Line-LAP | 19.06.2014 22:41 | Jacqueline an den "König der Sterne" :-) Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 19.06.2014
Suchlauf-Zeit: 15:45:27
Logdatei: mbam.txt
Administrator: Ja
Version: 2.00.2.1012
Malware Datenbank: v2014.06.19.06
Rootkit Datenbank: v2014.06.02.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Self-protection: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Admin
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 350396
Verstrichene Zeit: 17 Min, 48 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristics: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registrierungsschlüssel: 15
PUP.Optional.MediaPlayer.A, HKLM\SOFTWARE\WOW6432NODE\Mediaa_Play_AIR_1.4, In Quarantäne, [3d153446700b2a0ce162c3e2748e35cb],
PUP.Optional.PlusHD.A, HKLM\SOFTWARE\WOW6432NODE\PSHD-9.9, In Quarantäne, [ed65d4a6c5b666d0a08fb7f826dc9a66],
PUP.Optional.WPM.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\WindowsProtectManger, In Quarantäne, [f75bf486c6b537ff9a3e6d3613efe11f],
PUP.Optional.MediaPlayer.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Mediaa_Play_AIR_1.4, In Quarantäne, [bc963b3f2754ff37a69fecb9c53df40c],
PUP.Optional.PlusHD.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\PSHD-9.9, In Quarantäne, [331f2159f18aaa8c49e4b5fa4ab8d52b],
PUP.Optional.ReMarkable.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Re_Markable, In Quarantäne, [0d45c8b2f18a4beb0d2e8237e81ac23e],
PUP.Optional.MediaPlayer.A, HKU\S-1-5-21-2951541265-1472267509-3421380212-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Mediaa_Play_AIR_1.4, In Quarantäne, [62f07505e19aee480f36386d33cf7090],
PUP.Optional.PlusHD.A, HKU\S-1-5-21-2951541265-1472267509-3421380212-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\PSHD-9.9, In Quarantäne, [044eaecc82f9e0565dd002ad5aa8bf41],
PUP.Optional.PlusHD.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\PSHD-9.9, In Quarantäne, [aea42f4b4932ec4a30866e2cd32f5ca4],
PUP.Optional.MediaPlayer.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Mediaa_Play_AIR_1.4, In Quarantäne, [5ff38befa8d32214252442606c96847c],
PUP.Optional.ReMarkIt.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{401EA098-5006-38D6-99CE-F46A89FC2D4F}, In Quarantäne, [6ce6cdadf18acf67c2bec7b8966e659b],
PUP.Optional.ReMarkIt.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{401EA098-5006-38D6-99CE-F46A89FC2D4F}, In Quarantäne, [6ce6cdadf18acf67c2bec7b8966e659b],
PUP.Optional.ReMarkIt.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{98708BE4-1238-9246-BE45-4F991CD7A1B9}, In Quarantäne, [6ce6cdadf18acf67c2bec7b8966e659b],
PUP.Optional.ReMarkIt.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{CFC79DF6-08BE-9484-2A1D-09CF57D8FD17}, In Quarantäne, [6ce6cdadf18acf67c2bec7b8966e659b],
PUP.Optional.ReMarkIt.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{98708BE4-1238-9246-BE45-4F991CD7A1B9}, In Quarantäne, [6ce6cdadf18acf67c2bec7b8966e659b],
Registrierungswerte: 0
(No malicious items detected)
Registrierungsdaten: 1
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[183a75050378290d4d9a007d22e227d9]
Ordner: 14
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaipilfmheplbcghignccoiiebekkdhe, In Quarantäne, [440eaccef88360d6c14ac2d1d62cc43c],
PUP.Optional.PlusHD.A, C:\Program Files (x86)\PSHD-9.9, In Quarantäne, [aea42f4b4932ec4a30866e2cd32f5ca4],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\userCode, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\icons, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\icons\actions, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\api, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\lib, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\lib\popupResource, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.MediaPlayer.A, C:\Program Files (x86)\Mediaa_Play_AIR_1.4, In Quarantäne, [5ff38befa8d32214252442606c96847c],
Dateien: 115
PUP.Optional.PlusHD.A, C:\Program Files (x86)\PSHD-9.9\1293297481.mxaddon, In Quarantäne, [aea42f4b4932ec4a30866e2cd32f5ca4],
PUP.Optional.PlusHD.A, C:\Program Files (x86)\PSHD-9.9\360-52916.crx, In Quarantäne, [aea42f4b4932ec4a30866e2cd32f5ca4],
PUP.Optional.PlusHD.A, C:\Program Files (x86)\PSHD-9.9\52916.crx, In Quarantäne, [aea42f4b4932ec4a30866e2cd32f5ca4],
PUP.Optional.PlusHD.A, C:\Program Files (x86)\PSHD-9.9\52916.xpi, In Quarantäne, [aea42f4b4932ec4a30866e2cd32f5ca4],
PUP.Optional.PlusHD.A, C:\Program Files (x86)\PSHD-9.9\background.html, In Quarantäne, [aea42f4b4932ec4a30866e2cd32f5ca4],
PUP.Optional.PlusHD.A, C:\Program Files (x86)\PSHD-9.9\c0d67ced-ec8f-4468-962c-cb6d65463e12-2.exe, In Quarantäne, [aea42f4b4932ec4a30866e2cd32f5ca4],
PUP.Optional.PlusHD.A, C:\Program Files (x86)\PSHD-9.9\c0d67ced-ec8f-4468-962c-cb6d65463e12-3.exe, In Quarantäne, [aea42f4b4932ec4a30866e2cd32f5ca4],
PUP.Optional.PlusHD.A, C:\Program Files (x86)\PSHD-9.9\c0d67ced-ec8f-4468-962c-cb6d65463e12-4.exe, In Quarantäne, [aea42f4b4932ec4a30866e2cd32f5ca4],
PUP.Optional.PlusHD.A, C:\Program Files (x86)\PSHD-9.9\c0d67ced-ec8f-4468-962c-cb6d65463e12-5.exe, In Quarantäne, [aea42f4b4932ec4a30866e2cd32f5ca4],
PUP.Optional.PlusHD.A, C:\Program Files (x86)\PSHD-9.9\PSHD-9.9-bg.exe, In Quarantäne, [aea42f4b4932ec4a30866e2cd32f5ca4],
PUP.Optional.PlusHD.A, C:\Program Files (x86)\PSHD-9.9\PSHD-9.9-bho.dll, In Quarantäne, [aea42f4b4932ec4a30866e2cd32f5ca4],
PUP.Optional.PlusHD.A, C:\Program Files (x86)\PSHD-9.9\PSHD-9.9-bho64.dll, In Quarantäne, [aea42f4b4932ec4a30866e2cd32f5ca4],
PUP.Optional.PlusHD.A, C:\Program Files (x86)\PSHD-9.9\PSHD-9.9-codedownloader.exe, In Quarantäne, [aea42f4b4932ec4a30866e2cd32f5ca4],
PUP.Optional.PlusHD.A, C:\Program Files (x86)\PSHD-9.9\PSHD-9.9.ico, In Quarantäne, [aea42f4b4932ec4a30866e2cd32f5ca4],
PUP.Optional.PlusHD.A, C:\Program Files (x86)\PSHD-9.9\Uninstall.exe, In Quarantäne, [aea42f4b4932ec4a30866e2cd32f5ca4],
PUP.Optional.PlusHD.A, C:\Program Files (x86)\PSHD-9.9\utils.exe, In Quarantäne, [aea42f4b4932ec4a30866e2cd32f5ca4],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\background.html, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\chromeCoreFilesIndex.txt, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\crossriderManifest.json, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\manifest.json, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\popup.html, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\manifest.xml, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins.json, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\1.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\102.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\104.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\13.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\14.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\155.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\17.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\177.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\182.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\183.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\184.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\19.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\191.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\193.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\195.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\207.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\21.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\211.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\22.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\220.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\221.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\242.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\244.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\246.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\257.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\262.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\263.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\267.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\28.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\4.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\47.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\64.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\7.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\72.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\78.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\80.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\9.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\91.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\93.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\plugins\97.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\userCode\background.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\extensionData\userCode\extension.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\icons\icon128.png, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\icons\icon16.png, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\icons\icon48.png, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\icons\actions\1.png, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\background.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\main.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\platformVersion.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\api\chrome.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\api\cookie.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\api\message.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\api\monitor.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\api\pageAction.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\api\pageActionBG.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\lib\app_api.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\lib\bg_app_api.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\lib\consts.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\lib\cookie_store.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\lib\crossriderAPI.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\lib\delegate.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\lib\events.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\lib\extensionDataStore.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\lib\installer.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\lib\logFile.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\lib\logging.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\lib\onBGDocumentLoad.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\lib\reports.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\lib\storageWrapper.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\lib\updateManager.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\lib\util.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\lib\xhr.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\lib\popupResource\newPopup.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfhkgfigejkhikbkfkkglinnkfojkdek\1.26.14_0\js\lib\popupResource\popup.js, In Quarantäne, [d9793f3b03782d0923547a27976b847c],
PUP.Optional.MediaPlayer.A, C:\Program Files (x86)\Mediaa_Play_AIR_1.4\58488.xpi, In Quarantäne, [5ff38befa8d32214252442606c96847c],
PUP.Optional.MediaPlayer.A, C:\Program Files (x86)\Mediaa_Play_AIR_1.4\108029eb-c499-4b8b-ab5a-f4be652635de-11.exe, In Quarantäne, [5ff38befa8d32214252442606c96847c],
PUP.Optional.MediaPlayer.A, C:\Program Files (x86)\Mediaa_Play_AIR_1.4\108029eb-c499-4b8b-ab5a-f4be652635de-2.exe, In Quarantäne, [5ff38befa8d32214252442606c96847c],
PUP.Optional.MediaPlayer.A, C:\Program Files (x86)\Mediaa_Play_AIR_1.4\108029eb-c499-4b8b-ab5a-f4be652635de-3.exe, In Quarantäne, [5ff38befa8d32214252442606c96847c],
PUP.Optional.MediaPlayer.A, C:\Program Files (x86)\Mediaa_Play_AIR_1.4\108029eb-c499-4b8b-ab5a-f4be652635de-4.exe, In Quarantäne, [5ff38befa8d32214252442606c96847c],
PUP.Optional.MediaPlayer.A, C:\Program Files (x86)\Mediaa_Play_AIR_1.4\108029eb-c499-4b8b-ab5a-f4be652635de-5.exe, In Quarantäne, [5ff38befa8d32214252442606c96847c],
PUP.Optional.MediaPlayer.A, C:\Program Files (x86)\Mediaa_Play_AIR_1.4\108029eb-c499-4b8b-ab5a-f4be652635de.crx, In Quarantäne, [5ff38befa8d32214252442606c96847c],
PUP.Optional.MediaPlayer.A, C:\Program Files (x86)\Mediaa_Play_AIR_1.4\1293297481.mxaddon, In Quarantäne, [5ff38befa8d32214252442606c96847c],
PUP.Optional.MediaPlayer.A, C:\Program Files (x86)\Mediaa_Play_AIR_1.4\360-58488.crx, In Quarantäne, [5ff38befa8d32214252442606c96847c],
PUP.Optional.MediaPlayer.A, C:\Program Files (x86)\Mediaa_Play_AIR_1.4\58488.crx, In Quarantäne, [5ff38befa8d32214252442606c96847c],
PUP.Optional.MediaPlayer.A, C:\Program Files (x86)\Mediaa_Play_AIR_1.4\background.html, In Quarantäne, [5ff38befa8d32214252442606c96847c],
PUP.Optional.MediaPlayer.A, C:\Program Files (x86)\Mediaa_Play_AIR_1.4\Mediaa_Play_AIR_1.4-bg.exe, In Quarantäne, [5ff38befa8d32214252442606c96847c],
PUP.Optional.MediaPlayer.A, C:\Program Files (x86)\Mediaa_Play_AIR_1.4\Mediaa_Play_AIR_1.4-bho.dll, In Quarantäne, [5ff38befa8d32214252442606c96847c],
PUP.Optional.MediaPlayer.A, C:\Program Files (x86)\Mediaa_Play_AIR_1.4\Mediaa_Play_AIR_1.4-bho64.dll, In Quarantäne, [5ff38befa8d32214252442606c96847c],
PUP.Optional.MediaPlayer.A, C:\Program Files (x86)\Mediaa_Play_AIR_1.4\Mediaa_Play_AIR_1.4-codedownloader.exe, In Quarantäne, [5ff38befa8d32214252442606c96847c],
PUP.Optional.MediaPlayer.A, C:\Program Files (x86)\Mediaa_Play_AIR_1.4\Mediaa_Play_AIR_1.4.ico, In Quarantäne, [5ff38befa8d32214252442606c96847c],
PUP.Optional.MediaPlayer.A, C:\Program Files (x86)\Mediaa_Play_AIR_1.4\Uninstall.exe, In Quarantäne, [5ff38befa8d32214252442606c96847c],
PUP.Optional.MediaPlayer.A, C:\Program Files (x86)\Mediaa_Play_AIR_1.4\utils.exe, In Quarantäne, [5ff38befa8d32214252442606c96847c],
Physische Sektoren: 0
(No malicious items detected)
(end) Code:
ESETSmartInstaller@High as downloader log:
all ok
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7587
# api_version=3.0.2
# EOSSerial=de48d5eaa8f44b4ca7dc2c30aec7dab2
# engine=18786
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2014-06-19 07:56:49
# local_time=2014-06-19 09:56:49 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# lang=1031
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode_1='Microsoft Security Essentials'
# compatibility_mode=5895 16777213 100 100 5799327 74501431 0 0
# scanned=236198
# found=14
# cleaned=0
# scan_time=15239
sh=410A648EB8392D7407D264CF6C1090D044D044D6 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaipilfmheplbcghignccoiiebekkdhe\1.26.52_0\extensionData\plugins\266.js.vir"
sh=B563BEC7EC0608AB8EBC51C5E228C9270DAC0A09 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaipilfmheplbcghignccoiiebekkdhe\1.26.52_0\extensionData\plugins\91.js.vir"
sh=CE06CA96FAA53C145FDE8357DBF9433F07F508B5 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\ymsiz8wf.default\Extensions\a54e453c-130a-4769-9333-c5ec2aa914c5@9bd7cc89-9c7c-44e9-a03b-042b92d363f0.com\extensionData\plugins\266.js.vir"
sh=E082854FA3F7C89221E44406EA71086403E834E7 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\ymsiz8wf.default\Extensions\a54e453c-130a-4769-9333-c5ec2aa914c5@9bd7cc89-9c7c-44e9-a03b-042b92d363f0.com\extensionData\plugins\91.js.vir"
sh=E082854FA3F7C89221E44406EA71086403E834E7 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\ymsiz8wf.default\Extensions\faf73efe-d6aa-46eb-8014-e0b47ac07ead@a90d6ab4-be69-4e96-a979-1fd9c1ae6f92.com\extensionData\plugins\91.js.vir"
sh=39FAEEB0029579E762D3A372B3C0FB34D82B429E ft=1 fh=c71c00110b72f7bc vn="Variante von Win32/AdWare.AddLyrics.AP Anwendung" ac=I fn="C:\FRST\Quarantine\C\Program Files (x86)\Re_Markable\Re_Markable\Re-markitfA173.exe"
sh=9B72604832B83A5508824184D19DF2E98B654EA4 ft=1 fh=29a0d2f607c0a043 vn="Win32/Conduit.SearchProtect.Q evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SPYWABUX\spidentifierimpl[1].exe"
sh=24010E50CFDF1F290595ACD7EBCD794104B09E14 ft=1 fh=48005d301420b6bf vn="Variante von Win32/ELEX.AL evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Admin\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\TSUDTEVQ\lly_webssearches[1].exe"
sh=24010E50CFDF1F290595ACD7EBCD794104B09E14 ft=1 fh=48005d301420b6bf vn="Variante von Win32/ELEX.AL evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Admin\AppData\Local\Temp\lly_webssearches.exe"
sh=3D28125FE4A9EF0A22F82A184CF623D92AA2A67F ft=1 fh=0e35da7c707ed387 vn="Variante von Win32/DownloadGuide.A evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Admin\Downloads\ccleaner.exe"
sh=BB4D07B0CFF4C026C0AE7B203E5B54F931B491BB ft=1 fh=bcb15733e373c957 vn="Variante von Win32/SoftPulse.D evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Admin\Downloads\Player_Setup.exe"
sh=DC935CCB0E757C9C719A73A1D67A70CF645516A6 ft=0 fh=0000000000000000 vn="Variante von Win32/Toolbar.Babylon.Q evtl. unerwünschte Anwendung" ac=I fn="C:\Windows\Installer\165b9b9.msi"
sh=1F1B9A8E0442D06ECC816385B7EB5557B92C92A7 ft=1 fh=b11a9a0e0af94588 vn="Variante von Win32/Toolbar.Widgi.B evtl. unerwünschte Anwendung" ac=I fn="C:\Windows\System32\config\systemprofile\AppData\LocalLow\Application Updater\temp\~wt3E6.tmp"
sh=1F1B9A8E0442D06ECC816385B7EB5557B92C92A7 ft=1 fh=b11a9a0e0af94588 vn="Variante von Win32/Toolbar.Widgi.B evtl. unerwünschte Anwendung" ac=I fn="C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\Application Updater\temp\~wt3E6.tmp" |