Danke schon mal - Nachstehend die Auswertungen (FRST folgt separat)
mbam: Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 29.09.2014
Suchlauf-Zeit: 19:59:51
Logdatei: mbam.txt
Administrator: Ja
Version: 2.00.2.1012
Malware Datenbank: v2014.09.29.10
Rootkit Datenbank: v2014.09.19.01
Lizenz: Testversion
Malware Schutz: Aktiviert
Bösartiger Webseiten Schutz: Aktiviert
Self-protection: Deaktiviert
Betriebssystem: Windows 8.1
CPU: x64
Dateisystem: NTFS
Benutzer: Daniel Theis
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 355475
Verstrichene Zeit: 15 Min, 39 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristics: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 4
PUP.Optional.IePluginService.A, C:\ProgramData\IePluginServices\PluginService.exe, 1364, Löschen bei Neustart, [5a143db62a51d75f3d143038837ede22]
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\HpUI.exe, 2992, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54]
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\Loader32.exe, 6968, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54]
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\Loader64.exe, 6596, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54]
Module: 15
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\msvcp110.dll, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\msvcp110.dll, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\msvcp110.dll, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\msvcp110.dll, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\msvcp110.dll, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\msvcr110.dll, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\msvcr110.dll, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\msvcr110.dll, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\msvcr110.dll, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\msvcr110.dll, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\WindowsSupportDll32.dll, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\WindowsSupportDll32.dll, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\WindowsSupportDll32.dll, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\WindowsSupportDll32.dll, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\WindowsSupportDll32.dll, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
Registrierungsschlüssel: 18
PUP.Optional.IePluginService.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\IePluginServices, In Quarantäne, [5a143db62a51d75f3d143038837ede22],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, In Quarantäne, [89e501f28cef5dd9a7118e07d62cd927],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}, In Quarantäne, [89e501f28cef5dd9a7118e07d62cd927],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, In Quarantäne, [89e501f28cef5dd9a7118e07d62cd927],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, In Quarantäne, [89e501f28cef5dd9a7118e07d62cd927],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}, In Quarantäne, [89e501f28cef5dd9a7118e07d62cd927],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, In Quarantäne, [89e501f28cef5dd9a7118e07d62cd927],
PUP.Optional.SupTab.A, HKU\S-1-5-21-1568087217-2878561927-4049541060-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, In Quarantäne, [89e501f28cef5dd9a7118e07d62cd927],
PUP.Optional.SupTab.A, HKU\S-1-5-21-1568087217-2878561927-4049541060-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, In Quarantäne, [89e501f28cef5dd9a7118e07d62cd927],
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarantäne, [16585c970972d561d47485df40c419e7],
PUP.Optional.WPM.A, HKLM\SOFTWARE\WOW6432NODE\supWindowsMangerProtect, In Quarantäne, [caa44ea58cef62d4a4153c3c10f4d927],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\supWPM, In Quarantäne, [d29cf0033942a98d3a5e6ba75aa9728e],
PUP.Optional.QuickStart.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\pelmeidfhdlhlbjimpabfcbnnojbboma, In Quarantäne, [412d47ac14674ceaefbbda5cee15c53b],
PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarantäne, [90de5f9482f9300627211a4aa163f20e],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPDP, In Quarantäne, [0767cb28e992dc5a2d37080a3ec51ae6],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB, In Quarantäne, [3a34ea0990eb31058e09769c30d321df],
PUP.Optional.WebSearches.A, HKU\S-1-5-21-1568087217-2878561927-4049541060-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SupHpUISoft, In Quarantäne, [8ee0995a3b40b482a2aeb95b9271728e],
PUP.Optional.Qone8, HKU\S-1-5-21-1568087217-2878561927-4049541060-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarantäne, [323c2ec5106b35014106263e0400669a],
Registrierungswerte: 2
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPDP|dir, C:\Program Files (x86)\SupTab, In Quarantäne, [0767cb28e992dc5a2d37080a3ec51ae6]
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB|ptid, tugs, In Quarantäne, [3a34ea0990eb31058e09769c30d321df]
Registrierungsdaten: 4
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, www.mystartsearch.com/?type=hp&ts=1411917900&from=tugs&uid=WDCXWD10JPVX-22JC3T0_WD-WX61EC3THA60THA60, Gut: (www.google.com), Schlecht: (www.mystartsearch.com/?type=hp&ts=1411917900&from=tugs&uid=WDCXWD10JPVX-22JC3T0_WD-WX61EC3THA60THA60),Ersetzt,[57179b587605fc3a4ef07a9937ce41bf]
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[303ef7fcdf9c1d19d7aa41d05ea7ce32]
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, www.mystartsearch.com/?type=hp&ts=1411917900&from=tugs&uid=WDCXWD10JPVX-22JC3T0_WD-WX61EC3THA60THA60, Gut: (www.google.com), Schlecht: (www.mystartsearch.com/?type=hp&ts=1411917900&from=tugs&uid=WDCXWD10JPVX-22JC3T0_WD-WX61EC3THA60THA60),Ersetzt,[ed81fef55c1fcb6b0c32789b81847789]
PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[a9c59f54f88339fd2a57d63b897c7987]
Ordner: 31
PUP.Optional.IePluginServices.A, C:\ProgramData\IePluginServices, Löschen bei Neustart, [b0beb43f96e58fa70eb52ec5719129d7],
PUP.Optional.IePluginServices.A, C:\ProgramData\IePluginServices\update, In Quarantäne, [b0beb43f96e58fa70eb52ec5719129d7],
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect, In Quarantäne, [e688f30048339c9a70be6a8cab57a15f],
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\log, In Quarantäne, [e688f30048339c9a70be6a8cab57a15f],
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update, In Quarantäne, [e688f30048339c9a70be6a8cab57a15f],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\skin, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\skin\image, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\en-US, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\es-419, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\es-ES, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-BE, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-CA, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-CH, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-FR, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-LU, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\it-CH, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\it-IT, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\pl, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\pt, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\pt-BR, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\ru, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\ru-MO, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\tr-TR, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\vi-VI, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\zh-CN, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\zh-TW, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
Dateien: 70
PUP.Optional.IePluginService.A, C:\ProgramData\IePluginServices\PluginService.exe, Löschen bei Neustart, [5a143db62a51d75f3d143038837ede22],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\SupTab.dll, In Quarantäne, [89e501f28cef5dd9a7118e07d62cd927],
PUP.Optional.Skytech.A, C:\Program Files (x86)\SupTab\DpInterface32.dll, In Quarantäne, [1e502cc71a61dc5a4584ebaceb16b24e],
PUP.Optional.Skytech.A, C:\Program Files (x86)\SupTab\DpInterface64.dll, In Quarantäne, [d8963ab93c3fe2543c8de1b6f908dd23],
PUP.Optional.IEPluginService.A, C:\Program Files (x86)\SupTab\RSHP.exe, In Quarantäne, [e08ea3501368c57123d8d6a40100768a],
PUP.Optional.Skytech.A, C:\Program Files (x86)\SupTab\SearchProtect32.dll, In Quarantäne, [046aa1526e0d43f37455f4a32bd6af51],
PUP.Optional.Skytech.A, C:\Program Files (x86)\SupTab\SearchProtect64.dll, In Quarantäne, [026cd221007b80b6e7e24f488f729967],
PUP.Optional.IePluginService.A, C:\Program Files (x86)\SupTab\SupIePluginServiceUpdate.exe, In Quarantäne, [bcb220d347349e9801508edaad54f30d],
PUP.Optional.SearchHijacker.A, C:\Users\Daniel Theis\AppData\Local\Temp\8FDEtmp\lly_mystartsearch.exe, In Quarantäne, [7cf2a35047342115442dae028b767a86],
PUP.Optional.QuickStart.A, C:\Users\Daniel Theis\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv3.crx, In Quarantäne, [016df300b9c23204c1616aa8ea1942be],
PUP.Optional.IePluginServices.A, C:\ProgramData\IePluginServices\update\conf, In Quarantäne, [b0beb43f96e58fa70eb52ec5719129d7],
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\log\ProtectWindowsManager_2014-09-28[17-25-55-313].log, In Quarantäne, [e688f30048339c9a70be6a8cab57a15f],
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update\conf, In Quarantäne, [e688f30048339c9a70be6a8cab57a15f],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\HpUI.exe, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\ient.json, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\install.data, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\Loader32.exe, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\Loader64.exe, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\msvcp110.dll, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\msvcr110.dll, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\uninstall.exe, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\WindowsSupportDll32.dll, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\WindowsSupportDll64.dll, Löschen bei Neustart, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\skin\bk_shadow.png, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\skin\btn.png, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\skin\close.png, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\skin\main.xml, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\skin\main.xml.bak, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\skin\image\ck_box.png, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\skin\image\ck_check.png, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\skin\image\radio_bk.png, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\skin\image\radio_check.png, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\data.html, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\indexIE.html, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\indexIE8.html, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\main.css, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\ver.txt, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\google_trends.png, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\icon128.png, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\icon16.png, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\icon48.png, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\loading.gif, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\logo32.ico, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\common.js, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\ga.js, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\jquery-1.11.0.min.js, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\jquery.autocomplete.js, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\js.js, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\library.js, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\xagainit-ie8.js, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\xagainit2.0.js, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\en-US\messages.json, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\es-419\messages.json, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\es-ES\messages.json, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-BE\messages.json, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-CA\messages.json, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-CH\messages.json, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-FR\messages.json, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-LU\messages.json, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\it-CH\messages.json, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\it-IT\messages.json, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\pl\messages.json, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\pt\messages.json, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\pt-BR\messages.json, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\ru\messages.json, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\ru-MO\messages.json, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\tr-TR\messages.json, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\vi-VI\messages.json, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\zh-CN\messages.json, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\zh-TW\messages.json, In Quarantäne, [f777c231ea919c9a85c46c90d72bac54],
Physische Sektoren: 0
(No malicious items detected)
(end) AdwCleaner: Code:
# AdwCleaner v3.310 - Bericht erstellt am 29/09/2014 um 20:36:52
# Aktualisiert 12/09/2014 von Xplode
# Betriebssystem : Windows 8.1 (64 bits)
# Benutzername : Daniel Theis - DANS-PC
# Gestartet von : C:\Users\Daniel Theis\Downloads\AdwCleaner_3.310.exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\Users\Daniel Theis\AppData\Local\Pokki
Ordner Gelöscht : C:\Users\Public\Pokki
Datei Gelöscht : C:\Users\Public\Desktop\eBay.lnk
***** [ Tasks ] *****
***** [ Verknüpfungen ] *****
Verknüpfung Desinfiziert : C:\Users\Public\Desktop\Google Chrome.lnk
Verknüpfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk
Verknüpfung Desinfiziert : C:\Users\Daniel Theis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Verknüpfung Desinfiziert : C:\Users\Daniel Theis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
Verknüpfung Desinfiziert : C:\Users\Daniel Theis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Verknüpfung Desinfiziert : C:\Users\Daniel Theis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk
Verknüpfung Desinfiziert : C:\Users\Daniel Theis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk
***** [ Registrierungsdatenbank ] *****
Schlüssel Gelöscht : HKCU\Software\Classes\pokki
Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Pokki]
Schlüssel Gelöscht : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\IePluginServices
Schlüssel Gelöscht : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WindowsMangerProtect
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AA9A4890-4262-4441-8977-E2FFCBFB706C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AA9A4890-4262-4441-8977-E2FFCBFB706C}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AA9A4890-4262-4441-8977-E2FFCBFB706C}
Daten Wiederhergestellt : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
Schlüssel Gelöscht : HKCU\Software\Pokki
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Pokki
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.17278
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
-\\ Google Chrome v37.0.2062.124
[ Datei : C:\Users\Daniel Theis\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [5348 octets] - [29/09/2014 20:35:42]
AdwCleaner[S0].txt - [3480 octets] - [29/09/2014 20:36:52]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3540 octets] ########## JRT: Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.2.3 (09.27.2014:1)
OS: Windows 8.1 x64
Ran by Daniel Theis on 29.09.2014 at 20:45:39,15
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
~~~ Files
~~~ Folders
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 29.09.2014 at 20:48:11,86
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |