Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Windows 8: anscheinendes Virenproblem durch hohe Fundanzahl

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

 
Alt 01.05.2018, 18:38   #2
Sterni92
 
Windows 8: anscheinendes Virenproblem durch hohe Fundanzahl - Standard

Windows 8: anscheinendes Virenproblem durch hohe Fundanzahl



Code:
ATTFilter
Malwarebytes
www.malwarebytes.com

-Protokolldetails-
Scan-Datum: 01.05.18
Scan-Zeit: 16:14
Protokolldatei: fff3f784-4d49-11e8-baa4-3065ec69a063.json
Administrator: Ja

-Softwaredaten-
Version: 3.4.5.2467
Komponentenversion: 1.0.342
Version des Aktualisierungspakets: 1.0.4938
Lizenz: Testversion

-Systemdaten-
Betriebssystem: Windows 8.1
CPU: x64
Dateisystem: NTFS
Benutzer: Broilers1994\Oliver

-Scan-Übersicht-
Scan-Typ: Bedrohungs-Scan
Scan gestartet von: Manuell
Ergebnis: Abgeschlossen
Gescannte Objekte: 301389
Erkannte Bedrohungen: 149
In die Quarantäne verschobene Bedrohungen: 147
Abgelaufene Zeit: 19 Min., 1 Sek.

-Scan-Optionen-
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Erkennung
PUM: Erkennung

-Scan-Details-
Prozess: 0
(keine bösartigen Elemente erkannt)

Modul: 0
(keine bösartigen Elemente erkannt)

Registrierungsschlüssel: 35
PUP.Optional.DriverTurbo, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\DRIVERTURBO, In Quarantäne, [3985], [335955],1.0.4938
PUP.Optional.DriverTurbo, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{7DB2C33F-FD3C-4225-BECC-2CDC37588349}, In Quarantäne, [3985], [335955],1.0.4938
PUP.Optional.DriverTurbo, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\LOGON\{7DB2C33F-FD3C-4225-BECC-2CDC37588349}, In Quarantäne, [3985], [335955],1.0.4938
PUP.Optional.DownloadProtect.ChrPRST, HKLM\SOFTWARE\POLICIES\GOOGLE\CHROME, In Quarantäne, [6544], [-1],0.0.0
PUP.Optional.DownloadProtect.ChrPRST, HKLM\SOFTWARE\WOW6432NODE\POLICIES\GOOGLE\CHROME, In Quarantäne, [6544], [-1],0.0.0
PUP.Optional.DriverTurbo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\DriverTurbo, In Quarantäne, [3985], [335951],1.0.4938
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\Yahoo! Powered doner, In Quarantäne, [246], [308969],1.0.4938
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{C70D90C2-29A8-4617-9586-AAF13459BB86}, In Quarantäne, [246], [308969],1.0.4938
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\PLAIN\{C70D90C2-29A8-4617-9586-AAF13459BB86}, In Quarantäne, [246], [308969],1.0.4938
PUP.Optional.InstallCore, HKU\S-1-5-21-3616038703-2385561440-3781406248-1001\SOFTWARE\csastats, In Quarantäne, [388], [260986],1.0.4938
PUP.Optional.DnsBlock, HKU\S-1-5-21-3616038703-2385561440-3781406248-1001\SOFTWARE\DnsBlock, In Quarantäne, [2071], [334828],1.0.4938
PUP.Optional.DriverTurbo, HKU\S-1-5-21-3616038703-2385561440-3781406248-1001\SOFTWARE\DriverTurbo, In Quarantäne, [3985], [335959],1.0.4938
PUP.Optional.PCSpeedUp, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\PCSUUCDRV, In Quarantäne, [2568], [241622],1.0.4938
PUP.Optional.Goobzo, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\wbsvc, In Quarantäne, [1677], [258444],1.0.4938
PUP.Optional.MyStartSearch.ShrtCln, HKU\S-1-5-21-3616038703-2385561440-3781406248-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}, In Quarantäne, [1185], [186809],1.0.4938
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2F23AB71-4AC6-41F2-A955-EA576E553146}, In Quarantäne, [246], [340604],1.0.4938
PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2F23AB71-4AC6-41F2-A955-EA576E553146}, In Quarantäne, [246], [340604],1.0.4938
PUP.Optional.WinYahoo, HKU\S-1-5-21-3616038703-2385561440-3781406248-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2f23ab71-4ac6-41f2-a955-ea576e553146}, In Quarantäne, [246], [340604],1.0.4938
PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{AA9A4890-4262-4441-8977-E2FFCBFB706C}, In Quarantäne, [1185], [186809],1.0.4938
PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{AA9A4890-4262-4441-8977-E2FFCBFB706C}, In Quarantäne, [1185], [186809],1.0.4938
PUP.Optional.MyStartSearch.ShrtCln, HKU\S-1-5-21-3616038703-2385561440-3781406248-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{AA9A4890-4262-4441-8977-E2FFCBFB706C}, In Quarantäne, [1185], [186809],1.0.4938
PUP.Optional.MyStartSearch.ShrtCln, HKU\S-1-5-21-3616038703-2385561440-3781406248-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{E733165D-CBCF-4FDA-883E-ADEF965B476C}, In Quarantäne, [1185], [186809],1.0.4938
PUP.Optional.DriverTurbo, HKLM\SOFTWARE\WOW6432NODE\DriverTurbo, In Quarantäne, [3985], [335957],1.0.4938
PUP.Optional.BrowserSecurity, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Browser-Security, In Quarantäne, [756], [467575],1.0.4938
PUP.Optional.Somoto, HKLM\SOFTWARE\WOW6432NODE\SEARCHULT, In Quarantäne, [437], [243334],1.0.4938
PUP.Optional.WinYahoo, HKU\S-1-5-21-3616038703-2385561440-3781406248-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{A62ABDEE-78A2-4DDB-9355-1C334ABD6E43}, In Quarantäne, [246], [340594],1.0.4938
PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{A62ABDEE-78A2-4DDB-9355-1C334ABD6E43}, In Quarantäne, [246], [340594],1.0.4938
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{a62abdee-78a2-4ddb-9355-1c334abd6e43}, In Quarantäne, [246], [340594],1.0.4938
PUP.Optional.WinYahoo, HKU\S-1-5-21-3616038703-2385561440-3781406248-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{F79E5D1C-5148-469E-9F98-A11D8D7863F4}, In Quarantäne, [246], [340594],1.0.4938
PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{F79E5D1C-5148-469E-9F98-A11D8D7863F4}, In Quarantäne, [246], [340594],1.0.4938
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{f79e5d1c-5148-469e-9f98-a11d8d7863f4}, In Quarantäne, [246], [340594],1.0.4938
PUP.Optional.MultiIE, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{E6D66045-F951-4DBF-962E-993B4FB6A9E0}, In Quarantäne, [2511], [169196],1.0.4938
PUP.Optional.MultiIE, HKU\S-1-5-21-3616038703-2385561440-3781406248-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{E6D66045-F951-4DBF-962E-993B4FB6A9E0}, In Quarantäne, [2511], [169196],1.0.4938
PUP.Optional.MultiIE, HKU\S-1-5-21-3616038703-2385561440-3781406248-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{E6D66045-F951-4DBF-962E-993B4FB6A9E0}, In Quarantäne, [2511], [169196],1.0.4938
PUP.Optional.MultiIE, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{E6D66045-F951-4DBF-962E-993B4FB6A9E0}, In Quarantäne, [2511], [169196],1.0.4938

Registrierungswert: 18
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{C70D90C2-29A8-4617-9586-AAF13459BB86}|PATH, In Quarantäne, [246], [308967],1.0.4938
PUP.Optional.MyStartSearch.ShrtCln, HKU\S-1-5-21-3616038703-2385561440-3781406248-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}|URL, In Quarantäne, [1185], [186809],1.0.4938
PUP.Optional.MyStartSearch.ShrtCln, HKU\S-1-5-21-3616038703-2385561440-3781406248-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}|FAVICONURL, In Quarantäne, [1185], [186809],1.0.4938
PUP.Optional.WinYahoo, HKU\S-1-5-21-3616038703-2385561440-3781406248-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2f23ab71-4ac6-41f2-a955-ea576e553146}|URL, In Quarantäne, [246], [340604],1.0.4938
PUP.Optional.MyStartSearch.ShrtCln, HKU\S-1-5-21-3616038703-2385561440-3781406248-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{AA9A4890-4262-4441-8977-E2FFCBFB706C}|URL, In Quarantäne, [1185], [186809],1.0.4938
PUP.Optional.MyStartSearch.ShrtCln, HKU\S-1-5-21-3616038703-2385561440-3781406248-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{E733165D-CBCF-4FDA-883E-ADEF965B476C}|URL, In Quarantäne, [1185], [186809],1.0.4938
PUP.Optional.DownloadProtectExtension, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|{F8A89CF0-7CAB-4AB7-B61C-EB1A1B87845E}, In Quarantäne, [7578], [237883],1.0.4938
PUP.Optional.DownloadProtectExtension, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|{059CAEFE-9011-4ADD-90D5-E57F89085C62}, In Quarantäne, [7578], [237883],1.0.4938
PUP.Optional.Somoto, HKLM\SOFTWARE\WOW6432NODE\SEARCHULT|SOMO, In Quarantäne, [437], [243334],1.0.4938
PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2f23ab71-4ac6-41f2-a955-ea576e553146}|DISPLAYNAME, In Quarantäne, [1185], [233534],1.0.4938
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{a62abdee-78a2-4ddb-9355-1c334abd6e43}|URL, In Quarantäne, [246], [340594],1.0.4938
PUP.Optional.SearchYa, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{a62abdee-78a2-4ddb-9355-1c334abd6e43}|FAVICONPATH, In Quarantäne, [334], [242799],1.0.4938
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{f79e5d1c-5148-469e-9f98-a11d8d7863f4}|URL, In Quarantäne, [246], [340594],1.0.4938
PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2f23ab71-4ac6-41f2-a955-ea576e553146}|DISPLAYNAME, In Quarantäne, [1185], [233534],1.0.4938
PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2f23ab71-4ac6-41f2-a955-ea576e553146}|URL, In Quarantäne, [1185], [186810],1.0.4938
PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{a62abdee-78a2-4ddb-9355-1c334abd6e43}|URL, In Quarantäne, [246], [340594],1.0.4938
PUP.Optional.SearchYa, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{a62abdee-78a2-4ddb-9355-1c334abd6e43}|FAVICONPATH, In Quarantäne, [334], [242799],1.0.4938
PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{f79e5d1c-5148-469e-9f98-a11d8d7863f4}|URL, In Quarantäne, [246], [340594],1.0.4938

Registrierungsdaten: 12
PUP.Optional.WinYahoo, HKU\S-1-5-21-3616038703-2385561440-3781406248-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|START PAGE, Ersetzt, [246], [340595],1.0.4938
PUP.Optional.MyStartSearch.ShrtCln, HKU\S-1-5-21-3616038703-2385561440-3781406248-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|DEFAULT_PAGE_URL, Ersetzt, [1185], [291143],1.0.4938
PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|DEFAULT_SEARCH_URL, Ersetzt, [1185], [291142],1.0.4938
PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|DEFAULT_PAGE_URL, Ersetzt, [1185], [291142],1.0.4938
PUP.Optional.WinYahoo, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|START PAGE, Ersetzt, [246], [340605],1.0.4938
PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|SEARCH PAGE, Ersetzt, [1185], [291142],1.0.4938
PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|DEFAULT_SEARCH_URL, Ersetzt, [1185], [291142],1.0.4938
PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|DEFAULT_PAGE_URL, Ersetzt, [1185], [291142],1.0.4938
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DEFAULTSCOPE, Ersetzt, [5506], [292819],1.0.4938
PUP.Optional.WinYahoo, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|START PAGE, Ersetzt, [246], [340605],1.0.4938
PUP.Optional.MyStartSearch.ShrtCln, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|SEARCH PAGE, Ersetzt, [1185], [291142],1.0.4938
PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DEFAULTSCOPE, Ersetzt, [5506], [292819],1.0.4938

Daten-Stream: 0
(keine bösartigen Elemente erkannt)

Ordner: 13
PUP.Optional.DownloadProtect, C:\WINDOWS\INSTALLER\{43D38AAF-A385-48D8-ABCC-3D28DBE1BC92}, In Quarantäne, [72], [237879],1.0.4938
PUP.Optional.DownloadProtect.ChrPRST, C:\WINDOWS\INSTALLER\{051B0A7C-FC44-40A3-91BB-3BC6411B824D}, In Quarantäne, [6544], [255640],1.0.4938
PUP.Optional.DownloadProtect.ChrPRST, C:\WINDOWS\INSTALLER\{B8D62EBB-F3FB-4942-9504-04368E678AA3}, In Quarantäne, [6544], [255640],1.0.4938
PUP.Optional.SupTab, C:\USERS\OLIVER\SUPTAB, In Quarantäne, [1483], [179904],1.0.4938
PUP.Optional.DriverTurbo, C:\PROGRAM FILES (X86)\DRIVERTURBO, In Quarantäne, [3985], [335951],1.0.4938
PUP.Optional.DriverTurbo, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\DRIVERTURBO, In Quarantäne, [3985], [335952],1.0.4938
PUP.Optional.Yontoo, C:\USERS\OLIVER\APPDATA\LOCAL\TEMP\SEARCHMOREKNOW, In Quarantäne, [36], [181258],1.0.4938
PUP.Optional.DriverTurbo, C:\Users\Oliver\AppData\Roaming\DriverTurbo\Download, In Quarantäne, [3985], [335954],1.0.4938
PUP.Optional.DriverTurbo, C:\Users\Oliver\AppData\Roaming\DriverTurbo\Backup, In Quarantäne, [3985], [335954],1.0.4938
PUP.Optional.DriverTurbo, C:\USERS\OLIVER\APPDATA\ROAMING\DRIVERTURBO, In Quarantäne, [3985], [335954],1.0.4938
PUP.Optional.Booking, C:\PROGRAM FILES\BOOKING.COM, In Quarantäne, [746], [310593],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\HowToRemove, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\USERS\OLIVER\APPDATA\LOCAL\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}, In Quarantäne, [3807], [484244],1.0.4938

Datei: 71
PUP.Optional.DownloadProtect, C:\WINDOWS\INSTALLER\{43D38AAF-A385-48D8-ABCC-3D28DBE1BC92}\xehadhbkmcjebakbloipbmidgdcbddakjml, In Quarantäne, [72], [237879],1.0.4938
PUP.Optional.DownloadProtect, C:\Windows\Installer\{43D38AAF-A385-48D8-ABCC-3D28DBE1BC92}\cehadhbkmcjebakbloipbmidgdcbddakjrx, In Quarantäne, [72], [237879],1.0.4938
PUP.Optional.WinYahoo, C:\WINDOWS\TASKS\Yahoo! Powered doner.job, In Quarantäne, [246], [308966],1.0.4938
PUP.Optional.DriverTurbo, C:\WINDOWS\SYSTEM32\TASKS\DRIVERTURBO, In Quarantäne, [3985], [335955],1.0.4938
PUP.Optional.WinYahoo, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\HOWTOREMOVE.HTML.LNK, In Quarantäne, [246], [254335],1.0.4938
PUP.Optional.DownloadProtect.ChrPRST, C:\WINDOWS\INSTALLER\{051B0A7C-FC44-40A3-91BB-3BC6411B824D}\{F8A89CF0-7CAB-4AB7-B61C-EB1A1B87845E}.xpi, In Quarantäne, [6544], [255640],1.0.4938
PUP.Optional.DownloadProtect.ChrPRST, C:\DOCUMENTS AND SETTINGS\ALL USERS\NTUSER.POL, Entfernung fehlgeschlagen, [6544], [-1],0.0.0
PUP.Optional.DownloadProtect.ChrPRST, C:\PROGRAMDATA\NTUSER.POL, Entfernung fehlgeschlagen, [6544], [-1],0.0.0
PUP.Optional.DownloadProtect.ChrPRST, C:\WINDOWS\SYSTEM32\GROUPPOLICY\MACHINE\REGISTRY.POL, In Quarantäne, [6544], [-1],0.0.0
PUP.Optional.DownloadProtect.ChrPRST, C:\WINDOWS\INSTALLER\{B8D62EBB-F3FB-4942-9504-04368E678AA3}\{059CAEFE-9011-4ADD-90D5-E57F89085C62}.xpi, In Quarantäne, [6544], [255640],1.0.4938
PUP.Optional.SupTab, C:\Users\Oliver\SupTab\domain, In Quarantäne, [1483], [179904],1.0.4938
PUP.Optional.SupTab, C:\Users\Oliver\SupTab\expirationDate, In Quarantäne, [1483], [179904],1.0.4938
PUP.Optional.SupTab, C:\Users\Oliver\SupTab\hotsearch, In Quarantäne, [1483], [179904],1.0.4938
PUP.Optional.SupTab, C:\Users\Oliver\SupTab\hotsearch_uptime, In Quarantäne, [1483], [179904],1.0.4938
PUP.Optional.SupTab, C:\Users\Oliver\SupTab\name, In Quarantäne, [1483], [179904],1.0.4938
PUP.Optional.SupTab, C:\Users\Oliver\SupTab\path, In Quarantäne, [1483], [179904],1.0.4938
PUP.Optional.SupTab, C:\Users\Oliver\SupTab\set_country, In Quarantäne, [1483], [179904],1.0.4938
PUP.Optional.SupTab, C:\Users\Oliver\SupTab\set_z, In Quarantäne, [1483], [179904],1.0.4938
PUP.Optional.SupTab, C:\Users\Oliver\SupTab\TABts, In Quarantäne, [1483], [179904],1.0.4938
PUP.Optional.SupTab, C:\Users\Oliver\SupTab\uid, In Quarantäne, [1483], [179904],1.0.4938
PUP.Optional.SupTab, C:\Users\Oliver\SupTab\url, In Quarantäne, [1483], [179904],1.0.4938
PUP.Optional.SupTab, C:\Users\Oliver\SupTab\_ver, In Quarantäne, [1483], [179904],1.0.4938
PUP.Optional.DriverTurbo, C:\PROGRAM FILES (X86)\DRIVERTURBO\RESOURCE.DLL, In Quarantäne, [3985], [335951],1.0.4938
PUP.Optional.DriverTurbo, C:\Program Files (x86)\DriverTurbo\DriverTurbo.chm, In Quarantäne, [3985], [335951],1.0.4938
PUP.Optional.DriverTurbo, C:\Program Files (x86)\DriverTurbo\DriverTurbo.exe, In Quarantäne, [3985], [335951],1.0.4938
PUP.Optional.DriverTurbo, C:\Program Files (x86)\DriverTurbo\uninstall.exe, In Quarantäne, [3985], [335951],1.0.4938
PUP.Optional.DriverTurbo, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\DRIVERTURBO\DRIVERTURBO.LNK, In Quarantäne, [3985], [335952],1.0.4938
PUP.Optional.DriverTurbo, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriverTurbo\Uninstall.lnk, In Quarantäne, [3985], [335952],1.0.4938
PUP.Optional.Yontoo, C:\Users\Oliver\AppData\Local\Temp\SearchMoreKnow\7za.exe, In Quarantäne, [36], [181258],1.0.4938
PUP.Optional.Yontoo, C:\Users\Oliver\AppData\Local\Temp\SearchMoreKnow\Setup.exe, In Quarantäne, [36], [181258],1.0.4938
PUP.Optional.Yontoo, C:\Users\Oliver\AppData\Local\Temp\SearchMoreKnow\temp.zip, In Quarantäne, [36], [181258],1.0.4938
PUP.Optional.WinYahoo, C:\WINDOWS\SYSTEM32\TASKS\Yahoo! Powered doner, In Quarantäne, [246], [308969],1.0.4938
PUP.Optional.DriverTurbo, C:\USERS\OLIVER\APPDATA\ROAMING\DRIVERTURBO\LICENSE.INI, In Quarantäne, [3985], [335954],1.0.4938
PUP.Optional.DriverTurbo, C:\Users\Oliver\AppData\Roaming\DriverTurbo\config.bin, In Quarantäne, [3985], [335954],1.0.4938
PUP.Optional.DriverTurbo, C:\Users\Oliver\AppData\Roaming\DriverTurbo\config.ini, In Quarantäne, [3985], [335954],1.0.4938
PUP.Optional.Booking, C:\Program Files\Booking.COM\Booking.com.lnk, In Quarantäne, [746], [310593],1.0.4938
PUP.Optional.Booking, C:\Program Files\Booking.COM\Booking.ico, In Quarantäne, [746], [310593],1.0.4938
PUP.Optional.Booking, C:\Program Files\Booking.COM\StartURL.exe, In Quarantäne, [746], [310593],1.0.4938
PUP.Optional.Booking, C:\Program Files\Booking.COM\Version.txt, In Quarantäne, [746], [310593],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\USERS\OLIVER\APPDATA\LOCAL\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\dede, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\HowToRemove\chromium-min.jpg, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\HowToRemove\control panel-min-min.JPG, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\HowToRemove\down.png, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\HowToRemove\ff menu.JPG, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\HowToRemove\ff search engine-min.png, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\HowToRemove\HowToRemove.html, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\HowToRemove\hp-min ff.png, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\HowToRemove\hp-min ie.png, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\HowToRemove\search engine.gif, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\HowToRemove\setup pages.gif, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\HowToRemove\sp-min.png, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\HowToRemove\start-min.jpg, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\HowToRemove\up.png, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\bapi.dat, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\install.log, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\rila, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\same.cfg, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\Sqlite3.dll, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\tala.dat, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\tase, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\uninst.dat, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.WinYahoo.TskLnk, C:\Users\Oliver\AppData\Local\{66BC50E0-4214-3C58-2F8C-19B00BE4E528}\uninst.exe, In Quarantäne, [3807], [484244],1.0.4938
PUP.Optional.Conduit, C:\PREFS.JS, In Quarantäne, [222], [302274],1.0.4938
PUP.Optional.FusionCore, C:\USERS\OLIVER\APPDATA\LOCAL\TEMP\IS-D6M5B.TMP\FUSION.DLL, In Quarantäne, [8350], [355925],1.0.4938
PUP.Optional.FusionCore, C:\USERS\OLIVER\APPDATA\LOCAL\TEMP\IS-H9F0H.TMP\FUSION.DLL, In Quarantäne, [8350], [344794],1.0.4938
PUP.Optional.FusionCore, C:\USERS\OLIVER\APPDATA\LOCAL\TEMP\IS-VRAE3.TMP\FUSION.DLL, In Quarantäne, [8350], [344794],1.0.4938
PUP.Optional.ByteFence, C:\USERS\OLIVER\APPDATA\LOCAL\TEMP\TMPSEC2225878\BYTEFENCE-INSTALLER-2.5.0.0-RC1.EXE, In Quarantäne, [6219], [389016],1.0.4938
PUP.Optional.ByteFence, C:\WINDOWS\TEMP\BF_UPDATER_INSTALLER.EXE, In Quarantäne, [6219], [389016],1.0.4938
PUP.Optional.ASK, C:\USERS\OLIVER\DOWNLOADS\FOTO_DESIGNER_7011_23MB_D.EXE, In Quarantäne, [2], [383618],1.0.4938
PUP.Optional.FusionCore, C:\USERS\OLIVER\DOWNLOADS\FREEYOUTUBEDOWNLOAD_4.1.32.1215_D.EXE, In Quarantäne, [8350], [334230],1.0.4938
PUP.Optional.DownloadSponsor, C:\USERS\OLIVER\DOWNLOADS\MP3 SCHNEIDEN 2016 - CHIP-INSTALLER.EXE, In Quarantäne, [8307], [413936],1.0.4938

Physischer Sektor: 0
(keine bösartigen Elemente erkannt)


(end)
         
Soll ich die Funde in der Quarantäne lassen oder gleich löschen?
__________________


 

Themen zu Windows 8: anscheinendes Virenproblem durch hohe Fundanzahl
.com, antivirus, autorun, avdevprot, avira, chromium, computer, firefox, flash player, helper, helper.exe, hängen, iexplore.exe, installation, internet, internet explorer, langsam, lavasofttcpservice64.dll, mp3, netstat, office 365, problem, registry, scan, security, siteadvisor, software, svchost.exe, updates, windows




Ähnliche Themen: Windows 8: anscheinendes Virenproblem durch hohe Fundanzahl


  1. Hohe CPU-Auslastung durch svchost.exe
    Plagegeister aller Art und deren Bekämpfung - 20.12.2016 (5)
  2. Hohe CPU-Auslastung durch svhost.exe
    Alles rund um Windows - 30.11.2016 (6)
  3. Hohe CPU bei Windows 10 durch 3 Prozesse
    Alles rund um Windows - 02.06.2016 (1)
  4. Hohe CPU und RAM Auslastung durch svchost.exe
    Log-Analyse und Auswertung - 08.03.2016 (1)
  5. hohe CPU-Auslastung durch svhost.exe(netsvcs)
    Plagegeister aller Art und deren Bekämpfung - 30.09.2015 (17)
  6. hohe CPU-Auslastung durch svchost.exe
    Log-Analyse und Auswertung - 30.08.2015 (1)
  7. Hohe CPU Auslastung durch svchost.exe
    Plagegeister aller Art und deren Bekämpfung - 12.11.2014 (1)
  8. Hohe CPU-Auslastung durch svchost.exe und weitere Plagegeister
    Plagegeister aller Art und deren Bekämpfung - 16.10.2014 (9)
  9. Hohe Arbeitsspeicherbelastung durch svchost.exe;Gleichzeitig schlechtes Internet
    Plagegeister aller Art und deren Bekämpfung - 27.07.2014 (28)
  10. Hohe CPU-Auslastung durch Systemunterbrechungen
    Netzwerk und Hardware - 14.03.2014 (1)
  11. Hohe Auslastung durch svchost.exe
    Log-Analyse und Auswertung - 08.12.2013 (25)
  12. hohe cpu-auslastung durch systemunterbrechungen sowie virenbefall
    Plagegeister aller Art und deren Bekämpfung - 22.10.2013 (9)
  13. Hohe CPU Auslastung durch cmd.exe
    Plagegeister aller Art und deren Bekämpfung - 25.08.2012 (3)
  14. Hohe CPU Auslastung durch svchost.exe
    Log-Analyse und Auswertung - 17.02.2012 (24)
  15. Permanent hohe CPU auslastung möglicherweise durch Virus/Trojaner
    Plagegeister aller Art und deren Bekämpfung - 19.08.2009 (10)
  16. Extrem hohe CPU Auslastung durch Warcraft 3!
    Alles rund um Windows - 26.11.2008 (5)
  17. Hohe CPU Auslastung durch GDFwSvc.exe
    Antiviren-, Firewall- und andere Schutzprogramme - 07.11.2007 (0)

Zum Thema Windows 8: anscheinendes Virenproblem durch hohe Fundanzahl - Code: Alles auswählen Aufklappen ATTFilter Malwarebytes www.malwarebytes.com -Protokolldetails- Scan-Datum: 01.05.18 Scan-Zeit: 16:14 Protokolldatei: fff3f784-4d49-11e8-baa4-3065ec69a063.json Administrator: Ja -Softwaredaten- Version: 3.4.5.2467 Komponentenversion: 1.0.342 Version des Aktualisierungspakets: 1.0.4938 Lizenz: Testversion -Systemdaten- Betriebssystem: Windows - Windows 8: anscheinendes Virenproblem durch hohe Fundanzahl...
Archiv
Du betrachtest: Windows 8: anscheinendes Virenproblem durch hohe Fundanzahl auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.