PhiGammaTau | 09.05.2015 10:40 | Hallo! Das ging ja mal fix. Ich bin begeistert.
Leider muss ich einen kleinen Fehler gestehen: Es handelt sich um Windows 8. Ich arbeite nur mehr mit Windows 7 und vergesse das gerne. Ich hoffe das ist kein Problem.
Leider sind alle Logs zusammen zu lang, deshalb poste ich FRST und FRST Addition seperat
Kommen wir zu den Logs:
1) MBAM Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 09.05.2015
Suchlauf-Zeit: 10:21:35
Logdatei: mbam.txt
Administrator: Ja
Version: 2.01.6.1022
Malware Datenbank: v2015.05.09.01
Rootkit Datenbank: v2015.04.21.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 8
CPU: x64
Dateisystem: NTFS
Benutzer: Eli
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 416132
Verstrichene Zeit: 35 Min, 50 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(Keine schädliche Elemente gefunden)
Module: 0
(Keine schädliche Elemente gefunden)
Registrierungsschlüssel: 27
PUP.Optional.DynConIE.A, HKLM\SOFTWARE\CLASSES\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}, In Quarantäne, [8015b1e0c0ca53e34d063d170ff4fa06],
PUP.Optional.DynConIE.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}, In Quarantäne, [8015b1e0c0ca53e34d063d170ff4fa06],
PUP.Optional.DynConIE.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}, In Quarantäne, [8015b1e0c0ca53e34d063d170ff4fa06],
PUP.Optional.SearchProtect.A, HKU\S-1-5-21-2344629883-704184612-3672562925-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}, In Quarantäne, [0293dfb21c6e44f22b4c450ab94a25db],
PUP.Optional.ValueApps.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F63AAEDC-3602-49EF-AA45-262380A98980}, In Quarantäne, [c7ce97fa2d5d2412cb722d288f749967],
PUP.Optional.ValueApps.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{F63AAEDC-3602-49EF-AA45-262380A98980}, In Quarantäne, [c7ce97fa2d5d2412cb722d288f749967],
PUP.Optional.Goobzo, HKLM\SOFTWARE\CLASSES\CLSID\{020B1D4B-5738-4C77-9E19-4F173DD9B486}, In Quarantäne, [f99c29685634320416f454fed432c937],
PUP.Optional.ModGoog, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, In Quarantäne, [a8ed96fbeaa088ae9f1898b0f60cac54],
PUP.Optional.ModGoog, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, In Quarantäne, [a8ed96fbeaa088ae9f1898b0f60cac54],
PUP.Optional.Wajam.A, HKLM\SOFTWARE\WOW6432NODE\WIntEnhance, In Quarantäne, [e5b0a8e95832ff3768245a833ec524dc],
PUP.Optional.CrossRider.C, HKLM\SOFTWARE\WOW6432NODE\APPDATALOW\SOFTWARE\Crossrider, In Quarantäne, [2f66157c8dfdb87ea249ce0135ceeb15],
PUP.Optional.VoPackage.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\VOPackage, In Quarantäne, [1f76f49d0189ef47cf4afc6620e59967],
PUP.Optional.SystemSpeedup, HKLM\SOFTWARE\WOW6432NODE\SYSTWEAK\ssd, In Quarantäne, [c3d2642dd4b6a78f83de8d700ef5db25],
PUP.Optional.CrossRider.A, HKU\S-1-5-18\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, In Quarantäne, [187d8e03840626101e435debc83daf51],
PUP.Optional.GoHD.A, HKU\S-1-5-18\SOFTWARE\APPDATALOW\SOFTWARE\GoHD, In Quarantäne, [4550741d99f1082ee48a914953b045bb],
PUP.Optional.iWebar.A, HKU\S-1-5-18\SOFTWARE\APPDATALOW\SOFTWARE\iWebar, In Quarantäne, [306559382367082e61d5d30a5ba89c64],
PUP.Optional.Crossrider.C, HKU\S-1-5-18\SOFTWARE\APPDATALOW\SOFTWARE\_CrossriderRegNamePlaceHolder_, In Quarantäne, [deb730617119be78540596d047bea65a],
PUP.Optional.Wajam.A, HKU\S-1-5-21-2344629883-704184612-3672562925-1002\SOFTWARE\WajIEnhance, In Quarantäne, [51446031a2e8af871d8f5a8714ef37c9],
PUP.Optional.Wajam.A, HKU\S-1-5-21-2344629883-704184612-3672562925-1002\SOFTWARE\WIntEnhance, In Quarantäne, [7124256cb8d248ee5439974614efb64a],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-2344629883-704184612-3672562925-1002\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, In Quarantäne, [9df8d2bfc6c4ff37ec755aee986d8c74],
PUP.Optional.ValueApps.A, HKU\S-1-5-21-2344629883-704184612-3672562925-1002\SOFTWARE\CONDUIT\ValueApps, In Quarantäne, [71248908e6a41521e41357c75ba98977],
PUP.Optional.GlobalUpdate.C, HKU\S-1-5-21-2344629883-704184612-3672562925-1002\SOFTWARE\GLOBALUPDATE\UPDATE\PROXY, In Quarantäne, [6332038e0f7b1c1acf43636f9a69659b],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2344629883-704184612-3672562925-1002\SOFTWARE\INSTALLCORE\1I1T1Q1S, In Quarantäne, [eea768290b7fd95d7214889656ae30d0],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2344629883-704184612-3672562925-1002\SOFTWARE\INSTALLCORE, In Quarantäne, [197c0d847b0f6bcb1e3292a2d134738d],
PUP.Optional.SystemSpeedup, HKU\S-1-5-21-2344629883-704184612-3672562925-1002\SOFTWARE\SYSTWEAK\ssd, In Quarantäne, [a1f47b16c8c2c3731a46708d9e6548b8],
PUP.Optional.CrossRider.A, HKU\S-1-5-21-2344629883-704184612-3672562925-500\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\13641, In Quarantäne, [5b3a97fa593137ffdbd3fbf539ca13ed],
PUP.Optional.Wajam.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\WIntEnhance, In Quarantäne, [167f0a87b5d53afc47e05e3fcf3441bf],
Registrierungswerte: 5
PUP.Optional.VOPackage, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\VOPACKAGE|UninstallString, "C:\Users\Eli\AppData\Roaming\VOPackage\uninstall.exe", In Quarantäne, [484d8b06f59541f575816d8dfa096799]
PUP.Optional.GlobalUpdate.C, HKU\S-1-5-21-2344629883-704184612-3672562925-1002\SOFTWARE\GLOBALUPDATE\UPDATE\PROXY|source, Firefox, In Quarantäne, [6332038e0f7b1c1acf43636f9a69659b]
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2344629883-704184612-3672562925-1002\SOFTWARE\INSTALLCORE|tb, 0B1G1O1S0V1G1F, In Quarantäne, [197c0d847b0f6bcb1e3292a2d134738d]
PUP.Optional.Trovi.A, HKU\S-1-5-21-2344629883-704184612-3672562925-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}|URL, hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3314958&octid=EB_ORIGINAL_CTID&ISID=MC1C80B5C-CC13-4CF4-94EC-0091DCE2EC00&SearchSource=58&CUI=&UM=2&UP=SP20A5FFEC-637D-4059-827A-E240577FFCFC&q={searchTerms}&SSPV=, In Quarantäne, [40552b6611794ee8c602431e2fd6f907]
PUP.Optional.Conduit.A, HKU\S-1-5-21-2344629883-704184612-3672562925-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}|SuggestionsURL_JSON, hxxp://suggest.search.conduit.com/CSuggestJson.ashx?prefix={searchTerms}, In Quarantäne, [d7beb7da5f2bb185833f10c24fb4ea16]
Registrierungsdaten: 0
(Keine schädliche Elemente gefunden)
Ordner: 35
PUP.Optional.Wajam.A, C:\Program Files (x86)\Wajam, In Quarantäne, [167f0a87b5d53afc47e05e3fcf3441bf],
PUP.Optional.OpenCandy, C:\Users\Eli\AppData\Roaming\OpenCandy, In Quarantäne, [cacb4c45d5b52b0bfe489c016d9641bf],
PUP.Optional.OpenCandy, C:\Users\Eli\AppData\Roaming\OpenCandy\08E5E7B594794F0BBE49339568DE77D9, In Quarantäne, [cacb4c45d5b52b0bfe489c016d9641bf],
PUP.Optional.OpenCandy, C:\Users\Eli\AppData\Roaming\OpenCandy\332BDC0594A240118CA450B27A28DBC0, In Quarantäne, [cacb4c45d5b52b0bfe489c016d9641bf],
PUP.Optional.OpenCandy, C:\Users\Eli\AppData\Roaming\OpenCandy\37F9948D03134EECA3BFA1421F80FE25, In Quarantäne, [cacb4c45d5b52b0bfe489c016d9641bf],
PUP.Optional.OpenCandy, C:\Users\Eli\AppData\Roaming\OpenCandy\3C7A668A88AF446C807794C6E037863D, In Quarantäne, [cacb4c45d5b52b0bfe489c016d9641bf],
PUP.Optional.OpenCandy, C:\Users\Eli\AppData\Roaming\OpenCandy\950706C9A18D4E28A7BD6B054ABEBC82, In Quarantäne, [cacb4c45d5b52b0bfe489c016d9641bf],
PUP.Optional.Conduit.A, C:\Users\Eli\AppData\Local\Temp\mam-ct3317212, In Quarantäne, [6134efa24545fb3b4b6e178bef1402fe],
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf, In Quarantäne, [bfd6c4cd642639fd3f829b0808fb4cb4],
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0, In Quarantäne, [bfd6c4cd642639fd3f829b0808fb4cb4],
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Local\Temp\mt_ffx\Softonic, In Quarantäne, [0392b5dc0a8094a2239f5251cb386e92],
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Local\Temp\mt_ffx\Softonic\Softonic, In Quarantäne, [0392b5dc0a8094a2239f5251cb386e92],
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Local\Temp\mt_ffx\Softonic\Softonic\1.8.21.14, In Quarantäne, [0392b5dc0a8094a2239f5251cb386e92],
PUP.Optional.SystemSpeedup, C:\Users\Eli\AppData\Roaming\systweak\ssd, In Quarantäne, [6c29f1a0dbaff34332b8c5eb54af956b],
PUP.Optional.GlobalUpdate.A, C:\Users\Eli\AppData\Local\Temp\comh.485073, In Quarantäne, [1c79375a4149fc3a5a695c55d23114ec],
PUP.Optional.VOPackage.A, C:\Users\Eli\AppData\Roaming\VOPackage, In Quarantäne, [692c5041b4d61f17a53e309546bd2ed2],
PUP.Optional.VOPackage.A, C:\Users\Eli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage, In Quarantäne, [2372cbc69eec8ea8c61e7a4bed16eb15],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\WIntEnhance Internet Enhancer, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WIntEnhance, In Quarantäne, [91044f42325854e2f95a4583986b10f0],
PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WIntEnhance\Uninstall Wajam, In Quarantäne, [91044f42325854e2f95a4583986b10f0],
PUP.Optional.VeggyAddon.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\veggy@veggyAddon.com, In Quarantäne, [a3f29ef3d5b5a88e375a8d3f659e60a0],
PUP.Optional.VeggyAddon.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\veggy@veggyAddon.com\chrome, In Quarantäne, [a3f29ef3d5b5a88e375a8d3f659e60a0],
PUP.Optional.VeggyAddon.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\veggy@veggyAddon.com\chrome\content, In Quarantäne, [a3f29ef3d5b5a88e375a8d3f659e60a0],
PUP.Optional.VeggyAddon.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\veggy@veggyAddon.com\chrome\skin, In Quarantäne, [a3f29ef3d5b5a88e375a8d3f659e60a0],
PUP.Optional.VeggyAddon.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\veggy@veggyAddon.com\modules, In Quarantäne, [a3f29ef3d5b5a88e375a8d3f659e60a0],
PUP.Optional.ValueApps.A, C:\Users\Eli\AppData\Roaming\ValueApps, In Quarantäne, [7d18b9d8d3b71c1ad6f8d8f5f80b8977],
PUP.Optional.ValueApps.A, C:\Users\Eli\AppData\Roaming\ValueApps\IE, In Quarantäne, [7d18b9d8d3b71c1ad6f8d8f5f80b8977],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\chrome, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\chrome\content, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\chrome\skin, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\modules, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\modules\tools, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
Dateien: 211
PUP.Optional.OpenCandy.A, C:\Users\Eli\AppData\Roaming\OpenCandy\950706C9A18D4E28A7BD6B054ABEBC82\Setupsft_chr_p1v7.exe, In Quarantäne, [c0d5543d7c0e51e5897d745e3dc828d8],
PUP.Optional.Goobzo, C:\Program Files\Common Files\System\SysMenu.dll, In Quarantäne, [b8ddcbc6d2b8bc7a818977db5bab0000],
PUP.Optional.Goobzo, C:\Program Files\Common Files\System\SysMenu64.dll, In Quarantäne, [f99c29685634320416f454fed432c937],
PUP.Optional.SearchProtect.A, C:\Users\Eli\AppData\Local\Temp\nsmC563.exe, In Quarantäne, [2c69e0b1f2982a0cc7a9124a50b105fb],
PUP.Optional.SearchProtect.A, C:\Users\Eli\AppData\Local\Temp\nso62CE.exe, In Quarantäne, [a1f46a2765252e083838f468cd34936d],
PUP.Optional.SearchProtect.A, C:\Users\Eli\AppData\Local\Temp\nso7FEB.exe, In Quarantäne, [266f256cc5c5f93d6e0283d929d8b14f],
PUP.Optional.SearchProtect.A, C:\Users\Eli\AppData\Local\Temp\nsp2528.exe, In Quarantäne, [880da3eec9c11125a4cc99c3dd243ac6],
PUP.Optional.Goobzo, C:\Users\Eli\AppData\Local\Temp\dufgmr4c.exe, In Quarantäne, [a9eca4ed0387063031b0f5d6bd449070],
PUP.Optional.SearchProtect.A, C:\Users\Eli\AppData\Local\Temp\nsvC37D.exe, In Quarantäne, [dabb6d24abdf47ef234d8bd1d32e02fe],
PUP.Optional.SearchProtect.A, C:\Users\Eli\AppData\Local\Temp\nsa683D.exe, In Quarantäne, [0392147d206ad95dc6aaa5b7956c08f8],
PUP.Optional.SearchProtect.A, C:\Users\Eli\AppData\Local\Temp\nsfD03.exe, In Quarantäne, [eaab6a270b7fee48f47cf468b24f8080],
PUP.Optional.SearchProtect.A, C:\Users\Eli\AppData\Local\Temp\nsg1D66.exe, In Quarantäne, [9ff65f32d1b92115620e065630d1748c],
PUP.Optional.SearchProtect.A, C:\Users\Eli\AppData\Local\Temp\nsi7DA8.exe, In Quarantäne, [44511f72206a40f6244c4a122fd2768a],
PUP.Optional.SearchProtect.A, C:\Users\Eli\AppData\Local\Temp\nsj6FD7.exe, In Quarantäne, [cfc64b46a9e1fe385f116af214ed9868],
PUP.Optional.Mypcbackup, C:\Users\Eli\AppData\Local\Temp\BackupSetup.exe, In Quarantäne, [049101904d3ddf574fb267eb0df90cf4],
PUP.Optional.Conduit.A, C:\Users\Eli\AppData\Local\Temp\mam-ct3317212\mam_ff.exe, In Quarantäne, [d5c0b4dd8ffbf93d82ce9e95b14fce32],
PUP.Optional.ModGoog, C:\Users\Eli\AppData\Local\Temp\comh.485073\GoogleCrashHandler.exe, In Quarantäne, [7e171b76a0ea2610c7f069dfc83a4db3],
PUP.Optional.ModGoog, C:\Users\Eli\AppData\Local\Temp\comh.485073\GoogleUpdate.exe, In Quarantäne, [a8ed96fbeaa088ae9f1898b0f60cac54],
PUP.Optional.ModGoog, C:\Users\Eli\AppData\Local\Temp\comh.485073\GoogleUpdateBroker.exe, In Quarantäne, [6233eba63456be785760df690ef46f91],
PUP.Optional.ModGoog, C:\Users\Eli\AppData\Local\Temp\comh.485073\GoogleUpdateOnDemand.exe, In Quarantäne, [deb7a1f00a80ed49298e232527db8e72],
PUP.Optional.ModGoog, C:\Users\Eli\AppData\Local\Temp\comh.485073\goopdate.dll, In Quarantäne, [5b3a5041f793979f03b498b05aa8cd33],
PUP.Optional.ModGoog, C:\Users\Eli\AppData\Local\Temp\comh.485073\goopdateres_en.dll, In Quarantäne, [1481cec3bfcbf54151667eca1ae8a55b],
PUP.Optional.ModGoog, C:\Users\Eli\AppData\Local\Temp\comh.485073\npGoogleUpdate4.dll, In Quarantäne, [cacbdcb502887db98334b8909b67639d],
PUP.Optional.ModGoog, C:\Users\Eli\AppData\Local\Temp\comh.485073\psmachine.dll, In Quarantäne, [d3c2b9d8e6a467cf57604afeb34fcb35],
PUP.Optional.ModGoog, C:\Users\Eli\AppData\Local\Temp\comh.485073\psuser.dll, In Quarantäne, [266f2b6683076ec8e6d1a4a452b0718f],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsa653F.exe, In Quarantäne, [e6afd2bf6426aa8c2749104cb54c21df],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsa78D4.exe, In Quarantäne, [6c299df42f5ba294d59b4319936ec63a],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsc3C67.exe, In Quarantäne, [e1b4c7ca1b6fe353650b74e804fd36ca],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsc63FB.exe, In Quarantäne, [9cf9d6bb4d3dc3735d131646fa0727d9],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsc9631.exe, In Quarantäne, [375e672a325842f4a7c9b9a36a9737c9],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsd46E6.exe, In Quarantäne, [3b5a3958c9c191a5e78918447091bc44],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsnF83A.exe, In Quarantäne, [464fc8c97416b97d3d336bf1cd348e72],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nso2433.exe, In Quarantäne, [f0a5cac761293bfb0868de7e48b936ca],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsp6E41.exe, In Quarantäne, [5b3a632e8109cd6991dfee6e04fd30d0],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsp8A58.exe, In Quarantäne, [2570840dbfcb4fe773fdbd9fc9385ba5],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsq39A.exe, In Quarantäne, [3a5be4ad414946f05f11f06cce3346ba],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsq6061.exe, In Quarantäne, [1e77e8a913775ed8b0c076e6e12014ec],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsq9D4.exe, In Quarantäne, [a8ed127f9cee37ff1e5261fb669b45bb],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsqA660.exe, In Quarantäne, [d0c5246d5733ad898ee291cbeb164eb2],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nss792.exe, In Quarantäne, [395c4b46d2b89f97056bbaa2e0217789],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsz201C.exe, In Quarantäne, [f0a5642dfd8d5cda551bb3a9917030d0],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsz39CA.exe, In Quarantäne, [4352830e1f6b1422fd73bd9f857c857b],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsz8702.exe, In Quarantäne, [deb7b2df3258092d4b25055748b9d030],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsg24EC.exe, In Quarantäne, [4550eaa7bcced0666a06312bbf42d12f],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsg3D93.exe, In Quarantäne, [e9ac8809abdf35012947e577e1206e92],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsg475A.exe, In Quarantäne, [20756829e7a3261078f8ec70bb468f71],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsg71FA.exe, In Quarantäne, [31645938bcce3600c8a8f8647b86f907],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsg92A7.exe, In Quarantäne, [a5f0127f672393a3333db3a9b0519e62],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nshAA19.exe, In Quarantäne, [7421fa97b6d43105422ec498ac55a15f],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsi28E4.exe, In Quarantäne, [e7ae3c555337b086d19f0d4fe61bb749],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsj490B.exe, In Quarantäne, [395ce6abd2b8c86e74fc8fcd0cf5946c],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsk652F.exe, In Quarantäne, [4e47028f8406f83ea9c7afad0af7c13f],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsk76F0.exe, In Quarantäne, [4b4afd94800a5ed86d03bf9ded14aa56],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nskDC26.exe, In Quarantäne, [cdc829686e1c78beb9b796c63dc46799],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsl23FF.exe, In Quarantäne, [43525b366d1d082e1957421a976acd33],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsm2089.exe, In Quarantäne, [286d137eb5d52f07a6ca97c52fd2ad53],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsu8777.exe, In Quarantäne, [52433c55682237ff046cb1ab35cc7987],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsv4CF3.exe, In Quarantäne, [3560bed33b4f1f17a3cd025aa45dc33d],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsvE0AC.exe, In Quarantäne, [b1e4820fcac01323fa7694c89d6410f0],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsw6858.exe, In Quarantäne, [3b5ab7dab8d242f4bcb480dc31d0cc34],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsw8B21.exe, In Quarantäne, [33621978e7a34de99ad63a220af707f9],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsx4B13.exe, In Quarantäne, [fd985d340c7e191de58bd78521e0fe02],
PUP.Optional.SearchProtect.A, C:\Windows\Temp\nsf220B.exe, In Quarantäne, [c1d42c659ded7abced839bc1cb36619f],
PUP.Optional.Giga, C:\Users\Eli\Downloads\Multisine-lnstall.exe, In Quarantäne, [6e274a47c4c61e18aff44ca9af56e11f],
PUP.Optional.Goobzo.A, C:\Windows\System32\Tasks\SMupdate1, In Quarantäne, [375ea9e8593157df8e67095deb1ade22],
PUP.Optional.Wajam.A, C:\Program Files (x86)\Wajam\uninstall.exe, In Quarantäne, [167f0a87b5d53afc47e05e3fcf3441bf],
PUP.Optional.OpenCandy, C:\Users\Eli\AppData\Roaming\OpenCandy\08E5E7B594794F0BBE49339568DE77D9\dlm.exe, In Quarantäne, [cacb4c45d5b52b0bfe489c016d9641bf],
PUP.Optional.OpenCandy, C:\Users\Eli\AppData\Roaming\OpenCandy\332BDC0594A240118CA450B27A28DBC0\dlm.exe, In Quarantäne, [cacb4c45d5b52b0bfe489c016d9641bf],
PUP.Optional.OpenCandy, C:\Users\Eli\AppData\Roaming\OpenCandy\37F9948D03134EECA3BFA1421F80FE25\Trial-14.0.1000.89_de-DE_1004733_DE-2.exe, In Quarantäne, [cacb4c45d5b52b0bfe489c016d9641bf],
PUP.Optional.OpenCandy, C:\Users\Eli\AppData\Roaming\OpenCandy\3C7A668A88AF446C807794C6E037863D\Trial-14.0.1000.89_de-DE_1004733_DE-2.exe, In Quarantäne, [cacb4c45d5b52b0bfe489c016d9641bf],
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\appCntrl.js, In Quarantäne, [bfd6c4cd642639fd3f829b0808fb4cb4],
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\bg.html, In Quarantäne, [bfd6c4cd642639fd3f829b0808fb4cb4],
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\bg.js, In Quarantäne, [bfd6c4cd642639fd3f829b0808fb4cb4],
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\chMntz.dll, In Quarantäne, [bfd6c4cd642639fd3f829b0808fb4cb4],
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\CrmAdpt.dll, In Quarantäne, [bfd6c4cd642639fd3f829b0808fb4cb4],
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\ct.js, In Quarantäne, [bfd6c4cd642639fd3f829b0808fb4cb4],
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\CTB.dll, In Quarantäne, [bfd6c4cd642639fd3f829b0808fb4cb4],
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\dpk.js, In Quarantäne, [bfd6c4cd642639fd3f829b0808fb4cb4],
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\hprtkMsg.htm, In Quarantäne, [bfd6c4cd642639fd3f829b0808fb4cb4],
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\hprtkMsg.js, In Quarantäne, [bfd6c4cd642639fd3f829b0808fb4cb4],
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\json2.min.js, In Quarantäne, [bfd6c4cd642639fd3f829b0808fb4cb4],
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\logo.png, In Quarantäne, [bfd6c4cd642639fd3f829b0808fb4cb4],
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\manifest.json, In Quarantäne, [bfd6c4cd642639fd3f829b0808fb4cb4],
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Local\Google\Chrome\User Data\default\extensions\elchiiiejkobdbblfejjkbphbddgmljf\1.0_0\pref.json, In Quarantäne, [bfd6c4cd642639fd3f829b0808fb4cb4],
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Local\Temp\mt_ffx\Softonic\Softonic\1.8.21.14\softonic.xpi, In Quarantäne, [0392b5dc0a8094a2239f5251cb386e92],
PUP.Optional.SystemSpeedup, C:\Users\Eli\AppData\Roaming\systweak\ssd\SSDPTstub.exe, In Quarantäne, [6c29f1a0dbaff34332b8c5eb54af956b],
PUP.Optional.GlobalUpdate.A, C:\Users\Eli\AppData\Local\Temp\comh.485073\GoogleUpdateHelper.msi, In Quarantäne, [1c79375a4149fc3a5a695c55d23114ec],
PUP.Optional.VOPackage.A, C:\Users\Eli\AppData\Roaming\VOPackage\Uninstall.exe, In Quarantäne, [692c5041b4d61f17a53e309546bd2ed2],
PUP.Optional.VOPackage.A, C:\Users\Eli\AppData\Roaming\VOPackage\VOPackage.exe, In Quarantäne, [692c5041b4d61f17a53e309546bd2ed2],
PUP.Optional.VOPackage.A, C:\Users\Eli\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage\Configure.lnk, In Quarantäne, [2372cbc69eec8ea8c61e7a4bed16eb15],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\uninstall.exe, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\amazon.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\argos.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\ask.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\bestbuy.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\ebay.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\etsy.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\facebook.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\favicon.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\google.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\homedepot.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\ikea.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\imdb.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\lowes.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\mercado.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\mysearchweb.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\myshopping.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\searchresult.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\sears.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\setting.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\settings.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\shopping.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\target.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\tesco.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\tripadvisor.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\twitter.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\wajam.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\walmart.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\wiki.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\yahoo.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\Logos\zalando.ico, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\WIntEnhance Internet Enhancer\1a79481564ec9035d56c0626bb372ba2, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\WIntEnhance Internet Enhancer\1af2a17a1d8b2a7a596f70d2e821bf62, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\WIntEnhance Internet Enhancer\ApiHandlr.dll, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\WIntEnhance Internet Enhancer\b5ee3c46972a98083c47fb2bd1f489f1, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\WIntEnhance Internet Enhancer\bc0e8acf5e9055ff0ea289d49ed16c07, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\WIntEnhance Internet Enhancer\dba5d5eaa194a5422a01e670dd73b448, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\WIntEnhance Internet Enhancer\e5cca93dc1ab51b874334bd320aadf4b, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\WIntEnhance Internet Enhancer\FiddlerCore.dll, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\WIntEnhance Internet Enhancer\HtmlAgilityPack.dll, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\WIntEnhance Internet Enhancer\makecert.exe, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\WIntEnhance Internet Enhancer\Newtonsoft.Json.dll, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\WIntEnhance Internet Enhancer\WHttpServer.exe, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\WIntEnhance Internet Enhancer\wie, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\Program Files (x86)\WIntEnhance\WIntEnhance Internet Enhancer\WJManifest, In Quarantäne, [e0b5c4cdf79343f3034fb31550b3916f],
PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WIntEnhance\Settings.lnk, In Quarantäne, [91044f42325854e2f95a4583986b10f0],
PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WIntEnhance\SignIn with Facebook.lnk, In Quarantäne, [91044f42325854e2f95a4583986b10f0],
PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WIntEnhance\SignIn with Twitter.lnk, In Quarantäne, [91044f42325854e2f95a4583986b10f0],
PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WIntEnhance\WIntEnhance Website.lnk, In Quarantäne, [91044f42325854e2f95a4583986b10f0],
PUP.Optional.Wajam.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WIntEnhance\Uninstall Wajam\uninstall.lnk, In Quarantäne, [91044f42325854e2f95a4583986b10f0],
PUP.Optional.VeggyAddon.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\veggy@veggyAddon.com\chrome.manifest, In Quarantäne, [a3f29ef3d5b5a88e375a8d3f659e60a0],
PUP.Optional.VeggyAddon.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\veggy@veggyAddon.com\install.rdf, In Quarantäne, [a3f29ef3d5b5a88e375a8d3f659e60a0],
PUP.Optional.VeggyAddon.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\veggy@veggyAddon.com\chrome\content\main.js, In Quarantäne, [a3f29ef3d5b5a88e375a8d3f659e60a0],
PUP.Optional.VeggyAddon.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\veggy@veggyAddon.com\chrome\content\main.xul, In Quarantäne, [a3f29ef3d5b5a88e375a8d3f659e60a0],
PUP.Optional.VeggyAddon.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\veggy@veggyAddon.com\chrome\skin\icon.png, In Quarantäne, [a3f29ef3d5b5a88e375a8d3f659e60a0],
PUP.Optional.VeggyAddon.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\veggy@veggyAddon.com\modules\XCipher.js, In Quarantäne, [a3f29ef3d5b5a88e375a8d3f659e60a0],
PUP.Optional.ValueApps.A, C:\Users\Eli\AppData\Roaming\ValueApps\IE\ValueAppLog0.log, In Quarantäne, [7d18b9d8d3b71c1ad6f8d8f5f80b8977],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\chrome.manifest, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\install.rdf, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\chrome\content\content.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\chrome\content\html5slider.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\chrome\content\jquery-1.8.3.min.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\chrome\content\li.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\chrome\content\main.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\chrome\content\main.xul, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\chrome\content\options.html, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\chrome\content\options.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\chrome\content\tools.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\chrome\content\tr.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\chrome\content\zoom.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\chrome\skin\button.png, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\chrome\skin\icon32x32-disabled.png, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\chrome\skin\icon32x32.png, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\chrome\skin\options.css, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\chrome\skin\options_bg.png, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\chrome\skin\otaznik.png, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\chrome\skin\slider.png, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\modules\addon_d.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\modules\addon_info.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\modules\file_cacher.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\modules\guid.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\modules\observer.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\modules\pref_man.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\modules\pu_upd.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\modules\timer.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\modules\time_passed.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\modules\xcipher.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\modules\tools\days_passed.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\modules\tools\ff_info.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\modules\tools\firstrun.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.ZoomIt.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\extensions\{75e0918c-2af9-0d5f-238c-06447e4bf4c5}\modules\tools\os.js, In Quarantäne, [3d58bed3107a6acc35bdf65c53b3f907],
PUP.Optional.CrossRider.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.crossrider.bic", "14b2c078fa4a5a65c62c0899379bac53");), Ersetzt,[d6bf7b162367e05694a21c3bbb4b19e7]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.Softonic.admin", false);), Ersetzt,[0590f39e27634de9af9cd68164a2eb15]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (ferences
/* Do not edit this file.
*
), Ersetzt,[9ef7ddb4266481b57bd0b5a2c145e41c]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (references
/* Do not edit this file.
*
* If you make changes to this file ), Ersetzt,[b4e193fe1a7064d257f465f2ea1c45bb]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (e.
*
* If you make changes to this file while t), Ersetzt,[e8ad058cf49677bfff4c2b2c8b7be11f]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (ces
/* Do not edit this file.
*
* If you), Ersetzt,[801591001f6b979f85c61b3c8482b54b]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (erences
/* Do not edit this file.
*
* If ), Ersetzt,[e7ae89088901e650da715700e620e818]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (rences
/* Do not edit this file.
*
* If), Ersetzt,[197c286919710333e16a3027cc3a8d73]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (ferences
/* Do not edit this file.
*
* If), Ersetzt,[efa6345d296186b0301b0d4a2fd78a76]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (rences
/* Do not edit this file.
*
* If you m), Ersetzt,[ddb88b06aedc0234f457ce8947bf9967]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (es
/* Do not edit this file.
*
* If y), Ersetzt,[1f76e7aa890142f40e3d84d327dfd12f]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (references
/* Do not edit this file.
*
* If you make changes to this file while the application is running,
* the changes will be ove), Ersetzt,[bed7167b8208c5716ae15dfa5aacbe42]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (tion is running,
* the changes will be overwritten when the applicatio), Ersetzt,[e2b3aee33b4fb77f2922f463887e5aa6]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: ( this file.
*
* If you make changes to this fil), Ersetzt,[9afbfb960981a59191babc9b7195916f]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (ces
/* Do not edit this file.
*
* If you make c), Ersetzt,[fa9bc6cbe8a2999da2a9f3643ec812ee]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (
/* Do not edit this file.
*
* If you m), Ersetzt,[e9acf69b701a44f2173496c10afce818]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (ferences
/* Do not edit this file.
*
* If you make changes to this file while the application is running,
* the changes will be overwrit), Ersetzt,[c7cef9988a00ac8abf8c1047bf47758b]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (n is running,
* the changes will be overwritten w), Ersetzt,[b0e56b26602a4de996b5b7a03ccae41c]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (ces
/* Do not edit this file.
*
* If you make ), Ersetzt,[a6ef444dc4c6bd798ac193c46c9a9d63]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (s
/* Do not edit this file.
*
* If you m), Ersetzt,[1e77a7eab1d977bf85c6332442c426da]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (erences
/* Do not edit this file.
*
* If y), Ersetzt,[65302a6792f8053171da381fdd298e72]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (ences
/* Do not edit this file.
*
* If you make changes to this f), Ersetzt,[eda83e533e4c1e18b79403547e886e92]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: ( this file.
*
* If you make changes to this file whil), Ersetzt,[593cbfd2ec9ef04675d68bcc17efb44c]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (
/* Do not edit this file.
*
* If you make changes to this file while the application is running,
* the changes will be overwritten when the a), Ersetzt,[2174662b3e4cd660311a094e61a50000]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (s running,
* the changes will be overwritten when), Ersetzt,[a0f5cdc42c5ec670fc4f5ff88482c33d]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (ces
/* Do not edit this file.
*
* If you make changes ), Ersetzt,[0c895e33fb8f37ff3c0f1b3cb452926e]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (Do not edit this file.
*
* If you make changes t), Ersetzt,[662ffd943357ce683d0e8bcc7393fb05]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.Softonic.hmpgUrl", "hxxp://search.softonic.com/MOY00621/tb_v1?SearchSource=13&cc=&mi=ac4bd0fa00000000000084a6c87778a7");), Ersetzt,[9bfa276a404a81b5aba88dcaf3139e62]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (AccessId", "1899b96a01f12364c4dec89def30b8ba");
user_pref("PreisHeld.Activated", true);
user_pref("PreisHeld.lastUpdateDomains", 1426595474);
), Ersetzt,[ddb8048d3a502a0c6fe42b2cb155e719]
PUP.Optional.Softonic.A, C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\prefs.js, Gut: (), Schlecht: (lastUpdateDomains", 1426595474);
user_pref("accessibility.blockautorefresh", true);
user_pref("accessibility.typeaheadfind.flashBar", 0);
user_pr), Ersetzt,[0590444dc0ca112553002e29b35311ef]
Physische Sektoren: 0
(Keine schädliche Elemente gefunden)
(end)
2) ADW Cleaner Code:
# AdwCleaner v4.203 - Bericht erstellt 09/05/2015 um 11:07:40
# Aktualisiert 30/04/2015 von Xplode
# Datenbank : 2015-05-08.1 [Server]
# Betriebssystem : Windows 8 (x64)
# Benutzername : Eli - STICHLING
# Gestarted von : C:\Users\Eli\Desktop\Trojaner Board\AdwCleaner_4.203.exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\Program Files (x86)\Amazon\ABB
Ordner Gelöscht : C:\Program Files (x86)\globalUpdate
Ordner Gelöscht : C:\WINDOWS\SysWOW64\SearchProtect
Ordner Gelöscht : C:\Users\Eli\AppData\Local\Temp\mt_ffx
Ordner Gelöscht : C:\Users\Eli\AppData\Local\globalUpdate
Ordner Gelöscht : C:\Users\Eli\AppData\Roaming\Systweak
Ordner Gelöscht : C:\Users\Eli\AppData\Roaming\RHEng
Ordner Gelöscht : C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\Extensions\sparpilot@sparpilot.com
Datei Gelöscht : C:\END
Datei Gelöscht : C:\WINDOWS\System32\roboot64.exe
Datei Gelöscht : C:\Users\Eli\AppData\Roaming\Mozilla\Firefox\Profiles\fy5swyp3.default\invalidprefs.js
***** [ Geplante Tasks ] *****
Task Gelöscht : SMupdate1
Task Gelöscht : Microsoft\Windows\Multimedia\SMupdate3
Task Gelöscht : Microsoft\Windows\Maintenance\SMupdate2
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\conduit.com
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\SysMenuExt
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\SysMenu.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{7ABBFE1C-E485-44AA-8F36-353751B4124D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{D813D5BB-EBC7-45F9-B8A4-36A305168069}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{00B11DA2-75ED-4364-ABA5-9A95B1F5E946}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{0FCE4F01-64EC-42F1-83E1-1E08D38605D2}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{1A2A195A-A0F9-4006-AF02-3F05EEFDE792}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{2D9DB233-DC4B-4677-946C-5FA5ABCF506B}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{3AE76A17-C344-4A83-81CE-65EFEE41E42D}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{4C0A69B0-CE97-42B7-86FC-08280C99C74D}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{4E9EB4D5-C929-4005-AC62-1856B1DA5A24}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{8FAF962C-3EDE-405E-B1D0-62B8235C6044}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C1F5E799-B218-4C32-B189-3C389BA140BB}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{F60C9408-3110-4C98-A139-ABE1EE1111DD}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{7F40D5FC-8B38-4C2C-AC25-5E124CBCA051}
Schlüssel Gelöscht : HKCU\Software\Conduit
Schlüssel Gelöscht : HKCU\Software\GlobalUpdate
Schlüssel Gelöscht : HKCU\Software\OCS
Schlüssel Gelöscht : HKCU\Software\systweak
Schlüssel Gelöscht : HKLM\SOFTWARE\GlobalUpdate
Schlüssel Gelöscht : HKLM\SOFTWARE\systweak
Schlüssel Gelöscht : HKLM\SOFTWARE\SiteSee
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\YTDownloader
Daten Gelöscht : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyServer] - hxxp=127.0.0.1:58471;hxxps=127.0.0.1:58471
Daten Gelöscht : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyEnable] - 1
Daten Gelöscht : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - <-loopback>
Daten Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - <local>
***** [ Internetbrowser ] *****
-\\ Internet Explorer v10.0.9200.16537
-\\ Mozilla Firefox v37.0.2 (x86 de)
-\\ Google Chrome v
*************************
AdwCleaner[R0].txt - [4840 Bytes] - [09/05/2015 11:04:58]
AdwCleaner[S0].txt - [4166 Bytes] - [09/05/2015 11:07:40]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [4225 Bytes] ##########
3) JRT Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.6.9 (05.08.2015:1)
OS: Windows 8 x64
Ran by Eli on 09.05.2015 at 11:16:35,08
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Tasks
Successfully deleted: [Task] C:\WINDOWS\system32\tasks\Optimize Start Menu Cache Files-S-1-5-21-2344629883-704184612-3672562925-1002
~~~ Registry Values
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{85A60A59-D3D8-468F-B598-FB4393789EF4}
~~~ Files
~~~ Folders
Successfully deleted: [Folder] C:\WINDOWS\syswow64\ai_recyclebin
~~~ FireFox
Emptied folder: C:\Users\Eli\AppData\Roaming\mozilla\firefox\profiles\fy5swyp3.default\minidumps [48 files]
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 09.05.2015 at 11:18:29,05
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |