Hallo Schrauber,
vielen Dank für Deine Mühe. Hier kommen die Ergebnisse. Ich habe auf meinem PC 2 Bwenutzerprofile angelegt. Administrator und ein weiteres. Die suchläufe habe ich im Administratorprofil ausgeführt. Muß ich die in dem anderen Profil auch noch laufen lassen oder reicht das? Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 14.10.2014
Suchlauf-Zeit: 15:08:17
Logdatei: mbam.txt
Administrator: Ja
Version: 2.00.3.1025
Malware Datenbank: v2014.10.14.08
Rootkit Datenbank: v2014.10.11.01
Lizenz: Testversion
Malware Schutz: Aktiviert
Bösartiger Webseiten Schutz: Aktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Admin
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 402377
Verstrichene Zeit: 14 Min, 50 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(Keine schädliche Elemente erkannt)
Module: 0
(Keine schädliche Elemente erkannt)
Registrierungsschlüssel: 9
PUP.Optional.NewHub.A, HKLM\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\aoejbmmillcdifgagjpdlaamnalbielp, In Quarantäne, [f9a7c153dca0270fa97f8ef6d52ff907],
PUP.Optional.NewHub.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\aoejbmmillcdifgagjpdlaamnalbielp, In Quarantäne, [ccd473a1a2da74c20d1b9ce88183f20e],
PUP.Optional.SystemSpeedup, HKLM\SOFTWARE\WOW6432NODE\SYSTWEAK\ssd, In Quarantäne, [d0d0d73df785181e9e2bcf5817ec45bb],
PUP.Optional.NewHub.A, HKU\S-1-5-21-1901903680-3249174370-2502805026-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\GOOGLE\CHROME\EXTENSIONS\aoejbmmillcdifgagjpdlaamnalbielp, In Quarantäne, [851b4fc53547e650d0591074db29bc44],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-1901903680-3249174370-2502805026-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE\1I1T1Q1S, In Quarantäne, [bce4de366f0d5adc25d6dd6fbe45ea16],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-1901903680-3249174370-2502805026-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE, In Quarantäne, [c6dab75d1b616accae99263d8d7741bf],
PUP.Optional.SuperFish.A, HKU\S-1-5-21-1901903680-3249174370-2502805026-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\DOMSTORAGE\superfish.com, In Quarantäne, [257bf61e6f0ddc5a30491b0e30d3827e],
PUP.Optional.SystemSpeedup, HKU\S-1-5-21-1901903680-3249174370-2502805026-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SYSTWEAK\ssd, In Quarantäne, [307030e4c4b88fa75d6b6fb8bc47b34d],
PUP.Optional.Updater.A, HKU\S-1-5-21-1901903680-3249174370-2502805026-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\UpdaterEX, In Quarantäne, [257bd143b5c7a096390e8185fe0518e8],
Registrierungswerte: 1
PUP.Optional.InstallCore.A, HKU\S-1-5-21-1901903680-3249174370-2502805026-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE|tb, 0X2O1C0R2R1R, In Quarantäne, [c6dab75d1b616accae99263d8d7741bf]
Registrierungsdaten: 0
(Keine schädliche Elemente erkannt)
Ordner: 7
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.SystemSpeedup, C:\Users\Admin\AppData\Roaming\systweak\ssd, In Quarantäne, [e0c08c880d6f77bff06d48b99a696c94],
PUP.Optional.NewHub.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aoejbmmillcdifgagjpdlaamnalbielp, In Quarantäne, [3f617a9aed8fd16502eb24de93701fe1],
PUP.Optional.Updater.A, C:\Users\Admin\AppData\Roaming\UpdaterEX\UpdateProc, In Quarantäne, [257bd143b5c7a096390e8185fe0518e8],
Dateien: 157
PUP.Downloader.ZYL, C:\Users\Bastet\Pictures\liongdownload.exe, In Quarantäne, [227eb36188f440f6bfa2a72ba65a8e72],
PUP.Optional.CrossRider.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\searchplugins\search-the-web.xml, In Quarantäne, [c0e051c3f488280ea3bde55dd23133cd],
PUP.Optional.CrossRider.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\searchplugins\search-the-web.xml, In Quarantäne, [138df024ec90b5814a16ca78010242be],
PUP.Optional.NewHub.A, C:\Users\Admin\AppData\Local\nwhb-v9.4.15.crx, In Quarantäne, [6d33d242abd141f5d651eb99e420966a],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\023aa17ac9b4d4508214460a057f2270, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\03917a36200d6b64a86e895fc26a3262, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\059d0773476e585aaab0cb05f2d35011, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\0b12654c5711f7cde49ae8c25f3da38c.0, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\0c82e5b864501f211be07075dc4be877, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\163418f233affe8a749c669e663c7388, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\1c78e139180d5495e3e9d918bd0491ed, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\1d8668b7112e25597794b7cebaef26b4, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\863244884c13f5f32b09296c582fbdd7.0, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\8ac482009c24f4e3c08ceab6ad53837b, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\946f8b91f4c2038513723ed0309837da.0, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\991da48f15dc91020b5b839ffbcc1ec4.0, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\9d79a4bcf66a9569af94bfb1e9d9fffc, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\b0d04a379326cc971538f3ecc6e4945d.0, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\b1f765a691d33d70d825b5ee4d82a00a, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\b4fc19616a211ba1ce6fdeb987d83986, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\b70c539aa3601c1da3539ac2f6ef9954, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\c55aafcdfbc1b6c879184ff7c971e100.0, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\ca778d8032bff8589c9ea58165547209, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\41579272c0627956920ac60c2f3daffa, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\49e51fe4c47d07c6a4df0cb31a1bc92d, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\4d03df8bfdede597b47e63f6714f6aa5, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\4d112a27a725b7d2d9e7487c4c114214.0, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\5d5ae10d9dbf6c32b9e724ee97183bb1.0, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\612dc44b76ebf053257ba62b314ae79c, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\76f7a8b58c0f3555093caf4d120d7b09, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\78529f8901b92f0cd38ca25e572561b4.0, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\7cde12a35df366d4aa534b69b453c92e.0, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\7f26d2753138a5ebec0c48f6ece74ecb.0, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\8605190db1a4b0b68eaec697f0ccabca, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\2249a842b96cba2639b51b15ab7d676e.0, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\2307328ea5b85f50ab61208ede74b646, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\25b1261278723124ba1019e877fb61f0, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\28dca5044d0a6441e2038be08cb826f7, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\2eff0691e1573f5c0d873e9db3696c18, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\313c238dc888c75cb26d7ff7a7f4b20d.0, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\336bc4e68681b52d6f56a2b42c26f92b.0, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\3513a4759c9e63e788687765924cdf4b, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\38e57055c77d685cb6a4002b23e54fc3, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\3f10c0f0b60ea2b5efa2d3278e712442, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\cc1cadc55dcfeab42c71ddc651b9fe75.0, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\cfbf9dd3ed978b23c1976cf9c7fe11bc, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\d27d4ff2a66b4ce77fe249c7ab0bfa37, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\d29b31cf195edad59abbff37dc1ba2fd, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\d33f53719b1950985d633c5abf5a610c, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\d46deb45f2b0c6145a71d5ed76b9c1b3, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\e317a556707197fcc3cea7c5baa6355b.0, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\e451021fc5c21df4aac3dabe09e5aa56.0, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\e82234db721e302dfb76b032df6228b2, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\ec933e0432b5461997a2523f42e1a674, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\f27443640b9d518de03b5040b1aee086, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\fb278845d49896d2b3b87fdcb5103ab7, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\tb.xml, In Quarantäne, [dec26ca8a1db171f211e9c52a2602cd4],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\0100070592e1361ff0095a70e12a8e88.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\023aa17ac9b4d4508214460a057f2270, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\03917a36200d6b64a86e895fc26a3262, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\059d0773476e585aaab0cb05f2d35011, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\0879abcb0b556f43130e09a19c2167ed.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\0b12654c5711f7cde49ae8c25f3da38c.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\0c82e5b864501f211be07075dc4be877, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\163418f233affe8a749c669e663c7388, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\1c78e139180d5495e3e9d918bd0491ed, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\1d8668b7112e25597794b7cebaef26b4, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\863244884c13f5f32b09296c582fbdd7.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\899740369a631c4b8a713ccb7c49b4ab, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\8ac482009c24f4e3c08ceab6ad53837b, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\92865d0552a95b43016a83e316670757, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\93c8ae032116cafd334f3a47efa3cb4f.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\946f8b91f4c2038513723ed0309837da.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\95be336a9d1fc1c98b31a03732905b2a, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\991da48f15dc91020b5b839ffbcc1ec4.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\9cf0e3a9013019a82c4658bd3eeb538f, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\9d3c1de86141343479116b8eded49b3e.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\9d74bc233d5f4b79f8a7f331b681f261.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\9d79a4bcf66a9569af94bfb1e9d9fffc, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\41579272c0627956920ac60c2f3daffa, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\48cb8e496a08497f3ed4f8fd6a2e14c7.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\49e51fe4c47d07c6a4df0cb31a1bc92d, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\4a2b0b1be67c9f2fc2c2f10bbed4796b.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\4d03df8bfdede597b47e63f6714f6aa5, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\4d112a27a725b7d2d9e7487c4c114214.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\5b71431ff225e02a2ed19e3ca7c708a1.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\5c0fdd894ec6e7d8f1c82473519d4c40.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\5d5ae10d9dbf6c32b9e724ee97183bb1.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\612dc44b76ebf053257ba62b314ae79c, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\cc1cadc55dcfeab42c71ddc651b9fe75.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\cfbf9dd3ed978b23c1976cf9c7fe11bc, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\d27d4ff2a66b4ce77fe249c7ab0bfa37, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\d29b31cf195edad59abbff37dc1ba2fd, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\d33f53719b1950985d633c5abf5a610c, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\d42c7c2f9e879ee06554b93395fa805c.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\d46deb45f2b0c6145a71d5ed76b9c1b3, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\d5c005b2e6e2c84930ba26611ad0a8b4.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\1edc728ae2aafe4ffcc80ec906fd5451.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\2079d31e92813551c2cb0156526d49e6.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\2249a842b96cba2639b51b15ab7d676e.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\2307328ea5b85f50ab61208ede74b646, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\25b1261278723124ba1019e877fb61f0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\26082a533fcc92d401bc2561cd0ec0ed.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\27c07290d762f3198e96f5455f6ff4e1.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\28dca5044d0a6441e2038be08cb826f7, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\294e94d3b684329dad89a56c7222553b, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\3f10c0f0b60ea2b5efa2d3278e712442, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\a4febc43524335355f11b81f17d01777.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\aa1cdd458b2c615c233082744edee192.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\af684ac0d2d5530df5c289fe5a957df2.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\b0d04a379326cc971538f3ecc6e4945d.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\b1f765a691d33d70d825b5ee4d82a00a, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\b4fc19616a211ba1ce6fdeb987d83986, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\b70c539aa3601c1da3539ac2f6ef9954, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\bb9ce8b3027e9b6b8cb990fd960caeb9.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\bdc224cda67b116ee275826c5ba5fc68.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\be65b7b9edba5d8f15a170b3466c1c27.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\c55aafcdfbc1b6c879184ff7c971e100.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\c9ff927ea04fa09195723465891e22dc, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\ca778d8032bff8589c9ea58165547209, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\61dcf07d1eb17b097bf523056df61c80.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\665dd649699b9f8bec71b76234520468.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\741903e66785c0f02125fdcfa662c45b, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\76f7a8b58c0f3555093caf4d120d7b09, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\78529f8901b92f0cd38ca25e572561b4.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\7a3d01d801d2b912f9368e5461a3ebc8.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\7cde12a35df366d4aa534b69b453c92e.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\7f26d2753138a5ebec0c48f6ece74ecb.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\82583e2365b0262c58811ab05becf741.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\8605190db1a4b0b68eaec697f0ccabca, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\2eff0691e1573f5c0d873e9db3696c18, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\313c238dc888c75cb26d7ff7a7f4b20d.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\336bc4e68681b52d6f56a2b42c26f92b.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\33c9c8a5cd03db7d99db2ea8ceba5cd5, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\3513a4759c9e63e788687765924cdf4b, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\3553447953c29ec69bc189ee095c5a05.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\38e57055c77d685cb6a4002b23e54fc3, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\3d6c446c4c469af9585cf1752349a480.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\e317a556707197fcc3cea7c5baa6355b.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\e451021fc5c21df4aac3dabe09e5aa56.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\e7479970e3c4e3cf9c80b2ec4e1efd96.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\e82234db721e302dfb76b032df6228b2, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\ec933e0432b5461997a2523f42e1a674, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\efaa0b2054a1c67acd1419114e1a6cc0.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\f0097b7e4ba2bcce49b73ed0745e00d4.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\f27443640b9d518de03b5040b1aee086, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\fb278845d49896d2b3b87fdcb5103ab7, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\fddf958a148f8c337282a6f0ef5716e4.0, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.FreeCauseTB.A, C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB\{afe43e80-0abc-4df2-81a0-3fe44b74abe8}\62781\tb.xml, In Quarantäne, [762acd47bac2a78fc778f4fa1ae827d9],
PUP.Optional.SystemSpeedup, C:\Users\Admin\AppData\Roaming\systweak\ssd\SSDPTstub.exe, In Quarantäne, [e0c08c880d6f77bff06d48b99a696c94],
PUP.Optional.NewHub.A, C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aoejbmmillcdifgagjpdlaamnalbielp\dt.dat, In Quarantäne, [3f617a9aed8fd16502eb24de93701fe1],
PUP.Optional.Updater.A, C:\Users\Admin\AppData\Roaming\UpdaterEX\UpdateProc\config.dat, In Quarantäne, [257bd143b5c7a096390e8185fe0518e8],
PUP.Optional.Updater.A, C:\Users\Admin\AppData\Roaming\UpdaterEX\UpdateProc\info.dat, In Quarantäne, [257bd143b5c7a096390e8185fe0518e8],
PUP.Optional.Updater.A, C:\Users\Admin\AppData\Roaming\UpdaterEX\UpdateProc\prod.dat, In Quarantäne, [257bd143b5c7a096390e8185fe0518e8],
PUP.Optional.Updater.A, C:\Users\Admin\AppData\Roaming\UpdaterEX\UpdateProc\STTL.DAT, In Quarantäne, [257bd143b5c7a096390e8185fe0518e8],
PUP.Optional.Updater.A, C:\Users\Admin\AppData\Roaming\UpdaterEX\UpdateProc\TTL.DAT, In Quarantäne, [257bd143b5c7a096390e8185fe0518e8],
PUP.Optional.Updater.A, C:\Users\Admin\AppData\Roaming\UpdaterEX\UpdateProc\UpdateTask.exe, In Quarantäne, [257bd143b5c7a096390e8185fe0518e8],
Physische Sektoren: 0
(Keine schädliche Elemente erkannt)
(end) Code:
# AdwCleaner v4.000 - Bericht erstellt am 14/10/2014 um 15:46:24
# DB v2014-10-13.5
# Aktualisiert 12/10/2014 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzername : Admin - ANGELIKA
# Gestartet von : C:\Users\Admin\Desktop\AdwCleaner_4.000.exe
# Option : Löschen
***** [ Dienste ] *****
[#] Dienst Gelöscht : Partner Service
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\FCTB
Ordner Gelöscht : C:\Users\Bastet\AppData\Roaming\Mozilla\Firefox\Profiles\sfon7koq.default\FCTB
Ordner Gelöscht : C:\Users\Admin\AppData\Roaming\iWin
Ordner Gelöscht : C:\Users\Bastet\AppData\Roaming\iWin
Ordner Gelöscht : C:\ProgramData\Partner
Ordner Gelöscht : C:\Users\Admin\AppData\Roaming\Systweak
Ordner Gelöscht : C:\ProgramData\Trymedia
Ordner Gelöscht : C:\Users\Admin\AppData\Roaming\UpdaterEX
Datei Gelöscht : C:\Windows\System32\roboot64.exe
Datei Gelöscht : C:\Users\Admin\Favorites\Startfenster.lnk
Datei Gelöscht : C:\Users\Admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Startfenster.lnk
Datei Gelöscht : C:\Users\Admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Startfenster.lnk
Datei Gelöscht : C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Startfenster.lnk
Datei Gelöscht : C:\Users\Admin\Desktop\Startfenster.lnk
Datei Gelöscht : C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\user.js
***** [ Tasks ] *****
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\kt_bho_dll.dll
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\kt_bho.KettleBho
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\kt_bho.KettleBho.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\MegaBrowse_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\MegaBrowse_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\systweakasp_rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\systweakasp_rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\updateMegaBrowse_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\updateMegaBrowse_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\utilMegaBrowse_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\utilMegaBrowse_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{28A88B70-D874-4F73-BBBA-9B2B222FB7D6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{86676E13-D6D8-4652-9FCF-F2047F1FB000}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Schlüssel Gelöscht : HKCU\Software\systweak
Schlüssel Gelöscht : HKCU\Software\UpdaterEX
Schlüssel Gelöscht : HKLM\SOFTWARE\systweak
Schlüssel Gelöscht : HKLM\SOFTWARE\Trymedia Systems
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.16428
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
-\\ Mozilla Firefox v32.0.3 (x86 de)
[d2wo7w4e.default] - Zeile gelöscht : user_pref("browser.startup.homepage", "hxxp://www.startfenster.de");
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.AutoSearchEventData", "auto%20search");
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.ClearCacheDate", 14);
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.DNSCatch", false);
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.DisplayEULA", false);
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.DnsCatchEventData", "dns%20catch");
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.FirstLaunchShown", true);
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.LoadLayoutDate.62781", 14);
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.NewTabSearchEventData", "tab%20search");
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.ShowRecommendedOptions", true);
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.StateReportDate", "1413215352214");
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.TopRightSearchEventData", "top%20right%20search");
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.beforeInstallSaved", true);
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.beforeinstall.homepage", "www.google.de");
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.beforeinstall.search", "Google");
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.comp.affiliate.2810218.disabled", false);
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.customNewTab", true);
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.helpUsImprove", true);
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.hideOthers", false);
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.processAddrBar", true);
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.restoreSearch", false);
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.searchHistory", false);
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.session", "58D09689DC5BE31CBE0D2859132E9A502532F67CE11E79D22F1A3F4F6C6B4BCF6DDA2C45629ABF697807A8F6D2A758BC8104320523F9EBC390AAD06D8CE4BBDD");
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.showFirstLaunchOptions", false);
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.tb_lang", "en");
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.tool_id", "62781");
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_id", "85119746");
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_key", "2151fa21b376b217e389ef8d27c881d68d42a938");
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_layouts", "62781");
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_lnames", "Gamers%20Unite%21%20Snag%20Bar");
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.xml_service_url", "64e3a27980eeceb34248bc3e680b4e63");
[d2wo7w4e.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.yahooSearch", true);
[d2wo7w4e.default] - Zeile gelöscht : user_pref("keyword.URL", "hxxp://www.sm.de/?q=");
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.AutoSearchEventData", "auto%20search");
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.ClearCacheDate", 13);
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.DNSCatch", false);
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.DisplayEULA", false);
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.DnsCatchEventData", "dns%20catch");
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.FirstLaunchShown", true);
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.LoadLayoutDate.62781", 13);
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.NewTabSearchEventData", "tab%20search");
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.ShowDescriptiveText", true);
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.ShowRecommendedOptions", true);
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.StateReportDate", "1413213128687");
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.TopRightSearchEventData", "top%20right%20search");
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.beforeInstallSaved", true);
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.beforeinstall.homepage", "www.google.de");
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.beforeinstall.search", "Google");
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.comp.affiliate.2810218.disabled", false);
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.customNewTab", true);
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.helpUsImprove", true);
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.hideOthers", false);
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.processAddrBar", true);
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.restoreSearch", false);
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.searchHistory", false);
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.session", "58D09689DC5BE31CBE0D2859132E9A502532F67CE11E79D22F1A3F4F6C6B4BCF6DDA2C45629ABF697807A8F6D2A758BC8104320523F9EBC390AAD06D8CE4BBDD");
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.showFirstLaunchOptions", false);
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.tb_lang", "en");
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.tool_id", "62781");
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_id", "85120638");
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_key", "5a5a3ee5a976f354d88634260dc3ff354888aa67");
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_layouts", "62781");
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.user_lnames", "Gamers%20Unite%21%20Snag%20Bar");
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.xml_service_url", "64e3a27980eeceb34248bc3e680b4e63");
[sfon7koq.default] - Zeile gelöscht : user_pref("freecauseafe43e800abc4df281a03fe44b74abe8.yahooSearch", true);
-\\ Google Chrome v
*************************
AdwCleaner[R0].txt - [12907 octets] - [14/10/2014 15:38:50]
AdwCleaner[S0].txt - [12624 octets] - [14/10/2014 15:46:24]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [12685 octets] ########## Hallo Schrauber,
weiter gehts. Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.3.3 (10.14.2014:1)
OS: Windows 7 Home Premium x64
Ran by Admin on 14.10.2014 at 15:59:23,02
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key - Orphan] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}
Successfully deleted: [Registry Key - Orphan] HKEY_CLASSES_ROOT\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}
Successfully deleted: [Registry Key - Orphan] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}
Successfully deleted: [Registry Key - Orphan] HKEY_CLASSES_ROOT\CLSID\{5C255C8A-E604-49b4-9D64-90988571CECB}
~~~ Files
Successfully deleted: [File] "C:\Users\Admin\favorites\links\startfenster.lnk"
~~~ Folders
~~~ FireFox
Successfully deleted: [File] C:\Users\Admin\AppData\Roaming\mozilla\firefox\profiles\d2wo7w4e.default\searchplugins\search-the-web.xml
Successfully deleted: [Folder] C:\Users\Admin\AppData\Roaming\mozilla\firefox\profiles\d2wo7w4e.default\fctb
Emptied folder: C:\Users\Admin\AppData\Roaming\mozilla\firefox\profiles\d2wo7w4e.default\minidumps [3 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 14.10.2014 at 16:03:30,03
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-10-2014 02
Ran by Admin (administrator) on ANGELIKA on 14-10-2014 16:13:08
Running from C:\Users\Admin\Desktop
Loaded Profiles: Admin & UpdatusUser (Available profiles: Admin & UpdatusUser & Bastet)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
(Acer Incorporated) C:\Program Files (x86)\eMachines\Registration\GregHSRW.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\ccSvcHst.exe
(RealNetworks, Inc.) C:\Program Files (x86)\Online Games Manager\ogmservice.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
() C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Intenium) C:\Program Files (x86)\OXXOGames\GPlayer\GameCenterNotifier.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
() C:\Program Files (x86)\eMachines\Hotkey Utility\HotkeyUtility.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [9608224 2009-11-17] (Realtek Semiconductor)
HKLM-x32\...\Run: [Hotkey Utility] => C:\Program Files (x86)\eMachines\Hotkey Utility\HotkeyUtility.exe [469536 2009-11-25] ()
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31072 2008-10-25] (Microsoft Corporation)
HKU\S-1-5-21-1901903680-3249174370-2502805026-1001\...\Run: [swg] => C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2010-02-05] (Google Inc.)
HKU\S-1-5-21-1901903680-3249174370-2502805026-1001\...\Run: [Spiele Post] => C:\Program Files (x86)\OXXOGames\GPlayer\GameCenterNotifier.exe [483400 2013-12-06] (Intenium)
HKU\S-1-5-21-1901903680-3249174370-2502805026-1003\...\RunOnce: [ScrSav] => C:\Program Files (x86)\eMachines\Screensaver\run_eMachines.exe [162336 2009-07-22] ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - {D4D96C01-CF46-40CF-B535-CB8D81CE1139} URL = hxxp://www.sm.de/?q={searchTerms}
SearchScopes: HKLM-x32 - {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACEW
SearchScopes: HKCU - {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACEW_deDE579
SearchScopes: HKCU - {D4D96C01-CF46-40CF-B535-CB8D81CE1139} URL = hxxp://www.sm.de/?q={searchTerms}
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg64.dll (Google Inc.)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Symantec NCO BHO -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\coIEPlg.dll (Symantec Corporation)
BHO-x32: Symantec Intrusion Prevention -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\IPSBHO.DLL (Symantec Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll (Google Inc.)
BHO-x32: Google Dictionary Compression sdch -> {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} -> C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll (Google Inc.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\coIEPlg.dll (Symantec Corporation)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Handler: symres - {AA1061FE-6C41-421f-9344-69640C9732AB} - No File
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation)
Handler-x32: symres - {AA1061FE-6C41-421f-9344-69640C9732AB} - C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\coIEPlg.dll (Symantec Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default
FF DefaultSearchEngine: SuchMaschine
FF SearchEngineOrder.1: SuchMaschine
FF SelectedSearchEngine: SuchMaschine
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\d2wo7w4e.default\searchplugins\search_engine.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
Chrome:
=======
CHR Profile: C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Docs) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-03-13]
CHR Extension: (Google Drive) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-03-13]
CHR Extension: (YouTube) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-03-13]
CHR Extension: (Google Search) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-03-13]
CHR Extension: (Google Wallet) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-03-13]
CHR Extension: (Gmail) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-03-13]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [160048 2014-08-27] (Avira Operations GmbH & Co. KG)
R2 ForceWare Intelligent Application Manager (IAM); C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [626208 2009-08-11] ()
R2 Greg_Service; C:\Program Files (x86)\eMachines\Registration\GregHSRW.exe [1150496 2009-08-28] (Acer Incorporated)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-10-01] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [968504 2014-10-01] (Malwarebytes Corporation)
R2 Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\16.7.0.30\ccSvcHst.exe [117640 2010-02-05] (Symantec Corporation)
R2 nSvcIp; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe [206880 2009-08-11] ()
R2 ogmservice; C:\Program Files (x86)\Online Games Manager\ogmservice.exe [581568 2014-03-27] (RealNetworks, Inc.)
S2 Updater Service; C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe [240160 2009-07-04] (Acer)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-10-01] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2014-10-14] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2014-10-01] (Malwarebytes Corporation)
S1 SRTSP; C:\Windows\system32\drivers\NISx64\1007000.01E\SRTSP64.SYS [476720 2010-02-05] (Symantec Corporation)
R1 SRTSPX; C:\Windows\system32\drivers\NISx64\1007000.01E\SRTSPX64.SYS [32304 2010-02-05] (Symantec Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20091101.004\ENG64.SYS [X]
S3 NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20091101.004\EX64.SYS [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-10-14 16:13 - 2014-10-14 16:13 - 00013235 _____ () C:\Users\Admin\Desktop\FRST.txt
2014-10-14 16:12 - 2014-10-14 16:12 - 02110464 _____ (Farbar) C:\Users\Admin\Desktop\FRST64.exe
2014-10-14 16:03 - 2014-10-14 16:03 - 00001676 _____ () C:\Users\Admin\Desktop\JRT.txt
2014-10-14 15:59 - 2014-10-14 15:59 - 00000000 ____D () C:\Windows\ERUNT
2014-10-14 15:56 - 2014-10-14 15:56 - 01705698 _____ (Thisisu) C:\Users\Admin\Desktop\JRT.exe
2014-10-14 15:50 - 2014-10-14 15:50 - 00012774 _____ () C:\Users\Admin\Desktop\AdwCleaner[S0].txt
2014-10-14 15:38 - 2014-10-14 15:46 - 00000000 ____D () C:\AdwCleaner
2014-10-14 15:37 - 2014-10-14 15:37 - 01976320 _____ () C:\Users\Admin\Desktop\AdwCleaner_4.000.exe
2014-10-14 15:04 - 2014-10-14 15:49 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-10-14 15:04 - 2014-10-14 15:04 - 00001115 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-10-14 15:04 - 2014-10-14 15:04 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-10-14 15:04 - 2014-10-14 15:04 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-10-14 15:04 - 2014-10-01 11:11 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-10-14 15:04 - 2014-10-01 11:11 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-10-14 15:04 - 2014-10-01 11:11 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-10-14 14:59 - 2014-10-14 14:59 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\Admin\Downloads\mbam-setup-2.0.3.1025.exe
2014-10-13 18:20 - 2014-10-13 18:20 - 00012715 _____ () C:\ComboFix.txt
2014-10-13 17:58 - 2014-10-13 18:20 - 00000000 ____D () C:\Qoobox
2014-10-13 17:58 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe
2014-10-13 17:58 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe
2014-10-13 17:58 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-10-13 17:58 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-10-13 17:58 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-10-13 17:58 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe
2014-10-13 17:58 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe
2014-10-13 17:58 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe
2014-10-13 17:57 - 2014-10-13 18:17 - 00000000 ____D () C:\Windows\erdnt
2014-10-13 17:56 - 2014-10-13 17:57 - 05582915 ____R (Swearware) C:\Users\Admin\Desktop\ComboFix.exe
2014-10-13 17:19 - 2014-10-13 17:19 - 05582915 _____ (Swearware) C:\Users\Bastet\Desktop\ComboFix.exe
2014-10-11 20:40 - 2014-10-11 20:40 - 00031388 _____ () C:\Users\Bastet\Desktop\Addition.txt
2014-10-11 20:38 - 2014-10-11 20:40 - 00019687 _____ () C:\Users\Bastet\Desktop\FRST.txt
2014-10-11 20:37 - 2014-10-14 16:13 - 00000000 ____D () C:\FRST
2014-10-11 20:35 - 2014-10-11 20:35 - 02109952 _____ (Farbar) C:\Users\Bastet\Desktop\FRST64.exe
2014-10-11 20:31 - 2014-10-11 20:32 - 02109952 _____ (Farbar) C:\Users\Bastet\Downloads\FRST64(1).exe
2014-10-11 20:28 - 2014-10-11 20:28 - 02109952 _____ (Farbar) C:\Users\Bastet\Downloads\FRST64.exe
2014-10-11 17:46 - 2014-10-11 17:46 - 00000000 ___HD () C:\Users\Bastet\AppData\Roaming\Mowilbt
2014-10-11 12:56 - 2014-10-13 11:03 - 00000000 ___HD () C:\Users\Bastet\AppData\Roaming\Vacica
2014-10-10 14:33 - 2014-10-13 17:25 - 00000000 ____D () C:\ProgramData\vmomul
2014-10-10 09:17 - 2014-10-12 12:04 - 00000000 ___HD () C:\Users\Bastet\AppData\Local\Tqispkicvn
2014-10-09 23:19 - 2014-10-09 23:21 - 00000000 ___HD () C:\Users\Bastet\AppData\Roaming\Qkgjcau
2014-10-07 16:30 - 2014-10-07 16:30 - 00000753 _____ () C:\Users\Bastet\Desktop\Pharao.lnk
2014-10-07 16:29 - 2014-10-07 16:29 - 00000000 ____D () C:\Users\Bastet\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2014-10-07 16:06 - 2014-10-07 16:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sierra
2014-09-27 15:01 - 2014-09-27 15:01 - 00003036 _____ () C:\Windows\System32\Tasks\{D274B684-3FD5-480A-B289-32352445C37C}
2014-09-27 14:48 - 2014-09-27 14:48 - 00000000 ____D () C:\SIERRA
2014-09-27 14:48 - 2014-09-27 14:48 - 00000000 ____D () C:\Program Files (x86)\Sierra On-Line
2014-09-27 14:47 - 2014-10-07 16:06 - 00000302 _____ () C:\Windows\SIERRA.INI
2014-09-24 22:11 - 2014-09-24 22:11 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-09-21 00:40 - 2014-07-13 16:33 - 00001298 _____ () C:\Users\Bastet\Desktop\Ritter Arthur 4.lnk
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-10-14 15:55 - 2014-03-12 16:48 - 01242619 _____ () C:\Windows\WindowsUpdate.log
2014-10-14 15:55 - 2009-07-14 06:45 - 00009696 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-10-14 15:55 - 2009-07-14 06:45 - 00009696 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-10-14 15:48 - 2010-02-05 02:34 - 00268766 _____ () C:\Windows\PFRO.log
2014-10-14 15:48 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-10-14 15:48 - 2009-07-14 06:51 - 00066347 _____ () C:\Windows\setupact.log
2014-10-14 15:29 - 2014-03-14 23:47 - 00000000 ____D () C:\Windows\CheckSur
2014-10-14 15:18 - 2014-03-13 00:13 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-10-14 15:04 - 2010-02-05 02:48 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMachines
2014-10-14 10:18 - 2009-07-14 07:08 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-10-13 18:20 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default
2014-10-13 18:10 - 2009-07-14 04:34 - 00000215 _____ () C:\Windows\system.ini
2014-10-13 17:49 - 2014-03-15 19:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-10-13 17:32 - 2014-03-12 16:58 - 00000000 ____D () C:\Users\Admin
2014-10-10 21:49 - 2014-03-13 01:40 - 00699432 _____ () C:\Windows\system32\perfh007.dat
2014-10-10 21:49 - 2014-03-13 01:40 - 00149572 _____ () C:\Windows\system32\perfc007.dat
2014-10-10 21:49 - 2009-07-14 07:13 - 01620684 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-10-10 21:09 - 2010-02-05 02:42 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-09-27 14:45 - 2010-02-05 02:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMachines GameZone
2014-09-27 14:45 - 2010-02-05 02:35 - 00000000 ____D () C:\Program Files (x86)\eMachines GameZone
2014-09-27 14:45 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-09-26 10:31 - 2014-03-14 18:56 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-24 11:18 - 2014-03-13 00:13 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-24 11:18 - 2014-03-13 00:13 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-24 11:18 - 2014-03-13 00:13 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-09-23 23:11 - 2014-03-13 00:55 - 00000000 ____D () C:\Windows\System32\Tasks\Games
Some content of TEMP:
====================
C:\Users\Admin\AppData\Local\Temp\Quarantine.exe
C:\Users\Admin\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-10-07 16:51
==================== End Of Log ============================ --- --- ---
--- --- --- Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-10-2014 02
Ran by Admin at 2014-10-14 16:13:59
Running from C:\Users\Admin\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Norton Internet Security (Disabled - Up to date) {88C95A36-8C3B-2F2C-1B8B-30FCCFDC4855}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Norton Internet Security (Disabled - Up to date) {33A8BBD2-AA01-20A2-213B-0B8EB45B02E8}
FW: Norton Internet Security (Disabled) {B0F2DB13-C654-2E74-30D4-99C9310F0F2E}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
2007 Microsoft Office Suite Service Pack 2 (SP2) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}) (Version: - Microsoft)
2007 Microsoft Office Suite Service Pack 2 (SP2) (x32 Version: - Microsoft) Hidden
Acrobat.com (HKLM-x32\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.0.7220 - Adobe Systems Inc.)
Adobe AIR (x32 Version: 1.5.0.7220 - Adobe Systems Inc.) Hidden
Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.167 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.152 - Adobe Systems Incorporated)
Adobe Reader 9.5.5 MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-A91000000001}) (Version: 9.5.5 - Adobe Systems Incorporated)
Advertising Center (x32 Version: 0.0.0.2 - Nero AG) Hidden
Alice Greenfingers (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112920767}) (Version: - Oberon Media)
Amazonia (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11273477}) (Version: - Oberon Media)
Avira (HKLM-x32\...\{70e83cd8-4bd5-4039-ab5a-6b94a8abb641}) (Version: 1.1.21.25162 - Avira Operations GmbH & Co. KG)
Avira (x32 Version: 1.1.21.25162 - Avira Operations GmbH & Co. KG) Hidden
Biet-O-Matic v2.14.12 (HKLM-x32\...\Biet-O-Matic v2.14.12) (Version: 2.14.12 - BOM Development Team)
Deutschland Spielt - Spiele Post (HKLM-x32\...\Deutschland Spielt - Spiele Post) (Version: 1.0.4.38 - INTENIUM GmbH)
DEUTSCHLAND SPIELT GAME CENTER (HKLM-x32\...\DSGPlayer) (Version: 2.4.2.5 - INTENIUM GmbH)
Die Siedler III Gold Edition (HKLM-x32\...\S3) (Version: - )
Dream Day First Home (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110}) (Version: - Oberon Media)
eMachines GameZone Console (HKLM-x32\...\{31D611A1-03B5-4018-BC6F-DDB5B5616478}_is1) (Version: 5.1.1.3 - Oberon Media, Inc.)
eMachines Recovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 4.05.3005 - Acer Incorporated)
eMachines Registration (HKLM-x32\...\eMachines Registration) (Version: 1.02.3006 - Acer Incorporated)
eMachines ScreenSaver (HKLM-x32\...\eMachines Screensaver) (Version: 1.1.0812 - eMachines Incorporated)
eMachines Updater (HKLM-x32\...\{EE171732-BEB4-4576-887D-CB62727F01CA}) (Version: 1.01.3017 - Acer Incorporated)
First Class Flurry (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115208410}) (Version: - Oberon Media)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Granny In Paradise (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110551697}) (Version: - Oberon Media)
Heroes of Hellas (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113786380}) (Version: - Oberon Media)
Hotkey Utility (HKLM-x32\...\Hotkey Utility) (Version: 2.00.3005 - Acer Incorporated)
Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3002 - Acer Incorporated)
ImagXpress (x32 Version: 7.0.74.0 - Nero AG) Hidden
Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.510 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Junk Mail filter update (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Malwarebytes Anti-Malware Version 2.0.3.1025 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.3.1025 - Malwarebytes Corporation)
Merriam Websters Spell Jam (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112662477}) (Version: - Oberon Media)
Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Choice Guard (x32 Version: 2.0.48.0 - Microsoft Corporation) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden
Microsoft Office Access MUI (German) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6425.1000 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
Microsoft Office Groove MUI (German) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
Microsoft Office Home and Student 2007 (HKLM-x32\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (German) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (German) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (German) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Spanish) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (English) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden
Microsoft Office Publisher MUI (German) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared Setup Metadata MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6425.1000 - Microsoft Corporation) Hidden
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Mozilla Firefox 32.0.3 (x86 de) (HKLM-x32\...\Mozilla Firefox 32.0.3 (x86 de)) (Version: 32.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
Mozilla Thunderbird 24.5.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 24.5.0 (x86 de)) (Version: 24.5.0 - Mozilla)
MSVCRT (x32 Version: 14.0.1468.721 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
My Kingdom For The Princess II (HKLM-x32\...\25a144fe374c4ed6e2c84fced8d6cc46) (Version: - Zylom)
My Kingdom for the Princess IV (HKLM-x32\...\58e1fbaed756aace10c08d4c1be28cce) (Version: - Zylom)
Nero 9 Essentials (HKLM-x32\...\{c0329ca4-2cf0-4a88-a397-6ce72f9fb46e}) (Version: - Nero AG)
Nero ControlCenter (x32 Version: 9.0.0.1 - Nero AG) Hidden
Nero DiscSpeed (x32 Version: 5.4.7.201 - Nero AG) Hidden
Nero DiscSpeed Help (x32 Version: 5.4.4.100 - Nero AG) Hidden
Nero DriveSpeed (x32 Version: 4.4.7.201 - Nero AG) Hidden
Nero DriveSpeed Help (x32 Version: 4.4.4.100 - Nero AG) Hidden
Nero Express Help (x32 Version: 9.4.9.100 - Nero AG) Hidden
Nero InfoTool (x32 Version: 6.4.7.201 - Nero AG) Hidden
Nero InfoTool Help (x32 Version: 6.4.4.100 - Nero AG) Hidden
Nero Installer (x32 Version: 4.4.8.1 - Nero AG) Hidden
Nero Online Upgrade (x32 Version: 1.3.0.0 - Nero AG) Hidden
Nero StartSmart (x32 Version: 9.4.11.209 - Nero AG) Hidden
Nero StartSmart Help (x32 Version: 9.4.11.208 - Nero AG) Hidden
Nero StartSmart OEM (x32 Version: 9.4.10.100 - Nero AG) Hidden
NeroExpress (x32 Version: 9.4.10.505 - Nero AG) Hidden
neroxml (x32 Version: 1.0.0 - Nero AG) Hidden
Norton Internet Security (HKLM-x32\...\NIS) (Version: 16.7.0.30 - Symantec Corporation)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.8 - NVIDIA Corporation)
NVIDIA ForceWare Network Access Manager (HKLM-x32\...\InstallShield_{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}) (Version: 1.00.7316 - NVIDIA Corporation)
NVIDIA ForceWare Network Access Manager (Version: 1.00.7316 - NVIDIA Corporation) Hidden
NVIDIA Grafiktreiber 307.83 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 307.83 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.109.706 - NVIDIA Corporation) Hidden
NVIDIA Systemsteuerung 307.83 (Version: 307.83 - NVIDIA Corporation) Hidden
NVIDIA Update 1.10.8 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.10.8 - NVIDIA Corporation)
NVIDIA Update Components (Version: 1.10.8 - NVIDIA Corporation) Hidden
Online Games Manager v1.30 (HKLM-x32\...\Online Games Manager) (Version: 1.30.14 - Real Networks, Inc.)
Peggle(TM) Deluxe (HKLM-x32\...\00415396db1c66bc03a5109b1c550c8f) (Version: - Zylom)
Pharao (HKLM-x32\...\Pharao) (Version: - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5983 - Realtek Semiconductor Corp.)
Ritter Arthur 4 (HKLM-x32\...\Ritter Arthur 4) (Version: 1.0.0.0 - INTENIUM GmbH)
Sommer Mahjong (HKLM-x32\...\Sommer Mahjong) (Version: 2.0.0.0 - INTENIUM GmbH)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update for Microsoft Office 2007 Help for Common Features (KB963673) (HKLM-x32\...\{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AB365889-0395-4FAD-B702-CA5985D53D42}) (Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{620E77C0-CDFE-4C14-AAEB-830ABB65864C}) (Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{8153EC80-C988-4336-8DAF-6D99C0D26E0C}) (Version: - Microsoft)
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}) (Version: - Microsoft)
Update for Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{199DF7B6-169C-448C-B511-1054101BE9C9}) (Version: - Microsoft)
Update for Microsoft Office OneNote 2007 Help (KB963670) (HKLM-x32\...\{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2744EF05-38E1-4D5D-B333-E021EDAEA245}) (Version: - Microsoft)
Update for Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{397B1D4F-ED7B-4ACA-A637-43B670843876}) (Version: - Microsoft)
Update for Microsoft Office Script Editor Help (KB963671) (HKLM-x32\...\{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{CD11C6A2-FFC6-4271-8EAB-79C3582F505C}) (Version: - Microsoft)
Update for Microsoft Office Word 2007 (KB974631) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{1D53FB73-9826-4541-B2E0-A239C6EBA718}) (Version: - Microsoft)
Update for Microsoft Office Word 2007 (KB974631) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{34726474-50D6-49FC-B8AC-35411459D27A}) (Version: - Microsoft)
Update for Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{80E762AA-C921-4839-9D7D-DB62A72C0726}) (Version: - Microsoft)
VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN)
Welcome Center (HKLM-x32\...\eMachines Welcome Center) (Version: 1.00.3010 - Acer Incorporated)
Windows Live Anmelde-Assistent (HKLM-x32\...\{52B97218-98CB-4B8B-9283-D213C85E1AA4}) (Version: 5.000.818.5 - Microsoft Corporation)
Windows Live Call (x32 Version: 14.0.8064.0206 - Microsoft Corporation) Hidden
Windows Live Communications Platform (x32 Version: 14.0.8064.206 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite_Wave3) (Version: 14.0.8089.0726 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden
Windows Live Fotogalerie (x32 Version: 14.0.8081.709 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live Movie Maker (x32 Version: 14.0.8091.0730 - Microsoft Corporation) Hidden
Windows Live Sync (HKLM-x32\...\{76618402-179D-4699-A66B-D351C59436BC}) (Version: 14.0.8089.726 - Microsoft Corporation)
Windows Live Writer (x32 Version: 14.0.8089.0726 - Microsoft Corporation) Hidden
Windows Live-Uploadtool (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
==================== Restore Points =========================
03-09-2014 12:06:22 Geplanter Prüfpunkt
14-09-2014 21:13:13 Geplanter Prüfpunkt
22-09-2014 16:15:22 Geplanter Prüfpunkt
04-10-2014 19:04:44 Geplanter Prüfpunkt
12-10-2014 10:04:07 Avira PC Cleaner - 12.10.2014 12:04
13-10-2014 15:09:23 Avira PC Cleaner - 13.10.2014 17:09
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 04:34 - 2014-10-13 18:10 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {66CB720E-A9C6-4472-A388-48D638152117} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1901903680-3249174370-2502805026-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe
Task: {6F6D7493-C5E6-40CC-8D34-1F742AA575F1} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1901903680-3249174370-2502805026-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe
Task: {DB017594-BC45-4FDD-99D9-D811E324937A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-24] (Adobe Systems Incorporated)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Loaded Modules (whitelisted) =============
2014-03-14 16:54 - 2013-01-31 11:25 - 00087328 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2009-08-11 02:01 - 2009-08-11 02:01 - 00626208 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
2009-08-11 02:00 - 2009-08-11 02:00 - 00070176 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nv_common.dll
2009-08-11 02:01 - 2009-08-11 02:01 - 00578592 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\SpecialCase.dll
2009-08-11 02:01 - 2009-08-11 02:01 - 00206880 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
2009-11-25 04:39 - 2009-11-25 04:39 - 00469536 _____ () C:\Program Files (x86)\eMachines\Hotkey Utility\HotkeyUtility.exe
2014-08-27 15:00 - 2014-08-27 15:00 - 00139056 _____ () C:\Program Files (x86)\Avira\My Avira\Avira.OE.NativeCore.dll
2009-11-25 04:39 - 2009-11-25 04:39 - 00154144 _____ () C:\Program Files (x86)\eMachines\Hotkey Utility\HotkeyHook.dll
2014-09-24 22:11 - 2014-09-24 22:11 - 03715184 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
AlternateDataStreams: C:\ProgramData:gs5sys
AlternateDataStreams: C:\Users\All Users:gs5sys
AlternateDataStreams: C:\Users\Bastet:gs5sys
AlternateDataStreams: C:\ProgramData\Anwendungsdaten:gs5sys
AlternateDataStreams: C:\ProgramData\Application Data:gs5sys
AlternateDataStreams: C:\ProgramData\TEMP:93DE1838
AlternateDataStreams: C:\Users\Bastet\Anwendungsdaten:gs5sys
AlternateDataStreams: C:\Users\Bastet\Cookies:gs5sys
AlternateDataStreams: C:\Users\Bastet\Lokale Einstellungen:gs5sys
AlternateDataStreams: C:\Users\Bastet\Vorlagen:gs5sys
AlternateDataStreams: C:\Users\Bastet\Desktop\desktop.ini:gs5sys
AlternateDataStreams: C:\Users\Bastet\AppData\Local:gs5sys
AlternateDataStreams: C:\Users\Bastet\AppData\Roaming:gs5sys
AlternateDataStreams: C:\Users\Bastet\AppData\Local\Anwendungsdaten:gs5sys
AlternateDataStreams: C:\Users\Bastet\AppData\Local\Verlauf:gs5sys
AlternateDataStreams: C:\Users\Bastet\Documents\desktop.ini:gs5sys
AlternateDataStreams: C:\Users\Public\Documents\desktop.ini:gs5sys
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SymEFA.sys => ""="FSFilter Activity Monitor"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SymEFA.sys => ""="FSFilter Activity Monitor"
==================== EXE Association (whitelisted) =============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== MSCONFIG/TASK MANAGER disabled items =========
(Currently there is no automatic fix for this section.)
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
MSCONFIG\startupreg: avgnt => "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
MSCONFIG\startupreg: Avira Systray => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
MSCONFIG\startupreg: msnmsgr => "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
MSCONFIG\startupreg: NortonOnlineBackupReminder => "C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe" UNATTENDED
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: TkBellExe => "C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osboot
========================= Accounts: ==========================
Admin (S-1-5-21-1901903680-3249174370-2502805026-1001 - Administrator - Enabled) => C:\Users\Admin
Administrator (S-1-5-21-1901903680-3249174370-2502805026-500 - Administrator - Disabled)
Bastet (S-1-5-21-1901903680-3249174370-2502805026-1004 - Limited - Enabled) => C:\Users\Bastet
Gast (S-1-5-21-1901903680-3249174370-2502805026-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1901903680-3249174370-2502805026-1002 - Limited - Enabled)
UpdatusUser (S-1-5-21-1901903680-3249174370-2502805026-1003 - Limited - Enabled) => C:\Users\UpdatusUser
==================== Faulty Device Manager Devices =============
Name: Microsoft PS/2-Maus
Description: Microsoft PS/2-Maus
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
==================== Event log errors: =========================
Application errors:
==================
System errors:
=============
Microsoft Office Sessions:
=========================
Error: (10/10/2014 06:51:35 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 16 seconds with 0 seconds of active time. This session ended with a crash.
Error: (10/10/2014 06:49:34 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 1 seconds with 0 seconds of active time. This session ended with a crash.
Error: (10/10/2014 06:46:08 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 1 seconds with 0 seconds of active time. This session ended with a crash.
Error: (10/10/2014 06:45:28 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6668.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 6 seconds with 0 seconds of active time. This session ended with a crash.
CodeIntegrity Errors:
===================================
Date: 2014-10-13 18:07:08.915
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2014-10-13 18:07:08.728
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
==================== Memory info ===========================
Processor: AMD Athlon(tm) II X2 215 Processor
Percentage of memory in use: 54%
Total physical RAM: 1791.37 MB
Available physical RAM: 810.19 MB
Total Pagefile: 3582.73 MB
Available Pagefile: 2228.54 MB
Total Virtual: 8192 MB
Available Virtual: 8191.85 MB
==================== Drives ================================
Drive c: (eMachines) (Fixed) (Total:284.99 GB) (Free:223.84 GB) NTFS
Drive d: (PHARAO) (CDROM) (Total:0.64 GB) (Free:0 GB) CDFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 5FEEE932)
Partition 1: (Not Active) - (Size=13 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=285 GB) - (Type=07 NTFS)
==================== End Of Log ============================ |