![]() |
Google Chrome mit Ads infiziert Liste der Anhänge anzeigen (Anzahl: 5) Hallo liebe Community, ich habe seit einiger Zeit einige Probleme mit Google Chrome. Es scheint so als hätte ich mir irgendwelche Viren bezüglich der Ad-Ons eingefangen. Es gibt mehrere Anzeichen, die mir aufgefallen sind und die ich hofftl. anschaulich hier eingeben kann. # Größtes Problem dabei ist, dass teilweise bei verschiedenen Klicks neue Tabs aufgemacht werden oder ganz neue Fenster. Die Links sehen dann immer wie folgt aus: • hxxp://gir.driveropti.net/sd/dw32.html?u=http%3A%2F%2Fdlvr.readserver.net%2Fbp%3Fsection%3D2455%26type%3D2&p=Remarkit&a=&c=2040-2084&b=chrome&bv=34&t1=1399745953041&tt=1399745953041&r=www.amazon.de&ua=0&n=apptv&sn=&mpa=0&mp=0 • hxxp://gir.driveropti.net/sd/dw32.html?u=http%3A%2F%2Fugo.tractionize.com%2FWhiteLabelBidRequestHandlerServlet%3Foid%3D1%26width%3D1%26height%3D100%26pubid%3D2040%26tagid%3D2084%2 6noaop%3D1%26revmod%3DCRD%26cb%3Dcybabw%26encoded%3D1%26cirf%3Dhttp%3A%2F%2Fwww.trojaner-board.de%2Fsearch.php%3Fsearchid%3D2597750&p=Remarkit&a=&c=2040-2084&b=chrome&bv=35&t1=1401707926618&tt=1401707926618&r=www.trojaner-board.de&ua=22&n=convertmedia&sn=&mpa=0&mp=0 • hxxp://gir.driveropti.net/sd/dw32.html?u=http%3A%2F%2Fugo.tractionize.com%2FWhiteLabelBidRequestHandlerServlet%3Foid%3D1%26width%3D1%26height%3D100%26pubid%3D2040%26tagid%3D2084%2 6noaop%3D1%26revmod%3DCRD%26cb%3Dcybabw%26encoded%3D1%26cirf%3Dhttp%3A%2F%2Fconvert2mp3.net%2Findex.php%3Fp%3Dtags%26amp%3Bid%3Dyoutube_YvfO386qwjE%26 amp%3Bkey%3Dzl7S1sIr&p=Remarkit&a=&c=2040-2084&b=chrome&bv=35&t1=1401462882173&tt=1401462882173&r=convert2mp3.net&ua=20&n=convertmedia&sn=&mpa=0&mp=0 • hxxp://srv123.com/ctrd/click/newjump1.do?affiliate=63640&subid=2040_2084_de&terms=k%C3%A3%C2%B6ln%2050667%20online%20schauen%20bei%20rtl%20ii%20now%20rtl2.de%20k%C3%A3%C2%B6ln%205 0667%20video%20videos%20online%20sehen%20internet&ai=rfwfAD-kziKfvIzK9g-K7uF2VIX15_zOb4EVCUFSAKDpweTpNIcm5aBu3lijBHd5UkJszldOmlEI2uQQFKSu7t1eBEbMkg06ewj0bFIRtamXGt9i96Hp8f0ERmN4laQOUgqoIhSVa_FBUDgAKQg2pCXapx42Fb103VWb_I7A7 uu47tFB97b5be5dxNbofVdcpZopmxXlSAHFCy8mHytCFlW7d7zekiY0LIcfbdKQsgTTM9gUBetdJxMUgfumUkuiL2CWWB6UW1q0fL-V-FkpAxI_EKLELBFQyLJRi-BtAPLkV4AuOMvAUgSK-NBDqs_7hqtcytb6wmn-TJYAaVvV5WHM_Jj1UWS4Fc8KPhYIcp54wzedaXT7Smk8f3mOEaTOtUR9Uw_QeAXtoNV2vdt0My1c1LPEDmVGWOu0V-z3HE6SjkAwbKWmGdOfzhQ-xgW9uDJu3iu8jnGJMi7i1d0PNgHIqFksykZcG-qLOoWbZlfSsPUpVwdLTiPlg3kh0JSb&version=1.1 und dann wird man weitergeleitet zu: -> hxxp://videoplayerupdate.net/tri/update-flash/de/?subid=63640-2040_2084_de&subid3=k%C3%A3%C2%B6ln+50667+online+schauen+bei+rtl+ii+now+rtl2.de+k%C3%A3%C2%B6ln+50667+video+videos+online+sehen+internet&subid2=140147 7974942_1401477966482_108_4408577_52566455_1&transaction_id=e11d7151-ed10-49bd-a6f4-6862f70ca5c5&rand=5388db85658db&a=&aid=tizzle&source=tizzle-flop-de-PRON&entry=y&exit=y • hxxp://binaryinstructor.com/de/index.html?engsec=15 # Ein anderes Anzeichen, was denke ich auch damit zusammenhängt, ist, dass auf einigen Seiten manche Wörter doppelt grün unterstrichen sind: Bsp. auf dieser Seite hier: Anhang 1.1. und Anhang 1.2.Anhang 67351 Anhang 67352 # Zudem ist auf fast allen Seiten am unteren Bildrand eine Box zu sehen die sich auf irgendwelche Ads by Remarkt bezieht: Bsp. auf dieser Seite hier: Anhang 2, Ads by Remarkt Anhang 67353 # Nächste Sache ist, dass ich z.B. in Chrome keine Texte mehr markieren und dann bspw. kopieren kann. Folgendes erscheint dann: Bsp. hier auf dieser Seite: Anhang 3, Texte blau markieren. Anhang 67354 # Beispiel für eine der gri.-Seiten die immer geöffnet werden. So etwas erscheint dann: Anhang 4, Windows Reparatur Seite. Anhang 67355 Ich hoffe ich konnte mein Thema möglichst gut an euch Experten weitergeben und hoffe, dass ihr mir bei diesem lästigen Problem helfen könnt. Hat beim letzten Mal auch sehr gut funktioniert, deswegen bin ich wieder hier :) Vielen Dank! Lukas |
hi, Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
|
FRST.txt.: FRST Logfile: FRST Logfile: Code: Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-06-2014 01--- --- --- Addition.txt.:FRST Additions Logfile: Code: Additional scan result of Farbar Recovery Scan Tool (x64) Version: 01-06-2014 01 |
Adware & Co. deinstallieren
Solltest Du ein Programm nicht finden oder nicht deinstallieren können, mache bitte mit dem nächsten Schritt weiter: Downloade Dir bitte
Downloade Dir bitte
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte. |
mbam.txt: Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 03.06.2014 Suchlauf-Zeit: 12:10:56 Logdatei: mbam.txt Administrator: Ja Version: 2.00.2.1012 Malware Datenbank: v2014.06.03.03 Rootkit Datenbank: v2014.06.02.01 Lizenz: Testversion Malware Schutz: Aktiviert Bösartiger Webseiten Schutz: Aktiviert Self-protection: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: Lukas Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 292211 Verstrichene Zeit: 14 Min, 25 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristics: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 1 PUP.Optional.IePluginService.A, C:\ProgramData\IePluginService\PluginService.exe, 1856, Löschen bei Neustart, [13fc096b85f6e84ec120183f5fa256aa] Module: 1 PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\DpInterface32.dll, Löschen bei Neustart, [55ba33415f1ccf6724d0f4b8778b8b75], Registrierungsschlüssel: 20 PUP.Optional.IePluginService.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\IePluginService, In Quarantäne, [13fc096b85f6e84ec120183f5fa256aa], PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, In Quarantäne, [ee21abc9b6c5f343f33acf668a7825db], PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}, In Quarantäne, [ee21abc9b6c5f343f33acf668a7825db], PUP.Optional.SupTab.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, In Quarantäne, [ee21abc9b6c5f343f33acf668a7825db], PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{917CAAE9-DD47-4025-936E-1414F07DF5B8}, In Quarantäne, [ee21abc9b6c5f343f33acf668a7825db], PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}, In Quarantäne, [ee21abc9b6c5f343f33acf668a7825db], PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, In Quarantäne, [ee21abc9b6c5f343f33acf668a7825db], PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, In Quarantäne, [ee21abc9b6c5f343f33acf668a7825db], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\21636, In Quarantäne, [5db201733a4138fe7d26a102bb47f50b], PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarantäne, [d9361d5748334aece815ac25b64dc53b], PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\WOW6432NODE\webssearchesSoftware, In Quarantäne, [bf50f77d007b1e18bbc9c4df867c9e62], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\INSTALLEDBROWSEREXTENSIONS\21636, In Quarantäne, [1ff03b3925565bdbfea5099aed1513ed], PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarantäne, [24eb76fecdaeb680f30ac30e9370b54b], PUP.Optional.PlusHD.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Plus-HD-1.7, Löschen bei Neustart, [57b80b69097212243912198abb47ae52], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3356171927-603591009-3139132438-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\21636, In Quarantäne, [f11e4232324995a15e46d5ce19e9ee12], PUP.Optional.CrossRider.A, HKU\S-1-5-21-3356171927-603591009-3139132438-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\Freeven, In Quarantäne, [709ff084d1aa9d9956a9c5e1bd45c739], PUP.Optional.Qone8, HKU\S-1-5-21-3356171927-603591009-3139132438-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarantäne, [a6691b59c1ba81b538c4923fff042ad6], PUP.Optional.DealPly.A, HKU\S-1-5-21-3356171927-603591009-3139132438-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\gaiilaahiahdejapggenmdmafpmbipje, In Quarantäne, [e02ffc78a7d4e650164abdd733cf48b8], PUP.Optional.CrossRider.M, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{11111111-1111-1111-1111-110311211154}, In Quarantäne, [59b698dc582348ee8a274125ee16a45c], PUP.Optional.CrossRider.M, HKLM\SOFTWARE\CLASSES\CLSID\{11111111-1111-1111-1111-110311211154}, In Quarantäne, [59b698dc582348ee8a274125ee16a45c], Registrierungswerte: 1 PUP.Optional.QuickStart.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|quick_start@gmail.com, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com, In Quarantäne, [4cc35a1abebd3501dd648b19aa58926e] Registrierungsdaten: 14 PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\FIREFOX.EXE\SHELL\OPEN\COMMAND, C:\Program Files (x86)\Mozilla Firefox\firefox.exe hxxp://istart.webssearches.com/?type=sc&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX, Gut: (firefox.exe), Schlecht: (C:\Program Files (x86)\Mozilla Firefox\firefox.exe hxxp://istart.webssearches.com/?type=sc&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX),Ersetzt,[32dd3b39691214226326c594966ec33d] PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, hxxp://istart.webssearches.com/web/?type=ds&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/web/?type=ds&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX&q={searchTerms}),Ersetzt,[66a9551f017af541176ac8916a9a33cd] PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://istart.webssearches.com/?type=hp&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/?type=hp&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX),Ersetzt,[917e21532655072ffb8485d457ad5fa1] PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://istart.webssearches.com/?type=hp&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/?type=hp&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX),Ersetzt,[7b9474003645bd798cf74e0b6c98857b] PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|CustomizeSearch, hxxp://istart.webssearches.com/web/?type=ds&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/web/?type=ds&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX&q={searchTerms}),Ersetzt,[b45bde9606756cca196ccc8d47bd8080] PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|SearchAssistant, hxxp://istart.webssearches.com/web/?type=ds&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/web/?type=ds&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX&q={searchTerms}),Ersetzt,[b25dd2a2f289a09671169dbcd430659b] PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[54bb61134437d95de0d2a2c1f41028d8] PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\WOW6432NODE\CLIENTS\STARTMENUINTERNET\FIREFOX.EXE\SHELL\OPEN\COMMAND, C:\Program Files (x86)\Mozilla Firefox\firefox.exe hxxp://istart.webssearches.com/?type=sc&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX, Gut: (firefox.exe), Schlecht: (C:\Program Files (x86)\Mozilla Firefox\firefox.exe hxxp://istart.webssearches.com/?type=sc&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX),Ersetzt,[c04fd79d5f1c8aaca4e574e5788cd729] PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, hxxp://istart.webssearches.com/web/?type=ds&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/web/?type=ds&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX&q={searchTerms}),Ersetzt,[5fb0beb6a4d71f17bec3b0a9dc28ab55] PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://istart.webssearches.com/?type=hp&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/?type=hp&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX),Ersetzt,[8f80c1b31764b5814b3438210df725db] PUP.Optional.WebsSearches.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://istart.webssearches.com/?type=hp&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/?type=hp&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX),Ersetzt,[78978ce80675d066582b83d612f23bc5] PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[89861b59186344f2a30f590a3bc97888] PUP.Optional.WebsSearches.A, HKU\S-1-5-21-3356171927-603591009-3139132438-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://istart.webssearches.com/?type=hp&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/?type=hp&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX),Ersetzt,[8b8489eb0a711521354f1d3c64a0758b] PUP.Optional.WebsSearches.A, HKU\S-1-5-21-3356171927-603591009-3139132438-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://istart.webssearches.com/?type=hp&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX, Gut: (www.google.com), Schlecht: (hxxp://istart.webssearches.com/?type=hp&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX),Ersetzt,[e22d92e2d6a5de58afd1c594b64ecc34] Ordner: 58 PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab, Löschen bei Neustart, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\weather, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\en-US, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\es-419, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\es-ES, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-BE, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-CA, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-CH, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-FR, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-LU, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\it-CH, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\it-IT, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\pl, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\pt, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\pt-BR, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\ru, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\ru-MO, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\tr-TR, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\vi-VI, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\zh-CN, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\zh-TW, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.IePluginService.A, C:\ProgramData\IePluginService, Löschen bei Neustart, [d837bfb56714fc3a95467a0506fc31cf], PUP.Optional.IePluginService.A, C:\ProgramData\IePluginService\update, In Quarantäne, [d837bfb56714fc3a95467a0506fc31cf], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\content, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\content\include, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\content\include\tools, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\content\js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\en, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\en-US, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\es, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\es-419, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\fr, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\fr-BE, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\fr-CA, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\fr-CH, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\fr-LU, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\it, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\it-CH, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\pl, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\pt-BR, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\ru, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\ru-MO, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\tr, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\vi, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\zh-CN, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\zh-TW, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\skin, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\skin\weather, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\defaults, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\defaults\preferences, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\modules, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], Dateien: 148 PUP.Optional.IePluginService.A, C:\ProgramData\IePluginService\PluginService.exe, Löschen bei Neustart, [13fc096b85f6e84ec120183f5fa256aa], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\SupTab.dll, In Quarantäne, [ee21abc9b6c5f343f33acf668a7825db], PUP.Optional.SupTab.A, C:\Users\Lukas\AppData\Roaming\SupTab\SupTab.dll, In Quarantäne, [9e7112628bf038fe1f2f52e3926e54ac], PUP.Optional.Feven.A, C:\$RECYCLE.BIN\S-1-5-21-3356171927-603591009-3139132438-1000\$ROTQSNG\utils.exe, In Quarantäne, [f81783f15e1d2115d506c57ab34d10f0], PUP.Optional.WpManager, C:\$RECYCLE.BIN\S-1-5-21-3356171927-603591009-3139132438-1000\$RD6AP8P\wprotectmanager.exe, In Quarantäne, [bc5330449edd8ea8460168fa29d827d9], PUP.Optional.crossRider.A, C:\$RECYCLE.BIN\S-1-5-21-3356171927-603591009-3139132438-1000\$RGKNN28\utils.exe, In Quarantäne, [709f9cd892e90f2725c365da966a936d], PUP.Optional.DomaIQ, C:\Users\Lukas\AppData\Local\Temp\dfs869.tmp, In Quarantäne, [d837e68e0f6c74c2d3e3a18c91719d63], Backdoor.Bot, C:\Users\Lukas\AppData\Local\Temp\fecf5cc8-7617-4e20-8d05-37d40de8bf43\android.exe, In Quarantäne, [64ab8fe55d1e66d04a06c4aadb267e82], PUP.Optional.ScramblePacker.A, C:\Users\Lukas\AppData\Local\Temp\fecf5cc8-7617-4e20-8d05-37d40de8bf43\software\freeven-pro.exe, In Quarantäne, [34dbb7bd4437b383ef54b5c8837e14ec], PUP.Optional.SkyTech.A, C:\Users\Lukas\AppData\Local\Temp\fecf5cc8-7617-4e20-8d05-37d40de8bf43\software\lly_webssearches.exe .exe, In Quarantäne, [38d7ee86dd9e47efcbf65304a25ffd03], PUP.Optional.ScramblePacker.A, C:\Users\Lukas\AppData\Local\Temp\fecf5cc8-7617-4e20-8d05-37d40de8bf43\software\mediaplayerplus.exe, In Quarantäne, [42cdb8bc9eddec4ab390611c10f1cb35], PUP.Optional.SkyTech.A, C:\Users\Lukas\AppData\Local\Temp\fullpackage_temp1399727694\alilog.dll, In Quarantäne, [e52a353f285386b06aaefa38cd337f81], PUP.Optional.IePluginService.A, C:\Users\Lukas\AppData\Local\Temp\fullpackage_temp1399727694\tmp\SupTab.exe, In Quarantäne, [c14e5123a2d9979f6978c691ce3327d9], PUP.Optional.WpManager, C:\Users\Lukas\AppData\Local\Temp\fullpackage_temp1399727694\tmp\wpm.exe, In Quarantäne, [bb54f084fd7eaa8cc97e9ac846bbd32d], Backdoor.Bot, C:\Users\Lukas\AppData\Local\Temp\android\android.exe, In Quarantäne, [7c9388ec225945f1f65a5c12e918e917], PUP.Optional.DomaIQ, C:\Users\Lukas\Downloads\Java.exe, In Quarantäne, [838cf0848deecc6ac0e4f94ad7294db3], PUP.Optional.OutBrowse, C:\Users\Lukas\Downloads\setup.exe, In Quarantäne, [dc332e4665163bfb4092a1dafd045ca4], PUP.Optional.BetterDeals.A, C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.betterdeals00.betterdeals.co_0.localstorage, Löschen bei Neustart, [c24d0d677b00a195c2daefa240c208f8], PUP.Optional.BetterDeals.A, C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.betterdeals00.betterdeals.co_0.localstorage-journal, In Quarantäne, [be5199db4239fb3bd8c4aee342c0ee12], PUP.Optional.Softonic.A, C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_search.softonic.com_0.localstorage, In Quarantäne, [000fa4d0403be650a341f2a1847ed22e], PUP.Optional.Softonic.A, C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_search.softonic.com_0.localstorage-journal, In Quarantäne, [d936cda74f2cb2844a9a197a80820ff1], PUP.Optional.LiveLyrics.A, C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.livelyrics00.live-lyrics.com_0.localstorage, In Quarantäne, [c748195b89f237ff272b0b8cd03245bb], PUP.Optional.LiveLyrics.A, C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_static.livelyrics00.live-lyrics.com_0.localstorage-journal, In Quarantäne, [bb54a0d4bebd003653ffb5e28979f50b], PUP.Optional.Superfish.A, C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage, Löschen bei Neustart, [e7280b695a2183b3bd9637609a68bb45], PUP.Optional.Superfish.A, C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal, Löschen bei Neustart, [9f7085ef4932e353f063b4e3a85ab24e], PUP.Optional.WebsSearches.A, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\webssearches.xml, In Quarantäne, [ca45f282a5d6989e4046a5fea35f08f8], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\install.data, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\DpInterface32.dll, Löschen bei Neustart, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\DpInterface64.dll, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\DpInterfacef32.dll, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\ient.json, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\RSHP.exe, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\SearchProtect32.dll, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\SearchProtect64.dll, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\SpAPPSv32.dll, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\SpAPPSv64.dll, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\uninstall.exe, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\WebDataJs, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\data.html, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\indexIE.html, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\indexIE8.html, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\main.css, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\ver.txt, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\arrow.png, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\default_add_logo.png, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\default_add_logo_hover.png, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\default_logo.png, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\googlelogo.png, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\googlelogo2.png, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\google_trends.png, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\icon128.png, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\icon16.png, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\icon48.png, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\loading.gif, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\logo32.ico, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\img\weather\0.png, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\common.js, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\ga.js, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\ie8.js, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\jquery-1.11.0.min.js, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\jquery.autocomplete.js, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\js.js, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\library.js, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\js\xagainit.js, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\en-US\messages.json, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\es-419\messages.json, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\es-ES\messages.json, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-BE\messages.json, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-CA\messages.json, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-CH\messages.json, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-FR\messages.json, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\fr-LU\messages.json, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\it-CH\messages.json, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\it-IT\messages.json, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\pl\messages.json, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\pt\messages.json, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\pt-BR\messages.json, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\ru\messages.json, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\ru-MO\messages.json, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\tr-TR\messages.json, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\vi-VI\messages.json, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\zh-CN\messages.json, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.SupTab.A, C:\Program Files (x86)\SupTab\web\_locales\zh-TW\messages.json, In Quarantäne, [55ba33415f1ccf6724d0f4b8778b8b75], PUP.Optional.FunMoods.A, C:\Users\Lukas\AppData\Local\funmoods_2.3.crx, In Quarantäne, [957a90e4b2c9ef4712bdc91931d2d927], PUP.Optional.IePluginService.A, C:\ProgramData\IePluginService\update\conf, In Quarantäne, [d837bfb56714fc3a95467a0506fc31cf], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome.manifest, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\install.rdf, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\content\index.html, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\content\quick_start.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\content\quick_start.xul, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\content\include\speed_dial.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\content\include\tools\about_blank_hoo k.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\content\include\tools\misc.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\content\include\tools\popup_image_hel per.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\content\include\tools\urlrequestor.js , In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\content\js\common.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\content\js\doT.min.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\content\js\ga.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\content\js\jquery-2.1.0.min.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\content\js\jquery.autocomplete.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\content\js\js.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\content\js\xagainit.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\en\locale.properties, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\en-US\locale.properties, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\es\locale.properties, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\es-419\locale.properties, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\fr\locale.properties, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\fr-BE\locale.properties, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\fr-CA\locale.properties, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\fr-CH\locale.properties, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\fr-LU\locale.properties, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\it\locale.properties, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\it-CH\locale.properties, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\pl\locale.properties, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\pt-BR\locale.properties, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\ru\locale.properties, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\ru-MO\locale.properties, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\tr\locale.properties, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\vi\locale.properties, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\zh-CN\locale.properties, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\locale\zh-TW\locale.properties, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\skin\arrow.png, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\skin\default_add_logo.png, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\skin\default_add_logo_hover.png, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\skin\default_logo.png, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\skin\googlelogo.png, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\skin\googlelogo2.png, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\skin\google_trends.png, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\skin\icon.png, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\skin\loading.gif, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\skin\logo.ico, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\skin\logo.png, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\skin\logo32.ico, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\skin\style.css, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\chrome\skin\weather\0.png, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\defaults\preferences\fvd.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\modules\addonmanager.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\modules\aes.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\modules\config.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\modules\dialogs.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\modules\last_tab.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\modules\misc.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\modules\properties.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\modules\remoterequest.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\modules\restoreprefs.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.QuickStart.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\quick_start@gmail.com\modules\settings.js, In Quarantäne, [33dcf87c9be05adc8fefc6bd50b29a66], PUP.Optional.WebsSearches.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\prefs.js, Gut: (), Schlecht: (user_pref("browser.startup.homepage", "hxxp://istart.webssearches.com/?type=hp&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX");), Ersetzt,[bc530b69384350e60e419df3ff059070] PUP.Optional.WebsSearches.A, C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\prefs.js, Gut: (), Schlecht: (user_pref("browser.newtab.url", "hxxp://istart.webssearches.com/newtab/?type=nt&ts=1399727712&from=tugs&uid=HitachiXHTS547575A9E384_J2190054D02SNCD02SNCX");), Ersetzt,[917e2054007b4aec4a06ddb3689cf907] Physische Sektoren: 0 (No malicious items detected) (end) AdwCleaner[S1]:AdwCleaner Logfile: Code: # AdwCleaner v3.211 - Bericht erstellt am 03/06/2014 um 12:53:02JRT.txt: ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.4 (04.06.2014:1) OS: Windows 7 Home Premium x64 Ran by Lukas on 03.06.2014 at 13:02:25,96 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files Successfully deleted: [File] C:\Windows\syswow64\sho4A2A.tmp Successfully deleted: [File] C:\Windows\syswow64\sho7564.tmp Successfully deleted: [File] C:\Windows\syswow64\sho79ED.tmp Successfully deleted: [File] C:\Windows\syswow64\shoE84C.tmp ~~~ Folders ~~~ FireFox Emptied folder: C:\Users\Lukas\AppData\Roaming\mozilla\firefox\profiles\4a7g1a51.default\minidumps [2 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 03.06.2014 at 13:09:13,98 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST.txt: FRST Logfile: FRST Logfile: Code: Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-06-2014--- --- --- da ich nicht wusste ob die Addition.txt Datei auch wieder benötigt wird habe ich sie angehängt. Der Text wäre sonst zu lang gewesen.Anhang 67392 MERCI! |
ESET Online Scanner
Downloade Dir bitte
und ein frisches FRST log bitte. Noch Probleme? :) |
Eset: ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7587 # api_version=3.0.2 # EOSSerial=c47886a312544d4d90e0d086aef0cbfa # engine=18549 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2014-06-04 01:24:49 # local_time=2014-06-04 03:24:49 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1031 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode_1='Avira Desktop' # compatibility_mode=1810 16777213 100 100 17111 18647971 0 0 # compatibility_mode_1='' # compatibility_mode=5893 16776574 100 94 28007932 153518139 0 0 # scanned=372684 # found=153 # cleaned=0 # scan_time=12491 sh=945274AD21D798D5057E5AD4C6AA083517EF941D ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3356171927-603591009-3139132438-1000\$RGKNN28\54246.crx" sh=9BAF1CB99F83AAEE59BC60E421E1F737FB8FEC22 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3356171927-603591009-3139132438-1000\$RGKNN28\54246.xpi" sh=545DFF1AC741C30D3AB1EBE9F4C30DC00EFE1348 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3356171927-603591009-3139132438-1000\$ROTQSNG\54248.crx" sh=9F46A6A0D837DA131480978FCF96BAA46AD39563 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\$RECYCLE.BIN\S-1-5-21-3356171927-603591009-3139132438-1000\$ROTQSNG\54248.xpi" sh=F54529D4575CBC2C9FC8017766F79EEE4EC128C1 ft=1 fh=e34d4d021738f841 vn="Variante von Win32/Toolbar.CrossRider.H evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-1.7\Plus-HD-1.7-bg.exe.vir" sh=82A558F273A273E25FDDC45662D08AFF4838FDF3 ft=1 fh=d292b157c6c592d0 vn="Variante von Win32/Toolbar.CrossRider.I evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-1.7\Plus-HD-1.7-buttonutil.exe.vir" sh=CEAAB586E2C08116263BA3761BD02E038CDCAFDB ft=1 fh=8a94d5ccbe8c7223 vn="Variante von Win64/Toolbar.Crossrider.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-1.7\Plus-HD-1.7-buttonutil64.dll.vir" sh=F4E34081892F08A87194CDB1DACDCEECB62EB13C ft=1 fh=c4545df90a13c497 vn="Variante von Win64/Toolbar.Crossrider.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-1.7\Plus-HD-1.7-buttonutil64.exe.vir" sh=25A712DAA4070841DCC31A62AD65C4215B0E8E36 ft=1 fh=3fa978ec809d6074 vn="Win32/Packed.VMDetector.B evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Plus-HD-1.7\utils.exe.vir" sh=ACB7D589E75DD96B031086736319F6A0E76BC30B ft=1 fh=6fbea4ce7018d659 vn="MSIL/Vittalia.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SoftwareUpdater\AppsUpdater.exe.vir" sh=6D337B7209C2E4837F4075D44D5928D0F4BC54E6 ft=1 fh=c71c0011cc6930ff vn="Win32/Vittalia.K evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SoftwareUpdater\KeyGen.dll.vir" sh=66B8CBF3470DAA3C7DC0C43A0C364089D7D25268 ft=1 fh=b9c4365f5e7e7047 vn="Win32/Vittalia.H evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SoftwareUpdater\uninstall.exe.vir" sh=4EF52117B121D0A7D418C0F163C8EB26D432326D ft=1 fh=7f6ebefadd78d6b5 vn="MSIL/Vittalia.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\SoftwareUpdater\UpdaterService.exe.vir" sh=75A377CBC3D3354BF0DD7B5F1D26BFFF73744B92 ft=1 fh=8248de016d1d2bbb vn="Variante von Win32/Wajam.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Wajam\Updater\update.exe.vir" sh=E21B3507208808596F7FD41C5D637DFE2E8F2FB9 ft=1 fh=5d027b3a7f09e7d3 vn="Win32/Wajam.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Wajam\Updater\WajamUpdaterV3.exe.vir" sh=1493DA207C28A525CCD5AB665733C177C88DDCB0 ft=1 fh=f97699e24228a886 vn="Variante von MSIL/Toolbar.Linkury.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\BrowserHelper.exe.vir" sh=D97DBC64A2AC8D8958D5D1536E03F61F7C11C7A4 ft=1 fh=f3ee781a13a21e40 vn="Win32/Toolbar.Linkury.F evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\Smartbar.GUI.MainClient.dll.vir" sh=E363CC39D9C4F97C8F7A010BFB8ECC494B0933E1 ft=1 fh=59fdb13bda948453 vn="Variante von MSIL/Toolbar.Linkury.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\SmartbarInternetExplorerBHO.dll.vir" sh=E363CC39D9C4F97C8F7A010BFB8ECC494B0933E1 ft=1 fh=59fdb13bda948453 vn="Variante von MSIL/Toolbar.Linkury.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\SmartbarInternetExplorerBHO2.dll.vir" sh=7BC6A50BF2D46AA0627273558A15252D2AA1621D ft=1 fh=85fb64eeaf865640 vn="Variante von MSIL/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\SmartbarInternetExplorerExtension.dll.vir" sh=7BC6A50BF2D46AA0627273558A15252D2AA1621D ft=1 fh=85fb64eeaf865640 vn="Variante von MSIL/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\SmartbarInternetExplorerExtension2.dll.vir" sh=404C9F0A2840BE848050FB479D0024A1B5143831 ft=1 fh=f9f266f9de3c3fec vn="MSIL/Toolbar.Linkury.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\SmartbarVersionsHelper.exe.vir" sh=B7452639282CBE3783B8C394B9ACABD6963A04AE ft=1 fh=3231e75333bf1f00 vn="Variante von Win32/Toolbar.Linkury.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\SnapDo.exe.vir" sh=2B0F5C5AAAF88112651408D3AAAAF384374DA758 ft=1 fh=ef095b8d23755afe vn="Variante von MSIL/Toolbar.Linkury.C evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\srbs.dll.vir" sh=1F7563A9BC05DF0768AB6AD115F8F6831C01F713 ft=1 fh=a9891d78d3612582 vn="Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\GoogleChromeRemotePlugin.dll.vir" sh=BB35E04100569CDF4BCF5ED2920AE5E80C8A0780 ft=1 fh=ae07b77a9bbdc6b9 vn="Variante von MSIL/Toolbar.Linkury.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\ar\Smartbar.Resources.LanguageSettings.resources.dll.vir" sh=8ABAA3ACDD4243A376FA4D31BB4FACDF941230C2 ft=1 fh=0c6a57c05d1a4e7d vn="Variante von MSIL/Toolbar.Linkury.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\de\Smartbar.Resources.LanguageSettings.resources.dll.vir" sh=12B1E69262D080A7C726486FAC7FD676A3190ED1 ft=1 fh=e0dcc8dba481b45d vn="Variante von MSIL/Toolbar.Linkury.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\es\Smartbar.Resources.LanguageSettings.resources.dll.vir" sh=53FD58630C36B8E45D79A6927B38B32948D312CF ft=1 fh=a6ad80b72649bca8 vn="Variante von MSIL/Toolbar.Linkury.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\fr\Smartbar.Resources.LanguageSettings.resources.dll.vir" sh=6E8EFA917B71968435692A48297DB4BD1AC12B65 ft=1 fh=fb3e7f23223bac38 vn="Variante von MSIL/Toolbar.Linkury.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\he\Smartbar.Resources.LanguageSettings.resources.dll.vir" sh=C7E054C7BA58AE2D703DB29C52346A3ED84FEF57 ft=1 fh=53532950b9749a4f vn="Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_20.dll.vi r" sh=C546BA3CA78F93EB65DCCEA191BC40B9F940E2EA ft=1 fh=6fd80785d353cf5d vn="Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_21.dll.vi r" sh=7C15DA5A80F24F0383C992CFB03CF68E95A464B1 ft=1 fh=be427aaf403ae2ff vn="Variante von Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_22.dll.vi r" sh=95544372D9D68E8AFAE5E9DA8B07C14CE5406ABB ft=1 fh=dd489ec711c15129 vn="Variante von Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_23.dll.vi r" sh=BA8871127FB23B24A8963B6A5992DED58259E590 ft=1 fh=65df87dcc97c6ea8 vn="Variante von Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_24.dll.vi r" sh=C88DAF3FB5D3FEC090233FF251F7F0CFC73EF4CD ft=1 fh=b74c7f4df627386b vn="Variante von Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\helperbar@helperbar.com\components\SmartbarFireFoxRemotePlugin_25.dll.vi r" sh=546EF9DA4D2D5CB8EFD789E9E67F79ACA5005F1A ft=1 fh=8a1799ac1aee65ea vn="Variante von MSIL/Toolbar.Linkury.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\it\Smartbar.Resources.LanguageSettings.resources.dll.vir" sh=0E6843DBA36744738D0F30FDDAB740D28A372FB4 ft=1 fh=6974270e4ea29266 vn="Variante von MSIL/Toolbar.Linkury.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\nl\Smartbar.Resources.LanguageSettings.resources.dll.vir" sh=22F182F0F8022A99641A3017C5FAC2BA9D5B802D ft=1 fh=b0bf3a6d4887c5a8 vn="Variante von MSIL/Toolbar.Linkury.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\pt\Smartbar.Resources.LanguageSettings.resources.dll.vir" sh=B5F1188D1AFE2F24771EA8874160CD48D6394F03 ft=1 fh=f5e4a9d3cf5bb2db vn="Variante von MSIL/Toolbar.Linkury.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\ru\Smartbar.Resources.LanguageSettings.resources.dll.vir" sh=2379DF0D09B36522E4E4F6F05E572760AF1EB9F2 ft=1 fh=9ebbe0fc1e4478c3 vn="MSIL/Toolbar.Linkury.E evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\Lukas\AppData\Local\Smartbar\Application\tr\Smartbar.Resources.LanguageSettings.resources.dll.vir" sh=FD1D7C0C6188D44ABC75C52AA634C63D23320C3F ft=1 fh=75c93c0558080b9f vn="Variante von Win32/DomaIQ.BG evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\Local\Google\Chrome\User Data\Default\File System\004\t\00\00000000" sh=A42869762C1D228506B8C75AD64E569CAA077C39 ft=1 fh=6bc882c50a11bee7 vn="Win32/SpeedUpMyPC evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Q7D32QL2\SpeedUpMyPC-standalone-setup[1].exe" sh=C348FB57093E21C8A1FA20445F0E15CB6569937A ft=1 fh=7a5be1cd399f8138 vn="Variante von Win32/AdWare.AddLyrics.AM Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\Local\Temp\fecf5cc8-7617-4e20-8d05-37d40de8bf43\software\2040-2082_Re-markit.exe" sh=1A9C2CE8C1F539AC8546D67C9F924AEA8D2A84C2 ft=1 fh=d348c3328e970e39 vn="Win32/MyPCBackup.A evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\Local\Temp\fecf5cc8-7617-4e20-8d05-37d40de8bf43\software\Cloud_Backup_Setup.exe" sh=FEB8E6715C316D6499231FD88D0FC48107DDC4AE ft=1 fh=1a6d58f30545a7e9 vn="Win32/SpeedUpMyPC.A evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\Local\Temp\fecf5cc8-7617-4e20-8d05-37d40de8bf43\software\speedupmypc.exe" sh=CCDFEE87B0A44C2DC94247FD64A46633479966E2 ft=1 fh=8ea0c674691f6066 vn="Win32/VOPackage.F evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\Local\Temp\fecf5cc8-7617-4e20-8d05-37d40de8bf43\software\VOPackage.exe" sh=A42869762C1D228506B8C75AD64E569CAA077C39 ft=1 fh=6bc882c50a11bee7 vn="Win32/SpeedUpMyPC evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\Local\Temp\is-HGF10.tmp\SpeedUpMyPC-standalone-setup.exe" sh=A1280B1F085B8284DC157EC359BD1ADA091CFE7E ft=1 fh=d8aa3384d1249a40 vn="Variante von Win32/Toolbar.Conduit.P evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\LocalLow\DVDVideoSoftTB_DE\ldrtbDVDV.dll" sh=92E84D2216A7763D580E42FA2493CCF67D0D0560 ft=1 fh=e8efc42494afd9f6 vn="Variante von Win32/Toolbar.Conduit.B evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\LocalLow\DVDVideoSoftTB_DE\tbDVDV.dll" sh=ABF759CA3BFB16DE62197DD7C417AC5039A43AE0 ft=1 fh=1801af74030ebca1 vn="Variante von Win32/PriceGong.A evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\LocalLow\DVDVideoSoftTB_DE\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.5.3\bin\PriceGongIE.dll" sh=48C826EF00938F035C91C9F6B3E167CB21D96633 ft=1 fh=59fac0a23423ab50 vn="Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3804b800-0a4d-4689-b2b3-99bc2bfa1ca7}\components\SmartbarFireFoxRemotePlugin_16.dll" sh=45F4ABE93E1FB333545719948B418FB1207A5085 ft=1 fh=3a58b09db4698b9d vn="Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3804b800-0a4d-4689-b2b3-99bc2bfa1ca7}\components\SmartbarFireFoxRemotePlugin_17.dll" sh=FED76CBD8D5660DEC60B3F16547372DEE7F87FA6 ft=1 fh=9705b06916654cd4 vn="Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3804b800-0a4d-4689-b2b3-99bc2bfa1ca7}\components\SmartbarFireFoxRemotePlugin_18.dll" sh=C8F23EFE19C6A36D8921AE5C96F95808EBEFBE05 ft=1 fh=8064b8d931435e04 vn="Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3804b800-0a4d-4689-b2b3-99bc2bfa1ca7}\components\SmartbarFireFoxRemotePlugin_19.dll" sh=C7E054C7BA58AE2D703DB29C52346A3ED84FEF57 ft=1 fh=53532950b9749a4f vn="Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3804b800-0a4d-4689-b2b3-99bc2bfa1ca7}\components\SmartbarFireFoxRemotePlugin_20.dll" sh=C546BA3CA78F93EB65DCCEA191BC40B9F940E2EA ft=1 fh=6fd80785d353cf5d vn="Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3804b800-0a4d-4689-b2b3-99bc2bfa1ca7}\components\SmartbarFireFoxRemotePlugin_21.dll" sh=7C15DA5A80F24F0383C992CFB03CF68E95A464B1 ft=1 fh=be427aaf403ae2ff vn="Variante von Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3804b800-0a4d-4689-b2b3-99bc2bfa1ca7}\components\SmartbarFireFoxRemotePlugin_22.dll" sh=C7E054C7BA58AE2D703DB29C52346A3ED84FEF57 ft=1 fh=53532950b9749a4f vn="Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3b4af811-c3c0-32fc-2227-8acd9865817a}\components\SmartbarFireFoxRemotePlugin_20.dll" sh=C546BA3CA78F93EB65DCCEA191BC40B9F940E2EA ft=1 fh=6fd80785d353cf5d vn="Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3b4af811-c3c0-32fc-2227-8acd9865817a}\components\SmartbarFireFoxRemotePlugin_21.dll" sh=7C15DA5A80F24F0383C992CFB03CF68E95A464B1 ft=1 fh=be427aaf403ae2ff vn="Variante von Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3b4af811-c3c0-32fc-2227-8acd9865817a}\components\SmartbarFireFoxRemotePlugin_22.dll" sh=95544372D9D68E8AFAE5E9DA8B07C14CE5406ABB ft=1 fh=dd489ec711c15129 vn="Variante von Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3b4af811-c3c0-32fc-2227-8acd9865817a}\components\SmartbarFireFoxRemotePlugin_23.dll" sh=BA8871127FB23B24A8963B6A5992DED58259E590 ft=1 fh=65df87dcc97c6ea8 vn="Variante von Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3b4af811-c3c0-32fc-2227-8acd9865817a}\components\SmartbarFireFoxRemotePlugin_24.dll" sh=C88DAF3FB5D3FEC090233FF251F7F0CFC73EF4CD ft=1 fh=b74c7f4df627386b vn="Variante von Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3b4af811-c3c0-32fc-2227-8acd9865817a}\components\SmartbarFireFoxRemotePlugin_25.dll" sh=AA190194CD322F27B81B57B66F0E48B16DDF09FC ft=1 fh=7a1e2a1eaadddca3 vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\Downloads\Anwendung\FreeYouTubeToMP3Converter (1).exe" sh=AA190194CD322F27B81B57B66F0E48B16DDF09FC ft=1 fh=7a1e2a1eaadddca3 vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\Downloads\Anwendung\FreeYouTubeToMP3Converter (2).exe" sh=596D78A7F03D1DAEE86BCCE8DD7713AA60E8F9E4 ft=1 fh=8eaf1d336ac02ccc vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\Downloads\Anwendung\FreeYouTubeToMP3Converter.exe" sh=846D95D63EDE9508EFC7CEEE1D145D7CE62988C3 ft=1 fh=ec23a4ae3310ce50 vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\Downloads\Anwendung\FreeYouTubeToMP3Converter_3.11.32.918.exe" sh=F2F9BC14A6E1E369DF7E7831527E1815BFA8A153 ft=1 fh=46237991348dd238 vn="Win32/WinloadSDA.C evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\Downloads\Anwendung\OpenOffice-Setup.exe" sh=8BE4C277A62F2400C3B0A20F39297D310774E2AC ft=1 fh=d69c639933d87dfe vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\Documents and Settings\Lukas\Downloads\Anwendung\Setup21_FreeConverter.exe" sh=B5ED1E639B7D9AD3C0F3C81E5AA2E9F88DDFEB65 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\102_dealply_m.js.vir" sh=FC28D62EDB6C0C353E97185BB4B6DC87F5EDED14 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\103_intext_5_m.js.vir" sh=1AA56806D2545B3773D7C5CCEAE82353BDBB575F ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\104_jollywallet_m.js.vir" sh=0B21E41A47E579081215969619861996F43524B1 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\105_corticas_m.js.vir" sh=7F7359D9F0900191297BFDF5B85D5CDF588CD9EA ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\117_coupons_intext_ads_5_m.js.vir" sh=FE3704EEF2BFB9DCA552518E7AEC9D6AFC1ED15C ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\119_similar_web_m.js.vir" sh=35CE3B76158991DDEA79CAF0C1F826A7EE18A820 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\120_luck_m.js.vir" sh=AB97A715437A6FC107817A76C99ED8FBCC81BBAD ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\123_intext_adv_m.js.vir" sh=B0DF9F21E3E69C188775A6F9C466B19932C9238A ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\124_superfish_no_search_no_coupons_m.js.vir" sh=D295E3F253D0942BD3114F61DEF5D78DD0FC5BFB ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\125_arcadi2_m.js.vir" sh=3CFE90E3825BB08EB9B4222552FAC05360188207 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\126_revizer_ws_m.js.vir" sh=031F6CD140ED363E0F137E627AE1FE4DED5714E2 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\127_revizer_p_m.js.vir" sh=28ECD06AF56EB424F74BB63563BC79E57C15C2D9 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\128_superfish_pricora_m.js.vir" sh=BB2946641B9FEB2F76D281220A52220336E454E1 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\135_arcadi3_m.js.vir" sh=90A4F559561CF603A203F93D56C80B17B8152325 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\141_corticas_ru_m.js.js.vir" sh=8395A2B6D59D2F3EDDCFC863DDA2F674396DC74C ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\142_intext_fa_m.js.vir" sh=943F60E8E3F306CF4EE6E844D06FAC7552EE1856 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\155_ibario_pops_m.js.vir" sh=0CEB1A073B87956FD1F21F8425B8F76015B1BCD8 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\158_50onred_ads_only_no_fb_m.js.vir" sh=441E98540BDEC21B7E534C2B317AE91925F6CEE7 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\159_cortica_rollover_m.js.vir" sh=C8B01A1511A63AEC3D40B1D045034D76B1E85EFD ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\171_arcadi2_sourceID_m.js.vir" sh=078C314715CCC0DE7547172AD4B810FD754115C6 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\174_arcadi_serp_dynamic_id_m.js.vir" sh=CFFCA6A4EE3A0DF2319440491BB297ADEC6EEF37 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\178_revizer_ws_dynamic_m.js.vir" sh=ADB54DE323736C99B4191A45B478B70DF1B7B945 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\179_revizer_p_dynamic_m.js.vir" sh=73374EAD120BC84FC9C0C827196BCAEB3C20EEB6 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\180_bpo_serp_m.js.vir" sh=24E6E5A06D24A5CC24C0B705FDB089FD4FEC70AC ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\184_noproblemppc_m.js.vir" sh=C450AA599E6408FB93F66538C89B8D8B7799642D ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\189_active_sanity.js.vir" sh=6B3C17F9D4BD40BFCF87831196C40DBA3C4DB14C ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\190_pops_5_m.js.vir" sh=9F07ACC96BC246F25975479E9382CDF88E7D8711 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\191_ciuvo_m.js.vir" sh=FD93B99EA823374C39DDBC779DEA9C89E9228FC6 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\91_monetizationLoader.js.js.vir" sh=0C5AC30A082628E85A9A8B68EF5E5EAFA46F0CC7 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\Extensions\cokhadepfhgbjhnngnmkkbcclhgjelkn\1.25.106_0\extensionData\plugins\93_superfish_no_coupons_m.js.vir" sh=8E404BAFA9CEAC0628F089B4F1AA879EB5A3404E ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\101_cortica_m.js.vir" sh=957E505E027C2F899F844C27AC8B82EF94AEBB68 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\102_dealply_m.js.vir" sh=EB047CB7862459E0F74832AEF6A7954A3663373F ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\104_jollywallet_m.js.vir" sh=F2126D68553053F0A5A411866DEC205E27283EDA ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\105_corticas_m.js.vir" sh=A69DBD3502EA9C4EDD7DEAFB23A8FC1C97BAB232 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\107_coupish_m.js.vir" sh=6FD52BE8732402A681159484442B6AA0351C4243 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\108_icm_m.js.vir" sh=9495814AE107F6739D62A09B1829E5A2DCDA1354 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\119_similar_web_m.js.vir" sh=D10EA105AB5DB329186B0B6F10541DD58058AEB8 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\120_luck_m.js.vir" sh=B985E49C6E0E423954A36327BE2EA87F0F287145 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\123_intext_adv_m.js.vir" sh=EAAF312959AC9CCF5138825927B5E2D38F57E2E1 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\124_superfish_no_search_no_coupons_m.js.vir" sh=62B063E0D121966E9A83C9AB518DADAE47423555 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\125_arcadi2_m.js.vir" sh=4A86247BDE5D2225473389037FA942819FD677CF ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\128_superfish_pricora_m.js.vir" sh=D9E89F57D3A13498640961F3B9954D67D7EA1039 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\129_widdit_m.js.vir" sh=B9CFC11B067C54952D592C618BD391AA26B3393B ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\135_arcadi3_m.js.vir" sh=17483832BF1FA23335B7C1E04A0530AB60CBEDC6 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\138_getdeal_m.js.vir" sh=90A4F559561CF603A203F93D56C80B17B8152325 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\141_corticas_ru_m.js.js.vir" sh=8395A2B6D59D2F3EDDCFC863DDA2F674396DC74C ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\142_intext_fa_m.js.vir" sh=18C46AE5CB67274764D17F8A40975EEB5C67F795 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\159_cortica_rollover_m.js.vir" sh=81C3B657563171D65FE42C52872ECF8EB7924C86 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\171_arcadi2_sourceID_m.js.vir" sh=FAD5F9E3F4DA8ED3ACC760906893EC897A53D622 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\174_arcadi_serp_dynamic_id_m.js.vir" sh=5C78BB6DB7106C0E038C74382A940FB5D1322C06 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.A evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\175_coolmirage_m.js.vir" sh=92DD07C2421C2C5A4996E399DB6707B4707488F7 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\91_monetizationLoader.js.js.vir" sh=93022F69189E8D2F1B4B8717522CA1AFFA59F708 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\92_superfish_m.js.vir" sh=543DE9DC0BE89820EDA9EE328FECAE10831BFBC0 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\dcf3d940-5475-4c1f-9347-73a47512ee99@8520e31e-fc61-48c8-ae31-09d4d65bc369.com\extensionData\plugins\93_superfish_no_coupons_m.js.vir" sh=FD1D7C0C6188D44ABC75C52AA634C63D23320C3F ft=1 fh=75c93c0558080b9f vn="Variante von Win32/DomaIQ.BG evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\AppData\Local\Google\Chrome\User Data\Default\File System\004\t\00\00000000" sh=A42869762C1D228506B8C75AD64E569CAA077C39 ft=1 fh=6bc882c50a11bee7 vn="Win32/SpeedUpMyPC evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\Q7D32QL2\SpeedUpMyPC-standalone-setup[1].exe" sh=C348FB57093E21C8A1FA20445F0E15CB6569937A ft=1 fh=7a5be1cd399f8138 vn="Variante von Win32/AdWare.AddLyrics.AM Anwendung" ac=I fn="C:\Users\Lukas\AppData\Local\Temp\fecf5cc8-7617-4e20-8d05-37d40de8bf43\software\2040-2082_Re-markit.exe" sh=1A9C2CE8C1F539AC8546D67C9F924AEA8D2A84C2 ft=1 fh=d348c3328e970e39 vn="Win32/MyPCBackup.A evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\AppData\Local\Temp\fecf5cc8-7617-4e20-8d05-37d40de8bf43\software\Cloud_Backup_Setup.exe" sh=FEB8E6715C316D6499231FD88D0FC48107DDC4AE ft=1 fh=1a6d58f30545a7e9 vn="Win32/SpeedUpMyPC.A evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\AppData\Local\Temp\fecf5cc8-7617-4e20-8d05-37d40de8bf43\software\speedupmypc.exe" sh=CCDFEE87B0A44C2DC94247FD64A46633479966E2 ft=1 fh=8ea0c674691f6066 vn="Win32/VOPackage.F evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\AppData\Local\Temp\fecf5cc8-7617-4e20-8d05-37d40de8bf43\software\VOPackage.exe" sh=A42869762C1D228506B8C75AD64E569CAA077C39 ft=1 fh=6bc882c50a11bee7 vn="Win32/SpeedUpMyPC evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\AppData\Local\Temp\is-HGF10.tmp\SpeedUpMyPC-standalone-setup.exe" sh=A1280B1F085B8284DC157EC359BD1ADA091CFE7E ft=1 fh=d8aa3384d1249a40 vn="Variante von Win32/Toolbar.Conduit.P evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\AppData\LocalLow\DVDVideoSoftTB_DE\ldrtbDVDV.dll" sh=92E84D2216A7763D580E42FA2493CCF67D0D0560 ft=1 fh=e8efc42494afd9f6 vn="Variante von Win32/Toolbar.Conduit.B evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\AppData\LocalLow\DVDVideoSoftTB_DE\tbDVDV.dll" sh=ABF759CA3BFB16DE62197DD7C417AC5039A43AE0 ft=1 fh=1801af74030ebca1 vn="Variante von Win32/PriceGong.A evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\AppData\LocalLow\DVDVideoSoftTB_DE\plugins\{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}\3.5.3\bin\PriceGongIE.dll" sh=48C826EF00938F035C91C9F6B3E167CB21D96633 ft=1 fh=59fac0a23423ab50 vn="Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3804b800-0a4d-4689-b2b3-99bc2bfa1ca7}\components\SmartbarFireFoxRemotePlugin_16.dll" sh=45F4ABE93E1FB333545719948B418FB1207A5085 ft=1 fh=3a58b09db4698b9d vn="Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3804b800-0a4d-4689-b2b3-99bc2bfa1ca7}\components\SmartbarFireFoxRemotePlugin_17.dll" sh=FED76CBD8D5660DEC60B3F16547372DEE7F87FA6 ft=1 fh=9705b06916654cd4 vn="Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3804b800-0a4d-4689-b2b3-99bc2bfa1ca7}\components\SmartbarFireFoxRemotePlugin_18.dll" sh=C8F23EFE19C6A36D8921AE5C96F95808EBEFBE05 ft=1 fh=8064b8d931435e04 vn="Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3804b800-0a4d-4689-b2b3-99bc2bfa1ca7}\components\SmartbarFireFoxRemotePlugin_19.dll" sh=C7E054C7BA58AE2D703DB29C52346A3ED84FEF57 ft=1 fh=53532950b9749a4f vn="Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3804b800-0a4d-4689-b2b3-99bc2bfa1ca7}\components\SmartbarFireFoxRemotePlugin_20.dll" sh=C546BA3CA78F93EB65DCCEA191BC40B9F940E2EA ft=1 fh=6fd80785d353cf5d vn="Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3804b800-0a4d-4689-b2b3-99bc2bfa1ca7}\components\SmartbarFireFoxRemotePlugin_21.dll" sh=7C15DA5A80F24F0383C992CFB03CF68E95A464B1 ft=1 fh=be427aaf403ae2ff vn="Variante von Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3804b800-0a4d-4689-b2b3-99bc2bfa1ca7}\components\SmartbarFireFoxRemotePlugin_22.dll" sh=C7E054C7BA58AE2D703DB29C52346A3ED84FEF57 ft=1 fh=53532950b9749a4f vn="Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3b4af811-c3c0-32fc-2227-8acd9865817a}\components\SmartbarFireFoxRemotePlugin_20.dll" sh=C546BA3CA78F93EB65DCCEA191BC40B9F940E2EA ft=1 fh=6fd80785d353cf5d vn="Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3b4af811-c3c0-32fc-2227-8acd9865817a}\components\SmartbarFireFoxRemotePlugin_21.dll" sh=7C15DA5A80F24F0383C992CFB03CF68E95A464B1 ft=1 fh=be427aaf403ae2ff vn="Variante von Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3b4af811-c3c0-32fc-2227-8acd9865817a}\components\SmartbarFireFoxRemotePlugin_22.dll" sh=95544372D9D68E8AFAE5E9DA8B07C14CE5406ABB ft=1 fh=dd489ec711c15129 vn="Variante von Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3b4af811-c3c0-32fc-2227-8acd9865817a}\components\SmartbarFireFoxRemotePlugin_23.dll" sh=BA8871127FB23B24A8963B6A5992DED58259E590 ft=1 fh=65df87dcc97c6ea8 vn="Variante von Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3b4af811-c3c0-32fc-2227-8acd9865817a}\components\SmartbarFireFoxRemotePlugin_24.dll" sh=C88DAF3FB5D3FEC090233FF251F7F0CFC73EF4CD ft=1 fh=b74c7f4df627386b vn="Variante von Win32/Toolbar.Linkury.D evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\AppData\Roaming\Mozilla\Firefox\Profiles\4a7g1a51.default\extensions\{3b4af811-c3c0-32fc-2227-8acd9865817a}\components\SmartbarFireFoxRemotePlugin_25.dll" sh=AA190194CD322F27B81B57B66F0E48B16DDF09FC ft=1 fh=7a1e2a1eaadddca3 vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\Downloads\Anwendung\FreeYouTubeToMP3Converter (1).exe" sh=AA190194CD322F27B81B57B66F0E48B16DDF09FC ft=1 fh=7a1e2a1eaadddca3 vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\Downloads\Anwendung\FreeYouTubeToMP3Converter (2).exe" sh=596D78A7F03D1DAEE86BCCE8DD7713AA60E8F9E4 ft=1 fh=8eaf1d336ac02ccc vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\Downloads\Anwendung\FreeYouTubeToMP3Converter.exe" sh=846D95D63EDE9508EFC7CEEE1D145D7CE62988C3 ft=1 fh=ec23a4ae3310ce50 vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\Downloads\Anwendung\FreeYouTubeToMP3Converter_3.11.32.918.exe" sh=F2F9BC14A6E1E369DF7E7831527E1815BFA8A153 ft=1 fh=46237991348dd238 vn="Win32/WinloadSDA.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\Downloads\Anwendung\OpenOffice-Setup.exe" sh=8BE4C277A62F2400C3B0A20F39297D310774E2AC ft=1 fh=d69c639933d87dfe vn="Win32/Toolbar.SearchSuite evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Lukas\Downloads\Anwendung\Setup21_FreeConverter.exe" SecurityCheck funktioniert nicht, beim Öffnen bzw. nach der Eingabe einer beliebigen Taste in der DOS-Box kommt diese Meldung: UNSUPPORTED OPERATING SYSTEM! ABORTED! FRST.txt: FRST Logfile: Code: Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-06-2014Addition.txt: Anhang 67430 Sieht gut aus! :) Alle Probleme weg. Kann einmal wieder nur Danke sagen! Super Support! Hoffe mal, dass ich mich nicht nocheinmal melden muss. LG Lukas |
Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code: GroupPolicy: Group Policy on Chrome detected <======= ATTENTIONSpeichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Revo Uninstaller - Download - Filepony damit Firefox deinstallieren, keine Daten behalten, Reste entfernen lassen, neu installieren. Dann: https://support.mozilla.org/de/kb/fi...einfach-loesen Fertig :) Die Reihenfolge ist hier entscheidend.
Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun :) Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann. |
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 06-06-2014 Ran by Lukas at 2014-06-07 21:33:49 Run:1 Running from C:\Users\Lukas\Downloads Boot Mode: Normal ============================================== Content of fixlist: ***************** GroupPolicy: Group Policy on Chrome detected <======= ATTENTION ***************** C:\Windows\system32\GroupPolicy\Machine => Moved successfully. C:\Windows\system32\GroupPolicy\GPT.ini => Moved successfully. The system needed a reboot. ==== End of Fixlog ==== Alles wieder in Ordnung :) Nochmal Danke! Thread kannst du denke ich schließen. LG Lukas |
Gern Geschehen :) |
| Alle Zeitangaben in WEZ +1. Es ist jetzt 14:25 Uhr. |
Copyright ©2000-2025, Trojaner-Board