Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Antiviren-, Firewall- und andere Schutzprogramme (https://www.trojaner-board.de/antiviren-firewall-andere-schutzprogramme/)
-   -   Verschlüsselte Dateien überprüfen (Bitdefender) (https://www.trojaner-board.de/194853-verschluesselte-dateien-ueberpruefen-bitdefender.html)

Captain Ahab 01.02.2019 09:03

Verschlüsselte Dateien überprüfen (Bitdefender)
 
Hallo,

mir ist klar das dieses Thema hier schon des öfteren angesprochen wurde, nur konnte ich bisher in keinem Thread eine Universelle Lösung finden. Bitdefender 2019 hat beim letzten Voll Scan 86 verschlüsselte Dateien gefunden. Gibt es eine Möglichkeit oder eine Software, womit man ebenfalls diese Dateien überprüft?

Ich bin grade nicht am Home Rechner, sende aber die log files sobald ich kann. Ist bei einer solch großen Menge von verschlüsselten Dateien schon von Ransomware auszugehen?

M-K-D-B 01.02.2019 09:19

:hallo:




Zitat:

Zitat von Captain Ahab (Beitrag 1711804)
Bitdefender 2019 hat beim letzten Voll Scan 86 verschlüsselte Dateien gefunden. Gibt es eine Möglichkeit oder eine Software, womit man ebenfalls diese Dateien überprüft?

Poste bitte die Logdatei von Bitdefender, dann sehen wir weiter. :)

Alles andere wäre reine Spekulation.

cosinus 01.02.2019 10:29

Nur weil Dateien verschlüsselt sind, heißt das nicht, dass man ransomware Befall hat. Unter verschlüsselte Dateien fallen auch passgeschützte Archive (ZIP, RAR, ARJ, ...)

M-K-D-B 01.02.2019 10:47

Zitat:

Zitat von cosinus (Beitrag 1711808)
Nur weil Dateien verschlüsselt sind, heißt das nicht, dass man ransomware Befall hat. Unter verschlüsselte Dateien fallen auch passgeschützte Archive (ZIP, RAR, ARJ, ...)

Und eben genau so etwas vermute ich... oder geschützte Systemdateien... :D

Daher warten wir gespannt auf die Logdatei.

cosinus 01.02.2019 11:26

Systemdateien sind doch nicht verschlüsselt :wtf:

M-K-D-B 01.02.2019 11:59

Zitat:

Zitat von cosinus (Beitrag 1711813)
Systemdateien sind doch nicht verschlüsselt :wtf:

Das ist mir auch klar... es gibt aber genug User, die von "verschlüsselt" sprechen, obwohl einfach das AV-Programm aufgrund mangelnder Rechte keinen Zugriff darauf hat.

Captain Ahab 01.02.2019 16:25

Hier die Log:

Code:

<?xml version="1.0" encoding="utf-8"?>
<?xml-stylesheet type="text/xsl" href="C:\Program Files\Bitdefender\Bitdefender Security\ondemand.xsl"?>
<ScanSession creator="Bitdefender Total Security" name="Vollständiger System-Scan" installPath="C:\Program Files\Bitdefender\Bitdefender Security\" creationDate="Freitag, 1. Februar 2019 07:40:59" originalPath="C:\ProgramData\Bitdefender\Desktop\Profiles\Logs\system\dcf483c4-26d0-4e6f-ba28-6a53a00adae1\1548949554_1_02.xml" >
        <ScanSettings
                statisticsRefreshInterval="1000"
                scanSpeed="1.000000"
                lowPriority="0"
                enableExclusions="1"
                enableTaskExclusions="0"
                scanAdware="1"
                scanSpyware="1"
                scanApplications="1"
                scanDialers="1"
                scanKeyloggers="1"
                scanFiles="1"
                scanAllFiles="1"
                scanProgramsOnly="0"
                useCustomPrograms="0"
                customPrograms=""
                scanUserDefined="0"
                scanPacked="1"
                scanArchives="1"
                useSmartScan="1"
                scanEmails="1"
                scanRootkits="0"
                scanAllRootkits="1"
                scanBoot="1"
                scanMemory="1"
                scanRegistry="1"
                quickScan="1"
                quickScanMemory="0"
                quickScanAutoruns="0"
                quickScanPlugins="1"
                scanCookies="1"
                shutdownAfter="0"
                passwordPrompt="0"
                onlyAllowedActions="1"
                deepArchiveScan="1"
                maxArchiveLevel="15"
                maxArchiveSize="0"
                infectedAction1="3"
                infectedAction2="7"
                suspectAction1="7"
                suspectAction2="1"
                rootkitAction="3"
                userDefinedExtensions=""
                scanPua="1"
                computeSha256Hash="0"
                computeMd5Hash="0"
                disableIndexer="0"
                enableCertReport="0"
                paranoidAction="1"
        >

                <Paranoid>
                </Paranoid>

                <ScanPaths>
                        <path>C:\</path>
                </ScanPaths>

                <ExcludedPaths>
                </ExcludedPaths>

                <ExcludedExtensions>
                </ExcludedExtensions>

        </ScanSettings>

        <EngineSummary
                totalSignatures="12473802"
                />

        <ScanSummary
                scannedArchives="248"
                scannedPacked="216"
                startTime="1548949554"
                duration="19129624"
                userDefinedExtensions="">

                <TypeSummary type="1"
                        scanned="30"
                        infected="0"
                        suspicious="0"
                        disinfected="0"
                        deleted="0"
                        moved="0"
                        moved_reboot="0"
                        delete_reboot="0"
                        renamed="0"
                        hidden="0"
                />

                <TypeSummary type="4"
                        scanned="126"
                        infected="0"
                        suspicious="0"
                        disinfected="0"
                        deleted="0"
                        moved="0"
                        moved_reboot="0"
                        delete_reboot="0"
                        renamed="0"
                        hidden="0"
                />

                <TypeSummary type="0"
                        scanned="1657898"
                        infected="53"
                        suspicious="0"
                        disinfected="0"
                        deleted="2"
                        moved="51"
                        moved_reboot="0"
                        delete_reboot="0"
                        renamed="0"
                        hidden="0"
                />

                <TypeSummary type="5"
                        scanned="0"
                        infected="0"
                        suspicious="0"
                        disinfected="0"
                        deleted="0"
                        moved="0"
                        moved_reboot="0"
                        delete_reboot="0"
                        renamed="0"
                        hidden="0"
                />

                <TypeSummary type="2"
                        scanned="2753"
                        infected="0"
                        suspicious="0"
                        disinfected="0"
                        deleted="0"
                        moved="0"
                        moved_reboot="0"
                        delete_reboot="0"
                        renamed="0"
                        hidden="0"
                />

                <TypeSummary type="3"
                        scanned="3137"
                        infected="0"
                        suspicious="0"
                        disinfected="0"
                        deleted="0"
                        moved="0"
                        moved_reboot="0"
                        delete_reboot="0"
                        renamed="0"
                        hidden="0"
                />

                <TypeSummary type="6"
                        scanned="553"
                        infected="0"
                        suspicious="0"
                        disinfected="0"
                        deleted="0"
                        moved="0"
                        moved_reboot="0"
                        delete_reboot="0"
                        renamed="0"
                        hidden="0"
                />

                <TypeSummary type="7"
                        scanned="30"
                        infected="0"
                        suspicious="0"
                        disinfected="0"
                        deleted="0"
                        moved="0"
                        moved_reboot="0"
                        delete_reboot="0"
                        renamed="0"
                        hidden="0"
                />

        </ScanSummary>

        <ScanDetails>
                <UnresolvedDetails>
                </UnresolvedDetails>

                <ResolvedDetails>
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Documents\Verwaltung backup 181102\Handel\Setup.zip=&gt;Player Setup.exe" threatType="6" threatName="Gen:Variant.Application.Bundler.SoftPulse.19" action="5" allActions="3 5" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="689744" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Infrastructure.Plugins.ChromeLocalPlugin.dll" threatType="2" threatName="Gen:Adware.Heur.dm9@gnT6Ohg" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="51000" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Resources.FilesManager.dll" threatType="2" threatName="Gen:Adware.Heur.um9@g5@Oozg" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="331576" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Personalization.ServicesPlugins.NotepadPlugin.dll" threatType="2" threatName="Gen:Adware.Heur.am9@gPjze4e" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="11576" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.GUI.MainClient.resources.dll_4" threatType="2" threatName="Gen:Adware.Heur.bm9@gzPBTig" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="25912" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Resources.SocialNetsSharer.dll" threatType="2" threatName="Gen:Adware.Heur.bm9@gDuGjxi" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="24888" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Infrastructure.Plugins.DefaultBrowser.dll" threatType="2" threatName="Gen:Adware.Heur.bm9@gj6gfmj" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="27960" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Resources.AutomaticUpdates.dll" threatType="2" threatName="Gen:Adware.Heur.cm9@g5@K74j" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="34616" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\eIntaller\AE523ECF108341d19E39E67379BD0B79\eGdpSvc.exe.vir" threatType="6" threatName="Gen:Application.Elex.1" action="3" allActions="3" initialStatus="3" finalStatus="5" quarId="" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="361536" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Resources.SetBrowsersSettings.dll" threatType="2" threatName="Gen:Adware.Heur.hm9@g5bDBkh" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="122680" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Infrastructure.Plugins.Base.dll" threatType="2" threatName="Gen:Adware.Heur.cm9@gXBlIxb" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="33080" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.GUI.MainClient.resources.dll_5" threatType="2" threatName="Gen:Adware.Heur.cm9@gXsXZNc" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="38712" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Resources.Utilities.dll" threatType="2" threatName="Gen:Adware.Heur.am9@gvALGbn" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="16184" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;LinkuryExeName" threatType="2" threatName="Gen:Adware.Heur.bm1@grexRao" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="19768" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Resources.HistoryAndStatsWrapper.dll" threatType="2" threatName="Gen:Adware.Heur.em9@g54gKSm" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="67896" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;BrowserHelper.exe" threatType="2" threatName="Gen:Adware.Heur.bm1@gnDx3ol" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="18232" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;LINKURYINTERNETEXPLORERBHO.DLL" threatType="2" threatName="Gen:Adware.Heur.hm9@g1GOhOe" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="120632" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;SMARTBAR_AUTOMATIC_UPDATE.EXE" threatType="2" threatName="Gen:Adware.Heur.am1@gjQbold" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="12600" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;LINKURYSMARTBAR.DLL" threatType="2" threatName="Gen:Adware.Heur.fm9@gDV8LJl" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="87864" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;REGASM.EXE" threatType="2" threatName="Adware.Generic.1798668" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="59192" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.GUI.Controls.dll" threatType="2" threatName="Gen:Adware.Heur.Hm9@g1CIHoi" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="542008" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.GUI.DOCKING.DLL" threatType="2" threatName="Gen:Adware.Heur.em9@gDB9KAj" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="80184" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.GUI.MainClient.dll" threatType="2" threatName="Gen:Adware.Heur.gn9@g11q2Jh" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="1152312" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.GUI.MainClient.resources.dll" threatType="2" threatName="Gen:Adware.Heur.bm9@gD75RDc" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="21304" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.GUI.MainClient.resources.dll_1" threatType="2" threatName="Gen:Adware.Heur.bm9@gz5n7bh" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="21304" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.GUI.MainClient.resources.dll_2" threatType="2" threatName="Gen:Adware.Heur.bm9@gDc5bBc" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="25400" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.GUI.MainClient.resources.dll_3" threatType="2" threatName="Gen:Adware.Heur.bm9@gbdoFLe" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="25912" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.GUI.MainClient.resources.dll_6" threatType="2" threatName="Gen:Adware.Heur.bm9@grkwyln" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="25912" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.GUI.Multimedia.Loader.dll" threatType="2" threatName="Gen:Adware.Heur.am9@gfiQWQc" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="13112" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Infrastructure.BusinessEntities.dll" threatType="2" threatName="Gen:Adware.Heur.am9@g5k2Aoi" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="12088" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Infrastructure.Core.dll" threatType="2" threatName="Gen:Adware.Heur.bm9@g5f2ZBn" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="27960" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;SMARTBAR.INFRASTRUCTURE.EVENTMANAGER.DLL" threatType="2" threatName="Gen:Adware.Heur.am9@gHqXb@k" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="11576" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.INFRASTRUCTURE.PLUGINS.FIREFOXLOCALPLUGIN.DLL" threatType="2" threatName="Gen:Adware.Heur.cm9@g5X4qvo" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="45880" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Infrastructure.Plugins.InternetExplorerLocalPlugin.dll" threatType="2" threatName="Gen:Adware.Heur.dm9@gXHrzfc" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="54584" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Infrastructure.Plugins.ShareManagerLocalPlugin.dll" threatType="2" threatName="Gen:Adware.Heur.am9@gnjWCZh" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="13112" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Infrastructure.Utilities.dll" threatType="2" threatName="Gen:Adware.Heur.bm9@gTWLuwp" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="18232" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Personalization.BusinessEntities.dll" threatType="2" threatName="Gen:Adware.Heur.fm9@gvQj2Zj" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="97592" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Personalization.BusinessLogic.dll" threatType="2" threatName="Gen:Adware.Heur.em9@gLfcwFi" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="78648" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Personalization.Common.dll" threatType="2" threatName="Gen:Adware.Heur.am9@gz5CN2l" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="15672" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Personalization.ServicesPlugins.DefaultMailProvider.dll" threatType="2" threatName="Gen:Adware.Heur.am9@gza7MTk" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="13112" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Personalization.ServicesPlugins.MessengerPlugin.dll" threatType="2" threatName="Gen:Adware.Heur.am9@gnCGW8m" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="12088" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Personalization.ServicesPlugins.ScreenCapturePlugin.dll" threatType="2" threatName="Gen:Adware.Heur.dm9@gfVg6xb" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="56120" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Personalization.ServicesPlugins.WordPlugin.dll" threatType="2" threatName="Gen:Adware.Heur.am9@gr9YUyd" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="13112" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Personalization.ServicesPlugins.YoutubeDownloadPlugin.dll" threatType="2" threatName="Gen:Adware.Heur.cm9@gn4QyZh" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="41784" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Personalization.Settings.PersonalizationSettingsManager.dll" threatType="2" threatName="Gen:Adware.Heur.am9@gTGVBZp" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="14648" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Personalization.Settings.UserSettingsManager.dll" threatType="2" threatName="Gen:Adware.Heur.am9@gzQ6Cyo" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="16184" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Resources.HistoryManager.dll" threatType="2" threatName="Gen:Adware.Heur.bm9@gPsDjYc" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="18744" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.RESOURCES.PROCESSDOWNMONITOR.DLL" threatType="2" threatName="Gen:Adware.Heur.am9@gntNlN" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="13112" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.RESOURCES.SETBROWSERSSETTINGSAUTOUPDATER.DLL" threatType="2" threatName="Gen:Adware.Heur.cm9@gPeItpc" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="38200" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Resources.SideBySide.dll" threatType="2" threatName="Gen:Adware.Heur.bm9@grp5P6i" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="19256" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Resources.SocialNetsSharer.XmlSerializers.dll" threatType="2" threatName="Gen:Adware.Heur.cm9@gb7xamm" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="46904" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded CAB)=&gt;Smartbar.Resources.UrlHistorySupplier.dll" threatType="2" threatName="Gen:Adware.Heur.am9@gbI!amo" action="9" allActions="3 7 1 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="14648" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                        <Item type="0" objectType="0" path="C:\AdwCleaner\Quarantine\C\users\user\AppData\Roaming\OpenCandy\026BFE27609A49F2AFA186EF18314A49\LinkuryInstaller.msi.vir=&gt;(Embedded EXE)" threatType="2" threatName="Gen:Adware.Heur.2q@@gD!TYWn" action="9" allActions="3 1 9 1 9" initialStatus="3" finalStatus="6" quarId="6fa3235e-2aed-4e8d-b22e-8ac28bebfe6c" failReason="0" itemHash="" chainHash="no_hash" family="" rtvrType=""><FileInfo itemMd5Hash="no_hash" chainMd5Hash="no_hash" fileSize="889464" certIssuer="" certSubject="" certSerial="" certTimestamp="0"/></Item>
                </ResolvedDetails>

                <IgnoredDetails>
                </IgnoredDetails>

                <QuickScanDetails>
                </QuickScanDetails>
                <NotScannedDetails
                        skipped="109061"
                        ioerrors="205"
                        archiveBombs="0"
                        passwordProtected="64"
                >

                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SECURITY.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\localization\fr\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\2190fd.msi=&gt;(Embedded CAB)=&gt;messages_dat_fr.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_d775862d3d4dee98_0_0.bin" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\RegBack\DEFAULT" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\RegBack\SYSTEM" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Documents\Verwaltung backup 181102\Markus\Lage\16-02-03_Teil 5 Lagebeschreibung.doc" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Documents\Verwaltung backup 181102\EDV\Passwörter Büro.doc" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SOFTWARE" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_6229ccd76215aea1_0_1.bin" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_ed64683108eca8c3_0_0.bin" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_6229ccd76215aea1_0_0.toc" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\Settings\settings.dat.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.WindowsStore_8wekyb3d8bbwe\Settings\settings.dat.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Microsoft\Windows\UsrClass.dat.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_6229ccd76215aea1_0_0.bin" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SYSTEM.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SYSTEM.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\RegBack\SAM" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SOFTWARE.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\System Volume Information\{12375e9e-2548-11e9-8d62-001d7275f208}{3808876b-c176-4e48-b7ae-04046e6cc752}" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SECURITY.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SECURITY" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.WindowsStore_8wekyb3d8bbwe\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_6439a828c07c91e1_0_0.bin" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\219107.msi=&gt;(Embedded CAB)=&gt;messages_dat_fr.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SAM" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\RegBack\SOFTWARE" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\appcompat\Programs\Amcache.hve" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\RegBack\SECURITY" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\DEFAULT.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-create-module-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_fr.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\219107.msi=&gt;(Embedded CAB)=&gt;messages_dat_it.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\DEFAULT.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\appcompat\Programs\Amcache.hve.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\DEFAULT" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\COMPONENTS.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\BBI.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\BBI.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_d775862d3d4dee98_0_0.toc" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\BBI" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\219107.msi=&gt;(Embedded CAB)=&gt;messages_dat_pt.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\SoftwareDistribution\DataStore\Logs\tmp.edb" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-startup-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_es.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\2190fd.msi=&gt;(Embedded CAB)=&gt;messages_dat_ru.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\localization\ru\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\SoftwareDistribution\DataStore\Logs\edbtmp.log" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\ntuser.dat.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\appcompat\Programs\Amcache.hve.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\SoftwareDistribution\DataStore\DataStore.jfm" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-create-module-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_pt.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\219107.msi=&gt;(Embedded CAB)=&gt;messages_dat_de.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\SoftwareDistribution\DataStore\DataStore.edb" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\2190fd.msi=&gt;(Embedded CAB)=&gt;messages_dat_en.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\219107.msi=&gt;(Embedded CAB)=&gt;messages_dat_en.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\219107.msi=&gt;(Embedded CAB)=&gt;messages_dat_es.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\219107.msi=&gt;(Embedded CAB)=&gt;messages_dat_ja.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\219107.msi=&gt;(Embedded CAB)=&gt;messages_dat_ru.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_ed64683108eca8c3_0_0.toc" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\2190fd.msi=&gt;(Embedded CAB)=&gt;bl.dll.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;(ZIP Sfx r)=&gt;feature-activation.json" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\2190fd.msi=&gt;(Embedded CAB)=&gt;bl.dll.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;(ZIP Sfx r)=&gt;feature-location.json" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\2190fd.msi=&gt;(Embedded CAB)=&gt;messages_dat_de.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\localization\es\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\2190fd.msi=&gt;(Embedded CAB)=&gt;messages_dat_es.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\2190fd.msi=&gt;(Embedded CAB)=&gt;messages_dat_it.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\2190fd.msi=&gt;(Embedded CAB)=&gt;messages_dat_ja.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\2190fd.msi=&gt;(Embedded CAB)=&gt;messages_dat_pt.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\localization\pt\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SAM.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\NTUSER.DAT" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Downloads\ss (1).rar=&gt;FreeStudio 6.5.1.415 From In Vision Future.exe" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Documents\Verwaltung backup 181102\Telefon\2007_06einzelverbindungen_4751446511_schluessel.pdf" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Documents\Verwaltung backup 181102\Markus\Lage\~WRL0559.tmp" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Documents\Verwaltung backup 181102\Telefon\2007_03einzelverbindungen_4751446511_schluessel.pdf" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Documents\Verwaltung backup 181102\Markus\Lage\06-03-06_Teil 2 Lagebeschreibung.doc" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Documents\Verwaltung backup 181102\Markus\Lage\14-08-14_Teil 4 Lagebeschreibung.doc" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Documents\Verwaltung backup 181102\Markus\Lage\10-06-17_Teil 3 Lagebeschreibung.doc" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Documents\Verwaltung backup 181102\Markus\Lage\04-04-20_Lagebeschreibung.doc" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_84280b7c44cab9_0_0.toc" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_84280b7c44cab9_0_0.bin" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.WindowsStore_8wekyb3d8bbwe\Settings\settings.dat" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.WindowsStore_8wekyb3d8bbwe\Settings\settings.dat.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.WindowsStore_8wekyb3d8bbwe\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_6439a828c07c91e1_0_0.toc" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Settings\settings.dat.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Settings\settings.dat.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Settings\settings.dat" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\Settings\settings.dat.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\Settings\settings.dat" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.PeopleExperienceHost_cw5n1h2txyewy\Settings\settings.dat.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.PeopleExperienceHost_cw5n1h2txyewy\Settings\settings.dat" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.PeopleExperienceHost_cw5n1h2txyewy\Settings\settings.dat.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.PeopleExperienceHost_cw5n1h2txyewy\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_60373c15a3585cca_0_0.toc" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\swapfile.sys" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.jfm" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.PeopleExperienceHost_cw5n1h2txyewy\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_60373c15a3585cca_0_0.bin" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\Settings\settings.dat.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\Settings\settings.dat.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\Settings\settings.dat" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-startup-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;bl.dll.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;(ZIP Sfx r)=&gt;feature-activation.json" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_a3379d15cfe7fd5c_1_0.toc" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-create-module-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_es.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_a3379d15cfe7fd5c_1_0.bin" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_a3379d15cfe7fd5c_0_0.toc" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_a3379d15cfe7fd5c_0_0.bin" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Microsoft\Windows\WebCacheLock.dat" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.jfm" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Microsoft\Windows\WebCache\V01tmp.log" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\COMPONENTS" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Microsoft\Windows\WebCache\V01.log" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Microsoft\Windows\UsrClass.dat.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Microsoft\Windows\UsrClass.dat" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Microsoft\Windows\Notifications\WPNPRMRY.tmp" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SOFTWARE.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Google\Chrome\User Data\Default\Current Session" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Comms\UnistoreDB\USS.jtx" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Comms\UnistoreDB\store.vol" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Comms\UnistoreDB\store.jfm" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\statistic.xml=&gt;statistic.xml" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-create-module-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_de.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-create-module-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_en.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-create-module-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_it.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-create-module-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_ja.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-create-module-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_ru.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-startup-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;bl.dll.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;(ZIP Sfx r)=&gt;feature-location.json" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-startup-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_de.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-startup-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_en.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-startup-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_fr.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-startup-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_it.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-startup-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_ja.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-startup-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_pt.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-startup-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_ru.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\Microsoft\Windows\LfSvc\Geofence\GeofenceApplicationID.dat" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\Microsoft\Network\Downloader\qmgr.jfm" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\Microsoft\Network\Downloader\qmgr.db" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\Microsoft\Network\Downloader\edb.log" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6 Manager\PDF Architect 6\service.log" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\localization\ja\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\localization\it\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\ntuser.dat.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\localization\en\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\localization\de\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\creator\common\localization\it\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\creator\common\localization\en\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\creator\common\localization\pt\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Downloads\ss.rar=&gt;FreeStudio 6.5.1.415 From In Vision Future.exe" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Notifications\WPNPRMRY.tmp" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SYSTEM" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SAM.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\COMPONENTS.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Comms\UnistoreDB\tmp.edb" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\Microsoft\Search\Data\Applications\Windows\edbtmp.jtx" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\Microsoft\Search\Data\Applications\Windows\edb.jtx" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\creator\common\localization\ru\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\creator\common\localization\ja\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\creator\common\localization\fr\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\creator\common\localization\es\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\creator\common\localization\de\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\pagefile.sys" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Program Files\Bitdefender\Bitdefender Security\onaccess.dat" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\hiberfil.sys" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                </NotScannedDetails>
        </ScanDetails>

</ScanSession>


cosinus 01.02.2019 18:11

Wo steht da was von verschlüsselten Dateien?

Captain Ahab 01.02.2019 18:14

Zitat:

Zitat von cosinus (Beitrag 1711832)
Wo steht da was von verschlüsselten Dateien?


QuickScanDetails>
</QuickScanDetails>
<NotScannedDetails
skipped="109061"
ioerrors="205"
archiveBombs="0"
passwordProtected="64"
>

<Item type="0" objectType="0" path="C:\Windows\System32\config\SECURITY.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
<Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\localization\fr\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
<Item type="0" objectType="0" path="C:\Windows\Installer\2190fd.msi=&gt;(Embedded CAB)=&gt;messages_dat_fr.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" fina

cosinus 01.02.2019 18:27

Ich seh da immer noch keine verschlüsselten Dateien! Was GENAU meinst du jetzt angeblich verschlüsselt sein?

Captain Ahab 01.02.2019 18:32

Ich meine Passwort geschützte Dateien
Code:

passwordProtected="64"
                >

                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SECURITY.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\localization\fr\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\2190fd.msi=&gt;(Embedded CAB)=&gt;messages_dat_fr.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_d775862d3d4dee98_0_0.bin" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\RegBack\DEFAULT" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\RegBack\SYSTEM" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Documents\Verwaltung backup 181102\Markus\Lage\16-02-03_Teil 5 Lagebeschreibung.doc" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Documents\Verwaltung backup 181102\EDV\Passwörter Büro.doc" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SOFTWARE" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_6229ccd76215aea1_0_1.bin" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_ed64683108eca8c3_0_0.bin" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_6229ccd76215aea1_0_0.toc" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\Settings\settings.dat.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.WindowsStore_8wekyb3d8bbwe\Settings\settings.dat.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Microsoft\Windows\UsrClass.dat.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_6229ccd76215aea1_0_0.bin" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SYSTEM.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SYSTEM.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\RegBack\SAM" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SOFTWARE.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\System Volume Information\{12375e9e-2548-11e9-8d62-001d7275f208}{3808876b-c176-4e48-b7ae-04046e6cc752}" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SECURITY.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SECURITY" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.WindowsStore_8wekyb3d8bbwe\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_6439a828c07c91e1_0_0.bin" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\219107.msi=&gt;(Embedded CAB)=&gt;messages_dat_fr.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SAM" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\RegBack\SOFTWARE" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\appcompat\Programs\Amcache.hve" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\RegBack\SECURITY" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\DEFAULT.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-create-module-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_fr.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\219107.msi=&gt;(Embedded CAB)=&gt;messages_dat_it.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\DEFAULT.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\appcompat\Programs\Amcache.hve.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\DEFAULT" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\COMPONENTS.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\BBI.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\BBI.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_d775862d3d4dee98_0_0.toc" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\BBI" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\219107.msi=&gt;(Embedded CAB)=&gt;messages_dat_pt.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\SoftwareDistribution\DataStore\Logs\tmp.edb" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-startup-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_es.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\2190fd.msi=&gt;(Embedded CAB)=&gt;messages_dat_ru.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\localization\ru\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\SoftwareDistribution\DataStore\Logs\edbtmp.log" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\SoftwareDistribution\DataStore\Logs\edb.log" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\ntuser.dat.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\appcompat\Programs\Amcache.hve.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\SoftwareDistribution\DataStore\DataStore.jfm" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-create-module-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_pt.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\219107.msi=&gt;(Embedded CAB)=&gt;messages_dat_de.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\SoftwareDistribution\DataStore\DataStore.edb" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\2190fd.msi=&gt;(Embedded CAB)=&gt;messages_dat_en.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\219107.msi=&gt;(Embedded CAB)=&gt;messages_dat_en.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\219107.msi=&gt;(Embedded CAB)=&gt;messages_dat_es.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\219107.msi=&gt;(Embedded CAB)=&gt;messages_dat_ja.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\219107.msi=&gt;(Embedded CAB)=&gt;messages_dat_ru.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_ed64683108eca8c3_0_0.toc" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\2190fd.msi=&gt;(Embedded CAB)=&gt;bl.dll.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;(ZIP Sfx r)=&gt;feature-activation.json" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\2190fd.msi=&gt;(Embedded CAB)=&gt;bl.dll.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;(ZIP Sfx r)=&gt;feature-location.json" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\2190fd.msi=&gt;(Embedded CAB)=&gt;messages_dat_de.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\localization\es\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\2190fd.msi=&gt;(Embedded CAB)=&gt;messages_dat_es.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\2190fd.msi=&gt;(Embedded CAB)=&gt;messages_dat_it.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\2190fd.msi=&gt;(Embedded CAB)=&gt;messages_dat_ja.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\Installer\2190fd.msi=&gt;(Embedded CAB)=&gt;messages_dat_pt.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\localization\pt\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SAM.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\NTUSER.DAT" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Downloads\ss (1).rar=&gt;FreeStudio 6.5.1.415 From In Vision Future.exe" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Documents\Verwaltung backup 181102\Telefon\2007_06einzelverbindungen_4751446511_schluessel.pdf" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Documents\Verwaltung backup 181102\Markus\Lage\~WRL0559.tmp" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Documents\Verwaltung backup 181102\Telefon\2007_03einzelverbindungen_4751446511_schluessel.pdf" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Documents\Verwaltung backup 181102\Markus\Lage\06-03-06_Teil 2 Lagebeschreibung.doc" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Documents\Verwaltung backup 181102\Markus\Lage\14-08-14_Teil 4 Lagebeschreibung.doc" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Documents\Verwaltung backup 181102\Markus\Lage\10-06-17_Teil 3 Lagebeschreibung.doc" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Documents\Verwaltung backup 181102\Markus\Lage\04-04-20_Lagebeschreibung.doc" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_84280b7c44cab9_0_0.toc" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_84280b7c44cab9_0_0.bin" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.WindowsStore_8wekyb3d8bbwe\Settings\settings.dat" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.WindowsStore_8wekyb3d8bbwe\Settings\settings.dat.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.WindowsStore_8wekyb3d8bbwe\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_6439a828c07c91e1_0_0.toc" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Settings\settings.dat.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Settings\settings.dat.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\microsoft.windowscommunicationsapps_8wekyb3d8bbwe\Settings\settings.dat" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\Settings\settings.dat.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\Settings\settings.dat" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.PeopleExperienceHost_cw5n1h2txyewy\Settings\settings.dat.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.PeopleExperienceHost_cw5n1h2txyewy\Settings\settings.dat" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.PeopleExperienceHost_cw5n1h2txyewy\Settings\settings.dat.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.PeopleExperienceHost_cw5n1h2txyewy\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_60373c15a3585cca_0_0.toc" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\swapfile.sys" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.jfm" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.PeopleExperienceHost_cw5n1h2txyewy\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_60373c15a3585cca_0_0.bin" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\Settings\settings.dat.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\Settings\settings.dat.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\Settings\settings.dat" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-startup-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;bl.dll.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;(ZIP Sfx r)=&gt;feature-activation.json" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_a3379d15cfe7fd5c_1_0.toc" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-create-module-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_es.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_a3379d15cfe7fd5c_1_0.bin" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_a3379d15cfe7fd5c_0_0.toc" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\AC\Temp\NVIDIA Corporation\NV_Cache\aaa04bb35e1a5418ce60fe164a50e009_fce8395f8fd8a805_a3379d15cfe7fd5c_0_0.bin" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Microsoft\Windows\WebCacheLock.dat" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.jfm" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Microsoft\Windows\WebCache\V01tmp.log" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\COMPONENTS" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Microsoft\Windows\WebCache\V01.log" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Microsoft\Windows\UsrClass.dat.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Microsoft\Windows\UsrClass.dat" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Microsoft\Windows\Notifications\WPNPRMRY.tmp" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SOFTWARE.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Google\Chrome\User Data\Default\Current Session" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Comms\UnistoreDB\USS.jtx" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Comms\UnistoreDB\store.vol" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Comms\UnistoreDB\store.jfm" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\statistic.xml=&gt;statistic.xml" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-create-module-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_de.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-create-module-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_en.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-create-module-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_it.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-create-module-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_ja.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-create-module-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_ru.3001776A_BDAA_4264_8F6E_DAA059A7A888=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-startup-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;bl.dll.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;(ZIP Sfx r)=&gt;feature-location.json" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-startup-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_de.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-startup-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_en.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-startup-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_fr.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-startup-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_it.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-startup-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_ja.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-startup-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_pt.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\PDF Architect 6\Installation\pdf-architect6-startup-6.0.37.38653-x86.msi=&gt;(Embedded CAB)=&gt;messages_dat_ru.FBFE55A2_3D27_4BD3_A7D0_1B7CC634849A=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\ProgramData\Microsoft\Windows\LfSvc\Geofence\GeofenceApplicationID.dat" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\Microsoft\Network\Downloader\qmgr.jfm" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\Microsoft\Network\Downloader\qmgr.db" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\Microsoft\Network\Downloader\edb.log" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6 Manager\PDF Architect 6\service.log" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\localization\ja\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\localization\it\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\ntuser.dat.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\localization\en\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\localization\de\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\creator\common\localization\it\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\creator\common\localization\en\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\creator\common\localization\pt\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\Downloads\ss.rar=&gt;FreeStudio 6.5.1.415 From In Vision Future.exe" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Notifications\WPNPRMRY.tmp" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SYSTEM" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\SAM.LOG2" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\System32\config\COMPONENTS.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Users\MHengefeld\AppData\Local\Comms\UnistoreDB\tmp.edb" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT.LOG1" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Windows\ServiceProfiles\LocalService\NTUSER.DAT" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\Microsoft\Search\Data\Applications\Windows\edbtmp.jtx" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\ProgramData\Microsoft\Search\Data\Applications\Windows\edb.jtx" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\creator\common\localization\ru\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\creator\common\localization\ja\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\creator\common\localization\fr\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\creator\common\localization\es\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\Program Files\PDF Architect 6\creator\common\localization\de\messages.dat=&gt;messages.mo" threatType="0" threatName="" action="1" allActions="" initialStatus="10" finalStatus="10" failReason="5" />
                        <Item type="0" objectType="0" path="C:\pagefile.sys" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\Program Files\Bitdefender\Bitdefender Security\onaccess.dat" threatType="0" threatName="" action="1" allActions="" initialStatus="0" finalStatus="0" failReason="9" />
                        <Item type="0" objectType="0" path="C:\hiberfil.sy


cosinus 01.02.2019 18:50

Ja dann ist da sowas bei:

Zitat:

Passwörter Büro.doc
Welche Dateien überhaupt in Frage kommen musst du ja auch mal selbst wissen. Oder sollen wir jetzt x Kommentare zu x Funden geben?

Captain Ahab 01.02.2019 19:22

Sorry ganz vergessen das ich vor längerer Zeit selbst mal ein paar Dateien verschlüsselt hab, folgende bitte ignorieren:

Dokumente/Verwaltung Backup181102/Markus/Lage/

16-02-03_Teil 5 Lagebeschreibung.doc
04-04-20_Lagebeschreibung.doc
06-03-06_Teil 2 Lagebeschreibung.doc
10-06-17_Teil3 Lagebeschreibung.doc
14-08-14 Teil 4 Lagebeschreibung.doc

/EDV

Passwörter Büro.doc

cosinus 01.02.2019 19:25

Nicht alles davon sind aber verschlüsselte Archive.

Sieht für mich mal wieder nach dem typischen Fall von Hysterie aus - davon leben die Hersteller der Schlangenöl-Industrie. Aufgeklärte selbstbewusste User ohne Angst geben nämliche kein Geld für das Schlangenöl aus.

I.A. raten wir hier nur noch zum Windows Defender und Malwarebytes.

Captain Ahab 01.02.2019 19:33

Ok danke, das beruhigt mich ungemein. Hysterie bestimmt nur begrenzt, ist die BitDefender Premium Version (also noch mehr Geld kann ich denen ja kaum in den Rachen werfen). Von Malewarebytes halte ich auch viel, hab es nach dem Scan direkt durchlaufen lassen.

cosinus 01.02.2019 19:41

Also ganz ehrlich, das Geld für so einen Premium-Müll wäre besser in eine vernünftige Backup-Software investiert. Und als AV nimmt man wie gesagt Windows Defender und Malwarebytes Free.

Captain Ahab 01.02.2019 19:53

Geld in den Rachen werfen war symbolisch gemeint. Normalerweise reichen mir Malwarebytes, Defender und adw cleaner, nur hab ich einen kostenlosen Code für BitDefender 2019 für 6 Monate bekommen.
Ich glaub ich mach mir einen Tails Live Stick, hab erstmal genug von Virenscannern.

cosinus 01.02.2019 20:19

Dann lass es sein mit tails und installiere dir lieber ein Ubuntu MATE oder besser ein Debian oder Arch.

Captain Ahab 01.02.2019 20:40

Tails ist Debian basierend und jede Verbindung geht über das TOR Netzwerk, halte ich für ziemlich sicher. Die von dir genannten Versionen sagen mir ehrlich gesagt gar nichts (außer Debian) aber ich informiere mich mal und gucke was das beste für mich wäre. Danke für die Vorschläge :party:

cosinus 01.02.2019 20:46

Ich hab so mein Problem mit Live-Only-Systemen. Die werden gern als Inbegriff der Sicherheit dargestellt obwohl da die Möglichkeiten für Updates extrem begrenz sind.

M-K-D-B 01.02.2019 21:29

Zitat:

Zitat von M-K-D-B (Beitrag 1711814)
Das ist mir auch klar... es gibt aber genug User, die von "verschlüsselt" sprechen, obwohl einfach das AV-Programm aufgrund mangelnder Rechte keinen Zugriff darauf hat.

Und genau so ist es auch hier... ;)

Wie ich vermutet hatte... :D



Dieses Thema scheint erledigt und wird aus meinen Abos gelöscht. Solltest Du das Thema erneut brauchen, schicke uns bitte eine Erinnerung inklusive Link zum Thema.

Jeder andere bitte hier klicken und ein eigenes Thema erstellen.

cosinus 01.02.2019 21:44

Du hast das hier vergessen:

Dann wären wir durch! :daumenhoc

Wenn Du möchtest, kannst Du hier sagen, ob Du mit mir und meiner Hilfe zufrieden warst...:dankeschoen:und/oder das Forum mit einer kleinen Spende http://www.trojaner-board.de/extra/spende.png unterstützen. :applaus:

Abschließend bitte noch einen Cleanup mit unserem TB-Cleanup-Script durchführen und unbedingt die Sicherheitsmaßnahmen lesen und umsetzen - beides ist in folgendem Lesestoff verlinkt:



Alle Zeitangaben in WEZ +1. Es ist jetzt 06:25 Uhr.

Copyright ©2000-2025, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132