![]() |
| |||||||
Plagegeister aller Art und deren Bekämpfung: Malware + Startseitenänderung + Werbetab-PopupsWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
| | #1 |
| | Malware + Startseitenänderung + Werbetab-Popups Guten Tag, ich habe letztens wohl eine falsche Datei erwischt und erst bei der Hälfte der Installation auf abbrechen geklickt und jetzt hab ich den Salat ![]() Was ist passiert bzw. passiert? 1) Die Startseite hat sich geändert zu -> safebrowse.biz 1.1) Es öffnet sich PopUp-Werbung in den Tabs Was habe ich selber unternommen? 2) ZoneAlarm hat bei einem Komplettscan nichts entdeckt. 2.1) MalwareByte hat auch nichts erkannt. Jetzt nach 3 Tagen, hat es etwas gefunden. Sonstiges 3) Habe mir Tipps zu Safebrowse aus dem Internet geholt. Da nichts zum Deinstallieren da war, und auch nichts bei den Google Chrome Diensten, wurde ich später in der Verknüpfung selber fündig. 3.1) Nach dem "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe", gab es einen Anhängsel den ich gelöscht habe. Das Problem mit der Startseite war behoben für einen Tag, kam dann doch wieder, bis Malwarebyte heute etwas gefunden und bereinigt hat. 3.2) Das Letzte was nun noch über ist, ist die Popup-Werbung Hier die Logs von MalwareByte Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 14.06.2016 Suchlaufzeit: 15:04 Protokolldatei: Pro1.txt Administrator: Ja Version: 2.2.1.1043 Malware-Datenbank: v2016.06.14.02 Rootkit-Datenbank: v2016.05.27.01 Lizenz: Testversion Malware-Schutz: Aktiviert Schutz vor bösartigen Websites: Aktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 10 CPU: x64 Dateisystem: NTFS Benutzer: DaUra Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 294395 Abgelaufene Zeit: 7 Min., 36 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (keine bösartigen Elemente erkannt) Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 0 (keine bösartigen Elemente erkannt) Registrierungswerte: 3 Hijack.AutoConfigURL.PrxySvrRST, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\IPHLPSVC\PARAMETERS\PROXYMGR\{270E2D0E-8C28-46AC-9F21-5690F550B087}|AutoConfigUrl, hxxp://un-stop.info/wpad.dat?9220ab4c300d39419c6dfbac0076222f11320041, In Quarantäne, [f4e6f20a1a7fe05642ac1f9deb1724dc] Hijack.AutoConfigURL.PrxySvrRST, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\NLASVC\PARAMETERS\INTERNET\MANUALPROXIES, 0hxxp://un-stop.info/wpad.dat?9220ab4c300d39419c6dfbac0076222f11320041, In Quarantäne, [fae09a62cdcc053128c76953f70bb14f] Hijack.AutoConfigURL.PrxySvrRST, HKU\S-1-5-21-3833861499-410864776-4231530817-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|AutoConfigUrl, hxxp://un-stop.info/wpad.dat?9220ab4c300d39419c6dfbac0076222f11320041, In Quarantäne, [ab2f01fb1b7e5adcf7f511abf70b3cc4] Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Ordner: 0 (keine bösartigen Elemente erkannt) Dateien: 0 (keine bösartigen Elemente erkannt) Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Detection, 14.06.2016 01:23, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, IP, 92.241.162.3, giraffetraffic.com, 64360, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 14.06.2016 01:23, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, IP, 92.241.162.3, giraffetraffic.com, 64360, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 14.06.2016 01:23, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, IP, 92.241.162.3, giraffetraffic.com, 64361, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Update, 14.06.2016 15:04, SYSTEM, DESKTOP-FASB6LE, Scheduler, IP Database, 2016.6.13.3, 2016.6.14.2, Update, 14.06.2016 15:04, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.13.3, 2016.6.14.2, Update, 14.06.2016 15:04, SYSTEM, DESKTOP-FASB6LE, Scheduler, Malware Database, 2016.6.13.5, 2016.6.14.2, Protection, 14.06.2016 15:04, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting, Protection, 14.06.2016 15:04, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping, Protection, 14.06.2016 15:04, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped, Protection, 14.06.2016 15:04, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success, Protection, 14.06.2016 15:04, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 14.06.2016 15:04, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, Scan, 14.06.2016 15:49, SYSTEM, DESKTOP-FASB6LE, Context, Start: 14.06.2016 15:04, Dauer: 7 Min. 36 Sek., Bedrohungssuchlauf, Abgeschlossen, 3 Malware-Erkennung, 0 Nicht-Malware-Erkennungen, Protection, 14.06.2016 15:51, SYSTEM, DESKTOP-FASB6LE, Protection, Malware Protection, Starting, Protection, 14.06.2016 15:51, SYSTEM, DESKTOP-FASB6LE, Protection, Malware Protection, Started, Protection, 14.06.2016 15:51, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 14.06.2016 15:51, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, (end) Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Detection, 13.06.2016 01:09, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 54.208.53.86, zo1.november-lax.com, 65064, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 13.06.2016 01:09, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 54.208.53.86, zo1.november-lax.com, 65064, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 13.06.2016 01:16, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 52.20.36.222, zs1.november-lax.com, 49609, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 13.06.2016 01:16, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 52.20.36.222, zs1.november-lax.com, 49609, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 13.06.2016 02:39, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 146.148.46.20, www.liveadexchanger.com, 52748, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 13.06.2016 02:39, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 146.148.46.20, www.liveadexchanger.com, 52748, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 13.06.2016 02:39, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 146.148.46.20, www.liveadexchanger.com, 52749, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Update, 13.06.2016 10:34, SYSTEM, DESKTOP-FASB6LE, Scheduler, Malware Database, 2016.6.12.4, 2016.6.13.2, Protection, 13.06.2016 10:34, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting, Protection, 13.06.2016 10:34, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping, Protection, 13.06.2016 10:34, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped, Protection, 13.06.2016 10:34, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success, Protection, 13.06.2016 10:34, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 13.06.2016 10:34, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, Update, 13.06.2016 16:13, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.12.6, 2016.6.13.2, Update, 13.06.2016 16:13, SYSTEM, DESKTOP-FASB6LE, Scheduler, Malware Database, 2016.6.13.2, 2016.6.13.3, Protection, 13.06.2016 16:13, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting, Protection, 13.06.2016 16:13, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping, Protection, 13.06.2016 16:13, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped, Protection, 13.06.2016 16:13, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success, Protection, 13.06.2016 16:13, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 13.06.2016 16:13, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, Update, 13.06.2016 16:54, SYSTEM, DESKTOP-FASB6LE, Scheduler, IP Database, 2016.6.12.2, 2016.6.13.1, Update, 13.06.2016 16:54, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.13.2, 2016.6.13.3, Protection, 13.06.2016 16:54, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting, Protection, 13.06.2016 16:54, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping, Protection, 13.06.2016 16:54, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped, Protection, 13.06.2016 16:54, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success, Protection, 13.06.2016 16:54, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 13.06.2016 16:54, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, Update, 13.06.2016 20:38, SYSTEM, DESKTOP-FASB6LE, Scheduler, IP Database, 2016.6.13.1, 2016.6.13.3, Update, 13.06.2016 20:38, SYSTEM, DESKTOP-FASB6LE, Scheduler, Malware Database, 2016.6.13.3, 2016.6.13.4, Protection, 13.06.2016 20:38, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting, Protection, 13.06.2016 20:38, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping, Protection, 13.06.2016 20:38, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped, Protection, 13.06.2016 20:38, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success, Protection, 13.06.2016 20:38, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 13.06.2016 20:38, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, Detection, 13.06.2016 21:56, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 52.204.54.103, zl1.november-lax.com, 53560, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 13.06.2016 21:56, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 52.204.54.103, zl1.november-lax.com, 53560, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 13.06.2016 21:56, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 52.204.54.103, zl1.november-lax.com, 53561, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 13.06.2016 22:52, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 23.21.252.84, sportsaddict.thewhizproducts.com, 56355, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 13.06.2016 22:52, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 23.21.252.84, sportsaddict.thewhizproducts.com, 56355, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 13.06.2016 22:52, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 23.21.252.84, sportsaddict.thewhizproducts.com, 56356, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Update, 13.06.2016 23:56, SYSTEM, DESKTOP-FASB6LE, Scheduler, Malware Database, 2016.6.13.4, 2016.6.13.5, Protection, 13.06.2016 23:56, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting, Protection, 13.06.2016 23:56, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping, Protection, 13.06.2016 23:56, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped, Protection, 13.06.2016 23:56, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success, Protection, 13.06.2016 23:56, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 13.06.2016 23:56, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, (end) Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Protection, 12.06.2016 13:07, SYSTEM, DESKTOP-FASB6LE, Protection, Malware Protection, Starting, Protection, 12.06.2016 13:07, SYSTEM, DESKTOP-FASB6LE, Protection, Malware Protection, Started, Protection, 12.06.2016 13:07, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 12.06.2016 13:07, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, Update, 12.06.2016 13:07, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.11.3, 2016.6.12.1, Update, 12.06.2016 13:08, SYSTEM, DESKTOP-FASB6LE, Scheduler, Malware Database, 2016.6.11.4, 2016.6.12.2, Protection, 12.06.2016 13:08, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting, Protection, 12.06.2016 13:08, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping, Protection, 12.06.2016 13:08, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped, Protection, 12.06.2016 13:08, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success, Protection, 12.06.2016 13:08, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 12.06.2016 13:08, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, Scan, 12.06.2016 13:19, SYSTEM, DESKTOP-FASB6LE, Context, Start: 12.06.2016 13:08, Dauer: 10 Min. 55 Sek., Bedrohungssuchlauf, Abgeschlossen, 0 Malware-Erkennung, 0 Nicht-Malware-Erkennungen, Update, 12.06.2016 15:00, SYSTEM, DESKTOP-FASB6LE, Scheduler, IP Database, 2016.6.10.1, 2016.6.12.1, Update, 12.06.2016 15:00, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.12.1, 2016.6.12.2, Protection, 12.06.2016 15:00, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting, Protection, 12.06.2016 15:00, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping, Protection, 12.06.2016 15:00, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped, Protection, 12.06.2016 15:00, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success, Protection, 12.06.2016 15:00, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 12.06.2016 15:00, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, Update, 12.06.2016 15:50, SYSTEM, DESKTOP-FASB6LE, Scheduler, IP Database, 2016.6.12.1, 2016.6.12.2, Update, 12.06.2016 15:50, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.12.2, 2016.6.12.3, Protection, 12.06.2016 15:50, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting, Protection, 12.06.2016 15:50, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping, Protection, 12.06.2016 15:50, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped, Protection, 12.06.2016 15:51, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success, Protection, 12.06.2016 15:51, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 12.06.2016 15:51, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, Update, 12.06.2016 17:37, SYSTEM, DESKTOP-FASB6LE, Scheduler, Malware Database, 2016.6.12.2, 2016.6.12.3, Protection, 12.06.2016 17:37, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting, Protection, 12.06.2016 17:37, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping, Protection, 12.06.2016 17:37, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped, Protection, 12.06.2016 17:37, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success, Protection, 12.06.2016 17:37, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 12.06.2016 17:37, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, Update, 12.06.2016 19:41, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.12.3, 2016.6.12.4, Protection, 12.06.2016 19:41, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting, Protection, 12.06.2016 19:41, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping, Protection, 12.06.2016 19:41, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped, Protection, 12.06.2016 19:41, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success, Protection, 12.06.2016 19:41, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 12.06.2016 19:41, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, Protection, 12.06.2016 19:42, SYSTEM, DESKTOP-FASB6LE, Protection, Malware Protection, Starting, Protection, 12.06.2016 19:42, SYSTEM, DESKTOP-FASB6LE, Protection, Malware Protection, Started, Protection, 12.06.2016 19:42, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 12.06.2016 19:42, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, Update, 12.06.2016 19:56, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.12.4, 2016.6.12.5, Protection, 12.06.2016 19:56, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting, Protection, 12.06.2016 19:56, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping, Protection, 12.06.2016 19:56, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped, Protection, 12.06.2016 19:56, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success, Protection, 12.06.2016 19:56, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 12.06.2016 19:56, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, Update, 12.06.2016 23:27, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.12.5, 2016.6.12.6, Update, 12.06.2016 23:27, SYSTEM, DESKTOP-FASB6LE, Scheduler, Malware Database, 2016.6.12.3, 2016.6.12.4, Protection, 12.06.2016 23:27, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting, Protection, 12.06.2016 23:27, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping, Protection, 12.06.2016 23:27, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped, Protection, 12.06.2016 23:27, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success, Protection, 12.06.2016 23:27, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 12.06.2016 23:28, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, Detection, 12.06.2016 23:31, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 65.52.144.16, feed.helperbar.com, 56626, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 12.06.2016 23:31, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 65.52.144.16, feed.helperbar.com, 56626, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, Detection, 12.06.2016 23:31, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Domain, 65.52.144.16, feed.helperbar.com, 56627, Outbound, C:\Program Files (x86)\Google\Chrome\Application\chrome.exe, (end) Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 12.06.2016 Suchlaufzeit: 13:08 Protokolldatei: Pro5.txt Administrator: Ja Version: 2.2.1.1043 Malware-Datenbank: v2016.06.12.02 Rootkit-Datenbank: v2016.05.27.01 Lizenz: Testversion Malware-Schutz: Aktiviert Schutz vor bösartigen Websites: Aktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 10 CPU: x64 Dateisystem: NTFS Benutzer: DaUra Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 294123 Abgelaufene Zeit: 10 Min., 55 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (keine bösartigen Elemente erkannt) Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 0 (keine bösartigen Elemente erkannt) Registrierungswerte: 0 (keine bösartigen Elemente erkannt) Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Ordner: 0 (keine bösartigen Elemente erkannt) Dateien: 0 (keine bösartigen Elemente erkannt) Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Protection, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Protection, Malware Protection, Starting, Protection, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Protection, Malware Protection, Started, Protection, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, Update, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Manual, Rootkit Database, 2016.2.8.1, 2016.5.27.1, Update, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Manual, IP Database, 2016.2.8.1, 2016.6.10.1, Update, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Manual, Remediation Database, 2016.2.12.1, 2016.5.25.1, Update, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Manual, Domain Database, 2016.2.16.8, 2016.6.10.3, Update, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Manual, Malware Database, 2016.2.16.6, 2016.6.11.1, Protection, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting, Protection, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping, Protection, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped, Protection, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success, Protection, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 11.06.2016 04:23, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, Scan, 11.06.2016 04:31, SYSTEM, DESKTOP-FASB6LE, Manual, Start: 11.06.2016 04:23, Dauer: 8 Min. 7 Sek., Bedrohungssuchlauf, Abgeschlossen, 0 Malware-Erkennung, 2 Nicht-Malware-Erkennungen, Update, 11.06.2016 13:15, SYSTEM, DESKTOP-FASB6LE, Scheduler, Malware Database, 2016.6.11.1, 2016.6.11.2, Protection, 11.06.2016 13:15, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting, Protection, 11.06.2016 13:15, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping, Protection, 11.06.2016 13:15, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped, Protection, 11.06.2016 13:15, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success, Protection, 11.06.2016 13:16, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 11.06.2016 13:16, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, Update, 11.06.2016 14:49, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.10.3, 2016.6.11.1, Update, 11.06.2016 14:49, SYSTEM, DESKTOP-FASB6LE, Scheduler, Malware Database, 2016.6.11.2, 2016.6.11.3, Protection, 11.06.2016 14:49, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting, Protection, 11.06.2016 14:49, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping, Protection, 11.06.2016 14:49, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped, Protection, 11.06.2016 14:49, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success, Protection, 11.06.2016 14:49, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 11.06.2016 14:49, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, Update, 11.06.2016 17:04, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.11.1, 2016.6.11.2, Protection, 11.06.2016 17:04, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting, Protection, 11.06.2016 17:04, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping, Protection, 11.06.2016 17:04, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped, Protection, 11.06.2016 17:04, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success, Protection, 11.06.2016 17:04, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 11.06.2016 17:04, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, Update, 11.06.2016 17:52, SYSTEM, DESKTOP-FASB6LE, Scheduler, Domain Database, 2016.6.11.2, 2016.6.11.3, Protection, 11.06.2016 17:52, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting, Protection, 11.06.2016 17:52, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping, Protection, 11.06.2016 17:52, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped, Protection, 11.06.2016 17:52, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success, Protection, 11.06.2016 17:52, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 11.06.2016 17:53, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, Update, 11.06.2016 19:55, SYSTEM, DESKTOP-FASB6LE, Scheduler, Malware Database, 2016.6.11.3, 2016.6.11.4, Protection, 11.06.2016 19:55, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Starting, Protection, 11.06.2016 19:55, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping, Protection, 11.06.2016 19:55, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped, Protection, 11.06.2016 19:55, SYSTEM, DESKTOP-FASB6LE, Protection, Refresh, Success, Protection, 11.06.2016 19:55, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Starting, Protection, 11.06.2016 19:55, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Started, Protection, 11.06.2016 21:13, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopping, Protection, 11.06.2016 21:13, SYSTEM, DESKTOP-FASB6LE, Protection, Malicious Website Protection, Stopped, Protection, 11.06.2016 21:13, SYSTEM, DESKTOP-FASB6LE, Protection, Malware Protection, Stopping, Protection, 11.06.2016 21:13, SYSTEM, DESKTOP-FASB6LE, Protection, Malware Protection, Stopped, (end) Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 11.06.2016 Suchlaufzeit: 04:23 Protokolldatei: Pro7.txt Administrator: Ja Version: 2.2.1.1043 Malware-Datenbank: v2016.06.11.01 Rootkit-Datenbank: v2016.05.27.01 Lizenz: Testversion Malware-Schutz: Aktiviert Schutz vor bösartigen Websites: Aktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 10 CPU: x64 Dateisystem: NTFS Benutzer: DaUra Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 293949 Abgelaufene Zeit: 8 Min., 7 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (keine bösartigen Elemente erkannt) Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 0 (keine bösartigen Elemente erkannt) Registrierungswerte: 0 (keine bösartigen Elemente erkannt) Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Ordner: 1 PUP.Optional.SpringFiles, C:\Users\DaUra\AppData\Roaming\SpringFiles, In Quarantäne, [97163bc0cecbe4521eeb4e67c14135cb], Dateien: 1 PUP.Optional.ExpressFiles, C:\Users\DaUra\AppData\Local\Temp\BOpZGtX7FY.tmp, In Quarantäne, [14997f7c1386e650264863765aa731cf], Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) |
| Themen zu Malware + Startseitenänderung + Werbetab-Popups |
| appdata, code, datei, erwischt, falsche, gelöscht, google, installation, internet, malware, microsoft, problem, quarantäne, roaming, scan, seite, services, software, startseite, startseitenänderung, temp, tipps, websites, windows, änderung, öffnen |