PrinceChaos | 02.04.2015 20:59 | Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 02.04.2015
Suchlauf-Zeit: 17:15:52
Logdatei: mbam.txt
Administrator: Ja
Version: 2.01.4.1018
Malware Datenbank: v2015.04.02.05
Rootkit Datenbank: v2015.03.31.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Max
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 365831
Verstrichene Zeit: 20 Min, 40 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 1
PUP.Optional.CinemaPlus.A, C:\Program Files (x86)\CinPlus_v1.7cV03.03\39c90b0c-5368-4b13-949e-56470c18059a-1-6.exe, 7352, Löschen bei Neustart, [0bc21057ef9bcd698aba70c11bebe11f]
Module: 0
(Keine schädliche Elemente gefunden)
Registrierungsschlüssel: 84
PUP.Optional.SearchProtect.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}, In Quarantäne, [3f8edb8c0783f73f325dfd334ab938c8],
PUP.Optional.SearchProtect.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}, In Quarantäne, [3f8edb8c0783f73f325dfd334ab938c8],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, In Quarantäne, [b61751163e4cec4a43a0c96b17ec6c94],
PUP.Optional.Shopperz.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{5081D2D4-1637-404c-B74F-50526718257D}, In Quarantäne, [64696304800a51e5652572b8847fbb45],
PUP.Optional.Shopperz.A, HKLM\SOFTWARE\CLASSES\Extension.jshep, In Quarantäne, [64696304800a51e5652572b8847fbb45],
PUP.Optional.Shopperz.A, HKLM\SOFTWARE\CLASSES\Extension.jshep.1, In Quarantäne, [64696304800a51e5652572b8847fbb45],
PUP.Optional.Shopperz.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Extension.jshep, In Quarantäne, [64696304800a51e5652572b8847fbb45],
PUP.Optional.Shopperz.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Extension.jshep.1, In Quarantäne, [64696304800a51e5652572b8847fbb45],
PUP.Optional.Shopperz.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\Extension.jshep, In Quarantäne, [64696304800a51e5652572b8847fbb45],
PUP.Optional.Shopperz.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\Extension.jshep.1, In Quarantäne, [64696304800a51e5652572b8847fbb45],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}, In Quarantäne, [e8e5d097fb8faa8c3f9bd065aa56c040],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, In Quarantäne, [e8e5d097fb8faa8c3f9bd065aa56c040],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, In Quarantäne, [e8e5d097fb8faa8c3f9bd065aa56c040],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, In Quarantäne, [e8e5d097fb8faa8c3f9bd065aa56c040],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}, In Quarantäne, [e8e5d097fb8faa8c3f9bd065aa56c040],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}, In Quarantäne, [e8e5d097fb8faa8c3f9bd065aa56c040],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\30935, In Quarantäne, [22abec7bbecce5517f9d13e87b88a858],
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarantäne, [804d2641cfbbdd59f794cd5b5fa634cc],
PUP.Optional.CinemaPlus.A, HKLM\SOFTWARE\WOW6432NODE\CinPlus_v1.7cV03.03, In Quarantäne, [ab229bccd5b553e38713f2c8f013926e],
PUP.Optional.CinemaPlus.A, HKLM\SOFTWARE\WOW6432NODE\CinPlus_v1.7cV03.03-nv, In Quarantäne, [1ab3fa6de4a660d6b7e35b5fea1950b0],
PUP.Optional.CinemaPlus.A, HKLM\SOFTWARE\WOW6432NODE\CinPlus_v1.7cV03.03-nv-ie, In Quarantäne, [7c515314f793043244567644000320e0],
PUP.Optional.IHProtect.A, HKLM\SOFTWARE\WOW6432NODE\IHProtect, In Quarantäne, [11bc4a1d75152115735b01c23fc44cb4],
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\Iminent, In Quarantäne, [527baabd5436e25432eb49bfe71d40c0],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\Mindspark, In Quarantäne, [ece178ef751539fdfe2c1d270203fa06],
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\WOW6432NODE\mystartsearchSoftware, In Quarantäne, [7c517fe86327c373007e7655a16215eb],
PUP.Optional.Omniboxes.A, HKLM\SOFTWARE\WOW6432NODE\omniboxesSoftware, In Quarantäne, [577617503a506bcb46818338867d54ac],
PUP.Optional.PriceMeter.A, HKLM\SOFTWARE\WOW6432NODE\PriceMeterLiveUpdate, In Quarantäne, [17b6ca9d8a0030061f5edee783806d93],
PUP.Optional.Wajam.A, HKLM\SOFTWARE\WOW6432NODE\WajIntEnhance, In Quarantäne, [b5187fe82b5f9c9af1eea31cf50ec937],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\GLOBALUPDATE\UPDATE, In Quarantäne, [b41995d2b6d4a1951cb3518f6f9458a8],
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\INSTALLEDBROWSEREXTENSIONS\30935, In Quarantäne, [d3fa10572e5c1323c05c758617ecaf51],
PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarantäne, [c20b2641cebc3df9266584a43bcaee12],
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\IMBoosterARP, In Quarantäne, [8e3fcf986426d561a5134379f60d847c],
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\IminentToolbar, In Quarantäne, [13badd8a81096bcb6d4a15a72ad9f10f],
PUP.Optional.Vosteran, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Vosteran.com, In Quarantäne, [557880e7c3c7aa8cb83d775419ea31cf],
PUP.Optional.Wajam.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\WajIntEnhance, In Quarantäne, [1fae82e5d6b4ad89c9ec3b814eb52fd1],
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLAPLUGINS\@staging.google.com/globalUpdate Update;version=10, In Quarantäne, [f7d6095e800ad66094d7a7980ff67f81],
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLAPLUGINS\@staging.google.com/globalUpdate Update;version=4, In Quarantäne, [438a68ffb9d16dc95a12132c887d8878],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB, In Quarantäne, [26a76afd4545b77fb9687c5d7b88fd03],
PUP.Optional.cherimoya.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\cherimoya, In Quarantäne, [6d606007721860d656c83b879271a858],
PUP.Optional.WindowsMangerProtect.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\WindowsMangerProtect, In Quarantäne, [b11ce582e7a370c6bce7844a44bfef11],
PUP.Optional.CinemaPlus.A, HKU\S-1-5-18\SOFTWARE\CinPlus_v1.7cV03.03-nv, In Quarantäne, [4d801255305ac175613a6d4df70c4db3],
PUP.Optional.CinemaPlus.A, HKU\S-1-5-18\SOFTWARE\CinPlus_v1.7cV03.03-nv-ie, In Quarantäne, [b31aef782b5f3bfb9dfe00bae71c08f8],
PUP.Optional.Shopperz.A, HKU\S-1-5-18\SOFTWARE\{4E7638A1-6962-4e44-A6B9-F40E84FD6D09}, In Quarantäne, [b21b2e39e7a34cea0a5f17a1768d7a86],
PUP.Optional.Shopperz.A, HKU\S-1-5-19\SOFTWARE\{4E7638A1-6962-4e44-A6B9-F40E84FD6D09}, In Quarantäne, [f5d85b0c870355e16207298fb350629e],
PUP.Optional.Shopperz.A, HKU\S-1-5-20\SOFTWARE\{4E7638A1-6962-4e44-A6B9-F40E84FD6D09}, In Quarantäne, [d4f9c7a0d0ba9e98abbe5662818231cf],
PUP.Optional.CinemaPlus.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\CinPlus_v1.7cV03.03-nv, In Quarantäne, [903d2e39ee9cc47278235f5b689bf10f],
PUP.Optional.CinemaPlus.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\CinPlus_v1.7cV03.03-nv-ie, In Quarantäne, [ebe231368208bb7b9dfe3d7d689bac54],
PUP.Optional.HomeTab.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\HomeTab, In Quarantäne, [ceff0f58632794a2591cf7f49b68728e],
PUP.Optional.PriceMeter.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\PriceMeterLiveUpdate, In Quarantäne, [22abe0875337a690c1ba85408281ef11],
PUP.Optional.PriceMeter.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\PriceMeterUpdater, In Quarantäne, [05c8bfa8c8c249edc3b9dbea768d4cb4],
PUP.Optional.SearchProtect.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\SearchProtectWS, In Quarantäne, [5c71392e5b2f2a0c13a74775da299769],
PUP.Optional.TNT.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\TNT2, In Quarantäne, [e5e8ca9ddeac60d67f1100bec63d2ed2],
PUP.Optional.Wajam.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\WajIntEnhance, In Quarantäne, [f0dd63046327072f0bd538878f7405fb],
PUP.Optional.GlobalUpdate.C, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\GLOBALUPDATE\UPDATE\PROXY, In Quarantäne, [27a6283f7f0bf0464567fdb60df6db25],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\30935, In Quarantäne, [5f6ed493711937ff650b0cc9bc474eb2],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\CinPlus_v1.7cV03.03, In Quarantäne, [24a95710e9a1b086d645f3d78f74c937],
PUP.Optional.Qone8, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarantäne, [d2fb0d5a0981ae88b3d785a3e2231fe1],
PUP.Optional.Iminent.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\IMBoosterARP, In Quarantäne, [5677184f68223006875a6c4cd52e19e7],
PUP.Optional.Iminent.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\IminentToolbar, In Quarantäne, [97365710f496ad898260b602c53efc04],
PUP.Optional.Linkey.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Linkey, In Quarantäne, [a62791d68ffb06306f74ffb943c0817f],
PUP.Optional.Vosteran.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Vosteran.com, In Quarantäne, [16b784e30f7bf73f22c28f29d92aec14],
PUP.Optional.Wajam.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\WajIntEnhance, In Quarantäne, [cd00cc9baae0a3938d58dbddb74c847c],
PUP.Optional.Wajam.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\SIMPLYTECH\HomeTabWajIEnhance, In Quarantäne, [cd001750c1c92e086056ceeeb54e669a],
PUP.Optional.GlobalUpdate.T, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\globalUpdatem, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\CLASSES\globalUpdate.OneClickCtrl.10, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdate.OneClickCtrl.10, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\CLASSES\WOW6432NODE\globalUpdate.OneClickCtrl.10, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{5645E0E7-FC12-43BF-A6E4-F9751942B298}, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{5645E0E7-FC12-43BF-A6E4-F9751942B298}, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\CLASSES\globalUpdate.Update3WebControl.4, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\CLASSES\globalUpdate.Update3WebControl.4, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\CLASSES\WOW6432NODE\globalUpdate.Update3WebControl.4, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
Registrierungswerte: 22
PUP.Optional.Shopperz.A, HKLM\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS|{5081D2D4-1637-404C-B74F-50526718257D}, C:\Program Files\shopperz\Firefox, In Quarantäne, [64696304800a51e5652572b8847fbb45]
PUP.Optional.Shopperz.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|{5081D2D4-1637-404C-B74F-50526718257D}, C:\Program Files\shopperz\Firefox, In Quarantäne, [64696304800a51e5652572b8847fbb45]
PUP.Optional.Shopperz.A, HKLM\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS\{5081D2D4-1637-404c-B74F-50526718257D}, In Quarantäne, [8b429fc8cfbb0b2b355521094db6da26],
PUP.Optional.Shopperz.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS\{5081D2D4-1637-404c-B74F-50526718257D}, In Quarantäne, [3f8eb4b3e3a7d660602a91991ee512ee],
PUP.Optional.Omniboxes.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|URL, hxxp://www.omniboxes.com/web/?type=ds&ts=1425492860&from=amt&uid=WDCXWD10EADS-22M2B0_WD-WCAV5970931309313&q={searchTerms}, In Quarantäne, [ddf06ef994f63204458879d21fe6e41c]
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\GLOBALUPDATE\UPDATE|path, C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe, In Quarantäne, [b41995d2b6d4a1951cb3518f6f9458a8]
PUP.Optional.GlobalUpdate.C, HKLM\SOFTWARE\WOW6432NODE\GLOBALUPDATE\UPDATEDEV|AuCheckPeriodMs, 21600000, In Quarantäne, [eae34b1ca9e1eb4b29eabcf79d66837d]
PUP.Optional.Omniboxes.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|URL, hxxp://www.omniboxes.com/web/?type=dspp&ts=1425492904&from=amt&uid=WDCXWD10EADS-22M2B0_WD-WCAV5970931309313&q={searchTerms}, In Quarantäne, [35981c4b751578be8f3e113a71940ef2]
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\SUPTAB|ptid, obw, In Quarantäne, [26a76afd4545b77fb9687c5d7b88fd03]
PUP.Optional.GlobalUpdate.C, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\GLOBALUPDATE\UPDATE\PROXY|source, IE, In Quarantäne, [27a6283f7f0bf0464567fdb60df6db25]
PUP.Optional.Trovi.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}|URL, hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3320048&octid=EB_ORIGINAL_CTID&ISID=M6D415E89-4EC0-42FF-B0D2-AF3714427D49&SearchSource=58&CUI=&UM=8&UP=SPAAF405DE-A857-446B-B132-EC4AEB9BC955&q={searchTerms}&SSPV=, In Quarantäne, [fcd1ea7dadddbb7b3fb305466d98a55b]
PUP.Optional.Conduit.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}|SuggestionsURL_JSON, hxxp://suggest.seccint.com/CSuggestJson.ashx?prefix={searchTerms}, In Quarantäne, [f4d998cfdeac42f471c2872cd62de61a]
PUP.Optional.Trovi.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}|DisplayName, Trovi, In Quarantäne, [21ac5a0d7d0d4aec32c0cb801aeb1be5]
PUP.Optional.Omniboxes.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}|URL, hxxp://www.omniboxes.com/web/?utm_source=b&utm_medium=amt&utm_campaign=install_ie&utm_content=ds&from=amt&uid=WDCXWD10EADS-22M2B0_WD-WCAV5970931309313&ts=1425492927&type=default&q={searchTerms}, In Quarantäne, [3f8ecc9b5634ff37be0e9bb06c9927d9]
PUP.Optional.Omniboxes.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{17EAA142-8A93-46A2-991C-85820128233B}|URL, hxxp://www.omniboxes.com/web/?utm_source=b&utm_medium=amt&utm_campaign=install_ie&utm_content=ds&from=amt&uid=WDCXWD10EADS-22M2B0_WD-WCAV5970931309313&ts=1425492927&type=default&q={searchTerms}, In Quarantäne, [b4198bdc94f6c96dd0fcb893cc39827e]
PUP.Optional.Omniboxes.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}|URL, hxxp://www.omniboxes.com/web/?utm_source=b&utm_medium=amt&utm_campaign=install_ie&utm_content=ds&from=amt&uid=WDCXWD10EADS-22M2B0_WD-WCAV5970931309313&ts=1425492927&type=default&q={searchTerms}, In Quarantäne, [8d40f96e266482b4be0e95b6c0458080]
PUP.Optional.Omniboxes.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}|FaviconURL, hxxp://www.omniboxes.com//favicon.ico, In Quarantäne, [dcf1df88018941f5428ad17a02036799]
PUP.Optional.Omniboxes.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|URL, hxxp://www.omniboxes.com/web/?type=dspp&ts=1425492904&from=amt&uid=WDCXWD10EADS-22M2B0_WD-WCAV5970931309313&q={searchTerms}, In Quarantäne, [ac21571035554aecece0d8730401c53b]
PUP.Optional.Omniboxes.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}|TopResultURL, hxxp://www.omniboxes.com/web/?type=ds&ts=1425492502&from=obw&uid=WDCXWD10EADS-22M2B0_WD-WCAV5970931309313&q={searchTerms}, In Quarantäne, [7c51580fd9b15bdb923a9daef01542be]
PUP.Optional.Omniboxes.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}|URL, hxxp://www.omniboxes.com/web/?utm_source=b&utm_medium=amt&utm_campaign=install_ie&utm_content=ds&from=amt&uid=WDCXWD10EADS-22M2B0_WD-WCAV5970931309313&ts=1425492927&type=default&q={searchTerms}, In Quarantäne, [a8252a3da9e11a1c5a726ae1b94cd729]
PUP.Optional.Omniboxes.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{9CB96984-43C3-4D44-90EF-01466EFCF7BB}|URL, hxxp://www.omniboxes.com/web/?utm_source=b&utm_medium=amt&utm_campaign=install_ie&utm_content=ds&from=amt&uid=WDCXWD10EADS-22M2B0_WD-WCAV5970931309313&ts=1425492927&type=default&q={searchTerms}, In Quarantäne, [309d2146cfbba78f3b9156f5699c58a8]
PUP.Optional.Omniboxes.A, HKU\S-1-5-21-1669784938-3814369161-466848971-1001\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{E733165D-CBCF-4FDA-883E-ADEF965B476C}|URL, hxxp://www.omniboxes.com/web/?utm_source=b&utm_medium=amt&utm_campaign=install_ie&utm_content=ds&from=amt&uid=WDCXWD10EADS-22M2B0_WD-WCAV5970931309313&ts=1425492927&type=default&q={searchTerms}, In Quarantäne, [f7d6590e41493bfb705c3516729323dd]
Registrierungsdaten: 1
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[b91469fec8c2a98d8d561bdcd82de31d]
Ordner: 51
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\image, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\en-US, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-419, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-ES, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-BE, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CA, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CH, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-FR, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-LU, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-CH, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-IT, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pl, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt-BR, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru-MO, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\tr-TR, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\vi-VI, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-CN, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-TW, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.OpenCandy, C:\Users\Max\AppData\Roaming\OpenCandy, In Quarantäne, [8b4212557911c07684880b7305fece32],
PUP.Optional.OpenCandy, C:\Users\Max\AppData\Roaming\OpenCandy\0C7632ACB71B4BBF9E73863030DCCBFF, In Quarantäne, [8b4212557911c07684880b7305fece32],
PUP.Optional.OpenCandy, C:\Users\Max\AppData\Roaming\OpenCandy\F8DEE11D61DD4BE2A4373C4E35F7D88A, In Quarantäne, [8b4212557911c07684880b7305fece32],
PUP.Optional.OpenCandy, C:\Users\Max\AppData\Roaming\OpenCandy\FDC46356C0024B3B87E55351079C5717, In Quarantäne, [8b4212557911c07684880b7305fece32],
PUP.Optional.PriceMeter.A, C:\Users\Max\AppData\Roaming\PriceMeterUpdater, In Quarantäne, [1bb23b2c0b7f8caac7404b39fe051ce4],
PUP.Optional.PriceMeter.A, C:\Users\Max\AppData\Roaming\PriceMeterUpdater\UpdateProc, In Quarantäne, [1bb23b2c0b7f8caac7404b39fe051ce4],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate, In Quarantäne, [f9d4f0771575a29441c73f45fc07c13f],
PUP.Optional.PriceMeter.A, C:\Program Files (x86)\PriceMeterLiveUpdate\CrashReports, In Quarantäne, [f9d4f0771575a29441c73f45fc07c13f],
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect, In Quarantäne, [6b626dfa92f80a2c712b99f9f40fb848],
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update, In Quarantäne, [6b626dfa92f80a2c712b99f9f40fb848],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\Download, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\Download\{00135CAC-3C14-474B-B3CE-0DF06CE24B7C}, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\Download\{00135CAC-3C14-474B-B3CE-0DF06CE24B7C}\1.3.25.27, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\Install, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\Offline, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\Offline\{FA496CA5-9AB7-4E3D-9EE6-B1DCB94CEA84}, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.PriceMeter.A, C:\Users\Max\AppData\Local\PriceMeterLiveUpdate, In Quarantäne, [a62789de3b4f20162b48bfea12f16b95],
PUP.Optional.PriceMeter.A, C:\Users\Max\AppData\Local\PriceMeterLiveUpdate\CrashReports, In Quarantäne, [a62789de3b4f20162b48bfea12f16b95],
PUP.Optional.Shopperz.A, C:\Program Files\shopperz, In Quarantäne, [23aab8afcdbded4984fe01a821e2c43c],
PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate, In Quarantäne, [6667e087a7e34beb3b18affbf50ebf41],
PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate\update, In Quarantäne, [6667e087a7e34beb3b18affbf50ebf41],
PUP.Optional.LolliScan.A, C:\ProgramData\LolliScan, In Quarantäne, [ece12f38c9c1f640e192d4da54af5aa6],
PUP.Optional.CinemaPlus.A, C:\Program Files (x86)\CinPlus_v1.7cV03.03, Löschen bei Neustart, [725b7dea3b4f54e26b1dcbe4fe059d63],
Dateien: 114
PUP.Optional.CinemaPlus.A, C:\Program Files (x86)\CinPlus_v1.7cV03.03\39c90b0c-5368-4b13-949e-56470c18059a-1-6.exe, Löschen bei Neustart, [0bc21057ef9bcd698aba70c11bebe11f],
PUP.Optional.Protect, C:\ProgramData\WindowsMangerProtect\ProtectWindowsManager.exe, In Quarantäne, [bc115413fd8dde5821ba8c5e1fe69070],
PUP.Optional.PriceMeter.A, C:\Users\Max\AppData\Roaming\OpenCandy\F8DEE11D61DD4BE2A4373C4E35F7D88A\pm.exe, In Quarantäne, [923bb4b3cbbfbd7947730e88f0117987],
PUP.Optional.BrowserWatch, C:\Program Files (x86)\XTab\BrowerWatchCH.dll, In Quarantäne, [9a335512b5d57fb738cf4b23af5114ec],
PUP.Optional.BrowserWatch, C:\Program Files (x86)\XTab\BrowerWatchFF.dll, In Quarantäne, [b419bcab0882c76f897efd714bb5bc44],
PUP.Optional.ELEX, C:\Program Files (x86)\XTab\HPNotify.exe, In Quarantäne, [96374d1a09813ef84e8b3df4a06212ee],
PUP.Optional.SupTab.A, C:\Program Files (x86)\XTab\SupTab.dll, In Quarantäne, [e8e5d097fb8faa8c3f9bd065aa56c040],
PUP.Optional.OutBrowse, C:\Users\Max\Downloads\installer_adobe_flash_player_English.exe, In Quarantäne, [5c7120478dfd39fd8bdd43de7b88966a],
PUP.Optional.MindSpark.A, C:\Users\Max\Downloads\EliteUnzipSetup.EliteUnzip_aa.ffjcmnpnoopgilmnfhloocdcbnimmmea.ch.exe, In Quarantäne, [a528dc8bc0cac175b06c46ac709126da],
PUP.Optional.MyStartSearch.A, C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.mystartsearch.com_0.localstorage, In Quarantäne, [3796ec7b3d4d74c24cee5d66857e639d],
PUP.Optional.MyStartSearch.A, C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.mystartsearch.com_0.localstorage-journal, In Quarantäne, [2da0d691850577bf96a4c8fbb94a1ae6],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\uninstall.exe, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\BrowserAction.dll, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\CmdShell.exe, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\conf, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\ffsearch_toolbar!1.0.0.1025.xpi, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\IeWatchDog.dll, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\install.data, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcp110.dll, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\msvcr110.dll, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\searchProvider.xml, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\about.png, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\about_bk.png, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\btn.png, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\btn_apply.png, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\close.png, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\conf.xml, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\conf_back.png, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\input_bk.png, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\logo.png, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\main.xml, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\radio_1.png, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\radio_2.png, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\rigth_arrow.png, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\skin\settings.png, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\data.html, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\indexIE.html, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\indexIE8.html, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\main.css, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\ver.txt, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\google_trends.png, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon128.png, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon16.png, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\icon48.png, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\loading.gif, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\img\logo32.ico, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\common.js, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\ga.js, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\jquery-1.11.0.min.js, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\jquery.autocomplete.js, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\js.js, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\library.js, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\xagainit-ie8.js, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\js\xagainit2.0.js, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\en-US\messages.json, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-419\messages.json, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\es-ES\messages.json, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-BE\messages.json, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CA\messages.json, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-CH\messages.json, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-FR\messages.json, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\fr-LU\messages.json, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-CH\messages.json, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\it-IT\messages.json, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pl\messages.json, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt\messages.json, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\pt-BR\messages.json, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru\messages.json, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\ru-MO\messages.json, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\tr-TR\messages.json, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\vi-VI\messages.json, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-CN\messages.json, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.XTab.A, C:\Program Files (x86)\XTab\web\_locales\zh-TW\messages.json, In Quarantäne, [8f3e4b1c325879bd557a9a291ce78f71],
PUP.Optional.BoostSaves.A, C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.boostsaves.com_0.localstorage, In Quarantäne, [af1e4b1c800a5adc54174e79a063bc44],
PUP.Optional.BoostSaves.A, C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.boostsaves.com_0.localstorage-journal, In Quarantäne, [9b32a7c05d2db284d794586f7b88e11f],
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\39c90b0c-5368-4b13-949e-56470c18059a-1-6, In Quarantäne, [ebe2481f1575d066d8f2e9f756ad6b95],
PUP.Optional.ShoppingGate.A, C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_inst.shoppingate.info_0.localstorage, In Quarantäne, [5875bdaa12783600cca886695fa48d73],
PUP.Optional.ShoppingGate.A, C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_inst.shoppingate.info_0.localstorage-journal, In Quarantäne, [11bc8addef9b2f07fd77f7f844bf5aa6],
PUP.Optional.MindSpark.A, C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_eliteunzip.dl.tb.ask.com_0.localstorage, In Quarantäne, [359899ceaedc65d17dab0fe7c340946c],
PUP.Optional.MindSpark.A, C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_eliteunzip.dl.tb.ask.com_0.localstorage-journal, In Quarantäne, [824bf077206a36003cecac4ad92a34cc],
PUP.Optional.MindSpark.A, C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_televisionfanatic.dl.tb.ask.com_0.localstorage, In Quarantäne, [eedfed7a0387b185836ff246679e09f7],
PUP.Optional.MindSpark.A, C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_televisionfanatic.dl.tb.ask.com_0.localstorage-journal, In Quarantäne, [cffe5215b7d3cf6718da87b1e12418e8],
PUP.Optional.CrossRider.T, C:\Windows\Tasks\39c90b0c-5368-4b13-949e-56470c18059a-1-6.job, In Quarantäne, [ba130a5d7f0b38febe8eb8853dc86e92],
PUP.Optional.GlobalUpdate.A, C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job, In Quarantäne, [9f2e72f5eaa00432afac013cfb0a08f8],
PUP.Optional.GlobalUpdate.A, C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineCore, In Quarantäne, [854879ee91f9e74f302cd26bde270af6],
PUP.Optional.GlobalUpdate.A, C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job, In Quarantäne, [05c8bbac4743fc3a92cb5ae39471bb45],
PUP.Optional.GlobalUpdate.A, C:\Windows\System32\Tasks\globalUpdateUpdateTaskMachineUA, In Quarantäne, [44892a3d107a36001747f64702034eb2],
PUP.Optional.OpenCandy, C:\Users\Max\AppData\Roaming\OpenCandy\0C7632ACB71B4BBF9E73863030DCCBFF\TuneUpUtilities2014_de-DE.exe, In Quarantäne, [8b4212557911c07684880b7305fece32],
PUP.Optional.OpenCandy, C:\Users\Max\AppData\Roaming\OpenCandy\FDC46356C0024B3B87E55351079C5717\zafwSetupWeb_131_211_000.exe, In Quarantäne, [8b4212557911c07684880b7305fece32],
PUP.Optional.PriceMeter.A, C:\Users\Max\AppData\Roaming\PriceMeterUpdater\UpdateProc\config.dat, In Quarantäne, [1bb23b2c0b7f8caac7404b39fe051ce4],
PUP.Optional.PriceMeter.A, C:\Users\Max\AppData\Roaming\PriceMeterUpdater\UpdateProc\info.dat, In Quarantäne, [1bb23b2c0b7f8caac7404b39fe051ce4],
PUP.Optional.PriceMeter.A, C:\Users\Max\AppData\Roaming\PriceMeterUpdater\UpdateProc\STTL.DAT, In Quarantäne, [1bb23b2c0b7f8caac7404b39fe051ce4],
PUP.Optional.PriceMeter.A, C:\Users\Max\AppData\Roaming\PriceMeterUpdater\UpdateProc\TTL.DAT, In Quarantäne, [1bb23b2c0b7f8caac7404b39fe051ce4],
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update\conf, In Quarantäne, [6b626dfa92f80a2c712b99f9f40fb848],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleCrashHandler.exe, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleUpdate.exe, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleUpdateBroker.exe, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleUpdateHelper.msi, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\GoogleUpdateOnDemand.exe, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\goopdate.dll, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\goopdateres_en.dll, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\psmachine.dll, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\psuser.dll, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.GlobalUpdate.T, C:\Program Files (x86)\globalUpdate\Update\Download\{00135CAC-3C14-474B-B3CE-0DF06CE24B7C}\1.3.25.27\setup.exe, In Quarantäne, [e2eb8bdc6327013548859af97d86b749],
PUP.Optional.Shopperz.A, C:\Program Files\shopperz\krios.dll, In Quarantäne, [23aab8afcdbded4984fe01a821e2c43c],
PUP.Optional.Shopperz.A, C:\Program Files\shopperz\krios64.dll, In Quarantäne, [23aab8afcdbded4984fe01a821e2c43c],
PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate\update\conf, In Quarantäne, [6667e087a7e34beb3b18affbf50ebf41],
PUP.Optional.LolliScan.A, C:\ProgramData\LolliScan\RfndNSIS.dll, In Quarantäne, [ece12f38c9c1f640e192d4da54af5aa6],
PUP.Optional.CinemaPlus.A, C:\Program Files (x86)\CinPlus_v1.7cV03.03\7fe04bc6-0213-46bc-bdbd-58da76984080.crx, In Quarantäne, [725b7dea3b4f54e26b1dcbe4fe059d63],
PUP.Optional.CinemaPlus.A, C:\Program Files (x86)\CinPlus_v1.7cV03.03\bgNova.html, In Quarantäne, [725b7dea3b4f54e26b1dcbe4fe059d63],
PUP.Optional.CinemaPlus.A, C:\Program Files (x86)\CinPlus_v1.7cV03.03\utils.exe, In Quarantäne, [725b7dea3b4f54e26b1dcbe4fe059d63],
PUP.Optional.Trovi.A, C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences, Gut: (), Schlecht: ( "homepage": "hxxp://www.trovi.com/?gd=&ctid=CT3320048&octid=EB_ORIGINAL_CTID&ISID=M6D415E89-4EC0-42FF-B0D2-AF3714427D49&SearchSource=55&CUI=&UM=8&UP=SPAAF405DE-A857-446B-B132-EC4AEB9BC955&SSPV=",), Ersetzt,[d4f9a0c70288b482b238a98cc73fb848]
Physische Sektoren: 0
(Keine schädliche Elemente gefunden)
(end) Code:
# AdwCleaner v4.200 - Bericht erstellt 02/04/2015 um 21:38:36
# Aktualisiert 29/03/2015 von Xplode
# Datenbank : 2015-03-29.1 [Lokal]
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (x64)
# Benutzername : Max - MAX-PC
# Gestarted von : C:\Users\Max\Downloads\AdwCleaner_4.200.exe
# Option : Löschen
***** [ Dienste ] *****
[#] Dienst Gelöscht : Partner Service
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\ProgramData\baidu
Ordner Gelöscht : C:\ProgramData\Partner
Ordner Gelöscht : C:\ProgramData\PriceMeterLiveUpdate
Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\clean2PC
Ordner Gelöscht : C:\Program Files (x86)\globalUpdate
Ordner Gelöscht : C:\Program Files (x86)\download Manager
Ordner Gelöscht : C:\Program Files (x86)\Win_Scan
Ordner Gelöscht : C:\Program Files (x86)\clean2PC
Ordner Gelöscht : C:\Users\Max\AppData\Local\globalUpdate
Ordner Gelöscht : C:\Users\Max\AppData\Local\Mindspark_Interactive_Net
Ordner Gelöscht : C:\Users\Max\AppData\Roaming\baidu
Ordner Gelöscht : C:\Users\Max\Documents\Optimizer Pro
Datei Gelöscht : C:\Windows\Reimage.ini
Datei Gelöscht : C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_free-keylogger.en.softonic.com_0.localstorage
Datei Gelöscht : C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_free-keylogger.en.softonic.com_0.localstorage-journal
Datei Gelöscht : C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.deltam2-personal.de_0.localstorage
Datei Gelöscht : C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.deltam2-personal.de_0.localstorage-journal
***** [ Geplante Tasks ] *****
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Schlüssel Gelöscht : HKCU\Software\MICROSOFT\INTERNET EXPLORER\DOMSTORAGE\superfish.com
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.superfish.com
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\kt_bho_dll.dll
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\protector_dll.protectorbho.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ScriptHost.Tool
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ScriptHost.Tool.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\REI_AxControl.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\REI_AxControl.ReiEngine
Schlüssel Gelöscht : HKLM\SOFTWARE\7fe04bc6-0213-46bc-bdbd-58da76984080
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{06DEB529-DE09-43EC-B6E2-451AAB0FF000}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{28A88B70-D874-4F73-BBBA-9B2B222FB7D6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{19D2F415-D58B-46BC-9390-C03DCBC21EB2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{6E45F3E8-2683-4824-A6BE-08108022FB36}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{744E0E81-BC79-4719-A58B-C98F7E78EE5D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{987D9269-F8A1-408F-BF62-4397D2F5363E}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{9F0F16DD-4E76-4049-A9B1-7A91E48F0323}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E0722BEB-FDA1-4AA1-A2A8-15A74A5B3F70}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{F1963E76-845B-474C-8C7F-D69A96D8AA34}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{F4288797-CB12-49CE-9DF8-7CDFA1143BEA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{744E0E81-BC79-4719-A58B-C98F7E78EE5D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E4C3E50F-5761-4BF8-95A0-939A819DF1C3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{06DEB529-DE09-43EC-B6E2-451AAB0FF000}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{E00DE9B9-B128-4C39-B732-B5D85013FA48}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{9AE7A6AE-162E-44C4-9A2B-A6B4EF19909D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{FA6468D2-FAA4-4951-A53B-2A5CF9CC0A36}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{10ECCE17-29B5-4880-A8F5-EAD298611484}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83CAD530-387D-40FD-82EA-B9E863D92A9B}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{0A93904A-BB1E-4A0C-9753-B57B9AE272CB}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{10ECCE17-29B5-4880-A8F5-EAD298611484}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{801B440B-1EE3-49B0-B05D-2AB076D4E8CB}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{744E0E81-BC79-4719-A58B-C98F7E78EE5D}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{E4C3E50F-5761-4BF8-95A0-939A819DF1C3}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{9BB31AD8-5DB2-459E-A901-DEA536F23BA4}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{BD51A48E-EB5F-4454-8774-EF962DF64546}
Schlüssel Gelöscht : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9CB96984-43C3-4D44-90EF-01466EFCF7BB}
Schlüssel Gelöscht : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0}
Schlüssel Gelöscht : HKCU\Software\APN PIP
Schlüssel Gelöscht : HKCU\Software\Conduit
Schlüssel Gelöscht : HKCU\Software\GlobalUpdate
Schlüssel Gelöscht : HKCU\Software\InstalledBrowserExtensions
Schlüssel Gelöscht : HKCU\Software\powerpack
Schlüssel Gelöscht : HKCU\Software\simplytech
Schlüssel Gelöscht : HKCU\Software\Reimage
Schlüssel Gelöscht : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Schlüssel Gelöscht : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
Schlüssel Gelöscht : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Schlüssel Gelöscht : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Schlüssel Gelöscht : HKLM\SOFTWARE\AskPartnerNetwork
Schlüssel Gelöscht : HKLM\SOFTWARE\Conduit
Schlüssel Gelöscht : HKLM\SOFTWARE\GlobalUpdate
Schlüssel Gelöscht : HKLM\SOFTWARE\InstalledBrowserExtensions
Schlüssel Gelöscht : HKLM\SOFTWARE\SupDp
Schlüssel Gelöscht : HKLM\SOFTWARE\Baidu
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{EE171732-BEB4-4576-887D-CB62727F01CA}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Reimage
Daten Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - <local>
***** [ Internetbrowser ] *****
-\\ Internet Explorer v11.0.9600.17689
-\\ Google Chrome v41.0.2272.118
[C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://search.zonealarm.com/search?src=sp&tbid=HFA5&Lan=DE&q={searchTerms}&gu=8324b7f43d6042b0b411dbe57a3eb4b8&tu=11Jiy00Eu1D13P0&sku=&tstsId=&ver=&
[C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3320048&octid=EB_ORIGINAL_CTID&ISID=M6D415E89-4EC0-42FF-B0D2-AF3714427D49&SearchSource=58&CUI=&UM=8&UP=SPAAF405DE-A857-446B-B132-EC4AEB9BC955&q={searchTerms}&SSPV=
[C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://www.mystartsearch.com/web/?type=dspp&ts=1425492597&from=fun&uid=WDCXWD10EADS-22M2B0_WD-WCAV5970931309313&q={searchTerms}
[C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://www.mystartsearch.com/web/?type=dspp&ts=1425492597&from=fun&uid=WDCXWD10EADS-22M2B0_WD-WCAV5970931309313&q={searchTerms}
[C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://www.omniboxes.com/web/?type=dspp&ts=1425492904&from=amt&uid=WDCXWD10EADS-22M2B0_WD-WCAV5970931309313&q={searchTerms}
[C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://www.omniboxes.com/web/?type=dspp&ts=1425492904&from=amt&uid=WDCXWD10EADS-22M2B0_WD-WCAV5970931309313&q={searchTerms}
[C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://en.softonic.com/s/{searchTerms}
[C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Gelöscht [Extension] : booedmolknjekdopkepjjeckmjkdpfgl
[C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Gelöscht [Extension] : flpcjncodpafbgdpnkljologafpionhb
[C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Gelöscht [Homepage] : hxxp://www.trovi.com/?gd=&ctid=CT3320048&octid=EB_ORIGINAL_CTID&ISID=M6D415E89-4EC0-42FF-B0D2-AF3714427D49&SearchSource=55&CUI=&UM=8&UP=SPAAF405DE-A857-446B-B132-EC4AEB9BC955&SSPV=
[C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Gelöscht [Default_Search_Provider_Data] :
*************************
AdwCleaner[R0].txt - [38499 Bytes] - [02/04/2015 21:33:51]
AdwCleaner[S0].txt - [14982 Bytes] - [02/04/2015 21:38:36]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [15042 Bytes] ########## Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.5.1 (04.02.2015:1)
OS: Windows 7 Home Premium x64
Ran by Max on 02.04.2015 at 21:49:48,59
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}
~~~ Files
Successfully deleted: [File] "C:\Users\Max\appdata\local\google\chrome\user data\default\local storage\http_www.superfish.com_0.localstorage"
Successfully deleted: [File] "C:\Users\Max\appdata\local\google\chrome\user data\default\local storage\http_www.superfish.com_0.localstorage-journal"
Successfully deleted: [File] "C:\Windows\wininit.ini"
~~~ Folders
Successfully deleted: [Folder] "C:\ProgramData\baidu security"
Successfully deleted: [Folder] "C:\Program Files (x86)\baidu security"
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 02.04.2015 at 21:56:12,04
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |