C:\Windows\System32\AxInstSV.dll
23:29:43.0453 0x0ef4  AxInstSV - ok
23:29:43.0484 0x0ef4  [ 1A231ABEC60FD316EC54C66715543CEC, 09E2897BA80737997A286EA5408C03DD3CC0EBACD24CB391C2455B6D4BE7D67E ] b06bdrv         C:\Windows\system32\DRIVERS\bxvbdx.sys
23:29:43.0578 0x0ef4  b06bdrv - ok
23:29:43.0609 0x0ef4  [ BD8869EB9CDE6BBE4508D869929869EE, F4363A12EBFDBB89C69FD59B22F9EE05BADA07D477A1DF2DE01F59D6EE496543 ] b57nd60x        C:\Windows\system32\DRIVERS\b57nd60x.sys
23:29:43.0703 0x0ef4  b57nd60x - ok
23:29:43.0734 0x0ef4  [ EE1E9C3BB8228AE423DD38DB69128E71, ED54FD9795F3A4D32F02BED6052AD9404409A05644CDBEBFF19C662D104DA95A ] BDESVC          C:\Windows\System32\bdesvc.dll
23:29:43.0859 0x0ef4  BDESVC - ok
23:29:43.0874 0x0ef4  [ 505506526A9D467307B3C393DEDAF858, 8AD6F1492E357F57CF42261497BA29122045D4FC0DCC9669AA5AC9B2A4BABFA4 ] Beep            C:\Windows\system32\drivers\Beep.sys
23:29:43.0937 0x0ef4  Beep - ok
23:29:43.0999 0x0ef4  [ 1E2BAC209D184BB851E1A187D8A29136, 53933C938DA5126986FFF2918C1F522ABE93ABAB460AE32E4453161C2F7B68DF ] BFE             C:\Windows\System32\bfe.dll
23:29:44.0108 0x0ef4  BFE - ok
23:29:44.0140 0x0ef4  [ E585445D5021971FAE10393F0F1C3961, 178C008A9A0A6BFDA65EB0B98C510271360AD4474F22F13594F5EB60AA4E1CF5 ] BITS            C:\Windows\System32\qmgr.dll
23:29:44.0327 0x0ef4  BITS - ok
23:29:44.0374 0x0ef4  [ 2287078ED48FCFC477B05B20CF38F36F, 55BCA6174E6034A8D61CBE4126B2F1989F6052BFA624BEA9C0A0A664AEC74521 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
23:29:44.0436 0x0ef4  blbdrive - ok
23:29:44.0498 0x0ef4  [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A, 10F21999FF6B1D410EBF280F7F27DEACA5289739CF12F4293B614B8FC6C88DCC ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
23:29:44.0545 0x0ef4  Bonjour Service - ok
23:29:44.0561 0x0ef4  [ 8F2DA3028D5FCBD1A060A3DE64CD6506, E234672E9CFE1A95AD2E78E306E41E010B870221E6EBBC0E2B0BE2FA5CE0CD76 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
23:29:44.0654 0x0ef4  bowser - ok
23:29:44.0670 0x0ef4  [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo        C:\Windows\system32\DRIVERS\BrFiltLo.sys
23:29:44.0748 0x0ef4  BrFiltLo - ok
23:29:44.0779 0x0ef4  [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp        C:\Windows\system32\DRIVERS\BrFiltUp.sys
23:29:44.0842 0x0ef4  BrFiltUp - ok
23:29:44.0888 0x0ef4  [ 3DAA727B5B0A45039B0E1C9A211B8400, 903B51E75F0C503A0E255120F53BF51B047B219FEC1E15F2F1D02DDD562FC73B ] Browser         C:\Windows\System32\browser.dll
23:29:44.0966 0x0ef4  Browser - ok
23:29:44.0998 0x0ef4  [ 845B8CE732E67F3B4133164868C666EA, 9309B094CD9B5EBC46295A5EB806BED472C3CEDE3B5F6F497EBDABA496A2A27F ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
23:29:45.0122 0x0ef4  Brserid - ok
23:29:45.0138 0x0ef4  [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
23:29:45.0200 0x0ef4  BrSerWdm - ok
23:29:45.0216 0x0ef4  [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
23:29:45.0294 0x0ef4  BrUsbMdm - ok
23:29:45.0310 0x0ef4  [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
23:29:45.0372 0x0ef4  BrUsbSer - ok
23:29:45.0403 0x0ef4  [ ED3DF7C56CE0084EB2034432FC56565A, B5B75E002E7BC0209582C635CCCA26DB569BDB23C33A126634E00C6434BF941B ] BTHMODEM        C:\Windows\system32\DRIVERS\bthmodem.sys
23:29:45.0450 0x0ef4  BTHMODEM - ok
23:29:45.0481 0x0ef4  [ 1DF19C96EEF6C29D1C3E1A8678E07190, 1F4BB161FF3A1C5B1465BB52F3520FEDB7ACB1FAA132466F07D16DB8E394AEA5 ] bthserv         C:\Windows\system32\bthserv.dll
23:29:45.0559 0x0ef4  bthserv - ok
23:29:45.0590 0x0ef4  [ 77EA11B065E0A8AB902D78145CA51E10, 160EB3BBE9E5F3CC4A02584E6F2576A812C7565B940D74838B983F1EE51FA73A ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
23:29:45.0668 0x0ef4  cdfs - ok
23:29:45.0700 0x0ef4  [ BE167ED0FDB9C1FA1133953C18D5A6C9, E26A851CA13E7300F977E5B20FA5D25FD0E1442AB6AD5DB58BBDB2DAAD87027C ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
23:29:45.0778 0x0ef4  cdrom - ok
23:29:45.0809 0x0ef4  [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] CertPropSvc     C:\Windows\System32\certprop.dll
23:29:45.0887 0x0ef4  CertPropSvc - ok
23:29:45.0934 0x0ef4  [ 3FE3FE94A34DF6FB06E6418D0F6A0060, 6B3A2A26609A75B690D4C0B3059E40822F3B3DB08943F58EC496BABDA7D0A735 ] circlass        C:\Windows\system32\DRIVERS\circlass.sys
23:29:45.0980 0x0ef4  circlass - ok
23:29:46.0012 0x0ef4  [ 33A60554882FDF59CDA3E1806370BBA1, 3DE5451E1CB84AAEBD03F54BEFC670C401447B4881A8B022748B6ECF0F500F01 ] CLFS            C:\Windows\system32\CLFS.sys
23:29:46.0074 0x0ef4  CLFS - ok
23:29:46.0121 0x0ef4  [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
23:29:46.0168 0x0ef4  clr_optimization_v2.0.50727_32 - ok
23:29:46.0214 0x0ef4  [ E87213F37A13E2B54391E40934F071D0, 7EB221127EFB5BF158FB03D18EFDA2C55FB6CE3D1A1FE69C01D70DBED02C87E5 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
23:29:46.0308 0x0ef4  clr_optimization_v4.0.30319_32 - ok
23:29:46.0324 0x0ef4  [ DEA805815E587DAD1DD2C502220B5616, 2D6A7668C95352B818F5EC59FF462894935833D34190257DA9CAC7E67FD3631C ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
23:29:46.0386 0x0ef4  CmBatt - ok
23:29:46.0417 0x0ef4  [ C537B1DB64D495B9B4717B4D6D9EDBF2, 400EEFE662DE117C9CC956E4CBD5E98F28F962E7447CD93E8A78FDD8CA39EB4B ] cmdide          C:\Windows\system32\drivers\cmdide.sys
23:29:46.0464 0x0ef4  cmdide - ok
23:29:46.0511 0x0ef4  [ 3051724F223EA48968B19567DE2A81F4, DCC27DE1B2B35866FC6DBDE95A368E7D0D346B6C3F31D0BACA63DD39B0A8874E ] CNG             C:\Windows\system32\Drivers\cng.sys
23:29:46.0589 0x0ef4  CNG - ok
23:29:46.0620 0x0ef4  [ A6023D3823C37043986713F118A89BEE, FAC239A7FA6251C7EDFFA34B4BAE3910B8BC0BD4A3574B6DB6931A8D691E207B ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
23:29:46.0651 0x0ef4  Compbatt - ok
23:29:46.0667 0x0ef4  [ CBE8C58A8579CFE5FCCF809E6F114E89, AC083A1C649EBA18C59FCC1772D0784B10E2B8C63094E3C14388E147DBC3F6DF ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
23:29:46.0745 0x0ef4  CompositeBus - ok
23:29:46.0745 0x0ef4  COMSysApp - ok
23:29:46.0776 0x0ef4  [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1, 6FC323217D82EF661BA0E3F949B61B05BB5235D1A69C81D24876C2153FAECEF6 ] crcdisk         C:\Windows\system32\DRIVERS\crcdisk.sys
23:29:46.0823 0x0ef4  crcdisk - ok
23:29:46.0854 0x0ef4  [ 49474B3E37969AF4B5C076F42B623AFF, BDA6B57E9B60EF1B67C74099263D33A367AAA035667239F76AB8B268FD3E8F23 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
23:29:46.0901 0x0ef4  CryptSvc - ok
23:29:46.0963 0x0ef4  [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] DcomLaunch      C:\Windows\system32\rpcss.dll
23:29:47.0041 0x0ef4  DcomLaunch - ok
23:29:47.0088 0x0ef4  [ 8D6E10A2D9A5EED59562D9B82CF804E1, 888F9650F4E872BA8F4E0C27E38A6672A561042B17EBA40E306A22357965B0AD ] defragsvc       C:\Windows\System32\defragsvc.dll
23:29:47.0182 0x0ef4  defragsvc - ok
23:29:47.0228 0x0ef4  [ F024449C97EC1E464AAFFDA18593DB88, 7EF1E241892E098A472BCA14C724DFF1AACCF190954AF1C4A38B6D542CC74BD2 ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
23:29:47.0322 0x0ef4  DfsC - ok
23:29:47.0369 0x0ef4  [ E9E01EB683C132F7FA27CD607B8A2B63, 4D9037B458C522874619143A4176BCED42472C68933E6E83D37B67242706F3C4 ] Dhcp            C:\Windows\system32\dhcpcore.dll
23:29:47.0447 0x0ef4  Dhcp - ok
23:29:47.0462 0x0ef4  [ 1A050B0274BFB3890703D490F330C0DA, 79D74F4679A2EE040FAAF4D0392A9311239A10A5F8A5CCB48656C6F89B6D62FB ] discache        C:\Windows\system32\drivers\discache.sys
23:29:47.0540 0x0ef4  discache - ok
23:29:47.0572 0x0ef4  [ 565003F326F99802E68CA78F2A68E9FF, ABC42B24DBA4FFC411120E09278EF26AF56CCAB463B69B4BD6C530B4A07063D2 ] Disk            C:\Windows\system32\DRIVERS\disk.sys
23:29:47.0618 0x0ef4  Disk - ok
23:29:47.0665 0x0ef4  [ 33EF4861F19A0736B11314AAD9AE28D0, 4C4B84365D85758E3263B88F157D8B086B392C6F1EA5F0F3DB6BF87EF90248EC ] Dnscache        C:\Windows\System32\dnsrslvr.dll
23:29:47.0743 0x0ef4  Dnscache - ok
23:29:47.0774 0x0ef4  [ 366BA8FB4B7BB7435E3B9EACB3843F67, 65B7C61ACF34F1F0149045AA9E09A3F917A927963237A385A914D0B80551DC31 ] dot3svc         C:\Windows\System32\dot3svc.dll
23:29:47.0884 0x0ef4  dot3svc - ok
23:29:47.0946 0x0ef4  [ 8EC04CA86F1D68DA9E11952EB85973D6, 2E3FBC2D683D1274E8BC45EEEA87D43B77EDDCAAF0D453296D9FDA6B9D717071 ] DPS             C:\Windows\system32\dps.dll
23:29:48.0008 0x0ef4  DPS - ok
23:29:48.0055 0x0ef4  [ B918E7C5F9BF77202F89E1A9539F2EB4, C589A37DE50BBEF22E2DAA9682EA43147F614AA1AF7DAAA942BA5FC192313A0B ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
23:29:48.0118 0x0ef4  drmkaud - ok
23:29:48.0196 0x0ef4  [ 3583A5A8CC2E682BFFBD4630D0FEC08B, FD0F184B358FCECAA763444B414074BEF4E871EB7527D88385519FC158435C72 ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
23:29:48.0289 0x0ef4  DXGKrnl - ok
23:29:48.0320 0x0ef4  [ 8600142FA91C1B96367D3300AD0F3F3A, 5713625E27DF11FAAFDA7AC79899A6AD813166E167088FA990EC5DE87DBE83DF ] EapHost         C:\Windows\System32\eapsvc.dll
23:29:48.0383 0x0ef4  EapHost - ok
23:29:48.0554 0x0ef4  [ 024E1B5CAC09731E4D868E64DBFB4AB0, AB0826A74BBEE5B7A1B035861B665C79BC98305CFC7D82BEF420558FBD3EE994 ] ebdrv           C:\Windows\system32\DRIVERS\evbdx.sys
23:29:48.0882 0x0ef4  ebdrv - ok
23:29:48.0913 0x0ef4  [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] EFS             C:\Windows\System32\lsass.exe
23:29:49.0022 0x0ef4  EFS - ok
23:29:49.0100 0x0ef4  [ A8C362018EFC87BEB013EE28F29C0863, 07971C681FBD391C0BA0172618AF8AD77520182207F1C57F134B34D6A113857F ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
23:29:49.0241 0x0ef4  ehRecvr - ok
23:29:49.0256 0x0ef4  [ D389BFF34F80CAEDE417BF9D1507996A, 12859B9925D7A4631DE61A820922F43F56ED23C2AF014CBF36322685E5CF641E ] ehSched         C:\Windows\ehome\ehsched.exe
23:29:49.0334 0x0ef4  ehSched - ok
23:29:49.0381 0x0ef4  [ 0ED67910C8C326796FAA00B2BF6D9D3C, 97FAA7627A162B0AEC15545E0165D13355D535B4157604BB87F8EEB72ECD24A8 ] elxstor         C:\Windows\system32\DRIVERS\elxstor.sys
23:29:49.0444 0x0ef4  elxstor - ok
23:29:49.0475 0x0ef4  [ 8FC3208352DD3912C94367A206AB3F11, 69B65C12BDADD4B730508674B1B77C5496612B4ACCC447DB9AFE49ADEA8CBF02 ] ErrDev          C:\Windows\system32\drivers\errdev.sys
23:29:49.0522 0x0ef4  ErrDev - ok
23:29:49.0553 0x0ef4  [ F6916EFC29D9953D5D0DF06882AE8E16, ED41893960018D5EC2F7829B1DE4B6967D9FD074D60B11B9EB854E3E0948EC24 ] EventSystem     C:\Windows\system32\es.dll
23:29:49.0646 0x0ef4  EventSystem - ok
23:29:49.0678 0x0ef4  [ 2DC9108D74081149CC8B651D3A26207F, 75CB47923A867DDAC512701CE71DFCFC340FC3A2E27F4255D0836A1FBC463176 ] exfat           C:\Windows\system32\drivers\exfat.sys
23:29:49.0771 0x0ef4  exfat - ok
23:29:49.0802 0x0ef4  [ 7E0AB74553476622FB6AE36F73D97D35, 41463A255FDA1D550B3385EC7C73ABC343B1BBBE9CEE4DF9F2A8B3E7338C4947 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
23:29:49.0896 0x0ef4  fastfat - ok
23:29:49.0958 0x0ef4  [ 967EA5B213E9984CBE270205DF37755B, 43153E23210B03FAE16897D62D55B8742F834EDC695F8401EAB5DE307F62602D ] Fax             C:\Windows\system32\fxssvc.exe
23:29:50.0099 0x0ef4  Fax - ok
23:29:50.0130 0x0ef4  [ E817A017F82DF2A1F8CFDBDA29388B29, 4CC9320A21E6FEA2D16C48D6BEA14391B695BD541A3C5FDDAEEE086A414FC837 ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
23:29:50.0161 0x0ef4  fdc - ok
23:29:50.0192 0x0ef4  [ F3222C893BD2F5821A0179E5C71E88FB, A85B947249DBB986358CCD4B158DD58A9301F074F3C6CCCDEF2D01F432E59D1B ] fdPHost         C:\Windows\system32\fdPHost.dll
23:29:50.0255 0x0ef4  fdPHost - ok
23:29:50.0286 0x0ef4  [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B, 0E76C29D2A974A3F2FBFCB63D066D4136B78E02F6B1F579B1865CA7A76193987 ] FDResPub        C:\Windows\system32\fdrespub.dll
23:29:50.0364 0x0ef4  FDResPub - ok
23:29:50.0380 0x0ef4  [ 6CF00369C97F3CF563BE99BE983D13D8, F65F35324A2FB9DFB533B1C4D089D990CC242218FE83414329D07B786D8EFF33 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
23:29:50.0426 0x0ef4  FileInfo - ok
23:29:50.0458 0x0ef4  [ 42C51DC94C91DA21CB9196EB64C45DB9, 388C68D12ECC8FFE3116FEAAF4DB7B80CF4A3F97E935788DD21C6ADE2369F635 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
23:29:50.0551 0x0ef4  Filetrace - ok
23:29:50.0567 0x0ef4  [ 87907AA70CB3C56600F1C2FB8841579B, CA1CD82A1CD453617CE5EA431A1836997F14E3580554E8A516D9FE1E9926D979 ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
23:29:50.0614 0x0ef4  flpydisk - ok
23:29:50.0645 0x0ef4  [ 7520EC808E0C35E0EE6F841294316653, 6EC65511B4838A7172A8F89E35C2F9DF4F0BFCE3BE12EDA790F3EB567102FF67 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
23:29:50.0692 0x0ef4  FltMgr - ok
23:29:50.0785 0x0ef4  [ E12C4928B32ACE04610259647F072635, B71B9C2DF45F33C4DAC88435129B08B0BCDBBE82E8C3AD0A95F00137CC8B619F ] FontCache       C:\Windows\system32\FntCache.dll
23:29:50.0957 0x0ef4  FontCache - ok
23:29:50.0988 0x0ef4  [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F, DBED26852B99B362152DA9CD4F31A1883EF6F9B496F3CF3772A197BA72DB61DA ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
23:29:51.0050 0x0ef4  FontCache3.0.0.0 - ok
23:29:51.0082 0x0ef4  [ 1A16B57943853E598CFF37FE2B8CBF1D, 87609F46F3B8123552141FD70866E895220B1BBD92BC2B580CAF49201AA0197E ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
23:29:51.0144 0x0ef4  FsDepends - ok
23:29:51.0160 0x0ef4  [ 7DAE5EBCC80E45D3253F4923DC424D05, 8A2C4D5591509B0B0A44583520617A9AE34F32BB6E68A012A7D7870ED24F703A ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
23:29:51.0206 0x0ef4  Fs_Rec - ok
23:29:51.0253 0x0ef4  [ E306A24D9694C724FA2491278BF50FDB, 1D246B9C28550640EACBF8CF9DC980FD75106B92832D392FEBEF0C7012353091 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
23:29:51.0316 0x0ef4  fvevol - ok
23:29:51.0347 0x0ef4  [ 65EE0C7A58B65E74AE05637418153938, 0E1A398ADD8411AF4CCC3344D67BE1B261320C58328BD5C5855A357476FAEBEF ] gagp30kx        C:\Windows\system32\DRIVERS\gagp30kx.sys
23:29:51.0394 0x0ef4  gagp30kx - ok
23:29:51.0425 0x0ef4  [ 8182FF89C65E4D38B2DE4BB0FB18564E, 2ACFA64D48BF7D25641EC5819C8722144284B8A8E071BF297C1881B07EEAFE88 ] GEARAspiWDM     C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
23:29:51.0456 0x0ef4  GEARAspiWDM - ok
23:29:51.0518 0x0ef4  [ E897EAF5ED6BA41E081060C9B447A673, A428DC68516F19C6C53A8B62E4BDB2587E70FB751B9D77700B6B147D347DA157 ] gpsvc           C:\Windows\System32\gpsvc.dll
23:29:51.0612 0x0ef4  gpsvc - ok
23:29:51.0706 0x0ef4  [ 51508F0C2476177E50C31B0BBFBF1BDB, 3F62A05181D54711180C8727AC66D624AFA7FC816A4ACC4DC0CFCF2D2DBE7F87 ] gupdate         C:\Program Files\Google\Update\GoogleUpdate.exe
23:29:51.0721 0x0ef4  gupdate - ok
23:29:51.0737 0x0ef4  [ 51508F0C2476177E50C31B0BBFBF1BDB, 3F62A05181D54711180C8727AC66D624AFA7FC816A4ACC4DC0CFCF2D2DBE7F87 ] gupdatem        C:\Program Files\Google\Update\GoogleUpdate.exe
23:29:51.0768 0x0ef4  gupdatem - ok
23:29:51.0784 0x0ef4  [ C44E3C2BAB6837DB337DDEE7544736DB, 88A24FF7D2FECCEAFFD421B2039A0FB623DA47A6B220B80EF1E52DD26D9E222D ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
23:29:51.0877 0x0ef4  hcw85cir - ok
23:29:51.0908 0x0ef4  [ A5EF29D5315111C80A5C1ABAD14C8972, A181DA72E946F121C3F4A19438C547B0BFD15138AB1DB5465945EC89DF1F6B0A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
23:29:51.0986 0x0ef4  HdAudAddService - ok
23:29:52.0018 0x0ef4  [ 9036377B8A6C15DC2EEC53E489D159B5, 1E56D2ACFE92E6DF96D755B05C63D580EED82C210F075C8623E138BEE6BCD41B ] HDAudBus        C:\Windows\system32\drivers\HDAudBus.sys
23:29:52.0064 0x0ef4  HDAudBus - ok
23:29:52.0096 0x0ef4  [ 1D58A7F3E11A9731D0EAAAA8405ACC36, 7056FA18B86FBD52C4A6092D80476C02553EA053D6A0BEDB01A2FA5E152D5215 ] HidBatt         C:\Windows\system32\DRIVERS\HidBatt.sys
23:29:52.0158 0x0ef4  HidBatt - ok
23:29:52.0205 0x0ef4  [ 89448F40E6DF260C206A193A4683BA78, 71E0FCC32AE6FF8DFF420DB0383D6A200E1EAE14BD2E32453F92CE18B31C1F3C ] HidBth          C:\Windows\system32\DRIVERS\hidbth.sys
23:29:52.0267 0x0ef4  HidBth - ok
23:29:52.0298 0x0ef4  [ CF50B4CF4A4F229B9F3C08351F99CA5E, B97843620AF80FF0EC8F2C438255C0A42A756C6314FAF3DEF415DE16E14C108F ] HidIr           C:\Windows\system32\DRIVERS\hidir.sys
23:29:52.0361 0x0ef4  HidIr - ok
23:29:52.0423 0x0ef4  [ 2BC6F6A1992B3A77F5F41432CA6B3B6B, 2AF3312F1C8C8923C0A29AA5DAE57CE269417E53DEA2F0CCCC8DB57029698FE1 ] hidserv         C:\Windows\system32\hidserv.dll
23:29:52.0517 0x0ef4  hidserv - ok
23:29:52.0548 0x0ef4  [ 10C19F8290891AF023EAEC0832E1EB4D, E208553029488A6EE2F5216CC9FE5F93E9931A94C0D0625253BB159E30642853 ] HidUsb          C:\Windows\system32\drivers\hidusb.sys
23:29:52.0642 0x0ef4  HidUsb - ok
23:29:52.0673 0x0ef4  [ 196B4E3F4CCCC24AF836CE58FACBB699, 7A2E1F603A073421FA0987EFB96647F1F0F2D4E0C82AA62EBC041585DA811DAF ] hkmsvc          C:\Windows\system32\kmsvc.dll
23:29:52.0782 0x0ef4  hkmsvc - ok
23:29:52.0813 0x0ef4  [ 6658F4404DE03D75FE3BA09F7ABA6A30, E51D9C1580A283EB862F09B73AAE1B647DD683A53F3DD99834222F12DD15E40F ] HomeGroupListener C:\Windows\system32\ListSvc.dll
23:29:52.0938 0x0ef4  HomeGroupListener - ok
23:29:52.0985 0x0ef4  [ DBC02D918FFF1CAD628ACBE0C0EAA8E8, 02121800D9062692C102475876AE8143EBE46D855E8328B8CDCFE6A2F0D19696 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
23:29:53.0032 0x0ef4  HomeGroupProvider - ok
23:29:53.0110 0x0ef4  [ 0A3C6AA4A9FC38C20BA4EAC2C3351C05, 7B3F117C1D606DDA7623BEC0BFBC362C33A12213E899F049AC56A55826984134 ] hpqcxs08        C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
23:29:53.0156 0x0ef4  hpqcxs08 - detected UnsignedFile.Multi.Generic ( 1 )
23:29:55.0808 0x0ef4  Detect skipped due to KSN trusted
23:29:55.0808 0x0ef4  hpqcxs08 - ok
23:29:55.0855 0x0ef4  [ 295FDC419039090EB8B49FFDBB374549, 670E8015FD374640C6570F56F7FE8DE4D8F92E7A8072F5D1B2B95D0BD699CEF7 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
23:29:55.0902 0x0ef4  HpSAMD - ok
23:29:55.0980 0x0ef4  [ 487569E5DA56A5A432FF8AF6D3599CF9, 7C974D8379C60B4F69A20B01876C49181B0A63AC318C4BD0A21DABFF27A15C9D ] HTTP            C:\Windows\system32\drivers\HTTP.sys
23:29:56.0105 0x0ef4  HTTP - ok
23:29:56.0136 0x0ef4  [ 0C4E035C7F105F1299258C90886C64C5, CFB4FBE7B28058E6D3E6E508CF3C1645F6AAE0AFEB4C5364835B9C42311DF0D4 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
23:29:56.0183 0x0ef4  hwpolicy - ok
23:29:56.0214 0x0ef4  [ F151F0BDC47F4A28B1B20A0818EA36D6, 84B24B5796D9F70A8C37773F5484A4606CC7908370CCD942627ACBEDC4952D79 ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
23:29:56.0292 0x0ef4  i8042prt - ok
23:29:56.0354 0x0ef4  [ 26541A068572F650A2FA490726FE81BE, 9D6EF745731D45C4482274BE9C56300BBE8843D6C182F0E5C621AB121DBE371E ] iaStor          C:\Windows\system32\DRIVERS\iaStor.sys
23:29:56.0386 0x0ef4  iaStor - ok
23:29:56.0464 0x0ef4  [ 31A0E93CDF29007D6C6FFFB632F375ED, CA464928E9868B9A09C324DBBC8DA41A01C5C486B43578FC695250D523DE555B ] IAStorDataMgrSvc C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
23:29:56.0495 0x0ef4  IAStorDataMgrSvc - ok
23:29:56.0526 0x0ef4  [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E, 72870092A80C6DAE0105025B0ED8B607E98BA81E59298364A7FE4C9C56C68FF0 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
23:29:56.0588 0x0ef4  iaStorV - ok
23:29:56.0698 0x0ef4  [ 3E9213A2A050BF429E91898C90F8B4E3, D80ABE5691087661B19F01927B631CB8C5291120B814B6F863F046E0D643E9E4 ] idsvc           C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
23:29:56.0854 0x0ef4  idsvc - ok
23:29:56.0869 0x0ef4  IEEtwCollectorService - ok
23:29:56.0885 0x0ef4  [ 4173FF5708F3236CF25195FECD742915, 0A9C0701DF6EAC6602BE342FC13C7950EF04BB5BDF7D96C2C5DABBD2A29AA55D ] iirsp           C:\Windows\system32\DRIVERS\iirsp.sys
23:29:56.0916 0x0ef4  iirsp - ok
23:29:56.0994 0x0ef4  [ B9C54120F46392100478F58F374E5709, A28EE8B0988F580D5984E815FC78DF41B169260814234AA0E453375542D0957B ] IKEEXT          C:\Windows\System32\ikeext.dll
23:29:57.0072 0x0ef4  IKEEXT - ok
23:29:57.0275 0x0ef4  [ 4BE85CF5831A41104C2DDED55FBC3565, D5052C717710579A31E030CFFCA59B3632591FDDD2CE237C68276AE58783BD6F ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHDA.sys
23:29:57.0602 0x0ef4  IntcAzAudAddService - ok
23:29:57.0634 0x0ef4  [ A0F12F2C9BA6C72F3987CE780E77C130, 5F53DF8BE1621AA7DFB655CFD9C95E0AFA1AD3CE2E290E19D7B7FB3C6E380034 ] intelide        C:\Windows\system32\drivers\intelide.sys
23:29:57.0680 0x0ef4  intelide - ok
23:29:57.0727 0x0ef4  [ 3B514D27BFC4ACCB4037BC6685F766E0, F12D7AC62F8550E6F33B28AD751D8413AB7FFEF963242D99FFA76CE8A48B027A ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
23:29:57.0790 0x0ef4  intelppm - ok
23:29:57.0821 0x0ef4  [ ACB364B9075A45C0736E5C47BE5CAE19, 202F77C659103D2D0E787B8CB0A23BE32EA5AA2E6B3B0A0F0A8DFA906AB3C0C0 ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
23:29:57.0914 0x0ef4  IPBusEnum - ok
23:29:57.0946 0x0ef4  [ 709D1761D3B19A932FF0238EA6D50200, 0A9D2C3A6E91CA45540555B40CB4E2DF3EBE98C1D164C4EECEE20C86782F5823 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
23:29:58.0024 0x0ef4  IpFilterDriver - ok
23:29:58.0086 0x0ef4  [ 58F67245D041FBE7AF88F4EAF79DF0FA, 67468D6A46FF4D87AD321BFEA42F2FC843D09AA292A119C76D4D795D06028F96 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
23:29:58.0195 0x0ef4  iphlpsvc - ok
23:29:58.0226 0x0ef4  [ 4BD7134618C1D2A27466A099062547BF, 20284ABEF4433A59E2981F4143CAEC67DC990864FE0B9E3DC70EE0B88539E964 ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
23:29:58.0289 0x0ef4  IPMIDRV - ok
23:29:58.0320 0x0ef4  [ A5FA468D67ABCDAA36264E463A7BB0CD, EDB828D596E43372F97DAE1AADA46428C4C45FB80646DDC64FAD5F25C826CF63 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
23:29:58.0414 0x0ef4  IPNAT - ok
23:29:58.0492 0x0ef4  [ 49918803B661367023BF325CF602AFDC, 2821451FD31EAFCB5D3081998756F7274B4C2594E9A378EEE5C1D5D92C1FC58C ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
23:29:58.0554 0x0ef4  iPod Service - ok
23:29:58.0570 0x0ef4  [ 42996CFF20A3084A56017B7902307E9F, 688176DAB91BE569280E4822E4C5BDE755794D293591C53F8047AD59C441751D ] IRENUM          C:\Windows\system32\drivers\irenum.sys
23:29:58.0679 0x0ef4  IRENUM - ok
23:29:58.0694 0x0ef4  [ 1F32BB6B38F62F7DF1A7AB7292638A35, 86522358680FBB1CEBC56B4D139290689BB0F71A3EC78CE883E4D75D0B37586F ] isapnp          C:\Windows\system32\drivers\isapnp.sys
23:29:58.0741 0x0ef4  isapnp - ok
23:29:58.0788 0x0ef4  [ EB34CE31FABD4DC4343FD2AD16D2CAF9, D21C91227A15DA89ECF522345D0AB80B3B7FC24A230596DABDB8BD3B7554CE8C ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
23:29:58.0850 0x0ef4  iScsiPrt - ok
23:29:58.0882 0x0ef4  [ ADEF52CA1AEAE82B50DF86B56413107E, A3AE1E96B04AC81665ABBD3CB267DFB3F78376DAE18FB0DBD447908DDAAA22D2 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
23:29:58.0928 0x0ef4  kbdclass - ok
23:29:58.0960 0x0ef4  [ 9E3CED91863E6EE98C24794D05E27A71, 90CF59F20E14E4A5A793266805E82BF7AE1F0CF4C7BAB1FD2EEF3B53C5DF770F ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
23:29:58.0991 0x0ef4  kbdhid - ok
23:29:59.0022 0x0ef4  [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] KeyIso          C:\Windows\system32\lsass.exe
23:29:59.0053 0x0ef4  KeyIso - ok
23:29:59.0084 0x0ef4  [ 746F89CE0C6569C589E6AC4D3DA82D41, 6D41311CBA8BB7C9C09C1757D7947539B67FE3EFF6299502176C673809BAEAD8 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
23:29:59.0131 0x0ef4  KSecDD - ok
23:29:59.0147 0x0ef4  [ D800E1EAF33630A1636BB21E8256AA92, D07542A242E0D52B494BE63A6A141207D0A59CF66ABEBA9CE33877594BF7BA5D ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
23:29:59.0209 0x0ef4  KSecPkg - ok
23:29:59.0256 0x0ef4  [ 89A7B9CC98D0D80C6F31B91C0A310FCD, 4583CAEEE0D50C0C7CE955E533FDA063CDC37B69033D41EF22EF1BA242E4C747 ] KtmRm           C:\Windows\system32\msdtckrm.dll
23:29:59.0365 0x0ef4  KtmRm - ok
23:29:59.0412 0x0ef4  [ D64AF876D53ECA3668BB97B51B4E70AB, D5C07C019BFEAFBEDC29AB5060356A3B07449712B21B50E03378BEF04AF180F9 ] LanmanServer    C:\Windows\system32\srvsvc.dll
23:29:59.0490 0x0ef4  LanmanServer - ok
23:29:59.0521 0x0ef4  [ 58405E4F68BA8E4057C6E914F326ABA2, C3E6519A1A38F1B3597D4391E42ABFE8F1F5E86256C4B3BD876CDAD9BB68B0A6 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
23:29:59.0599 0x0ef4  LanmanWorkstation - ok
23:29:59.0630 0x0ef4  [ F7611EC07349979DA9B0AE1F18CCC7A6, 879AA7A391966F00761CA039C25EBC62F6712DD5461694911EEC673E12DE103E ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
23:29:59.0740 0x0ef4  lltdio - ok
23:29:59.0771 0x0ef4  [ 5700673E13A2117FA3B9020C852C01E2, 6684A2905EE8C438F2A64BE47E51A54D287B08DEFB8E0AE7FC2809D845EE3C5F ] lltdsvc         C:\Windows\System32\lltdsvc.dll
23:29:59.0880 0x0ef4  lltdsvc - ok
23:29:59.0896 0x0ef4  [ 55CA01BA19D0006C8F2639B6C045E08B, 4DBBDC820C514DB18CC13F8EE178F8C4E39C295C6E3C255416C235553CE7BDC1 ] lmhosts         C:\Windows\System32\lmhsvc.dll
23:29:59.0974 0x0ef4  lmhosts - ok
23:30:00.0036 0x0ef4  [ EB119A53CCF2ACC000AC71B065B78FEF, 1FD60735C4945AE565C223F0B47EAF9602D8777E3D15600914C1A9D761215AF9 ] LSI_FC          C:\Windows\system32\DRIVERS\lsi_fc.sys
23:30:00.0083 0x0ef4  LSI_FC - ok
23:30:00.0114 0x0ef4  [ 8ADE1C877256A22E49B75D1CC9161F9C, 3D64F233DC866537E50549A7C1A2B40A954055B22F0BDA39825B04C38C607CB7 ] LSI_SAS         C:\Windows\system32\DRIVERS\lsi_sas.sys
23:30:00.0161 0x0ef4  LSI_SAS - ok
23:30:00.0176 0x0ef4  [ DC9DC3D3DAA0E276FD2EC262E38B11E9, A264990857CBC74036799E17A087130626C0A09BE19879019BAF2D761C62AECC ] LSI_SAS2        C:\Windows\system32\DRIVERS\lsi_sas2.sys
23:30:00.0223 0x0ef4  LSI_SAS2 - ok
23:30:00.0254 0x0ef4  [ 0A036C7D7CAB643A7F07135AC47E0524, 2F662D07FCB74B8D493156DB555EAA90A47E93CF14C7B30039D2FE47EB8682B8 ] LSI_SCSI        C:\Windows\system32\DRIVERS\lsi_scsi.sys
23:30:00.0286 0x0ef4  LSI_SCSI - ok
23:30:00.0317 0x0ef4  [ 6703E366CC18D3B6E534F5CF7DF39CEE, 7396B9AF938284D99EC51206A7B2FA4A0DC10A493DCE6707818B03A7473782C4 ] luafv           C:\Windows\system32\drivers\luafv.sys
23:30:00.0395 0x0ef4  luafv - ok
23:30:00.0410 0x0ef4  [ 3C21F7E95FFCA33EF1A83AA33D9663CF, C843116969E1CDBA45AEF98B33BEDBA9200C62CDB52CD7056CE6768A1EF3A637 ] MBAMProtector   C:\Windows\system32\drivers\mbam.sys
23:30:00.0457 0x0ef4  MBAMProtector - ok
23:30:00.0598 0x0ef4  [ 516E29AD03BDF610CC36A95AE692FE42, 09F913B169AD775FF587AE59AEC5DD2A2D8646803F48BF616C74EEC0DE3BE7A2 ] MBAMScheduler   C:\Program Files\ Malwarebytes Anti-Malware \mbamscheduler.exe
23:30:00.0816 0x0ef4  MBAMScheduler - ok
23:30:00.0925 0x0ef4  [ 2B983F067AEE3F9EB4DF5E97F45D21D1, 0B9ED0E91FF01A5445927650113E320C3C0EA16F1401AA55A509DDBF704DF22F ] MBAMService     C:\Program Files\ Malwarebytes Anti-Malware \mbamservice.exe
23:30:01.0050 0x0ef4  MBAMService - ok
23:30:01.0097 0x0ef4  [ 04B309A1A653177994630C2773E659F1, 1D9F81D2DF513FE177E5308E3DE0CE416109F87FDBD00FE7453FEB6074216C3C ] MBAMSwissArmy   C:\Windows\system32\drivers\MBAMSwissArmy.sys
23:30:01.0128 0x0ef4  MBAMSwissArmy - ok
23:30:01.0175 0x0ef4  [ 167BCE00050B19DA25065335645A3C7A, 5CD3EA3E09B4ED318AB6151F56A17B0E4C8CE32DBB77342A39DEF53908F7D2F0 ] MBAMWebAccessControl C:\Windows\system32\drivers\mwac.sys
23:30:01.0206 0x0ef4  MBAMWebAccessControl - ok
23:30:01.0237 0x0ef4  [ BFB9EE8EE977EFE85D1A3105ABEF6DD1, D2A84EBF0C0B7A14AD432FD2EF43CC12300027AEA3FA4075659FB088AB62B588 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
23:30:01.0300 0x0ef4  Mcx2Svc - ok
23:30:01.0331 0x0ef4  [ 0FFF5B045293002AB38EB1FD1FC2FB74, 49071B565FD5B2DE43EC00D8518C3BE70843F38919E82F13104B8C1FAFB20374 ] megasas         C:\Windows\system32\DRIVERS\megasas.sys
23:30:01.0378 0x0ef4  megasas - ok
23:30:01.0424 0x0ef4  [ DCBAB2920C75F390CAF1D29F675D03D6, 85C3A7A010BEA5E3C6179161B295F2CB900A6A214833A5F87A4327392880E2BB ] MegaSR          C:\Windows\system32\DRIVERS\MegaSR.sys
23:30:01.0471 0x0ef4  MegaSR - ok
23:30:01.0502 0x0ef4  [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] MMCSS           C:\Windows\system32\mmcss.dll
23:30:01.0580 0x0ef4  MMCSS - ok
23:30:01.0596 0x0ef4  [ F001861E5700EE84E2D4E52C712F4964, F4DC5AEED6F34D76CCEF360862CC47EF71097BE0813C8CE04EE5F0DB387DFFAE ] Modem           C:\Windows\system32\drivers\modem.sys
23:30:01.0690 0x0ef4  Modem - ok
23:30:01.0721 0x0ef4  [ 79D10964DE86B292320E9DFE02282A23, 52714827B7EEDACA55326A4E4F6158D4942DFAA3BACDE303A2F569BF3F4FAA72 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
23:30:01.0783 0x0ef4  monitor - ok
23:30:01.0830 0x0ef4  [ FB18CC1D4C2E716B6B903B0AC0CC0609, F10CCA63493782B16DE6B96B94A27078DBE68AECEF34FDF840CFF86D2C6E3C5E ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
23:30:01.0892 0x0ef4  mouclass - ok
23:30:01.0924 0x0ef4  [ 2C388D2CD01C9042596CF3C8F3C7B24D, B2FB72272BB01AEDA4047B57C943B7E9BD8A6497854F8CC34672AAA592D0A703 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
23:30:01.0986 0x0ef4  mouhid - ok
23:30:02.0017 0x0ef4  [ 644905A19D0F37F2233DFCE53BC4BC19, F52CB40AA0FD1EBF8CBF0F3BFB20C47142C637719840877FB93F10D085EB8C2B ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
23:30:02.0064 0x0ef4  mountmgr - ok
23:30:02.0126 0x0ef4  [ 03D14BF1DC59130002F6B8BA3AD89DB9, 1729CCD8AAF51CDB86ED67569974D0B6B1CFFA5F90EF6E6004B0D8A305D88C27 ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
23:30:02.0173 0x0ef4  MozillaMaintenance - ok
23:30:02.0204 0x0ef4  [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0, D3D903EEA465D77345AAC9B9F02CDEADF4831212EA2DE4FCA33BEE26EBB47420 ] mpio            C:\Windows\system32\drivers\mpio.sys
23:30:02.0251 0x0ef4  mpio - ok
23:30:02.0282 0x0ef4  [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0, 1D6DCFA0E56C3E55B6AED819176E751502F863BA0FCF4F0B3253A81D208141A2 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
23:30:02.0360 0x0ef4  mpsdrv - ok
23:30:02.0407 0x0ef4  [ 9835584E999D25004E1EE8E5F3E3B881, 71798B0CBE9AE69F1F29B845319019C69EC7F415CBABB3B87DDE92C360675021 ] MpsSvc          C:\Windows\system32\mpssvc.dll
23:30:02.0501 0x0ef4  MpsSvc - ok
23:30:02.0548 0x0ef4  [ 03F899F521D2AAED1C55008F734DF252, 4E56A51476A13F5630719018037B1F63DF9ACEA1CFE782AF04E669BD696954C5 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
23:30:02.0594 0x0ef4  MRxDAV - ok
23:30:02.0641 0x0ef4  [ 5D16C921E3671636C0EBA3BBAAC5FD25, 5BC107B95CAFC88F51FBB9F657B99944B20627A2B618F263093D7045E4FFD65C ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
23:30:02.0735 0x0ef4  mrxsmb - ok
23:30:02.0766 0x0ef4  [ 6D17A4791ACA19328C685D256349FEFC, 012AA3D84EEAAF53780D06D2D11B9727DFC3441F3FAD75BC9E751FB814403668 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
23:30:02.0828 0x0ef4  mrxsmb10 - ok
23:30:02.0844 0x0ef4  [ B81F204D146000BE76651A50670A5E9E, 78193D0F967BE9829E53F9B500342934B4B1E1F4CEFC444382959E2061BC3B17 ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
23:30:02.0906 0x0ef4  mrxsmb20 - ok
23:30:02.0953 0x0ef4  [ 012C5F4E9349E711E11E0F19A8589F0A, 208B92DFCF7AD43202660FBBC9FF5E03AEDBEE38178FF3628EB74CB6CD37C584 ] msahci          C:\Windows\system32\drivers\msahci.sys
23:30:03.0000 0x0ef4  msahci - ok
23:30:03.0031 0x0ef4  [ 55055F8AD8BE27A64C831322A780A228, C2C9FD1F61302997117B1CD0835E8234405BB80084065ED05363B77868397304 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
23:30:03.0094 0x0ef4  msdsm - ok
23:30:03.0125 0x0ef4  [ E1BCE74A3BD9902B72599C0192A07E27, 5162EB623FE64E9DFEAC6CA2410EFA1314E62EC13207FFBFED2D61AA887603C4 ] MSDTC           C:\Windows\System32\msdtc.exe
23:30:03.0187 0x0ef4  MSDTC - ok
23:30:03.0218 0x0ef4  [ DAEFB28E3AF5A76ABCC2C3078C07327F, 6EB558532400B489763BAE7203538DE5F196282A8CB46A1B31D59120FC5AFCEF ] Msfs            C:\Windows\system32\drivers\Msfs.sys
23:30:03.0312 0x0ef4  Msfs - ok
23:30:03.0328 0x0ef4  [ 3E1E5767043C5AF9367F0056295E9F84, B2EDFECD3C14E4FE1BA87D9A86334043A9BD696A554EBD186DA7EAEB2EBD4F70 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
23:30:03.0421 0x0ef4  mshidkmdf - ok
23:30:03.0437 0x0ef4  [ 0A4E5757AE09FA9622E3158CC1AEF114, ED574E420E57374E328C7C526504ECA569C164287966F06019EC207CB17F2C54 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
23:30:03.0484 0x0ef4  msisadrv - ok
23:30:03.0562 0x0ef4  [ 90F7D9E6B6F27E1A707D4A297F077828, BEFC220EAA7307849600748842ACB9254A6A91158812D9B23EFAF912C498BA7F ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
23:30:03.0655 0x0ef4  MSiSCSI - ok
23:30:03.0671 0x0ef4  msiserver - ok
23:30:03.0702 0x0ef4  [ 8C0860D6366AAFFB6C5BB9DF9448E631, 949C5A14E57F2D7385543C17C3485E7ADE36EA2016F6E0A1866571D2EDE90A77 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
23:30:03.0780 0x0ef4  MSKSSRV - ok
23:30:03.0796 0x0ef4  [ 3EA8B949F963562CEDBB549EAC0C11CE, 1B0B2F16A1790282504F3C548D47C3281EFB440D5D9711A1EF76D6371B768D2D ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
23:30:03.0858 0x0ef4  MSPCLOCK - ok
23:30:03.0874 0x0ef4  [ F456E973590D663B1073E9C463B40932, 48BA6D5580EE7B6A4C06E04772FD35B51779553FC0DD6C5C30DD8B5DEEB25B11 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
23:30:03.0952 0x0ef4  MSPQM - ok
23:30:03.0983 0x0ef4  [ 0E008FC4819D238C51D7C93E7B41E560, 141FCEBDD05874407EAEC35A9DCD3BB16F2A428F23E55487D6A5DBFCADBF10D2 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
23:30:04.0030 0x0ef4  MsRPC - ok
23:30:04.0061 0x0ef4  [ FC6B9FF600CC585EA38B12589BD4E246, F05DB01AE1955D2468CE6B51E51998B111CA3B0BDEED090EE6B99B625CBA564A ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
23:30:04.0108 0x0ef4  mssmbios - ok
23:30:04.0139 0x0ef4  [ B42C6B921F61A6E55159B8BE6CD54A36, 6BB0A7BE005B8F281E551D1B8046CE4202372BC7AE0161881C858BFAC675FE1C ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
23:30:04.0217 0x0ef4  MSTEE - ok
23:30:04.0248 0x0ef4  [ 33599130F44E1F34631CEA241DE8AC84, E15B31D1AFDC8DC6D2B21D4215796A99ECC69EEDBB06CEED01AECC3C99A44C8B ] MTConfig        C:\Windows\system32\DRIVERS\MTConfig.sys
23:30:04.0279 0x0ef4  MTConfig - ok
23:30:04.0295 0x0ef4  [ 159FAD02F64E6381758C990F753BCC80, E55AB01DCFA95ECAB24A2A9656E28FF9D064BA08B3D82DC8AA42F5991BA09598 ] Mup             C:\Windows\system32\Drivers\mup.sys
23:30:04.0326 0x0ef4  Mup - ok
23:30:04.0357 0x0ef4  [ 61D57A5D7C6D9AFE10E77DAE6E1B445E, D252248532142E9E2332DA693BC51B795102CA938B568FF04981E98B19BFBC5C ] napagent        C:\Windows\system32\qagentRT.dll
23:30:04.0466 0x0ef4  napagent - ok
23:30:04.0513 0x0ef4  [ 26384429FCD85D83746F63E798AB1480, 957C115C263A4B4DC854558B43ECE632D8E2BCCB744E23A01EBA7476BA2E7FFB ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
23:30:04.0591 0x0ef4  NativeWifiP - ok
23:30:04.0654 0x0ef4  [ 8C9C922D71F1CD4DEF73F186416B7896, 15FF43CD90C7913F83B35F2E7986561584588E8A45196EBD965C3A355836A9C7 ] NDIS            C:\Windows\system32\drivers\ndis.sys
23:30:04.0732 0x0ef4  NDIS - ok
23:30:04.0747 0x0ef4  [ 0E1787AA6C9191D3D319E8BAFE86F80C, F535022747355B2C66424BDA892D7DCB820C2EB8EE05BAE5BC6D1B1D65186278 ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
23:30:04.0825 0x0ef4  NdisCap - ok
23:30:04.0856 0x0ef4  [ E4A8AEC125A2E43A9E32AFEEA7C9C888, 6EA181117126FC70B3C1DD1AC73CC26D1603A2CF49E47F66623E2C9489C49B55 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
23:30:04.0934 0x0ef4  NdisTapi - ok
23:30:04.0966 0x0ef4  [ D8A65DAFB3EB41CBB622745676FCD072, 874D3C3D247C4A309DA813DB1D2EDB0037D3C489824BD5FE95B0C20699764EF7 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
23:30:05.0044 0x0ef4  Ndisuio - ok
23:30:05.0075 0x0ef4  [ 38FBE267E7E6983311179230FACB1017, CFD1CBCA59650795C030DB30E5795B37C11C736E14003AE1DAB081BA5C0C9B14 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
23:30:05.0168 0x0ef4  NdisWan - ok
23:30:05.0200 0x0ef4  [ A4BDC541E69674FBFF1A8FF00BE913F2, 18CCFD063E9870B8B6958715BC0414C4D920AE63528EA1E9D7E30F7138918FFA ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
23:30:05.0278 0x0ef4  NDProxy - ok
23:30:05.0309 0x0ef4  [ 80B275B1CE3B0E79909DB7B39AF74D51, 75B406B0D9D28239D4EB2A298419A5F78A58237D88C5FD688EF1DFFAFACCF796 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
23:30:05.0387 0x0ef4  NetBIOS - ok
23:30:05.0402 0x0ef4  [ 280122DDCF04B378EDD1AD54D71C1E54, F98B2ADE34F7E67C7C06C1D0FFB80ECBC353D044D4B4784CD952910345DC2ED0 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
23:30:05.0480 0x0ef4  NetBT - ok
23:30:05.0496 0x0ef4  [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] Netlogon        C:\Windows\system32\lsass.exe
23:30:05.0527 0x0ef4  Netlogon - ok
23:30:05.0558 0x0ef4  [ 7CCCFCA7510684768DA22092D1FA4DB2, BB9E4F8FABBF596D888E6D303CB54A336D9DFF95B36AEA9369D2ED787DDC4B5D ] Netman          C:\Windows\System32\netman.dll
23:30:05.0636 0x0ef4  Netman - ok
23:30:05.0714 0x0ef4  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
23:30:05.0855 0x0ef4  NetMsmqActivator - ok
23:30:05.0917 0x0ef4  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
23:30:05.0948 0x0ef4  NetPipeActivator - ok
23:30:05.0964 0x0ef4  [ 8C338238C16777A802D6A9211EB2BA50, 0D08A47CD403EDA5E8CAD7409BBBBCDC29A9861D2DC41D42B68B22B1AA1EBDD6 ] netprofm        C:\Windows\System32\netprofm.dll
23:30:06.0058 0x0ef4  netprofm - ok
23:30:06.0058 0x0ef4  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
23:30:06.0089 0x0ef4  NetTcpActivator - ok
23:30:06.0104 0x0ef4  [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
23:30:06.0136 0x0ef4  NetTcpPortSharing - ok
23:30:06.0167 0x0ef4  [ 1D85C4B390B0EE09C7A46B91EFB2C097, 6A8850B151E88EE371F3CC543A946302DDF9494908D684B8B0C706A42CC54348 ] nfrd960         C:\Windows\system32\DRIVERS\nfrd960.sys
23:30:06.0214 0x0ef4  nfrd960 - ok
23:30:06.0245 0x0ef4  [ F115C5CD29E512F18BD7138A094B77E5, 90C2CE8B256EE9AABF674ADDE7F85E91DAF48EA368452D03C187A4AE027D4E39 ] NlaSvc          C:\Windows\System32\nlasvc.dll
23:30:06.0307 0x0ef4  NlaSvc - ok
23:30:06.0307 0x0ef4  [ 1DB262A9F8C087E8153D89BEF3D2235F, A51EE5D5AD3CD76B74BEA9C66C462608BF3B50C53DAA4110A75DB10495A8C101 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
23:30:06.0416 0x0ef4  Npfs - ok
23:30:06.0416 0x0ef4  [ BA387E955E890C8A88306D9B8D06BF17, 3477BD9686C5777A93251C154512671AAA7533B18C536DF51F7B1D6D28E7F8A5 ] nsi             C:\Windows\system32\nsisvc.dll
23:30:06.0479 0x0ef4  nsi - ok
23:30:06.0479 0x0ef4  [ E9A0A4D07E53D8FEA2BB8387A3293C58, 690CAD6C4E35ECC1172A2E1FD3933DF73158B3BF42CB21244269612A53DE4D7A ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
23:30:06.0557 0x0ef4  nsiproxy - ok
23:30:06.0635 0x0ef4  [ C8DFF8D07755A66C7A4A738930F0FEAC, A2CC58312CE57988ABD976155BE91F558DCEC4C23481C6FBE64B361D511A36EA ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
23:30:06.0775 0x0ef4  Ntfs - ok
23:30:06.0806 0x0ef4  [ F9756A98D69098DCA8945D62858A812C, 572ADBFCFDE2030B34A013AADC14DBC144EB3F34D06991E2464A3EA9605BC045 ] Null            C:\Windows\system32\drivers\Null.sys
23:30:06.0869 0x0ef4  Null - ok
23:30:06.0900 0x0ef4  [ 03AD379554B50FA1802BE4EC2E291E92, DCF2B5DB1C8BDF2473E454F974EA6445C3EEC111252D859EC2EC3F6833390271 ] nusb3hub        C:\Windows\system32\DRIVERS\nusb3hub.sys
23:30:06.0931 0x0ef4  nusb3hub - ok
23:30:06.0978 0x0ef4  [ 06FE87C9D181AF5F04D192E604E10E6C, 27BBB521C68EAD123117DCD1DEA7436833EC0CFB62F6B6A5AC12E5A2996C7595 ] nusb3xhc        C:\Windows\system32\DRIVERS\nusb3xhc.sys
23:30:07.0025 0x0ef4  nusb3xhc - ok
23:30:07.0056 0x0ef4  [ B3E25EE28883877076E0E1FF877D02E0, 402B6FED6FBBF645190396DC141141EF52DD059DABD01F8AC9CF01D23664070C ] nvraid          C:\Windows\system32\drivers\nvraid.sys
23:30:07.0103 0x0ef4  nvraid - ok
23:30:07.0134 0x0ef4  [ 4380E59A170D88C4F1022EFF6719A8A4, 93EDB3F4CDBF53C9C1970DD29AB146E390695C568180847BA8903F5FBEABCFF2 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
23:30:07.0181 0x0ef4  nvstor - ok
23:30:07.0196 0x0ef4  [ 5A0983915F02BAE73267CC2A041F717D, D83461D74597BF2BE042FEFCC27FCD18BF63CB8135B0666D731D50951C3468A8 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
23:30:07.0259 0x0ef4  nv_agp - ok
23:30:07.0290 0x0ef4  [ 08A70A1F2CDDE9BB49B885CB817A66EB, 0BB98123B544124B144F3E95D77E01E973D060B8B2302503FF24ABBBE803EB63 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
23:30:07.0399 0x0ef4  ohci1394 - ok
23:30:07.0446 0x0ef4  [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
23:30:07.0571 0x0ef4  p2pimsvc - ok
23:30:07.0602 0x0ef4  [ 59C3DDD501E39E006DAC31BF55150D91, E02B63AB7F34CF6FF3F644AF354D10004E6F50014E03172D80BD78934EF71EF1 ] p2psvc          C:\Windows\system32\p2psvc.dll
23:30:07.0696 0x0ef4  p2psvc - ok
23:30:07.0727 0x0ef4  [ 2EA877ED5DD9713C5AC74E8EA7348D14, 14BA3722CE5F8FF07F2D97DCDD6558EB49C9B02E5E6FAD6D9F18D354733EFECE ] Parport         C:\Windows\system32\DRIVERS\parport.sys
23:30:07.0774 0x0ef4  Parport - ok
23:30:07.0805 0x0ef4  [ 3F34A1B4C5F6475F320C275E63AFCE9B, 31295D5121C0C3F2085E0EEBA260EEE4CA003993C026E2F81986D19158036E6B ] partmgr         C:\Windows\system32\drivers\partmgr.sys
23:30:07.0852 0x0ef4  partmgr - ok
23:30:07.0867 0x0ef4  [ EB0A59F29C19B86479D36B35983DAADC, AC09AFE7F13BE4079D01383BAC44091997E1AAF6512C9673A42B9E3780EB08A8 ] Parvdm          C:\Windows\system32\DRIVERS\parvdm.sys
23:30:07.0914 0x0ef4  Parvdm - ok
23:30:07.0945 0x0ef4  [ 52954BE460EC6C54C0ACB2B3B126FFC6, 9F9878EC5ABC74C5A8EE8E1D940F0934F081895B07D844F42F80A638FE713F7B ] PcaSvc          C:\Windows\System32\pcasvc.dll
23:30:07.0992 0x0ef4  PcaSvc - ok
23:30:08.0008 0x0ef4  [ 673E55C3498EB970088E812EA820AA8F, 1F81315664B8CBFDD569416C0ECCE4C6251F34577313A0858AB46609781303B5 ] pci             C:\Windows\system32\drivers\pci.sys
23:30:08.0039 0x0ef4  pci - ok
23:30:08.0086 0x0ef4  [ AFE86F419014DB4E5593F69FFE26CE0A, CAF36E61BE7B511D3A03A65FF5A3017CEE4D2F53005B410F2D4A2AAE9FED4C00 ] pciide          C:\Windows\system32\drivers\pciide.sys
23:30:08.0132 0x0ef4  pciide - ok
23:30:08.0179 0x0ef4  [ F396431B31693E71E8A80687EF523506, BC614FC21E029E2497F1CCE3131BBD295B827F2310762B47D5BBC7703D80554B ] pcmcia          C:\Windows\system32\DRIVERS\pcmcia.sys
23:30:08.0226 0x0ef4  pcmcia - ok
23:30:08.0304 0x0ef4  [ 250F6B43D2B613172035C6747AEEB19F, A91F15B133F2619912CF750E6F3662E011CD0FA4B9477CE532CE3196D23307D9 ] pcw             C:\Windows\system32\drivers\pcw.sys
23:30:08.0335 0x0ef4  pcw - ok
23:30:08.0444 0x0ef4  [ AEBC369F7DC72AB3F5B9BDF34FA0D43F, 2A819154AC6C23E97C583D90B4D0C112188B7AE9D8D9B3F88811BFCED124E551 ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
23:30:08.0554 0x0ef4  PEAUTH - ok
23:30:08.0663 0x0ef4  [ 414BBA67A3DED1D28437EB66AEB8A720, D6DF254E2615FA402044824DCD9004F579FC0DF74B90E44C99D5F0253CF8AD88 ] pla             C:\Windows\system32\pla.dll
23:30:08.0866 0x0ef4  pla - ok
23:30:08.0912 0x0ef4  [ EC7BC28D207DA09E79B3E9FAF8B232CA, A42F8F69C3CD753D787A5D558659DEA2CC306C896D75B8C82549219CF654504F ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
23:30:09.0006 0x0ef4  PlugPlay - ok
23:30:09.0022 0x0ef4  [ 63FF8572611249931EB16BB8EED6AFC8, 9732CCBCB93A7A4BEC88812B952C20244479E9BD781240C195E57F09E619EA33 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
23:30:09.0068 0x0ef4  PNRPAutoReg - ok
23:30:09.0100 0x0ef4  [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
23:30:09.0131 0x0ef4  PNRPsvc - ok
23:30:09.0178 0x0ef4  [ 53946B69BA0836BD95B03759530C81EC, 7F14A34635354CCA0F5342C8D9DF5A6AA1B94F6A508BD8834029E9BACF252920 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
23:30:09.0287 0x0ef4  PolicyAgent - ok
23:30:09.0334 0x0ef4  [ F87D30E72E03D579A5199CCB3831D6EA, B09328E89954584F97908FA5946376BA990B8C650DABCBF3CA3B08719937C694 ] Power           C:\Windows\system32\umpo.dll
23:30:09.0396 0x0ef4  Power - ok
23:30:09.0427 0x0ef4  [ 631E3E205AD6D86F2AED6A4A8E69F2DB, 1D3BF0CFC37D91A3A56246920B9CF1084E78A055D56E85A773417809C58C8065 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
23:30:09.0505 0x0ef4  PptpMiniport - ok
23:30:09.0521 0x0ef4  [ 85B1E3A0C7585BC4AAE6899EC6FCF011, 1E067113C146D6842D7FB04007F363D6FB7783C6BC7C9AB6614E44075C4F86C3 ] Processor       C:\Windows\system32\DRIVERS\processr.sys
23:30:09.0568 0x0ef4  Processor - ok
23:30:09.0583 0x0ef4  Profos - ok
23:30:09.0630 0x0ef4  [ FD9692A3D31E021207D3C2A9DDDC2BE3, 5295EFAD9BD4B59996935A41825392C12A4C968D161BEEA37797F90AF8E54229 ] ProfSvc         C:\Windows\system32\profsvc.dll
23:30:09.0692 0x0ef4  ProfSvc - ok
23:30:09.0708 0x0ef4  [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] ProtectedStorage C:\Windows\system32\lsass.exe
23:30:09.0724 0x0ef4  ProtectedStorage - ok
23:30:09.0755 0x0ef4  [ 6270CCAE2A86DE6D146529FE55B3246A, 463209CBAF1B0E269DC8FC6FBDEE5BB7E5ADB5D3F024930BFD0B97E0A9678883 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
23:30:09.0833 0x0ef4  Psched - ok
23:30:09.0911 0x0ef4  [ A6A7AD767BF5141665F5C675F671B3E1, 11D43F732C3B82679E53516F83E675B60B0EFEDE3F4EE3C42AC752AD8D5155AF ] PSI_SVC_2       c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
23:30:09.0958 0x0ef4  PSI_SVC_2 - ok
23:30:10.0036 0x0ef4  [ AB95ECF1F6659A60DDC166D8315B0751, 0ED6D3460D28978BADF31B930DBB3298A6A10EFF8883763EABA0E36A21A0E83D ] ql2300          C:\Windows\system32\DRIVERS\ql2300.sys
23:30:10.0145 0x0ef4  ql2300 - ok
23:30:10.0176 0x0ef4  [ B4DD51DD25182244B86737DC51AF2270, 7E62B04F054A6330B7F9968222523BDE8F3EE47A11D17E6C0E2D5ACDC07B9E6B ] ql40xx          C:\Windows\system32\DRIVERS\ql40xx.sys
23:30:10.0223 0x0ef4  ql40xx - ok
23:30:10.0254 0x0ef4  [ 31AC809E7707EB580B2BDB760390765A, A8481FD19A0F778F5591B7676F591F664ADC68B6867E663C0F9564173F4AC909 ] QWAVE           C:\Windows\system32\qwave.dll
23:30:10.0332 0x0ef4  QWAVE - ok
23:30:10.0348 0x0ef4  [ 584078CA1B95CA72DF2A27C336F9719D, 836F115C92D343463C14A9DE39648C1EFA7C7EE4720F5C692EE0F68B84830121 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
23:30:10.0394 0x0ef4  QWAVEdrv - ok
23:30:10.0426 0x0ef4  [ 30A81B53C766D0133BB86D234E5556AB, 726C6B83B5ACAA84CAB1689B6DD6DDAE3199D61A57B5D7B5B5A0F62FCF838090 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
23:30:10.0488 0x0ef4  RasAcd - ok
23:30:10.0504 0x0ef4  [ 57EC4AEF73660166074D8F7F31C0D4FD, C66B425EC4DB5E7FD289AE631C9B019EB16717C55E80FAE964BB22203E4AACEF ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
23:30:10.0566 0x0ef4  RasAgileVpn - ok
23:30:10.0597 0x0ef4  [ A60F1839849C0C00739787FD5EC03F13, B210DFA5A843CF1DA73635F168E2EA5052CBED15C664F8523CDFB34CA165D0E0 ] RasAuto         C:\Windows\System32\rasauto.dll
23:30:10.0660 0x0ef4  RasAuto - ok
23:30:10.0675 0x0ef4  [ D9F91EAFEC2815365CBE6D167E4E332A, 8350457A39D141C13807E7DB5A8D4113197C4016F7744B9993391F4AEA0C4A5C ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
23:30:10.0738 0x0ef4  Rasl2tp - ok
23:30:10.0784 0x0ef4  [ CB9E04DC05EACF5B9A36CA276D475006, 4D8C0AEF1D4F84F375AD2BAF786C9F6C52316A3E655B913449E71AD7C0FCA56E ] RasMan          C:\Windows\System32\rasmans.dll
23:30:10.0862 0x0ef4  RasMan - ok
23:30:10.0894 0x0ef4  [ 0FE8B15916307A6AC12BFB6A63E45507, 64119474DE7499E6E8B82E78BBD50074B3AA70B3E8329089FAE9B7F29919004E ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
23:30:10.0972 0x0ef4  RasPppoe - ok
23:30:11.0018 0x0ef4  [ 44101F495A83EA6401D886E7FD70096B, 56A0CE5C89870752B9B2AB795C1A248CA28209E049B2F20CCA0308CBE2488A0A ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
23:30:11.0065 0x0ef4  RasSstp - ok
23:30:11.0096 0x0ef4  [ D528BC58A489409BA40334EBF96A311B, C71E9A4B101DB6C3183B9F97B9098D73D6FE1B12C05C2EB3CE8A8041BEE6BA61 ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
23:30:11.0190 0x0ef4  rdbss - ok
23:30:11.0206 0x0ef4  [ 0D8F05481CB76E70E1DA06EE9F0DA9DF, 2AFCBE3237D27AFBF095F91F1FCCA63E6890F34A9E4F00E5C34C92394CDA89FB ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
23:30:11.0268 0x0ef4  rdpbus - ok
23:30:11.0299 0x0ef4  [ 23DAE03F29D253AE74C44F99E515F9A1, 8FED93D10B2062F0526FE3508101F8FCF8F72DEB90AFB472EB7CBAE83A0EC430 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
23:30:11.0346 0x0ef4  RDPCDD - ok
23:30:11.0377 0x0ef4  [ 5A53CA1598DD4156D44196D200C94B8A, 8112FE14FEC94C67B1C5BDE4171E37584F1D0098D2C557C9E4BDD3E0291E25E4 ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
23:30:11.0424 0x0ef4  RDPENCDD - ok
23:30:11.0440 0x0ef4  [ 44B0A53CD4F27D50ED461DAE0C0B4E1F, CDA80B08E67AD034081C0C920CD66147689F1844403CBC552F65005E7C011A91 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
23:30:11.0502 0x0ef4  RDPREFMP - ok
23:30:11.0549 0x0ef4  [ CD9214A6AE17D188D17C3CF8CB9CC693, 2E16FF1F7446F0600D6519010FD05A30B94D97167C16B3E7FC396A97D8139D60 ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
23:30:11.0611 0x0ef4  RDPWD - ok
23:30:11.0658 0x0ef4  [ 518395321DC96FE2C9F0E96AC743B656, 5F6A0880B4F3EE7196259EA362DA9554B0687B0236F9A8E5CF7A4A77F01F1776 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
23:30:11.0705 0x0ef4  rdyboost - ok
23:30:11.0736 0x0ef4  [ 7B5E1419717FAC363A31CC302895217A, 048B96B127CC20833948DAE53C59886D5C725ECA7A744424A01339447D2DDC32 ] RemoteAccess    C:\Windows\System32\mprdim.dll
23:30:11.0814 0x0ef4  RemoteAccess - ok
23:30:11.0845 0x0ef4  [ CB9A8683F4EF2BF99E123D79950D7935, B9FA3E7E91E76D975CF40BFA37909E50F29CC13AB1399007884710651827E9AA ] RemoteRegistry  C:\Windows\system32\regsvc.dll
23:30:11.0954 0x0ef4  RemoteRegistry - ok
23:30:11.0970 0x0ef4  [ 78D072F35BC45D9E4E1B61895C152234, 80C924EE1156B4E3172E83DCB9C60817E87885FB9377647E0BF90153E415B1CA ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
23:30:12.0001 0x0ef4  RpcEptMapper - ok
23:30:12.0032 0x0ef4  [ 94D36C0E44677DD26981D2BFEEF2A29D, D77A93AC60536F3706E8A0154C0C2199E888B7748C84DB7437254FF175F4DF55 ] RpcLocator      C:\Windows\system32\locator.exe
23:30:12.0079 0x0ef4  RpcLocator - ok
23:30:12.0110 0x0ef4  [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] RpcSs           C:\Windows\system32\rpcss.dll
23:30:12.0157 0x0ef4  RpcSs - ok
23:30:12.0157 0x0ef4  [ 032B0D36AD92B582D869879F5AF5B928, 0F8F18A6A0A689957B886D9368015889091094EDA18BE532093F06A70A7CE184 ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
23:30:12.0235 0x0ef4  rspndr - ok
23:30:12.0298 0x0ef4  [ 417510C595075C6F1F4231D5E0E4E92D, 58BF53657E9AA48634CC1964D50FEF362BF1C015E13B0D3E2C2EF3ED6B1B71B6 ] RTL2832UBDA     C:\Windows\system32\drivers\RTL2832UBDA.sys
23:30:12.0329 0x0ef4  RTL2832UBDA - ok
23:30:12.0360 0x0ef4  [ 5FEAEF56EF51C46527DE684B93E99367, 505EA0169265830F6207BE14C8566EAAB54B013E1BAFFF451D1FD2DD7A9A8D19 ] RTL2832UUSB     C:\Windows\system32\Drivers\RTL2832UUSB.sys
23:30:12.0391 0x0ef4  RTL2832UUSB - ok
23:30:12.0422 0x0ef4  [ A883C6239C1A48A3077D113BE385BEF0, 1E27734519A1DCC200D803DC65D7704677DB8D8C4585074AF21B9794CED6F782 ] RTL2832U_IRHID  C:\Windows\system32\DRIVERS\RTL2832U_IRHID.sys
23:30:12.0438 0x0ef4  RTL2832U_IRHID - ok
23:30:12.0485 0x0ef4  [ 0516998076AD894AE7E362C3110AA071, 1C5B6A55418FE0D324AE2BD9AB9E5AAAB17F398608029E0EEAA0C0AE90040FDA ] RTL8167         C:\Windows\system32\DRIVERS\Rt86win7.sys
23:30:12.0532 0x0ef4  RTL8167 - ok
23:30:12.0578 0x0ef4  [ 51ADEF77E4C929535FD50DA153774E79, A02C501D6582DE2E450840E187285678A42087519C232AA20A7ECA1E218ED179 ] RTL8192su       C:\Windows\system32\DRIVERS\RTL8192su.sys
23:30:12.0656 0x0ef4  RTL8192su - ok
23:30:12.0672 0x0ef4  [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] SamSs           C:\Windows\system32\lsass.exe
23:30:12.0688 0x0ef4  SamSs - ok
23:30:12.0719 0x0ef4  [ 05D860DA1040F111503AC416CCEF2BCA, DAE2F37D09A5A42F945BC8E27E4EA2303521081783A80CEE7FEE7C5A1C2CFC5E ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
23:30:12.0750 0x0ef4  sbp2port - ok
23:30:12.0781 0x0ef4  [ 8FC518FFE9519C2631D37515A68009C4, 21E10585470CF9FC3BD1977F8A426686CD2FA6BD2094B9E3594B21C7C4541D25 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
23:30:12.0828 0x0ef4  SCardSvr - ok
23:30:12.0859 0x0ef4  [ 0693B5EC673E34DC147E195779A4DCF6, AF1B56FBF3ADABF94CD9DBA67586B8746DE135151F6B3D1B0EE315BC1E2DB670 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
23:30:12.0922 0x0ef4  scfilter - ok
23:30:12.0968 0x0ef4  [ A04BB13F8A72F8B6E8B4071723E4E336, E63287FF71C39CBF64C3347C455324C8437F9CF398153E269543588B65389502 ] Schedule        C:\Windows\system32\schedsvc.dll
23:30:13.0046 0x0ef4  Schedule - ok
23:30:13.0062 0x0ef4  [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] SCPolicySvc     C:\Windows\System32\certprop.dll
23:30:13.0093 0x0ef4  SCPolicySvc - ok
23:30:13.0124 0x0ef4  [ 08236C4BCE5EDD0A0318A438AF28E0F7, 77727F963F63C4CEC11E7AAD5FB3836179701D512CA9436C3170B9E6A4E5F888 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
23:30:13.0249 0x0ef4  SDRSVC - ok
23:30:13.0327 0x0ef4  [ 4A5809A1D796E2675AC0332BF7B0CB11, 7EEEC85A397F04A9460DC37A070D115E19114D9A3E5D9D7E8021F60A7986C8C1 ] SeaPort         C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
23:30:13.0358 0x0ef4  SeaPort - ok
23:30:13.0390 0x0ef4  [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv          C:\Windows\system32\drivers\secdrv.sys
23:30:13.0452 0x0ef4  secdrv - ok
23:30:13.0468 0x0ef4  [ A59B3A4442C52060CC7A85293AA3546F, 1776D6DEE51991149265AAF39E17065E301C5FA1FF4068653DC0010B9B27185D ] seclogon        C:\Windows\system32\seclogon.dll
23:30:13.0530 0x0ef4  seclogon - ok
23:30:13.0546 0x0ef4  [ DCB7FCDCC97F87360F75D77425B81737, F8289AF2C458C167038EEFE613EE5E3D6D5B3308B8784168374BC81C47891CE5 ] SENS            C:\Windows\System32\sens.dll
23:30:13.0608 0x0ef4  SENS - ok
23:30:13.0624 0x0ef4  [ 50087FE1EE447009C9CC2997B90DE53F, B5E6CF1D991F87C29C5E28198E0962E31FFB499A46C3BD43FC20391693389959 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
23:30:13.0702 0x0ef4  SensrSvc - ok
23:30:13.0733 0x0ef4  [ 9AD8B8B515E3DF6ACD4212EF465DE2D1, E2F019BCD1446236D078D46065DD151DD068778F33BE2F1E8A0CC1EA2F954E86 ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
23:30:13.0764 0x0ef4  Serenum - ok
23:30:13.0795 0x0ef4  [ 5FB7FCEA0490D821F26F39CC5EA3D1E2, A26DB2EB9F3E2509B4EBA949DB97595CC32332D9321DF68283BFC102E66D766F ] Serial          C:\Windows\system32\DRIVERS\serial.sys
23:30:13.0858 0x0ef4  Serial - ok
23:30:13.0873 0x0ef4  [ 79BFFB520327FF916A582DFEA17AA813, 7A2A9D69BE02228591186A9F4453D4B5FD98837CA422C873C48040170E8BD18C ] sermouse        C:\Windows\system32\DRIVERS\sermouse.sys
23:30:13.0904 0x0ef4  sermouse - ok
23:30:13.0936 0x0ef4  [ 4AE380F39A0032EAB7DD953030B26D28, C8F5F2DD59574E966FDF3057867BB959A554BAB6FD5DC6F1427094A6BC2B2809 ] SessionEnv      C:\Windows\system32\sessenv.dll
23:30:14.0029 0x0ef4  SessionEnv - ok
23:30:14.0045 0x0ef4  [ 9F976E1EB233DF46FCE808D9DEA3EB9C, 6A5C53F27F8BCA85CE206EE7D196176F67EC6FFA5D4830373A20792C149B5E75 ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
23:30:14.0123 0x0ef4  sffdisk - ok
23:30:14.0138 0x0ef4  [ 932A68EE27833CFD57C1639D375F2731, 11D6B98FBEEE2B9C7B06EF7091857BBD3B349077997D6261D66280668FD1B5C3 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
23:30:14.0170 0x0ef4  sffp_mmc - ok
23:30:14.0185 0x0ef4  [ 6D4CCAEDC018F1CF52866BBBAA235982, AAC41F5C97B3FE5A3DC0838457EB8CC9BB71FCA16D3EDBB67D603F0A9D46C131 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
23:30:14.0248 0x0ef4  sffp_sd - ok
23:30:14.0279 0x0ef4  [ DB96666CC8312EBC45032F30B007A547, C3AE60FC65A36E96E0D2CC6E184481D70F91A19DC3E2E17E2873DD670A592DD7 ] sfloppy         C:\Windows\system32\DRIVERS\sfloppy.sys
23:30:14.0326 0x0ef4  sfloppy - ok
23:30:14.0357 0x0ef4  [ D1A079A0DE2EA524513B6930C24527A2, E2BC16DBCF38841EECD49C6FA1A9AC89C17F332F12606CA826F058E995E1B83D ] SharedAccess    C:\Windows\System32\ipnathlp.dll
23:30:14.0466 0x0ef4  SharedAccess - ok
23:30:14.0513 0x0ef4  [ 414DA952A35BF5D50192E28263B40577, 9C9BAFB9880DA6CC728506A142BE124E186219610DCC3460657A3CA93C865DF1 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
23:30:14.0575 0x0ef4  ShellHWDetection - ok
23:30:14.0606 0x0ef4  [ 2565CAC0DC9FE0371BDCE60832582B2E, 1A775214E86B83C2F1799F12D71077D81C89AD32734A248BA88787B7F104B79D ] sisagp          C:\Windows\system32\drivers\sisagp.sys
23:30:14.0638 0x0ef4  sisagp - ok
23:30:14.0669 0x0ef4  [ A9F0486851BECB6DDA1D89D381E71055, 7E909538AB758C18AC2CCBFFEE17BA36FA6ED2E674AA70924AA87AC61375FF35 ] SiSRaid2        C:\Windows\system32\DRIVERS\SiSRaid2.sys
23:30:14.0731 0x0ef4  SiSRaid2 - ok
23:30:14.0747 0x0ef4  [ 3727097B55738E2F554972C3BE5BC1AA, 75D52A596A298C33EC79A3B0B80F25492C08A182ABC679401502DA9597687566 ] SiSRaid4        C:\Windows\system32\DRIVERS\sisraid4.sys
23:30:14.0809 0x0ef4  SiSRaid4 - ok
23:30:14.0856 0x0ef4  [ 3E21C083B8A01CB70BA1F09303010FCE, 803F8F91299C387110F34A49340E7136AAE91B418E2977A36285EA8F432FF197 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
23:30:14.0950 0x0ef4  Smb - ok
23:30:14.0996 0x0ef4  [ 6A984831644ECA1A33FFEAE4126F4F37, 753E23D2B33D47C52C05D892B052CFD96D93B97FB6E9FCB58EF1E4C4A125BF78 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
23:30:15.0028 0x0ef4  SNMPTRAP - ok
23:30:15.0028 0x0ef4  [ 95CF1AE7527FB70F7816563CBC09D942, CE8BACB91A5A86CBCE82619C6C1873B4D7593B00CED3B522E41B8F7F6258CC65 ] spldr           C:\Windows\system32\drivers\spldr.sys
23:30:15.0059 0x0ef4  spldr - ok
23:30:15.0121 0x0ef4  [ 9AEA093B8F9C37CF45538382CABA2475, CC63239C412067AA72318ADB8BB80BCDF2CA60DA05D814D32753C92508BC16A8 ] Spooler         C:\Windows\System32\spoolsv.exe
23:30:15.0199 0x0ef4  Spooler - ok
23:30:15.0371 0x0ef4  [ CF87A1DE791347E75B98885214CED2B8, 7AF4E03D751C951A4E5FBA28200DABFE6B3BF055490163EEEEA84EBA4D0F368A ] sppsvc          C:\Windows\system32\sppsvc.exe
23:30:15.0652 0x0ef4  sppsvc - ok
23:30:15.0683 0x0ef4  [ B0180B20B065D89232A78A40FE56EAA6, 4D045B23AD58A8822BE9F20119744A8D47455469D54494745CEB099951DA60FF ] sppuinotify     C:\Windows\system32\sppuinotify.dll
23:30:15.0745 0x0ef4  sppuinotify - ok
23:30:15.0792 0x0ef4  [ E4C2764065D66EA1D2D3EBC28FE99C46, 043AEF06A23069DD17675955C834690A5FD8F1948A05B3969F977E823C4E25F5 ] srv             C:\Windows\system32\DRIVERS\srv.sys
23:30:15.0886 0x0ef4  srv - ok
23:30:15.0917 0x0ef4  [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB, 4DF31206DF8F33C2975E23C7257ED930C4EDA8BC4E246D8FDA130BB583083ED0 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
23:30:16.0010 0x0ef4  srv2 - ok
23:30:16.0026 0x0ef4  [ BE6BD660CAA6F291AE06A718A4FA8ABC, CD38939CFBA80B882D38099194FC1EBAE15A9D27A4D941DD03C55EC745E52E59 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
23:30:16.0088 0x0ef4  srvnet - ok
23:30:16.0104 0x0ef4  [ D887C9FD02AC9FA880F6E5027A43E118, F38BAD90EC791368C37C21090302708D2DFB83ECE9096609AD9AA667B2E5592E ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
23:30:16.0182 0x0ef4  SSDPSRV - ok
23:30:16.0244 0x0ef4  [ A36EE93698802CD899F98BFD553D8185, 224CFED921EA230FF8025D259E34968FD2C0FD34BB3A918FB4B9B8BA42BEA5D3 ] ssmdrv          C:\Windows\system32\DRIVERS\ssmdrv.sys
23:30:16.0260 0x0ef4  ssmdrv - ok
23:30:16.0276 0x0ef4  [ D318F23BE45D5E3A107469EB64815B50, D74355E6FF215AA8CE53BC9DF16AF2740F2FC2FD754939478A3608BDA8C6DDA0 ] SstpSvc         C:\Windows\system32\sstpsvc.dll
23:30:16.0322 0x0ef4  SstpSvc - ok
23:30:16.0338 0x0ef4  [ DB32D325C192B801DF274BFD12A7E72B, F089DBA719E22BC269720A6B840B873A4AF5639745DB0C3DBC8BD2F2839A1ABA ] stexstor        C:\Windows\system32\DRIVERS\stexstor.sys
23:30:16.0369 0x0ef4  stexstor - ok
23:30:16.0416 0x0ef4  [ E1FB3706030FB4578A0D72C2FC3689E4, A62EC9AA4514CAF2A10C0A3AEF7A36F593A7E7DA370A3F130C24E1B612E19427 ] StiSvc          C:\Windows\System32\wiaservc.dll
23:30:16.0494 0x0ef4  StiSvc - ok
23:30:16.0525 0x0ef4  [ E58C78A848ADD9610A4DB6D214AF5224, 1575A90EB22A4FB066459BDA00C6CAC10198C3C8C74493721EC6D34B51F50426 ] swenum          C:\Windows\system32\drivers\swenum.sys
23:30:16.0572 0x0ef4  swenum - ok
23:30:16.0603 0x0ef4  [ A28BD92DF340E57B024BA433165D34D7, 889CC7FF143C3549982128473FF927CD80CF36485A347EF399C1271C8CE12CE4 ] swprv           C:\Windows\System32\swprv.dll
23:30:16.0697 0x0ef4  swprv - ok
23:30:16.0759 0x0ef4  [ 36650D618CA34C9D357DFD3D89B2C56F, 7C3774E53DCF32CB3A4B3504E32D2A651E18467FA0A6AC4C7993C696741B704B ] SysMain         C:\Windows\system32\sysmain.dll
23:30:16.0837 0x0ef4  SysMain - ok
23:30:16.0884 0x0ef4  [ 763FECDC3D30C815FE72DD57936C6CD1, 1A62C7E63E426D56894F4121C75D9C60FC9A14469ADBD0D6F0B94B8DE48CDA3E ] TabletInputService C:\Windows\System32\TabSvc.dll
23:30:16.0946 0x0ef4  TabletInputService - ok
23:30:16.0978 0x0ef4  [ 613BF4820361543956909043A265C6AC, FCFF02E466D2501630B452627FB218C01E5245A0921EE3D2117E7FD63AC7E98E ] TapiSrv         C:\Windows\System32\tapisrv.dll
23:30:17.0040 0x0ef4  TapiSrv - ok
23:30:17.0040 0x0ef4  [ B799D9FDB26111737F58288D8DC172D9, 409A60819A4305699E2E492A6190637FAAEBD19E745A5DB2A5D6977106C86591 ] TBS             C:\Windows\System32\tbssvc.dll
23:30:17.0134 0x0ef4  TBS - ok
23:30:17.0227 0x0ef4  [ 5579DD18546999F5D0EC39D018726C6B, 82432BACEE75C34F21222D9CC1607223C2940947118A63DB239777A4B1442AD3 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
23:30:17.0368 0x0ef4  Tcpip - ok
23:30:17.0446 0x0ef4  [ 5579DD18546999F5D0EC39D018726C6B, 82432BACEE75C34F21222D9CC1607223C2940947118A63DB239777A4B1442AD3 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
23:30:17.0508 0x0ef4  TCPIP6 - ok
23:30:17.0570 0x0ef4  [ 3EEBD3BD93DA46A26E89893C7AB2FF3B, 2C7204DCD2BCBC6A250FF0F6477616F327AF41FDB7CABE69E5C357361009FB4E ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
23:30:17.0617 0x0ef4  tcpipreg - ok
23:30:17.0664 0x0ef4  [ 1CB91B2BD8F6DD367DFC2EF26FD751B2, 879E2827354BB21573AC6A7CCEB746D44214540687E6882FFCB4089546FBD954 ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
23:30:17.0742 0x0ef4  TDPIPE - ok
23:30:17.0758 0x0ef4  [ 2C2C5AFE7EE4F620D69C23C0617651A8, E828D974C3F9D7004A030C3AD448096C736FDB4C4C1707D043E567D08C845103 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
23:30:17.0804 0x0ef4  TDTCP - ok
23:30:17.0820 0x0ef4  [ 7FE680A3DFA421C4A8E4879AE4C5AAB0, A4C64E155AB2843823CD3586756BA7681CFDEA50812095468221503BBAD30DCD ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
23:30:17.0882 0x0ef4  tdx - ok
23:30:17.0898 0x0ef4  [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20, 0D81B427720637882077C5024D738191F858FC734ED040697872D906351EF663 ] TermDD          C:\Windows\system32\drivers\termdd.sys
23:30:17.0929 0x0ef4  TermDD - ok
23:30:17.0976 0x0ef4  [ FCFD4F50419B4BC72E80066DA10D2E54, 7C2314A57A404525F0444986332DBAE0964A3359374671598387051D7AAE72AE ] TermService     C:\Windows\System32\termsrv.dll
23:30:18.0070 0x0ef4  TermService - ok
23:30:18.0085 0x0ef4  [ 42FB6AFD6B79D9FE07381609172E7CA4, B57C85091209A2FAD19ED490B8FA7FC98F12911F9C9CACE9AF1E540780CE6700 ] Themes          C:\Windows\system32\themeservice.dll
23:30:18.0163 0x0ef4  Themes - ok
23:30:18.0179 0x0ef4  [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] THREADORDER     C:\Windows\system32\mmcss.dll
23:30:18.0226 0x0ef4  THREADORDER - ok
23:30:18.0257 0x0ef4  [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A, 532A3A812578B2DFD83001DE66FC73689D79EC729409EB572E07E6D65B281712 ] TrkWks          C:\Windows\System32\trkwks.dll
23:30:18.0335 0x0ef4  TrkWks - ok
23:30:18.0397 0x0ef4  [ 2C49B175AEE1D4364B91B531417FE583, 6C7995E18F84E465C376D1D5F153C15ACB66CDEA86EE5BF186677F572E7E129B ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
23:30:18.0491 0x0ef4  TrustedInstaller - ok
23:30:18.0522 0x0ef4  [ 6C5139E4283249518F7743D7043775B3, 58684E8C90EBAC65459A97C905CDCFE3A915CFF7E8E96071DE1AC3489F85E67F ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
23:30:18.0569 0x0ef4  tssecsrv - ok
23:30:18.0631 0x0ef4  [ FD1D6C73E6333BE727CBCC6054247654, 6F7B9AE1A5986204DB3348D13B303F30FC17624939DA74D6BD114FAEED0FB30E ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
23:30:18.0725 0x0ef4  TsUsbFlt - ok
23:30:18.0740 0x0ef4  [ B2FA25D9B17A68BB93D58B0556E8C90D, 0146931B733CAB1CD87F94C35F97E110D6ED6C55EAFF03345400A29AEDE99BDE ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
23:30:18.0834 0x0ef4  tunnel - ok
23:30:18.0865 0x0ef4  [ 750FBCB269F4D7DD2E420C56B795DB6D, E1A95C59148FE463539C34336FD0E74B31A33B8AB2B8E34AA10349C3347471D7 ] uagp35          C:\Windows\system32\DRIVERS\uagp35.sys
23:30:18.0881 0x0ef4  uagp35 - ok
23:30:18.0912 0x0ef4  [ EE43346C7E4B5E63E54F927BABBB32FF, BAD6FC3BEE45E644D5A6A0A31428F5B2AEC72A0AA0C74EF8177B1FE23EEF3AA9 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
23:30:19.0021 0x0ef4  udfs - ok
23:30:19.0052 0x0ef4  [ 8344FD4FCE927880AA1AA7681D4927E5, 1B54EFA60A221E2B9FFE59BB41C7E7D8B5AC6826F1C5577456D81371D464255A ] UI0Detect       C:\Windows\system32\UI0Detect.exe
23:30:19.0099 0x0ef4  UI0Detect - ok
23:30:19.0130 0x0ef4  [ 44E8048ACE47BEFBFDC2E9BE4CBC8880, 5D96D90FDF68AE470CC92CA9DF9DA2C05A53EF455A5A109DBBF7C96F3238257C ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
23:30:19.0177 0x0ef4  uliagpkx - ok
23:30:19.0208 0x0ef4  [ D295BED4B898F0FD999FCFA9B32B071B, D4130DB4AE76EE6DC0B8E7A4FEF5CB8B26EBD822C21021F6FA78FD29C1E211C2 ] umbus           C:\Windows\system32\drivers\umbus.sys
23:30:19.0255 0x0ef4  umbus - ok
23:30:19.0286 0x0ef4  [ 7550AD0C6998BA1CB4843E920EE0FEAC, 24C001E422C3B3B920CDCF6003A3179CE464DE4284775403DD5122EF9780460D ] UmPass          C:\Windows\system32\DRIVERS\umpass.sys
23:30:19.0333 0x0ef4  UmPass - ok
23:30:19.0364 0x0ef4  [ 833FBB672460EFCE8011D262175FAD33, C0C3067A305993CBF056C229771CB0593DD60C9C7AC5130FF1CA610BCA812AB5 ] upnphost        C:\Windows\System32\upnphost.dll
23:30:19.0442 0x0ef4  upnphost - ok
23:30:19.0474 0x0ef4  [ 83CAFCB53201BBAC04D822F32438E244, E3F6FDE4D429FB630B19417DD9752A2CE9F6C9FD58918D714B5438A3D4136853 ] USBAAPL         C:\Windows\system32\Drivers\usbaapl.sys
23:30:19.0520 0x0ef4  USBAAPL - ok
23:30:19.0567 0x0ef4  [ 0803FBA9FE829D61AE26EC0BCC910C46, 30D00E2C7DFC630C99C1599587D4F9C272BC30D444E07C961AA05BF84587806B ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
23:30:19.0630 0x0ef4  usbccgp - ok
23:30:19.0676 0x0ef4  [ 2352AB5F9F8F097BF9D41D5A4718A041, 25BC7828C625B9B2A5110C25B230C5828CEC18EC97ECF9EC4745E8930CBF472C ] usbcir          C:\Windows\system32\drivers\usbcir.sys
23:30:19.0739 0x0ef4  usbcir - ok
23:30:19.0786 0x0ef4  [ D40855F89B69305140BBD7E9A3BA2DA6, 745DC6D770666F6B19C2B6AA89C21D1A314732E291453BFA2367F9AF86F97C3C ] usbehci         C:\Windows\system32\drivers\usbehci.sys
23:30:19.0848 0x0ef4  usbehci - ok
23:30:19.0942 0x0ef4  [ EDF2DF71C4F1E13A6AC75F5224DE655A, 1764D155C6B99201774B57195349304259232A12868ECFC2069CA49443EBDC2C ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
23:30:20.0004 0x0ef4  usbhub - ok
23:30:20.0035 0x0ef4  [ 9828C8D14CC2676421778F0DE638CF97, 479A28211FFB85190A01FAB0283B927588805D2C0CDB03F85F8F814B88E4F453 ] usbohci         C:\Windows\system32\drivers\usbohci.sys
23:30:20.0098 0x0ef4  usbohci - ok
23:30:20.0129 0x0ef4  [ 797D862FE0875E75C7CC4C1AD7B30252, 1BBE745E4C85F8911076F6032ACD7A35FAC048D3CB1500C64E08D8B2C70A1069 ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
23:30:20.0191 0x0ef4  usbprint - ok
23:30:20.0207 0x0ef4  [ FC6B21DB4B5B398AB93DBE59CBF11036, A94094C208F376405C07822A6143001EF1B12AE93205CD8002E87F6EB45F6374 ] usbscan         C:\Windows\system32\DRIVERS\usbscan.sys
23:30:20.0285 0x0ef4  usbscan - ok
23:30:20.0300 0x0ef4  [ F991AB9CC6B908DB552166768176896A, AD8E7A16B23B244B7F834622D4E38B5844193C6E31EF96F61E0E2EA16C945026 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
23:30:20.0394 0x0ef4  USBSTOR - ok
23:30:20.0441 0x0ef4  [ 800AABFD625EEFF899F7E5496BDE37AB, 3EB7ED07760CB348FCA9A06C2B838EF79B51A83C5F70A9C9EAAEAE54480067E2 ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
23:30:20.0488 0x0ef4  usbuhci - ok
23:30:20.0519 0x0ef4  [ 081E6E1C91AEC36758902A9F727CD23C, 9FDAA17A3B99067E035E5D76305427F15FFDBC5D304B2BB78AFC6463EDDE1A75 ] UxSms           C:\Windows\System32\uxsms.dll
23:30:20.0597 0x0ef4  UxSms - ok
23:30:20.0612 0x0ef4  [ 981CE3E3A653511799F4A862494B66A8, 414D975387A118535E39636413969A7D4C98A85E542A44B8FA515C8A20D6093F ] VaultSvc        C:\Windows\system32\lsass.exe
23:30:20.0644 0x0ef4  VaultSvc - ok
23:30:20.0690 0x0ef4  [ A059C4C3EDB09E07D21A8E5C0AABD3CB, BDD3729B49DF2E2FC72FFEF9D10235B481A671DE5A721B6B9A80873B7A343F07 ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
23:30:20.0753 0x0ef4  vdrvroot - ok
23:30:20.0831 0x0ef4  [ C3CD30495687C2A2F66A65CA6FD89BE9, 582E4706C1D6A151020D14B26C7BF166F4E42BDD6E410F30EC452469270C5E9B ] vds             C:\Windows\System32\vds.exe
23:30:20.0924 0x0ef4  vds - ok
23:30:20.0971 0x0ef4  [ 17C408214EA61696CEC9C66E388B14F3, 829C0416672E2B2DFABCFE641E7F281F41E8DBB3C0EF11C7784CB9BB94F87E97 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
23:30:21.0018 0x0ef4  vga - ok
23:30:21.0049 0x0ef4  [ 8E38096AD5C8570A6F1570A61E251561, 4DBA3C1397A2203548F45F006E66D99F837903F601ABBCE2304754F783CA8A39 ] VgaSave         C:\Windows\System32\drivers\vga.sys
23:30:21.0112 0x0ef4  VgaSave - ok
23:30:21.0127 0x0ef4  [ 5461686CCA2FDA57B024547733AB42E3, 2721D0659AA890172FCAD4EC4D926B58ACD0EE4887DA51545DC7237420D5BF84 ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
23:30:21.0174 0x0ef4  vhdmp - ok
23:30:21.0205 0x0ef4  [ C829317A37B4BEA8F39735D4B076E923, 55D1796AE750071E1E05BD7702B6C355CCFFE27B4C00E93E7044C3184732B497 ] viaagp          C:\Windows\system32\drivers\viaagp.sys
23:30:21.0236 0x0ef4  viaagp - ok
23:30:21.0268 0x0ef4  [ E02F079A6AA107F06B16549C6E5C7B74, B530DCE3EE4F285B3D5F69F7148D17E016D54F04E6F93706B829A34567748788 ] ViaC7           C:\Windows\system32\DRIVERS\viac7.sys
23:30:21.0299 0x0ef4  ViaC7 - ok
23:30:21.0314 0x0ef4  [ E43574F6A56A0EE11809B48C09E4FD3C, 3687BF638E21C00E62ABFED70D728B91ADA08F7164CA898E654F31DA196589E9 ] viaide          C:\Windows\system32\drivers\viaide.sys
23:30:21.0377 0x0ef4  viaide - ok
23:30:21.0392 0x0ef4  [ 4C63E00F2F4B5F86AB48A58CD990F212, 9796BD4B9CFEEEAF57C5E332A732EFC2770B21F9B35301A5D202F5FC52C1E035 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
23:30:21.0439 0x0ef4  volmgr - ok
23:30:21.0470 0x0ef4  [ B5BB72067DDDDBBFB04B2F89FF8C3C87, 65B9AD55F43940A5FDD88B6EC5034A7E375DF8E6F5F1AE6519A4BD6B7E992EBC ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
23:30:21.0533 0x0ef4  volmgrx - ok
23:30:21.0564 0x0ef4  [ F497F67932C6FA693D7DE2780631CFE7, DAE544ED99D2CF570DA31343BD87D2F856D0D13529656D38E1BF854C77F017F6 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
23:30:21.0626 0x0ef4  volsnap - ok
23:30:21.0689 0x0ef4  [ 9DFA0CC2F8855A04816729651175B631, 37FD9E43A2A3F125E94A315FB4CD8A1B5499A5FD74806EB2D1E5DA88C070D3A3 ] vsmraid         C:\Windows\system32\DRIVERS\vsmraid.sys
23:30:21.0720 0x0ef4  vsmraid - ok
23:30:21.0814 0x0ef4  [ 209A3B1901B83AEB8527ED211CCE9E4C, 1A431F6409F8E0531F600F8F988ECECECB902DA26BBAAF1DE74A5CAC29A7CB44 ] VSS             C:\Windows\system32\vssvc.exe
23:30:22.0016 0x0ef4  VSS - ok
23:30:22.0048 0x0ef4  [ 90567B1E658001E79D7C8BBD3DDE5AA6, EFC23BEEA7F54A2DC56CB523DAD1AF0358D904C5278BF08873910E2DB3F13557 ] vwifibus        C:\Windows\System32\drivers\vwifibus.sys
23:30:22.0094 0x0ef4  vwifibus - ok
23:30:22.0126 0x0ef4  [ 7090D3436EEB4E7DA3373090A23448F7, 3A130B28F2BFA7DCEC8596C4CE4E187B019F5ECF1AAC8DD1BBDE9CBD2428FEC2 ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
23:30:22.0188 0x0ef4  vwififlt - ok
23:30:22.0219 0x0ef4  [ A3F04CBEA6C2A10E6CB01F8B47611882, 32AFE18B07FECA30BC95831A5DC94C784E543784DF16165334A777DC84E91EF3 ] vwifimp         C:\Windows\system32\DRIVERS\vwifimp.sys
23:30:22.0282 0x0ef4  vwifimp - ok
23:30:22.0328 0x0ef4  [ 55187FD710E27D5095D10A472C8BAF1C, AE298E2D3BA366BCBDC092C717214C181E8843FA564A6DFB07FC3238A5A68DC3 ] W32Time         C:\Windows\system32\w32time.dll
23:30:22.0438 0x0ef4  W32Time - ok
23:30:22.0453 0x0ef4  [ DE3721E89C653AA281428C8A69745D90, 501C78056ED4295625D8A5412025FD2F0CA24077044D3A5800BA79DF3D946516 ] WacomPen        C:\Windows\system32\DRIVERS\wacompen.sys
23:30:22.0500 0x0ef4  WacomPen - ok
23:30:22.0531 0x0ef4  [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
23:30:22.0609 0x0ef4  WANARP - ok
23:30:22.0625 0x0ef4  [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
23:30:22.0672 0x0ef4  Wanarpv6 - ok
23:30:22.0750 0x0ef4  [ 691E3285E53DCA558E1A84667F13E15A, 12EDB66EF8FC100402BEA221F354D3BD5542F6DDF715B6E7D873D6BAE7E3D329 ] wbengine        C:\Windows\system32\wbengine.exe
23:30:22.0937 0x0ef4  wbengine - ok
23:30:22.0968 0x0ef4  [ 9614B5D29DC76AC3C29F6D2D3AA70E67, A2FFB92F0030B4CD771E862DA575ECCF2F3A5B4B85858C1241A0C59262C0EC88 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
23:30:23.0046 0x0ef4  WbioSrvc - ok
23:30:23.0093 0x0ef4  [ 34EEE0DFAADB4F691D6D5308A51315DC, A040A03E25A0C78B9E26F86C2DF95BCAF8E7EC90183CEB295615D3265350EBEE ] wcncsvc         C:\Windows\System32\wcncsvc.dll
23:30:23.0171 0x0ef4  wcncsvc - ok
23:30:23.0186 0x0ef4  [ 5D930B6357A6D2AF4D7653BDABBF352F, 677FF2ED14EE0B0CAA710DA81556CC16D5971DAB10E7C7432D167A87CA6F0EAA ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
23:30:23.0280 0x0ef4  WcsPlugInService - ok
23:30:23.0280 0x0ef4  [ 1112A9BADACB47B7C0BB0392E3158DFF, 1AE2AFA125973571F91E6945FE8A735F63D76EBB250A0075D98C580167FD9ED4 ] Wd              C:\Windows\system32\DRIVERS\wd.sys
23:30:23.0311 0x0ef4  Wd - ok
23:30:23.0374 0x0ef4  [ 25944D2CC49E0A6C581D02A74B7D6645, AF8FFAFEC07F1A6A3D4008E609E8E1D705A8DFCC7995C766E3946887203F7BEE ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
23:30:23.0483 0x0ef4  Wdf01000 - ok
23:30:23.0498 0x0ef4  [ DDE994E9159497D0D5AB2CDF66D1EAD6, 49BEDECA469C47E7622542D3B9BCD31ECDDAA27838495EC5C2F1338E33FEA877 ] WdiServiceHost  C:\Windows\system32\wdi.dll
23:30:23.0561 0x0ef4  WdiServiceHost - ok
23:30:23.0576 0x0ef4  [ DDE994E9159497D0D5AB2CDF66D1EAD6, 49BEDECA469C47E7622542D3B9BCD31ECDDAA27838495EC5C2F1338E33FEA877 ] WdiSystemHost   C:\Windows\system32\wdi.dll
23:30:23.0592 0x0ef4  WdiSystemHost - ok
23:30:23.0654 0x0ef4  [ 75E8EBD7040CE238684333F97014762A, 2CA0B267FBAEB303D1F8B639D733DC0DE17BA1276CC9096035B4F2BBBED3EF7F ] WebClient       C:\Windows\System32\webclnt.dll
23:30:23.0717 0x0ef4  WebClient - ok
23:30:23.0732 0x0ef4  [ 760F0AFE937A77CFF27153206534F275, A53940BA28854486FF18F16B98A3314B36322B0B6EFB54D08B921315BEB0ADD5 ] Wecsvc          C:\Windows\system32\wecsvc.dll
23:30:23.0826 0x0ef4  Wecsvc - ok
23:30:23.0842 0x0ef4  [ AC804569BB2364FB6017370258A4091B, 1856F354146A5946F3E7D0DD09726FC8A3502B0F0776FEADDF10669C81CC28E2 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
23:30:23.0935 0x0ef4  wercplsupport - ok
23:30:23.0966 0x0ef4  [ 08E420D873E4FD85241EE2421B02C4A4, E1E9436EB096FF7DE9A76DA6217035257EF9FC7565DDB9016DCA3859E7F1EF0F ] WerSvc          C:\Windows\System32\WerSvc.dll
23:30:24.0029 0x0ef4  WerSvc - ok
23:30:24.0091 0x0ef4  [ 8B9A943F3B53861F2BFAF6C186168F79, 88E2F79F32AFBA17CB8377A508B83A1EC2315E9F3A365F591C87FE4525AA6713 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
23:30:24.0154 0x0ef4  WfpLwf - ok
23:30:24.0169 0x0ef4  [ 5CF95B35E59E2A38023836FFF31BE64C, CEA21302B3E855EE592810D4E0DE10E47A47A393064C435463CD54598735CD8D ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
23:30:24.0200 0x0ef4  WIMMount - ok
23:30:24.0278 0x0ef4  [ 082CF481F659FAE0DE51AD060881EB47, BB67D2AF0BB9192D4CCF66C23D80CE5A1B38715556D94E2561DBF8F805FA30A5 ] WinDefend       C:\Program Files\Windows Defender\mpsvc.dll
23:30:24.0372 0x0ef4  WinDefend - ok
23:30:24.0403 0x0ef4  WinHttpAutoProxySvc - ok
23:30:24.0450 0x0ef4  [ F62E510B6AD4C21EB9FE8668ED251826, FA3E5CAC3E67E49377320CFBE4646585E6B62168292768FEA81E4623F9166890 ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
23:30:24.0544 0x0ef4  Winmgmt - ok
23:30:24.0637 0x0ef4  [ 1DE9BD23AFA36150586C732D876D9B74, 32CF2C8EC18CFDA677AB72A182EB4B839DCC72BFCD6CA309BE2F434991CAE973 ] WinRM           C:\Windows\system32\WsmSvc.dll
23:30:24.0824 0x0ef4  WinRM - ok
23:30:24.0871 0x0ef4  [ A67E5F9A400F3BD1BE3D80613B45F708, E170A8BD31A779403DC9C43ED6483DA8E186512D3EE700B87F6BA292E284E367 ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
23:30:24.0918 0x0ef4  WinUsb - ok
23:30:24.0980 0x0ef4  [ 16935C98FF639D185086A3529B1F2067, E9C6B73A572A04FCE9B1B0E6815F941B10332D9A6D55B92927C2B1275F119091 ] Wlansvc         C:\Windows\System32\wlansvc.dll
23:30:25.0058 0x0ef4  Wlansvc - ok
23:30:25.0090 0x0ef4  [ 0217679B8FCA58714C3BF2726D2CA84E, 4494984B922DCF24D37BCD0E6831CEBD07D1CA49235D04E821D17ED3DF84ED2A ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
23:30:25.0121 0x0ef4  WmiAcpi - ok
23:30:25.0168 0x0ef4  [ 6EB6B66517B048D87DC1856DDF1F4C3F, EBB534C4829477C70062ADBB5626236B02FE563A544C53FA255E79F3CA170FE8 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
23:30:25.0214 0x0ef4  wmiApSrv - ok
23:30:25.0355 0x0ef4  [ 3B40D3A61AA8C21B88AE57C58AB3122E, 6C67DCB007C3CDF2EB0BBF5FD89C32CD7800C20F7166872F8C387BE262C5CD21 ] WMPNetworkSvc   C:\Program Files\Windows Media Player\wmpnetwk.exe
23:30:25.0495 0x0ef4  WMPNetworkSvc - ok
23:30:25.0511 0x0ef4  [ A2F0EC770A92F2B3F9DE6D518E11409C, 6838F2148B11285E00DC449D51F8AD85AAE57694E89BA2C607B87AC1C650D845 ] WPCSvc          C:\Windows\System32\wpcsvc.dll
23:30:25.0604 0x0ef4  WPCSvc - ok
23:30:25.0636 0x0ef4  [ AA53356D60AF47EACC85BC617A4F3F66, 155CB8112AA382D841C1891750FF29EF4F1BF716CD9CDF0F2243209E2CCCAC98 ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
23:30:25.0698 0x0ef4  WPDBusEnum - ok
23:30:25.0729 0x0ef4  [ 6DB3276587B853BF886B69528FDB048C, 9972FF6DF0DF6F86D1E9BCEF4C29064748B217DA196B0633C30D3D580144951C ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
23:30:25.0807 0x0ef4  ws2ifsl - ok
23:30:25.0838 0x0ef4  [ 6F5D49EFE0E7164E03AE773A3FE25340, 15B6AFF7455538189A96F8863CC995A271E02C6FBDAC15B037D44DDA65E61339 ] wscsvc          C:\Windows\System32\wscsvc.dll
23:30:25.0885 0x0ef4  wscsvc - ok
23:30:25.0885 0x0ef4  WSearch - ok
23:30:26.0041 0x0ef4  [ 7E5C454A3F986FEBAD075DB8D915917E, 9E9147DDACD075958689523130DB92FC4ED0E38433461D8AB8792BCFBD9376DA ] wuauserv        C:\Windows\system32\wuaueng.dll
23:30:26.0182 0x0ef4  wuauserv - ok
23:30:26.0228 0x0ef4  [ 06E6F32C8D0A3F66D956F57B43A2E070, 9A6BD96A28294B0372F16E13D652FD603308F64B74A56E41E0C68C5E8011F943 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
23:30:26.0306 0x0ef4  WudfPf - ok
23:30:26.0369 0x0ef4  [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
23:30:26.0447 0x0ef4  WUDFRd - ok
23:30:26.0478 0x0ef4  [ FE47B7BC8EA320C2D9B5E5BF6E303765, 34518DBD1E9EA6E5DA62273B18613761E1D9C6B4E074A93C6D639FBAF02222EA ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
23:30:26.0509 0x0ef4  wudfsvc - ok
23:30:26.0556 0x0ef4  [ 7CC38741B8F68F1E0D5D79DA6123666A, F90D2DA1C9AFB506C381CD386E1430931B5F81813FEDFD720F87FBC54E7A00DA ] WwanSvc         C:\Windows\System32\wwansvc.dll
23:30:26.0665 0x0ef4  WwanSvc - ok
23:30:26.0681 0x0ef4  ================ Scan global ===============================
23:30:26.0728 0x0ef4  [ DAB748AE0439955ED2FA22357533DDDB, 73EDD402C7479DDCE1998D0C7E99E1EC2974F64EFC33A851439CC85D09EDCDF9 ] C:\Windows\system32\basesrv.dll
23:30:26.0806 0x0ef4  [ 51BB04243DF6196C06E125898127E397, E1B6C83FC6E455F6806185027C5B56F8BA9ECDF1CD69E97301EC0291F0D3466E ] C:\Windows\system32\winsrv.dll
23:30:26.0837 0x0ef4  [ 51BB04243DF6196C06E125898127E397, E1B6C83FC6E455F6806185027C5B56F8BA9ECDF1CD69E97301EC0291F0D3466E ] C:\Windows\system32\winsrv.dll
23:30:26.0868 0x0ef4  [ 364455805E64882844EE9ACB72522830, 906561DBBB33F744844CF27E456226044C85DF0FCFD26DE1FD11E09E2CFA6F8F ] C:\Windows\system32\sxssrv.dll
23:30:26.0899 0x0ef4  [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6, D7BC4ED605B32274B45328FD9914FB0E7B90D869A38F0E6F94FB1BF4E9E2B407 ] C:\Windows\system32\services.exe
23:30:26.0915 0x0ef4  [ Global ] - ok
23:30:26.0915 0x0ef4  ================ Scan MBR ==================================
23:30:26.0930 0x0ef4  [ 5D949EEA3BEEC2DF38A2D7900AD89A60 ] \Device\Harddisk0\DR0
23:30:30.0924 0x0ef4  \Device\Harddisk0\DR0 - ok
23:30:30.0924 0x0ef4  ================ Scan VBR ==================================
23:30:30.0955 0x0ef4  [ 4BA4FAB1AB1BB0938C5CE8CA9A40EC46 ] \Device\Harddisk0\DR0\Partition1
23:30:31.0018 0x0ef4  \Device\Harddisk0\DR0\Partition1 - ok
23:30:31.0049 0x0ef4  [ 6906C902F0E51AF117D14BDF3646A777 ] \Device\Harddisk0\DR0\Partition2
23:30:31.0127 0x0ef4  \Device\Harddisk0\DR0\Partition2 - ok
23:30:31.0142 0x0ef4  [ 4A6508FACEA94B9FCABE01BDC850863E ] \Device\Harddisk0\DR0\Partition3
23:30:31.0142 0x0ef4  \Device\Harddisk0\DR0\Partition3 - ok
23:30:31.0142 0x0ef4  ================ Scan generic autorun ======================
23:30:31.0236 0x0ef4  [ 25107F58D1B8F60D67D1EE95798C0DE8, C3B5205E8818576EBF33E3B9FD8664A498714B823D9128FC1CA0A64F81499263 ] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
23:30:31.0283 0x0ef4  IAStorIcon - ok
23:30:31.0626 0x0ef4  [ DC4F85C97890899E706A2D9229D95D2B, B4BEF5E2CC4A060077F68DDDCB7AAFDB0D5C320CBDEEEAC8D754D48EB6FE5390 ] C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
23:30:32.0406 0x0ef4  RtHDVCpl - ok
23:30:32.0468 0x0ef4  [ D3B5015D8AE7B02284E94EA13CCBC41A, 625F2450D5ADF0C0EEDCF9F96360814D4B96304158FAF6792E42893DFEB2A671 ] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
23:30:32.0515 0x0ef4  StartCCC - detected UnsignedFile.Multi.Generic ( 1 )
23:30:35.0120 0x0ef4  Detect skipped due to KSN trusted
23:30:35.0120 0x0ef4  StartCCC - ok
23:30:35.0214 0x0ef4  [ 51C8885B6A00904C0252704C9FB0F43A, BF2F58E6697DB10F3D6FB3859FADC2CE1D3CDD318E487E02FDC2BE171AF6CA29 ] C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
23:30:35.0292 0x0ef4  NUSB3MON - ok
23:30:35.0386 0x0ef4  [ 57B4D34232852BFE4453BE571DF90D21, 3D329499D7BCACAE5F6377F988B90714F5A8301784CDB22D5B54A2266AC50D79 ] C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
23:30:35.0448 0x0ef4  CLMLServer - ok
23:30:35.0620 0x0ef4  [ 48BE298F7FD1BEF4D8FBACB04D8D95C4, D375B3F6E850E4B0EC81BAA0E554C356BE2248AA77C6C56F5267CA05460FE4EB ] C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
23:30:35.0744 0x0ef4  Adobe ARM - ok
23:30:35.0838 0x0ef4  [ F4F7C86191A981C804326E2EF6F3604F, 1ECE05E643AFFB27A148A8B86615F6C167875EF29D6FF7E2FD15B8DCBE6B8A16 ] C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
23:30:35.0869 0x0ef4  Adobe Reader Speed Launcher - ok
23:30:36.0025 0x0ef4  [ FF473648E7B1B37C7F3249A6549FAC72, 632825038F5975415D129CCB84682243360821857D250D7827E21A08DE855BCC ] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
23:30:36.0072 0x0ef4  hpqSRMon - detected UnsignedFile.Multi.Generic ( 1 )
23:30:40.0315 0x0ef4  Detect skipped due to KSN trusted
23:30:40.0315 0x0ef4  hpqSRMon - ok
23:30:40.0331 0x0ef4  [ C637FC4638A96165256B28D38DE7B953, CD658543610F151C7860DBDCF36596C9B5417D87E598FA50A435392D4AED1C14 ] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
23:30:40.0362 0x0ef4  HP Software Update - ok
23:30:40.0456 0x0ef4  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
23:30:40.0643 0x0ef4  Sidebar - ok
23:30:40.0674 0x0ef4  [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
23:30:40.0736 0x0ef4  mctadmin - ok
23:30:40.0799 0x0ef4  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
23:30:40.0877 0x0ef4  Sidebar - ok
23:30:40.0892 0x0ef4  [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
23:30:40.0924 0x0ef4  mctadmin - ok
23:30:40.0986 0x0ef4  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\sidebar.exe
23:30:41.0064 0x0ef4  Sidebar - ok
23:30:41.0111 0x0ef4  msnmsgr - ok
23:30:42.0234 0x0ef4  [ B258305816E8591DA86EE84CA05FF26A, 40CA9762C075BD292070D2237DABB81836E3067FEA47D5596EB6235DE1E80877 ] C:\Program Files\Wunderlist2\Wunderlist.exe
23:30:43.0123 0x0ef4  Wunderlist - ok
23:30:43.0139 0x0ef4  Waiting for KSN requests completion. In queue: 7
23:30:44.0153 0x0ef4  Waiting for KSN requests completion. In queue: 7
23:30:45.0167 0x0ef4  Waiting for KSN requests completion. In queue: 7
23:30:46.0259 0x0ef4  AV detected via SS2: Avira Antivirus, C:\Program Files\Avira\AntiVir Desktop\wsctool.exe ( 15.0.9.460 ), 0x41000 ( enabled : updated )
23:30:46.0290 0x0ef4  Win FW state via NFP2: enabled
23:30:48.0786 0x0ef4  ============================================================
23:30:48.0786 0x0ef4  Scan finished
23:30:48.0786 0x0ef4  ============================================================
23:30:48.0786 0x177c  Detected object count: 0
23:30:48.0786 0x177c  Actual detected object count: 0
         
__________________

Alt 07.05.2015, 22:53   #4
deeprybka
/// TB-Ausbilder
/// Anleitungs-Guru
 
Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet - Standard

Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet



Kannst das PDF vielleicht hochladen?

Submit Malware Sample

Link usw. brauchst keinen angeben. Nur die PDF Datei auswählen und hochladen lassen. Das ist mein BC Channel.
__________________
Gruß
deeprybka

Lob, Kritik, Wünsche?

Spende fürs trojaner-board?
_______________________________________________
„Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer

Alt 08.05.2015, 01:26   #5
Patroklos91
 
Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet - Standard

Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet



Die PDF-Datei ist momentan nur im Anhang der Mail. Um dir die Datei zuzuschicken, müsste ich den Anhang neu öffnen und diesen dann auf meinem Rechner abspeichern. Soll ich das machen?

Ich dachte bislang, Anhänge runterladen und abspeichern sei der schlimmste Fehler!?


Alt 08.05.2015, 08:56   #6
deeprybka
/// TB-Ausbilder
/// Anleitungs-Guru
 
Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet - Standard

Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet



Zitat:
Zitat von Patroklos91 Beitrag anzeigen
Soll ich das machen?
Ne, ne. Will Dich nicht verängstigen.

Echtzeitscanner abschalten.



Schritt 1
Scan mit Combofix
WARNUNG an die MITLESER:
Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!

Downloade dir bitte Combofix vom folgenden Downloadspiegel: Link
  • WICHTIG: Speichere Combofix auf deinem Desktop.
  • Deaktiviere bitte alle deine Antivirensoftware sowie Malware/Spyware Scanner. Diese können Combofix bei der Arbeit stören. Combofix meckert auch manchmal trotzdem noch, das kannst du dann ignorieren, mir aber bitte mitteilen.
  • Starte die Combofix.exe und folge den Anweisungen auf dem Bildschirm.
  • Während Combofix läuft bitte nicht am Computer arbeiten, die Maus bewegen oder ins Combofixfenster klicken!
  • Wenn Combofix fertig ist, wird es ein Logfile erstellen.
  • Bitte poste die C:\Combofix.txt in deiner nächsten Antwort (möglichst in CODE-Tags).
Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
starte den Rechner einfach neu. Dies sollte das Problem beheben.

__________________
--> Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet

Alt 08.05.2015, 08:58   #7
Patroklos91
 
Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet - Standard

Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet



Hi Jürgen,

heute Morgen hat das Programm Malwarebytes Anti-Malware eigenständig einen Suchlauf gemacht und einige Elemente in die Quarantäne gesteckt. Unten schicke ich dir die zugehörige Log-Datei - aufgespalten, weil sie offenbar einzeln zu lang ist.

Bis kommenden Montag-Abend werde ich dir leider nicht antworten können. Ich melde mich dann zurück und freue mich, wenn du mir weiter zur Seite stehst.



Code:
ATTFilter
 Malwarebytes Anti-Malware 
www.malwarebytes.org

Suchlauf Datum: 08.05.2015
Suchlauf-Zeit: 08:45:52
Logdatei: Malwarebytes Anti-Malware Logdatei 08052015.txt
Administrator: Ja

Version: 2.01.6.1022
Malware Datenbank: v2015.05.08.01
Rootkit Datenbank: v2015.04.21.01
Lizenz: Testversion
Malware Schutz: Aktiviert
Bösartiger Webseiten Schutz: Aktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 7 Service Pack 1
CPU: x86
Dateisystem: NTFS
Benutzer: Jonas ******

Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 333567
Verstrichene Zeit: 27 Min, 49 Sek

Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Warnen
PUM: Aktiviert

Prozesse: 0
(Keine schädliche Elemente gefunden)

Module: 0
(Keine schädliche Elemente gefunden)

Registrierungsschlüssel: 0
(Keine schädliche Elemente gefunden)

Registrierungswerte: 0
(Keine schädliche Elemente gefunden)

Registrierungsdaten: 0
(Keine schädliche Elemente gefunden)

Ordner: 206
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\APISupport, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\lib, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\options, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\tabs, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\tabs\back, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\toolbarAPI, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\mam, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\mam\scripts, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\mam\scripts\contentScripts, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\nativeMessaging, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\plugins, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\aboutBox, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\aboutBox\images, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\aboutBox\js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\img, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\res, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\api, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\msd, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\images, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\js\resources, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\sp, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\sp\js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\sp\spbd, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\sp\spbd\images, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\sp\spsd, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\sp\spsd\images, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\ftd, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\ftd\images, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\restart, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\restart\images, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\gadgetFrame, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\gf, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\gf\css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\gf\img, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\gf\js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\menu, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\menu\css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\menu\img, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\menu\js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\APPLICATION_BUTTON, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\APPLICATION_BUTTON\Js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\APPLICATION_BUTTON\resources, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\HIGHLIGHTER, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\HIGHLIGHTER\css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\HIGHLIGHTER\js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\MULTI_RSS, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\MULTI_RSS\css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\MULTI_RSS\img, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\MULTI_RSS\js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\MULTI_RSS\js\resources, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\images, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\images\dark, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\images\light, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\Optimizer, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\Optimizer\js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\PRICE_GONG, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\PRICE_GONG\agreement, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\PRICE_GONG\css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\PRICE_GONG\css\custom-theme, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\PRICE_GONG\images, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\css\custom-theme, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\js\resources, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\buildSettings, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\Css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\resources, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\view, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\view\script, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\view\style, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\view\style\rsx, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\TWITTER, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\TWITTER\img, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\TWITTER\js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\WEATHER, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\WEATHER\css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\WEATHER\js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\core, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\jquery.alerts, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\jquery.alerts\images, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\jquery.jscrollpane, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\sl, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\_locales, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\_locales\en, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Css, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\API, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\API\component, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\API\component\view, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\controller, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\css, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\about, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\components, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\components\view, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\components\view\InjectScript, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\container, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\contextMenu, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\contextMenu\view, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\dynamicMenu, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\dynamicMenu\view, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\menuPanel, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\menuPanel\view, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\multiRssItem, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\multiRssItem\view, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\urlGadget, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\urlGadget\view, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\xmlMenu, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\xmlMenu\view, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\lib, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\model, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\popup, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\popup\view, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\services, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\services\alerts, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\services\translation, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\dyamincMenu, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\icons, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\ifarme, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\rssItem, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\searchBox, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\urlGadget, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\useful_components, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\popup, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\rssItem, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Options, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Css, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\API, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\API\component, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\API\component\view, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\controller, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\css, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\about, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\components, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\components\view, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\components\view\InjectScript, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\container, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\contextMenu, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\contextMenu\view, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\dynamicMenu, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\dynamicMenu\view, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\menuPanel, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\menuPanel\view, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\multiRssItem, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\multiRssItem\view, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\urlGadget, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\urlGadget\view, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\xmlMenu, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\xmlMenu\view, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\lib, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\model, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\popup, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\popup\view, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\services, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\services\alerts, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\services\translation, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\dyamincMenu, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\icons, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\ifarme, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\rssItem, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\searchBox, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\urlGadget, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\useful_components, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\popup, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\rssItem, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Options, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 

Dateien: 933
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\CT2529008.txt, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\634419422965498379.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\634419422966045275.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\634462332745353873.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\AbstractionLayerBack.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\AbstractionLayerFront.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\blank.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\CT2529008_public.txt, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\initdata.json, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\manifest.json, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\shouldShowTB.txt, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\APISupport\APISupport.dll, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\framework.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\bcview.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\chromeBackstage.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\chromeBackstage.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\chromeBackstageLoader.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\communicator.back.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\compatibility.end.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\compatibility.service.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\compatibility.start.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\contentScript.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\iframeHost.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\iframeHost.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\JSONStringify.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\logger.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\match.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\nativeMsgCom.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\navigationHandler.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\pluginLoader.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\pricegongMigration.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\toolbarEnv.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\updatesManager.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\verlyEarly.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\lib\jquery-1.5.min.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\options\Options.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\tabs\back\postNavigation.htm, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\js\toolbarAPI\toolbarAPI.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\mam\background.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\mam\settings.json, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\mam\scripts\background.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\mam\scripts\iframeHost.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\mam\scripts\iframeHost.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\mam\scripts\popup.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\mam\scripts\contentScripts\contentScript.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\nativeMessaging\nmHostConfig.json, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\nativeMessaging\nmHostManifest.json, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\nativeMessaging\TBMessagingHost.exe, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\plugins\ChromeApiPlugin.dll, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\initData.json, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\html\SearchBackground.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\html\searchInNewTabAPI.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API\MostVisited.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API\Applications.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API\Bookmarks.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API\CntRedirect.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API\DeveloperMode.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API\EmbeddedConfig.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API\enable_disable.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API\EventHandler.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API\Global.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API\LocationService.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API\LogMsg.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API\NewTabAPI.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API\RecentlyClosed.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API\SearchBox.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API\SearchBoxIframe.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API\ServiceMap.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API\Settings.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API\startupSequence.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API\Thumbnails.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API\Toolbar.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API\Translation.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\API\Usage.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\about_memory.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\alert_overlay.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\apps_page.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\bubble.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\chrome_shared.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\chrome_shared2.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\chrome_shared2_touch.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\dialogs.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\expandable_bubble.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\footer_menu.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\list.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\menu.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\most_visited_page.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\nav_dot.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\new_tab.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\new_tab_theme.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\overlay.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\spinner.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\suggestions_page.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\table.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\tabs.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\throbber.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\tile_page.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\trash.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\tree.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\ui_account_tweaks.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\css\widgets.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\html\alert_overlay.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\html\appLauncher.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\html\loadfile.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\html\NewTabBackground.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\html\new_tab.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\html\Options.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\html\redirect.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\html\trash.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\close_bar_mask.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\exclamationIcon.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\history_section.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\app_promo_button.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\check.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\checkbox_black.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\checkbox_white.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\closed_window.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\close_bar.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\close_bar_2x.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\close_bar_h.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\close_bar_h_2x.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\close_bar_mask_2x.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\close_bar_p.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91],
         

Alt 08.05.2015, 09:01   #8
Patroklos91
 
Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet - Standard

Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet



... hier kommt Teil 2 der Log-Datei ...


Code:
ATTFilter
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\close_bar_p_2x.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\detected_sd.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\detected_usb.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\disabled_select.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\disclosure_triangle_mask.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\downloads_section.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\favicon.ico, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\favicon.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\folder_closed.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\folder_closed_rtl.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\folder_open.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\folder_open_rtl.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\gear.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\google-transparent.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\guest_icon_standalone.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\help.gif, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\icon128.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\icon16.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\icon48.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\icon_checkmark.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\icon_file.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\icon_folder.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\icon_warning.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\icon_warning2.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\IDR_PRODUCT_LOGO.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\ImagesRepository.json, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\insert.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\minus.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\nub.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\nub_mask.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\otr_icon_standalone.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\phishing_icon.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\plus.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\select.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\small_bubble.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\spinner.svg, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\star_small.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\success.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\throbber.svg, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\thumbnailPlaceHolder.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\trash.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\trashBinN.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\WebStore128.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\x-hover.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\x.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\img\__IDR_PRODUCT_LOGO.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\context_menu_handler.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\i18n_template.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\alert_overlay.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\appLauncher.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\apps_page.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\autocomplete_list.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\Base64.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\bubble.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\card_slider.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\color-thief.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\command.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\command_line.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\context_menu_button.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\cr.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\database.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\dialogs.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\dot_list.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\drag_wrapper.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\event_target.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\event_tracker.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\expandable_bubble.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\focus_outline_manager.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\i18n_process.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\i18n_template2.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\jquery.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\link_controller.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\loadFile.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\load_time_data.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\local_strings.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\logerror.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\logging.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\md5.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\media_common.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\menu.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\menu_button.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\menu_item.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\most_visited_page.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\nav_dot.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\NewTabBackground.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\newTabBeforeStart.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\newTabLoadTimeData.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\new_tab.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\options.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\other_sessions.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\overlay.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\page_list_view.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\page_switcher.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\parse_html_subset.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\position_util.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\promise.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\quantize.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\recently_closed.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\repeating_button.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\SearchBoxPage.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\search_history.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\splitter.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\suggestions_page.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\tile_page.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\touch_handler.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\trash.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\tree.css.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\tree.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\ui.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\ui_account_tweaks.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\util.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\Search\NewTabPages\js\ZipFile.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\backstage.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\version.txt, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\al.view.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\aboutBox\aboutBox.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\aboutBox\images\logo.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\aboutBox\images\OK-Button-Default.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\aboutBox\images\OK-Button-MouseOver.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\aboutBox\images\OK-Button-OnClick.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\aboutBox\images\truste.gif, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\aboutBox\images\x.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\aboutBox\js\aboutBox.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\appManager.controller.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\appManager.model.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\appManager.view.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\css\toolbar.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\img\minibrowser24.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\img\ajax-loader.gif, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\img\buttonSprites.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\img\chevron_sprites.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\img\fallback24.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\img\ie8_mouseover_button.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\img\ie8_onclick_button.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\img\loader-icon.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\img\menu_arrow.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\img\minibrowser.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\img\mp_sprites.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\img\new_chevron_sprites.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\img\rounded_corners_left_transparent.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\img\rounded_corners_left_white.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\img\rounded_corners_left_white_34.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\img\rounded_corners_right_transparent.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\img\rounded_corners_right_white.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\img\rounded_corners_right_white_34.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\img\separator.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\img\separator_hover.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\img\uus.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ac\res\yoxscroll.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\api\toolbarapi.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\api\webAppApi.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\api\webAppApiFront.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\msd\excanvas.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\msd\trusted.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\msd\trusted.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\msd\untrusted.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\msd\untrusted.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\msd\untrusted.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\options.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\css\jquery.jscrollpane.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\css\options.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\css\reset.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\images\bg-hide-click.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\images\bg-hide.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\images\checkbox-check-off.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\images\checkbox-check-on.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\images\ic_Closer.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\images\ic_Closer_hover.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\images\logo.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\images\minibrowser.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\images\scroller.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\images\sprite-ok-button.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\images\truste.gif, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\images\x.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\js\html5SupportIe.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\js\options.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\js\resources\html5shiv.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\js\resources\jquery.jscrollpane.min.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\options\js\resources\jquery.mousewheel.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\sp\js\searchProtectorManager.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\sp\spbd\bubble.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\sp\spbd\bubble.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\sp\spbd\main.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\sp\spbd\images\information.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\sp\spbd\images\x-default-LTR.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\sp\spbd\images\x-default-RTL.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\sp\spbd\images\x-mouseover-LTR.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\sp\spbd\images\x-mouseover-RTL.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\sp\spsd\main.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\sp\spsd\SearchProtector.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\sp\spsd\settings.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\sp\spsd\images\ok-button.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\sp\spsd\images\separation-line.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\sp\spsd\images\warning.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\menus.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\popups.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\DialogsAPI.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\excanvas.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\generalDialogStyle.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\PIE.htc, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\settings.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\ftd\main.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\ftd\ToolbarFirstTimeDialog.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\ftd\ToolbarFirstTimeDialog.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\ftd\images\app-store-icon.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\ftd\images\arrow.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\ftd\images\dialog_tip_left.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\ftd\images\dialog_tip_right.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\ftd\images\divider.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\ftd\images\emailNotifier.gif, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\ftd\images\facebook.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\ftd\images\radio.GIF, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\ftd\images\Thumbs.db, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\ftd\images\truste_welcome.GIF, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\ftd\images\weather.GIF, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\restart\main.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\restart\restartDialog.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\restart\restartDialog.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\restart\images\2.0--spec--kicker.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\restart\images\content-pattern.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\restart\images\content-sep.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\restart\images\OK-Button-Default.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\restart\images\OK-Button-MouseOver.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\restart\images\OK-Button-OnClick.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\dlg\restart\images\x.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\gadgetFrame\gf.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\gadgetFrame\lgf.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\gf\gf.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\gf\lgf.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\gf\css\gf.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\gf\css\gf_ie.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\gf\img\ie_back.gif, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\gf\img\loader.gif, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\gf\img\resize.gif, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\gf\img\sprites.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\gf\js\gf.view.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\gf\js\lgf.view.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\menu\popup.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\menu\css\menu.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\menu\img\arrow-down-strong.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\menu\img\arrow-down.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\menu\img\arrow-left-strong.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\menu\img\arrow-left.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\menu\img\arrow-right-strong.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\menu\img\arrow-right.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\menu\img\arrows.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\menu\js\jquery.ellipsis.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\menu\js\jquery.scrollTo-1.4.2-min.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\menu\js\menu.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\menu\js\renderHandler.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\menu\js\scrollers.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\ui\menu\js\showHandler.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\browserAppApi.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\APPLICATION_BUTTON\bgpage.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\APPLICATION_BUTTON\Js\bgpage.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\APPLICATION_BUTTON\resources\defaultEngineImage.gif, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\bgPage.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\popup.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\css\en.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\css\en_rtl.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\css\jquery.jscrollpane.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\js\AccountManager.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\js\bgPage.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\js\EN.model.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\js\IMAPExecuter.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\js\Inboxer.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\js\Invoker.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\js\MailDecoder.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\js\MailMerger.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\js\POP3Executer.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\js\Popup.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\js\providerHelper.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\js\Providers.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\js\SettingsManager.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\js\Timer.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\js\Translation.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\EMAIL_NOTIFIER\js\Utils.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\HIGHLIGHTER\bgpage.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\HIGHLIGHTER\embedded.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\HIGHLIGHTER\popup.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\HIGHLIGHTER\css\embedded.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\HIGHLIGHTER\css\popup.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\HIGHLIGHTER\css\reset.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\HIGHLIGHTER\js\bgpage.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\HIGHLIGHTER\js\embedded.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\HIGHLIGHTER\js\higlighter_script.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\HIGHLIGHTER\js\popup.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\MULTI_RSS\bgpage.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\MULTI_RSS\popup.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\MULTI_RSS\css\popup.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\MULTI_RSS\img\arrows.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\MULTI_RSS\img\badges.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\MULTI_RSS\img\icons.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\MULTI_RSS\js\bgpage.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\MULTI_RSS\js\popup.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\MULTI_RSS\js\resources\webAppUtils.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\bgpage.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\embedded.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\NotificationPopup.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\Settings.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\css\gadget.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\css\general.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\css\Main.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\css\newMain.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\css\settings.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\css\ui.stepper.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\images\closeIcon.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\images\downArrow.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\images\settingsIcon.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\images\upArrow.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\images\dark\close.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\images\dark\Next.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\images\dark\Next_hover.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\images\dark\powered-by.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\images\dark\Prev.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\images\dark\Prev_hover.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\images\dark\settings.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\images\light\close.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\images\light\Next.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\images\light\Next_hover.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\images\light\powered-by.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\images\light\Prev.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\images\light\Prev_hover.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\images\light\settings.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\js\AppName.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\js\bgpage.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\js\bgpageEarly.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\js\commons.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\js\jquery.ezmark.min.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\js\notification.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\js\NotificationSettings.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\js\notificationUIManger.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\js\Settings.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\js\stepper.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\NOTIFICATION\js\ToolbarAndAppsSettings.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\Optimizer\bgpage.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\Optimizer\js\bgpage.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\PRICE_GONG\bgpage.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\PRICE_GONG\bgpage.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\PRICE_GONG\pg_offers.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\PRICE_GONG\pg_offers.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\PRICE_GONG\agreement\agree.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\PRICE_GONG\agreement\agree.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\PRICE_GONG\agreement\Close.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\PRICE_GONG\agreement\Image.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\PRICE_GONG\agreement\Logo.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\PRICE_GONG\agreement\OK_Btn.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91],
         

Alt 08.05.2015, 09:02   #9
Patroklos91
 
Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet - Standard

Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet



... und hier Teil 3.

Code:
ATTFilter
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\PRICE_GONG\agreement\Topbg.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\PRICE_GONG\css\gadget.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\PRICE_GONG\css\ie7styles.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\PRICE_GONG\css\iestyle.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\PRICE_GONG\css\custom-theme\jquery-ui-1.8.10.custom.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\PRICE_GONG\images\icon.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\bgpage.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\embedded.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\popup2.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\css\gadget.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\css\jquery.jscrollpane.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\css\reset.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\css\stations.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\css\custom-theme\jquery-ui-1.8.10.custom.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\js\bgpage.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\js\bgpageEarly.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\js\embedded.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\js\embeddedEarly.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\js\localization.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\js\player.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\js\popup.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\js\resources\BrowserDetect.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\js\resources\jquery-ui-1.8.10.custom.min.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\js\resources\jquery.jscrollpane.min.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\js\resources\jquery.scrollTo-1.4.2-min.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\js\resources\radioCommon.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\js\resources\system.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\RADIO_PLAYER\js\resources\utils.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\bgpage.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\embedded.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\information.popup.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\buildSettings\SearchApp_Ant.xml, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\Css\information.popup.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\js\bgpage.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\js\common.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\js\contentManager.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\js\historyProvider.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\js\information.popup.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\js\layoutManager.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\js\searchListener.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\js\selectionListener.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\js\suggestProvider.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\resources\history--x-default.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\resources\history--x-mouseover.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\resources\menu.icon.apps.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\view\script\view.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\view\style\default.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\view\style\rsx\dd-arrow.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\SEARCH\view\style\rsx\ie8.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\TWITTER\bgpage.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\TWITTER\popup.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\TWITTER\popup.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\TWITTER\img\icons.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\TWITTER\img\inbox.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\TWITTER\img\scroll_down.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\TWITTER\img\scroll_up.png, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\TWITTER\js\bgpage.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\TWITTER\js\localization.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\TWITTER\js\popup.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\WEATHER\bgpage.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\WEATHER\popup.html, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\WEATHER\css\gadget.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\WEATHER\css\ie7styles.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\WEATHER\css\iestyle.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\WEATHER\js\bgpage.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\WEATHER\js\common.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\WEATHER\js\date-functions.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\WEATHER\js\gadget.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\WEATHER\js\jquery.autocomplete.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\WEATHER\js\jquery.textshadow.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\WEATHER\js\logic.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\WEATHER\js\main.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\al\wa\WEATHER\js\xPath.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\core\corelibs.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\core\framework.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\core\utils.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\al.view.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\al.viewPerformanceLog.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\background.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\ie_fix.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\jquery.min.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\jquery.mousewheel.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\jquery.text-overflow.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\jquery.tmpl.min.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\jquery.xml2json.custom.min.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\jquery.xml2json.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\json2.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\json2.min.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\script2injectEmbedded.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\script2injectPopup.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\sdk.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\jquery.alerts\jquery.alerts.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\jquery.alerts\jquery.alerts.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\jquery.alerts\images\help.gif, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\jquery.alerts\images\important.gif, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\jquery.alerts\images\info.gif, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\jquery.alerts\images\title.gif, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\jquery.jscrollpane\jquery.jscrollpane.css, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\lib\jquery.jscrollpane\jquery.jscrollpane.min.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\tb\sl\serviceLayer.js, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\10.31.4.510_0\_locales\en\messages.json, In Quarantäne, [ce03157bf99176c0a36d557aa2616f91], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\CT2529008.txt, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\128.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\634419422965498379.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\634419422966045275.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\634462332745353873.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Controller.html, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\initData.json, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\manifest.json, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Options.html, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Thumbs.db, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\translation_fallback.json, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Css\about.css, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Css\chromeMain.css, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Css\ctbMain.css, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Css\ddmenu.css, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Css\gmail.css, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Css\logoMenu.css, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Css\options.css, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Css\safariMain.css, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Css\searchEngine.css, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Css\searchHistory.css, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\clicksHandler.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\contentScript.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\everypage_early.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\options.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\API\component\view\BrowserCompApi.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\controller\controller.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\css\ctbmain.css, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\about\about.css, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\about\about.htm, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\about\about.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\components\view\InjectScript\ticker.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\container\container.css, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\container\container.html, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\container\container.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\contextMenu\view\contextMenu.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\dynamicMenu\view\dynamicMenu.css, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\dynamicMenu\view\dynamicMenu.html, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\dynamicMenu\view\dynamicMenu.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\menuPanel\view\menuPanel.htm, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\menuPanel\view\menuPanel.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\multiRssItem\view\MultiRssItem.css, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\multiRssItem\view\MultiRssItem.html, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\multiRssItem\view\multiRssItem.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\urlGadget\view\urlGadget.css, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\urlGadget\view\urlGadget.html, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\urlGadget\view\urlGadget.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\xmlMenu\view\xmlMenu.css, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\xmlMenu\view\xmlMenu.html, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\items\xmlMenu\view\xmlMenu.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\lib\jquery-ui-accordion.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\lib\jquery-ui.custom.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\lib\jquery.additions.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\lib\jquery.batchImageLoad.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\lib\jquery.bdc.ddmenu.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\lib\jquery.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\lib\jquery.mousewheel.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\lib\jsonStringify.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\lib\pure.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\lib\xml2json.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\model\model.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\popup\view\popup.css, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\popup\view\popup.html, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\popup\view\popup.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\popup\view\popupShow.html, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\services\alerts\alerts.view.css, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\services\alerts\alerts.view.html, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\services\alerts\alerts.view.js, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\js\services\translation\translation_fallback.json, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\options_acc_item_bg.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\128.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\128g.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\ajax-loader.gif, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\arrow_down.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\colapse.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\Collapse.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\endSeperator.gif, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\expend.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icon.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\options_acc_collapse.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\options_acc_expand.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\options_acc_item_bg_hover.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\options_button_bg_green.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\options_button_bg_orange.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\overBtn.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\seperator.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\shadow_list.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\shadow_list_.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\Thumbs.db, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\bak.gif, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\dyamincMenu\backstrip.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\dyamincMenu\overstrip.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\icons\about_icon.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\icons\delete_s.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\icons\read_s.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\icons\shevronLeft.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\icons\shevronRight.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\icons\unread_s.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\ifarme\blackToWhite.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\ifarme\whiteToBlack.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\rssItem\down_active.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\rssItem\down_disable.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\rssItem\down_over_on.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\rssItem\image_box.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\rssItem\noimage_box.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\rssItem\option_layer.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\rssItem\point_select.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\rssItem\scroll_back.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\rssItem\scroll_bar_center.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\rssItem\scroll_bar_end.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\rssItem\scroll_bar_start.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\rssItem\scroll_down.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\rssItem\scroll_down_on.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\rssItem\scroll_up.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\rssItem\scroll_up_on.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\rssItem\shadow_list.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\rssItem\up_active.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\rssItem\up_disable.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\rssItem\up_over_on.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\searchBox\searchMe.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\searchBox\searchMe_rtl.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\searchBox\search_center_over.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\searchBox\search_left_over.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\base64\searchBox\search_right_over.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\refresh_hover.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\addApp.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\delete.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\delete_blue.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\delete_grey.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\delete_hover.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\delete_press.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\read.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\read_hover.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\read_press.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\read_reg.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\refresh.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\refresh_press.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\refresh_reg.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\small_arrow.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\small_arrowRTL.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\trans.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\unread.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\unread_hover.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\unread_press.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\unread_reg.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\urlGadget\close_hover.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\urlGadget\close_normal.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\urlGadget\info_hover.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\urlGadget\info_normal.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\urlGadget\minimize_hover.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\urlGadget\minimize_normal.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\urlGadget\snap_hover.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\urlGadget\snap_normal.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\useful_components\0.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\useful_components\1.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\useful_components\10.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\useful_components\11.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\useful_components\12.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\useful_components\2.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\useful_components\3.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\useful_components\4.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\useful_components\5.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\useful_components\6.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\useful_components\7.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\useful_components\8.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\icons\useful_components\9.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\popup\main_menu_about.gif, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\popup\main_menu_contact.gif, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\popup\main_menu_help.gif, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\popup\main_menu_hide.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\popup\main_menu_privacy.gif, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\popup\main_menu_refresh.gif, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\popup\main_menu_show.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\popup\main_menu_tell_a_friend.gif, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\popup\main_menu_upgrade.gif, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Media\rssItem\noImage.png, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Options\additional_settings.html, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Options\alerts_setting.html, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Options\personal_components.html, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Options\predefined_components.html, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_0\Options\useful_components.html, In Quarantäne, [bd143b550f7b93a37d93725d20e3b749], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\CT2529008.txt, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\128.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\634419422965498379.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\634419422966045275.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\634462332745353873.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Controller.html, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\initData.json, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\manifest.json, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Options.html, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Thumbs.db, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\translation_fallback.json, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Css\about.css, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Css\chromeMain.css, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Css\ctbMain.css, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Css\ddmenu.css, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Css\gmail.css, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Css\logoMenu.css, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Css\options.css, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Css\safariMain.css, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Css\searchEngine.css, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Css\searchHistory.css, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\clicksHandler.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\contentScript.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\everypage_early.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\options.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\API\component\view\BrowserCompApi.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\controller\controller.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\css\ctbmain.css, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\about\about.css, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\about\about.htm, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\about\about.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\components\view\InjectScript\ticker.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\container\container.css, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\container\container.html, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\container\container.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\contextMenu\view\contextMenu.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\dynamicMenu\view\dynamicMenu.css, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\dynamicMenu\view\dynamicMenu.html, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\dynamicMenu\view\dynamicMenu.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\menuPanel\view\menuPanel.htm, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\menuPanel\view\menuPanel.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\multiRssItem\view\MultiRssItem.css, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\multiRssItem\view\MultiRssItem.html, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\multiRssItem\view\multiRssItem.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\urlGadget\view\urlGadget.css, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\urlGadget\view\urlGadget.html, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\urlGadget\view\urlGadget.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\xmlMenu\view\xmlMenu.css, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\xmlMenu\view\xmlMenu.html, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\items\xmlMenu\view\xmlMenu.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\lib\jquery-ui-accordion.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\lib\jquery-ui.custom.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\lib\jquery.additions.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\lib\jquery.batchImageLoad.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\lib\jquery.bdc.ddmenu.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\lib\jquery.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\lib\jquery.mousewheel.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\lib\jsonStringify.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\lib\pure.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\lib\xml2json.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\model\model.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\popup\view\popup.css, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\popup\view\popup.html, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\popup\view\popup.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\popup\view\popupShow.html, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\services\alerts\alerts.view.css, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\services\alerts\alerts.view.html, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\services\alerts\alerts.view.js, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\js\services\translation\translation_fallback.json, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\options_acc_item_bg.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\128.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\128g.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\ajax-loader.gif, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\arrow_down.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\colapse.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\Collapse.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\endSeperator.gif, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\expend.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icon.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\options_acc_collapse.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\options_acc_expand.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\options_acc_item_bg_hover.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\options_button_bg_green.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\options_button_bg_orange.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\overBtn.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\seperator.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\shadow_list.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\shadow_list_.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\Thumbs.db, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\bak.gif, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\dyamincMenu\backstrip.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\dyamincMenu\overstrip.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\icons\about_icon.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\icons\delete_s.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\icons\read_s.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\icons\shevronLeft.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\icons\shevronRight.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\icons\unread_s.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\ifarme\blackToWhite.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\ifarme\whiteToBlack.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\rssItem\down_active.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\rssItem\down_disable.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\rssItem\down_over_on.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\rssItem\image_box.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\rssItem\noimage_box.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\rssItem\option_layer.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\rssItem\point_select.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\rssItem\scroll_back.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\rssItem\scroll_bar_center.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\rssItem\scroll_bar_end.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\rssItem\scroll_bar_start.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\rssItem\scroll_down.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\rssItem\scroll_down_on.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\rssItem\scroll_up.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\rssItem\scroll_up_on.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\rssItem\shadow_list.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\rssItem\up_active.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\rssItem\up_disable.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\rssItem\up_over_on.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\searchBox\searchMe.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\searchBox\searchMe_rtl.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\searchBox\search_center_over.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\searchBox\search_left_over.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\base64\searchBox\search_right_over.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\refresh_hover.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\addApp.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\delete.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\delete_blue.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\delete_grey.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\delete_hover.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\delete_press.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\read.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\read_hover.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\read_press.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\read_reg.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\refresh.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\refresh_press.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\refresh_reg.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\small_arrow.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\small_arrowRTL.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\trans.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\unread.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\unread_hover.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\unread_press.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\unread_reg.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\urlGadget\close_hover.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\urlGadget\close_normal.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\urlGadget\info_hover.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\urlGadget\info_normal.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\urlGadget\minimize_hover.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\urlGadget\minimize_normal.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\urlGadget\snap_hover.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\urlGadget\snap_normal.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\useful_components\0.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\useful_components\1.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\useful_components\10.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\useful_components\11.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\useful_components\12.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\useful_components\2.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\useful_components\3.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\useful_components\4.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\useful_components\5.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\useful_components\6.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\useful_components\7.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\useful_components\8.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\icons\useful_components\9.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\popup\main_menu_about.gif, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\popup\main_menu_contact.gif, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\popup\main_menu_help.gif, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\popup\main_menu_hide.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\popup\main_menu_privacy.gif, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\popup\main_menu_refresh.gif, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\popup\main_menu_show.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\popup\main_menu_tell_a_friend.gif, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\popup\main_menu_upgrade.gif, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Media\rssItem\noImage.png, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Options\additional_settings.html, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Options\alerts_setting.html, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Options\personal_components.html, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Options\predefined_components.html, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 
PUP.Optional.ConduitTB.Gen, C:\Users\Jonas ******\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg\2.3.1.8_1\Options\useful_components.html, In Quarantäne, [329f5739cbbf84b27f91913e8281cf31], 

Physische Sektoren: 0
(Keine schädliche Elemente gefunden)


(end)
         

Alt 08.05.2015, 09:13   #10
deeprybka
/// TB-Ausbilder
/// Anleitungs-Guru
 
Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet - Standard

Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet



Naja, nicht optimal mit dem MBAM-Scan. Trotzdem mit Combofix weitermachen dann...
__________________
Gruß
deeprybka

Lob, Kritik, Wünsche?

Spende fürs trojaner-board?
_______________________________________________
„Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer

Alt 11.05.2015, 23:22   #11
Patroklos91
 
Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet - Standard

Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet



Hi Jürgen,

inzwischen habe ich einen Scan mit ComboFix durchgeführt. Hier das resultierende Log-File ...
Wie geht es nun weiter?

Beste Grüße!


Code:
ATTFilter
Combofix Logfile:
Code:
ATTFilter
ComboFix 15-05-09.01 - Jonas ***** 11.05.2015  23:39:40.1.4 - x86
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.49.1031.18.3063.1567 [GMT 2:00]
ausgeführt von:: c:\users\Jonas *****\Desktop\ComboFix.exe
AV: Avira Antivirus *Disabled/Updated* {4D041356-F94D-285F-8768-AAE50FA36859}
SP: Avira Antivirus *Disabled/Updated* {F665F2B2-DF77-27D1-BDD8-9197742422E4}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((   Weitere Löschungen   ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\Internet Explorer
c:\internet explorer\Custom\eBay.ico
c:\users\Jonas *****\AppData\Local\Temp\avgnt.exe\Avira.OE.ExtApi.dll
c:\users\JONASR~1\AppData\Local\Temp\avgnt.exe\Avira.OE.ExtApi.dll
c:\windows\IsUn0407.exe
c:\windows\unin0407.exe
.
.
(((((((((((((((((((((((   Dateien erstellt von 2015-04-11 bis 2015-05-11  ))))))))))))))))))))))))))))))
.
.
2015-05-11 21:51 . 2015-05-11 21:51	--------	d-----w-	c:\users\Default\AppData\Local\temp
2015-05-11 21:43 . 2015-05-11 21:43	62576	----a-w-	c:\programdata\Microsoft\Windows Defender\Definition Updates\{39D59300-A278-4EF7-95CC-A035EA738564}\offreg.dll
2015-05-11 21:06 . 2015-04-04 06:39	9201616	----a-w-	c:\programdata\Microsoft\Windows Defender\Definition Updates\{39D59300-A278-4EF7-95CC-A035EA738564}\mpengine.dll
2015-05-07 19:01 . 2015-05-07 19:06	--------	d-----w-	C:\FRST
2015-05-07 16:56 . 2015-05-11 21:56	119512	----a-w-	c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-05-07 16:55 . 2015-04-14 07:37	51928	----a-w-	c:\windows\system32\drivers\mwac.sys
2015-05-07 16:55 . 2015-04-14 07:37	92888	----a-w-	c:\windows\system32\drivers\mbamchameleon.sys
2015-05-07 16:55 . 2015-05-07 18:34	--------	d-----w-	c:\program files\ Malwarebytes Anti-Malware 
2015-04-16 01:44 . 2015-04-16 01:44	--------	d-----w-	C:\found.000
2015-04-15 08:38 . 2015-03-23 03:06	576000	----a-w-	c:\windows\system32\generaltel.dll
2015-04-15 08:38 . 2015-03-23 03:06	630784	----a-w-	c:\windows\system32\invagent.dll
2015-04-15 08:38 . 2015-03-23 03:06	331264	----a-w-	c:\windows\system32\devinv.dll
2015-04-15 08:38 . 2015-03-23 03:06	860160	----a-w-	c:\windows\system32\appraiser.dll
2015-04-15 08:38 . 2015-03-23 03:06	26112	----a-w-	c:\windows\system32\acmigration.dll
2015-04-15 08:38 . 2015-03-23 03:06	202752	----a-w-	c:\windows\system32\aepdu.dll
2015-04-15 08:38 . 2015-03-23 02:59	896000	----a-w-	c:\windows\system32\aeinv.dll
2015-04-15 08:38 . 2015-03-23 03:06	159744	----a-w-	c:\windows\system32\aepic.dll
2015-04-15 08:36 . 2015-03-25 03:00	92672	----a-w-	c:\windows\system32\wudriver.dll
2015-04-15 08:36 . 2015-03-25 03:00	35328	----a-w-	c:\windows\system32\wups2.dll
2015-04-15 08:36 . 2015-03-25 03:00	3088384	----a-w-	c:\windows\system32\wucltux.dll
2015-04-15 08:36 . 2015-03-25 03:00	29696	----a-w-	c:\windows\system32\wups.dll
2015-04-15 08:36 . 2015-03-25 03:00	173056	----a-w-	c:\windows\system32\wuwebv.dll
2015-04-15 08:36 . 2015-03-25 03:00	11776	----a-w-	c:\windows\system32\wu.upgrade.ps.dll
2015-04-15 08:36 . 2015-03-25 03:00	33792	----a-w-	c:\windows\system32\wuapp.exe
2015-04-15 08:36 . 2015-03-25 03:00	131584	----a-w-	c:\windows\system32\wuauclt.exe
2015-04-15 08:36 . 2015-03-25 03:00	566784	----a-w-	c:\windows\system32\wuapi.dll
2015-04-15 08:36 . 2015-03-25 03:00	2020864	----a-w-	c:\windows\system32\wuaueng.dll
2015-04-15 08:36 . 2015-03-25 03:00	50176	----a-w-	c:\windows\system32\WinSetupUI.dll
2015-04-15 08:35 . 2015-02-25 03:03	514560	----a-w-	c:\windows\system32\drivers\http.sys
2015-04-15 08:35 . 2015-03-10 03:08	1237504	----a-w-	c:\windows\system32\msxml3.dll
2015-04-15 08:35 . 2015-03-10 03:05	2048	----a-w-	c:\windows\system32\msxml3r.dll
.
.
.
((((((((((((((((((((((((((((((((((((   Find3M Bericht   ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-04-15 09:57 . 2012-05-03 15:23	778416	----a-w-	c:\windows\system32\FlashPlayerApp.exe
2015-04-15 09:57 . 2011-05-15 20:19	142512	----a-w-	c:\windows\system32\FlashPlayerCPLApp.cpl
2015-04-14 07:37 . 2014-01-06 10:33	23256	----a-w-	c:\windows\system32\drivers\mbam.sys
2015-03-12 17:33 . 2013-05-07 19:59	37896	----a-w-	c:\windows\system32\drivers\avnetflt.sys
2015-03-12 17:33 . 2013-04-07 09:24	136216	----a-w-	c:\windows\system32\drivers\avipbb.sys
2015-03-12 17:33 . 2013-04-07 09:24	105864	----a-w-	c:\windows\system32\drivers\avgntflt.sys
2015-02-26 03:11 . 2015-03-12 17:54	2381312	----a-w-	c:\windows\system32\win32k.sys
2015-02-24 02:23 . 2010-08-30 16:46	246920	------w-	c:\windows\system32\MpSigStub.exe
2015-02-20 04:13 . 2015-03-12 17:49	26624	----a-w-	c:\windows\system32\lpk.dll
2015-02-20 04:13 . 2015-03-12 17:49	70656	----a-w-	c:\windows\system32\fontsub.dll
2015-02-20 04:13 . 2015-03-12 17:49	10240	----a-w-	c:\windows\system32\dciman32.dll
2015-02-20 04:13 . 2015-03-12 17:49	34304	----a-w-	c:\windows\system32\atmlib.dll
2015-02-20 03:09 . 2015-03-12 17:49	299008	----a-w-	c:\windows\system32\atmfd.dll
.
.
((((((((((((((((((((((((((((   Autostartpunkte der Registrierung   ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. 
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-20 1174016]
"Wunderlist"="c:\program files\Wunderlist2\Wunderlist.exe" [2013-12-02 13021792]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"="c:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" [2010-03-04 284696]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2010-06-14 9288296]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-05-27 98304]
"NUSB3MON"="c:\program files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2010-04-27 113288]
"CLMLServer"="c:\program files\CyberLink\Power2Go\CLMLSvc.exe" [2009-11-02 103720]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2013-05-08 41056]
"hpqSRMon"="c:\program files\HP\Digital Imaging\bin\hpqSRMon.exe" [2008-08-20 150016]
"HP Software Update"="c:\program files\HP\HP Software Update\HPWuSchd2.exe" [2011-05-10 49208]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2011-11-01 59240]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2012-01-16 421736]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2015-04-01 726320]
"ownCloud"="c:\program files\ownCloud\owncloud.exe" [2013-04-22 1253540]
"PDFPrint"="c:\programmejonas\PDF24\pdf24.exe" [2014-11-28 193568]
"Avira Systray"="c:\program files\Avira\My Avira\Avira.OE.Systray.exe" [2015-03-16 129272]
.
c:\users\Jonas *****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OpenOffice.org 3.2.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2010-5-20 1195008]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Microsoft Office.lnk - c:\program files\Microsoft Office\Office10\OSA.EXE -b -l [2001-2-13 83360]
WISO Mein Steuer-Sparbuch heute.lnk - c:\program files\WISO\Steuersoftware 2014\mshaktuell.exe [2014-10-1 1427736]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux1"=wdmaud.drv
.
R2 AntiVirMailService;Avira Email-Schutz;c:\program files\Avira\AntiVir Desktop\avmailc7.exe [2015-04-01 815920]
R2 AntiVirWebService;Avira Browser-Schutz;c:\program files\Avira\AntiVir Desktop\avwebg7.exe [2015-04-01 1004280]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe [2015-03-13 102912]
R3 RTL2832U_IRHID;Cinergy T Stick HID;c:\windows\system32\DRIVERS\RTL2832U_IRHID.sys [2012-01-09 43392]
R3 RTL2832UBDA;Cinergy T Stick RC BDA service;c:\windows\system32\drivers\RTL2832UBDA.sys [2012-01-09 189184]
R3 RTL2832UUSB;Cinergy T Stick RC USB service;c:\windows\system32\Drivers\RTL2832UUSB.sys [2012-01-09 33536]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys [2013-11-29 37352]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2010-05-27 176128]
S2 AntiVirSchedulerService;Avira Planer;c:\program files\Avira\AntiVir Desktop\sched.exe [2015-04-01 434424]
S2 Avira.OE.ServiceHost;Avira Service Host;c:\program files\Avira\My Avira\Avira.OE.ServiceHost.exe [2015-03-16 201008]
S2 avnetflt;avnetflt;c:\windows\system32\DRIVERS\avnetflt.sys [2015-03-12 37896]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-03-04 13336]
S2 MBAMScheduler;MBAMScheduler;c:\program files\ Malwarebytes Anti-Malware \mbamscheduler.exe [2015-04-14 1871160]
S2 MBAMService;MBAMService;c:\program files\ Malwarebytes Anti-Malware \mbamservice.exe [2015-04-14 1080120]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2015-04-14 23256]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\MBAMSwissArmy.sys [2015-05-11 119512]
S3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys [2015-04-14 51928]
S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [2010-04-27 64904]
S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [2010-04-27 146568]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [2010-05-31 267880]
S3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\DRIVERS\RTL8192su.sys [2009-09-22 579072]
.
.
--- Andere Dienste/Treiber im Speicher ---
.
*NewlyCreated* - MBAMSWISSARMY
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
hpdevmgmt	REG_MULTI_SZ   	hpqcxs08
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2015-05-01 07:38	988488	----a-w-	c:\program files\Google\Chrome\Application\42.0.2311.135\Installer\chrmstp.exe
.
Inhalt des "geplante Tasks" Ordners
.
2015-05-11 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-03 09:57]
.
2015-05-11 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-11-25 15:00]
.
2015-05-11 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-11-25 15:00]
.
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = hxxp://www.google.com
uDefault_Search_URL = hxxp://www.google.com
mStart Page = about:blank
uInternet Settings,ProxyOverride = *.local
IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
IE: Nach Microsoft &Excel exportieren - c:\progra~1\MICROS~3\Office10\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\users\Jonas *****\AppData\Roaming\Mozilla\Firefox\Profiles\d240w4qq.default-1389057727826\
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
SafeBoot-BsScanner
AddRemove-gedit_is1 - c:\programmejonas\gedit\unins000.exe
AddRemove-{D54E3D9F-FEB8-4D2D-A138-B69A5C80080B} - c:\programdata\Updater\Uninstall.exe
.
.
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.shtml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xht\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xhtml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="ChromeHTML"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
--------------------- Durch laufende Prozesse gestartete DLLs ---------------------
.
- - - - - - - > 'Explorer.exe'(3868)
c:\windows\System32\ieframe.dll
.
------------------------ Weitere laufende Prozesse ------------------------
.
c:\windows\system32\atieclxx.exe
c:\program files\Avira\AntiVir Desktop\avguard.exe
c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\Common Files\Protexis\License Service\PsiService_2.exe
c:\windows\system32\taskhost.exe
c:\program files\ Malwarebytes Anti-Malware \mbam.exe
c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\program files\Avira\AntiVir Desktop\avshadow.exe
c:\windows\servicing\TrustedInstaller.exe
c:\windows\System32\WUDFHost.exe
c:\windows\system32\conhost.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
c:\program files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
c:\program files\OpenOffice.org 3\program\soffice.exe
c:\program files\OpenOffice.org 3\program\soffice.bin
c:\program files\iPod\bin\iPodService.exe
c:\windows\system32\sppsvc.exe
c:\program files\Windows Media Player\wmpnetwk.exe
.
**************************************************************************
.
Zeit der Fertigstellung: 2015-05-12  00:04:17 - PC wurde neu gestartet
ComboFix-quarantined-files.txt  2015-05-11 22:04
.
Vor Suchlauf: 14 Verzeichnis(se), 1.177.558.687.744 Bytes frei
Nach Suchlauf: 18 Verzeichnis(se), 1.180.925.071.360 Bytes frei
.
- - End Of File - - 71B241A584D1A28946B928523240C3FB
         
--- --- --- 5D949EEA3BEEC2DF38A2D7900AD89A60

Alt 12.05.2015, 15:58   #12
deeprybka
/// TB-Ausbilder
/// Anleitungs-Guru
 
Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet - Standard

Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet



Bitte mal frische FRST-Logs:

Schritt 1



Bitte starte FRST erneut, markiere auch die checkbox und drücke auf Scan.
Bitte poste mir den Inhalt der beiden Logs die erstellt werden.
__________________
Gruß
deeprybka

Lob, Kritik, Wünsche?

Spende fürs trojaner-board?
_______________________________________________
„Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer

Alt 12.05.2015, 23:31   #13
Patroklos91
 
Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet - Standard

Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet



Hier die Log-Dateien des neuen FRST-Scans ...

Beste Grüße!



FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 06-05-2015 01
Ran by Jonas ***** (administrator) on ZUKUNFT on 13-05-2015 00:23:37
Running from C:\ProgrammeJonas
Loaded Profiles: Jonas ***** (Available profiles: Jonas *****)
Platform: Microsoft Windows 7 Home Premium  Service Pack 1 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Malwarebytes Corporation) C:\Program Files\ Malwarebytes Anti-Malware \mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files\ Malwarebytes Anti-Malware \mbamservice.exe
(Protexis Inc.) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
(Microsoft Corporation) C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
(Malwarebytes Corporation) C:\Program Files\ Malwarebytes Anti-Malware \mbam.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(Renesas Electronics Corporation) C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(CyberLink) C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe
(Hewlett-Packard) C:\Program Files\HP\Digital Imaging\bin\HpqSRmon.exe
(Hewlett-Packard) C:\Program Files\HP\HP Software Update\hpwuschd2.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
() C:\Program Files\ownCloud\owncloud.exe
(Geek Software GmbH) C:\ProgrammeJonas\PDF24\pdf24.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(6 Wunderkinder GmbH) C:\Program Files\Wunderlist2\Wunderlist.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.bin
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_17_0_0_169.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_17_0_0_169.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2010-03-04] (Intel Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [9288296 2010-06-14] (Realtek Semiconductor)
HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-05-27] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [NUSB3MON] => C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-04-27] (Renesas Electronics Corporation)
HKLM\...\Run: [CLMLServer] => C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe [103720 2009-11-02] (CyberLink)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [41056 2013-05-08] (Adobe Systems Incorporated)
HKLM\...\Run: [hpqSRMon] => C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe [150016 2008-08-20] (Hewlett-Packard)
HKLM\...\Run: [HP Software Update] => C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [49208 2011-05-10] (Hewlett-Packard)
HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59240 2011-11-02] (Apple Inc.)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [421736 2012-01-16] (Apple Inc.)
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [726320 2015-04-01] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [ownCloud] => C:\Program Files\ownCloud\owncloud.exe [1253540 2013-04-22] ()
HKLM\...\Run: [PDFPrint] => C:\ProgrammeJonas\PDF24\pdf24.exe [193568 2014-11-28] (Geek Software GmbH)
HKLM\...\Run: [Avira Systray] => C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [129272 2015-03-16] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-21-1471510115-2474919708-3564051268-1001\...\Run: [Wunderlist] => C:\Program Files\Wunderlist2\Wunderlist.exe [13021792 2013-12-02] (6 Wunderkinder GmbH)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk [2011-03-25]
ShortcutTarget: Microsoft Office.lnk -> C:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WISO Mein Steuer-Sparbuch heute.lnk [2014-10-01]
ShortcutTarget: WISO Mein Steuer-Sparbuch heute.lnk -> C:\Program Files\WISO\Steuersoftware 2014\mshaktuell.exe ()
Startup: C:\Users\Jonas *****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.2.lnk [2010-11-28]
ShortcutTarget: OpenOffice.org 3.2.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-1471510115-2474919708-3564051268-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-1471510115-2474919708-3564051268-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
SearchScopes: HKLM -> DefaultScope value is missing.
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2013-05-08] (Adobe Systems Incorporated)
BHO: Search Helper -> {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} -> C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll [2010-05-14] (Microsoft Corporation)
Toolbar: HKLM - TerraTec Home Cinema - {AD6E6555-FB2C-47D4-8339-3E2965509877} - C:\Program Files\TerraTec\TerraTec Home Cinema\ThcDeskBand.dll [2011-06-24] (TerraTec Electronic GmbH)
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-0018-0000-0031-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.8.0/jinstall-1_8_0_31-windows-i586.cab
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll [2000-11-06] (Microsoft Corporation)
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-31] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\Jonas *****\AppData\Roaming\Mozilla\Firefox\Profiles\d240w4qq.default-1389057727826
FF NewTab:  www.google.de
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_169.dll [2015-04-15] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw.dll [2010-08-18] (Adobe Systems, Inc.)
FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll [2011-11-14] ()
FF Plugin: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-02-04] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-02-04] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @microsoft.com/WLPG,version=14.0.8117.0416 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2010-04-17] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-06] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-06] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll [2013-05-08] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1471510115-2474919708-3564051268-1001: @lightspark.github.com/Lightspark;version=1 -> C:\Program Files\Lightspark 0.5.3-git\nplightsparkplugin.dll No File
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2013-05-08] (Adobe Systems Inc.)
FF Extension: 20-20 3D Viewer - IKEA - C:\Users\Jonas *****\AppData\Roaming\Mozilla\Firefox\Profiles\d240w4qq.default-1389057727826\Extensions\2020Player_IKEA@2020Technologies.com [2014-03-21]
FF Extension: Adblock Plus - C:\Users\Jonas *****\AppData\Roaming\Mozilla\Firefox\Profiles\d240w4qq.default-1389057727826\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-01-08]
FF HKLM\...\Firefox\Extensions: [ext@flash-Enhancer.com] - C:\Program Files\AmiExt\flashEnhancer\ff
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\itms.js [2015-04-11]

Chrome: 
=======
CHR StartupUrls: Default -> "hxxp://www.google.com"
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\21.0.1180.89\PepperFlash\pepflashplayer.dll No File
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\42.0.2311.135\gcswf32.dll No File
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32_11_4_402_265.dll No File
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\42.0.2311.135\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\42.0.2311.135\pdf.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Java Deployment Toolkit 6.0.300.12) - C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll No File
CHR Plugin: (Java(TM) Platform SE 6 U30) - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll No File
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll No File
CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
CHR Plugin: (Windows Live® Photo Gallery) - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (iTunes Application Detector) - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (Shockwave for Director) - C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\4.1.10329.0\npctrl.dll No File
CHR Profile: C:\Users\Jonas *****\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (No Name) - C:\Users\Jonas *****\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckjhoplcbnkhgnnahfbcdmganjhpcceg [2012-08-27]
CHR Extension: (Google Wallet) - C:\Users\Jonas *****\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-10-26]
CHR HKLM\...\Chrome\Extension: [ckjhoplcbnkhgnnahfbcdmganjhpcceg] - C:\Users\JONASR~1\AppData\Local\Temp\ckjhoplcbnkhgnnahfbcdmganjhpcceg.crx [Not Found]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S2 AntiVirMailService; C:\Program Files\Avira\AntiVir Desktop\avmailc7.exe [815920 2015-04-01] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [434424 2015-04-01] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [434424 2015-04-01] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\avwebg7.exe [1004280 2015-04-01] (Avira Operations GmbH & Co. KG)
S2 Avira.OE.ServiceHost; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [201008 2015-03-16] (Avira Operations GmbH & Co. KG)
S3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [248832 2009-05-21] (Hewlett-Packard Co.) [File not signed]
R2 MBAMScheduler; C:\Program Files\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2015-04-14] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files\ Malwarebytes Anti-Malware \mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 AF15BDA; C:\Windows\System32\DRIVERS\AF15BDA.sys [489408 2009-11-05] (ITETech                  )
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105864 2015-03-12] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136216 2015-03-12] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-11-29] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [37896 2015-03-12] (Avira Operations GmbH & Co. KG)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2015-04-14] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [119512 2015-05-12] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2015-04-14] (Malwarebytes Corporation)
R3 nusb3hub; C:\Windows\System32\DRIVERS\nusb3hub.sys [64904 2010-04-27] (Renesas Electronics Corporation)
R3 nusb3xhc; C:\Windows\System32\DRIVERS\nusb3xhc.sys [146568 2010-04-27] (Renesas Electronics Corporation)
S3 RTL2832UBDA; C:\Windows\System32\drivers\RTL2832UBDA.sys [189184 2012-01-09] (REALTEK SEMICONDUCTOR Corp.)
S3 RTL2832UUSB; C:\Windows\System32\Drivers\RTL2832UUSB.sys [33536 2012-01-09] (REALTEK SEMICONDUCTOR Corp.)
S3 RTL2832U_IRHID; C:\Windows\System32\DRIVERS\RTL2832U_IRHID.sys [43392 2012-01-09] (Realtek)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2013-04-07] (Avira GmbH)
U5 AppMgmt; C:\Windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
S3 catchme; \??\C:\Users\JONASR~1\AppData\Local\Temp\catchme.sys [X]
S3 Profos; \??\C:\Program Files\BullGuard Ltd\BullGuard\antirootkit\profos.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-05-12 00:10 - 2015-05-12 00:10 - 00014373 _____ () C:\Users\Jonas *****\Desktop\ComboFix.txt
2015-05-12 00:04 - 2015-05-12 00:04 - 00014368 _____ () C:\ComboFix.txt
2015-05-11 23:36 - 2015-05-12 00:04 - 00000000 ____D () C:\ComboFix
2015-05-11 23:36 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe
2015-05-11 23:36 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe
2015-05-11 23:36 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-05-11 23:36 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-05-11 23:36 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-05-11 23:36 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe
2015-05-11 23:36 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe
2015-05-11 23:36 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe
2015-05-11 23:34 - 2015-05-12 00:04 - 00000000 ____D () C:\Qoobox
2015-05-11 23:33 - 2015-05-12 00:02 - 00000000 ____D () C:\Windows\erdnt
2015-05-11 23:31 - 2015-05-11 23:31 - 05623215 ____R (Swearware) C:\Users\Jonas *****\Desktop\ComboFix.exe
2015-05-07 23:24 - 2015-05-07 23:25 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\Jonas *****\Desktop\tdsskiller.exe
2015-05-07 21:29 - 2015-05-07 21:29 - 00003574 _____ () C:\Users\Jonas *****\Desktop\Gmer.txt
2015-05-07 21:01 - 2015-05-13 00:23 - 00000000 ____D () C:\FRST
2015-05-07 20:58 - 2015-05-07 20:58 - 00000000 _____ () C:\Users\Jonas *****\defogger_reenable
2015-05-07 18:56 - 2015-05-12 23:51 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-05-07 18:55 - 2015-05-07 20:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2015-05-07 18:55 - 2015-05-07 20:34 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 
2015-05-07 18:55 - 2015-04-14 09:37 - 00092888 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-05-07 18:55 - 2015-04-14 09:37 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-04-28 16:10 - 2015-04-28 16:10 - 00008862 _____ () C:\Users\Jonas *****\.recently-used.xbel
2015-04-16 03:44 - 2015-04-16 03:44 - 00000000 ____D () C:\found.000
2015-04-15 10:38 - 2015-03-23 05:06 - 00860160 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-04-15 10:38 - 2015-03-23 05:06 - 00630784 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-04-15 10:38 - 2015-03-23 05:06 - 00576000 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-04-15 10:38 - 2015-03-23 05:06 - 00331264 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-04-15 10:38 - 2015-03-23 05:06 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-04-15 10:38 - 2015-03-23 05:06 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-04-15 10:38 - 2015-03-23 05:06 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-04-15 10:38 - 2015-03-23 04:59 - 00896000 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-04-15 10:37 - 2015-04-02 01:49 - 00342704 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-04-15 10:37 - 2015-03-17 07:01 - 03976632 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-04-15 10:37 - 2015-03-17 07:01 - 03920824 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-04-15 10:37 - 2015-03-17 07:01 - 00137656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-04-15 10:37 - 2015-03-17 07:01 - 00067512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-04-15 10:37 - 2015-03-17 06:59 - 01306112 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-04-15 10:37 - 2015-03-17 06:57 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-04-15 10:37 - 2015-03-17 06:56 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-04-15 10:37 - 2015-03-17 06:56 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-04-15 10:37 - 2015-03-17 06:56 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-04-15 10:37 - 2015-03-17 06:56 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-04-15 10:37 - 2015-03-17 06:56 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-04-15 10:37 - 2015-03-17 06:56 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-04-15 10:37 - 2015-03-17 06:53 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-04-15 10:37 - 2015-03-17 06:53 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-04-15 10:37 - 2015-03-17 06:50 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-04-15 10:37 - 2015-03-17 06:50 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-04-15 10:37 - 2015-03-13 05:42 - 19695616 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-04-15 10:37 - 2015-03-13 05:42 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-04-15 10:37 - 2015-03-13 05:42 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-04-15 10:37 - 2015-03-13 05:28 - 00503296 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-04-15 10:37 - 2015-03-13 05:28 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-04-15 10:37 - 2015-03-13 05:27 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-04-15 10:37 - 2015-03-13 05:27 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-04-15 10:37 - 2015-03-13 05:26 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-04-15 10:37 - 2015-03-13 05:22 - 02278400 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-04-15 10:37 - 2015-03-13 05:20 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-04-15 10:37 - 2015-03-13 05:20 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-04-15 10:37 - 2015-03-13 05:17 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-04-15 10:37 - 2015-03-13 05:16 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-04-15 10:37 - 2015-03-13 05:16 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-04-15 10:37 - 2015-03-13 05:15 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-04-15 10:37 - 2015-03-13 05:09 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-04-15 10:37 - 2015-03-13 05:06 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-04-15 10:37 - 2015-03-13 05:01 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-04-15 10:37 - 2015-03-13 04:57 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-04-15 10:37 - 2015-03-13 04:56 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-04-15 10:37 - 2015-03-13 04:54 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-04-15 10:37 - 2015-03-13 04:49 - 04305408 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-04-15 10:37 - 2015-03-13 04:44 - 00689152 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-04-15 10:37 - 2015-03-13 04:43 - 02052608 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-04-15 10:37 - 2015-03-13 04:43 - 00685568 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-04-15 10:37 - 2015-03-13 04:42 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-04-15 10:37 - 2015-03-13 04:34 - 12825600 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-04-15 10:37 - 2015-03-13 04:20 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-04-15 10:37 - 2015-03-13 04:16 - 01311232 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-04-15 10:37 - 2015-03-13 04:14 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-04-15 10:37 - 2015-03-05 06:06 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-04-15 10:37 - 2015-03-04 06:16 - 00249784 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2015-04-15 10:37 - 2015-03-04 06:10 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2015-04-15 10:36 - 2015-03-25 05:00 - 03088384 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-04-15 10:36 - 2015-03-25 05:00 - 02020864 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-04-15 10:36 - 2015-03-25 05:00 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-04-15 10:36 - 2015-03-25 05:00 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-04-15 10:36 - 2015-03-25 05:00 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-04-15 10:36 - 2015-03-25 05:00 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-04-15 10:36 - 2015-03-25 05:00 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-04-15 10:36 - 2015-03-25 05:00 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-04-15 10:36 - 2015-03-25 05:00 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-04-15 10:36 - 2015-03-25 05:00 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-04-15 10:36 - 2015-03-25 05:00 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-04-15 10:35 - 2015-03-10 05:08 - 01237504 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-04-15 10:35 - 2015-03-10 05:05 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-04-15 10:35 - 2015-02-25 05:03 - 00514560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-05-13 00:24 - 2013-05-08 14:16 - 00691200 ____H () C:\Users\Jonas *****\Documents\.csync_journal.db.ctmp
2015-05-13 00:24 - 2013-05-08 14:16 - 00691200 ____H () C:\Users\Jonas *****\Documents\.csync_journal.db
2015-05-13 00:23 - 2010-11-28 15:15 - 00000000 ____D () C:\ProgrammeJonas
2015-05-13 00:21 - 2010-11-26 05:51 - 01772362 _____ () C:\Windows\WindowsUpdate.log
2015-05-13 00:19 - 2010-11-25 22:14 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-05-12 23:59 - 2009-07-14 06:34 - 00018512 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-05-12 23:59 - 2009-07-14 06:34 - 00018512 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-05-12 23:56 - 2012-08-06 19:08 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-05-12 23:49 - 2010-11-25 22:14 - 00001094 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-05-12 23:49 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-12 23:49 - 2009-07-14 06:39 - 00130155 _____ () C:\Windows\setupact.log
2015-05-12 00:37 - 2014-06-25 01:22 - 00000000 ____D () C:\Users\Jonas *****\Documents\Bilder
2015-05-12 00:04 - 2009-07-14 04:37 - 00000000 ___RD () C:\Users\Public
2015-05-11 23:57 - 2009-07-14 04:04 - 00000215 _____ () C:\Windows\system.ini
2015-05-11 23:53 - 2010-08-30 11:48 - 00826240 _____ () C:\Windows\PFRO.log
2015-05-11 22:57 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Help
2015-05-07 20:58 - 2010-11-25 22:19 - 00000000 ____D () C:\Users\Jonas *****
2015-05-07 20:34 - 2014-01-06 12:33 - 00001068 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2015-05-07 18:57 - 2015-01-15 23:11 - 00000000 ____D () C:\Users\Jonas *****\AppData\Local\Wunderlist
2015-05-07 18:55 - 2014-01-06 12:33 - 00000000 ____D () C:\Users\Jonas *****\AppData\Roaming\Malwarebytes
2015-05-07 18:55 - 2014-01-06 12:33 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-05-07 18:55 - 2014-01-06 12:33 - 00000000 ____D () C:\Program Files\Malwarebytes' Anti-Malware
2015-05-07 18:52 - 2014-01-05 14:22 - 00000000 ____D () C:\ProgramData\Updater
2015-05-04 20:46 - 2014-04-03 10:19 - 00000000 ____D () C:\Users\Jonas *****\Desktop\Christina
2015-05-01 09:40 - 2010-11-25 22:14 - 00002125 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-04-29 10:41 - 2010-08-28 02:49 - 01620684 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-28 16:11 - 2011-12-14 11:53 - 00000000 ____D () C:\Users\Jonas *****\.gimp-2.6
2015-04-28 16:10 - 2010-12-07 22:31 - 00000000 ____D () C:\Users\Jonas *****\AppData\Roaming\gtk-2.0
2015-04-28 16:07 - 2015-04-11 21:32 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2015-04-28 16:07 - 2012-07-07 01:19 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2015-04-28 16:07 - 2009-07-14 06:53 - 00032640 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-04-22 13:47 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\AppCompat
2015-04-20 15:22 - 2011-01-10 00:59 - 00000000 ____D () C:\Users\Jonas *****\Documents\Studium
2015-04-20 11:32 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2015-04-16 03:54 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2015-04-16 03:35 - 2014-12-11 04:30 - 00000000 ____D () C:\Windows\system32\appraiser
2015-04-16 03:35 - 2014-05-07 03:02 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-04-16 03:35 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\de-DE
2015-04-16 03:19 - 2013-07-21 03:01 - 00000000 ____D () C:\Windows\system32\MRT
2015-04-16 03:06 - 2010-08-30 18:47 - 125832184 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-04-15 11:57 - 2012-05-03 17:23 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-04-15 11:57 - 2011-05-15 22:19 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-04-14 09:37 - 2014-01-06 12:33 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys

==================== Files in the root of some directories =======

2012-02-13 17:10 - 2012-02-13 17:10 - 0000085 ___SH () C:\ProgramData\.zreglib
2014-05-29 00:36 - 2014-09-18 01:22 - 0002097 _____ () C:\ProgramData\flcd_proxy.log
2011-12-13 14:19 - 2011-12-13 14:25 - 0000355 _____ () C:\ProgramData\hpzinstall.log

Some content of TEMP:
====================
C:\Users\Jonas *****\AppData\Local\Temp\avgnt.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-05-04 15:52

==================== End Of Log ============================
         
--- --- ---

[/CODE]


Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 06-05-2015 01
Ran by Jonas ***** at 2015-05-13 00:24:48
Running from C:\ProgrammeJonas
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1471510115-2474919708-3564051268-500 - Administrator - Disabled)
Gast (S-1-5-21-1471510115-2474919708-3564051268-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1471510115-2474919708-3564051268-1002 - Limited - Enabled)
Jonas ***** (S-1-5-21-1471510115-2474919708-3564051268-1001 - Administrator - Enabled) => C:\Users\Jonas *****

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Acrobat.com (HKLM\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated)
Adobe AIR (HKLM\...\Adobe AIR) (Version: 15.0.0.249 - Adobe Systems Incorporated)
Adobe Flash Player 17 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 17.0.0.169 - Adobe Systems Incorporated)
Adobe Flash Player 17 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated)
Adobe Reader 9.5.5 MUI (HKLM\...\{AC76BA86-7AD7-FFFF-7B44-A91000000001}) (Version: 9.5.5 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.5 (HKLM\...\Adobe Shockwave Player) (Version: 11.5.8.612 - Adobe Systems, Inc.)
Anki (HKLM\...\Anki) (Version:  - )
Apple Application Support (HKLM\...\{343666E2-A059-48AC-AD67-230BF74E2DB2}) (Version: 2.1.6 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{8153ED9A-C94A-426E-9880-5E6775C08B62}) (Version: 4.0.0.97 - Apple Inc.)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
ATI Catalyst Install Manager (HKLM\...\{BE4AE3A7-190D-BCB8-A953-A708C9E8E8AA}) (Version: 3.0.778.0 - ATI Technologies, Inc.)
Avira (HKLM\...\{b5675cc4-ab8b-4945-8c1d-4c5479556d6a}) (Version: 1.1.34.19732 - Avira Operations GmbH & Co. KG)
Avira (Version: 1.1.34.19732 - Avira Operations GmbH & Co. KG) Hidden
Avira Antivirus (HKLM\...\Avira Antivirus) (Version: 15.0.9.504 - Avira Operations GmbH & Co. KG)
BlueJ 3.0.4 (HKLM\...\BlueJ_is1) (Version:  - La Trobe University)
Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.)
BufferChm (Version: 130.0.331.000 - Hewlett-Packard) Hidden
ccc-core-static (Version: 2010.0527.1242.20909 - ATI) Hidden
CdCreate AM Testversion (HKLM\...\{98667FC9-D57F-11DD-B64E-93631AE7A456}) (Version: 2.80.0000 - Galerie Fuchstal)
Cinergy T Stick RC V86.001.1129.2011 (HKLM\...\Cinergy T Stick RC) (Version: 86.001.1129.2011 - )
Cinergy T USB XXS V2.03.03.29 (HKLM\...\Cinergy T USB XXS) (Version: 2.03.03.29 - )
Cinergy T-Stick MKII V9.06.3.01 (HKLM\...\Cinergy T-Stick MKII) (Version: 9.06.3.01 - )
CorelDRAW Essentials 4 - Content (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Draw (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Filters (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - ICA (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - IPM - No VBA (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang BR (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang DE (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang EN (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang ES (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang FR (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang IT (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Lang NL (Version: 4.0 - Uw bedrijfsnaam) Hidden
CorelDRAW Essentials 4 - PHOTO-PAINT (Version: 4.0 - Corel Corporation) Hidden
CorelDRAW Essentials 4 - Windows Shell Extension (HKLM\...\_{CF0ADC18-6D8F-4353-8EAA-DF45456B7853}) (Version:  - Corel Corporation)
CorelDRAW Essentials 4 - Windows Shell Extension (Version: 1.1 - Corel Corporation) Hidden
CorelDRAW Essentials 4 (HKLM\...\_{C0237AA4-1BFB-46EA-860D-7B0EB365CA13}) (Version:  - Corel Corporation)
CorelDRAW Essentials 4 (Version: 4.0 - Corel Corporation) Hidden
CyberLink LabelPrint (HKLM\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.2515 - CyberLink Corp.)
CyberLink Power2Go (HKLM\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.3602c - CyberLink Corp.)
CyberLink PowerDVD Copy (HKLM\...\InstallShield_{E3D04529-6EDB-11D8-A372-0050BAE317E1}) (Version: 1.5.1306 - CyberLink Corp.)
Destinations (Version: 130.0.0.0 - Hewlett-Packard) Hidden
DocProc (Version: 13.0.0.0 - Hewlett-Packard) Hidden
ElsterFormular (HKLM\...\ElsterFormular) (Version: 15.3.14949 - Landesfinanzdirektion Thüringen)
FIFA 2003 (HKLM\...\{6A1DC8D4-9FA4-43C3-00B3-5993B4BBE7D4}) (Version:  - )
Funkyplot 1.1.0-pre1 (HKLM\...\Funkyplot_is1) (Version:  - LOGICIEL)
GIMP 2.6.11 (HKLM\...\WinGimp-2.0_is1) (Version: 2.6.11 - The GIMP Team)
Google Chrome (HKLM\...\Google Chrome) (Version: 42.0.2311.135 - Google Inc.)
Google Update Helper (Version: 1.3.26.9 - Google Inc.) Hidden
GPBaseService2 (Version: 130.0.371.000 - Hewlett-Packard) Hidden
GPL Ghostscript (HKLM\...\GPL Ghostscript 9.05) (Version: 9.05 - Artifex Software Inc.)
GSview 5.0 (HKLM\...\GSview 5.0) (Version: 5.0 - Ghostgum Software Pty Ltd)
HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP)
HP Photosmart Essential 3.5 (HKLM\...\HP Photosmart Essential) (Version: 3.5 - HP)
HP Scanjet G4000 Series (HKLM\...\{10297E58-2DFE-478B-9A1D-4B14E4E79CDF}) (Version: 13.0 - HP)
HP Solution Center 13.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 13.0 - HP)
HP Update (HKLM\...\{2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}) (Version: 5.003.001.001 - Hewlett-Packard)
hpg4000 (Version: 13.0.0.0 - Ihr Firmenname) Hidden
HPPhotosmartEssential (Version: 2.04.0000 - Hewlett-Packard) Hidden
HPProductAssistant (Version: 130.0.371.000 - Hewlett-Packard) Hidden
Intel(R) Rapid Storage Technology (HKLM\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.6.0.1014 - Intel Corporation)
iTunes (HKLM\...\{F6D6B258-E3CA-4AAC-965A-68D3E3140A8C}) (Version: 10.5.3.3 - Apple Inc.)
Java 8 Update 31 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Java DB 10.5.3.0 (HKLM\...\{00BA866C-F2A2-4BB9-A308-3DFA695B6F7C}) (Version: 10.5.3.0 - Sun Microsystems, Inc)
Java(TM) SE Development Kit 6 Update 23 (HKLM\...\{32A3A4F4-B792-11D6-A78A-00B0D0160230}) (Version: 1.6.0.230 - Oracle)
Junk Mail filter update (Version: 14.0.8117.416 - Microsoft Corporation) Hidden
Kalenderchen 6 (HKU\S-1-5-21-1471510115-2474919708-3564051268-1001\...\Kalenderchen 6) (Version:  - )
Malwarebytes Anti-Malware Version 2.1.6.1022 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
MATLAB R2009b (HKLM\...\MatlabR2009b) (Version: 7.9 - The MathWorks, Inc.)
Media Markt Fotoservice 4.4 (HKLM\...\Media Markt Fotoservice_is1) (Version:  - )
Medion Home Cinema (HKLM\...\InstallShield_{AB770FDE-8087-4C98-9A85-BD64262C104C}) (Version: 6.0.0000 - CyberLink Corp.)
Medion Home Cinema (Version: 6.0.0000 - CyberLink Corp.) Hidden
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office 2010 (HKLM\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office XP Developer - German (HKLM\...\Microsoft Office XP Developer - German) (Version:  - )
Microsoft Office XP Professional mit FrontPage (HKLM\...\{90280407-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [DEU] (HKLM\...\{BAC80EF3-E106-4AEA-8C57-F217F9BC7358}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
MiKTeX 2.9 (HKU\S-1-5-21-1471510115-2474919708-3564051268-1001\...\MiKTeX 2.9) (Version: 2.9 - MiKTeX.org)
MOD 10.0 Baseline (English-x86-CD) (Version: 7.00.9177 - Microsoft) Hidden
Mozilla Firefox 37.0.2 (x86 de) (HKLM\...\Mozilla Firefox 37.0.2 (x86 de)) (Version: 37.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 35.0.1 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
OCR Software by I.R.I.S. 13.0 (HKLM\...\HPOCR) (Version: 13.0 - HP)
OpenOffice.org 3.2 (HKLM\...\{DFFC0648-BC4B-47D1-93D2-6CA6B9457641}) (Version: 3.2.9502 - OpenOffice.org)
ownCloud (HKLM\...\ownCloud) (Version: 1.2.5 - ownCloud, Inc)
PDF24 Creator 6.9.2 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version:  - PDF24.org)
PlayReady PC Runtime x86 (HKLM\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation)
Project64 1.6 (HKLM\...\{9559F7CA-5E34-4237-A2D9-D856464AD727}) (Version: 1.6 - Project64)
R for Windows 3.1.1 (HKLM\...\R for Windows 3.1.1_is1) (Version: 3.1.1 - R Core Team)
Realtek Ethernet Controller Driver For Windows 7 (HKLM\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.21.531.2010 - Realtek)
Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6136 - Realtek Semiconductor Corp.)
Renesas Electronics USB 3.0 Host Controller Driver (HKLM\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.4.0 - Renesas Electronics Corporation)
Renesas Electronics USB 3.0 Host Controller Driver (Version: 2.0.4.0 - Renesas Electronics Corporation) Hidden
RStudio (HKLM\...\RStudio) (Version: 0.98.983 - RStudio)
Scan (Version: 13.0.0.0 - Hewlett-Packard) Hidden
SolutionCenter (Version: 130.0.373.000 - Hewlett-Packard) Hidden
Spelling Dictionaries Support For Adobe Reader 9 (HKLM\...\{AC76BA86-7AD7-5464-3428-900000000004}) (Version: 9.0.0 - Adobe Systems Incorporated)
Stellar Phoenix Windows Data Recovery-Home (HKLM\...\Stellar Phoenix Windows Data Recovery-Home_is1) (Version: 4.2.0.0 - Stellar Information Systems Ltd)
TerraTec Home Cinema (HKLM\...\{63B9BAB5-F36A-4A3B-9E5C-68A7F212BFB9}) (Version: 6.25.6 - )
Texmaker (HKLM\...\Texmaker) (Version:  - )
TIPP10 Version 2.1.0 (HKLM\...\TIPP10_is1) (Version:  - (c) 2006-2011, Tom Thielicke IT Solutions)
TmNationsForever (HKLM\...\TmNationsForever_is1) (Version:  - Nadeo)
WebReg (Version: 130.0.132.017 - Hewlett-Packard) Hidden
Windows Live Essentials (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8117.0416 - Microsoft Corporation)
WinRAR 4.00 (32-Bit) (HKLM\...\WinRAR archiver) (Version: 4.00.0 - win.rar GmbH)
WISO Mein Geld 2011 Professional (HKLM\...\WISO Mein Geld 2011 Professional) (Version:  - Buhl Data Service GmbH)
WISO Mein Geld 2011 Professional (Version: 12.00.02.0024 - Buhl Data Service GmbH) Hidden
WISO Steuer-Sparbuch 2014 (HKLM\...\{F03AAE28-2598-4490-AB26-2B35A0E58828}) (Version: 21.08.8679 - Buhl Data Service GmbH)
Wunderlist (HKLM\...\{1ca68332-4ba1-4943-9010-eaa1aa45b492}) (Version: 2.3.0.31 - 6 Wunderkinder GmbH)
Wunderlist (Version: 2.3.0.31 - 6 Wunderkinder GmbH) Hidden

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

21-04-2015 09:45:33 Windows Update
24-04-2015 10:03:27 Windows Update
28-04-2015 09:21:01 Windows Update
01-05-2015 09:48:43 Windows Update
06-05-2015 01:37:00 Windows Update
11-05-2015 23:05:33 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:04 - 2015-05-11 23:52 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1       localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {25841487-1C33-40BF-8120-5494E99B5656} - System32\Tasks\Microsoft\Windows\Setup\gwx\runappraiser => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation)
Task: {3212333B-1F16-4C10-98F4-7C75FAA9E40A} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-03-25] (Microsoft Corporation)
Task: {4FB622F1-A454-4F6B-BEB4-F71C1A08B1D9} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation)
Task: {51216052-0F20-4386-B40C-C710038DBAD8} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxcontent => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation)
Task: {59D093B0-92DA-42A3-A9BF-2B349A2CB79F} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-15] (Adobe Systems Incorporated)
Task: {61F13637-483C-42D4-927C-F8099A17FB78} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {6F151318-12A0-4D00-8F09-2EC27733568C} - System32\Tasks\{422FC7C0-2347-4491-A45A-99E34858989B} => pcalua.exe -a C:\Windows\LargoWinchInst\SetupUbi.exe -c -uninstall Largo
Task: {8A6329B5-0F52-4A46-8FEF-B34930A60984} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-10-20] (Google Inc.)
Task: {D0B8CBAD-B240-4E45-A1BD-7AFF085A8504} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {D67732B8-E5A2-4676-A3D6-7F013BF6DAFC} - System32\Tasks\{B86A33F0-D926-4927-A51E-BF2C8D32A885} => pcalua.exe -a C:\WINDOWS\ISUN0407.EXE -c -f"c:\program files\Uninst.isu" -c"c:\program files\Uninst.dll"

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) ==============

2008-09-08 11:19 - 2008-09-08 11:19 - 00022723 _____ () C:\Windows\System32\cl31cl3.dll
2011-11-02 00:26 - 2011-11-02 00:26 - 00087912 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2011-11-02 00:26 - 2011-11-02 00:26 - 01242472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2009-11-02 23:20 - 2009-11-02 23:20 - 00619816 ____N () C:\Program Files\CyberLink\Power2Go\CLMediaLibrary.dll
2009-11-02 23:23 - 2009-11-02 23:23 - 00013096 ____N () C:\Program Files\CyberLink\Power2Go\CLMLSvcPS.dll
2013-04-22 17:00 - 2013-04-22 17:00 - 01253540 _____ () C:\Program Files\ownCloud\owncloud.exe
2012-12-21 15:27 - 2012-12-21 15:27 - 00106700 _____ () C:\Program Files\ownCloud\zlib1.dll
2012-12-22 03:16 - 2012-12-22 03:16 - 00120916 _____ () C:\Program Files\ownCloud\libgcc_s_sjlj-1.dll
2012-12-22 03:16 - 2012-12-22 03:16 - 00864381 _____ () C:\Program Files\ownCloud\libstdc++-6.dll
2012-12-21 15:32 - 2012-12-21 15:32 - 00176680 _____ () C:\Program Files\ownCloud\libpng15-15.dll
2013-04-22 16:58 - 2013-04-22 16:58 - 00816147 _____ () C:\Program Files\ownCloud\libowncloudsync.dll
2013-02-21 16:59 - 2013-02-21 16:59 - 00074118 _____ () C:\Program Files\ownCloud\libqtkeychain.dll
2013-04-22 16:56 - 2013-04-22 16:56 - 00834505 _____ () C:\Program Files\ownCloud\libocsync.dll
2012-12-21 22:13 - 2012-12-21 22:13 - 00038291 _____ () C:\Program Files\ownCloud\libdl.dll
2013-02-04 23:07 - 2013-02-04 23:07 - 00044685 _____ () C:\Program Files\ownCloud\libiniparser.dll
2012-12-21 20:02 - 2012-12-21 20:02 - 00567611 _____ () C:\Program Files\ownCloud\libsqlite3-0.dll
2015-01-09 12:24 - 2015-01-09 12:24 - 01166336 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\ReactiveUI\1a96a8c1c19e0195d67a9950d1f4d527\ReactiveUI.ni.dll
2015-01-09 12:24 - 2015-01-09 12:24 - 00027136 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Wunderkinde6f42a4a9#\bcb87239e984b283cc128a55e9bc3aaf\Wunderkinder.Wunderlist.Data.Realtime.ni.dll
2015-01-09 12:24 - 2015-01-09 12:24 - 00376320 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Akavache.Portable\47d6f1dd3d6ffb3bc16647055208cdfb\Akavache.Portable.ni.dll
2015-01-09 12:24 - 2015-01-09 12:24 - 00039424 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\Wunderkinded9c6edae#\af819191c1a5d188230c5ce0bfb68220\Wunderkinder.Wunderlist.Presentation.ni.dll
2010-05-27 21:40 - 2010-05-27 21:40 - 00270336 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2010-05-04 16:36 - 2010-05-04 16:36 - 00970752 _____ () C:\Program Files\OpenOffice.org 3\program\libxml2.dll
2014-10-16 03:50 - 2014-10-16 03:50 - 00170496 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\3d576cbc4ffc5ad06fd61510c5d8f326\IsdiInterop.ni.dll
2010-08-30 20:04 - 2010-03-04 05:08 - 00058880 _____ () C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll
2015-04-15 11:57 - 2015-04-15 11:57 - 16863920 _____ () C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_169.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, the associated entry will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1471510115-2474919708-3564051268-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Jonas *****\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: Media is not connected to internet.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== FirewallRules (whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

FirewallRules: [TCP Query User{DC794C29-32CC-4974-9400-D80C6A3F4F00}C:\programmejonas\taxi raser\taxi raser.exe] => (Block) C:\programmejonas\taxi raser\taxi raser.exe
FirewallRules: [UDP Query User{1A82D905-EDDA-463E-89AB-1F7EB5A51EEA}C:\programmejonas\taxi raser\taxi raser.exe] => (Block) C:\programmejonas\taxi raser\taxi raser.exe
FirewallRules: [TCP Query User{ED38330D-DEB7-453D-91AA-4ADF5A6425CD}C:\programmejonas\eclipse-sdk-3.6.2-win32\eclipse\eclipse.exe] => (Block) C:\programmejonas\eclipse-sdk-3.6.2-win32\eclipse\eclipse.exe
FirewallRules: [UDP Query User{84894ECA-9CB8-4F76-8845-B3B5AF85FC23}C:\programmejonas\eclipse-sdk-3.6.2-win32\eclipse\eclipse.exe] => (Block) C:\programmejonas\eclipse-sdk-3.6.2-win32\eclipse\eclipse.exe
FirewallRules: [{FF002A04-FA73-4000-A11C-3BEE45B6CE28}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe
FirewallRules: [{5231EEC6-9410-4F31-9391-6AF6F00D3A25}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe
FirewallRules: [{C2518630-9012-4A03-8418-6D8580618524}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe
FirewallRules: [{55FBD93D-AB58-449B-B772-578D8BC5EBCB}] => (Allow) C:\Program Files\common files\hp\digital imaging\bin\hpqphotocrm.exe
FirewallRules: [{3FDB65D5-AD0B-4628-9FDC-5CD0E939A126}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqsudi.exe
FirewallRules: [{ED88D7B2-7241-4E41-8DED-87E6BF922CE4}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqpsapp.exe
FirewallRules: [{E9AEA340-D6A4-4EEB-838E-C3D45E8ACEF9}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqpse.exe
FirewallRules: [{17F8A429-7A05-4077-A934-3D180CA8968C}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqgplgtupl.exe
FirewallRules: [{30FF85D6-7CE6-4ED9-8099-FC43AE8A56F6}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
FirewallRules: [{83DEC76E-9F83-4302-AEE7-96E03014CFE7}] => (Allow) C:\Program Files\HP\hp software update\hpwucli.exe
FirewallRules: [{5AEA1869-BACB-4F1F-815D-4C453A802D9E}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\CinergyDvr.exe
FirewallRules: [{B963AE06-7617-43F6-AAA9-9D6E092FDF78}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\CinergyDvr.exe
FirewallRules: [{F1D9C10F-7210-40A8-B8D5-AE7D4FA53A4C}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\tvtvSetup\tvtv_Wizard.exe
FirewallRules: [{826F9D84-EE9C-49CC-BF6D-5467E0572A2E}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\tvtvSetup\tvtv_Wizard.exe
FirewallRules: [{DC5B8CE3-C71D-491B-9C1B-BAAD08A5FBF8}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\InstTool.exe
FirewallRules: [{227EE136-2668-475D-AAFA-0E0C18E3A910}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\InstTool.exe
FirewallRules: [{5ADE8544-17EB-4B32-B973-F37F7FB9292F}] => (Allow) C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
FirewallRules: [{B928DD33-32A6-4558-9B6C-1E6C138C5798}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{8822F8D9-2068-4F15-B96B-27337BB85C81}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{CB9381BD-BA39-4C0D-9201-806A3BD36C15}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{45F8B089-9F2A-4C01-8EAE-4346F8C007DA}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\InstTool.exe
FirewallRules: [{AAEE0B9D-1D90-4D0F-A441-2A5050AF960D}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\InstTool.exe
FirewallRules: [{4EB951AF-E1B3-4857-A07E-EA1B78E57990}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\CinergyDvr.exe
FirewallRules: [{6C1E7793-6B0E-4208-9D2B-BBAFC15BA223}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\CinergyDvr.exe
FirewallRules: [{A9F559C6-EA9A-4A99-9BBD-4FBCBC447E5B}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\tvtvSetup\tvtv_Wizard.exe
FirewallRules: [{2CABA8DC-F77E-4B3A-91C4-E4C3D671D6D4}] => (Allow) C:\Program Files\TerraTec\TerraTec Home Cinema\tvtvSetup\tvtv_Wizard.exe
FirewallRules: [TCP Query User{E1F4401C-95BD-402C-9DB4-9F80F23C836A}C:\program files\terratec\terratec home cinema\versioncheck\versioncheck.exe] => (Allow) C:\program files\terratec\terratec home cinema\versioncheck\versioncheck.exe
FirewallRules: [UDP Query User{A919A04F-22E9-4F1C-B419-581BF64F03CA}C:\program files\terratec\terratec home cinema\versioncheck\versioncheck.exe] => (Allow) C:\program files\terratec\terratec home cinema\versioncheck\versioncheck.exe
FirewallRules: [TCP Query User{B018C01A-B6F6-45E0-A11C-3B0811DA2F0C}C:\programmejonas\eclipse-sdk-3.6.2-win32\eclipse\eclipse.exe] => (Block) C:\programmejonas\eclipse-sdk-3.6.2-win32\eclipse\eclipse.exe
FirewallRules: [UDP Query User{7A80BBCD-6AE9-4145-80D3-60AF268FC900}C:\programmejonas\eclipse-sdk-3.6.2-win32\eclipse\eclipse.exe] => (Block) C:\programmejonas\eclipse-sdk-3.6.2-win32\eclipse\eclipse.exe
FirewallRules: [TCP Query User{BE522805-BD65-4391-A54F-89CA1E987E64}C:\program files\terratec\terratec home cinema\versioncheck\versioncheck.exe] => (Allow) C:\program files\terratec\terratec home cinema\versioncheck\versioncheck.exe
FirewallRules: [UDP Query User{16FD6222-9F6C-43C5-907F-58406A0F91CE}C:\program files\terratec\terratec home cinema\versioncheck\versioncheck.exe] => (Allow) C:\program files\terratec\terratec home cinema\versioncheck\versioncheck.exe
FirewallRules: [{E2A31A10-9C22-4670-8319-E3C537BD8719}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [TCP Query User{C8B0BC7D-986C-40EF-8960-5DEAE2708BD1}C:\program files\tmnationsforever\tmforever.exe] => (Block) C:\program files\tmnationsforever\tmforever.exe
FirewallRules: [UDP Query User{D840C2DE-7340-4F8B-ADED-9D4E8A1AB6F2}C:\program files\tmnationsforever\tmforever.exe] => (Block) C:\program files\tmnationsforever\tmforever.exe
FirewallRules: [{4A03E388-E847-4603-85B5-7A21F6E5B28C}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{955432A8-C4B0-44C3-A0B0-2230049D6B4C}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{1F81D1E8-5D16-4DD7-8E17-410EB255B372}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{EFDBDE91-E0F8-470B-AA2F-750FACF6BFFC}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [{63714984-330D-47F1-B9C1-E747482F129A}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (05/12/2015 02:30:56 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 9969

Error: (05/12/2015 02:30:56 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 9969

Error: (05/12/2015 02:30:56 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (05/11/2015 11:54:01 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: 468: ERROR: read_msg errno 0 (Der Vorgang wurde erfolgreich beendet.)

Error: (05/11/2015 11:54:01 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: mDNSPlatformReadTCP - recv: 10053

Error: (05/11/2015 11:50:16 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 66566

Error: (05/11/2015 11:50:16 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 66566

Error: (05/11/2015 11:50:07 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (05/07/2015 11:19:51 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15647

Error: (05/07/2015 11:19:51 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 15647


System errors:
=============
Error: (05/12/2015 11:50:00 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Avira Service Host erreicht.

Error: (05/12/2015 00:12:12 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Avira Service Host erreicht.

Error: (05/11/2015 11:53:46 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎11.‎05.‎2015 um 23:52:52 unerwartet heruntergefahren.

Error: (05/11/2015 11:45:20 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Der Dienst "PEVSystemStart" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren.

Error: (05/11/2015 11:39:07 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Der Dienst "PEVSystemStart" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren.

Error: (04/28/2015 09:45:29 AM) (Source: Server) (EventID: 2505) (User: )
Description: Aufgrund eines doppelten Netzwerknamens konnte zu der Transportschicht \Device\NetBT_Tcpip_{9A295CD5-A244-421C-A8EF-9E3A343737CB} vom Serverdienst nicht gebunden werden. Der Serverdienst konnte nicht gestartet werden.

Error: (04/15/2015 08:57:38 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows-Fehlerberichterstattungsdienst erreicht.

Error: (04/14/2015 11:23:53 PM) (Source: Ntfs) (EventID: 55) (User: )
Description: Die Dateisystemstruktur auf dem Datenträger ist beschädigt und unbrauchbar.
Führen Sie auf dem Volume "Boot" den Befehl "chkdsk" aus.

Error: (04/14/2015 06:57:48 PM) (Source: Schannel) (EventID: 4119) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung empfangen: 40.

Error: (04/14/2015 06:57:45 PM) (Source: Schannel) (EventID: 4119) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung empfangen: 40.


Microsoft Office Sessions:
=========================
Error: (05/12/2015 02:30:56 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 9969

Error: (05/12/2015 02:30:56 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 9969

Error: (05/12/2015 02:30:56 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (05/11/2015 11:54:01 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: 468: ERROR: read_msg errno 0 (Der Vorgang wurde erfolgreich beendet.)

Error: (05/11/2015 11:54:01 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: ERROR: mDNSPlatformReadTCP - recv: 10053

Error: (05/11/2015 11:50:16 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 66566

Error: (05/11/2015 11:50:16 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 66566

Error: (05/11/2015 11:50:07 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (05/07/2015 11:19:51 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15647

Error: (05/07/2015 11:19:51 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 15647


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i3 CPU 550 @ 3.20GHz
Percentage of memory in use: 54%
Total physical RAM: 3063.11 MB
Available physical RAM: 1400.29 MB
Total Pagefile: 6124.52 MB
Available Pagefile: 3711.85 MB
Total Virtual: 2047.88 MB
Available Virtual: 1914.92 MB

==================== Drives ================================

Drive c: (Boot) (Fixed) (Total:1356.17 GB) (Free:1098.8 GB) NTFS
Drive d: (Recover) (Fixed) (Total:40 GB) (Free:20.99 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 1397.3 GB) (Disk ID: 2BD2C32A)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=1356.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=40 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=1 GB) - (Type=12)

==================== End Of Log ============================
         

Alt 13.05.2015, 14:50   #14
deeprybka
/// TB-Ausbilder
/// Anleitungs-Guru
 
Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet - Standard

Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet



OK,
jetzt bitte einen Suchscan durchführen:

Schritt 1

ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset

__________________
Gruß
deeprybka

Lob, Kritik, Wünsche?

Spende fürs trojaner-board?
_______________________________________________
„Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer

Alt 13.05.2015, 20:05   #15
Patroklos91
 
Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet - Standard

Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet



Sollen USB-Sticks, Festplatten etc. vor dem Scan wirklich angeschlossen werden?

Antwort

Themen zu Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet
antivir, antivirus, avira, bonjour, browser, computer, desktop, e-mail, firefox, flash player, frage, geld, google, home, malware, mozilla, newtab, realtek, registry, secur, security, software, svchost.exe, system, windows, wiso




Ähnliche Themen: Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet


  1. Windows 10: Fake-Paypal-Mail erhalten und versehentlich Anhang geöffnet …
    Plagegeister aller Art und deren Bekämpfung - 22.08.2015 (8)
  2. DHL Phishing Mail Anhang (PDF) geöffnet
    Plagegeister aller Art und deren Bekämpfung - 08.06.2015 (11)
  3. DHL-Mail Anhang geöffnet
    Log-Analyse und Auswertung - 02.06.2015 (9)
  4. UPS-Mail anhang geöffnet
    Plagegeister aller Art und deren Bekämpfung - 10.03.2015 (9)
  5. Win 8.1 64bit: Bild in Mail von unbekanntem Absender geöffnet
    Log-Analyse und Auswertung - 04.01.2015 (13)
  6. Windows 7: Anhang in Fake Telekom-Mail (Rechnung) geöffnet - Trojaner TR/Kryptik.vnyz gefunden
    Log-Analyse und Auswertung - 06.07.2014 (9)
  7. E-Mail Anhang herruntergeladen und geöffnet von eindeutig unseriösem Absender (Service AG Download)
    Log-Analyse und Auswertung - 07.05.2014 (10)
  8. E-Mail von Media Center GmbH - Abo 39€ - E-Mail, nicht Anhang geöffnet, Antivirenprogramm meldet sich.
    Plagegeister aller Art und deren Bekämpfung - 24.04.2014 (5)
  9. BKA MAil mit falschen Absender Virus?
    Plagegeister aller Art und deren Bekämpfung - 16.04.2014 (5)
  10. Windows 7: Fake Mail von DHL geöffnet und Anhang ebenso
    Plagegeister aller Art und deren Bekämpfung - 24.01.2014 (17)
  11. Windows Vista: Zip Anhang einer Email von einer falschen Rechnung geöffnet-Angst vor Virus
    Plagegeister aller Art und deren Bekämpfung - 23.01.2014 (5)
  12. Windows 7: Mail "Luftfrachsendung AWB" zip im Anhang geöffnet, was tun
    Log-Analyse und Auswertung - 18.01.2014 (10)
  13. Spam-Mail und Anhang geöffnet
    Plagegeister aller Art und deren Bekämpfung - 12.09.2013 (3)
  14. E-Mail mit falschen Zahlungsaufforderungen erhalten und Anhang geöffnet!
    Plagegeister aller Art und deren Bekämpfung - 01.09.2013 (3)
  15. Windows Vista: Trojaner E-Mail Anhang geöffnet
    Log-Analyse und Auswertung - 16.08.2013 (9)
  16. Inkasso-Mail: Anhang geöffnet
    Plagegeister aller Art und deren Bekämpfung - 14.06.2013 (3)
  17. Windows Verschlüsselungs-Trojaner - Spam Mail - Anhang geöffnet
    Plagegeister aller Art und deren Bekämpfung - 19.07.2012 (9)

Zum Thema Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet - Am vergangenen Abend habe ich eine vermeintliche Mail vom Absender DHL sowie deren Anhang geöffnet. Ich habe seitdem keine Einschränkungen am PC festgestellt, bin aufgrund der Nachrichtenlage zu diesen Mails - Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet...
Archiv
Du betrachtest: Windows 7: E-Mail vom falschen DHL-Absender samt Anhang geöffnet auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.