Kaspersky-Reports Hallo,
vielen Dank für die Hilfe. Zitat:
Wie siehts mit der Logdatei von Kaspersky aus?
Hellsehen ist nicht so unsere Stärke...
| Kaspersky hat im Ordner --> C:\KVRT2020_Data\Reports
Zwei Dateien: "report_2025.05.31_11.07.40.klr.enc1"
und "report_2025.05.31_12.38.39.klr.enc1"
Hier der Code: Code:
Ó½ŠŸ€›ÑâåÏÏÏÏӢЛދޛŽÏ¹Šœ†€ÒÍÞÍÏ¿¬¦«ÒÍ”ÙÜ*ÝÚ×ÖªÂÙÝÖ¬Â*Ö¬*Â×ܪÖ«ªÞ¬ªÖÜØ«ª©Ö’ÍÏ£Žœ›¢€‹†‰†ŒŽ›†€ÒÍÝßÝÚÁßÚÁÜÞÏÞÝÕÜÙÕÞÛÁÖÜØÍÏÀÑâåÏÏÏÏÓª™Š›*ƒ€Œ„œÑâåÏÏÏÏÏÏÏÏÓ*ƒ€Œ„ßÏ»–ŸŠÒͼŒŽÍÏ¿€ŒŠœœŠ‹ÒÍÞÍÏ©€š‹ÒÍßÍÏ¡Šš›Žƒ†•Š‹ÒÍßÍÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ßÏ®Œ›†€ÒͼŒŽÍÏ»†‚ŠÒÍÞÜÜÖÜÞÚÙÞßÖßÙ×Ü×ÛÜÍÏ*…ŠŒ›ÒÍÍϦ‰€Òͼ›Ž›Š‹ÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ÞÏ®Œ›†€ÒͼŒŽÍÏ»†‚ŠÒÍÞÜÜÖÜÞÚÙÞÝÜÛÚØÖÙÞØÍÏ*…ŠŒ›ÒÍÍϦ‰€ÒÍ©††œ‡Š‹ÍÏÀÑâåÏÏÏÏÏÏÏÏÓÀ*ƒ€Œ„ßÑâåÏÏÏÏÏÏÏÏÓ*ƒ€Œ„ÞÏ»–ŸŠÒͼŒŽÍÏ¿€ŒŠœœŠ‹ÒÍÞßÞØÜ××ÍÏ©€š‹ÒÍÜÍÏ¡Šš›Žƒ†•Š‹ÒÍÜÍÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ßÏ®Œ›†€ÒͼŒŽÍÏ»†‚ŠÒÍÞÜÜÖÜÞÚÙÞÜ×ÞÞרÙÚÝÍÏ*…ŠŒ›ÒÍÍϦ‰€Òͼ›Ž›Š‹ÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ÞÏ®Œ›†€ÒÍ«Š›ŠŒ›ÍÏ»†‚ŠÒÍÞÜÜÖÜÞÚÙÜÜÜÛÛÚÛÛÞÙÍÏ*…ŠŒ›Òͬճ¿€ˆŽ‚«Ž›Ž³¢†Œ€œ€‰›³¸†‹€˜œ³¼›Ž›Ï¢Šš³¿€ˆŽ‚œ³©†Š‰€—Áƒ„ÍϦ‰€ÒÍ€›ÂŽÂ™†šœÕ§ªº½Õ®‹¸ŽŠÁ¸†£¡¤Á¼›Ž›¿ŽˆŠÁˆŠÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ÝÏ®Œ›†€ÒÍ«Š›ŠŒ›ÍÏ»†‚ŠÒÍÞÜÜÖÜÞÚÙÜÜÛÖÖÝÛßÜØÍÏ*…ŠŒ›ÒͬճºœŠœ³®‹‚††œ›Ž›€³®ŸŸ«Ž›Ž³½€Ž‚†ˆ³¢†Œ€œ€‰›³¦›ŠŠ›Ïª—Ÿƒ€Š³¾š†Œ„Ï£ŽšŒ‡³ºœŠÏ¿†Š‹³»Žœ„*޳©†Š‰€—Áƒ„ÍϦ‰€ÒÍ€›ÂŽÂ™†šœÕ§ªº½Õ®‹¸ŽŠÁ¸†£¡¤Á¼›Ž›¿ŽˆŠÁˆŠÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ÜÏ®Œ›†€ÒÍ«Š›ŠŒ›ÍÏ»†‚ŠÒÍÞÜÜÖÜÞÚ××ÖÚÙÜÛÜÙÞßÍÏ*…ŠŒ›ÒͬճºœŠœ³Šƒ°š„³«€˜ƒ€Ž‹œ³¼Ž‚œšˆÏ¼‚Ž›Ï¼˜†›Œ‡ÏÂϬ§¦¿Ï¦œ›ŽƒƒŠÏ°Ž¾†œ™ÁŠ—ŠÍϦ‰€ÒÍ€›ÂŽÂ™†šœÕ®‹¸ŽŠÁ¸†ÙÛÁ®ˆŠ›ÁŒ–ÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ÛÏ®Œ›†€ÒͼŒŽÍÏ»†‚ŠÒÍÞÜÜÖÜÞÙßÙÚר×ÛÜßÝÞÍÏ*…ŠŒ›ÒÍÍϦ‰€ÒÍ©††œ‡Š‹ÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ÚÏ®Œ›†€ÒÍ¼ŠƒŠŒ›ÏŽŒ›†€ÍÏ»†‚ŠÒÍÞÜÜÖÜÞÙß×ßÚÞÖÚÚÚÖÞÍÏ*…ŠŒ›Òͬճ¿€ˆŽ‚«Ž›Ž³¢†Œ€œ€‰›³¸†‹€˜œ³¼›Ž›Ï¢Šš³¿€ˆŽ‚œ³©†Š‰€—Áƒ„ÍϦ‰€ÒÍ«ŠƒŠ›ŠÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ÙÏ®Œ›†€ÒÍ¼ŠƒŠŒ›ÏŽŒ›†€ÍÏ»†‚ŠÒÍÞÜÜÖÜÞÙß×ßÚÞÖÚÚÚÖÞÍÏ*…ŠŒ›ÒͬճºœŠœ³®‹‚††œ›Ž›€³®ŸŸ«Ž›Ž³½€Ž‚†ˆ³¢†Œ€œ€‰›³¦›ŠŠ›Ïª—Ÿƒ€Š³¾š†Œ„Ï£ŽšŒ‡³ºœŠÏ¿†Š‹³»Žœ„*޳©†Š‰€—Áƒ„ÍϦ‰€ÒÍ«ŠƒŠ›ŠÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ØÏ®Œ›†€ÒÍ¼ŠƒŠŒ›ÏŽŒ›†€ÍÏ»†‚ŠÒÍÞÜÜÖÜÞÙß×ßÚÞÖÚÚÚÖÞÍÏ*…ŠŒ›ÒͬճºœŠœ³Šƒ°š„³«€˜ƒ€Ž‹œ³¼Ž‚œšˆÏ¼‚Ž›Ï¼˜†›Œ‡ÏÂϬ§¦¿Ï¦œ›ŽƒƒŠÏ°Ž¾†œ™ÁŠ—ŠÍϦ‰€ÒÍ«ŠƒŠ›ŠÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›×Ï®Œ›†€ÒÍ«†œ†‰ŠŒ›†€ÍÏ»†‚ŠÒÍÞÜÜÖÜÞÙß×ß×ÙÙ×ßÛÞ×ÍÏ*…ŠŒ›ÒÍÍϦ‰€Òͼ›Ž›Š‹ÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ÖÏ®Œ›†€ÒÍ¾šŽŽ›†Š‹ÍÏ»†‚ŠÒÍÞÜÜÖÜÞÙß×ßÖÙרßßÖØÍÏ*…ŠŒ›Òͬճ¿€ˆŽ‚«Ž›Ž³¢†Œ€œ€‰›³¸†‹€˜œ³¼›Ž›Ï¢Šš³¿€ˆŽ‚œ³©†Š‰€—Áƒ„ÍϦ‰€ÒÍÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ÞßÏ®Œ›†€ÒÍ¾šŽŽ›†Š‹ÍÏ»†‚ŠÒÍÞÜÜÖÜÞÙß×ÞßÜÜØÞÚÙÞÍÏ*…ŠŒ›ÒͬճºœŠœ³®‹‚††œ›Ž›€³®ŸŸ«Ž›Ž³½€Ž‚†ˆ³¢†Œ€œ€‰›³¦›ŠŠ›Ïª—Ÿƒ€Š³¾š†Œ„Ï£ŽšŒ‡³ºœŠÏ¿†Š‹³»Žœ„*޳©†Š‰€—Áƒ„ÍϦ‰€ÒÍÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ÞÞÏ®Œ›†€ÒÍ¾šŽŽ›†Š‹ÍÏ»†‚ŠÒÍÞÜÜÖÜÞÙß×ÞßÜÙØÙÚØÖÍÏ*…ŠŒ›ÒͬճºœŠœ³Šƒ°š„³«€˜ƒ€Ž‹œ³¼Ž‚œšˆÏ¼‚Ž›Ï¼˜†›Œ‡ÏÂϬ§¦¿Ï¦œ›ŽƒƒŠÏ°Ž¾†œ™ÁŠ—ŠÍϦ‰€ÒÍÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ÞÝÏ®Œ›†€ÒÍ«ŠƒŠ›Š‹ÍÏ»†‚ŠÒÍÞÜÜÖÜÞÙß×ÞØÖ×Ù×ÜÝÙÍÏ*…ŠŒ›Òͬճ¿€ˆŽ‚«Ž›Ž³¢†Œ€œ€‰›³¸†‹€˜œ³¼›Ž›Ï¢Šš³¿€ˆŽ‚œ³©†Š‰€—Áƒ„ÍϦ‰€ÒÍÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ÞÜÏ®Œ›†€ÒÍ«ŠƒŠ›Š‹ÍÏ»†‚ŠÒÍÞÜÜÖÜÞÙß×Þ×ßÞßß×ßÙÍÏ*…ŠŒ›ÒͬճºœŠœ³®‹‚††œ›Ž›€³®ŸŸ«Ž›Ž³½€Ž‚†ˆ³¢†Œ€œ€‰›³¦›ŠŠ›Ïª—Ÿƒ€Š³¾š†Œ„Ï£ŽšŒ‡³ºœŠÏ¿†Š‹³»Žœ„*޳©†Š‰€—Áƒ„ÍϦ‰€ÒÍÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ÞÛÏ®Œ›†€ÒÍ«ŠƒŠ›Š‹ÍÏ»†‚ŠÒÍÞÜÜÖÜÞÙß×Þ×ßÞßß×ßÙÍÏ*…ŠŒ›ÒͬճºœŠœ³Šƒ°š„³«€˜ƒ€Ž‹œ³¼Ž‚œšˆÏ¼‚Ž›Ï¼˜†›Œ‡ÏÂϬ§¦¿Ï¦œ›ŽƒƒŠÏ°Ž¾†œ™ÁŠ—ŠÍϦ‰€ÒÍÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ÞÚÏ®Œ›†€ÒÍ«†œ†‰ŠŒ›†€ÍÏ»†‚ŠÒÍÞÜÜÖÜÞÙß×Þ×ßÝרÝÞÛÍÏ*…ŠŒ›ÒÍÍϦ‰€ÒÍ©††œ‡Š‹ÍÏÀÑâåÏÏÏÏÏÏÏÏÓÀ*ƒ€Œ„ÞÑâåÏÏÏÏÏÏÏÏÓ*ƒ€Œ„ÝÏ»–ŸŠÒͼŒŽÏ®«ÍÏ¿€ŒŠœœŠ‹ÒÍÜÖ×ÛÍÏ©€š‹ÒÍÞÍÏ¡Šš›Žƒ†•Š‹ÒÍÞÍÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ßÏ®Œ›†€ÒͼŒŽÏ®«ÍÏ»†‚ŠÒÍÞÜÜÖÜÞÙß×Þ×ÛÚÞÚÖÜßÍÏ*…ŠŒ›ÒÍÍϦ‰€Òͼ›Ž›Š‹ÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ÞÏ®Œ›†€ÒÍ«Š›ŠŒ›ÍÏ»†‚ŠÒÍÞÜÜÖÜÞÙßÖÜßÜØØØÙÞÝÍÏ*…ŠŒ›Òͼ–œ›Š‚Ï¢Š‚€–ÍϦ‰€Òͧªº½Õ»€…ŽÁ¢šƒ›†Á¢†œœƒ†„ÁŽÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ÝÏ®Œ›†€ÒͼŒŽÏ®«ÍÏ»†‚ŠÒÍÞÜÜÖÜÞÙÞÝÛÝÜÜÛßÛÖÖÍÏ*…ŠŒ›ÒÍÍϦ‰€ÒÍ©††œ‡Š‹ÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ÜÏ®Œ›†€ÒÍ¼ŠƒŠŒ›ÏŽŒ›†€ÍÏ»†‚ŠÒÍÞÜÜÖÜÞÙÞÝØÚÖßÛÚÞÜßÍÏ*…ŠŒ›Òͼ–œ›Š‚Ï¢Š‚€–ÍϦ‰€ÒͬšŠÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ÛÏ®Œ›†€ÒÍ«†œ†‰ŠŒ›†€ÍÏ»†‚ŠÒÍÞÜÜÖÜÞÙÞÝØÚÖßÛÚÞÜßÍÏ*…ŠŒ›ÒÍÍϦ‰€Òͼ›Ž›Š‹ÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ÚÏ®Œ›†€ÒͬšŠ‹ÍÏ»†‚ŠÒÍÞÜÜÖÜÞÙÞÜØßרÜÙÝÞÛÍÏ*…ŠŒ›Òͼ–œ›Š‚Ï¢Š‚€–ÍϦ‰€ÒÍÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ÙÏ®Œ›†€ÒÍ«†œ†‰ŠŒ›†€ÍÏ»†‚ŠÒÍÞÜÜÖÜÞÙÞÜØßÖÜÝÜÜÚÞÍÏ*…ŠŒ›ÒÍÍϦ‰€ÒÍ©††œ‡Š‹ÍÏÀÑâåÏÏÏÏÏÏÏÏÓÀ*ƒ€Œ„ÝÑâåÏÏÏÏÓÀª™Š›*ƒ€Œ„œÑâåÓÀ½ŠŸ€›Ñâå und Nr. 2: Code:
Ó½ŠŸ€›ÑâåÏÏÏÏӢЛދޛŽÏ¹Šœ†€ÒÍÞÍÏ¿¬¦«ÒÍ”ÙÜ*ÝÚ×ÖªÂÙÝÖ¬Â*Ö¬*Â×ܪÖ«ªÞ¬ªÖÜØ«ª©Ö’ÍÏ£Žœ›¢€‹†‰†ŒŽ›†€ÒÍÝßÝÚÁßÚÁÜÞÏÞÚÕß×ÕÝÜÁÝÙ×ÍÏÀÑâåÏÏÏÏÓª™Š›*ƒ€Œ„œÑâåÏÏÏÏÏÏÏÏÓ*ƒ€Œ„ßÏ»–ŸŠÒͼŒŽÍÏ¿€ŒŠœœŠ‹ÒÍÞßÞ×ÙÞ×ÍÏ©€š‹ÒÍßÍÏ¡Šš›Žƒ†•Š‹ÒÍßÍÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ßÏ®Œ›†€ÒͼŒŽÍÏ»†‚ŠÒÍÞÜÜÖÜÞÙÞÚÜÝßÖ××ÜÖ×ÍÏ*…ŠŒ›ÒÍÍϦ‰€Òͼ›Ž›Š‹ÍÏÀÑâåÏÏÏÏÏÏÏÏÏÏÏÏÓª™Š›ÞÏ®Œ›†€ÒͼŒŽÍÏ»†‚ŠÒÍÞÜÜÖÜÞØßÝÛ×ÞÜ×ÙÛÞØÍÏ*…ŠŒ›ÒÍÍϦ‰€ÒÍ©††œ‡Š‹ÍÏÀÑâåÏÏÏÏÏÏÏÏÓÀ*ƒ€Œ„ßÑâåÏÏÏÏÓÀª™Š›*ƒ€Œ„œÑâåÓÀ½ŠŸ€›Ñâå Hier die Log: Code:
Malwarebytes
www.malwarebytes.com
-Protokolldetails-
Scan-Datum: 31.05.2025
Scan-Zeit: 15:17
Protokolldatei: a514031a-3e21-11f0-b677-8c1645441d97.json
-Softwaredaten-
Version: 5.3.2.195
Komponentenversion: 134.0.5279
Version des Aktualisierungspakets: 1.0.99605
Lizenz: Testversion
-Systemdaten-
Betriebssystem: Windows 10 (Build 19045.5854)
CPU: x64
Dateisystem: NTFS
Benutzer: Firewalker85\el_uk
-Scan-Übersicht-
Scan-Typ: Bedrohungs-Scan
Scan gestartet von: Manuell
Ergebnis: Abgeschlossen
Gescannte Objekte: 260694
Erkannte Bedrohungen: 99
In die Quarantäne verschobene Bedrohungen: 99
Abgelaufene Zeit: 6 Min., 18 Sek.
-Scan-Optionen-
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Aktiviert
Heuristik: Aktiviert
PUP: Erkennung
PUM: Erkennung
-Scan-Details-
Prozess: 0
(keine bösartigen Elemente erkannt)
Modul: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 7
PUP.Optional.GoodGame.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\GoodGame.de, In Quarantäne, 3082, 401580, 1.0.99605, , ame, , ,
PUP.Optional.StartFenster.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Startfenster.de, In Quarantäne, 2753, 401569, 1.0.99605, , ame, , ,
PUP.Optional.QuickDriverUpdater, HKLM\SOFTWARE\qdu-pr, In Quarantäne, 5188, 814062, 1.0.99605, , ame, , ,
PUP.Optional.StartFenster.ShrtCln, HKU\S-1-5-21-1123935005-352909213-1317991075-500\SOFTWARE\AM, In Quarantäne, 2753, 401432, 1.0.99605, , ame, , ,
PUP.Optional.StartFenster.ShrtCln, HKU\S-1-5-21-1123935005-352909213-1317991075-1001\SOFTWARE\AM, In Quarantäne, 2753, 401432, 1.0.99605, , ame, , ,
PUP.Optional.StartFenster, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\Startfenster-Replace.exe, In Quarantäne, 2754, 350115, 1.0.99605, , ame, , ,
PUP.Optional.StartFenster, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\APP PATHS\Startfenster-Replace.exe, In Quarantäne, 2754, 350115, 1.0.99605, , ame, , ,
Registrierungswert: 5
Backdoor.Bot, HKU\S-1-5-21-1123935005-352909213-1317991075-500\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|VLC, In Quarantäne, 144, 210172, 1.0.99605, , ame, , ,
PUP.Optional.StartFenster.ShrtCln, HKU\S-1-5-21-1123935005-352909213-1317991075-500\SOFTWARE\AM|STARTFENSTER-REPLACE, In Quarantäne, 2753, 401432, 1.0.99605, , ame, , ,
PUP.Optional.StartFenster.ShrtCln, HKU\S-1-5-21-1123935005-352909213-1317991075-500\SOFTWARE\AM|STARTFENSTER SYMBOL, In Quarantäne, 2753, 401432, 1.0.99605, , ame, , ,
PUP.Optional.GoodGame.ShrtCln, HKU\S-1-5-21-1123935005-352909213-1317991075-500\SOFTWARE\AM|GOODGAME, In Quarantäne, 3082, 401601, 1.0.99605, , ame, , ,
PUP.Optional.StartFenster.ShrtCln, HKU\S-1-5-21-1123935005-352909213-1317991075-1001\SOFTWARE\AM|STARTFENSTER-REPLACE, In Quarantäne, 2753, 401432, 1.0.99605, , ame, , ,
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Daten-Stream: 0
(keine bösartigen Elemente erkannt)
Ordner: 13
PUP.Optional.GoodGame.ShrtCln, C:\PROGRAM FILES (X86)\GOODGAME, In Quarantäne, 3082, 401580, 1.0.99605, , ame, , ,
PUP.Optional.StartFenster.ShrtCln, C:\USERS\ADMINISTRATOR\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\STARTFENSTER-REPLACE, In Quarantäne, 2753, 401566, 1.0.99605, , ame, , ,
PUP.Optional.StartFenster.ShrtCln, C:\USERS\EL_UK\APPDATA\ROAMING\MICROSOFT\WINDOWS\START MENU\PROGRAMS\STARTFENSTER-REPLACE, In Quarantäne, 2753, 401566, 1.0.99605, , ame, , ,
PUP.Optional.StartFenster, C:\PROGRAM FILES (X86)\STARTFENSTER-REPLACE, In Quarantäne, 2754, 350112, 1.0.99605, , ame, , ,
PUP.Optional.StartFenster.ShrtCln, C:\PROGRAM FILES (X86)\STARTFENSTER SYMBOL, In Quarantäne, 2753, 401569, 1.0.99605, , ame, , ,
PUP.Optional.StartFenster.ShrtCln, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\STARTFENSTER SYMBOL, In Quarantäne, 2753, 460730, 1.0.99605, , ame, , ,
PUP.Optional.QuickDriverUpdater, C:\USERS\EL_UK\APPDATA\ROAMING\DIGITAL PROTECTION SERVICES S.R.L.\QUICK DRIVER UPDATER, whitelisted, 5188, 814057, 1.0.99605, , ame, , ,
PUP.Optional.QuickDriverUpdater, C:\Users\el_uk\AppData\Roaming\Digital Protection Services S.R.L\Quick Driver Updater\DrvBackups\2024.05.26 08.43.09, In Quarantäne, 5188, 814057, 1.0.99605, , ame, , ,
PUP.Optional.QuickDriverUpdater, C:\Users\el_uk\AppData\Roaming\Digital Protection Services S.R.L\Quick Driver Updater\DrvBackups, In Quarantäne, 5188, 814057, 1.0.99605, , ame, , ,
PUP.Optional.QuickDriverUpdater, C:\Users\el_uk\AppData\Roaming\Digital Protection Services S.R.L\Quick Driver Updater\smico, In Quarantäne, 5188, 814057, 1.0.99605, , ame, , ,
PUP.Optional.StartFenster, C:\USERS\EL_UK\APPDATA\LOCAL\MICROSOFT\EDGE\USER DATA\Default\Sync Data\LevelDB, In Quarantäne, 2754, 455286, 1.0.99605, , ame, , ,
PUP.Optional.StartFenster, C:\USERS\EL_UK\APPDATA\LOCAL\MICROSOFT\EDGE\USER DATA\Default\Sync Data\LevelDB, In Quarantäne, 2754, 455286, 1.0.99605, , ame, , ,
PUP.Optional.StartFenster, C:\USERS\EL_UK\APPDATA\LOCAL\MICROSOFT\EDGE\USER DATA\Default\Sync Data\LevelDB, In Quarantäne, 2754, 455286, 1.0.99605, , ame, , ,
Datei: 75
PUP.Optional.GoodGame.ShrtCln, C:\PROGRAM FILES (X86)\GOODGAME\SETUP.ICO, In Quarantäne, 3082, 401580, 1.0.99605, , ame, , 58E4B64420F84EFA71F0CE29CD50429E, BA306550D41BE6E77BB836384504AC1979F467320295E6BE2A2F39433DF7A7A6
PUP.Optional.GoodGame.ShrtCln, C:\Program Files (x86)\GoodGame\bigfarm.ico, In Quarantäne, 3082, 401580, 1.0.99605, , ame, , 45B821EB95557B6B7E00289F22C1BA24, 4C02D9BF5497A4CCA25F054311C0C12E64495E9AC2EA235A6E8787029ED99CBF
PUP.Optional.GoodGame.ShrtCln, C:\Program Files (x86)\GoodGame\empire.ico, In Quarantäne, 3082, 401580, 1.0.99605, , ame, , 58A5323B66D3334572DA30572A369CE9, AE64EBDD1309C30F4778244330EEC7ED6EEEB96A363426586519E3C4356CC67A
PUP.Optional.GoodGame.ShrtCln, C:\Program Files (x86)\GoodGame\uninstall.exe, In Quarantäne, 3082, 401580, 1.0.99605, , ame, , 48FF80E435CDE88CE8640F836CBBA91D, 9BEB37DF3BD5974ABC51B7BF35F0A38D6B6F7C94026238F58815E95CCE55CBE4
Backdoor.Bot, C:\PROGRAM FILES\VLC PLUS PLAYER\VLC-UPDATER.EXE, In Quarantäne, 144, 210172, 1.0.99605, , ame, , DC4CFD3DBF4A9A9BE27794CEDE82F068, E8CEAAF4A25E3988305A58526F5E5B0434900430CE89AF9D1127B0FA59AA6359
PUP.Optional.GoodGame.ShrtCln, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\GOODGAME\GoodGame BigFarm spielen.lnk, In Quarantäne, 3082, 401581, 1.0.99605, , ame, , EA120EBBF3C266CAC8EFD91C524A74E1, CF72108120A7831F4210E149C6973D8C0343D286A4391693FFAC9094A8CC6C9C
PUP.Optional.StartFenster.ShrtCln, C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startfenster-Replace\Startfenster.lnk, In Quarantäne, 2753, 401566, 1.0.99605, , ame, , 7A24E4B10B76CB959E5E4064E1B87757, 6C4E5E46CC70B27A1336626A50FE92CC5C720F045112D1C74F1DC5AE67B122A7
PUP.Optional.GoodGame.ShrtCln, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\PROGRAMS\GOODGAME\GoodGame Empire spielen.lnk, In Quarantäne, 3082, 401581, 1.0.99605, , ame, , 30D7D37DA3C02E97A295E72191EEBFBE, 354D9C3E0CD86706FA59045EE6441CF57A97B7A413FE2D80C40CB4063814E63E
PUP.Optional.GoodGame.ShrtCln, C:\USERS\ADMINISTRATOR\APPDATA\ROAMING\MICROSOFT\INTERNET EXPLORER\QUICK LAUNCH\GoodGame BigFarm spielen.lnk, In Quarantäne, 3082, 401585, 1.0.99605, , ame, , EA120EBBF3C266CAC8EFD91C524A74E1, CF72108120A7831F4210E149C6973D8C0343D286A4391693FFAC9094A8CC6C9C
PUP.Optional.GoodGame.ShrtCln, C:\USERS\ADMINISTRATOR\APPDATA\ROAMING\MICROSOFT\INTERNET EXPLORER\QUICK LAUNCH\GoodGame Empire spielen.lnk, In Quarantäne, 3082, 401585, 1.0.99605, , ame, , 30D7D37DA3C02E97A295E72191EEBFBE, 354D9C3E0CD86706FA59045EE6441CF57A97B7A413FE2D80C40CB4063814E63E
PUP.Optional.GoodGame.ShrtCln, C:\USERS\ADMINISTRATOR\APPDATA\ROAMING\MICROSOFT\INTERNET EXPLORER\QUICK LAUNCH\USER PINNED\TASKBAR\GOODGAME.LNK, In Quarantäne, 3082, 401586, 1.0.99605, , ame, , EA120EBBF3C266CAC8EFD91C524A74E1, CF72108120A7831F4210E149C6973D8C0343D286A4391693FFAC9094A8CC6C9C
PUP.Optional.GoodGame.ShrtCln, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\GoodGame BigFarm spielen.lnk, In Quarantäne, 3082, 401587, 1.0.99605, , ame, , EA120EBBF3C266CAC8EFD91C524A74E1, CF72108120A7831F4210E149C6973D8C0343D286A4391693FFAC9094A8CC6C9C
PUP.Optional.GoodGame.ShrtCln, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\GoodGame Empire spielen.lnk, In Quarantäne, 3082, 401587, 1.0.99605, , ame, , 30D7D37DA3C02E97A295E72191EEBFBE, 354D9C3E0CD86706FA59045EE6441CF57A97B7A413FE2D80C40CB4063814E63E
PUP.Optional.StartFenster.ShrtCln, C:\Users\el_uk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startfenster-Replace\Startfenster.lnk, In Quarantäne, 2753, 401566, 1.0.99605, , ame, , 1F0FFCD941BEC47D7D9186C34F6C97B4, 116B1FDBB69A3731B244036A455D252140D75F4C09D1BA9F74AA404EBEB1F1D0
PUP.Optional.StartFenster.ShrtCln, C:\USERS\ADMINISTRATOR\FAVORITES\STARTFENSTER.LNK, In Quarantäne, 2753, 349859, 1.0.99605, , ame, , 72E50585634CBE31A20D3A4041AC7022, BE9ABC40E1BE9B7A90EB7309DA0E331D6276445A0EF4B462F460DD31DA10A5E6
PUP.Optional.StartFenster, C:\PROGRAM FILES (X86)\STARTFENSTER-REPLACE\LOGO.ICO, In Quarantäne, 2754, 350112, 1.0.99605, , ame, , BDCF63C89B22A44CDF5B1BE184714A26, C333C15AC24C7820F8E613E6878F1823514E15618CBBFE16161405CDE5270A39
PUP.Optional.StartFenster.ShrtCln, C:\USERS\ADMINISTRATOR\FAVORITES\LINKS\STARTFENSTER.LNK, In Quarantäne, 2753, 349856, 1.0.99605, , ame, , 72E50585634CBE31A20D3A4041AC7022, BE9ABC40E1BE9B7A90EB7309DA0E331D6276445A0EF4B462F460DD31DA10A5E6
PUP.Optional.GoodGame.ShrtCln, C:\USERS\ADMINISTRATOR\FAVORITES\LINKS\GoodGame BigFarm spielen.lnk, In Quarantäne, 3082, 401583, 1.0.99605, , ame, , EA120EBBF3C266CAC8EFD91C524A74E1, CF72108120A7831F4210E149C6973D8C0343D286A4391693FFAC9094A8CC6C9C
PUP.Optional.GoodGame.ShrtCln, C:\USERS\ADMINISTRATOR\FAVORITES\LINKS\GoodGame Empire spielen.lnk, In Quarantäne, 3082, 401583, 1.0.99605, , ame, , 30D7D37DA3C02E97A295E72191EEBFBE, 354D9C3E0CD86706FA59045EE6441CF57A97B7A413FE2D80C40CB4063814E63E
PUP.Optional.StartFenster.ShrtCln, C:\Program Files (x86)\Startfenster Symbol\logo.ico, In Quarantäne, 2753, 401569, 1.0.99605, , ame, , BDCF63C89B22A44CDF5B1BE184714A26, C333C15AC24C7820F8E613E6878F1823514E15618CBBFE16161405CDE5270A39
PUP.Optional.StartFenster.ShrtCln, C:\Program Files (x86)\Startfenster Symbol\uninstall.exe, In Quarantäne, 2753, 401569, 1.0.99605, , ame, , 05D1C57AC74D443DC810D7017C08D6FB, 327F7F183688A0DCCCE1C1F485A2DD7CE863DFE51F56258EC0E461190B29AD0E
PUP.Optional.StartFenster.ShrtCln, C:\USERS\ADMINISTRATOR\APPDATA\ROAMING\MICROSOFT\INTERNET EXPLORER\QUICK LAUNCH\STARTFENSTER.LNK, In Quarantäne, 2753, 349850, 1.0.99605, , ame, , 705B6EF22CF09503FCD84C87BDE8614D, 5342BDB9A3B72B0870D475840C825904995287597B256B838464D02B8C6277CC
PUP.Optional.StartFenster.ShrtCln, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startfenster Symbol\Software deinstallieren.lnk, In Quarantäne, 2753, 460730, 1.0.99605, , ame, , 5CEEC7C349FDF2943DBA580315C635A0, 59C5A1978F3C4612E2819EB7FDFB5F365884B59420BD8C8338C9306A840109DE
PUP.Optional.StartFenster.ShrtCln, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startfenster Symbol\Startfenster.lnk, In Quarantäne, 2753, 460730, 1.0.99605, , ame, , AAB7871094306698B22967D64C38551C, A60E11026FD3C28E7171B390EC70BBFB0A5858A88CFE0F303C889A067DA23E6D
PUP.Optional.StartFenster.ShrtCln, C:\PROGRAMDATA\MICROSOFT\WINDOWS\START MENU\STARTFENSTER.LNK, In Quarantäne, 2753, 349853, 1.0.99605, , ame, , AF388855D2264546E3C332ADB25A22D9, 145F6A3FB58A8EB6392C59BD5BEE69E05A6D1E5AD49EC22AFB82D9BD04B9A1D0
PUP.Optional.StartFenster, C:\USERS\ADMINISTRATOR\APPDATA\ROAMING\MICROSOFT\INTERNET EXPLORER\QUICK LAUNCH\USER PINNED\TASKBAR\STARTFENSTER SYMBOL.LNK, In Quarantäne, 2754, 350108, 1.0.99605, , ame, , 4335E2A9C86EAF6F50605D66F53C0CD5, 42B6DAAEAA4448DB13BAE495105AD122C368B30972E064A681220DAFC04BBE0C
PUP.Optional.GoodGame.ShrtCln, C:\USERS\ADMINISTRATOR\FAVORITES\GoodGame BigFarm spielen.lnk, In Quarantäne, 3082, 401584, 1.0.99605, , ame, , EA120EBBF3C266CAC8EFD91C524A74E1, CF72108120A7831F4210E149C6973D8C0343D286A4391693FFAC9094A8CC6C9C
PUP.Optional.GoodGame.ShrtCln, C:\USERS\ADMINISTRATOR\FAVORITES\GoodGame Empire spielen.lnk, In Quarantäne, 3082, 401584, 1.0.99605, , ame, , 30D7D37DA3C02E97A295E72191EEBFBE, 354D9C3E0CD86706FA59045EE6441CF57A97B7A413FE2D80C40CB4063814E63E
PUP.Optional.QuickDriverUpdater, C:\Users\el_uk\AppData\Roaming\Digital Protection Services S.R.L\Quick Driver Updater\DrvBackups\2024.05.26 08.43.09\Qualcomm_Atheros_QCA61x4A_Wireless_Network_Adapter.zip, In Quarantäne, 5188, 814057, 1.0.99605, , ame, , 38BAF20FD7C5EBF92236501866722B0C, 4CDC7EDFCEBDDE352BA2836E29DD375CD25B005E62125AE2A07F968EA961262F
PUP.Optional.QuickDriverUpdater, C:\Users\el_uk\AppData\Roaming\Digital Protection Services S.R.L\Quick Driver Updater\DrvBackups\2024.05.26 08.43.09\Reports.xml, In Quarantäne, 5188, 814057, 1.0.99605, , ame, , 86736EAB555DE359AC3008AE096C1B0A, 30FCD29334AD368D4B385C4603E43A3AD970D1F06BB8445284845F31F98A1306
PUP.Optional.QuickDriverUpdater, C:\Users\el_uk\AppData\Roaming\Digital Protection Services S.R.L\Quick Driver Updater\smico\aw5tfxwb.png, In Quarantäne, 5188, 814057, 1.0.99605, , ame, , 2B5233EA3765839BCA71EEC73ADD3895, 8E7D5AC39915488DD12262AAE13A2CA8C18E2234ABF73DA2618C27348058B303
PUP.Optional.QuickDriverUpdater, C:\Users\el_uk\AppData\Roaming\Digital Protection Services S.R.L\Quick Driver Updater\smico\ntoy523r.png, In Quarantäne, 5188, 814057, 1.0.99605, , ame, , 2B5233EA3765839BCA71EEC73ADD3895, 8E7D5AC39915488DD12262AAE13A2CA8C18E2234ABF73DA2618C27348058B303
PUP.Optional.QuickDriverUpdater, C:\Users\el_uk\AppData\Roaming\Digital Protection Services S.R.L\Quick Driver Updater\Errorlog.txt, In Quarantäne, 5188, 814057, 1.0.99605, , ame, , FD894136979F81CB6062A83E42AE1967, 893875CA88584464ECD567CDB511FDD372CE874D2D74C3457680F7E1AC93E9BE
PUP.Optional.QuickDriverUpdater, C:\Users\el_uk\AppData\Roaming\Digital Protection Services S.R.L\Quick Driver Updater\Logs.txt, In Quarantäne, 5188, 814057, 1.0.99605, , ame, , 459E0208B311070B46DD3DA02ED9F256, A86AE92982E0BEC94B81A05B04C9EB771D330CD19DCA8E5AA56C067F2DD291E4
PUP.Optional.QuickDriverUpdater, C:\Users\el_uk\AppData\Roaming\Digital Protection Services S.R.L\Quick Driver Updater\Mydb.sqlite, In Quarantäne, 5188, 814057, 1.0.99605, , ame, , 95FFBC84219E249A04364D865FF92579, 27A75C9E904E652229FA8CE498788AFF5078247FD9C9E9045009440DED7ECE12
PUP.Optional.QuickDriverUpdater, C:\Users\el_uk\AppData\Roaming\Digital Protection Services S.R.L\Quick Driver Updater\notifier.xml, In Quarantäne, 5188, 814057, 1.0.99605, , ame, , 26E054943B8E6E4F49520FF61AC394C8, B49D86FE7C17E78C5726ADF45201EF67CC86418FC4063D17BC808F63EF261C31
PUP.Optional.QuickDriverUpdater, C:\Users\el_uk\AppData\Roaming\Digital Protection Services S.R.L\Quick Driver Updater\res.bin, In Quarantäne, 5188, 814057, 1.0.99605, , ame, , 426002EAD15A944435E1FF6325183EA7, 91A872E09E3DF2BA215B04E8959F003B0E1ECE68836A59399A2A1F73E86DC20B
PUP.Optional.QuickDriverUpdater, C:\Users\el_uk\AppData\Roaming\Digital Protection Services S.R.L\Quick Driver Updater\Result.cb, In Quarantäne, 5188, 814057, 1.0.99605, , ame, , F9546A4EF3CD7769ED2114C2369525A1, DF77AEA5371AB02C9C7538015674BA84DF273C2B93C09F59819F9517BEBE05FD
PUP.Optional.QuickDriverUpdater, C:\Users\el_uk\AppData\Roaming\Digital Protection Services S.R.L\Quick Driver Updater\update.xml, In Quarantäne, 5188, 814057, 1.0.99605, , ame, , 5CBB31284526FF98484B045374F18201, 18646FA5EE7AAB4D93814908A0B8ED8391EAE93D2C2970EE1A9B9D4720FA2EE2
PUP.Optional.QuickDriverUpdater, C:\Users\el_uk\AppData\Roaming\Digital Protection Services S.R.L\Quick Driver Updater\Updatelog.txt, In Quarantäne, 5188, 814057, 1.0.99605, , ame, , 454FCC66A01C6E478D9744FF62C8508A, B3E7FD5E2134FF8B20250E27B2663FD163BB62E55B4EF61CE5DED0B37659FBC4
PUP.Optional.MyFireSearch, C:\USERS\ADMINISTRATOR\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\5VVU71O2.DEFAULT\PREFS.JS, Ersetzt, 5528, 914864, 1.0.99605, , ame, , 469727306221110F4DAC6D434417227F, A9453FBBBAEC9D088A9995ED7E02D41D44C68F49A994A3DF0F0BD6E26F91C5F5
PUP.Optional.MyFireSearch, C:\USERS\ADMINISTRATOR\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\5VVU71O2.DEFAULT\PREFS.JS, Ersetzt, 5528, 914865, 1.0.99605, , ame, , 469727306221110F4DAC6D434417227F, A9453FBBBAEC9D088A9995ED7E02D41D44C68F49A994A3DF0F0BD6E26F91C5F5
PUP.Optional.MyFireSearch, C:\USERS\ADMINISTRATOR\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\5VVU71O2.DEFAULT\PREFS.JS, Ersetzt, 5528, 914868, 1.0.99605, , ame, , 469727306221110F4DAC6D434417227F, A9453FBBBAEC9D088A9995ED7E02D41D44C68F49A994A3DF0F0BD6E26F91C5F5
PUP.Optional.MyFireSearch, C:\USERS\ADMINISTRATOR\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TNWDDSKX.DEFAULT-RELEASE\SEARCHPLUGINS\MY FIREFOX SEARCH.XML, In Quarantäne, 5528, 910806, 1.0.99605, , ame, , 976E5E3D27CC82B243D5EC8E4958B072, 40F1A264F28A1D8FC2B3299B1DC62AABDDB3E9600844E66EEC94606FE259A0C5
PUP.Optional.MyFireSearch, C:\USERS\ADMINISTRATOR\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TNWDDSKX.DEFAULT-RELEASE\PREFS.JS, Ersetzt, 5528, 914864, 1.0.99605, , ame, , 4832DE1C88546092E0F1153767F65826, 5C2893DA6482C3D7D6E907F9F4D251716041F748890CBAE92216E0E22325E5CE
PUP.Optional.MyFireSearch, C:\USERS\ADMINISTRATOR\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TNWDDSKX.DEFAULT-RELEASE\PREFS.JS, Ersetzt, 5528, 914865, 1.0.99605, , ame, , 4832DE1C88546092E0F1153767F65826, 5C2893DA6482C3D7D6E907F9F4D251716041F748890CBAE92216E0E22325E5CE
PUP.Optional.MyFireSearch, C:\USERS\ADMINISTRATOR\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TNWDDSKX.DEFAULT-RELEASE\PREFS.JS, Ersetzt, 5528, 914866, 1.0.99605, , ame, , 4832DE1C88546092E0F1153767F65826, 5C2893DA6482C3D7D6E907F9F4D251716041F748890CBAE92216E0E22325E5CE
PUP.Optional.MyFireSearch, C:\USERS\ADMINISTRATOR\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TNWDDSKX.DEFAULT-RELEASE\PREFS.JS, Ersetzt, 5528, 914867, 1.0.99605, , ame, , 4832DE1C88546092E0F1153767F65826, 5C2893DA6482C3D7D6E907F9F4D251716041F748890CBAE92216E0E22325E5CE
PUP.Optional.MyFireSearch, C:\USERS\ADMINISTRATOR\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\TNWDDSKX.DEFAULT-RELEASE\PREFS.JS, Ersetzt, 5528, 914868, 1.0.99605, , ame, , 4832DE1C88546092E0F1153767F65826, 5C2893DA6482C3D7D6E907F9F4D251716041F748890CBAE92216E0E22325E5CE
Malware.AI.2412708142, C:\USERS\EL_UK\DOWNLOADS\TTACTIVATOR-V1.20.RAR, In Quarantäne, 1000000, 0, 1.0.99605, D52766F8F711E6948FCF012E, dds, 03373213, 7AB2CF9923ADA9530AC02373414DC464, 44B6A12F2A9FBFCDDDBC56B78A7D29142BE5F37896D220E1E58C24AED1512E4A
Malware.AI.2412708142, C:\USERS\EL_UK\APPDATA\ROAMING\Microsoft\Windows\Recent\TTActivator-v1.20.rar.lnk, In Quarantäne, 1000000, 0, 1.0.99605, D52766F8F711E6948FCF012E, dds, 03373213, 52F9CC57067A683EFDD15B237C814AB8, EEB5835475B909A859CB825DC497FBDF239440D592ECC03171CA3A17BFBB2CF6
Generic.Malware.AI.DDS, C:\USERS\EL_UK\DOWNLOADS\ACTIVATOR_2019_INSTALLER.RAR, In Quarantäne, 1000002, 0, 1.0.99605, 8CA2ADE95884EB3D45F0A331, dds, 03373213, 3DA767221359C0EFAA9D9BE4C933D084, F509C36214D429112A33DD0C309AE24582E18BC3600944D4B9E65D2FE2F4C1EA
Generic.Malware.AI.DDS, C:\USERS\EL_UK\APPDATA\ROAMING\Microsoft\Windows\Recent\Activator_2019_Installer.rar.lnk, In Quarantäne, 1000002, 0, 1.0.99605, 8CA2ADE95884EB3D45F0A331, dds, 03373213, 311BD03DF876DA4FCF8C4CA0C3802A7B, B006FC61ECAF11D03CB736EF12C15B6534299D64578A4EFF599332037D5D6DA7
Generic.Malware.AI.DDS, C:\$RECYCLE.BIN\S-1-5-21-1123935005-352909213-1317991075-1001\$RZ8866M\ACTIVATOR_2019_INSTALLER.EXE, In Quarantäne, 1000002, 0, 1.0.99605, 8CA2ADE95884EB3D45F0A331, dds, 03373213, 6DEB202CBF61EB20AE848DD24149492F, 31ADD07CADD120AE66E70718AA0C8C29944F5F910094A4AC76ED037C6AB31103
Generic.Malware.AI.DDS, C:\$RECYCLE.BIN\S-1-5-21-1123935005-352909213-1317991075-1001\$RTZ8VF2.EXE, In Quarantäne, 1000002, 0, 1.0.99605, 8CA2ADE95884EB3D45F0A331, dds, 03373213, 6DEB202CBF61EB20AE848DD24149492F, 31ADD07CADD120AE66E70718AA0C8C29944F5F910094A4AC76ED037C6AB31103
Generic.Malware.AI.DDS, C:\$RECYCLE.BIN\S-1-5-21-1123935005-352909213-1317991075-1001\$RLDPRQJ\ACTIVATOR_2019_INSTALLER.EXE, In Quarantäne, 1000002, 0, 1.0.99605, 8CA2ADE95884EB3D45F0A331, dds, 03373213, 6DEB202CBF61EB20AE848DD24149492F, 31ADD07CADD120AE66E70718AA0C8C29944F5F910094A4AC76ED037C6AB31103
Trojan.MisplacedLegit.AutoIt, C:\USERS\EL_UK\APPDATA\LOCAL\TEMP\105949\FORGOT.COM, In Quarantäne, 9932, 1305595, 1.0.99605, , ame, , 62D09F076E6E0240548C2F837536A46A, 1300262A9D6BB6FCBEFC0D299CCE194435790E70B9C7B4A651E202E90A32FD49
Trojan.MisplacedLegit.AutoIt, C:\USERS\ADMINISTRATOR\APPDATA\LOCAL\TEMP\105949\FORGOT.COM, In Quarantäne, 9932, 1305595, 1.0.99605, , ame, , 62D09F076E6E0240548C2F837536A46A, 1300262A9D6BB6FCBEFC0D299CCE194435790E70B9C7B4A651E202E90A32FD49
Generic.Malware.AI.DDS, C:\USERS\EL_UK\DESKTOP\TTACTIVATOR\DOWNLOADER_NAV3-SPEEDCAM_NORMAL & PREMIUM-TTPKG\DOWNLODER_NAV3-SPEEDCAM_NORMAL & PREMIUM-TTPKG.EXE, In Quarantäne, 1000002, 0, 1.0.99605, F0168E8D80F7CC4D454B2DEB, dds, 03373213, 5884C50F6DE1DC19B0FB9C3BAA4EE7DD, E34FD6295688DF96713ADF661EB9D9C9C41364B2DA7D061F2AF519187E6CCCFF
Generic.Malware.AI.DDS, C:\USERS\EL_UK\DESKTOP\TTACTIVATOR\R-LINK EXPLORER & MICROSD-KARTE VORBEREITEN\MICROSD_KARTE IN DER GR\u00c3\u00b6\u00c3\u009fE VON 32 GB MIT DEM R-LINK_EXPLORER VERWENDEN\(MICRO-)SD-KARTE_FIX.EXE, In Quarantäne, 1000002, 0, 1.0.99605, 631EF47AF5D1EF85176BE38B, dds, 03373213, 075325C10F59A17038D38AE0DFFE21A1, 64E99ACBF1A2CCE91F9B53F09508C787578B0BDB5F0DF39E69B752D75BCD6F41
Malware.AI.2412708142, C:\USERS\EL_UK\DESKTOP\TTACTIVATOR\TTACTIVATOR-V1.20\TTACTIVATOR.EXE, In Quarantäne, 1000000, 0, 1.0.99605, D52766F8F711E6948FCF012E, dds, 03373213, 0B9B61FEE8D6E88A8B125BE35B051C41, 9386D0F0C7A787850F5622664E4D08F0C1DD988CE1679112CB05BA444B29D7F0
Generic.Malware.AI.DDS, C:\USERS\EL_UK\DESKTOP\TTACTIVATOR\R-LINK EXPLORER & MICROSD-KARTE VORBEREITEN\R-LINK EXPLORER 1.4.1 + 32GB_SD-UNTERST\u00c3\u00bcTZUNG\(MICRO-)SD-KARTE MANIPULIEREN.EXE, In Quarantäne, 1000002, 0, 1.0.99605, 631EF47AF5D1EF85176BE38B, dds, 03373213, 075325C10F59A17038D38AE0DFFE21A1, 64E99ACBF1A2CCE91F9B53F09508C787578B0BDB5F0DF39E69B752D75BCD6F41
PUP.Optional.StartFenster, C:\USERS\EL_UK\APPDATA\LOCAL\MICROSOFT\EDGE\USER DATA\Default\Web Data, Ersetzt, 2754, 455286, 1.0.99605, , ame, , 1A799DE8F8369B04A029E40192EEA2F2, 8138F7840F787A2ED6650A2DBA36355DBE407C14CE54AA3A3186D2C0373D467C
PUP.Optional.StartFenster, C:\Users\el_uk\AppData\Local\Microsoft\Edge\User Data\Default\Sync Data\LevelDB\000005.ldb, In Quarantäne, 2754, 455286, 1.0.99605, , ame, , 71389C38E7EF8318E3DC813F55DCEC56, B9EB1D6C15158FE9069AEAFF8CA2A33F9245CC28AAC3FCE1B8EFDFF947B4A02C
PUP.Optional.StartFenster, C:\Users\el_uk\AppData\Local\Microsoft\Edge\User Data\Default\Sync Data\LevelDB\000034.ldb, In Quarantäne, 2754, 455286, 1.0.99605, , ame, , 4F794A2410DEA81D00BAFCABF5A43928, 84AF3A5DE16CDDBF8F7AF235A7024D5B8DAB24AE72042E75CF4079AF4ED377B1
PUP.Optional.StartFenster, C:\Users\el_uk\AppData\Local\Microsoft\Edge\User Data\Default\Sync Data\LevelDB\000037.ldb, In Quarantäne, 2754, 455286, 1.0.99605, , ame, , B05272D26FA46CF7D2A471E15C85E58D, E0AE7C8946A27C78F0F184AC8CF4CE26175C54EBE537141FFE582B2693DD916A
PUP.Optional.StartFenster, C:\Users\el_uk\AppData\Local\Microsoft\Edge\User Data\Default\Sync Data\LevelDB\000039.log, In Quarantäne, 2754, 455286, 1.0.99605, , ame, , 79AAFA929DEC142B4A4AEB671AE53D74, 5BA879E6EE87F52E7A858E3FABF9604E4E9734524A45249DB97928D1BF507B9A
PUP.Optional.StartFenster, C:\Users\el_uk\AppData\Local\Microsoft\Edge\User Data\Default\Sync Data\LevelDB\000040.ldb, In Quarantäne, 2754, 455286, 1.0.99605, , ame, , 3279816BC7977129AE80A8C0E9C57811, 2055CB53F6C193C9A87DD978D835B51311361A8630CA1387DC07E616871C3E4C
PUP.Optional.StartFenster, C:\Users\el_uk\AppData\Local\Microsoft\Edge\User Data\Default\Sync Data\LevelDB\CURRENT, In Quarantäne, 2754, 455286, 1.0.99605, , ame, , 46295CAC801E5D4857D09837238A6394, 0F1BAD70C7BD1E0A69562853EC529355462FCD0423263A3D39D6D0D70B780443
PUP.Optional.StartFenster, C:\Users\el_uk\AppData\Local\Microsoft\Edge\User Data\Default\Sync Data\LevelDB\LOCK, In Quarantäne, 2754, 455286, 1.0.99605, , ame, , ,
PUP.Optional.StartFenster, C:\Users\el_uk\AppData\Local\Microsoft\Edge\User Data\Default\Sync Data\LevelDB\LOG, In Quarantäne, 2754, 455286, 1.0.99605, , ame, , D868CE61333C9CE035F59C4F8F85500F, 550089CA4FEC55447915723B9E883F5B8D6F0B5603958EA114917B6B6BDC68CA
PUP.Optional.StartFenster, C:\Users\el_uk\AppData\Local\Microsoft\Edge\User Data\Default\Sync Data\LevelDB\LOG.old, In Quarantäne, 2754, 455286, 1.0.99605, , ame, , EC0585B4FDE1A19209E0B5E5F98957F2, 670E4E69F8BF4E2A6482D1553879277CAD7B9DB34A1F8917EE5EA6DE87DE1A3A
PUP.Optional.StartFenster, C:\Users\el_uk\AppData\Local\Microsoft\Edge\User Data\Default\Sync Data\LevelDB\MANIFEST-000001, In Quarantäne, 2754, 455286, 1.0.99605, , ame, , 747C839E5E2B9AD698CD64864DFBD1CA, C3A9472096CFE084B055BC4E9E4159F5C33AEFCE39583622E4EB6782C8FAAD0E
PUP.Optional.StartFenster, C:\USERS\EL_UK\APPDATA\LOCAL\MICROSOFT\EDGE\USER DATA\Default\Web Data, Ersetzt, 2754, 455286, 1.0.99605, , ame, , 1A799DE8F8369B04A029E40192EEA2F2, 8138F7840F787A2ED6650A2DBA36355DBE407C14CE54AA3A3186D2C0373D467C
PUP.Optional.StartFenster, C:\USERS\EL_UK\APPDATA\LOCAL\MICROSOFT\EDGE\USER DATA\Default\Web Data, Ersetzt, 2754, 455286, 1.0.99605, , ame, , 1A799DE8F8369B04A029E40192EEA2F2, 8138F7840F787A2ED6650A2DBA36355DBE407C14CE54AA3A3186D2C0373D467C
Physischer Sektor: 0
(keine bösartigen Elemente erkannt)
WMI: 0
(keine bösartigen Elemente erkannt)
(end) Hier die Log vom adwcleaner Code:
# -------------------------------
# Malwarebytes AdwCleaner 8.5.1.601
# -------------------------------
# Build: 03-26-2025
# Database: 2025-04-04.3 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 05-31-2025
# Duration: 00:00:02
# OS: Windows 10 (Build 19045.5854)
# Cleaned: 24
# Failed: 0
***** [ Services ] *****
No malicious services cleaned.
***** [ Folders ] *****
Deleted C:\Program Files\VLC Plus Player
Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GoodGame
Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VLC Plus Player
Deleted C:\Users\Administrator\AppData\Local\Temp\DMR
Deleted C:\Users\el_uk\AppData\Roaming\Digital Protection Services S.R.L
***** [ Files ] *****
Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startfenster.lnk
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
No malicious tasks cleaned.
***** [ Registry ] *****
Deleted HKCU\Software\Lavasoft\Web Companion
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Run|Web Companion
Deleted HKLM\Software\VLCPP
Deleted HKLM\Software\Wow6432Node\Lavasoft\Web Companion
Deleted HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com
Deleted HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries cleaned.
***** [ Chromium URLs ] *****
Deleted Mysearchdial
Deleted Mysearchdial
Deleted Websuche
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
Deleted https://myfiresearch.com/homepage?hp=1&pId=CH210629&iDate=2024-03-27 07:30:22&bitmask=9996
Deleted https://myfiresearch.com/homepage?hp=1&pId=CH210629&iDate=2024-03-27 07:30:22&bitmask=9996
***** [ Hosts File Entries ] *****
No malicious hosts file entries cleaned.
***** [ Preinstalled Software ] *****
Deleted Preinstalled.LenovoIMController Folder C:\ProgramData\LENOVO\IMCONTROLLER
Deleted Preinstalled.LenovoIMController Folder C:\Users\el_uk\AppData\Local\LENOVO\IMCONTROLLER
Deleted Preinstalled.LenovoIMController Folder C:\Windows\LENOVO\IMCONTROLLER
Deleted Preinstalled.LenovoIMController Folder C:\Windows\System32\Tasks\LENOVO\IMCONTROLLER
Deleted Preinstalled.LenovoIMController Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\Lenovo Dependency Package_is1
Deleted Preinstalled.SamsungSmartSwitch Folder C:\Users\el_uk\AppData\Roaming\SAMSUNG\SMART SWITCH PC
*************************
[+] Delete Tracing Keys
[+] Reset Winsock
*************************
AdwCleaner[S00].txt - [3454 octets] - [31/05/2025 15:32:46]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ########## Da ich die Log auf dem Desktop nicht gefunden hatte, habe ich das Programm zweimal laufen lassen. Ich musste natürlich im Admin-Desktop suchen...Daher zwei Logs: Code:
# ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ #
# DoesNotBelong v7.9.0
# Furtivex Computer Solutions - https://furtivex.net
# OS: Microsoft Windows 10 Home x64 22H2 Deutsch (German) - 0407 - 1252 - 850
# Benutzername: Administrator (S-1-5-21-1123935005-352909213-1317991075-500)
# Datum: 2025_05_31__15_45_06
# ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ #
# Prozesse:
# Treiber:
# Dienste:
HKLM\SYSTEM\CurrentControlSet\services\McAfee WebAdvisor
# Dateien:
C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe
C:\Users\Administrator\AppData\Local\Resmon.ResmonCfg
C:\Program Files\McAfee\WebAdvisor\browserhost.exe
C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
C:\Program Files\McAfee\WebAdvisor\e10ssbffplg.xpi
C:\Program Files\McAfee\WebAdvisor\e10swbffplg.xpi
C:\Program Files\McAfee\WebAdvisor\eventmanager.dll
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-cs-CZ.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-da-DK.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-de-DE.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-el-GR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-en-AU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-en-CA.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-en-GB.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-en-US.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-es-ES.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-es-MX.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-fi-FI.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-fr-CA.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-fr-FR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-hr-HR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-hu-HU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-it-IT.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-ja-JP.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-ko-KR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-nb-NO.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-nl-NL.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-pl-PL.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-pt-BR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-pt-PT.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-ru-RU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-sk-SK.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-sr-Latn-CS.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-sv-SE.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-tr-TR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-zh-CN.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-checklist-zh-TW.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-cs-CZ.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-da-DK.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-de-DE.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-el-GR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-en-AU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-en-CA.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-en-GB.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-en-US.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-es-ES.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-es-MX.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-fi-FI.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-fr-CA.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-fr-FR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-hr-HR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-hu-HU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-it-IT.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-ja-JP.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-ko-KR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-nb-NO.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-nl-NL.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-pl-PL.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-pt-BR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-pt-PT.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-ru-RU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-sk-SK.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-sr-Latn-CS.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-sv-SE.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-tr-TR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-zh-CN.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-dialog-balloon-zh-TW.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-cs-CZ.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-da-DK.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-de-DE.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-el-GR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-en-AU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-en-CA.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-en-GB.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-en-US.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-es-ES.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-es-MX.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-fi-FI.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-fr-CA.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-fr-FR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-hr-HR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-hu-HU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-it-IT.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-ja-JP.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-ko-KR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-nb-NO.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-nl-NL.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-pl-PL.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-pt-BR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-pt-PT.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-ru-RU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-sk-SK.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-sr-Latn-CS.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-sv-SE.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-tr-TR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-zh-CN.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-options-zh-TW.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-cs-CZ.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-da-DK.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-de-DE.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-el-GR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-en-AU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-en-CA.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-en-GB.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-en-US.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-es-ES.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-es-MX.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-fi-FI.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-fr-CA.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-fr-FR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-hr-HR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-hu-HU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-it-IT.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-ja-JP.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-ko-KR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-nb-NO.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-nl-NL.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-pl-PL.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-pt-BR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-pt-PT.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-ru-RU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-sk-SK.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-sr-Latn-CS.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-sv-SE.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-tr-TR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-zh-CN.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-shared-zh-TW.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-cs-CZ.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-da-DK.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-de-DE.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-el-GR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-en-AU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-en-CA.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-en-GB.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-en-US.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-es-ES.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-es-MX.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-fi-FI.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-fr-CA.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-fr-FR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-hr-HR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-hu-HU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-it-IT.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-ja-JP.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-ko-KR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-nb-NO.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-nl-NL.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-pl-PL.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-pt-BR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-pt-PT.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-ru-RU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-sk-SK.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-sr-Latn-CS.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-sv-SE.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-tr-TR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-zh-CN.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-adblock-zh-TW.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-cs-CZ.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-da-DK.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-de-DE.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-el-GR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-en-AU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-en-CA.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-en-GB.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-en-US.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-es-ES.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-es-MX.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-fi-FI.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-fr-CA.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-fr-FR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-hr-HR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-hu-HU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-it-IT.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-ja-JP.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-ko-KR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-nb-NO.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-nl-NL.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-pl-PL.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-pt-BR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-pt-PT.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-ru-RU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-sk-SK.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-sr-Latn-CS.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-sv-SE.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-tr-TR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-zh-CN.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-bing-zh-TW.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-cs-CZ.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-da-DK.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-de-DE.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-cs-CZ.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-da-DK.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-de-DE.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-el-GR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-en-AU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-en-CA.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-en-GB.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-en-US.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-es-ES.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-es-MX.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-fi-FI.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-fr-CA.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-fr-FR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-hr-HR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-hu-HU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-it-IT.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-ja-JP.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-ko-KR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-nb-NO.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-nl-NL.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-pl-PL.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-pt-BR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-pt-PT.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-ru-RU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-sk-SK.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-sr-Latn-CS.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-sv-SE.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-tr-TR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-zh-CN.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-duckduckgo-zh-TW.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-el-GR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-en-AU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-en-CA.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-en-GB.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-en-US.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-es-ES.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-es-MX.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-fi-FI.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-fr-CA.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-fr-FR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-hr-HR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-hu-HU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-it-IT.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-ja-JP.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-ko-KR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-nb-NO.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-nl-NL.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pl-PL.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-cs-CZ.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-da-DK.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-de-DE.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-el-GR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-en-AU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-en-CA.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-en-GB.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-en-US.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-es-ES.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-es-MX.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-fi-FI.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-fr-CA.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-fr-FR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-hr-HR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-hu-HU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-it-IT.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-ja-JP.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-ko-KR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-nb-NO.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-nl-NL.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-pl-PL.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-pt-BR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-pt-PT.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-ru-RU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-sk-SK.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-sr-Latn-CS.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-sv-SE.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-tr-TR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-zh-CN.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pps-zh-TW.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pt-BR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-pt-PT.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-ru-RU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-sk-SK.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-sr-Latn-CS.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-sv-SE.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-tr-TR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-zh-CN.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-sstoast-zh-TW.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-cs-CZ.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-da-DK.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-de-DE.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-el-GR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-en-AU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-en-CA.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-en-GB.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-en-US.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-es-ES.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-es-MX.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-fi-FI.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-fr-CA.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-fr-FR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-hr-HR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-hu-HU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-it-IT.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-ja-JP.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-ko-KR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-nb-NO.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-nl-NL.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-pl-PL.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-pt-BR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-pt-PT.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-ru-RU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-sk-SK.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-sr-Latn-CS.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-sv-SE.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-tr-TR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-zh-CN.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-uninstall-zh-TW.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-cs-CZ.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-da-DK.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-de-DE.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-el-GR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-en-AU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-en-CA.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-en-GB.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-en-US.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-es-ES.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-es-MX.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-fi-FI.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-fr-CA.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-fr-FR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-hr-HR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-hu-HU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-it-IT.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-ja-JP.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-ko-KR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-nb-NO.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-nl-NL.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-pl-PL.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-pt-BR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-pt-PT.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-ru-RU.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-sk-SK.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-sr-Latn-CS.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-sv-SE.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-tr-TR.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-zh-CN.js
C:\Program Files\McAfee\WebAdvisor\jslang\wa-res-webboost-zh-TW.js
C:\Program Files\McAfee\WebAdvisor\logic\base_provider.luc
C:\Program Files\McAfee\WebAdvisor\logic\logic_loader.luc
C:\Program Files\McAfee\WebAdvisor\logic\miscutils.luc
C:\Program Files\McAfee\WebAdvisor\logic\oem_business_logic.luc
C:\Program Files\McAfee\WebAdvisor\logic\providers\bing.luc
C:\Program Files\McAfee\WebAdvisor\logic\providers\duckduckgo.luc
C:\Program Files\McAfee\WebAdvisor\logic\providers\yahoo.luc
C:\Program Files\McAfee\WebAdvisor\logic\providers\yandex.luc
C:\Program Files\McAfee\WebAdvisor\logic\providers_selector.luc
C:\Program Files\McAfee\WebAdvisor\logic\ss_logic.luc
C:\Program Files\McAfee\WebAdvisor\logicmodule.dll
C:\Program Files\McAfee\WebAdvisor\lookupmanager.dll
C:\Program Files\McAfee\WebAdvisor\MFW\core\class.luc
C:\Program Files\McAfee\WebAdvisor\MFW\core\dkjson.luc
C:\Program Files\McAfee\WebAdvisor\MFW\core\handlers.luc
C:\Program Files\McAfee\WebAdvisor\MFW\core\init.luc
C:\Program Files\McAfee\WebAdvisor\MFW\core\json.luc
C:\Program Files\McAfee\WebAdvisor\MFW\core\logger.luc
C:\Program Files\McAfee\WebAdvisor\MFW\core\postinit.luc
C:\Program Files\McAfee\WebAdvisor\MFW\core\priorityqueue.luc
C:\Program Files\McAfee\WebAdvisor\MFW\core\triggeracceptor.luc
C:\Program Files\McAfee\WebAdvisor\MFW\core\uiarbitratorhelper.luc
C:\Program Files\McAfee\WebAdvisor\MFW\core\uihandler.luc
C:\Program Files\McAfee\WebAdvisor\MFW\core\uithreadexithandler.luc
C:\Program Files\McAfee\WebAdvisor\MFW\core\utils\browserutils.luc
C:\Program Files\McAfee\WebAdvisor\MFW\core\utils\packageutils.luc
C:\Program Files\McAfee\WebAdvisor\MFW\core\utils\settingsdb.luc
C:\Program Files\McAfee\WebAdvisor\MFW\core\utils\stringutils.luc
C:\Program Files\McAfee\WebAdvisor\MFW\core\utils\telemetry.luc
C:\Program Files\McAfee\WebAdvisor\MFW\core\win32helper.luc
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\balloon-arrow.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\dialog-balloon-logo.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\green_check.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\icn_mshield.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\installer_background.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\jquery-1.9.0.min.js
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\loading-spinner.gif
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\main_close.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\mcafee-logo-lg.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\mcafee-logo.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\mcafee_pc_install_icon.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\msac.ico
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\spinner_large.gif
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\wa-checklist.css
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\wa-common.css
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\wa-core.js
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\wa-ui-checklist.js
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\wa-ui-dialog.js
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\wa-uninstall-icon.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\wa-utils.js
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\wa_install_check.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\wa_install_close.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\wa_install_error.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\wa_logo.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\white_check.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\white_downchevron.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\white_exclamation.gif
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\white_questionmark.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\builtin\white_timer.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\mwb\mwbhandler.luc
C:\Program Files\McAfee\WebAdvisor\MFW\packages\mwb\stop-video-alert-icon.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\mwb\wa-controller-mwb-checklist.js
C:\Program Files\McAfee\WebAdvisor\MFW\packages\mwb\wa-mwb-checklist.html
C:\Program Files\McAfee\WebAdvisor\MFW\packages\mwb\wb-rocket-icon.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\nps\clipboard.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\nps\info-16.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\nps\npshandler.luc
C:\Program Files\McAfee\WebAdvisor\MFW\packages\nps\wa-controller-nps-checklist.js
C:\Program Files\McAfee\WebAdvisor\MFW\packages\nps\wa-nps-checklist.html
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\about-icon-selected.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\about-icon.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\active_tab.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\checklisthandler.luc
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\close_button.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\cryptojack-icon.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\facebook.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\inst-noxup.gif
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\inst-top.gif
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\inst-warningbackground.gif
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\mcafee_shield_logo.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\mfe_logo.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\securesearchhandler.luc
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\settings-close.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\settings-icon-selected.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\settings-icon.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\switch_off.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\switch_on.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\twitter.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-checklist-risk.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-checklist-status.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-checklist.html
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-controller-checklist.js
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-dialog-balloon.css
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-dialog-balloon.html
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-dwtoast.css
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-dwtoast.html
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-edge-experience.css
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-edge-experience.html
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-options.css
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-options.html
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-sstoast-adblock-main.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-sstoast-adblock-tick.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-sstoast-adblock.css
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-sstoast-adblock.html
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-sstoast-adblock.js
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-sstoast-bing.css
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-sstoast-bing.html
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-sstoast-duckduckgo.css
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-sstoast-duckduckgo.html
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-sstoast-pps-main.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-sstoast-pps.css
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-sstoast-pps.html
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-sstoast-pps.js
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-sstoast.css
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-sstoast.html
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-ui-dialog-balloon.js
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-ui-dwtoast.js
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-ui-edge-experience.js
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-ui-options.js
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-ui-sstoast-bing.js
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-ui-sstoast-duckduckgo.js
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa-ui-sstoast.js
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wa_sstoast_ddg_main.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wac_banner.png
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\wacsecuresearchl10n.luc
C:\Program Files\McAfee\WebAdvisor\MFW\packages\webadvisor\warning-icon-toast.png
C:\Program Files\McAfee\WebAdvisor\resource.dll
C:\Program Files\McAfee\WebAdvisor\servicehost.exe
C:\Program Files\McAfee\WebAdvisor\settingmanager.dll
C:\Program Files\McAfee\WebAdvisor\taskmanager.dll
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\dimensionconfig.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\dimensionhandler.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\dimensionprocessor.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\baseaffidlookup.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\bingpartnercode.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\chromebasedbrowserversion.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\currentbrowserversion.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\dayssincesettingsdblookup.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\defaultbrowser.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\eventsupplied.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\externalutilityfunction.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\featuretrackingfeature.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\firefoxversion.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\installdate.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\isbissecuresearch.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\lastbrowserused.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\lastoemcheck.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\locale.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\osflavour.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\percentagehandler.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\postupdatereboottimelookup.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\profilescounter.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\proxysubtypehandler.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\proxytypehandler.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\registrylookup.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\searchannotations.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\securesearchprovider.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\sequencenumber.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\settingsdblookup.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\staticvalue.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\suitestatus.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\telemetryversion.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\updatepending.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\updatependingversion.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\wssaffid.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\wsscspid.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\wsseuladate.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\wsspackagetype.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\wsssetting.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\wsssettingexpiry.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\handlers\wssversion.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\dimensions\version.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\eventformatter.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\eventhandler.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\eventtransmitter.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\formatters\eventformatter_ga.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\formatters\eventformatter_json.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\handleonnavigate.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\handlers\adblockcounter.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\handlers\blockpage.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\handlers\browser_host_launchers_handler.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\handlers\browsernavigate.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\handlers\commonlogicloader.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\handlers\dailycounters.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\handlers\dailyping.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\handlers\downloadscan.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\handlers\ipc_stats_handler.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\handlers\logicscripterror.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\handlers\metriccounter.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\handlers\navigatedtoday.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\handlers\searchterm.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\handlers\securesearchhit.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\handlers\sendimmediately.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\handlers\smareputationcounter.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\handlers\wabadgenotificationcounter.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\handlers\wssanalytics.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\handlers\wssanalyticsraw.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\sendonping.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\telemetryconfig.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\telemetryhandler.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\transmitters\transmit_azure.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\transmitters\transmit_ga.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\transmitters\transmittimeout_azure.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\transmitters\transmittimeout_ga.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\events\version.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\serializers\download_scan_ui.js
C:\Program Files\McAfee\WebAdvisor\telemetry\serializers\fw_av_warning.js
C:\Program Files\McAfee\WebAdvisor\telemetry\serializers\onboardingballoon.js
C:\Program Files\McAfee\WebAdvisor\telemetry\serializers\optionsdialog.js
C:\Program Files\McAfee\WebAdvisor\telemetry\serializers\secure_search_toast.js
C:\Program Files\McAfee\WebAdvisor\telemetry\serializers\securesearchstatechange.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\serializers\survey.js
C:\Program Files\McAfee\WebAdvisor\telemetry\serializers\survey_ui.js
C:\Program Files\McAfee\WebAdvisor\telemetry\serializers\toastcheckcompleted.js
C:\Program Files\McAfee\WebAdvisor\telemetry\serializers\toastcheckcompleted.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\serializers\toastchecktriggered.luc
C:\Program Files\McAfee\WebAdvisor\telemetry\serializers\user_welcome.js
C:\Program Files\McAfee\WebAdvisor\telemetry\serializers\webboost_upsell.js
C:\Program Files\McAfee\WebAdvisor\uihost.exe
C:\Program Files\McAfee\WebAdvisor\uimanager.dll
C:\Program Files\McAfee\WebAdvisor\uninstaller.exe
C:\Program Files\McAfee\WebAdvisor\updater.exe
C:\Program Files\McAfee\WebAdvisor\wa-ui-uninstall.js
C:\Program Files\McAfee\WebAdvisor\wa-uninstall.css
C:\Program Files\McAfee\WebAdvisor\wa-uninstall.html
C:\Program Files\McAfee\WebAdvisor\wactoast.dll
C:\Program Files\McAfee\WebAdvisor\wataskmanager.dll
C:\Program Files\McAfee\WebAdvisor\webadvisor.ico
C:\Program Files\McAfee\WebAdvisor\webadvisor.mcafee.chrome.extension.json
C:\Program Files\McAfee\WebAdvisor\webadvisor.mcafee.firefox.extension.json
C:\Program Files\McAfee\WebAdvisor\win32\downloadscan.dll
C:\Program Files\McAfee\WebAdvisor\win32\ieplugin.dll
C:\Program Files\McAfee\WebAdvisor\win32\wssdep.dll
C:\Program Files\McAfee\WebAdvisor\x64\downloadscan.dll
C:\Program Files\McAfee\WebAdvisor\x64\ieplugin.dll
C:\Program Files\McAfee\WebAdvisor\x64\wssdep.dll
C:\WINDOWS\Installer\MSIB1EE.tmp-\DIFxAPI.dll
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CM222F.tmp
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CM23711.tmp
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CM2461.tmp
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CM24A7A.tmp
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CM255A6.tmp
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CM25FA5.tmp
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CM2815C.tmp
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CM281B9.tmp
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CM285F2.tmp
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CM2AC09.tmp
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CM2BA31.tmp
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CM2C19A.tmp
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CM2E84A.tmp
C:\WINDOWS\System32\config\systemprofile\AppData\Local\tw-293c-3fec-2b9425.tmp
C:\WINDOWS\System32\perfc007.dat
C:\WINDOWS\System32\perfc009.dat
C:\WINDOWS\System32\perfh007.dat
C:\WINDOWS\System32\perfh009.dat
# Ordner:
C:\Program Files\McAfee\WebAdvisor
C:\Users\defaultuser100000
C:\WINDOWS\Installer\MSI24B4.tmp-
C:\WINDOWS\Installer\MSI2580.tmp-
C:\WINDOWS\Installer\MSI261D.tmp-
C:\WINDOWS\Installer\MSI30B0.tmp-
C:\WINDOWS\Installer\MSI56B6.tmp-
C:\WINDOWS\Installer\MSI5CD2.tmp-
C:\WINDOWS\Installer\MSI5DDC.tmp-
C:\WINDOWS\Installer\MSI5EA9.tmp-
C:\WINDOWS\Installer\MSI600C.tmp-
C:\WINDOWS\Installer\MSI8D66.tmp-
C:\WINDOWS\Installer\MSI8F4B.tmp-
C:\WINDOWS\Installer\MSI9D23.tmp-
C:\WINDOWS\Installer\MSIAC2F.tmp-
C:\WINDOWS\Installer\MSIAC9D.tmp-
C:\WINDOWS\Installer\MSIB1EE.tmp-
C:\WINDOWS\Installer\MSICB35.tmp-
C:\WINDOWS\Installer\MSICBAC.tmp-
C:\WINDOWS\Installer\MSICC97.tmp-
C:\WINDOWS\Installer\MSID2CC.tmp-
C:\WINDOWS\Installer\MSID473.tmp-
C:\WINDOWS\Installer\MSIE1D4.tmp-
C:\WINDOWS\Installer\MSIE427.tmp-
C:\WINDOWS\Installer\MSIE67A.tmp-
# Aufgaben:
Agent Activation Runtime\S-1-5-21-1123935005-352909213-1317991075-1001
BlueStacksHelper
Intel PTT EK Recertification
Intel\Thunderbolt\Start Thunderbolt application on login if service is up
Intel\Thunderbolt\Start Thunderbolt application on switch user if service is up
Intel\Thunderbolt\Start Thunderbolt application when hardware is detected
Intel\Thunderbolt\Start Thunderbolt service on boot if driver is up
Intel\Thunderbolt\Start Thunderbolt service when hardware is detected
ITE HID monitor
Lenovo\ImController\Lenovo iM Controller Monitor
Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance
Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask
Lenovo\ImController\TimeBasedEvents\b7535703-9d21-4518-8d91-0f597b5a5de4
Lenovo\ImController\TimeBasedEvents\c42c84f1-7055-4f94-8d49-6eeebe110a07
Lenovo\ImController\TimeBasedEvents\def4f47e-a8fb-4945-a403-629182561e1e
Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance
Lenovo\Vantage\Schedule\BatteryGaugeAddinDailyScheduleTask
Lenovo\Vantage\Schedule\DailyTelemetryTransmission
Lenovo\Vantage\Schedule\GenericMessagingAddin
Lenovo\Vantage\Schedule\HeartbeatAddinDailyScheduleTask
Lenovo\Vantage\Schedule\IdeaNotebookAddinDailyEvent
Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.MonthlyReport
Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.SScan
Lenovo\Vantage\Schedule\LenovoBatteryPartSalesMonthlyToast
Lenovo\Vantage\Schedule\LenovoCompanionAppAddinDailyScheduleTask
Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_WeeklyTask
Lenovo\Vantage\Schedule\NotificationCenter
Lenovo\Vantage\Schedule\SettingsWidgetAddinDailyScheduleTask
Lenovo\Vantage\Schedule\SmartPerformance.ExpireReminder
Lenovo\Vantage\Schedule\VantageCoreAddinIdleScheduleTask
Lenovo\Vantage\Schedule\VantageCoreAddinWeekScheduleTask
Lenovo\Vantage\Schedule\VantageTelemetryAddinTask
Lenovo\Vantage\StartupFixPlan
Microsoft\Windows\AppID\EDP Policy Manager
Microsoft\Windows\Application Experience\MareBackup
Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser
Microsoft\Windows\Application Experience\PcaPatchDbTask
Microsoft\Windows\Application Experience\PcaWallpaperAppDetect
Microsoft\Windows\Application Experience\ProgramDataUpdater
Microsoft\Windows\Application Experience\StartupAppTask
Microsoft\Windows\ApplicationData\appuriverifierdaily
Microsoft\Windows\ApplicationData\appuriverifierinstall
Microsoft\Windows\ApplicationData\DsSvcCleanup
Microsoft\Windows\Autochk\Proxy
Microsoft\Windows\Chkdsk\ProactiveScan
Microsoft\Windows\Clip\ClipESU
Microsoft\Windows\CloudExperienceHost\CreateObjectTask
Microsoft\Windows\ConsentUX\UnifiedConsent\UnifiedConsentSyncTask
Microsoft\Windows\Customer Experience Improvement Program\Consolidator
Microsoft\Windows\Customer Experience Improvement Program\UsbCeip
Microsoft\Windows\Defrag\ScheduledDefrag
Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceWnsFallback
Microsoft\Windows\Diagnosis\RecommendedTroubleshootingScanner
Microsoft\Windows\Diagnosis\Scheduled
Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector
Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver
Microsoft\Windows\DiskFootprint\Diagnostics
Microsoft\Windows\DiskFootprint\StorageSense
Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask
Microsoft\Windows\Feedback\Siuf\DmClient
Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload
Microsoft\Windows\Flighting\FeatureConfig\ReconcileFeatures
Microsoft\Windows\Flighting\FeatureConfig\UsageDataFlushing
Microsoft\Windows\Flighting\FeatureConfig\UsageDataReporting
Microsoft\Windows\Flighting\OneSettings\RefreshCache
Microsoft\Windows\HelloFace\FODCleanupTask
Microsoft\Windows\InstallService\ScanForUpdates
Microsoft\Windows\InstallService\ScanForUpdatesAsUser
Microsoft\Windows\InstallService\SmartRetry
Microsoft\Windows\InstallService\WakeUpAndContinueUpdates
Microsoft\Windows\InstallService\WakeUpAndScanForUpdates
Microsoft\Windows\Location\Notifications
Microsoft\Windows\Maintenance\WinSAT
Microsoft\Windows\Maps\MapsToastTask
Microsoft\Windows\Maps\MapsUpdateTask
Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents
Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic
Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser
Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem
Microsoft\Windows\PushToInstall\LoginCheck
Microsoft\Windows\PushToInstall\Registration
Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask
Microsoft\Windows\SettingSync\BackgroundUploadTask
Microsoft\Windows\SettingSync\NetworkStateChangeTask
Microsoft\Windows\Shell\CreateObjectTask
Microsoft\Windows\Shell\FamilySafetyMonitor
Microsoft\Windows\Shell\FamilySafetyMonitorToastTask
Microsoft\Windows\Shell\FamilySafetyRefreshTask
Microsoft\Windows\Shell\IndexerAutomaticMaintenance
Microsoft\Windows\Shell\ThemesSyncedImageDownload
Microsoft\Windows\Subscription\EnableLicenseAcquisition
Microsoft\Windows\Subscription\LicenseAcquisition
Microsoft\Windows\User Profile Service\HiveUploadTask
Microsoft\Windows\Windows Media Sharing\UpdateLibrary
Microsoft\Windows\WindowsUpdate\Refresh Group Policy Cache
Microsoft\Windows\WindowsUpdate\RUXIM\PLUGScheduler
Microsoft\Windows\WindowsUpdate\Scheduled Start
Microsoft\Windows\WindowsUpdate\sihpostreboot
Microsoft\Windows\WlanSvc\CDSSync
Microsoft\Windows\WOF\WIM-Hash-Management
Microsoft\Windows\WOF\WIM-Hash-Validation
Microsoft\Windows\WwanSvc\NotificationTask
Microsoft\Windows\WwanSvc\OobeDiscovery
Microsoft\XblGameSave\XblGameSaveTask
MicrosoftEdgeUpdateTaskMachineCore
MicrosoftEdgeUpdateTaskMachineUA
Mozilla\Firefox Background Update 308046B0AF4A39CB
Mozilla\Firefox Background Update S-1-5-21-1123935005-352909213-1317991075-1001 308046B0AF4A39CB
Mozilla\Firefox Background Update S-1-5-21-1123935005-352909213-1317991075-500 308046B0AF4A39CB
Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB
NerveCenterUpdate
NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
OneDrive Per-Machine Standalone Update Task
OneDrive Reporting Task-S-1-5-21-1123935005-352909213-1317991075-1001
OneDrive Reporting Task-S-1-5-21-1123935005-352909213-1317991075-500
OneDrive Startup Task-S-1-5-21-1123935005-352909213-1317991075-1001
OneDrive Startup Task-S-1-5-21-1123935005-352909213-1317991075-500
Opera scheduled assistant Autoupdate 1716616574
Opera scheduled Autoupdate 1716616565
S-1-5-21-1123935005-352909213-1317991075-1001\DataSenseLiveTileTask
WiseCleaner\WRCSkipUAC
# Registrierung:
HKLM\Software\Policies\Mozilla\Firefox
HKCU\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\\SubscribedContent-338388Enabled
HKCU\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\\SubscribedContent-338389Enabled
HKCU\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\\SubscribedContent-353696Enabled
HKCU\Software\Microsoft\Windows\CurrentVersion\ContentDeliveryManager\\SystemPaneSuggestionsEnabled [1] => [0]
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\MicrosoftEdgeAutoLaunch_98769996E24836F99EC8617644423B4C
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\\TomTomHOME.exe
HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce\\OneDrive
HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce\\OneDrive
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1481171A-B964-40A9-BE14-0D700052DE06}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6DDE2E80-E929-43D2-A4F0-AFF3E45E4F79}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{89E403DD-0DAA-4D57-AB6A-4E193FCAF347}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9A7337B9-51CD-4396-BA36-802A51A311AB}
HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F1742535-4787-4EA0-B73F-C2CEC7547C6A}
# Caches:
C:\ProgramData\Blizzard Entertainment\Battle.net\Cache (256)
C:\ProgramData\Microsoft\Search\Data\Applications\Windows\GatherLogs\SystemIndex (737)
C:\Users\Administrator\AppData\Local\D3DSCache (3)
C:\Users\Administrator\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data (0)
C:\Users\Administrator\AppData\Local\Microsoft\Edge\User Data\Default\Code Cache\js (136)
C:\Users\Administrator\AppData\Local\Microsoft\TokenBroker\Cache (8)
C:\Users\Administrator\AppData\Local\Microsoft\Windows\INetCache\IE (4)
C:\Users\Administrator\AppData\Local\Mozilla\Firefox\Profiles\<Profile>\cache2\entries (2885)
C:\Users\Administrator\AppData\Local\Opera Software\Opera Stable\Default\Cache\Cache_Data (0)
C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\<Profile>\shader-cache (17)
C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable\Default\Code Cache\js (10)
C:\WINDOWS\System32\config\systemprofile\AppData\Local (2853)
C:\WINDOWS\System32\config\systemprofile\AppData\Local\D3DSCache (4)
# Verschiedenes:
AntiVirus Software: Malwarebytes
AntiVirus Software: Windows Defender
Wiederherstellungspunkt: Does Not Belong PRESCAN - Erstellt
HKLM\Software\Microsoft\Windows Defender\Exclusions\Extensions
HKLM\Software\Microsoft\Windows Defender\Exclusions\IpAddresses
HKLM\Software\Microsoft\Windows Defender\Exclusions\Paths
HKLM\Software\Microsoft\Windows Defender\Exclusions\Processes
HKLM\Software\Microsoft\Windows Defender\Exclusions\TemporaryPaths
Event[0]:
Log Name: Microsoft-Windows-Windows Defender/Operational
Source: Microsoft-Windows-Windows Defender
Date: 2025-05-31T15:26:12.3120000Z
Event ID: 3002
Task: N/A
Level: Fehler
Opcode: Info
Keyword: N/A
User: S-1-5-18
User Name: NT-AUTORITÄT\SYSTEM
Computer: Firewalker85
Description:
Fehler des Microsoft Defender Antivirus-Echtzeitschutz-Features.
Feature: Netzwerkinspektionssystem
Fehlercode: 0x8007045b
Fehlerbeschreibung: Der Computer wird heruntergefahren.
Ursache: Dem System fehlen erforderliche Updates zum Ausführen des Netzwerkinspektionssystems. Installieren Sie die erforderlichen Updates, und starten Sie das Gerät neu.
C:\Users\Administrator\AppData\Local\CrashDumps\msiexec.exe.3184.dmp <5634689> <2023-08-21 12:44:57>
C:\Users\Administrator\AppData\Local\CrashDumps\pontifex.exe.12676.dmp <17199335> <2021-05-24 08:04:49>
C:\Users\Administrator\AppData\Local\CrashDumps\ProcID.exe(1).19628.dmp <25623379> <2019-10-01 09:18:56>
C:\Users\Administrator\AppData\Local\CrashDumps\ProcID.exe.19628.dmp <25623755> <2019-10-01 09:18:54>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\Lenovo.Vantage.AddinInstaller.exe.13448.dmp <15197806> <2023-01-17 21:49:44>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\Microsoft.SharePoint.exe.12188.dmp <3098091> <2023-01-28 10:26:25>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\NVDisplay.Container.exe.364.dmp <4158724> <2023-11-08 16:19:37>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\NVDisplay.Container.exe.5208.dmp <5239944> <2023-11-08 16:17:34>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\NVDisplay.Container.exe.7204.dmp <4261508> <2023-11-08 16:20:31>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\svchost.exe.24308.dmp <462877> <2024-04-28 04:56:18>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\svchost.exe.3368.dmp <460402> <2024-01-01 10:08:07>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\svchost.exe.6788.dmp <467214> <2023-01-05 07:02:35>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\wuauclt.exe.16388.dmp <1188530> <2023-07-31 07:19:58>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\wuauclt.exe.7684.dmp <1087849> <2024-07-23 11:32:25>
# ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ # und Nr. 2 Code:
# ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ #
# DoesNotBelong v7.9.0
# Furtivex Computer Solutions - https://furtivex.net
# OS: Microsoft Windows 10 Home x64 22H2 Deutsch (German) - 0407 - 1252 - 850
# Benutzername: Administrator (S-1-5-21-1123935005-352909213-1317991075-500)
# Datum: 2025_05_31__15_48_56
# ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ #
# Prozesse:
# Treiber:
# Dienste:
# Dateien:
C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe
# Ordner:
C:\Program Files\McAfee\WebAdvisor
# Aufgaben:
Mozilla\Firefox Background Update S-1-5-21-1123935005-352909213-1317991075-1001 308046B0AF4A39CB
# Registrierung:
# Caches:
C:\ProgramData\Blizzard Entertainment\Battle.net\Cache (0)
C:\ProgramData\Microsoft\Search\Data\Applications\Windows\GatherLogs\SystemIndex (2)
C:\Users\Administrator\AppData\Local\D3DSCache (0)
C:\Users\Administrator\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data (0)
C:\Users\Administrator\AppData\Local\Microsoft\Edge\User Data\Default\Code Cache\js (0)
C:\Users\Administrator\AppData\Local\Microsoft\TokenBroker\Cache (0)
C:\Users\Administrator\AppData\Local\Microsoft\Windows\INetCache\IE (0)
C:\Users\Administrator\AppData\Local\Mozilla\Firefox\Profiles\<Profile>\cache2\entries (0)
C:\Users\Administrator\AppData\Local\Opera Software\Opera Stable\Default\Cache\Cache_Data (0)
C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\<Profile>\shader-cache (0)
C:\Users\Administrator\AppData\Roaming\Opera Software\Opera Stable\Default\Code Cache\js (0)
C:\WINDOWS\System32\config\systemprofile\AppData\Local (0)
C:\WINDOWS\System32\config\systemprofile\AppData\Local\D3DSCache (0)
# Verschiedenes:
AntiVirus Software: Malwarebytes
AntiVirus Software: Windows Defender
Wiederherstellungspunkt: Does Not Belong PRESCAN - Erstellt
HKLM\Software\Microsoft\Windows Defender\Exclusions\Extensions
HKLM\Software\Microsoft\Windows Defender\Exclusions\IpAddresses
HKLM\Software\Microsoft\Windows Defender\Exclusions\Paths
HKLM\Software\Microsoft\Windows Defender\Exclusions\Processes
HKLM\Software\Microsoft\Windows Defender\Exclusions\TemporaryPaths
Event[0]:
Log Name: Microsoft-Windows-Windows Defender/Operational
Source: Microsoft-Windows-Windows Defender
Date: 2025-05-31T15:26:12.3120000Z
Event ID: 3002
Task: N/A
Level: Fehler
Opcode: Info
Keyword: N/A
User: S-1-5-18
User Name: NT-AUTORITÄT\SYSTEM
Computer: Firewalker85
Description:
Fehler des Microsoft Defender Antivirus-Echtzeitschutz-Features.
Feature: Netzwerkinspektionssystem
Fehlercode: 0x8007045b
Fehlerbeschreibung: Der Computer wird heruntergefahren.
Ursache: Dem System fehlen erforderliche Updates zum Ausführen des Netzwerkinspektionssystems. Installieren Sie die erforderlichen Updates, und starten Sie das Gerät neu.
C:\Users\Administrator\AppData\Local\CrashDumps\explorer.exe.13220.dmp <37117566> <2025-05-31 13:46:43>
C:\Users\Administrator\AppData\Local\CrashDumps\msiexec.exe.3184.dmp <5634689> <2023-08-21 12:44:57>
C:\Users\Administrator\AppData\Local\CrashDumps\pontifex.exe.12676.dmp <17199335> <2021-05-24 08:04:49>
C:\Users\Administrator\AppData\Local\CrashDumps\ProcID.exe(1).19628.dmp <25623379> <2019-10-01 09:18:56>
C:\Users\Administrator\AppData\Local\CrashDumps\ProcID.exe.19628.dmp <25623755> <2019-10-01 09:18:54>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\Lenovo.Vantage.AddinInstaller.exe.13448.dmp <15197806> <2023-01-17 21:49:44>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\Microsoft.SharePoint.exe.12188.dmp <3098091> <2023-01-28 10:26:25>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\NVDisplay.Container.exe.364.dmp <4158724> <2023-11-08 16:19:37>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\NVDisplay.Container.exe.5208.dmp <5239944> <2023-11-08 16:17:34>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\NVDisplay.Container.exe.7204.dmp <4261508> <2023-11-08 16:20:31>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\svchost.exe.24308.dmp <462877> <2024-04-28 04:56:18>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\svchost.exe.3368.dmp <460402> <2024-01-01 10:08:07>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\svchost.exe.6788.dmp <467214> <2023-01-05 07:02:35>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\wuauclt.exe.16388.dmp <1188530> <2023-07-31 07:19:58>
C:\WINDOWS\System32\config\systemprofile\AppData\Local\CrashDumps\wuauclt.exe.7684.dmp <1087849> <2024-07-23 11:32:25>
# ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ # |