Wir wissen ja nicht genau ob sich da eine Spyware versteckt.
Denn der PC wurde langsam, Virenscanner Kaspersky sagt nichts dazu.
Malwarebytes hatte ich noch Bedrohungen entfernt, hier der Log: Code:
Malwarebytes
www.malwarebytes.com
-Protokolldetails-
Scan-Datum: 22.02.17
Scan-Zeit: 15:02
Protokolldatei: MALWAREBYTES.txt
Administrator: Ja
-Softwaredaten-
Version: 3.0.6.1469
Komponentenversion: 1.0.50
Version des Aktualisierungspakets: 1.0.1324
Lizenz: Testversion
-Systemdaten-
Betriebssystem: Windows 10
CPU: x64
Dateisystem: NTFS
Benutzer: DESKTOP-C39O3T9\Lilo
-Scan-Übersicht-
Scan-Typ: Bedrohungs-Scan
Ergebnis: Abgeschlossen
Gescannte Objekte: 453613
Abgelaufene Zeit: 3 Min., 43 Sek.
-Scan-Optionen-
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
-Scan-Details-
Prozess: 1
PUP.Optional.SpyHunter, C:\PROGRAM FILES\ENIGMA SOFTWARE GROUP\SPYHUNTER\SPYHUNTER4.EXE, In Quarantäne, [1676], [340933],1.0.1324
Modul: 5
PUP.Optional.SpyHunter, C:\PROGRAM FILES\ENIGMA SOFTWARE GROUP\SPYHUNTER\SPYHUNTER4.EXE, In Quarantäne, [1676], [340933],1.0.1324
PUP.Optional.SpyHunter, C:\PROGRAM FILES\ENIGMA SOFTWARE GROUP\SPYHUNTER\SHSCANNER.DLL, In Quarantäne, [1676], [340933],1.0.1324
PUP.Optional.SpyHunter, C:\PROGRAM FILES\ENIGMA SOFTWARE GROUP\SPYHUNTER\COMMON.DLL, In Quarantäne, [1676], [340933],1.0.1324
PUP.Optional.SpyHunter, C:\PROGRAM FILES\ENIGMA SOFTWARE GROUP\SPYHUNTER\EXECUTIONGUARD.DLL, In Quarantäne, [1676], [340933],1.0.1324
PUP.Optional.SpyHunter, C:\PROGRAM FILES\ENIGMA SOFTWARE GROUP\SPYHUNTER\DEFMAN.DLL, In Quarantäne, [1676], [340933],1.0.1324
Registrierungsschlüssel: 6
PUP.Optional.SpyHunter, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\esgiguard, In Quarantäne, [1676], [340933],1.0.1324
PUP.Optional.SpyHunter, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SpyHunter 4 Service, In Quarantäne, [1676], [340933],1.0.1324
PUP.Optional.SpyHunter, HKLM\SOFTWARE\ENIGMASOFTWAREGROUP\SpyHunter, In Quarantäne, [1676], [331803],1.0.1324
PUP.Optional.SpyHunter, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\SpyHunter4Startup, In Quarantäne, [1676], [331711],1.0.1324
PUP.Optional.SpyHunter, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\ESGSCANNER, In Quarantäne, [1676], [331708],1.0.1324
PUP.Optional.SpyHunter, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{CFA13FDB-12F1-468C-B15A-92628C04EC22}, In Quarantäne, [1676], [332366],1.0.1324
Registrierungswert: 3
PUP.Optional.SpyHunter, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\ESGIGUARD|IMAGEPATH, In Quarantäne, [1676], [331706],1.0.1324
PUP.Optional.SpyHunter, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\ESGSCANNER|IMAGEPATH, In Quarantäne, [1676], [331708],1.0.1324
PUP.Optional.SpyHunter, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TASKS\{CFA13FDB-12F1-468C-B15A-92628C04EC22}|PATH, In Quarantäne, [1676], [332366],1.0.1324
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Daten-Stream: 0
(keine bösartigen Elemente erkannt)
Ordner: 6
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Downloads, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Data, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\defs, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Log, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\mon, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\PROGRAM FILES\ENIGMA SOFTWARE GROUP\SPYHUNTER, In Quarantäne, [1676], [331702],1.0.1324
Datei: 59
PUP.Optional.SpyHunter, C:\PROGRAM FILES\ENIGMA SOFTWARE GROUP\SPYHUNTER\SPYHUNTER4.EXE, In Quarantäne, [1676], [340933],1.0.1324
PUP.Optional.SpyHunter, C:\PROGRAM FILES\ENIGMA SOFTWARE GROUP\SPYHUNTER\SHSCANNER.DLL, In Quarantäne, [1676], [340933],1.0.1324
PUP.Optional.SpyHunter, C:\PROGRAM FILES\ENIGMA SOFTWARE GROUP\SPYHUNTER\COMMON.DLL, In Quarantäne, [1676], [340933],1.0.1324
PUP.Optional.SpyHunter, C:\PROGRAM FILES\ENIGMA SOFTWARE GROUP\SPYHUNTER\EXECUTIONGUARD.DLL, In Quarantäne, [1676], [340933],1.0.1324
PUP.Optional.SpyHunter, C:\PROGRAM FILES\ENIGMA SOFTWARE GROUP\SPYHUNTER\DEFMAN.DLL, In Quarantäne, [1676], [340933],1.0.1324
PUP.Optional.SpyHunter, C:\PROGRAM FILES\ENIGMA SOFTWARE GROUP\SPYHUNTER\ESGIGUARD.SYS, In Quarantäne, [1676], [340933],1.0.1324
PUP.Optional.SpyHunter, C:\PROGRAM FILES\ENIGMA SOFTWARE GROUP\SPYHUNTER\SH4SERVICE.EXE, In Quarantäne, [1676], [340933],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Data\dns.dat, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Data\proxy.dat, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\defs\cmp_2017022101.def, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20170204_021815.log, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20170206_174021.log, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20170218_211744.log, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Log\SpyHunter4_20170222_145657.log, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\mon\autoexec.bat.bk, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\mon\hosts.bk, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\mon\system.ini.bk, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\mon\win.ini.bk, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\German.lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Brazilian.lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Chinese(Simplified).lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Chinese(Traditional).lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\cos.dat, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Croatian.lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Czech.lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Danish.lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Dutch.lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\English.lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\EsgScanner.inf, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\EsgScanner.sys, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Finnish.lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\French.lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\gas.dat, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\gil.dat, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Greek.lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Indonesian.lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Italian.lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Japanese.lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\license.txt, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Lithuanian.lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\native.exe, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Norwegian.lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Polish.lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Portuguese.lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\purl.dat, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Romanian.lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Russian.lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\scanlog.log, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Slovene.lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Spanish.lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.com, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\supportlog.txt, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.SpyHunter, C:\Program Files\Enigma Software Group\SpyHunter\Swedish.lng, In Quarantäne, [1676], [331702],1.0.1324
PUP.Optional.Yontoo, C:\USERS\LILO\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\LOCAL STORAGE\http_static.coupontime00.coupontime.co_0.localstorage, In Quarantäne, [71], [304355],1.0.1324
PUP.Optional.Yontoo, C:\USERS\LILO\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\LOCAL STORAGE\http_static.coupontime00.coupontime.co_0.localstorage-journal, In Quarantäne, [71], [304355],1.0.1324
PUP.Optional.SpyHunter, C:\USERS\LILO\DESKTOP\SPYHUNTER.LNK, In Quarantäne, [1676], [331703],1.0.1324
PUP.Optional.SpyHunter, C:\USERS\LILO\DESKTOP\SPYHUNTER-INSTALLER.EXE, In Quarantäne, [1676], [331753],1.0.1324
PUP.Optional.SpyHunter, C:\WINDOWS\SYSTEM32\TASKS\SPYHUNTER4STARTUP, In Quarantäne, [1676], [331709],1.0.1324
PUP.Optional.SpyHunter, C:\WINDOWS\SYSTEM32\DRIVERS\ESGSCANNER.SYS, In Quarantäne, [1676], [331708],1.0.1324
Physischer Sektor: 0
(keine bösartigen Elemente erkannt)
(end) Mbar hat nichts gezeigt..
TDSSKILLER meinte 6 Unsigned Files, aber das waren Systemdateien wie Intel Iastoricon.exe, Wlansub5.exe usw.. die habe ich in die Quarantäne gepackt.
Was sagt ihr sonst, wie siehen die Logs aus? |