Hi. habe alle Tools laufen lassen, hier die logs:
1) mbam.txt Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 10.10.2014
Suchlauf-Zeit: 20:58:10
Logdatei: mbam.txt
Administrator: Ja
Version: 2.00.2.1012
Malware Datenbank: v2014.10.10.08
Rootkit Datenbank: v2014.10.08.01
Lizenz: Testversion
Malware Schutz: Aktiviert
Bösartiger Webseiten Schutz: Aktiviert
Self-protection: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Maren
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 366008
Verstrichene Zeit: 20 Min, 49 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristics: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registrierungsschlüssel: 37
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\CLASSES\CrossriderApp0061799.Sandbox, In Quarantäne, [d040f61d057778bedd611b0645bee41c],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\CLASSES\CrossriderApp0061799.Sandbox.1, In Quarantäne, [9878d63d215b65d186b849d825de54ac],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\19979, In Quarantäne, [8a86c64d9ddf47ef54af281611f2cb35],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\21636, In Quarantäne, [5db37c97473543f3c53e1a24aa59c53b],
PUP.Optional.MediaPlayer.A, HKLM\SOFTWARE\WOW6432NODE\videos MediaPlay-Air, In Quarantäne, [080853c0e894c76f73221c64d52f1ae6],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CrossriderApp0061799.Sandbox, In Quarantäne, [a66a7b98176584b20f2f45dcea19b848],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CrossriderApp0061799.Sandbox.1, In Quarantäne, [759b848fd9a3ef47ee50d051d132629e],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\GLOBALUPDATE\UPDATE, In Quarantäne, [47c9de354537082e11e061c1976c728e],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\INSTALLEDBROWSEREXTENSIONS\19979, In Quarantäne, [a0703fd458243ef821e27dc1fc077987],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\INSTALLEDBROWSEREXTENSIONS\21636, In Quarantäne, [dc34d93a512bf73f10f354ea847ff20e],
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLAPLUGINS\@staging.google.com/globalUpdate Update;version=10, In Quarantäne, [7b959281611b8da9eaac3a49d2326c94],
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLAPLUGINS\@staging.google.com/globalUpdate Update;version=4, In Quarantäne, [5eb2e62d7606a195d7c06e1546be11ef],
PUP.Optional.CrossRider, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\HQPureQualV1.8, In Quarantäne, [48c825ee8defd363eb1f809e58ab639d],
PUP.Optional.MediaPlayer.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\videos MediaPlay-Air, In Quarantäne, [0d03b55e700cf93d1186bcc49470e61a],
PUP.Optional.CrossRider, HKU\S-1-5-21-2554422928-2750808080-2067558058-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\HQPureQualV1.8, In Quarantäne, [ba567d962359a492db2f0a140ff4fc04],
PUP.Optional.MediaPlayer.A, HKU\S-1-5-21-2554422928-2750808080-2067558058-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\videos MediaPlay-Air, In Quarantäne, [1af6f61dfb81bf7776218ff15fa5fd03],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-2554422928-2750808080-2067558058-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\19979, In Quarantäne, [ca468f84aece4ee8842562b45ba8cc34],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-2554422928-2750808080-2067558058-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\21636, In Quarantäne, [cc4414ff0f6d05310a9fb06661a20cf4],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-2554422928-2750808080-2067558058-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\enter, In Quarantäne, [26ea27ec7c0069cd22f6710d6c986997],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-2554422928-2750808080-2067558058-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\HQPureQual, In Quarantäne, [f21ed53e6814ef47726a7e9d788b5ca4],
PUP.Optional.GlobalUpdate.T, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\globalUpdatem, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\CLASSES\globalUpdate.OneClickCtrl.10, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdate.OneClickCtrl.10, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5645E0E7-FC12-43BF-A6E4-F9751942B298}, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{5645E0E7-FC12-43BF-A6E4-F9751942B298}, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\CLASSES\globalUpdate.Update3WebControl.4, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdate.Update3WebControl.4, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{11111111-1111-1111-1111-110611171162}, In Quarantäne, [739d73a009733ef889601a06b74e926e],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\CLASSES\CLSID\{11111111-1111-1111-1111-110611171162}, In Quarantäne, [739d73a009733ef889601a06b74e926e],
Registrierungswerte: 1
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\GLOBALUPDATE\UPDATE|path, C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe, In Quarantäne, [47c9de354537082e11e061c1976c728e]
Registrierungsdaten: 0
(No malicious items detected)
Ordner: 21
PUP.Optional.OpenCandy, C:\Users\Maren\AppData\Roaming\OpenCandy, In Quarantäne, [d43ce330e399f73f1957677f1ee426da],
PUP.Optional.OpenCandy, C:\Users\Maren\AppData\Roaming\OpenCandy\9514E385E0D04851B12B3EDBD79885A7, In Quarantäne, [d43ce330e399f73f1957677f1ee426da],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\Download, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\Install, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\Offline, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\Offline\{B5DA1664-7457-40EC-A1DE-BFBF0F31BE86}, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\defaults, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\defaults\preferences, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\userCode, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\locale, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\locale\en-US, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin, In Quarantäne, [87895fb48fed2313226293736f9406fa],
Dateien: 143
PUP.Optional.GlobalUpdate.A, C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job, In Quarantäne, [c848d63da4d8ce682919a7daba4aea16],
PUP.Optional.GlobalUpdate.A, C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore, In Quarantäne, [d33dc94a5a22bc7a60e32e5314f04ab6],
PUP.Optional.GlobalUpdate.A, C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job, In Quarantäne, [a16f16fd6418290d9ea6d6ab61a3f30d],
PUP.Optional.GlobalUpdate.A, C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA, In Quarantäne, [6aa61ef5f08c32041a2b4140ae566898],
PUP.Optional.OpenCandy, C:\Users\Maren\AppData\Roaming\OpenCandy\9514E385E0D04851B12B3EDBD79885A7\TuneUpUtilities2013-2200217_de-DE.exe, In Quarantäne, [d43ce330e399f73f1957677f1ee426da],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleCrashHandler.exe, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleUpdate.exe, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleUpdateBroker.exe, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleUpdateHelper.msi, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleUpdateOnDemand.exe, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\goopdate.dll, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\goopdateres_en.dll, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\psmachine.dll, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\psuser.dll, In Quarantäne, [a26eb85b55272016c18620e08c77a25e],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome.manifest, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\install.rdf, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\47b705cce1e1f0cf8d6e2340d91dcf8b.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\5f859def0abce2d05f226b6183836abe.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\7718b6e3ee779faf446f89e8160fba3b.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\7adf2631e1d3593ed23f8954bd16e06c.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\86e517836c2ae128361ff8ffc4dced2d.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\background.html, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\browser.xul, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\d864c02c6c67e3af1d0db35cc1dc703a.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\dialog.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\ffCoreFilesIndex.txt, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\options.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\options.xul, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\search_dialog.xul, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\845fa57fe5b7bf02d043c4b9eae59e28.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\0c8f0c7fef6004ef3224b10836c04c81.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\109bb4475fcbf74eb8a99d25851e1566.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\2964aa643ab70d3c979a7915da18590c.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\3c9d3ed4b4d6528ba873880319ea4c52.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\4255c835b9cc27a7ef65d062a82b655e.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\42e8fb7c35a629414c0a06f080929e40.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\64e4664edd6d4b479f110a2910f570d8.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\6ffedd3fe64beaae1dbd30d6a52f9fce.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\8e902cd1c8d21efc60ac00328a7626a8.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\979dc98a177ede76700597194af27f6f.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\a4133b22c89af2d1336b4bd3fabba07d.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\bbede8bd236185cb0bb49b20d9d20184.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\cc0b2c9691d254808fdfe8515f0c4673.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\e2f048a4eba3eb584e752a9579062046.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\api\ef399b2b18cdceab51f7a20e3973592f.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\04f65a89ed2cbf5d4c0ec4a6c0247938.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\1a14f645cd1691763e7a5e83053ea039.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\2cc8dd81a4e35d3aa7d2a7427e51706a.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\35ebef292351b5fed394aa5e101ebe80.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\3684ae4985cb4ac87ce6b6399cddeec4.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\422be3cbe0e12529e880b9733202acc2.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\441a1afcec0e650018e8db2988329db3.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\469ea0b456efa59522ca3190165232a1.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\5587175f13ffe57e850fbb00c7cf2a31.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\5f7fb2de372420bc0c592bac60bf266e.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\8ded21d8ac05dfb6b5ace3989f4b7489.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\9019867ee5de18f3ed8d8fdaf53cf155.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\a77cf7654886d7ab665b9dd58b814d19.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\a7fff0878c8b6ba0dbef2a5d436bb388.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\be3ecb13ab537255f71e8b49fff73ccb.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\ccf1214ca95fab3048125acf39556104.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\d46b291be6d5bda62c3a52c28c248ba6.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\e925482e5e71e09d46b0bedd3e5170e0.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\f454eccf5d035636037097c1c7cbabbd.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\ffa5050ad517d414a1ce98a6f5d970dc.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\chrome\content\core\installer.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\defaults\preferences\prefs.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\manifest.xml, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins.json, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\242.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\102.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\104.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\119.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\123.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\13.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\14.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\155.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\16.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\17.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\178.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\179.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\180.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\184.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\189.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\190.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\191.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\195.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\198.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\217.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\220.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\221.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\223.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\226.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\231.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\232.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\234.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\244.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\246.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\260.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\262.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\263.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\266.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\268.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\273.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\275.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\281.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\284.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\286.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\288.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\289.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\291.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\300.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\302.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\4.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\47.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\64.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\7.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\78.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\9.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\91.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\plugins\93.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\userCode\background.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\extensionData\userCode\extension.js, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\locale\en-US\translations.dtd, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\button1.png, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\button2.png, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\button3.png, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\button4.png, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\button5.png, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\crossrider_statusbar.png, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\icon128.png, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\icon16.png, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\icon24.png, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\icon48.png, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\panelarrow-up.png, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\popup.html, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\skin.css, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.CrossRider, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\extensions\0b105cbff1eb40b89bca7dae371d@7ead239035fb4613ab38ef.com\skin\update.css, In Quarantäne, [87895fb48fed2313226293736f9406fa],
PUP.Optional.IStartSurf.A, C:\Users\Maren\AppData\Local\Google\Chrome\User Data\Default\Preferences, Gut: (), Schlecht: ( "startup_urls": [ "hxxp://www.istartsurf.com/?type=hp&ts=1408888994&from=tugs&uid=TOSHIBAXMQ01ABD050_52HAF89USXX52HAF89US" ],), Ersetzt,[3ad66da616669e98d7f41e2f0ef7e31d]
PUP.Optional.IStartSurf.A, C:\Users\Maren\AppData\Local\Google\Chrome\User Data\Default\Preferences, Gut: (), Schlecht: ( "homepage": "hxxp://www.istartsurf.com/?type=hp&ts=1408888994&from=tugs&uid=TOSHIBAXMQ01ABD050_52HAF89USXX52HAF89US",), Ersetzt,[0f0122f18defe5510cc0d479ae57b848]
PUP.Optional.CrossRider.A, C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.crossrider.bic", "148085569e82ed3530a58dd1ddf531c4");), Ersetzt,[e828749fe09c2016806d64ea08fd4eb2]
Physische Sektoren: 0
(No malicious items detected)
(end) 2) adwcleaner.txt Code:
# AdwCleaner v3.311 - Bericht erstellt am 10/10/2014 um 21:48:30
# Aktualisiert 30/09/2014 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzername : Maren - PAULCHEN
# Gestartet von : C:\Users\Maren\Downloads\AdwCleaner_3.311.exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\Program Files (x86)\globalUpdate
Ordner Gelöscht : C:\Program Files (x86)\Probit Software
Ordner Gelöscht : C:\Users\Maren\AppData\Local\globalUpdate
Ordner Gelöscht : C:\Users\Maren\AppData\Roaming\Probit Software
***** [ Tasks ] *****
Task Gelöscht : LaunchSignup
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.superfish.com
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622172299}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7D86A08B-0A8F-4BE0-B693-F05E6947E780}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622172299}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785}
Schlüssel Gelöscht : HKCU\Software\GlobalUpdate
Schlüssel Gelöscht : HKCU\Software\InstalledBrowserExtensions
Schlüssel Gelöscht : HKLM\SOFTWARE\GlobalUpdate
Schlüssel Gelöscht : HKLM\SOFTWARE\InstalledBrowserExtensions
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.17239
-\\ Mozilla Firefox v32.0.3 (x86 en-US)
[ Datei : C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\prefs.js ]
Zeile gelöscht : user_pref("browser.startup.homepage", "hxxps://ixquick.com/deu/");
Zeile gelöscht : user_pref("extensions.a0b105cbff1eb40b89bca7dae371d7ead239035fb4613ab38efcom61762.61762.internaldb.__ICM_LITE__blacklist_domain.value", "%7B%22SLIDERS%22%3A%5B%226pm.com%22%2C%22amazon.co.uk%22%2C%22a[...]
Zeile gelöscht : user_pref("extensions.a0b105cbff1eb40b89bca7dae371d7ead239035fb4613ab38efcom61762.61762.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D[...]
Zeile gelöscht : user_pref("extensions.a5c8764929678437cbd90994a5a82ac863d978ade40948f4c7f15bb3c4com61799.61799.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.co[...]
Zeile gelöscht : user_pref("extensions.crossrider.bic", "148085569e82ed3530a58dd1ddf531c4");
-\\ Google Chrome v37.0.2062.124
[ Datei : C:\Users\Maren\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [7397 octets] - [10/10/2014 21:44:23]
AdwCleaner[S0].txt - [7178 octets] - [10/10/2014 21:48:30]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [7238 octets] ########## 3) JRT.txt Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.3.2 (10.09.2014:1)
OS: Windows 7 Home Premium x64
Ran by Maren on 10.10.2014 at 22:00:19,81
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL
~~~ Registry Keys
~~~ Files
~~~ Folders
Successfully deleted: [Empty Folder] C:\Users\Maren\appdata\local\{23A8B627-387C-4A60-8A0E-840535A89112}
Successfully deleted: [Empty Folder] C:\Users\Maren\appdata\local\{27B45239-E9C6-4B3C-A138-77D477813B9B}
Successfully deleted: [Empty Folder] C:\Users\Maren\appdata\local\{57A8702A-B43D-4A6D-A1E2-1E846010B4F9}
Successfully deleted: [Empty Folder] C:\Users\Maren\appdata\local\{C8378ABD-E8B5-44C3-BCA7-0451E335DBA5}
Successfully deleted: [Empty Folder] C:\Users\Maren\appdata\local\{D11C2128-048A-4F72-9617-309544B8D99A}
Successfully deleted: [Empty Folder] C:\Users\Maren\appdata\local\{D524EDDC-188C-403A-95CB-6D98A6069990}
Successfully deleted: [Empty Folder] C:\Users\Maren\appdata\local\{D8CDF679-D296-4F2F-A3C2-6CBACCF86844}
Successfully deleted: [Empty Folder] C:\Users\Maren\appdata\local\{E77348CA-B0F7-4AE5-90DF-935AC0EB590A}
~~~ FireFox
Emptied folder: C:\Users\Maren\AppData\Roaming\mozilla\firefox\profiles\s358iv0h.default\minidumps [28 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 10.10.2014 at 22:11:25,70
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ 4) neues FRST.log
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 06-10-2014 01
Ran by Maren (administrator) on PAULCHEN on 10-10-2014 22:13:16
Running from C:\Users\Maren\Downloads
Loaded Profile: Maren (Available profiles: Maren)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
() C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender Safebox\safeboxservice.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Sony Corporation) C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe
(Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNService.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCPerfService.exe
(Sony of America Corporation) C:\Program Files\Sony\VAIO Care\listener.exe
(ArcSoft, Inc.) C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSystemTray.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe
(Microsoft Corporation) C:\Windows\System32\vds.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update Common\VUAgent.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAdmin.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Improvement\vim.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Improvement\vim.exe
(Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1156712 2012-03-13] (Realtek Semiconductor)
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [1020576 2012-02-23] (Atheros Communications)
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [800416 2012-02-23] (Atheros Commnucations)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2885904 2012-03-13] (Synaptics Incorporated)
HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe [1621072 2014-10-07] (Bitdefender)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-11-29] (Intel Corporation)
HKLM-x32\...\Run: [ISBMgr.exe] => C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe [60552 2011-09-20] (Sony Corporation)
HKLM-x32\...\Run: [PMBVolumeWatcher] => c:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [693608 2012-02-21] (Sony Corporation)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-05-31] (Apple Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2554422928-2750808080-2067558058-1001\...\Run: [Bitdefender Wallet Agent] => C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe [780080 2014-10-07] (Bitdefender)
ShellIconOverlayIdentifiers: [__SafeBox1] -> {152C96EB-288E-4EDC-B7C6-D21F8250ADF3} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll (Bitdefender)
ShellIconOverlayIdentifiers: [__SafeBox2] -> {342DAA0B-D796-460D-8566-901E08A1CCAD} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll (Bitdefender)
ShellIconOverlayIdentifiers: [__SafeBox3] -> {57595DAE-1AE1-4D97-A49E-67CBB53B52DF} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll (Bitdefender)
ShellIconOverlayIdentifiers: [__SafeBox4] -> {33816773-98AE-4723-ADE0-EBE54C8B5A67} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll (Bitdefender)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://sony.msn.com
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
URLSearchHook: HKCU - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
URLSearchHook: HKCU - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKCU - {B27791E9-4350-4B8E-8C3A-2D165FC84F15} URL = hxxp://rover.ebay.com/rover/1/707-37276-16609-27/4?mpre=hxxp://shop.ebay.de/?oemInLn=ieSrch-Q212&_nkw={searchTerms}
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKLM - Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll (Bitdefender)
Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM-x32 - Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll (Bitdefender)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()
FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/JavaPlugin -> C:\Program Files (x86)\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @playstation.com/PsndlCheck,version=1.00 -> C:\Program Files (x86)\Sony\PLAYSTATION Network Downloader\nppsndl.dll (Sony Computer Entertainment Inc.)
FF Plugin-x32: @SonyCreativeSoftware.com/Media Go,version=1.0 -> C:\Program Files (x86)\Sony\Media Go\npmediago.dll (Sony Network Entertainment International LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF SearchPlugin: C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\searchplugins\ixquick-https---deutsch.xml
FF Extension: openinchromegriffeltavlawordpresscom - C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\Extensions\openinchrome@griffeltavla.wordpress.com [2014-10-03]
FF Extension: 065ee92aad5742a2b6d5466b6fd8e24d - C:\Users\Maren\AppData\Roaming\Mozilla\Firefox\Profiles\s358iv0h.default\Extensions\{065ee92a-ad57-42a2-b6d5-466b6fd8e24d} [2014-09-11]
FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2015\bdtbext
FF Extension: Bitdefender Antispam Toolbar - C:\Program Files\Bitdefender\Bitdefender 2015\bdtbext [2014-08-21]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor
FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2012-07-09]
FF HKLM-x32\...\Firefox\Extensions: [bdwteff@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwteff
FF Extension: Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwteff [2014-08-21]
FF HKLM-x32\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2015\bdtbext
Chrome:
=======
CHR HomePage: Default ->
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.102\PepperFlash\pepflashplayer.dll No File
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.102\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.102\pdf.dll No File
CHR Plugin: (McAfee SiteAdvisor) - C:\Users\Maren\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.6.2.1341_1\McChPlg.dll No File
CHR Plugin: (Java Deployment Toolkit 7.0.10.8) - C:\Program Files (x86)\Java\jre7\bin\new_plugin\npdeployJava1.dll (Oracle Corporation)
CHR Plugin: (Java(TM) Platform SE 7 U1) - C:\Program Files (x86)\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation)
CHR Plugin: (Adobe Acrobat) - c:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File
CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.)
CHR Plugin: (Media Go Detector) - C:\Program Files (x86)\Sony\Media Go\npmediago.dll (Sony Network Entertainment International LLC)
CHR Plugin: (PlayStation(R)Network Downloader Check Plug-in) - C:\Program Files (x86)\Sony\PLAYSTATION Network Downloader\nppsndl.dll (Sony Computer Entertainment Inc.)
CHR Plugin: (Windows Live™ Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll ( Microsoft Corporation)
CHR Plugin: (McAfee SecurityCenter) - c:\progra~2\mcafee\msc\npmcsn~1.dll No File
CHR Profile: C:\Users\Maren\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Maren\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-08-01]
CHR Extension: (Google Drive) - C:\Users\Maren\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-08-01]
CHR Extension: (YouTube) - C:\Users\Maren\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-08-01]
CHR Extension: (Google-Suche) - C:\Users\Maren\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-08-01]
CHR Extension: (SiteAdvisor) - C:\Users\Maren\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2013-08-01]
CHR Extension: (Google Wallet) - C:\Users\Maren\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-10]
CHR Extension: (Google Mail) - C:\Users\Maren\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-08-01]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [106144 2012-02-23] (Atheros Commnucations) [File not signed]
S4 BdDesktopParental; C:\Program Files\Bitdefender\Bitdefender 2015\bdparentalservice.exe [78144 2014-10-07] (Bitdefender)
S3 DCDhcpService; C:\Program Files\Sony\VAIO Smart Network\WFDA\DCDhcpService.exe [112256 2012-03-21] (Atheros Communication Inc.)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280 2012-03-13] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-03-13] (Intel Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1809720 2014-05-12] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [860472 2014-05-12] (Malwarebytes Corporation)
R2 PMBDeviceInfoProvider; c:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [473960 2012-02-21] (Sony Corporation)
R2 SafeBox; C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe [94624 2013-07-08] (Bitdefender)
R2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [260768 2011-11-30] (Sony Corporation)
R2 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [105024 2011-02-23] (ArcSoft, Inc.)
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe [67320 2014-10-07] (Bitdefender)
S3 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [960160 2011-12-29] (Sony Corporation)
R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe [1523752 2014-10-07] (Bitdefender)
R2 ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [158880 2012-02-23] (Atheros) [File not signed]
S2 McAfee SiteAdvisor Service; "C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc [X]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.)
R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [1260120 2014-08-30] (BitDefender)
R3 avchv; C:\Windows\System32\DRIVERS\avchv.sys [261056 2012-11-02] (BitDefender)
S3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [647752 2014-08-30] (BitDefender)
R1 BdfNdisf; c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys [93600 2013-11-13] (BitDefender LLC)
R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [107080 2012-10-29] (BitDefender LLC)
S3 bdfwfpf_pc; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys [121928 2013-07-02] (Bitdefender SRL)
S3 BDSandBox; C:\Windows\system32\drivers\bdsandbox.sys [82824 2013-11-04] (BitDefender SRL)
R1 BDVEDISK; C:\Windows\System32\DRIVERS\bdvedisk.sys [76944 2012-04-17] (BitDefender)
S3 BTATH_VDP; C:\Windows\System32\drivers\btath_vdp.sys [421664 2012-02-23] (Atheros)
R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [150256 2013-08-23] (BitDefender LLC)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-05-12] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [122584 2014-10-10] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2014-05-12] (Malwarebytes Corporation)
R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [419616 2014-08-30] (BitDefender S.R.L.)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-10-10 22:12 - 2014-10-10 22:12 - 00001741 _____ () C:\Users\Maren\Downloads\JRT.txt
2014-10-10 22:11 - 2014-10-10 22:11 - 00001741 _____ () C:\Users\Maren\Desktop\JRT.txt
2014-10-10 22:00 - 2014-10-10 22:00 - 00000000 ____D () C:\Windows\ERUNT
2014-10-10 21:57 - 2014-10-10 21:58 - 01705755 _____ (Thisisu) C:\Users\Maren\Downloads\JRT.exe
2014-10-10 21:53 - 2014-10-10 21:53 - 00007334 _____ () C:\Users\Maren\Downloads\AdwCleaner[S0].txt
2014-10-10 21:44 - 2014-10-10 21:49 - 00000000 ____D () C:\AdwCleaner
2014-10-10 21:42 - 2014-10-10 21:42 - 01375089 _____ () C:\Users\Maren\Downloads\AdwCleaner_3.311.exe
2014-10-10 21:40 - 2014-10-10 21:40 - 00046520 _____ () C:\Users\Maren\Downloads\mbam.txt
2014-10-10 20:55 - 2014-10-10 21:52 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-10-10 20:54 - 2014-10-10 20:54 - 00001106 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-10-10 20:54 - 2014-10-10 20:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-10-10 20:54 - 2014-10-10 20:54 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-10-10 20:54 - 2014-10-10 20:54 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-10-10 20:54 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-10-10 20:54 - 2014-05-12 07:26 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-10-10 20:54 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-10-10 20:51 - 2014-10-10 20:52 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Maren\Downloads\mbam-setup-2.0.2.1012.exe
2014-10-09 22:46 - 2014-10-09 22:46 - 00045707 _____ () C:\Users\Maren\Downloads\combofix.txt
2014-10-09 22:17 - 2014-10-09 22:17 - 00045707 _____ () C:\ComboFix.txt
2014-10-09 21:55 - 2014-10-09 22:17 - 00000000 ____D () C:\Qoobox
2014-10-09 21:55 - 2014-10-09 22:14 - 00000000 ____D () C:\Windows\erdnt
2014-10-09 21:55 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe
2014-10-09 21:55 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe
2014-10-09 21:55 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-10-09 21:55 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-10-09 21:55 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-10-09 21:55 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe
2014-10-09 21:55 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe
2014-10-09 21:55 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe
2014-10-09 21:54 - 2014-10-09 21:54 - 00001441 _____ () C:\Users\Maren\Desktop\ComboFix.exe - Verknüpfung.lnk
2014-10-09 21:20 - 2014-10-09 21:20 - 05582481 ____R (Swearware) C:\Users\Maren\Desktop\ComboFix.exe
2014-10-09 20:56 - 2014-10-09 20:56 - 00001268 _____ () C:\Users\Maren\Desktop\Revo Uninstaller.lnk
2014-10-09 20:56 - 2014-10-09 20:56 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2014-10-09 20:54 - 2014-10-09 20:55 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Maren\Downloads\revosetup95.exe
2014-10-08 15:19 - 2014-10-08 15:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2014-10-08 15:19 - 2014-10-08 15:19 - 00000000 ____D () C:\Program Files (x86)\7-Zip
2014-10-08 15:16 - 2014-10-08 15:16 - 01110476 _____ () C:\Users\Maren\Downloads\7z920.exe
2014-10-08 13:54 - 2014-10-08 15:23 - 00000000 ____D () C:\Users\Maren\Downloads\Gmer
2014-10-08 13:12 - 2014-10-08 13:12 - 00380416 _____ () C:\Users\Maren\Downloads\Gmer-19357.exe
2014-10-08 13:08 - 2014-10-08 13:08 - 00055697 _____ () C:\Users\Maren\Downloads\Addition.txt
2014-10-08 13:07 - 2014-10-10 22:13 - 00024082 _____ () C:\Users\Maren\Downloads\FRST.txt
2014-10-08 13:07 - 2014-10-10 22:13 - 00000000 ____D () C:\FRST
2014-10-08 13:05 - 2014-10-08 13:06 - 02109952 _____ (Farbar) C:\Users\Maren\Downloads\FRST64.exe
2014-10-08 13:00 - 2014-10-08 13:00 - 00000472 _____ () C:\Users\Maren\Downloads\defogger_disable.log
2014-10-08 13:00 - 2014-10-08 13:00 - 00000000 _____ () C:\Users\Maren\defogger_reenable
2014-10-08 12:58 - 2014-10-08 12:58 - 00050477 _____ () C:\Users\Maren\Downloads\Defogger.exe
2014-09-27 17:50 - 2014-09-27 17:50 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-10-10 22:12 - 2013-08-01 12:41 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-10-10 22:02 - 2012-08-14 18:23 - 00000000 ____D () C:\Users\Maren\AppData\Local\CrashDumps
2014-10-10 21:59 - 2009-07-14 06:45 - 00028624 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-10-10 21:59 - 2009-07-14 06:45 - 00028624 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-10-10 21:51 - 2013-08-01 12:41 - 00001104 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-10-10 21:51 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-10-10 21:51 - 2009-07-14 06:51 - 00079228 _____ () C:\Windows\setupact.log
2014-10-10 21:50 - 2012-07-09 17:57 - 01807117 _____ () C:\Windows\WindowsUpdate.log
2014-10-10 21:50 - 2010-11-21 05:47 - 00186882 _____ () C:\Windows\PFRO.log
2014-10-10 21:24 - 2012-07-09 18:41 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-10-10 21:20 - 2012-07-09 19:41 - 00000000 ____D () C:\Windows\uk
2014-10-09 22:17 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default
2014-10-09 22:10 - 2009-07-14 04:34 - 00000215 _____ () C:\Windows\system.ini
2014-10-09 22:08 - 2009-07-14 04:34 - 76283904 _____ () C:\Windows\system32\config\software.bak
2014-10-09 22:08 - 2009-07-14 04:34 - 22544384 _____ () C:\Windows\system32\config\system.bak
2014-10-09 22:08 - 2009-07-14 04:34 - 00524288 _____ () C:\Windows\system32\config\default.bak
2014-10-09 22:08 - 2009-07-14 04:34 - 00262144 _____ () C:\Windows\system32\config\security.bak
2014-10-09 22:08 - 2009-07-14 04:34 - 00262144 _____ () C:\Windows\system32\config\sam.bak
2014-10-09 21:56 - 2010-11-21 04:50 - 00000000 ____D () C:\Users\Administrator
2014-10-08 13:17 - 2014-08-21 19:59 - 00000000 ____D () C:\ProgramData\BDLogging
2014-10-08 13:00 - 2012-07-16 11:56 - 00000000 ____D () C:\Users\Maren
2014-10-07 20:57 - 2012-07-16 11:56 - 00000000 ____D () C:\Users\Maren\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-10-02 23:22 - 2014-09-08 15:18 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-25 14:24 - 2013-08-01 12:42 - 00002233 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-09-24 16:06 - 2012-07-09 18:41 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-24 16:06 - 2012-07-09 18:41 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-11 15:25 - 2012-07-09 18:41 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
Some content of TEMP:
====================
C:\Users\Maren\AppData\Local\Temp\Quarantine.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-07-03 19:39
==================== End Of Log ============================ --- --- ---
Ich hoffe du kannst damit was anfangen :)
Gruß Mary |